1 // Copyright 2023 Google LLC 2 // 3 // Licensed under the Apache License, Version 2.0 (the "License"); 4 // you may not use this file except in compliance with the License. 5 // You may obtain a copy of the License at 6 // 7 // http://www.apache.org/licenses/LICENSE-2.0 8 // 9 // Unless required by applicable law or agreed to in writing, software 10 // distributed under the License is distributed on an "AS IS" BASIS, 11 // WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. 12 // See the License for the specific language governing permissions and 13 // limitations under the License. 14 // 15 //////////////////////////////////////////////////////////////////////////////// 16 17 package com.google.crypto.tink.streamingaead; 18 19 import static com.google.common.truth.Truth.assertThat; 20 import static org.junit.Assert.assertThrows; 21 22 import com.google.crypto.tink.InsecureSecretKeyAccess; 23 import com.google.crypto.tink.aead.XChaCha20Poly1305Key; 24 import com.google.crypto.tink.internal.KeyTester; 25 import com.google.crypto.tink.util.SecretBytes; 26 import java.security.GeneralSecurityException; 27 import org.junit.Test; 28 import org.junit.runner.RunWith; 29 import org.junit.runners.JUnit4; 30 31 @RunWith(JUnit4.class) 32 public final class AesCtrHmacStreamingKeyTest { 33 34 @Test basicBuild_compareParameters_works()35 public void basicBuild_compareParameters_works() throws Exception { 36 AesCtrHmacStreamingParameters parameters = 37 AesCtrHmacStreamingParameters.builder() 38 .setKeySizeBytes(19) 39 .setDerivedKeySizeBytes(16) 40 .setHkdfHashType(AesCtrHmacStreamingParameters.HashType.SHA256) 41 .setHmacHashType(AesCtrHmacStreamingParameters.HashType.SHA1) 42 .setHmacTagSizeBytes(14) 43 .setCiphertextSegmentSizeBytes(1024 * 1024) 44 .build(); 45 SecretBytes bytes = SecretBytes.randomBytes(19); 46 AesCtrHmacStreamingKey key = AesCtrHmacStreamingKey.create(parameters, bytes); 47 48 assertThat(key.getParameters()).isEqualTo(parameters); 49 assertThat(key.getInitialKeyMaterial()).isEqualTo(bytes); 50 } 51 52 @Test build_wrongKeySize_throws()53 public void build_wrongKeySize_throws() throws Exception { 54 AesCtrHmacStreamingParameters parameters = 55 AesCtrHmacStreamingParameters.builder() 56 .setKeySizeBytes(19) 57 .setDerivedKeySizeBytes(16) 58 .setHkdfHashType(AesCtrHmacStreamingParameters.HashType.SHA256) 59 .setHmacHashType(AesCtrHmacStreamingParameters.HashType.SHA1) 60 .setHmacTagSizeBytes(14) 61 .setCiphertextSegmentSizeBytes(1024 * 1024) 62 .build(); 63 SecretBytes bytes = SecretBytes.randomBytes(18); 64 assertThrows( 65 GeneralSecurityException.class, () -> AesCtrHmacStreamingKey.create(parameters, bytes)); 66 } 67 68 @Test testEqualities()69 public void testEqualities() throws Exception { 70 SecretBytes keyBytes33 = SecretBytes.randomBytes(33); 71 SecretBytes keyBytes33Copy = 72 SecretBytes.copyFrom( 73 keyBytes33.toByteArray(InsecureSecretKeyAccess.get()), InsecureSecretKeyAccess.get()); 74 SecretBytes keyBytes33Diff = SecretBytes.randomBytes(33); 75 76 AesCtrHmacStreamingParameters parameters33 = 77 AesCtrHmacStreamingParameters.builder() 78 .setKeySizeBytes(33) 79 .setDerivedKeySizeBytes(32) 80 .setHkdfHashType(AesCtrHmacStreamingParameters.HashType.SHA256) 81 .setHmacHashType(AesCtrHmacStreamingParameters.HashType.SHA1) 82 .setHmacTagSizeBytes(14) 83 .setCiphertextSegmentSizeBytes(1024 * 1024) 84 .build(); 85 AesCtrHmacStreamingParameters parameters33Copy = 86 AesCtrHmacStreamingParameters.builder() 87 .setKeySizeBytes(33) 88 .setDerivedKeySizeBytes(32) 89 .setHkdfHashType(AesCtrHmacStreamingParameters.HashType.SHA256) 90 .setHmacHashType(AesCtrHmacStreamingParameters.HashType.SHA1) 91 .setHmacTagSizeBytes(14) 92 .setCiphertextSegmentSizeBytes(1024 * 1024) 93 .build(); 94 AesCtrHmacStreamingParameters parametersDifferentHashType = 95 AesCtrHmacStreamingParameters.builder() 96 .setKeySizeBytes(33) 97 .setDerivedKeySizeBytes(32) 98 .setHkdfHashType(AesCtrHmacStreamingParameters.HashType.SHA512) 99 .setHmacHashType(AesCtrHmacStreamingParameters.HashType.SHA1) 100 .setHmacTagSizeBytes(14) 101 .setCiphertextSegmentSizeBytes(1024 * 1024) 102 .build(); 103 104 new KeyTester() 105 .addEqualityGroup( 106 "33 byte key", 107 AesCtrHmacStreamingKey.create(parameters33, keyBytes33), 108 AesCtrHmacStreamingKey.create(parameters33, keyBytes33Copy), 109 AesCtrHmacStreamingKey.create(parameters33Copy, keyBytes33)) 110 .addEqualityGroup( 111 "different key", 112 AesCtrHmacStreamingKey.create(parameters33, keyBytes33Diff), 113 AesCtrHmacStreamingKey.create(parameters33Copy, keyBytes33Diff)) 114 .addEqualityGroup( 115 "different parameters", 116 AesCtrHmacStreamingKey.create(parametersDifferentHashType, keyBytes33)) 117 .doTests(); 118 } 119 120 @Test testDifferentKeyTypesEquality_fails()121 public void testDifferentKeyTypesEquality_fails() throws Exception { 122 AesCtrHmacStreamingParameters parameters = 123 AesCtrHmacStreamingParameters.builder() 124 .setKeySizeBytes(33) 125 .setDerivedKeySizeBytes(32) 126 .setHkdfHashType(AesCtrHmacStreamingParameters.HashType.SHA256) 127 .setHmacHashType(AesCtrHmacStreamingParameters.HashType.SHA1) 128 .setHmacTagSizeBytes(14) 129 .setCiphertextSegmentSizeBytes(1024 * 1024) 130 .build(); 131 AesCtrHmacStreamingKey key = 132 AesCtrHmacStreamingKey.create(parameters, SecretBytes.randomBytes(33)); 133 134 XChaCha20Poly1305Key xChaCha20Poly1305Key = 135 XChaCha20Poly1305Key.create(SecretBytes.randomBytes(32)); 136 137 assertThat(key.equalsKey(xChaCha20Poly1305Key)).isFalse(); 138 } 139 } 140