• Home
  • Line#
  • Scopes#
  • Navigate#
  • Raw
  • Download
1 // Copyright 2023 Google LLC
2 //
3 // Licensed under the Apache License, Version 2.0 (the "License");
4 // you may not use this file except in compliance with the License.
5 // You may obtain a copy of the License at
6 //
7 //      http://www.apache.org/licenses/LICENSE-2.0
8 //
9 // Unless required by applicable law or agreed to in writing, software
10 // distributed under the License is distributed on an "AS IS" BASIS,
11 // WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12 // See the License for the specific language governing permissions and
13 // limitations under the License.
14 //
15 ////////////////////////////////////////////////////////////////////////////////
16 
17 package com.google.crypto.tink.streamingaead;
18 
19 import static com.google.common.truth.Truth.assertThat;
20 import static org.junit.Assert.assertThrows;
21 
22 import com.google.crypto.tink.InsecureSecretKeyAccess;
23 import com.google.crypto.tink.aead.XChaCha20Poly1305Key;
24 import com.google.crypto.tink.internal.KeyTester;
25 import com.google.crypto.tink.util.SecretBytes;
26 import java.security.GeneralSecurityException;
27 import org.junit.Test;
28 import org.junit.runner.RunWith;
29 import org.junit.runners.JUnit4;
30 
31 @RunWith(JUnit4.class)
32 public final class AesCtrHmacStreamingKeyTest {
33 
34   @Test
basicBuild_compareParameters_works()35   public void basicBuild_compareParameters_works() throws Exception {
36     AesCtrHmacStreamingParameters parameters =
37         AesCtrHmacStreamingParameters.builder()
38             .setKeySizeBytes(19)
39             .setDerivedKeySizeBytes(16)
40             .setHkdfHashType(AesCtrHmacStreamingParameters.HashType.SHA256)
41             .setHmacHashType(AesCtrHmacStreamingParameters.HashType.SHA1)
42             .setHmacTagSizeBytes(14)
43             .setCiphertextSegmentSizeBytes(1024 * 1024)
44             .build();
45     SecretBytes bytes = SecretBytes.randomBytes(19);
46     AesCtrHmacStreamingKey key = AesCtrHmacStreamingKey.create(parameters, bytes);
47 
48     assertThat(key.getParameters()).isEqualTo(parameters);
49     assertThat(key.getInitialKeyMaterial()).isEqualTo(bytes);
50   }
51 
52   @Test
build_wrongKeySize_throws()53   public void build_wrongKeySize_throws() throws Exception {
54     AesCtrHmacStreamingParameters parameters =
55         AesCtrHmacStreamingParameters.builder()
56             .setKeySizeBytes(19)
57             .setDerivedKeySizeBytes(16)
58             .setHkdfHashType(AesCtrHmacStreamingParameters.HashType.SHA256)
59             .setHmacHashType(AesCtrHmacStreamingParameters.HashType.SHA1)
60             .setHmacTagSizeBytes(14)
61             .setCiphertextSegmentSizeBytes(1024 * 1024)
62             .build();
63     SecretBytes bytes = SecretBytes.randomBytes(18);
64     assertThrows(
65         GeneralSecurityException.class, () -> AesCtrHmacStreamingKey.create(parameters, bytes));
66   }
67 
68   @Test
testEqualities()69   public void testEqualities() throws Exception {
70     SecretBytes keyBytes33 = SecretBytes.randomBytes(33);
71     SecretBytes keyBytes33Copy =
72         SecretBytes.copyFrom(
73             keyBytes33.toByteArray(InsecureSecretKeyAccess.get()), InsecureSecretKeyAccess.get());
74     SecretBytes keyBytes33Diff = SecretBytes.randomBytes(33);
75 
76     AesCtrHmacStreamingParameters parameters33 =
77         AesCtrHmacStreamingParameters.builder()
78             .setKeySizeBytes(33)
79             .setDerivedKeySizeBytes(32)
80             .setHkdfHashType(AesCtrHmacStreamingParameters.HashType.SHA256)
81             .setHmacHashType(AesCtrHmacStreamingParameters.HashType.SHA1)
82             .setHmacTagSizeBytes(14)
83             .setCiphertextSegmentSizeBytes(1024 * 1024)
84             .build();
85     AesCtrHmacStreamingParameters parameters33Copy =
86         AesCtrHmacStreamingParameters.builder()
87             .setKeySizeBytes(33)
88             .setDerivedKeySizeBytes(32)
89             .setHkdfHashType(AesCtrHmacStreamingParameters.HashType.SHA256)
90             .setHmacHashType(AesCtrHmacStreamingParameters.HashType.SHA1)
91             .setHmacTagSizeBytes(14)
92             .setCiphertextSegmentSizeBytes(1024 * 1024)
93             .build();
94     AesCtrHmacStreamingParameters parametersDifferentHashType =
95         AesCtrHmacStreamingParameters.builder()
96             .setKeySizeBytes(33)
97             .setDerivedKeySizeBytes(32)
98             .setHkdfHashType(AesCtrHmacStreamingParameters.HashType.SHA512)
99             .setHmacHashType(AesCtrHmacStreamingParameters.HashType.SHA1)
100             .setHmacTagSizeBytes(14)
101             .setCiphertextSegmentSizeBytes(1024 * 1024)
102             .build();
103 
104     new KeyTester()
105         .addEqualityGroup(
106             "33 byte key",
107             AesCtrHmacStreamingKey.create(parameters33, keyBytes33),
108             AesCtrHmacStreamingKey.create(parameters33, keyBytes33Copy),
109             AesCtrHmacStreamingKey.create(parameters33Copy, keyBytes33))
110         .addEqualityGroup(
111             "different key",
112             AesCtrHmacStreamingKey.create(parameters33, keyBytes33Diff),
113             AesCtrHmacStreamingKey.create(parameters33Copy, keyBytes33Diff))
114         .addEqualityGroup(
115             "different parameters",
116             AesCtrHmacStreamingKey.create(parametersDifferentHashType, keyBytes33))
117         .doTests();
118   }
119 
120   @Test
testDifferentKeyTypesEquality_fails()121   public void testDifferentKeyTypesEquality_fails() throws Exception {
122     AesCtrHmacStreamingParameters parameters =
123         AesCtrHmacStreamingParameters.builder()
124             .setKeySizeBytes(33)
125             .setDerivedKeySizeBytes(32)
126             .setHkdfHashType(AesCtrHmacStreamingParameters.HashType.SHA256)
127             .setHmacHashType(AesCtrHmacStreamingParameters.HashType.SHA1)
128             .setHmacTagSizeBytes(14)
129             .setCiphertextSegmentSizeBytes(1024 * 1024)
130             .build();
131     AesCtrHmacStreamingKey key =
132         AesCtrHmacStreamingKey.create(parameters, SecretBytes.randomBytes(33));
133 
134     XChaCha20Poly1305Key xChaCha20Poly1305Key =
135         XChaCha20Poly1305Key.create(SecretBytes.randomBytes(32));
136 
137     assertThat(key.equalsKey(xChaCha20Poly1305Key)).isFalse();
138   }
139 }
140