| { | |
| "algorithm": "AES-FF1", | |
| "generatorVersion": "0.9rc5", | |
| "numberOfTests": 3872, | |
| "header": [ | |
| "Test vectors of type FpeListTest are intended for format preserving encryption." | |
| ], | |
| "notes": { | |
| "EdgeCasePrf": { | |
| "bugType": "EDGE_CASE", | |
| "description": "FF1 computes a pseudorandom function, converts the result into an integer y, which is then reduced modulo radix**v, where v is the size of the longer block in the Feistel structure. This test vector contains cases where the value y is an edge case. The goal of the test vector is to check for arithmetic errors such as integer overflow or incorrect modular reduction." | |
| }, | |
| "EdgeCaseState": { | |
| "bugType": "EDGE_CASE", | |
| "description": "FF1 requires integer arithmetic of various sizes. This test vector contains values such that edge cases are reached during encryption and decryption. The goal of the test vector is to check for incorrect integer arithmetic e.g., because of integer overflows." | |
| }, | |
| "InvalidKeySize": { | |
| "bugType": "MODIFIED_PARAMETER", | |
| "description": "The key size is invalid." | |
| }, | |
| "InvalidMessageSize": { | |
| "bugType": "MISSING_STEP", | |
| "description": "FF1 imposes a minimal size of the inputs. The original specification of FF1 required radix**minlen >= 100, NIST SP 800-38G rev 1, requires radix**minlen >= 1'000'000. This test vector contains a short message such that both limits are violated and hence should be rejected." | |
| }, | |
| "InvalidPlaintext": { | |
| "bugType": "MODIFIED_PARAMETER", | |
| "description": "FF1 expects inputs from a fixed range of digits. This test vector contains a plaintext containing invalid digits." | |
| }, | |
| "LargeMessageSize": { | |
| "bugType": "FUNCTIONALITY", | |
| "description": "The specification of FF1 uses integer arithmetic of arbitrary size for long messages. Some implementations may choose to restrict the message length to simplify the implementation of FF1. This test vector contains a message of size msglen such that radix**msglen > 2**128." | |
| }, | |
| "NormalMessageSize": { | |
| "bugType": "BASIC", | |
| "description": "The specification of FF1 uses integer arithmetic of arbitrary size for long messages. Some implementations may choose to restrict the message length to simplify the implementation of FF1. This test vector contains a message of size msglen such that 1'000'000 <= radix**msglen <= 2**128." | |
| }, | |
| "SmallMessageSize": { | |
| "bugType": "LEGACY", | |
| "description": "FF1 imposes a minimal size of the inputs. The original specification of FF1 required radix**msglen >= 100, NIST SP 800-38G rev 1 changes this and requires radix**msglen >= 1'000'000. This test vector contains a message of size msglen, such that radix**msglen lies between these two limits." | |
| } | |
| }, | |
| "schema": "fpe_list_test_schema.json", | |
| "testGroups": [ | |
| { | |
| "keySize": 128, | |
| "msgSize": 0, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 1, | |
| "comment": "Invalid message size", | |
| "flags": [ | |
| "InvalidMessageSize" | |
| ], | |
| "key": "fb9fc869af3e4828da6efa18b5fa71a0", | |
| "tweak": "379f81cab6ed2517", | |
| "msg": [], | |
| "ct": [], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 1, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 2, | |
| "comment": "Invalid message size", | |
| "flags": [ | |
| "InvalidMessageSize" | |
| ], | |
| "key": "7325733095d90aff456a1e00fa977365", | |
| "tweak": "a5f8950069a56f6c", | |
| "msg": [8], | |
| "ct": [], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 192, | |
| "msgSize": 0, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 3, | |
| "comment": "Invalid message size", | |
| "flags": [ | |
| "InvalidMessageSize" | |
| ], | |
| "key": "af2463f51df63a015178e30edcf25dacbeb2abbc5144d0a6", | |
| "tweak": "5d9c3dfb797c952a", | |
| "msg": [], | |
| "ct": [], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 192, | |
| "msgSize": 1, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 4, | |
| "comment": "Invalid message size", | |
| "flags": [ | |
| "InvalidMessageSize" | |
| ], | |
| "key": "e9e279f5fad3e7fd7922e838cf07da528ddcc5387f6145bf", | |
| "tweak": "a25989a2e4360bae", | |
| "msg": [3], | |
| "ct": [], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 256, | |
| "msgSize": 0, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 5, | |
| "comment": "Invalid message size", | |
| "flags": [ | |
| "InvalidMessageSize" | |
| ], | |
| "key": "f25e816c4d42629a428e48f2d48a31f79d6b1e8ef47e5ed3e7e5bbdf37f1806d", | |
| "tweak": "42dbc8913a275520", | |
| "msg": [], | |
| "ct": [], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 256, | |
| "msgSize": 1, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 6, | |
| "comment": "Invalid message size", | |
| "flags": [ | |
| "InvalidMessageSize" | |
| ], | |
| "key": "b8c800bed3286920bd1d9ad89a78808e9f815ec638663a725f256cc7078fdaf0", | |
| "tweak": "90120912eba3c19c", | |
| "msg": [3], | |
| "ct": [], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 2, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 7, | |
| "comment": "small message size", | |
| "flags": [ | |
| "SmallMessageSize" | |
| ], | |
| "key": "ad65778960d778c614e2673dee073acb", | |
| "tweak": "4505f45a8fa30b90", | |
| "msg": [1, 15], | |
| "ct": [7, 11], | |
| "result": "valid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 3, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 8, | |
| "comment": "small message size", | |
| "flags": [ | |
| "SmallMessageSize" | |
| ], | |
| "key": "aa6f23f573da39b110f4e155c418ba1f", | |
| "tweak": "8402018f66fd2cb9", | |
| "msg": [0, 4, 1], | |
| "ct": [14, 9, 13], | |
| "result": "valid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 4, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 9, | |
| "comment": "small message size", | |
| "flags": [ | |
| "SmallMessageSize" | |
| ], | |
| "key": "5dd5899794ff9b5007b4481aaa97f882", | |
| "tweak": "742f7f8b2ab0dc48", | |
| "msg": [3, 15, 2, 6], | |
| "ct": [14, 3, 14, 7], | |
| "result": "valid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 192, | |
| "msgSize": 2, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 10, | |
| "comment": "small message size", | |
| "flags": [ | |
| "SmallMessageSize" | |
| ], | |
| "key": "911c9e0a87977587050ebb48f4f9e199fde8472781ecaf7a", | |
| "tweak": "cf98ea96ef005bc6", | |
| "msg": [1, 10], | |
| "ct": [5, 14], | |
| "result": "valid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 192, | |
| "msgSize": 3, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 11, | |
| "comment": "small message size", | |
| "flags": [ | |
| "SmallMessageSize" | |
| ], | |
| "key": "3c453964f4e42587db3a6de5de00673ede7e17672a4deb84", | |
| "tweak": "fe6290783f11946c", | |
| "msg": [15, 8, 7], | |
| "ct": [4, 1, 14], | |
| "result": "valid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 192, | |
| "msgSize": 4, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 12, | |
| "comment": "small message size", | |
| "flags": [ | |
| "SmallMessageSize" | |
| ], | |
| "key": "f9626066827656fe088a7bf737c1cc1a3a3adc7015ffee7f", | |
| "tweak": "bc6d9ff72c250366", | |
| "msg": [14, 13, 8, 0], | |
| "ct": [7, 8, 11, 12], | |
| "result": "valid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 256, | |
| "msgSize": 2, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 13, | |
| "comment": "small message size", | |
| "flags": [ | |
| "SmallMessageSize" | |
| ], | |
| "key": "d05ae6e3819e2dcdd218be7c62465e8f1474f1fec8e79a1a3f7b88040d0f4160", | |
| "tweak": "823988f1ffb8ce23", | |
| "msg": [13, 13], | |
| "ct": [15, 8], | |
| "result": "valid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 256, | |
| "msgSize": 3, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 14, | |
| "comment": "small message size", | |
| "flags": [ | |
| "SmallMessageSize" | |
| ], | |
| "key": "1399758fa1ebf7cfda5f601c643443adaea4f4f8c19fc8772c5d5e3cc0cc6955", | |
| "tweak": "8c5a263a91b7cb4f", | |
| "msg": [5, 15, 4], | |
| "ct": [7, 1, 14], | |
| "result": "valid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 256, | |
| "msgSize": 4, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 15, | |
| "comment": "small message size", | |
| "flags": [ | |
| "SmallMessageSize" | |
| ], | |
| "key": "c4acbec2544b6a08d8b24841fc55fccf7450bfd64169fa7dbea965ccae52ac13", | |
| "tweak": "427713fa26fac273", | |
| "msg": [4, 2, 9, 14], | |
| "ct": [7, 14, 7, 11], | |
| "result": "valid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 5, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 16, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "0319599d6c7ca301230ec2b06c681097", | |
| "tweak": "125fd8f86c787e2d", | |
| "msg": [0, 9, 3, 9, 2], | |
| "ct": [15, 2, 13, 11, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 17, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [0, 0, 0, 0, 0], | |
| "ct": [6, 6, 0, 5, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 18, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [15, 15, 15, 15, 15], | |
| "ct": [14, 6, 0, 9, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 19, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [8, 0, 8, 0, 0], | |
| "ct": [14, 10, 1, 8, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 20, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [7, 15, 7, 15, 15], | |
| "ct": [15, 4, 4, 15, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 21, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [14, 13, 6, 5, 15], | |
| "ct": [4, 3, 8, 10, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 22, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [15, 11, 12, 12, 5], | |
| "ct": [0, 2, 5, 4, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 23, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [5, 6, 13, 4, 6], | |
| "ct": [9, 13, 15, 0, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 24, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [3, 13, 14, 7, 10], | |
| "ct": [14, 3, 13, 15, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 25, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [9, 11, 0, 9, 12], | |
| "ct": [9, 2, 2, 8, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 26, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [6, 8, 5, 6, 0], | |
| "ct": [9, 9, 7, 7, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 27, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [14, 4, 15, 15, 11], | |
| "ct": [7, 15, 13, 1, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 28, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [3, 12, 10, 9, 4], | |
| "ct": [14, 1, 9, 14, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 29, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [2, 3, 1, 4, 12], | |
| "ct": [0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 30, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [0, 13, 2, 4, 1], | |
| "ct": [15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 31, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [4, 8, 6, 10, 14], | |
| "ct": [8, 0, 8, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 32, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [8, 9, 0, 0, 1], | |
| "ct": [7, 15, 7, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 33, | |
| "comment": "y = 0 and (y + a) % radix**2 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "4b01c6447e7de723bbadfde929", | |
| "msg": [0, 0, 9, 1, 14], | |
| "ct": [0, 15, 1, 15, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 34, | |
| "comment": "y = 0 and a = 1 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "4b01c6447e7de723bbadfde929", | |
| "msg": [0, 1, 9, 1, 14], | |
| "ct": [15, 15, 7, 3, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 35, | |
| "comment": "y = 0 and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "4b01c6447e7de723bbadfde929", | |
| "msg": [8, 0, 9, 1, 14], | |
| "ct": [5, 14, 12, 8, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 36, | |
| "comment": "y = 0 and (y + a) % radix**2 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "4b01c6447e7de723bbadfde929", | |
| "msg": [15, 15, 9, 1, 14], | |
| "ct": [6, 0, 10, 7, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 37, | |
| "comment": "y = 1 and a = 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "834d5f8b36a52a9ca1cb7172cb", | |
| "msg": [0, 0, 9, 10, 8], | |
| "ct": [0, 11, 7, 12, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 38, | |
| "comment": "y = 1 and a = 1 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "834d5f8b36a52a9ca1cb7172cb", | |
| "msg": [0, 1, 9, 10, 8], | |
| "ct": [4, 1, 11, 7, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 39, | |
| "comment": "y = 1 and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "834d5f8b36a52a9ca1cb7172cb", | |
| "msg": [8, 0, 9, 10, 8], | |
| "ct": [7, 10, 15, 7, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 40, | |
| "comment": "y = 1 and (y + a) % radix**2 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "834d5f8b36a52a9ca1cb7172cb", | |
| "msg": [15, 14, 9, 10, 8], | |
| "ct": [4, 11, 7, 7, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 41, | |
| "comment": "y = 1 and (y + a) % radix**2 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "834d5f8b36a52a9ca1cb7172cb", | |
| "msg": [15, 15, 9, 10, 8], | |
| "ct": [12, 4, 13, 13, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 42, | |
| "comment": "y is maximal and (y + a) % radix**2 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "f4bca30f483ee0589891ad27ac", | |
| "msg": [12, 15, 7, 0, 4], | |
| "ct": [13, 2, 1, 5, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 43, | |
| "comment": "y is maximal and (y + a) % radix**2 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "f4bca30f483ee0589891ad27ac", | |
| "msg": [15, 15, 8, 1, 5], | |
| "ct": [2, 7, 10, 3, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 44, | |
| "comment": "y is maximal and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "f4bca30f483ee0589891ad27ac", | |
| "msg": [3, 8, 2, 5, 6], | |
| "ct": [15, 12, 11, 15, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 45, | |
| "comment": "y is maximal and a is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "f4bca30f483ee0589891ad27ac", | |
| "msg": [4, 5, 2, 3, 2], | |
| "ct": [11, 10, 14, 6, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 46, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "030d96fd8193bdf436c4e3ac09", | |
| "msg": [7, 3, 3, 8, 3], | |
| "ct": [15, 0, 14, 13, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 47, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "030d96fd8193bdf436c4e3ac09", | |
| "msg": [2, 9, 3, 2, 9], | |
| "ct": [15, 1, 12, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 48, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**2 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "030d96fd8193bdf436c4e3ac09", | |
| "msg": [9, 11, 1, 1, 12], | |
| "ct": [15, 15, 2, 12, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 49, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**2 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "030d96fd8193bdf436c4e3ac09", | |
| "msg": [14, 13, 3, 5, 5], | |
| "ct": [0, 0, 7, 8, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 50, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "030d96fd8193bdf436c4e3ac09", | |
| "msg": [1, 7, 14, 9, 9], | |
| "ct": [7, 0, 13, 10, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 51, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "030d96fd8193bdf436c4e3ac09", | |
| "msg": [9, 6, 5, 1, 3], | |
| "ct": [14, 15, 9, 0, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 52, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**2 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "728894a9c080f352efad91fb19", | |
| "msg": [0, 0, 14, 1, 4], | |
| "ct": [6, 9, 5, 10, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 53, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**2 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "728894a9c080f352efad91fb19", | |
| "msg": [0, 1, 14, 1, 4], | |
| "ct": [15, 12, 7, 2, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 54, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "728894a9c080f352efad91fb19", | |
| "msg": [8, 0, 14, 1, 4], | |
| "ct": [6, 1, 15, 2, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 55, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "728894a9c080f352efad91fb19", | |
| "msg": [15, 15, 14, 1, 4], | |
| "ct": [11, 0, 10, 8, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 56, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "8d8a7cd63e6554b77d0345f3d799bfad", | |
| "tweak": "ea7fef1b2f555ad8", | |
| "msg": [-1, 9, 6, 1, 3], | |
| "ct": [8, 2, 7, 3, 1], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 57, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "8d8a7cd63e6554b77d0345f3d799bfad", | |
| "tweak": "ea7fef1b2f555ad8", | |
| "msg": [4, -1, 6, 1, 3], | |
| "ct": [1, 5, 8, 1, 7], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 58, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "8d8a7cd63e6554b77d0345f3d799bfad", | |
| "tweak": "ea7fef1b2f555ad8", | |
| "msg": [4, 9, 6, 1, -1], | |
| "ct": [3, 1, 10, 15, 1], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 59, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "0113ee1b77dcd12f5f686ca14aa70c85", | |
| "tweak": "5878ea15549455b9", | |
| "msg": [16, 7, 10, 2, 8], | |
| "ct": [12, 1, 5, 7, 15], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 60, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "0113ee1b77dcd12f5f686ca14aa70c85", | |
| "tweak": "5878ea15549455b9", | |
| "msg": [10, 16, 10, 2, 8], | |
| "ct": [7, 6, 8, 9, 6], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 61, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "0113ee1b77dcd12f5f686ca14aa70c85", | |
| "tweak": "5878ea15549455b9", | |
| "msg": [10, 7, 10, 2, 16], | |
| "ct": [13, 0, 8, 11, 1], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 6, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 62, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "474bbf2aff5c252419c49a07d50e2bdf", | |
| "tweak": "d64296c362368a3d", | |
| "msg": [7, 4, 2, 7, 10, 1], | |
| "ct": [12, 8, 4, 6, 2, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 63, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [0, 0, 0, 0, 0, 0], | |
| "ct": [6, 12, 3, 9, 7, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 64, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [15, 15, 15, 15, 15, 15], | |
| "ct": [2, 2, 15, 14, 3, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 65, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [8, 0, 0, 8, 0, 0], | |
| "ct": [0, 6, 6, 12, 14, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 66, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [7, 15, 15, 7, 15, 15], | |
| "ct": [0, 6, 9, 0, 5, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 67, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [5, 13, 11, 10, 3, 8], | |
| "ct": [4, 8, 10, 6, 14, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 68, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [10, 7, 14, 9, 7, 7], | |
| "ct": [3, 3, 5, 0, 4, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 69, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [8, 13, 9, 4, 11, 2], | |
| "ct": [11, 8, 7, 4, 15, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 70, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [14, 10, 14, 9, 9, 15], | |
| "ct": [15, 0, 7, 12, 7, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 71, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [2, 5, 4, 6, 1, 2], | |
| "ct": [12, 15, 0, 9, 3, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 72, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [7, 14, 3, 13, 6, 12], | |
| "ct": [11, 12, 1, 14, 15, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 73, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [13, 15, 15, 4, 12, 7], | |
| "ct": [6, 5, 15, 2, 4, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 74, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [2, 13, 1, 4, 6, 0], | |
| "ct": [0, 7, 2, 10, 10, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 75, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [8, 4, 7, 9, 11, 9], | |
| "ct": [0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 76, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [6, 1, 6, 12, 4, 8], | |
| "ct": [15, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 77, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [10, 12, 11, 6, 3, 3], | |
| "ct": [8, 0, 0, 8, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 78, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [11, 13, 3, 1, 14, 1], | |
| "ct": [7, 15, 15, 7, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 79, | |
| "comment": "y = 0 and (y + a) % radix**3 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "204222088d103e7e875476c274", | |
| "msg": [12, 11, 11, 5, 5, 7], | |
| "ct": [14, 14, 11, 6, 3, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 80, | |
| "comment": "y = 0 and a = 1 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "204222088d103e7e875476c274", | |
| "msg": [7, 11, 8, 7, 2, 8], | |
| "ct": [5, 6, 9, 9, 10, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 81, | |
| "comment": "y = 0 and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "204222088d103e7e875476c274", | |
| "msg": [15, 4, 2, 5, 12, 10], | |
| "ct": [1, 15, 7, 11, 11, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 82, | |
| "comment": "y = 0 and (y + a) % radix**3 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "204222088d103e7e875476c274", | |
| "msg": [12, 5, 9, 14, 10, 8], | |
| "ct": [4, 4, 0, 10, 13, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 83, | |
| "comment": "y = 1 and a = 0 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "8fba5d6e4455e1b4c384d58019", | |
| "msg": [6, 12, 1, 15, 1, 14], | |
| "ct": [14, 12, 3, 0, 0, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 84, | |
| "comment": "y = 1 and a = 1 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "8fba5d6e4455e1b4c384d58019", | |
| "msg": [5, 9, 9, 6, 4, 15], | |
| "ct": [14, 12, 3, 0, 0, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 85, | |
| "comment": "y = 1 and a has large Hamming weight in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "8fba5d6e4455e1b4c384d58019", | |
| "msg": [2, 14, 9, 12, 4, 10], | |
| "ct": [14, 12, 3, 8, 0, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 86, | |
| "comment": "y = 1 and (y + a) % radix**3 is maximal in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "8fba5d6e4455e1b4c384d58019", | |
| "msg": [4, 2, 8, 11, 1, 10], | |
| "ct": [14, 12, 3, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 87, | |
| "comment": "y = 1 and (y + a) % radix**3 == 0 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "8fba5d6e4455e1b4c384d58019", | |
| "msg": [5, 11, 14, 3, 14, 12], | |
| "ct": [14, 12, 3, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 88, | |
| "comment": "y is maximal and (y + a) % radix**3 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "2ed2e71ce908bee383d22a15eb", | |
| "msg": [0, 0, 0, 8, 13, 10], | |
| "ct": [2, 0, 2, 11, 6, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 89, | |
| "comment": "y is maximal and (y + a) % radix**3 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "2ed2e71ce908bee383d22a15eb", | |
| "msg": [0, 0, 1, 8, 13, 10], | |
| "ct": [1, 5, 9, 13, 1, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 90, | |
| "comment": "y is maximal and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "2ed2e71ce908bee383d22a15eb", | |
| "msg": [8, 0, 0, 8, 13, 10], | |
| "ct": [4, 6, 3, 15, 10, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 91, | |
| "comment": "y is maximal and a is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "2ed2e71ce908bee383d22a15eb", | |
| "msg": [15, 15, 15, 8, 13, 10], | |
| "ct": [14, 12, 10, 12, 9, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 92, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "a30c4bc738e4fb50f3eef89953", | |
| "msg": [7, 0, 1, 1, 13, 11], | |
| "ct": [15, 15, 0, 4, 9, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 93, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "a30c4bc738e4fb50f3eef89953", | |
| "msg": [0, 12, 5, 3, 3, 6], | |
| "ct": [15, 15, 1, 2, 12, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 94, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**3 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "a30c4bc738e4fb50f3eef89953", | |
| "msg": [5, 5, 0, 3, 11, 10], | |
| "ct": [15, 15, 15, 0, 8, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 95, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**3 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "a30c4bc738e4fb50f3eef89953", | |
| "msg": [13, 3, 12, 0, 3, 1], | |
| "ct": [0, 0, 0, 12, 4, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 96, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "a30c4bc738e4fb50f3eef89953", | |
| "msg": [14, 6, 15, 7, 5, 9], | |
| "ct": [7, 15, 0, 5, 9, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 97, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "a30c4bc738e4fb50f3eef89953", | |
| "msg": [10, 15, 5, 13, 13, 14], | |
| "ct": [15, 14, 15, 12, 4, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 98, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**3 is maximal in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "2589077d282062ef6c822e87ce", | |
| "msg": [6, 14, 15, 4, 8, 11], | |
| "ct": [8, 4, 15, 13, 6, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 99, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**3 == 0 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "2589077d282062ef6c822e87ce", | |
| "msg": [3, 8, 6, 2, 9, 6], | |
| "ct": [7, 8, 9, 8, 11, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 100, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "2589077d282062ef6c822e87ce", | |
| "msg": [10, 9, 4, 15, 6, 5], | |
| "ct": [11, 12, 14, 4, 2, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 101, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "2589077d282062ef6c822e87ce", | |
| "msg": [1, 15, 14, 2, 0, 7], | |
| "ct": [7, 13, 12, 1, 11, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 102, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "ed4561abc903a9e722ddb8aa94cc662d", | |
| "tweak": "975f6d7701e004f7", | |
| "msg": [-1, 2, 4, 12, 15, 1], | |
| "ct": [7, 8, 15, 8, 12, 3], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 103, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "ed4561abc903a9e722ddb8aa94cc662d", | |
| "tweak": "975f6d7701e004f7", | |
| "msg": [0, 2, -1, 12, 15, 1], | |
| "ct": [1, 15, 7, 13, 14, 6], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 104, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "ed4561abc903a9e722ddb8aa94cc662d", | |
| "tweak": "975f6d7701e004f7", | |
| "msg": [0, 2, 4, 12, 15, -1], | |
| "ct": [9, 12, 1, 4, 7, 13], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 105, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "fb07160f0b44dc09a67625baecbca446", | |
| "tweak": "7c0adc6320ac7819", | |
| "msg": [16, 10, 14, 11, 8, 15], | |
| "ct": [7, 10, 15, 0, 14, 0], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 106, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "fb07160f0b44dc09a67625baecbca446", | |
| "tweak": "7c0adc6320ac7819", | |
| "msg": [14, 10, 16, 11, 8, 15], | |
| "ct": [8, 3, 4, 11, 0, 10], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 107, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "fb07160f0b44dc09a67625baecbca446", | |
| "tweak": "7c0adc6320ac7819", | |
| "msg": [14, 10, 14, 11, 8, 16], | |
| "ct": [8, 15, 6, 15, 11, 2], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 7, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 108, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "20b2c30d44c72c32a4564541332f45c3", | |
| "tweak": "3de9de4b8736f463", | |
| "msg": [1, 11, 6, 6, 5, 8, 2], | |
| "ct": [7, 6, 8, 15, 0, 2, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 109, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [0, 0, 0, 0, 0, 0, 0], | |
| "ct": [1, 15, 0, 3, 5, 2, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 110, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [15, 15, 15, 15, 15, 15, 15], | |
| "ct": [15, 2, 14, 5, 5, 6, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 111, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [8, 0, 0, 8, 0, 0, 0], | |
| "ct": [6, 1, 5, 13, 4, 13, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 112, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [7, 15, 15, 7, 15, 15, 15], | |
| "ct": [10, 10, 5, 6, 3, 8, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 113, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [15, 5, 7, 5, 1, 2, 12], | |
| "ct": [6, 3, 11, 1, 0, 1, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 114, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [8, 7, 6, 12, 9, 0, 6], | |
| "ct": [1, 13, 1, 8, 8, 15, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 115, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [5, 2, 6, 6, 14, 2, 3], | |
| "ct": [9, 10, 11, 10, 0, 0, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 116, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [11, 5, 7, 1, 11, 0, 6], | |
| "ct": [10, 15, 8, 4, 6, 14, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 117, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [7, 3, 6, 14, 3, 10, 8], | |
| "ct": [5, 0, 5, 3, 14, 9, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 118, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [10, 0, 14, 12, 12, 6, 13], | |
| "ct": [9, 7, 10, 9, 5, 14, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 119, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [3, 1, 5, 8, 11, 11, 8], | |
| "ct": [0, 6, 13, 15, 14, 0, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 120, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [10, 2, 7, 4, 13, 2, 8], | |
| "ct": [1, 2, 6, 7, 2, 10, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 121, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [1, 10, 0, 15, 9, 15, 3], | |
| "ct": [0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 122, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [8, 6, 6, 0, 12, 9, 13], | |
| "ct": [15, 15, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 123, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [6, 3, 0, 6, 1, 1, 3], | |
| "ct": [8, 0, 0, 8, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 124, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [15, 8, 7, 10, 15, 11, 11], | |
| "ct": [7, 15, 15, 7, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 125, | |
| "comment": "y = 0 and (y + a) % radix**3 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "f34be86fea1bbbfd8a4da54ea4", | |
| "msg": [0, 0, 0, 4, 1, 15, 8], | |
| "ct": [15, 6, 2, 12, 11, 6, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 126, | |
| "comment": "y = 0 and a = 1 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "f34be86fea1bbbfd8a4da54ea4", | |
| "msg": [0, 0, 1, 4, 1, 15, 8], | |
| "ct": [8, 7, 12, 15, 11, 5, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 127, | |
| "comment": "y = 0 and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "f34be86fea1bbbfd8a4da54ea4", | |
| "msg": [8, 0, 0, 4, 1, 15, 8], | |
| "ct": [15, 5, 8, 2, 12, 13, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 128, | |
| "comment": "y = 0 and (y + a) % radix**3 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "f34be86fea1bbbfd8a4da54ea4", | |
| "msg": [15, 15, 15, 4, 1, 15, 8], | |
| "ct": [3, 13, 4, 6, 13, 6, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 129, | |
| "comment": "y = 1 and a = 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "a57620215f0e80b432fd8404b3", | |
| "msg": [0, 3, 7, 5, 0, 12, 12], | |
| "ct": [8, 3, 11, 9, 13, 12, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 130, | |
| "comment": "y = 1 and a = 1 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "a57620215f0e80b432fd8404b3", | |
| "msg": [10, 11, 6, 2, 15, 14, 11], | |
| "ct": [12, 10, 4, 14, 11, 10, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 131, | |
| "comment": "y = 1 and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "a57620215f0e80b432fd8404b3", | |
| "msg": [3, 3, 15, 11, 2, 8, 6], | |
| "ct": [12, 14, 12, 1, 1, 3, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 132, | |
| "comment": "y = 1 and (y + a) % radix**3 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "a57620215f0e80b432fd8404b3", | |
| "msg": [4, 10, 14, 6, 14, 3, 9], | |
| "ct": [0, 4, 15, 5, 1, 9, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 133, | |
| "comment": "y = 1 and (y + a) % radix**3 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "a57620215f0e80b432fd8404b3", | |
| "msg": [14, 5, 6, 8, 5, 11, 4], | |
| "ct": [13, 0, 2, 5, 11, 3, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 134, | |
| "comment": "y is maximal and (y + a) % radix**3 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "8caf4297fd70595bc01de714d1", | |
| "msg": [12, 0, 10, 2, 10, 3, 13], | |
| "ct": [15, 15, 15, 0, 5, 14, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 135, | |
| "comment": "y is maximal and (y + a) % radix**3 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "8caf4297fd70595bc01de714d1", | |
| "msg": [4, 13, 9, 3, 14, 13, 7], | |
| "ct": [0, 0, 0, 11, 15, 12, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 136, | |
| "comment": "y is maximal and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "8caf4297fd70595bc01de714d1", | |
| "msg": [0, 5, 6, 3, 14, 3, 6], | |
| "ct": [7, 15, 15, 14, 1, 10, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 137, | |
| "comment": "y is maximal and a is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "8caf4297fd70595bc01de714d1", | |
| "msg": [15, 7, 14, 7, 0, 3, 2], | |
| "ct": [15, 15, 14, 1, 1, 3, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 138, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "f8f0ab1f906393e88d7540a4d5", | |
| "msg": [1, 9, 7, 3, 10, 3, 14], | |
| "ct": [7, 6, 5, 5, 6, 5, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 139, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "f8f0ab1f906393e88d7540a4d5", | |
| "msg": [0, 14, 14, 0, 4, 5, 3], | |
| "ct": [15, 1, 10, 5, 2, 10, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 140, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**4 is maximal in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "f8f0ab1f906393e88d7540a4d5", | |
| "msg": [6, 13, 5, 7, 9, 13, 4], | |
| "ct": [10, 12, 13, 2, 14, 7, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 141, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**4 == 0 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "f8f0ab1f906393e88d7540a4d5", | |
| "msg": [1, 1, 15, 13, 13, 3, 10], | |
| "ct": [1, 12, 8, 2, 12, 6, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 142, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "f8f0ab1f906393e88d7540a4d5", | |
| "msg": [13, 7, 8, 11, 6, 10, 2], | |
| "ct": [6, 11, 4, 1, 12, 5, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 143, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "f8f0ab1f906393e88d7540a4d5", | |
| "msg": [8, 10, 1, 15, 4, 7, 1], | |
| "ct": [10, 10, 12, 10, 7, 13, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 144, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**3 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "91fd0ef5d673dae1f1f6ebc5c5", | |
| "msg": [8, 15, 15, 15, 5, 5, 2], | |
| "ct": [10, 9, 2, 10, 2, 0, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 145, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**3 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "91fd0ef5d673dae1f1f6ebc5c5", | |
| "msg": [13, 6, 4, 14, 1, 6, 5], | |
| "ct": [14, 6, 9, 8, 0, 14, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 146, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "91fd0ef5d673dae1f1f6ebc5c5", | |
| "msg": [9, 14, 7, 7, 7, 5, 14], | |
| "ct": [6, 13, 6, 12, 13, 2, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 147, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "91fd0ef5d673dae1f1f6ebc5c5", | |
| "msg": [2, 11, 14, 3, 11, 11, 6], | |
| "ct": [10, 12, 8, 4, 6, 15, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 148, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "ea35a8f24783be82abd93cc74e4944cb", | |
| "tweak": "a704f808982bb10f", | |
| "msg": [-1, 10, 1, 13, 13, 2, 4], | |
| "ct": [11, 1, 4, 4, 4, 15, 11], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 149, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "ea35a8f24783be82abd93cc74e4944cb", | |
| "tweak": "a704f808982bb10f", | |
| "msg": [10, 10, -1, 13, 13, 2, 4], | |
| "ct": [2, 15, 12, 10, 12, 11, 9], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 150, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "ea35a8f24783be82abd93cc74e4944cb", | |
| "tweak": "a704f808982bb10f", | |
| "msg": [10, 10, 1, 13, 13, 2, -1], | |
| "ct": [5, 3, 12, 8, 7, 2, 5], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 151, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "c8d57afa97d5ab9961b3558941eef225", | |
| "tweak": "bf09bc27dc18b514", | |
| "msg": [16, 0, 3, 5, 13, 6, 1], | |
| "ct": [8, 12, 6, 7, 3, 2, 3], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 152, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "c8d57afa97d5ab9961b3558941eef225", | |
| "tweak": "bf09bc27dc18b514", | |
| "msg": [14, 0, 16, 5, 13, 6, 1], | |
| "ct": [14, 10, 1, 7, 6, 6, 15], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 153, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "c8d57afa97d5ab9961b3558941eef225", | |
| "tweak": "bf09bc27dc18b514", | |
| "msg": [14, 0, 3, 5, 13, 6, 16], | |
| "ct": [11, 4, 10, 15, 8, 10, 2], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 8, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 154, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "60d83b209822c0d9b7033dca86444fa1", | |
| "tweak": "23ef05b155a108c4", | |
| "msg": [1, 10, 13, 5, 14, 10, 8, 7], | |
| "ct": [10, 3, 13, 15, 12, 10, 3, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 155, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [1, 5, 5, 9, 11, 5, 8, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 156, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [15, 15, 15, 15, 15, 15, 15, 15], | |
| "ct": [15, 9, 12, 6, 3, 14, 9, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 157, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [8, 0, 0, 0, 8, 0, 0, 0], | |
| "ct": [13, 5, 4, 9, 4, 12, 0, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 158, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [7, 15, 15, 15, 7, 15, 15, 15], | |
| "ct": [13, 3, 4, 6, 2, 7, 1, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 159, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [10, 14, 11, 15, 7, 3, 11, 11], | |
| "ct": [5, 4, 12, 7, 12, 1, 1, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 160, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [4, 1, 0, 5, 14, 0, 1, 9], | |
| "ct": [4, 7, 5, 4, 3, 5, 3, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 161, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [4, 2, 1, 6, 14, 1, 10, 10], | |
| "ct": [15, 15, 5, 14, 2, 6, 5, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 162, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [10, 7, 15, 13, 1, 4, 8, 4], | |
| "ct": [11, 14, 2, 10, 14, 14, 3, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 163, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [5, 6, 2, 10, 6, 0, 10, 15], | |
| "ct": [2, 13, 1, 1, 15, 15, 8, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 164, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [7, 2, 9, 8, 10, 10, 3, 2], | |
| "ct": [14, 7, 15, 6, 9, 8, 15, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 165, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [2, 9, 4, 11, 12, 6, 1, 6], | |
| "ct": [3, 12, 8, 9, 1, 1, 14, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 166, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [9, 4, 4, 10, 4, 11, 15, 6], | |
| "ct": [3, 0, 8, 9, 1, 13, 10, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 167, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [4, 0, 12, 0, 7, 13, 3, 12], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 168, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [0, 6, 2, 14, 12, 4, 13, 6], | |
| "ct": [15, 15, 15, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 169, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [0, 7, 14, 9, 7, 13, 5, 12], | |
| "ct": [8, 0, 0, 0, 8, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 170, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [6, 8, 5, 8, 4, 0, 9, 2], | |
| "ct": [7, 15, 15, 15, 7, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 171, | |
| "comment": "y = 0 and (y + a) % radix**4 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "d5de914b6eb8729bf7257ed196", | |
| "msg": [12, 8, 7, 8, 15, 4, 2, 4], | |
| "ct": [0, 0, 0, 0, 15, 12, 8, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 172, | |
| "comment": "y = 0 and a = 1 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "d5de914b6eb8729bf7257ed196", | |
| "msg": [15, 15, 14, 13, 11, 5, 1, 6], | |
| "ct": [0, 0, 0, 1, 15, 9, 7, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 173, | |
| "comment": "y = 0 and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "d5de914b6eb8729bf7257ed196", | |
| "msg": [13, 11, 2, 9, 1, 4, 9, 10], | |
| "ct": [8, 0, 0, 0, 15, 4, 13, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 174, | |
| "comment": "y = 0 and (y + a) % radix**4 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "d5de914b6eb8729bf7257ed196", | |
| "msg": [6, 9, 10, 8, 1, 13, 0, 12], | |
| "ct": [15, 15, 15, 15, 3, 9, 5, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 175, | |
| "comment": "y = 1 and a = 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "7cdc9ffddbdf1be572c5da930f", | |
| "msg": [15, 5, 15, 5, 11, 4, 8, 5], | |
| "ct": [9, 2, 11, 1, 3, 10, 6, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 176, | |
| "comment": "y = 1 and a = 1 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "7cdc9ffddbdf1be572c5da930f", | |
| "msg": [5, 3, 5, 1, 8, 11, 8, 13], | |
| "ct": [10, 2, 10, 2, 13, 2, 4, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 177, | |
| "comment": "y = 1 and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "7cdc9ffddbdf1be572c5da930f", | |
| "msg": [9, 6, 8, 13, 4, 5, 0, 3], | |
| "ct": [8, 5, 4, 3, 5, 11, 2, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 178, | |
| "comment": "y = 1 and (y + a) % radix**4 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "7cdc9ffddbdf1be572c5da930f", | |
| "msg": [3, 1, 3, 14, 4, 15, 3, 7], | |
| "ct": [7, 14, 2, 15, 9, 0, 5, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 179, | |
| "comment": "y = 1 and (y + a) % radix**4 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "7cdc9ffddbdf1be572c5da930f", | |
| "msg": [1, 10, 3, 7, 0, 11, 5, 10], | |
| "ct": [1, 11, 10, 1, 12, 1, 9, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 180, | |
| "comment": "y is maximal and (y + a) % radix**4 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "0f678befa20a714d7624548ce8", | |
| "msg": [0, 0, 0, 0, 13, 12, 7, 10], | |
| "ct": [9, 7, 0, 4, 15, 0, 8, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 181, | |
| "comment": "y is maximal and (y + a) % radix**4 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "0f678befa20a714d7624548ce8", | |
| "msg": [0, 0, 0, 1, 13, 12, 7, 10], | |
| "ct": [12, 10, 10, 10, 5, 4, 7, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 182, | |
| "comment": "y is maximal and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "0f678befa20a714d7624548ce8", | |
| "msg": [8, 0, 0, 0, 13, 12, 7, 10], | |
| "ct": [15, 6, 8, 10, 0, 4, 7, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 183, | |
| "comment": "y is maximal and a is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "0f678befa20a714d7624548ce8", | |
| "msg": [15, 15, 15, 15, 13, 12, 7, 10], | |
| "ct": [8, 8, 7, 0, 12, 12, 5, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 184, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "c436ff71b64446d4449d280c87", | |
| "msg": [8, 8, 3, 15, 4, 0, 0, 5], | |
| "ct": [6, 13, 15, 15, 15, 14, 2, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 185, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "c436ff71b64446d4449d280c87", | |
| "msg": [0, 2, 14, 6, 10, 1, 3, 3], | |
| "ct": [12, 0, 3, 15, 7, 5, 5, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 186, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**4 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "c436ff71b64446d4449d280c87", | |
| "msg": [15, 15, 10, 8, 4, 8, 10, 15], | |
| "ct": [7, 8, 8, 7, 2, 15, 5, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 187, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**4 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "c436ff71b64446d4449d280c87", | |
| "msg": [2, 3, 9, 0, 5, 15, 0, 2], | |
| "ct": [0, 1, 11, 13, 15, 0, 12, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 188, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "c436ff71b64446d4449d280c87", | |
| "msg": [11, 2, 7, 14, 3, 13, 7, 3], | |
| "ct": [5, 4, 2, 9, 15, 1, 13, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 189, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "c436ff71b64446d4449d280c87", | |
| "msg": [2, 15, 5, 9, 11, 13, 9, 11], | |
| "ct": [2, 8, 0, 13, 14, 8, 14, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 190, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**4 is maximal in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "16d8d07807292aff474530e7bf", | |
| "msg": [10, 2, 9, 6, 10, 5, 6, 3], | |
| "ct": [5, 7, 2, 13, 8, 6, 12, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 191, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**4 == 0 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "16d8d07807292aff474530e7bf", | |
| "msg": [13, 10, 8, 13, 3, 7, 1, 1], | |
| "ct": [14, 14, 15, 15, 8, 6, 2, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 192, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "16d8d07807292aff474530e7bf", | |
| "msg": [10, 13, 15, 12, 2, 4, 10, 14], | |
| "ct": [15, 3, 11, 4, 10, 5, 1, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 193, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "16d8d07807292aff474530e7bf", | |
| "msg": [5, 3, 1, 14, 13, 1, 3, 4], | |
| "ct": [4, 14, 15, 8, 0, 11, 8, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 194, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "ebc261665fab01ae2bfe156e54de3006", | |
| "tweak": "5080dd547abdeddd", | |
| "msg": [-1, 1, 15, 14, 5, 15, 6, 13], | |
| "ct": [7, 9, 9, 0, 12, 4, 12, 15], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 195, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "ebc261665fab01ae2bfe156e54de3006", | |
| "tweak": "5080dd547abdeddd", | |
| "msg": [8, 1, -1, 14, 5, 15, 6, 13], | |
| "ct": [8, 5, 15, 5, 11, 13, 2, 8], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 196, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "ebc261665fab01ae2bfe156e54de3006", | |
| "tweak": "5080dd547abdeddd", | |
| "msg": [8, 1, 15, 14, 5, 15, 6, -1], | |
| "ct": [15, 0, 7, 1, 6, 9, 3, 6], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 197, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "4f8bff89ddec5052907375e534ff7598", | |
| "tweak": "d534e738715bd32e", | |
| "msg": [16, 9, 6, 2, 7, 10, 4, 4], | |
| "ct": [4, 6, 6, 15, 4, 4, 13, 14], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 198, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "4f8bff89ddec5052907375e534ff7598", | |
| "tweak": "d534e738715bd32e", | |
| "msg": [12, 9, 16, 2, 7, 10, 4, 4], | |
| "ct": [13, 5, 7, 10, 10, 13, 8, 4], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 199, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "4f8bff89ddec5052907375e534ff7598", | |
| "tweak": "d534e738715bd32e", | |
| "msg": [12, 9, 6, 2, 7, 10, 4, 16], | |
| "ct": [10, 2, 15, 3, 0, 8, 11, 0], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 9, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 200, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "2215b9528000f5f306fcdfe2969c6785", | |
| "tweak": "0539d85c7b076285", | |
| "msg": [15, 13, 8, 10, 6, 4, 11, 7, 10], | |
| "ct": [13, 15, 3, 5, 14, 9, 7, 14, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 201, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [2, 13, 3, 14, 3, 4, 8, 3, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 202, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "ct": [4, 6, 12, 2, 10, 12, 1, 13, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 203, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [8, 0, 0, 0, 8, 0, 0, 0, 0], | |
| "ct": [9, 8, 7, 0, 12, 12, 12, 8, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 204, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [7, 15, 15, 15, 7, 15, 15, 15, 15], | |
| "ct": [3, 13, 9, 7, 14, 12, 13, 0, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 205, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [13, 15, 3, 5, 9, 0, 5, 6, 6], | |
| "ct": [10, 6, 8, 3, 2, 10, 0, 10, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 206, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [6, 0, 4, 8, 0, 11, 14, 11, 12], | |
| "ct": [10, 8, 8, 6, 2, 11, 4, 11, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 207, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [8, 13, 2, 1, 15, 0, 5, 14, 10], | |
| "ct": [9, 4, 8, 13, 7, 13, 4, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 208, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [10, 3, 14, 11, 5, 7, 5, 15, 10], | |
| "ct": [0, 4, 6, 12, 0, 3, 10, 8, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 209, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [10, 15, 0, 1, 11, 7, 11, 10, 8], | |
| "ct": [9, 11, 12, 9, 4, 15, 7, 12, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 210, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [3, 12, 8, 0, 14, 5, 0, 7, 15], | |
| "ct": [9, 15, 12, 9, 7, 4, 3, 14, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 211, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [15, 10, 12, 14, 15, 9, 8, 9, 12], | |
| "ct": [7, 1, 1, 5, 5, 10, 15, 7, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 212, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [15, 6, 12, 8, 14, 8, 14, 14, 5], | |
| "ct": [13, 8, 2, 14, 7, 14, 0, 6, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 213, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [3, 7, 4, 5, 15, 3, 2, 5, 5], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 214, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [14, 13, 10, 13, 15, 11, 0, 1, 10], | |
| "ct": [15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 215, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [14, 11, 10, 15, 4, 9, 4, 13, 6], | |
| "ct": [8, 0, 0, 0, 8, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 216, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [2, 7, 12, 1, 9, 9, 1, 8, 6], | |
| "ct": [7, 15, 15, 15, 7, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 217, | |
| "comment": "y = 0 and (y + a) % radix**4 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "abbce6f8ea8e5f6b4ec139a6", | |
| "msg": [15, 0, 2, 1, 4, 14, 7, 10, 13], | |
| "ct": [4, 0, 15, 6, 6, 12, 10, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 218, | |
| "comment": "y = 0 and a = 1 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "abbce6f8ea8e5f6b4ec139a6", | |
| "msg": [6, 3, 3, 6, 5, 2, 7, 11, 11], | |
| "ct": [9, 10, 1, 14, 10, 2, 5, 14, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 219, | |
| "comment": "y = 0 and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "abbce6f8ea8e5f6b4ec139a6", | |
| "msg": [10, 4, 7, 14, 7, 9, 7, 7, 0], | |
| "ct": [14, 15, 2, 10, 7, 15, 2, 15, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 220, | |
| "comment": "y = 0 and (y + a) % radix**4 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "abbce6f8ea8e5f6b4ec139a6", | |
| "msg": [8, 1, 8, 14, 7, 6, 9, 5, 3], | |
| "ct": [9, 12, 3, 2, 13, 9, 14, 4, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 221, | |
| "comment": "y = 1 and a = 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "188662ad7ba8e7b0c4c9c94a", | |
| "msg": [2, 2, 10, 12, 2, 4, 2, 13, 2], | |
| "ct": [7, 8, 7, 6, 0, 12, 14, 13, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 222, | |
| "comment": "y = 1 and a = 1 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "188662ad7ba8e7b0c4c9c94a", | |
| "msg": [10, 0, 10, 0, 1, 1, 14, 0, 2], | |
| "ct": [9, 15, 3, 13, 7, 11, 1, 9, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 223, | |
| "comment": "y = 1 and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "188662ad7ba8e7b0c4c9c94a", | |
| "msg": [10, 13, 6, 6, 0, 9, 15, 10, 4], | |
| "ct": [11, 2, 1, 11, 1, 0, 8, 7, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 224, | |
| "comment": "y = 1 and (y + a) % radix**4 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "188662ad7ba8e7b0c4c9c94a", | |
| "msg": [12, 6, 5, 9, 4, 14, 4, 13, 0], | |
| "ct": [7, 11, 10, 1, 0, 6, 4, 4, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 225, | |
| "comment": "y = 1 and (y + a) % radix**4 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "188662ad7ba8e7b0c4c9c94a", | |
| "msg": [7, 10, 1, 15, 3, 6, 11, 11, 8], | |
| "ct": [1, 2, 4, 8, 3, 11, 6, 4, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 226, | |
| "comment": "y is maximal and (y + a) % radix**4 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "cf0988adb3c6856dd4972302", | |
| "msg": [0, 4, 9, 5, 0, 7, 10, 0, 5], | |
| "ct": [0, 8, 9, 13, 1, 3, 15, 4, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 227, | |
| "comment": "y is maximal and (y + a) % radix**4 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "cf0988adb3c6856dd4972302", | |
| "msg": [8, 8, 2, 0, 8, 7, 9, 4, 0], | |
| "ct": [4, 4, 0, 12, 9, 9, 12, 11, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 228, | |
| "comment": "y is maximal and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "cf0988adb3c6856dd4972302", | |
| "msg": [11, 4, 1, 1, 5, 14, 9, 8, 9], | |
| "ct": [14, 15, 5, 9, 0, 9, 1, 4, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 229, | |
| "comment": "y is maximal and a is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "cf0988adb3c6856dd4972302", | |
| "msg": [15, 6, 11, 14, 0, 7, 11, 9, 10], | |
| "ct": [10, 14, 14, 14, 10, 12, 0, 12, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 230, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "a996bf55b8e87de96423c84b", | |
| "msg": [0, 6, 2, 14, 8, 1, 4, 4, 13], | |
| "ct": [15, 15, 15, 0, 1, 7, 5, 10, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 231, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "a996bf55b8e87de96423c84b", | |
| "msg": [5, 6, 11, 11, 1, 11, 15, 12, 5], | |
| "ct": [15, 15, 15, 1, 9, 14, 0, 10, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 232, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**4 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "a996bf55b8e87de96423c84b", | |
| "msg": [11, 8, 4, 1, 13, 6, 3, 14, 4], | |
| "ct": [15, 15, 15, 15, 0, 0, 6, 6, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 233, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**4 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "a996bf55b8e87de96423c84b", | |
| "msg": [3, 13, 3, 14, 2, 7, 6, 6, 13], | |
| "ct": [0, 0, 0, 0, 0, 13, 1, 13, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 234, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "a996bf55b8e87de96423c84b", | |
| "msg": [8, 0, 15, 6, 10, 9, 4, 2, 13], | |
| "ct": [7, 15, 15, 0, 8, 11, 12, 13, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 235, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "a996bf55b8e87de96423c84b", | |
| "msg": [11, 6, 3, 13, 12, 13, 11, 3, 12], | |
| "ct": [15, 15, 14, 15, 5, 15, 13, 13, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 236, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**4 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "bd49c0311aedd65269bf5b58", | |
| "msg": [11, 2, 5, 12, 4, 5, 14, 5, 13], | |
| "ct": [4, 10, 1, 15, 1, 12, 4, 8, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 237, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**4 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "bd49c0311aedd65269bf5b58", | |
| "msg": [9, 3, 4, 12, 1, 15, 4, 10, 15], | |
| "ct": [12, 5, 1, 7, 15, 6, 15, 11, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 238, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "bd49c0311aedd65269bf5b58", | |
| "msg": [2, 0, 12, 6, 5, 3, 15, 10, 8], | |
| "ct": [12, 5, 13, 14, 11, 6, 3, 10, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 239, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "bd49c0311aedd65269bf5b58", | |
| "msg": [2, 12, 14, 12, 11, 8, 7, 0, 4], | |
| "ct": [14, 4, 1, 12, 11, 13, 3, 9, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 240, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "7fd4e71784e95a3dd0b41315a67131d2", | |
| "tweak": "47d48ea4716ab8df", | |
| "msg": [-1, 3, 9, 6, 3, 11, 3, 9, 9], | |
| "ct": [10, 10, 11, 14, 9, 13, 14, 15, 14], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 241, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "7fd4e71784e95a3dd0b41315a67131d2", | |
| "tweak": "47d48ea4716ab8df", | |
| "msg": [6, 3, 9, -1, 3, 11, 3, 9, 9], | |
| "ct": [0, 2, 12, 8, 9, 9, 13, 11, 2], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 242, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "7fd4e71784e95a3dd0b41315a67131d2", | |
| "tweak": "47d48ea4716ab8df", | |
| "msg": [6, 3, 9, 6, 3, 11, 3, 9, -1], | |
| "ct": [5, 14, 6, 15, 9, 2, 3, 2, 3], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 243, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "78ca171b108679045db2c4cfa8329b6c", | |
| "tweak": "5fccededd60d3c43", | |
| "msg": [16, 5, 10, 11, 11, 11, 15, 7, 9], | |
| "ct": [9, 5, 9, 5, 15, 0, 2, 8, 1], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 244, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "78ca171b108679045db2c4cfa8329b6c", | |
| "tweak": "5fccededd60d3c43", | |
| "msg": [2, 5, 10, 16, 11, 11, 15, 7, 9], | |
| "ct": [10, 2, 10, 11, 6, 10, 13, 1, 9], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 245, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "78ca171b108679045db2c4cfa8329b6c", | |
| "tweak": "5fccededd60d3c43", | |
| "msg": [2, 5, 10, 11, 11, 11, 15, 7, 16], | |
| "ct": [14, 5, 1, 10, 4, 5, 8, 4, 5], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 10, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 246, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "5474525ca99fb5da2babdbd45c727d16", | |
| "tweak": "f2cb4d9ba04b81f8", | |
| "msg": [13, 8, 0, 12, 4, 13, 8, 0, 2, 6], | |
| "ct": [4, 8, 8, 14, 7, 9, 8, 1, 4, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 247, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [9, 10, 1, 0, 6, 7, 13, 0, 5, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 248, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "ct": [11, 5, 2, 3, 3, 0, 15, 3, 8, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 249, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [8, 0, 0, 0, 0, 8, 0, 0, 0, 0], | |
| "ct": [10, 5, 12, 10, 6, 9, 8, 3, 7, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 250, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [7, 15, 15, 15, 15, 7, 15, 15, 15, 15], | |
| "ct": [14, 6, 6, 14, 8, 14, 12, 7, 8, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 251, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [7, 10, 0, 2, 8, 8, 3, 11, 0, 5], | |
| "ct": [15, 7, 15, 4, 10, 14, 15, 1, 0, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 252, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [3, 5, 6, 12, 9, 8, 10, 3, 15, 0], | |
| "ct": [8, 13, 13, 7, 8, 10, 7, 14, 1, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 253, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [11, 11, 1, 15, 3, 11, 8, 5, 0, 10], | |
| "ct": [5, 12, 2, 1, 14, 5, 14, 4, 12, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 254, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [8, 5, 13, 5, 13, 13, 2, 15, 0, 9], | |
| "ct": [3, 13, 0, 14, 6, 15, 10, 10, 0, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 255, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [3, 7, 12, 2, 9, 12, 12, 15, 1, 3], | |
| "ct": [4, 13, 5, 8, 15, 7, 5, 14, 13, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 256, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [8, 14, 1, 5, 3, 13, 11, 3, 1, 15], | |
| "ct": [15, 2, 7, 7, 5, 5, 8, 15, 4, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 257, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [10, 15, 4, 0, 2, 8, 8, 5, 13, 11], | |
| "ct": [9, 13, 14, 9, 10, 8, 3, 12, 11, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 258, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [15, 0, 11, 3, 4, 11, 9, 9, 7, 10], | |
| "ct": [11, 4, 10, 1, 6, 6, 11, 13, 10, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 259, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [4, 12, 6, 6, 15, 7, 4, 10, 12, 10], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 260, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [3, 6, 1, 12, 13, 6, 6, 2, 12, 12], | |
| "ct": [15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 261, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [15, 6, 13, 14, 14, 1, 13, 8, 11, 8], | |
| "ct": [8, 0, 0, 0, 0, 8, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 262, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [4, 8, 12, 2, 14, 1, 1, 2, 14, 0], | |
| "ct": [7, 15, 15, 15, 15, 7, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 263, | |
| "comment": "y = 0 and (y + a) % radix**5 == 0 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "1ff1b3b3af6edcca6ef0b9e5", | |
| "msg": [14, 9, 9, 2, 2, 4, 14, 5, 11, 7], | |
| "ct": [11, 14, 13, 8, 1, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 264, | |
| "comment": "y = 0 and a = 1 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "1ff1b3b3af6edcca6ef0b9e5", | |
| "msg": [10, 1, 14, 2, 9, 3, 2, 1, 0, 12], | |
| "ct": [11, 14, 13, 8, 1, 0, 0, 0, 0, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 265, | |
| "comment": "y = 0 and a has large Hamming weight in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "1ff1b3b3af6edcca6ef0b9e5", | |
| "msg": [15, 0, 8, 9, 14, 15, 3, 11, 0, 10], | |
| "ct": [11, 14, 13, 8, 1, 8, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 266, | |
| "comment": "y = 0 and (y + a) % radix**5 is maximal in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "1ff1b3b3af6edcca6ef0b9e5", | |
| "msg": [13, 8, 13, 13, 3, 9, 14, 3, 8, 2], | |
| "ct": [11, 14, 13, 8, 1, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 267, | |
| "comment": "y = 1 and a = 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "7c5f4354b4689a2a0dfc6cf6", | |
| "msg": [7, 5, 0, 2, 14, 11, 14, 6, 15, 3], | |
| "ct": [0, 0, 0, 0, 1, 12, 2, 6, 14, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 268, | |
| "comment": "y = 1 and a = 1 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "7c5f4354b4689a2a0dfc6cf6", | |
| "msg": [12, 11, 15, 14, 1, 2, 6, 11, 6, 3], | |
| "ct": [0, 0, 0, 0, 2, 1, 9, 0, 12, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 269, | |
| "comment": "y = 1 and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "7c5f4354b4689a2a0dfc6cf6", | |
| "msg": [13, 5, 14, 11, 3, 1, 15, 5, 2, 2], | |
| "ct": [8, 0, 0, 0, 1, 1, 11, 11, 5, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 270, | |
| "comment": "y = 1 and (y + a) % radix**5 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "7c5f4354b4689a2a0dfc6cf6", | |
| "msg": [11, 9, 3, 2, 6, 5, 11, 4, 10, 7], | |
| "ct": [15, 15, 15, 15, 15, 8, 9, 7, 6, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 271, | |
| "comment": "y = 1 and (y + a) % radix**5 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "7c5f4354b4689a2a0dfc6cf6", | |
| "msg": [14, 8, 9, 7, 1, 5, 5, 0, 0, 10], | |
| "ct": [0, 0, 0, 0, 0, 7, 12, 13, 13, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 272, | |
| "comment": "y is maximal and (y + a) % radix**5 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "aad36c0b052764acc8d125c1", | |
| "msg": [0, 0, 0, 0, 0, 5, 4, 14, 5, 1], | |
| "ct": [10, 8, 1, 12, 5, 0, 6, 3, 2, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 273, | |
| "comment": "y is maximal and (y + a) % radix**5 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "aad36c0b052764acc8d125c1", | |
| "msg": [0, 0, 0, 0, 1, 5, 4, 14, 5, 1], | |
| "ct": [4, 10, 1, 10, 6, 9, 3, 3, 2, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 274, | |
| "comment": "y is maximal and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "aad36c0b052764acc8d125c1", | |
| "msg": [8, 0, 0, 0, 0, 5, 4, 14, 5, 1], | |
| "ct": [11, 13, 2, 1, 13, 15, 4, 5, 2, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 275, | |
| "comment": "y is maximal and a is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "aad36c0b052764acc8d125c1", | |
| "msg": [15, 15, 15, 15, 15, 5, 4, 14, 5, 1], | |
| "ct": [6, 6, 5, 8, 14, 6, 10, 4, 12, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 276, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "315e3da471d37d55020d2252", | |
| "msg": [2, 5, 4, 14, 6, 15, 2, 7, 4, 1], | |
| "ct": [15, 15, 15, 15, 0, 12, 15, 13, 9, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 277, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "315e3da471d37d55020d2252", | |
| "msg": [7, 14, 1, 15, 1, 8, 5, 0, 11, 3], | |
| "ct": [15, 15, 15, 15, 1, 4, 2, 2, 6, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 278, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**5 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "315e3da471d37d55020d2252", | |
| "msg": [2, 10, 11, 3, 8, 7, 1, 11, 5, 1], | |
| "ct": [15, 15, 15, 15, 15, 9, 10, 8, 1, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 279, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**5 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "315e3da471d37d55020d2252", | |
| "msg": [6, 8, 7, 0, 4, 1, 15, 11, 9, 4], | |
| "ct": [0, 0, 0, 0, 0, 14, 8, 5, 10, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 280, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "315e3da471d37d55020d2252", | |
| "msg": [0, 8, 7, 4, 9, 4, 11, 0, 11, 0], | |
| "ct": [7, 15, 15, 15, 0, 11, 11, 3, 15, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 281, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "315e3da471d37d55020d2252", | |
| "msg": [9, 10, 15, 1, 0, 5, 9, 13, 2, 14], | |
| "ct": [15, 15, 15, 14, 15, 12, 5, 14, 5, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 282, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**5 is maximal in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "836f1d2ae7b9033ed49a40f4", | |
| "msg": [7, 7, 14, 4, 0, 0, 0, 0, 0, 0], | |
| "ct": [12, 12, 9, 1, 2, 11, 15, 11, 7, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 283, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**5 == 0 in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "836f1d2ae7b9033ed49a40f4", | |
| "msg": [3, 1, 14, 2, 5, 0, 0, 0, 0, 1], | |
| "ct": [0, 15, 0, 15, 10, 5, 9, 13, 1, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 284, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "836f1d2ae7b9033ed49a40f4", | |
| "msg": [3, 5, 11, 4, 9, 8, 0, 0, 0, 0], | |
| "ct": [3, 13, 15, 7, 8, 6, 6, 5, 14, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 285, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "836f1d2ae7b9033ed49a40f4", | |
| "msg": [15, 7, 7, 6, 10, 15, 15, 15, 15, 15], | |
| "ct": [2, 6, 12, 5, 12, 0, 7, 1, 5, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 286, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "c2153daac19904cf16ea81dbc73a58dc", | |
| "tweak": "38b7196a238d3892", | |
| "msg": [-1, 10, 9, 9, 15, 1, 7, 3, 7, 0], | |
| "ct": [9, 5, 8, 12, 6, 6, 9, 9, 2, 9], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 287, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "c2153daac19904cf16ea81dbc73a58dc", | |
| "tweak": "38b7196a238d3892", | |
| "msg": [11, 10, 9, -1, 15, 1, 7, 3, 7, 0], | |
| "ct": [8, 11, 0, 6, 10, 7, 11, 0, 7, 3], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 288, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "c2153daac19904cf16ea81dbc73a58dc", | |
| "tweak": "38b7196a238d3892", | |
| "msg": [11, 10, 9, 9, 15, 1, 7, 3, 7, -1], | |
| "ct": [9, 12, 6, 11, 10, 4, 3, 5, 4, 3], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 289, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "5ced9b2e48a90f9e94df9582ef7928a5", | |
| "tweak": "47e48cf1798864aa", | |
| "msg": [16, 11, 14, 0, 6, 3, 4, 15, 14, 14], | |
| "ct": [14, 7, 9, 13, 14, 5, 15, 12, 0, 11], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 290, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "5ced9b2e48a90f9e94df9582ef7928a5", | |
| "tweak": "47e48cf1798864aa", | |
| "msg": [8, 11, 14, 16, 6, 3, 4, 15, 14, 14], | |
| "ct": [13, 13, 10, 14, 13, 1, 0, 14, 10, 8], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 291, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "5ced9b2e48a90f9e94df9582ef7928a5", | |
| "tweak": "47e48cf1798864aa", | |
| "msg": [8, 11, 14, 0, 6, 3, 4, 15, 14, 16], | |
| "ct": [6, 9, 6, 8, 1, 2, 14, 10, 6, 9], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 11, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 292, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "63396f38c44f0c2d97468c4804b5d022", | |
| "tweak": "73068af95fd924fc", | |
| "msg": [2, 11, 10, 11, 15, 7, 8, 10, 14, 9, 6], | |
| "ct": [10, 8, 12, 3, 14, 4, 14, 10, 0, 3, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 293, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [4, 0, 15, 5, 7, 8, 7, 12, 6, 7, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 294, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "ct": [2, 1, 8, 7, 13, 5, 2, 6, 4, 2, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 295, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [8, 0, 0, 0, 0, 8, 0, 0, 0, 0, 0], | |
| "ct": [3, 6, 13, 5, 12, 12, 11, 8, 13, 6, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 296, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [7, 15, 15, 15, 15, 7, 15, 15, 15, 15, 15], | |
| "ct": [9, 12, 1, 12, 8, 3, 11, 14, 9, 0, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 297, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [14, 15, 12, 0, 7, 6, 14, 5, 1, 12, 0], | |
| "ct": [3, 11, 12, 13, 7, 7, 4, 3, 3, 9, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 298, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [8, 3, 2, 13, 7, 8, 3, 3, 5, 5, 6], | |
| "ct": [1, 8, 7, 14, 3, 5, 1, 6, 5, 6, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 299, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [8, 12, 2, 12, 6, 10, 2, 0, 3, 15, 0], | |
| "ct": [0, 5, 11, 1, 8, 0, 7, 7, 5, 1, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 300, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [7, 4, 1, 9, 13, 5, 15, 15, 6, 14, 11], | |
| "ct": [6, 2, 10, 5, 12, 14, 8, 8, 0, 2, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 301, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [2, 11, 12, 3, 6, 4, 7, 12, 8, 15, 1], | |
| "ct": [0, 6, 2, 6, 12, 15, 5, 4, 14, 6, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 302, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [3, 7, 10, 15, 7, 8, 0, 9, 11, 0, 12], | |
| "ct": [8, 7, 5, 14, 13, 11, 10, 15, 5, 0, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 303, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [12, 14, 6, 10, 9, 1, 5, 2, 15, 8, 5], | |
| "ct": [12, 5, 4, 2, 4, 13, 2, 15, 13, 12, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 304, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [9, 0, 13, 12, 15, 14, 7, 5, 7, 13, 5], | |
| "ct": [13, 14, 10, 11, 0, 1, 14, 9, 13, 13, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 305, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [10, 7, 11, 2, 2, 13, 15, 2, 6, 10, 9], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 306, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [7, 15, 8, 2, 5, 4, 11, 10, 4, 5, 15], | |
| "ct": [15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 307, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [15, 1, 12, 9, 0, 2, 10, 6, 10, 8, 2], | |
| "ct": [8, 0, 0, 0, 0, 8, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 308, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [13, 13, 10, 2, 3, 9, 8, 5, 7, 15, 13], | |
| "ct": [7, 15, 15, 15, 15, 7, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 309, | |
| "comment": "y = 0 and (y + a) % radix**5 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "5c849e94a3789df85e00539c", | |
| "msg": [9, 5, 3, 0, 12, 1, 15, 14, 12, 6, 5], | |
| "ct": [7, 11, 6, 7, 0, 9, 12, 14, 9, 6, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 310, | |
| "comment": "y = 0 and a = 1 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "5c849e94a3789df85e00539c", | |
| "msg": [6, 7, 4, 8, 5, 13, 9, 5, 15, 5, 3], | |
| "ct": [1, 13, 4, 5, 5, 7, 12, 8, 11, 15, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 311, | |
| "comment": "y = 0 and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "5c849e94a3789df85e00539c", | |
| "msg": [15, 13, 9, 14, 13, 1, 4, 6, 12, 13, 13], | |
| "ct": [14, 9, 10, 4, 7, 3, 14, 4, 3, 4, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 312, | |
| "comment": "y = 0 and (y + a) % radix**5 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "5c849e94a3789df85e00539c", | |
| "msg": [1, 15, 11, 13, 4, 8, 14, 8, 4, 12, 0], | |
| "ct": [2, 2, 3, 8, 10, 1, 14, 3, 6, 15, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 313, | |
| "comment": "y = 1 and a = 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "093ca48c35a8ab11a230c3ac", | |
| "msg": [8, 6, 6, 2, 10, 1, 5, 7, 8, 8, 9], | |
| "ct": [0, 11, 6, 13, 5, 1, 5, 0, 1, 5, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 314, | |
| "comment": "y = 1 and a = 1 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "093ca48c35a8ab11a230c3ac", | |
| "msg": [10, 12, 7, 5, 3, 13, 13, 6, 4, 1, 11], | |
| "ct": [6, 14, 4, 10, 1, 0, 9, 10, 0, 5, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 315, | |
| "comment": "y = 1 and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "093ca48c35a8ab11a230c3ac", | |
| "msg": [2, 13, 11, 8, 4, 12, 12, 14, 14, 6, 0], | |
| "ct": [2, 7, 5, 3, 13, 7, 15, 6, 13, 9, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 316, | |
| "comment": "y = 1 and (y + a) % radix**5 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "093ca48c35a8ab11a230c3ac", | |
| "msg": [2, 11, 1, 11, 15, 3, 9, 5, 1, 5, 0], | |
| "ct": [1, 14, 8, 10, 13, 2, 12, 0, 5, 9, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 317, | |
| "comment": "y = 1 and (y + a) % radix**5 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "093ca48c35a8ab11a230c3ac", | |
| "msg": [11, 10, 4, 11, 1, 14, 2, 14, 9, 14, 2], | |
| "ct": [14, 1, 2, 12, 9, 11, 5, 9, 5, 13, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 318, | |
| "comment": "y is maximal and (y + a) % radix**5 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "eedbed24033da7e78bb6f695", | |
| "msg": [11, 1, 12, 14, 13, 2, 3, 5, 6, 0, 4], | |
| "ct": [15, 15, 15, 15, 15, 6, 10, 7, 12, 10, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 319, | |
| "comment": "y is maximal and (y + a) % radix**5 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "eedbed24033da7e78bb6f695", | |
| "msg": [10, 4, 8, 13, 12, 0, 12, 7, 8, 12, 11], | |
| "ct": [0, 0, 0, 0, 0, 9, 10, 2, 12, 0, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 320, | |
| "comment": "y is maximal and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "eedbed24033da7e78bb6f695", | |
| "msg": [7, 7, 4, 12, 15, 6, 8, 6, 4, 13, 1], | |
| "ct": [7, 15, 15, 15, 15, 0, 7, 6, 15, 10, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 321, | |
| "comment": "y is maximal and a is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "eedbed24033da7e78bb6f695", | |
| "msg": [13, 15, 6, 13, 5, 13, 13, 14, 5, 4, 7], | |
| "ct": [15, 15, 15, 15, 14, 7, 15, 14, 12, 3, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 322, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "5e9bf28b1837cdee25dbd15b", | |
| "msg": [10, 9, 11, 1, 10, 8, 12, 11, 10, 4, 10], | |
| "ct": [4, 8, 12, 4, 3, 4, 9, 13, 12, 0, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 323, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "5e9bf28b1837cdee25dbd15b", | |
| "msg": [7, 7, 5, 11, 0, 3, 0, 5, 2, 12, 10], | |
| "ct": [0, 6, 14, 9, 7, 3, 10, 11, 11, 3, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 324, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**5 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "5e9bf28b1837cdee25dbd15b", | |
| "msg": [0, 13, 2, 10, 10, 5, 0, 1, 15, 0, 7], | |
| "ct": [9, 2, 6, 5, 2, 1, 15, 4, 6, 1, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 325, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**5 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "5e9bf28b1837cdee25dbd15b", | |
| "msg": [6, 15, 4, 0, 10, 7, 7, 6, 7, 13, 6], | |
| "ct": [8, 1, 0, 3, 10, 9, 2, 2, 3, 4, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 326, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "5e9bf28b1837cdee25dbd15b", | |
| "msg": [10, 0, 0, 4, 0, 6, 7, 1, 1, 6, 3], | |
| "ct": [15, 8, 3, 9, 2, 4, 9, 3, 0, 3, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 327, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "5e9bf28b1837cdee25dbd15b", | |
| "msg": [5, 7, 6, 6, 15, 6, 12, 13, 3, 15, 7], | |
| "ct": [15, 5, 12, 13, 7, 10, 9, 10, 13, 11, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 328, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**5 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "421e042dfd05b63b624a6e01", | |
| "msg": [0, 0, 0, 0, 0, 9, 0, 5, 13, 12, 10], | |
| "ct": [6, 3, 2, 0, 0, 13, 8, 8, 7, 5, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 329, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**5 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "421e042dfd05b63b624a6e01", | |
| "msg": [0, 0, 0, 0, 1, 9, 0, 5, 13, 12, 10], | |
| "ct": [10, 2, 4, 6, 11, 9, 12, 7, 8, 7, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 330, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "421e042dfd05b63b624a6e01", | |
| "msg": [8, 0, 0, 0, 0, 9, 0, 5, 13, 12, 10], | |
| "ct": [3, 8, 3, 9, 7, 1, 0, 1, 14, 8, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 331, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "421e042dfd05b63b624a6e01", | |
| "msg": [15, 15, 15, 15, 15, 9, 0, 5, 13, 12, 10], | |
| "ct": [9, 1, 10, 10, 2, 9, 14, 6, 12, 5, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 332, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "0b55b77a1d06778b795b541037eabb26", | |
| "tweak": "3e26f18ba99add01", | |
| "msg": [-1, 10, 8, 9, 0, 14, 1, 4, 5, 12, 11], | |
| "ct": [2, 0, 4, 13, 8, 4, 1, 1, 12, 13, 12], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 333, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "0b55b77a1d06778b795b541037eabb26", | |
| "tweak": "3e26f18ba99add01", | |
| "msg": [14, 10, 8, -1, 0, 14, 1, 4, 5, 12, 11], | |
| "ct": [12, 5, 8, 8, 2, 6, 0, 6, 13, 1, 5], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 334, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "0b55b77a1d06778b795b541037eabb26", | |
| "tweak": "3e26f18ba99add01", | |
| "msg": [14, 10, 8, 9, 0, 14, 1, 4, 5, 12, -1], | |
| "ct": [3, 3, 0, 1, 12, 2, 8, 3, 9, 9, 14], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 335, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "089197b158eb1bb8c2203e4daaba1d31", | |
| "tweak": "bfc9b48ccf32f706", | |
| "msg": [16, 13, 11, 13, 12, 13, 10, 1, 11, 15, 15], | |
| "ct": [4, 2, 2, 1, 2, 10, 15, 8, 7, 10, 8], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 336, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "089197b158eb1bb8c2203e4daaba1d31", | |
| "tweak": "bfc9b48ccf32f706", | |
| "msg": [7, 13, 11, 16, 12, 13, 10, 1, 11, 15, 15], | |
| "ct": [13, 10, 15, 4, 3, 15, 0, 4, 4, 13, 1], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 337, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "089197b158eb1bb8c2203e4daaba1d31", | |
| "tweak": "bfc9b48ccf32f706", | |
| "msg": [7, 13, 11, 13, 12, 13, 10, 1, 11, 15, 16], | |
| "ct": [9, 0, 2, 0, 1, 12, 10, 13, 4, 11, 3], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 12, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 338, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "ddc31fc7751a2bf5c8d2d815035622e8", | |
| "tweak": "0e10628c19795c4e", | |
| "msg": [3, 5, 7, 9, 11, 13, 14, 6, 15, 7, 8, 15], | |
| "ct": [15, 5, 14, 2, 4, 7, 14, 14, 9, 7, 12, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 339, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [6, 14, 9, 8, 10, 8, 9, 7, 1, 8, 5, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 340, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "ct": [2, 6, 1, 10, 2, 6, 8, 9, 13, 1, 2, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 341, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [8, 0, 0, 0, 0, 0, 8, 0, 0, 0, 0, 0], | |
| "ct": [12, 5, 7, 2, 10, 11, 15, 12, 2, 9, 3, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 342, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [7, 15, 15, 15, 15, 15, 7, 15, 15, 15, 15, 15], | |
| "ct": [6, 13, 1, 15, 9, 4, 13, 15, 13, 9, 2, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 343, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [14, 0, 8, 15, 0, 0, 2, 10, 8, 5, 8, 11], | |
| "ct": [8, 10, 0, 10, 5, 5, 6, 13, 4, 14, 13, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 344, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [3, 12, 7, 6, 0, 11, 8, 2, 9, 5, 14, 8], | |
| "ct": [14, 9, 9, 1, 9, 1, 13, 13, 6, 6, 1, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 345, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [2, 1, 6, 6, 15, 0, 9, 2, 6, 12, 14, 3], | |
| "ct": [6, 8, 10, 8, 2, 14, 1, 11, 6, 4, 0, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 346, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [0, 10, 6, 10, 11, 12, 6, 1, 3, 7, 1, 8], | |
| "ct": [8, 13, 13, 9, 13, 15, 13, 0, 14, 1, 6, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 347, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [5, 1, 1, 15, 5, 14, 9, 9, 15, 4, 3, 4], | |
| "ct": [5, 4, 7, 1, 2, 6, 3, 10, 4, 1, 2, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 348, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [1, 2, 8, 14, 14, 0, 1, 12, 15, 13, 4, 9], | |
| "ct": [6, 3, 4, 15, 2, 14, 10, 13, 5, 13, 8, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 349, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [3, 3, 0, 0, 8, 10, 7, 7, 8, 11, 15, 15], | |
| "ct": [5, 6, 3, 4, 3, 8, 5, 4, 7, 13, 5, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 350, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [14, 3, 13, 4, 8, 14, 2, 5, 1, 13, 3, 2], | |
| "ct": [8, 14, 2, 7, 14, 13, 13, 0, 7, 11, 3, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 351, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [10, 13, 4, 6, 9, 12, 11, 11, 12, 15, 13, 0], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 352, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [2, 14, 1, 3, 1, 7, 0, 1, 13, 0, 15, 15], | |
| "ct": [15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 353, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [14, 3, 13, 14, 14, 15, 4, 7, 9, 3, 13, 11], | |
| "ct": [8, 0, 0, 0, 0, 0, 8, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 354, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [9, 3, 8, 15, 15, 9, 15, 4, 3, 2, 12, 0], | |
| "ct": [7, 15, 15, 15, 15, 15, 7, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 355, | |
| "comment": "y = 0 and (y + a) % radix**6 == 0 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "96eaefbc9b708e8ae3edd37a", | |
| "msg": [0, 3, 12, 11, 14, 2, 0, 10, 6, 14, 13, 5], | |
| "ct": [6, 7, 3, 1, 12, 0, 11, 12, 10, 2, 13, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 356, | |
| "comment": "y = 0 and a = 1 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "96eaefbc9b708e8ae3edd37a", | |
| "msg": [9, 2, 2, 5, 1, 5, 14, 12, 1, 11, 12, 7], | |
| "ct": [8, 11, 6, 10, 11, 6, 6, 11, 1, 11, 2, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 357, | |
| "comment": "y = 0 and a has large Hamming weight in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "96eaefbc9b708e8ae3edd37a", | |
| "msg": [0, 14, 3, 2, 6, 2, 3, 3, 15, 8, 8, 14], | |
| "ct": [8, 6, 10, 9, 0, 4, 3, 2, 13, 1, 4, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 358, | |
| "comment": "y = 0 and (y + a) % radix**6 is maximal in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "96eaefbc9b708e8ae3edd37a", | |
| "msg": [5, 0, 3, 1, 4, 6, 9, 8, 15, 7, 13, 15], | |
| "ct": [9, 1, 12, 9, 10, 15, 12, 13, 13, 11, 5, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 359, | |
| "comment": "y = 1 and a = 0 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "e8840660367904c8d28b919f", | |
| "msg": [8, 4, 7, 15, 3, 7, 9, 5, 15, 6, 2, 9], | |
| "ct": [10, 15, 1, 2, 7, 15, 0, 0, 0, 0, 0, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 360, | |
| "comment": "y = 1 and a = 1 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "e8840660367904c8d28b919f", | |
| "msg": [1, 9, 11, 9, 5, 3, 12, 4, 1, 10, 5, 15], | |
| "ct": [10, 15, 1, 2, 7, 15, 0, 0, 0, 0, 0, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 361, | |
| "comment": "y = 1 and a has large Hamming weight in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "e8840660367904c8d28b919f", | |
| "msg": [6, 7, 3, 2, 6, 3, 6, 5, 13, 2, 9, 15], | |
| "ct": [10, 15, 1, 2, 7, 15, 8, 0, 0, 0, 0, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 362, | |
| "comment": "y = 1 and (y + a) % radix**6 is maximal in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "e8840660367904c8d28b919f", | |
| "msg": [2, 14, 15, 8, 7, 2, 0, 1, 0, 0, 4, 13], | |
| "ct": [10, 15, 1, 2, 7, 15, 15, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 363, | |
| "comment": "y = 1 and (y + a) % radix**6 == 0 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "e8840660367904c8d28b919f", | |
| "msg": [14, 14, 10, 6, 1, 12, 11, 3, 15, 1, 7, 5], | |
| "ct": [10, 15, 1, 2, 7, 15, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 364, | |
| "comment": "y is maximal and (y + a) % radix**6 is maximal in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "3c820ba737a2cc5bd7ee75bb", | |
| "msg": [7, 12, 13, 0, 5, 9, 0, 0, 0, 0, 0, 0], | |
| "ct": [0, 11, 9, 9, 13, 13, 6, 7, 3, 8, 14, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 365, | |
| "comment": "y is maximal and (y + a) % radix**6 == 0 in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "3c820ba737a2cc5bd7ee75bb", | |
| "msg": [12, 7, 14, 1, 10, 3, 0, 0, 0, 0, 0, 1], | |
| "ct": [0, 5, 14, 5, 11, 14, 15, 6, 7, 7, 6, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 366, | |
| "comment": "y is maximal and a has large Hamming weight in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "3c820ba737a2cc5bd7ee75bb", | |
| "msg": [11, 6, 5, 10, 5, 14, 8, 0, 0, 0, 0, 0], | |
| "ct": [9, 4, 6, 11, 14, 3, 15, 6, 8, 8, 1, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 367, | |
| "comment": "y is maximal and a is maximal in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "3c820ba737a2cc5bd7ee75bb", | |
| "msg": [11, 6, 3, 12, 15, 12, 15, 15, 15, 15, 15, 15], | |
| "ct": [10, 5, 10, 7, 2, 5, 10, 8, 5, 6, 9, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 368, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "95484ebb9a446b1b801bb277", | |
| "msg": [14, 14, 12, 1, 7, 5, 8, 11, 1, 4, 15, 11], | |
| "ct": [8, 0, 14, 1, 12, 1, 0, 0, 2, 4, 0, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 369, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "95484ebb9a446b1b801bb277", | |
| "msg": [12, 6, 10, 12, 12, 2, 14, 12, 9, 0, 14, 15], | |
| "ct": [7, 3, 12, 3, 9, 5, 11, 2, 1, 4, 0, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 370, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**6 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "95484ebb9a446b1b801bb277", | |
| "msg": [4, 11, 6, 10, 7, 11, 11, 8, 13, 3, 6, 10], | |
| "ct": [7, 0, 12, 15, 2, 6, 9, 7, 10, 8, 6, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 371, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**6 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "95484ebb9a446b1b801bb277", | |
| "msg": [15, 0, 12, 2, 0, 11, 6, 6, 1, 0, 6, 7], | |
| "ct": [4, 0, 6, 0, 11, 12, 5, 12, 6, 12, 14, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 372, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "95484ebb9a446b1b801bb277", | |
| "msg": [1, 2, 1, 6, 12, 14, 4, 10, 15, 1, 8, 10], | |
| "ct": [11, 3, 4, 3, 12, 1, 12, 15, 10, 6, 2, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 373, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "95484ebb9a446b1b801bb277", | |
| "msg": [0, 10, 6, 12, 8, 6, 5, 12, 11, 0, 7, 11], | |
| "ct": [4, 5, 13, 10, 12, 15, 3, 15, 1, 12, 10, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 374, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**6 is maximal in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "469541d0ef5c6eb865d1efe7", | |
| "msg": [14, 11, 8, 5, 14, 1, 14, 13, 7, 4, 7, 4], | |
| "ct": [4, 8, 1, 3, 8, 14, 15, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 375, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**6 == 0 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "469541d0ef5c6eb865d1efe7", | |
| "msg": [0, 6, 2, 0, 11, 6, 0, 10, 7, 9, 10, 9], | |
| "ct": [4, 8, 1, 3, 8, 14, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 376, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "469541d0ef5c6eb865d1efe7", | |
| "msg": [15, 14, 3, 14, 8, 4, 8, 15, 7, 12, 14, 6], | |
| "ct": [4, 8, 1, 3, 8, 14, 7, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 377, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "469541d0ef5c6eb865d1efe7", | |
| "msg": [10, 4, 8, 2, 5, 3, 1, 15, 11, 4, 7, 2], | |
| "ct": [4, 8, 1, 3, 8, 14, 15, 15, 15, 15, 15, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 378, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "dbac185fba36fe7028184de1a577dbaa", | |
| "tweak": "6ba28735b4acc0ff", | |
| "msg": [-1, 4, 5, 12, 5, 5, 6, 15, 6, 9, 5, 11], | |
| "ct": [6, 8, 1, 11, 2, 14, 9, 11, 11, 10, 7, 15], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 379, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "dbac185fba36fe7028184de1a577dbaa", | |
| "tweak": "6ba28735b4acc0ff", | |
| "msg": [10, 4, 5, 12, -1, 5, 6, 15, 6, 9, 5, 11], | |
| "ct": [9, 12, 0, 2, 13, 5, 9, 8, 12, 10, 13, 15], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 380, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "dbac185fba36fe7028184de1a577dbaa", | |
| "tweak": "6ba28735b4acc0ff", | |
| "msg": [10, 4, 5, 12, 5, 5, 6, 15, 6, 9, 5, -1], | |
| "ct": [5, 11, 2, 15, 4, 1, 13, 8, 8, 5, 8, 3], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 381, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "04bc5216ccd679be8574bdb697bc0646", | |
| "tweak": "17f743aa93104791", | |
| "msg": [16, 13, 1, 1, 10, 3, 9, 0, 12, 6, 12, 11], | |
| "ct": [5, 7, 4, 15, 15, 15, 0, 0, 11, 2, 6, 8], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 382, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "04bc5216ccd679be8574bdb697bc0646", | |
| "tweak": "17f743aa93104791", | |
| "msg": [10, 13, 1, 1, 16, 3, 9, 0, 12, 6, 12, 11], | |
| "ct": [1, 4, 6, 6, 7, 8, 13, 2, 11, 1, 9, 10], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 383, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "04bc5216ccd679be8574bdb697bc0646", | |
| "tweak": "17f743aa93104791", | |
| "msg": [10, 13, 1, 1, 10, 3, 9, 0, 12, 6, 12, 16], | |
| "ct": [3, 5, 4, 4, 1, 10, 5, 6, 4, 14, 3, 9], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 13, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 384, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "d5e6c882f005525ce577f704ef6b525d", | |
| "tweak": "7ce1a7a4e6508c83", | |
| "msg": [5, 12, 13, 1, 13, 4, 15, 10, 2, 10, 15, 8, 5], | |
| "ct": [13, 11, 12, 2, 5, 7, 10, 5, 13, 3, 15, 4, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 385, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [7, 0, 1, 11, 11, 15, 11, 0, 5, 1, 11, 0, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 386, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "ct": [2, 14, 10, 2, 9, 6, 7, 7, 3, 15, 7, 1, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 387, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [8, 0, 0, 0, 0, 0, 8, 0, 0, 0, 0, 0, 0], | |
| "ct": [11, 4, 1, 6, 12, 8, 11, 10, 2, 4, 10, 8, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 388, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [7, 15, 15, 15, 15, 15, 7, 15, 15, 15, 15, 15, 15], | |
| "ct": [10, 3, 9, 13, 7, 8, 5, 7, 4, 4, 4, 4, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 389, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [7, 0, 2, 6, 8, 2, 3, 11, 0, 8, 7, 13, 1], | |
| "ct": [11, 3, 13, 12, 7, 9, 4, 2, 12, 14, 9, 4, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 390, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [3, 2, 6, 3, 10, 5, 1, 6, 2, 1, 1, 15, 5], | |
| "ct": [13, 6, 6, 12, 10, 9, 13, 5, 1, 6, 0, 0, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 391, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [7, 0, 4, 4, 10, 14, 4, 12, 4, 15, 2, 4, 13], | |
| "ct": [0, 2, 3, 4, 14, 7, 11, 10, 1, 7, 12, 8, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 392, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [8, 6, 6, 12, 6, 14, 6, 10, 14, 7, 8, 2, 4], | |
| "ct": [0, 7, 11, 5, 14, 11, 0, 11, 3, 13, 10, 11, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 393, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [14, 11, 2, 3, 11, 15, 4, 13, 10, 8, 4, 2, 8], | |
| "ct": [6, 15, 14, 12, 8, 2, 15, 4, 7, 12, 4, 14, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 394, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [2, 2, 3, 2, 1, 14, 5, 11, 13, 8, 14, 15, 5], | |
| "ct": [5, 3, 7, 4, 4, 13, 11, 13, 15, 3, 15, 11, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 395, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [10, 5, 10, 7, 4, 6, 11, 3, 9, 10, 3, 9, 13], | |
| "ct": [12, 10, 5, 15, 0, 4, 9, 10, 11, 5, 6, 1, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 396, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [11, 10, 14, 1, 13, 13, 12, 14, 4, 3, 6, 7, 6], | |
| "ct": [2, 6, 13, 13, 11, 11, 11, 11, 14, 12, 13, 0, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 397, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [7, 11, 13, 7, 4, 6, 12, 9, 10, 9, 13, 3, 0], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 398, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [15, 5, 6, 7, 0, 14, 15, 2, 12, 7, 3, 11, 13], | |
| "ct": [15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 399, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [15, 3, 4, 14, 12, 1, 6, 1, 8, 5, 11, 4, 2], | |
| "ct": [8, 0, 0, 0, 0, 0, 8, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 400, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [9, 4, 13, 14, 3, 3, 1, 15, 14, 1, 4, 1, 11], | |
| "ct": [7, 15, 15, 15, 15, 15, 7, 15, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 401, | |
| "comment": "y = 0 and (y + a) % radix**6 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "b32c374d59d5ad22376ce3", | |
| "msg": [13, 5, 15, 11, 13, 9, 12, 4, 11, 2, 8, 10, 9], | |
| "ct": [5, 8, 3, 4, 7, 6, 0, 4, 13, 9, 8, 4, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 402, | |
| "comment": "y = 0 and a = 1 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "b32c374d59d5ad22376ce3", | |
| "msg": [9, 4, 11, 4, 0, 15, 14, 3, 4, 12, 11, 6, 15], | |
| "ct": [6, 11, 4, 6, 10, 13, 7, 15, 9, 14, 0, 13, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 403, | |
| "comment": "y = 0 and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "b32c374d59d5ad22376ce3", | |
| "msg": [2, 5, 8, 11, 11, 5, 2, 1, 15, 8, 8, 3, 14], | |
| "ct": [8, 15, 6, 8, 3, 6, 2, 15, 8, 3, 12, 9, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 404, | |
| "comment": "y = 0 and (y + a) % radix**6 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "b32c374d59d5ad22376ce3", | |
| "msg": [2, 13, 15, 15, 9, 6, 7, 14, 4, 12, 3, 10, 11], | |
| "ct": [11, 15, 7, 10, 12, 5, 14, 2, 14, 14, 1, 9, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 405, | |
| "comment": "y = 1 and a = 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "29c1153a8c34a04fab3f82", | |
| "msg": [8, 3, 7, 8, 6, 8, 15, 2, 1, 9, 11, 1, 8], | |
| "ct": [9, 13, 8, 6, 6, 11, 12, 8, 8, 1, 2, 10, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 406, | |
| "comment": "y = 1 and a = 1 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "29c1153a8c34a04fab3f82", | |
| "msg": [4, 6, 2, 0, 10, 4, 8, 12, 8, 15, 13, 0, 1], | |
| "ct": [14, 12, 9, 15, 8, 15, 7, 8, 4, 6, 2, 8, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 407, | |
| "comment": "y = 1 and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "29c1153a8c34a04fab3f82", | |
| "msg": [2, 2, 4, 1, 11, 1, 6, 7, 3, 0, 2, 2, 2], | |
| "ct": [6, 8, 8, 8, 11, 2, 3, 6, 13, 3, 12, 6, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 408, | |
| "comment": "y = 1 and (y + a) % radix**6 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "29c1153a8c34a04fab3f82", | |
| "msg": [0, 10, 6, 5, 3, 2, 12, 12, 4, 5, 14, 13, 0], | |
| "ct": [12, 9, 2, 3, 0, 5, 15, 10, 1, 10, 13, 3, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 409, | |
| "comment": "y = 1 and (y + a) % radix**6 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "29c1153a8c34a04fab3f82", | |
| "msg": [7, 8, 6, 2, 8, 13, 5, 12, 15, 11, 1, 5, 0], | |
| "ct": [14, 0, 12, 0, 13, 6, 5, 5, 14, 15, 9, 10, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 410, | |
| "comment": "y is maximal and (y + a) % radix**6 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "5307c834ea4e17c9888b0c", | |
| "msg": [0, 0, 0, 0, 0, 0, 12, 6, 15, 5, 9, 8, 2], | |
| "ct": [4, 1, 15, 1, 13, 13, 8, 6, 0, 13, 0, 6, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 411, | |
| "comment": "y is maximal and (y + a) % radix**6 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "5307c834ea4e17c9888b0c", | |
| "msg": [0, 0, 0, 0, 0, 1, 12, 6, 15, 5, 9, 8, 2], | |
| "ct": [5, 14, 12, 3, 8, 11, 1, 1, 13, 12, 12, 3, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 412, | |
| "comment": "y is maximal and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "5307c834ea4e17c9888b0c", | |
| "msg": [8, 0, 0, 0, 0, 0, 12, 6, 15, 5, 9, 8, 2], | |
| "ct": [5, 12, 13, 12, 3, 7, 13, 9, 5, 0, 11, 14, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 413, | |
| "comment": "y is maximal and a is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "5307c834ea4e17c9888b0c", | |
| "msg": [15, 15, 15, 15, 15, 15, 12, 6, 15, 5, 9, 8, 2], | |
| "ct": [3, 13, 10, 3, 10, 7, 1, 10, 8, 5, 13, 15, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 414, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "466b414a11a7978241308f", | |
| "msg": [11, 4, 9, 7, 12, 15, 12, 8, 9, 2, 1, 12, 12], | |
| "ct": [12, 9, 2, 0, 2, 14, 2, 11, 13, 2, 15, 0, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 415, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "466b414a11a7978241308f", | |
| "msg": [13, 2, 4, 14, 3, 7, 0, 0, 1, 8, 10, 14, 13], | |
| "ct": [0, 13, 5, 6, 8, 4, 7, 10, 11, 0, 0, 15, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 416, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**6 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "466b414a11a7978241308f", | |
| "msg": [6, 14, 1, 12, 9, 8, 12, 6, 0, 7, 10, 15, 9], | |
| "ct": [2, 15, 12, 8, 1, 15, 10, 11, 14, 8, 13, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 417, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**6 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "466b414a11a7978241308f", | |
| "msg": [0, 4, 4, 9, 3, 3, 0, 1, 11, 9, 9, 10, 0], | |
| "ct": [1, 11, 8, 6, 0, 15, 3, 4, 13, 15, 6, 15, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 418, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "466b414a11a7978241308f", | |
| "msg": [0, 2, 13, 0, 4, 13, 7, 6, 6, 1, 7, 11, 4], | |
| "ct": [12, 13, 2, 4, 14, 7, 11, 14, 15, 12, 7, 3, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 419, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "466b414a11a7978241308f", | |
| "msg": [8, 6, 3, 7, 11, 0, 15, 15, 13, 0, 14, 4, 3], | |
| "ct": [12, 6, 2, 7, 11, 2, 11, 12, 10, 12, 3, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 420, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**6 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "d486cc1d1323285464c218", | |
| "msg": [7, 2, 6, 7, 12, 2, 4, 6, 11, 15, 9, 7, 6], | |
| "ct": [0, 15, 11, 4, 14, 10, 13, 13, 1, 9, 2, 7, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 421, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**6 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "d486cc1d1323285464c218", | |
| "msg": [3, 2, 7, 0, 9, 0, 15, 10, 7, 10, 7, 6, 9], | |
| "ct": [5, 11, 7, 8, 2, 14, 4, 10, 15, 5, 7, 4, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 422, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "d486cc1d1323285464c218", | |
| "msg": [6, 5, 6, 14, 10, 6, 14, 2, 6, 3, 3, 4, 3], | |
| "ct": [2, 7, 14, 7, 11, 9, 13, 7, 6, 13, 6, 0, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 423, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "d486cc1d1323285464c218", | |
| "msg": [0, 9, 13, 1, 14, 8, 2, 5, 13, 4, 7, 15, 1], | |
| "ct": [10, 8, 15, 5, 6, 0, 2, 13, 9, 15, 14, 15, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 424, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "b8d9b3c80209587bbe3c0f7125eed049", | |
| "tweak": "522499e28e9e7712", | |
| "msg": [-1, 6, 9, 14, 3, 6, 15, 11, 10, 2, 10, 11, 5], | |
| "ct": [2, 1, 13, 14, 5, 3, 14, 6, 9, 12, 15, 6, 6], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 425, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "b8d9b3c80209587bbe3c0f7125eed049", | |
| "tweak": "522499e28e9e7712", | |
| "msg": [3, 6, 9, 14, -1, 6, 15, 11, 10, 2, 10, 11, 5], | |
| "ct": [11, 13, 14, 9, 2, 11, 10, 1, 7, 9, 7, 14, 12], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 426, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "b8d9b3c80209587bbe3c0f7125eed049", | |
| "tweak": "522499e28e9e7712", | |
| "msg": [3, 6, 9, 14, 3, 6, 15, 11, 10, 2, 10, 11, -1], | |
| "ct": [6, 6, 10, 0, 13, 14, 14, 14, 10, 6, 13, 8, 13], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 427, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "1877647d59ac877b0d04ec0cdf49635b", | |
| "tweak": "026aa3fd565a8dd2", | |
| "msg": [16, 0, 11, 9, 0, 13, 0, 8, 13, 12, 10, 8, 7], | |
| "ct": [7, 14, 10, 3, 9, 12, 0, 13, 1, 8, 5, 5, 14], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 428, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "1877647d59ac877b0d04ec0cdf49635b", | |
| "tweak": "026aa3fd565a8dd2", | |
| "msg": [4, 0, 11, 9, 16, 13, 0, 8, 13, 12, 10, 8, 7], | |
| "ct": [9, 12, 0, 1, 4, 3, 2, 10, 4, 0, 6, 15, 1], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 429, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "1877647d59ac877b0d04ec0cdf49635b", | |
| "tweak": "026aa3fd565a8dd2", | |
| "msg": [4, 0, 11, 9, 0, 13, 0, 8, 13, 12, 10, 8, 16], | |
| "ct": [11, 9, 7, 13, 12, 0, 9, 8, 8, 8, 4, 14, 12], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 14, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 430, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "7a1122636a4417351c97156308d4f6aa", | |
| "tweak": "a9508e64d1ab8e34", | |
| "msg": [6, 6, 3, 1, 11, 14, 8, 8, 12, 11, 9, 10, 6, 12], | |
| "ct": [14, 8, 10, 5, 0, 10, 0, 2, 13, 12, 13, 0, 10, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 431, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [13, 5, 3, 5, 11, 3, 11, 5, 15, 11, 15, 9, 5, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 432, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "ct": [11, 5, 9, 7, 14, 1, 3, 10, 1, 10, 9, 11, 2, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 433, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [8, 0, 0, 0, 0, 0, 0, 8, 0, 0, 0, 0, 0, 0], | |
| "ct": [13, 5, 14, 1, 8, 11, 12, 15, 15, 2, 8, 3, 8, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 434, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [7, 15, 15, 15, 15, 15, 15, 7, 15, 15, 15, 15, 15, 15], | |
| "ct": [1, 13, 13, 11, 7, 6, 8, 10, 10, 6, 10, 5, 1, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 435, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [2, 5, 6, 7, 2, 9, 10, 5, 10, 1, 15, 4, 11, 1], | |
| "ct": [13, 10, 15, 12, 2, 3, 0, 8, 14, 2, 12, 7, 9, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 436, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [4, 1, 12, 11, 9, 3, 1, 7, 2, 5, 0, 6, 15, 5], | |
| "ct": [11, 14, 2, 4, 14, 13, 5, 10, 2, 3, 2, 6, 6, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 437, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [4, 13, 8, 0, 11, 2, 11, 10, 14, 6, 7, 3, 3, 7], | |
| "ct": [0, 6, 6, 13, 5, 5, 1, 2, 6, 1, 11, 13, 4, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 438, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [10, 12, 11, 3, 11, 9, 8, 12, 9, 11, 15, 7, 13, 10], | |
| "ct": [10, 7, 15, 8, 11, 15, 11, 10, 14, 11, 12, 13, 15, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 439, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [15, 8, 15, 4, 8, 8, 0, 1, 1, 13, 6, 3, 7, 5], | |
| "ct": [2, 13, 6, 7, 12, 6, 13, 7, 3, 11, 5, 14, 4, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 440, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [2, 7, 9, 0, 14, 7, 3, 0, 2, 8, 5, 9, 10, 3], | |
| "ct": [3, 3, 12, 6, 2, 9, 11, 2, 0, 9, 14, 11, 6, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 441, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [0, 6, 15, 6, 10, 15, 4, 14, 15, 5, 10, 15, 7, 3], | |
| "ct": [13, 1, 10, 14, 6, 8, 8, 10, 12, 4, 8, 12, 11, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 442, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [10, 15, 12, 0, 1, 10, 8, 1, 9, 7, 10, 13, 14, 3], | |
| "ct": [6, 7, 6, 15, 7, 8, 5, 9, 14, 7, 0, 3, 14, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 443, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [5, 3, 4, 0, 2, 11, 2, 1, 9, 14, 7, 1, 8, 3], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 444, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [13, 6, 0, 2, 2, 2, 1, 0, 3, 8, 2, 7, 10, 4], | |
| "ct": [15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 445, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [12, 7, 0, 4, 13, 4, 13, 10, 12, 3, 11, 6, 14, 3], | |
| "ct": [8, 0, 0, 0, 0, 0, 0, 8, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 446, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [5, 7, 10, 0, 4, 11, 0, 7, 15, 6, 4, 7, 14, 12], | |
| "ct": [7, 15, 15, 15, 15, 15, 15, 7, 15, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 447, | |
| "comment": "y = 0 and (y + a) % radix**7 == 0 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "127e4e1eb64057923c5e10", | |
| "msg": [14, 12, 5, 5, 4, 9, 13, 8, 4, 6, 9, 12, 5, 11], | |
| "ct": [13, 14, 12, 3, 13, 13, 1, 4, 8, 10, 6, 4, 14, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 448, | |
| "comment": "y = 0 and a = 1 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "127e4e1eb64057923c5e10", | |
| "msg": [12, 0, 15, 10, 8, 4, 0, 10, 9, 9, 15, 7, 9, 8], | |
| "ct": [11, 2, 1, 4, 7, 7, 8, 14, 12, 12, 3, 3, 2, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 449, | |
| "comment": "y = 0 and a has large Hamming weight in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "127e4e1eb64057923c5e10", | |
| "msg": [4, 8, 6, 5, 7, 5, 14, 1, 1, 1, 3, 0, 2, 12], | |
| "ct": [3, 9, 15, 6, 13, 2, 12, 8, 14, 4, 14, 5, 10, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 450, | |
| "comment": "y = 0 and (y + a) % radix**7 is maximal in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "127e4e1eb64057923c5e10", | |
| "msg": [9, 8, 9, 9, 6, 1, 3, 12, 7, 0, 7, 14, 12, 3], | |
| "ct": [5, 15, 0, 3, 11, 6, 15, 14, 14, 10, 4, 1, 12, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 451, | |
| "comment": "y = 1 and a = 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "37f015e72948b06b470843", | |
| "msg": [1, 8, 6, 13, 4, 12, 5, 6, 13, 1, 6, 7, 8, 3], | |
| "ct": [0, 12, 7, 12, 4, 3, 13, 2, 11, 3, 15, 7, 9, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 452, | |
| "comment": "y = 1 and a = 1 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "37f015e72948b06b470843", | |
| "msg": [13, 1, 6, 13, 12, 3, 8, 5, 12, 11, 9, 6, 11, 6], | |
| "ct": [10, 11, 3, 13, 14, 5, 3, 4, 4, 8, 13, 10, 14, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 453, | |
| "comment": "y = 1 and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "37f015e72948b06b470843", | |
| "msg": [9, 2, 1, 1, 13, 12, 14, 7, 12, 14, 6, 10, 6, 1], | |
| "ct": [1, 0, 15, 4, 10, 14, 0, 6, 12, 1, 4, 1, 14, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 454, | |
| "comment": "y = 1 and (y + a) % radix**7 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "37f015e72948b06b470843", | |
| "msg": [2, 15, 9, 10, 2, 14, 0, 4, 4, 6, 8, 11, 6, 1], | |
| "ct": [5, 0, 3, 1, 11, 12, 4, 4, 13, 15, 3, 15, 10, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 455, | |
| "comment": "y = 1 and (y + a) % radix**7 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "37f015e72948b06b470843", | |
| "msg": [10, 15, 9, 0, 6, 4, 8, 1, 5, 12, 11, 12, 1, 12], | |
| "ct": [4, 5, 10, 0, 3, 6, 6, 14, 1, 15, 9, 7, 8, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 456, | |
| "comment": "y is maximal and (y + a) % radix**7 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "4d42aeb927ae2100fbdd26", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 11, 5, 12, 2, 5, 5, 5], | |
| "ct": [12, 14, 6, 0, 12, 9, 2, 6, 15, 2, 9, 12, 13, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 457, | |
| "comment": "y is maximal and (y + a) % radix**7 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "4d42aeb927ae2100fbdd26", | |
| "msg": [0, 0, 0, 0, 0, 0, 1, 11, 5, 12, 2, 5, 5, 5], | |
| "ct": [5, 15, 6, 5, 12, 10, 1, 8, 8, 4, 15, 9, 6, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 458, | |
| "comment": "y is maximal and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "4d42aeb927ae2100fbdd26", | |
| "msg": [8, 0, 0, 0, 0, 0, 0, 11, 5, 12, 2, 5, 5, 5], | |
| "ct": [12, 5, 15, 14, 0, 15, 2, 15, 4, 11, 12, 14, 9, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 459, | |
| "comment": "y is maximal and a is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "4d42aeb927ae2100fbdd26", | |
| "msg": [15, 15, 15, 15, 15, 15, 15, 11, 5, 12, 2, 5, 5, 5], | |
| "ct": [15, 10, 9, 3, 5, 8, 10, 4, 9, 2, 5, 14, 12, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 460, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "10396cdbc750cba50a7192", | |
| "msg": [3, 7, 7, 14, 7, 10, 7, 7, 12, 6, 5, 8, 1, 12], | |
| "ct": [5, 2, 14, 5, 4, 0, 10, 15, 10, 5, 6, 14, 0, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 461, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "10396cdbc750cba50a7192", | |
| "msg": [3, 6, 2, 4, 4, 2, 5, 4, 15, 6, 7, 14, 5, 6], | |
| "ct": [4, 9, 7, 12, 5, 13, 3, 13, 15, 13, 6, 4, 10, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 462, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**7 is maximal in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "10396cdbc750cba50a7192", | |
| "msg": [2, 7, 9, 3, 8, 1, 6, 8, 9, 10, 1, 15, 11, 1], | |
| "ct": [13, 7, 11, 1, 12, 1, 10, 15, 2, 1, 1, 11, 6, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 463, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**7 == 0 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "10396cdbc750cba50a7192", | |
| "msg": [9, 9, 10, 14, 12, 0, 8, 7, 4, 13, 9, 8, 11, 9], | |
| "ct": [2, 3, 5, 5, 13, 13, 14, 7, 15, 11, 7, 0, 12, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 464, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "10396cdbc750cba50a7192", | |
| "msg": [9, 4, 2, 15, 13, 11, 15, 8, 2, 13, 9, 8, 15, 11], | |
| "ct": [3, 3, 9, 3, 6, 10, 12, 2, 3, 8, 8, 8, 11, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 465, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "10396cdbc750cba50a7192", | |
| "msg": [12, 10, 0, 14, 11, 11, 9, 4, 12, 13, 7, 10, 7, 3], | |
| "ct": [10, 6, 10, 6, 1, 12, 5, 9, 10, 6, 6, 15, 11, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 466, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**7 is maximal in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "fc99ea4572e43285cef35b", | |
| "msg": [11, 2, 3, 11, 10, 7, 6, 15, 11, 9, 9, 1, 13, 12], | |
| "ct": [13, 1, 3, 4, 1, 6, 14, 2, 14, 8, 13, 0, 3, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 467, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**7 == 0 in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "fc99ea4572e43285cef35b", | |
| "msg": [6, 12, 2, 3, 5, 6, 11, 0, 5, 13, 5, 0, 1, 2], | |
| "ct": [10, 15, 5, 5, 12, 5, 5, 13, 2, 9, 0, 10, 13, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 468, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "fc99ea4572e43285cef35b", | |
| "msg": [5, 4, 12, 4, 5, 8, 6, 9, 7, 0, 4, 12, 3, 13], | |
| "ct": [11, 9, 8, 15, 0, 15, 10, 7, 12, 4, 5, 9, 13, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 469, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "fc99ea4572e43285cef35b", | |
| "msg": [12, 3, 15, 9, 15, 4, 7, 1, 2, 12, 11, 8, 6, 8], | |
| "ct": [6, 4, 11, 8, 7, 5, 6, 7, 3, 10, 5, 4, 8, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 470, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "3a6e047dffbfcdaf0ee7e0c93fc4c0e0", | |
| "tweak": "0e5628b6bce472c6", | |
| "msg": [-1, 12, 13, 6, 10, 7, 6, 15, 8, 15, 11, 12, 6, 3], | |
| "ct": [10, 1, 13, 8, 1, 14, 4, 6, 7, 14, 7, 6, 7, 0], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 471, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "3a6e047dffbfcdaf0ee7e0c93fc4c0e0", | |
| "tweak": "0e5628b6bce472c6", | |
| "msg": [10, 12, 13, 6, -1, 7, 6, 15, 8, 15, 11, 12, 6, 3], | |
| "ct": [1, 11, 13, 14, 9, 1, 9, 12, 0, 13, 3, 13, 7, 13], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 472, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "3a6e047dffbfcdaf0ee7e0c93fc4c0e0", | |
| "tweak": "0e5628b6bce472c6", | |
| "msg": [10, 12, 13, 6, 10, 7, 6, 15, 8, 15, 11, 12, 6, -1], | |
| "ct": [0, 13, 7, 14, 1, 9, 15, 14, 5, 14, 3, 12, 4, 4], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 473, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "fac01f9b53f4dea27200ae9acb9d8591", | |
| "tweak": "e0a9913de2b20921", | |
| "msg": [16, 13, 8, 4, 10, 7, 2, 3, 3, 1, 1, 12, 7, 11], | |
| "ct": [6, 11, 4, 0, 7, 15, 0, 14, 3, 2, 2, 0, 5, 7], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 474, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "fac01f9b53f4dea27200ae9acb9d8591", | |
| "tweak": "e0a9913de2b20921", | |
| "msg": [5, 13, 8, 4, 16, 7, 2, 3, 3, 1, 1, 12, 7, 11], | |
| "ct": [5, 2, 5, 11, 6, 10, 11, 14, 13, 1, 3, 1, 14, 5], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 475, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "fac01f9b53f4dea27200ae9acb9d8591", | |
| "tweak": "e0a9913de2b20921", | |
| "msg": [5, 13, 8, 4, 10, 7, 2, 3, 3, 1, 1, 12, 7, 16], | |
| "ct": [3, 10, 2, 13, 4, 12, 14, 10, 10, 15, 11, 7, 9, 6], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 15, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 476, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "7b0c5d430ef9383b04b2691ce3402a9a", | |
| "tweak": "ec71532112064259", | |
| "msg": [12, 5, 14, 14, 2, 12, 11, 4, 11, 2, 7, 1, 10, 10, 12], | |
| "ct": [12, 1, 4, 8, 12, 15, 2, 4, 10, 8, 11, 15, 2, 11, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 477, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [6, 14, 10, 6, 9, 8, 12, 11, 7, 5, 5, 15, 5, 7, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 478, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "ct": [9, 12, 13, 8, 4, 1, 13, 8, 12, 9, 8, 2, 11, 3, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 479, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [8, 0, 0, 0, 0, 0, 0, 8, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [15, 10, 1, 7, 8, 14, 8, 2, 3, 1, 5, 5, 5, 11, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 480, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [7, 15, 15, 15, 15, 15, 15, 7, 15, 15, 15, 15, 15, 15, 15], | |
| "ct": [14, 1, 8, 4, 15, 14, 11, 0, 13, 11, 11, 4, 15, 5, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 481, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [3, 5, 1, 15, 7, 7, 12, 15, 9, 7, 9, 8, 1, 15, 7], | |
| "ct": [13, 0, 1, 15, 1, 14, 14, 7, 10, 4, 8, 13, 12, 7, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 482, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [10, 14, 9, 10, 6, 0, 8, 12, 14, 1, 14, 14, 0, 0, 15], | |
| "ct": [13, 11, 10, 12, 7, 3, 4, 9, 6, 1, 5, 10, 13, 0, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 483, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [4, 14, 10, 11, 7, 2, 5, 13, 1, 5, 3, 7, 10, 1, 8], | |
| "ct": [6, 10, 4, 14, 8, 6, 4, 5, 15, 10, 14, 10, 4, 6, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 484, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [8, 5, 2, 0, 3, 3, 3, 2, 11, 5, 1, 10, 14, 5, 7], | |
| "ct": [3, 6, 3, 5, 5, 5, 4, 4, 13, 9, 0, 7, 11, 4, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 485, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [4, 6, 6, 14, 8, 8, 0, 1, 11, 15, 7, 9, 5, 12, 8], | |
| "ct": [7, 3, 6, 1, 12, 12, 5, 9, 12, 14, 9, 11, 11, 6, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 486, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [13, 0, 10, 8, 8, 3, 3, 10, 2, 5, 11, 1, 5, 11, 3], | |
| "ct": [14, 6, 4, 7, 4, 0, 13, 10, 1, 7, 13, 15, 9, 7, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 487, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [11, 4, 13, 15, 3, 0, 9, 13, 10, 13, 2, 9, 12, 4, 7], | |
| "ct": [14, 15, 14, 5, 8, 15, 0, 4, 8, 9, 3, 11, 3, 7, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 488, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [3, 7, 5, 11, 14, 9, 0, 14, 14, 2, 8, 4, 9, 1, 4], | |
| "ct": [2, 11, 4, 12, 8, 1, 10, 10, 7, 14, 8, 10, 8, 8, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 489, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [5, 12, 1, 9, 10, 15, 6, 14, 10, 7, 14, 4, 3, 5, 4], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 490, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [12, 3, 2, 14, 1, 7, 10, 5, 4, 11, 14, 3, 8, 9, 1], | |
| "ct": [15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 491, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [13, 1, 4, 11, 12, 12, 8, 13, 1, 9, 5, 14, 2, 9, 1], | |
| "ct": [8, 0, 0, 0, 0, 0, 0, 8, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 492, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [3, 1, 9, 11, 9, 7, 11, 0, 13, 2, 5, 15, 15, 9, 1], | |
| "ct": [7, 15, 15, 15, 15, 15, 15, 7, 15, 15, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 493, | |
| "comment": "y = 0 and (y + a) % radix**7 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "b854c7b62bb76fdd3a7f27", | |
| "msg": [9, 2, 8, 8, 11, 4, 2, 6, 6, 0, 6, 14, 7, 2, 14], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 11, 8, 2, 15, 10, 5, 13, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 494, | |
| "comment": "y = 0 and a = 1 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "b854c7b62bb76fdd3a7f27", | |
| "msg": [10, 2, 15, 10, 11, 3, 14, 15, 13, 0, 9, 7, 8, 11, 9], | |
| "ct": [0, 0, 0, 0, 0, 0, 1, 2, 6, 13, 6, 10, 2, 11, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 495, | |
| "comment": "y = 0 and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "b854c7b62bb76fdd3a7f27", | |
| "msg": [13, 2, 15, 4, 9, 14, 9, 1, 7, 14, 3, 13, 7, 15, 14], | |
| "ct": [8, 0, 0, 0, 0, 0, 0, 9, 4, 2, 2, 0, 15, 14, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 496, | |
| "comment": "y = 0 and (y + a) % radix**7 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "b854c7b62bb76fdd3a7f27", | |
| "msg": [0, 5, 0, 12, 9, 8, 12, 5, 13, 3, 6, 2, 9, 9, 12], | |
| "ct": [15, 15, 15, 15, 15, 15, 15, 4, 0, 2, 13, 2, 13, 2, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 497, | |
| "comment": "y = 1 and a = 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "a594c6f79df32b166990d9", | |
| "msg": [5, 11, 15, 12, 7, 0, 0, 4, 8, 4, 0, 12, 9, 10, 7], | |
| "ct": [3, 6, 1, 4, 8, 8, 14, 1, 5, 13, 1, 11, 14, 13, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 498, | |
| "comment": "y = 1 and a = 1 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "a594c6f79df32b166990d9", | |
| "msg": [4, 15, 0, 11, 7, 11, 9, 2, 6, 11, 14, 1, 1, 0, 2], | |
| "ct": [12, 8, 10, 3, 10, 9, 4, 7, 5, 13, 13, 13, 5, 3, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 499, | |
| "comment": "y = 1 and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "a594c6f79df32b166990d9", | |
| "msg": [8, 5, 9, 0, 8, 10, 0, 12, 11, 5, 2, 15, 2, 0, 9], | |
| "ct": [7, 13, 5, 10, 5, 2, 10, 6, 6, 4, 6, 13, 3, 7, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 500, | |
| "comment": "y = 1 and (y + a) % radix**7 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "a594c6f79df32b166990d9", | |
| "msg": [2, 0, 8, 1, 4, 13, 1, 2, 2, 0, 1, 13, 6, 15, 9], | |
| "ct": [8, 4, 4, 2, 15, 7, 15, 8, 5, 12, 1, 13, 2, 6, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 501, | |
| "comment": "y = 1 and (y + a) % radix**7 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "a594c6f79df32b166990d9", | |
| "msg": [6, 1, 2, 6, 9, 4, 7, 1, 12, 14, 2, 15, 1, 10, 3], | |
| "ct": [10, 10, 12, 6, 15, 8, 14, 7, 3, 6, 15, 12, 4, 9, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 502, | |
| "comment": "y is maximal and (y + a) % radix**7 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "d75322fbd39c256a52d92f", | |
| "msg": [14, 13, 7, 10, 3, 2, 14, 8, 12, 5, 11, 9, 12, 3, 4], | |
| "ct": [8, 7, 2, 11, 1, 7, 14, 9, 10, 7, 1, 6, 3, 15, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 503, | |
| "comment": "y is maximal and (y + a) % radix**7 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "d75322fbd39c256a52d92f", | |
| "msg": [3, 9, 1, 3, 6, 6, 10, 2, 5, 4, 12, 7, 8, 3, 4], | |
| "ct": [6, 12, 6, 2, 1, 6, 0, 12, 8, 7, 15, 4, 4, 5, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 504, | |
| "comment": "y is maximal and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "d75322fbd39c256a52d92f", | |
| "msg": [12, 9, 10, 7, 10, 13, 0, 5, 9, 3, 4, 11, 4, 6, 7], | |
| "ct": [15, 6, 7, 8, 9, 6, 5, 6, 12, 9, 9, 10, 11, 9, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 505, | |
| "comment": "y is maximal and a is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "d75322fbd39c256a52d92f", | |
| "msg": [1, 9, 4, 12, 10, 7, 15, 0, 9, 7, 2, 3, 5, 9, 8], | |
| "ct": [7, 12, 12, 6, 6, 8, 0, 11, 2, 9, 8, 11, 6, 7, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 506, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "1fbfac74577bc8b39219f8", | |
| "msg": [3, 8, 3, 1, 10, 7, 0, 3, 0, 0, 14, 3, 8, 1, 0], | |
| "ct": [5, 8, 9, 12, 3, 7, 1, 4, 5, 12, 14, 8, 0, 8, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 507, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "1fbfac74577bc8b39219f8", | |
| "msg": [10, 0, 2, 11, 4, 3, 6, 1, 13, 4, 13, 11, 9, 4, 4], | |
| "ct": [5, 14, 7, 5, 12, 15, 14, 13, 2, 12, 6, 0, 11, 8, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 508, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**7 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "1fbfac74577bc8b39219f8", | |
| "msg": [5, 5, 6, 0, 6, 2, 15, 6, 13, 13, 5, 12, 10, 14, 6], | |
| "ct": [7, 8, 1, 15, 5, 13, 11, 8, 14, 2, 10, 8, 15, 4, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 509, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**7 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "1fbfac74577bc8b39219f8", | |
| "msg": [10, 0, 11, 13, 13, 3, 14, 2, 7, 8, 8, 15, 15, 10, 14], | |
| "ct": [5, 10, 7, 9, 5, 8, 6, 4, 12, 2, 7, 15, 11, 10, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 510, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "1fbfac74577bc8b39219f8", | |
| "msg": [6, 0, 1, 8, 7, 7, 6, 0, 11, 9, 12, 12, 5, 8, 8], | |
| "ct": [1, 0, 8, 15, 3, 13, 10, 13, 14, 3, 5, 14, 0, 7, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 511, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "1fbfac74577bc8b39219f8", | |
| "msg": [1, 14, 0, 6, 11, 9, 3, 1, 5, 0, 0, 6, 6, 7, 7], | |
| "ct": [12, 0, 10, 4, 13, 1, 7, 11, 3, 5, 3, 5, 14, 8, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 512, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**7 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "f591c3e3438d3ccf27c4e6", | |
| "msg": [1, 4, 8, 7, 5, 11, 7, 0, 2, 11, 1, 3, 13, 11, 14], | |
| "ct": [8, 11, 6, 14, 12, 9, 10, 14, 3, 15, 3, 7, 14, 12, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 513, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**7 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "f591c3e3438d3ccf27c4e6", | |
| "msg": [6, 11, 7, 12, 12, 2, 8, 10, 7, 8, 1, 11, 9, 13, 12], | |
| "ct": [12, 0, 6, 14, 9, 10, 8, 14, 8, 14, 9, 7, 11, 10, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 514, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "f591c3e3438d3ccf27c4e6", | |
| "msg": [2, 15, 13, 13, 3, 14, 4, 6, 10, 7, 13, 1, 9, 4, 15], | |
| "ct": [2, 13, 12, 9, 3, 2, 1, 5, 14, 6, 6, 3, 11, 11, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 515, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "f591c3e3438d3ccf27c4e6", | |
| "msg": [13, 7, 3, 2, 7, 5, 0, 10, 5, 0, 3, 8, 6, 15, 7], | |
| "ct": [15, 4, 8, 7, 7, 4, 1, 10, 14, 12, 12, 12, 1, 5, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 516, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "18f316e92e027b0d4d068bb94f8dd864", | |
| "tweak": "17d37026864474b3", | |
| "msg": [-1, 7, 3, 6, 8, 10, 7, 10, 11, 12, 5, 10, 7, 7, 15], | |
| "ct": [7, 10, 10, 12, 0, 0, 3, 6, 3, 8, 5, 4, 12, 8, 9], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 517, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "18f316e92e027b0d4d068bb94f8dd864", | |
| "tweak": "17d37026864474b3", | |
| "msg": [1, 7, 3, 6, 8, -1, 7, 10, 11, 12, 5, 10, 7, 7, 15], | |
| "ct": [2, 7, 0, 3, 4, 7, 8, 12, 2, 7, 14, 5, 0, 11, 13], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 518, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "18f316e92e027b0d4d068bb94f8dd864", | |
| "tweak": "17d37026864474b3", | |
| "msg": [1, 7, 3, 6, 8, 10, 7, 10, 11, 12, 5, 10, 7, 7, -1], | |
| "ct": [13, 11, 9, 10, 0, 14, 0, 1, 0, 13, 14, 14, 2, 8, 7], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 519, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "1d124a4fcee949fc7e9dc66f4c7621d1", | |
| "tweak": "55e94bca92c9d2ae", | |
| "msg": [16, 5, 4, 15, 9, 4, 6, 4, 11, 11, 0, 10, 10, 13, 8], | |
| "ct": [1, 14, 13, 2, 0, 5, 9, 9, 12, 9, 4, 10, 12, 3, 13], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 520, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "1d124a4fcee949fc7e9dc66f4c7621d1", | |
| "tweak": "55e94bca92c9d2ae", | |
| "msg": [11, 5, 4, 15, 9, 16, 6, 4, 11, 11, 0, 10, 10, 13, 8], | |
| "ct": [0, 12, 2, 4, 13, 15, 6, 7, 14, 14, 12, 10, 2, 6, 1], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 521, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "1d124a4fcee949fc7e9dc66f4c7621d1", | |
| "tweak": "55e94bca92c9d2ae", | |
| "msg": [11, 5, 4, 15, 9, 4, 6, 4, 11, 11, 0, 10, 10, 13, 16], | |
| "ct": [1, 1, 5, 14, 11, 10, 5, 7, 11, 0, 0, 11, 15, 12, 13], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 16, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 522, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "48f0d03e41cc55c4b58f737b5acdea32", | |
| "tweak": "30944debca89ca90", | |
| "msg": [0, 4, 15, 14, 1, 1, 4, 1, 9, 6, 10, 1, 15, 5, 15, 8], | |
| "ct": [9, 0, 7, 7, 9, 5, 2, 0, 7, 2, 10, 12, 7, 12, 5, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 523, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [3, 12, 3, 9, 1, 10, 2, 13, 5, 11, 9, 11, 15, 6, 5, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 524, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "ct": [10, 0, 5, 13, 5, 2, 12, 5, 2, 11, 5, 8, 3, 11, 9, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 525, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [8, 0, 0, 0, 0, 0, 0, 0, 8, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [8, 1, 12, 2, 13, 0, 3, 8, 11, 8, 15, 2, 10, 8, 13, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 526, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [7, 15, 15, 15, 15, 15, 15, 15, 7, 15, 15, 15, 15, 15, 15, 15], | |
| "ct": [15, 6, 6, 8, 3, 1, 3, 1, 8, 13, 6, 14, 2, 6, 1, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 527, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [7, 13, 13, 14, 7, 8, 7, 2, 5, 13, 0, 12, 4, 14, 7, 2], | |
| "ct": [7, 12, 11, 15, 12, 4, 7, 6, 15, 7, 8, 9, 10, 5, 9, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 528, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [4, 9, 8, 15, 5, 1, 7, 14, 0, 1, 6, 1, 8, 1, 7, 6], | |
| "ct": [2, 11, 1, 15, 4, 12, 7, 12, 13, 4, 10, 1, 1, 14, 3, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 529, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [3, 2, 8, 11, 0, 6, 8, 0, 2, 14, 5, 15, 7, 11, 2, 7], | |
| "ct": [13, 13, 8, 8, 6, 1, 4, 6, 13, 8, 3, 15, 12, 10, 4, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 530, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [11, 14, 13, 14, 15, 1, 11, 9, 7, 4, 7, 15, 12, 0, 2, 10], | |
| "ct": [14, 12, 15, 2, 11, 9, 9, 8, 2, 11, 7, 4, 9, 4, 15, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 531, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [8, 13, 11, 2, 4, 14, 11, 7, 13, 5, 14, 1, 0, 0, 5, 10], | |
| "ct": [15, 4, 11, 7, 8, 9, 5, 2, 12, 7, 4, 10, 14, 3, 13, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 532, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [10, 0, 5, 13, 8, 2, 15, 0, 10, 8, 14, 7, 12, 4, 12, 6], | |
| "ct": [12, 0, 10, 13, 3, 5, 11, 14, 3, 12, 12, 5, 6, 3, 9, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 533, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [4, 4, 9, 13, 13, 11, 13, 2, 4, 0, 6, 1, 3, 14, 6, 10], | |
| "ct": [10, 4, 15, 14, 14, 0, 8, 5, 2, 12, 5, 12, 11, 6, 7, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 534, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [2, 13, 5, 0, 14, 5, 15, 8, 14, 1, 10, 4, 6, 9, 15, 5], | |
| "ct": [14, 13, 0, 13, 9, 3, 8, 1, 1, 6, 14, 15, 1, 6, 2, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 535, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [4, 4, 1, 15, 6, 12, 11, 8, 7, 13, 1, 8, 12, 10, 11, 0], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 536, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [6, 14, 9, 5, 0, 6, 14, 15, 7, 5, 0, 9, 3, 6, 11, 5], | |
| "ct": [15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 537, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [6, 10, 2, 1, 13, 11, 3, 1, 7, 8, 11, 10, 11, 11, 8, 7], | |
| "ct": [8, 0, 0, 0, 0, 0, 0, 0, 8, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 538, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [2, 11, 0, 11, 9, 3, 1, 5, 7, 11, 7, 5, 0, 13, 6, 5], | |
| "ct": [7, 15, 15, 15, 15, 15, 15, 15, 7, 15, 15, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 539, | |
| "comment": "y = 0 and (y + a) % radix**8 == 0 in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "0f6490029ff2e4e742b189", | |
| "msg": [8, 3, 4, 2, 5, 11, 3, 5, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [4, 6, 0, 0, 3, 7, 4, 4, 14, 9, 5, 8, 10, 15, 10, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 540, | |
| "comment": "y = 0 and a = 1 in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "0f6490029ff2e4e742b189", | |
| "msg": [1, 15, 15, 9, 14, 0, 2, 14, 0, 0, 0, 0, 0, 0, 0, 1], | |
| "ct": [7, 0, 14, 13, 3, 5, 10, 7, 14, 1, 8, 15, 8, 2, 12, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 541, | |
| "comment": "y = 0 and a has large Hamming weight in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "0f6490029ff2e4e742b189", | |
| "msg": [12, 5, 5, 7, 10, 13, 4, 15, 8, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [2, 2, 4, 3, 12, 7, 15, 6, 15, 6, 0, 9, 12, 8, 12, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 542, | |
| "comment": "y = 0 and (y + a) % radix**8 is maximal in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "0f6490029ff2e4e742b189", | |
| "msg": [1, 4, 14, 12, 6, 5, 1, 12, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "ct": [8, 14, 2, 6, 12, 15, 12, 11, 14, 5, 1, 8, 15, 0, 12, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 543, | |
| "comment": "y = 1 and a = 0 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "61ea97bafcda0899a48001", | |
| "msg": [12, 10, 0, 7, 8, 1, 6, 6, 14, 14, 7, 7, 6, 14, 6, 14], | |
| "ct": [13, 11, 12, 2, 11, 12, 3, 13, 11, 4, 13, 2, 9, 11, 1, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 544, | |
| "comment": "y = 1 and a = 1 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "61ea97bafcda0899a48001", | |
| "msg": [8, 12, 6, 13, 7, 15, 3, 14, 7, 5, 0, 7, 5, 13, 0, 9], | |
| "ct": [14, 14, 11, 14, 11, 9, 2, 10, 9, 6, 0, 5, 1, 8, 6, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 545, | |
| "comment": "y = 1 and a has large Hamming weight in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "61ea97bafcda0899a48001", | |
| "msg": [10, 14, 3, 9, 5, 10, 10, 5, 11, 13, 0, 2, 8, 14, 4, 8], | |
| "ct": [14, 11, 6, 8, 11, 8, 0, 11, 5, 14, 10, 6, 3, 13, 11, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 546, | |
| "comment": "y = 1 and (y + a) % radix**8 is maximal in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "61ea97bafcda0899a48001", | |
| "msg": [5, 10, 4, 15, 14, 2, 10, 9, 13, 13, 15, 0, 3, 6, 15, 0], | |
| "ct": [1, 2, 8, 7, 14, 12, 11, 15, 12, 15, 12, 0, 10, 14, 7, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 547, | |
| "comment": "y = 1 and (y + a) % radix**8 == 0 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "61ea97bafcda0899a48001", | |
| "msg": [2, 13, 14, 11, 6, 0, 7, 11, 5, 15, 11, 9, 10, 1, 2, 8], | |
| "ct": [13, 11, 10, 7, 2, 3, 11, 9, 3, 8, 14, 1, 0, 5, 5, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 548, | |
| "comment": "y is maximal and (y + a) % radix**8 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "32d3f63ce429d63ed0c966", | |
| "msg": [11, 1, 2, 11, 14, 9, 11, 3, 8, 15, 5, 8, 0, 4, 8, 3], | |
| "ct": [15, 13, 8, 14, 8, 13, 11, 5, 11, 12, 13, 0, 12, 5, 12, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 549, | |
| "comment": "y is maximal and (y + a) % radix**8 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "32d3f63ce429d63ed0c966", | |
| "msg": [11, 11, 0, 4, 7, 10, 14, 4, 12, 12, 0, 9, 8, 11, 7, 15], | |
| "ct": [2, 4, 2, 10, 7, 15, 6, 15, 8, 10, 5, 0, 2, 0, 13, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 550, | |
| "comment": "y is maximal and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "32d3f63ce429d63ed0c966", | |
| "msg": [11, 3, 12, 3, 9, 10, 1, 3, 5, 15, 2, 2, 5, 9, 13, 13], | |
| "ct": [9, 4, 4, 7, 1, 0, 6, 10, 0, 1, 7, 5, 8, 6, 3, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 551, | |
| "comment": "y is maximal and a is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "32d3f63ce429d63ed0c966", | |
| "msg": [0, 4, 12, 8, 3, 7, 12, 8, 9, 3, 0, 0, 11, 0, 10, 12], | |
| "ct": [7, 13, 4, 15, 15, 15, 14, 3, 3, 1, 4, 15, 0, 8, 8, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 552, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "72e0b5ee3a2f0ad5bc40fe", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 5, 9, 13, 15, 10, 3, 2, 0], | |
| "ct": [10, 2, 5, 15, 12, 6, 6, 13, 11, 1, 5, 5, 3, 7, 7, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 553, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "72e0b5ee3a2f0ad5bc40fe", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 1, 5, 9, 13, 15, 10, 3, 2, 0], | |
| "ct": [1, 5, 14, 6, 4, 14, 5, 5, 2, 4, 10, 9, 5, 4, 0, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 554, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**8 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "72e0b5ee3a2f0ad5bc40fe", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 15, 5, 9, 13, 15, 10, 3, 2, 0], | |
| "ct": [15, 11, 5, 2, 10, 3, 12, 7, 15, 10, 12, 15, 14, 5, 2, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 555, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**8 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "72e0b5ee3a2f0ad5bc40fe", | |
| "msg": [0, 0, 0, 0, 0, 0, 1, 0, 5, 9, 13, 15, 10, 3, 2, 0], | |
| "ct": [14, 9, 15, 10, 13, 12, 2, 12, 11, 4, 10, 5, 2, 14, 7, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 556, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "72e0b5ee3a2f0ad5bc40fe", | |
| "msg": [8, 0, 0, 0, 0, 0, 0, 0, 5, 9, 13, 15, 10, 3, 2, 0], | |
| "ct": [0, 3, 8, 5, 4, 5, 9, 13, 11, 8, 4, 2, 1, 14, 10, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 557, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "72e0b5ee3a2f0ad5bc40fe", | |
| "msg": [15, 15, 15, 15, 15, 15, 15, 15, 5, 9, 13, 15, 10, 3, 2, 0], | |
| "ct": [5, 6, 11, 8, 8, 15, 0, 1, 12, 10, 10, 6, 12, 6, 9, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 558, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**8 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "e12e96e7e42a0b3ef00685", | |
| "msg": [5, 12, 4, 9, 13, 8, 4, 0, 11, 2, 14, 5, 2, 7, 5, 2], | |
| "ct": [0, 13, 12, 7, 6, 15, 10, 3, 13, 2, 0, 9, 2, 2, 8, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 559, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**8 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "e12e96e7e42a0b3ef00685", | |
| "msg": [1, 14, 9, 9, 13, 0, 6, 6, 14, 9, 4, 10, 0, 4, 0, 12], | |
| "ct": [9, 15, 14, 6, 6, 8, 1, 3, 12, 7, 1, 0, 15, 10, 13, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 560, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "e12e96e7e42a0b3ef00685", | |
| "msg": [6, 10, 9, 2, 15, 9, 13, 13, 15, 8, 6, 13, 6, 5, 9, 4], | |
| "ct": [7, 14, 4, 1, 4, 3, 4, 5, 7, 14, 10, 0, 10, 13, 3, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 561, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "e12e96e7e42a0b3ef00685", | |
| "msg": [14, 13, 4, 4, 7, 1, 2, 2, 3, 1, 3, 6, 13, 9, 10, 1], | |
| "ct": [10, 11, 0, 9, 4, 12, 14, 12, 12, 7, 13, 2, 11, 6, 0, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 562, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "c3a8f68c88eeea1a255db6a7e012ec22", | |
| "tweak": "a841e8a1819dfb69", | |
| "msg": [-1, 5, 4, 5, 9, 13, 6, 5, 7, 7, 11, 15, 5, 5, 2, 8], | |
| "ct": [8, 7, 13, 11, 10, 13, 12, 1, 15, 14, 6, 13, 10, 7, 10, 11], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 563, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "c3a8f68c88eeea1a255db6a7e012ec22", | |
| "tweak": "a841e8a1819dfb69", | |
| "msg": [12, 5, 4, 5, 9, -1, 6, 5, 7, 7, 11, 15, 5, 5, 2, 8], | |
| "ct": [7, 4, 7, 6, 14, 4, 11, 9, 3, 12, 14, 0, 13, 12, 13, 0], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 564, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "c3a8f68c88eeea1a255db6a7e012ec22", | |
| "tweak": "a841e8a1819dfb69", | |
| "msg": [12, 5, 4, 5, 9, 13, 6, 5, 7, 7, 11, 15, 5, 5, 2, -1], | |
| "ct": [6, 15, 0, 7, 7, 12, 0, 1, 3, 10, 8, 0, 5, 4, 12, 11], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 565, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "adaaad8b8a7d1a4f2a6da658cae4e875", | |
| "tweak": "0626fa2f2f429602", | |
| "msg": [16, 7, 14, 3, 5, 9, 12, 13, 3, 11, 7, 15, 5, 7, 14, 5], | |
| "ct": [3, 8, 3, 6, 8, 10, 3, 15, 7, 9, 6, 10, 6, 8, 9, 14], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 566, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "adaaad8b8a7d1a4f2a6da658cae4e875", | |
| "tweak": "0626fa2f2f429602", | |
| "msg": [13, 7, 14, 3, 5, 16, 12, 13, 3, 11, 7, 15, 5, 7, 14, 5], | |
| "ct": [9, 10, 0, 7, 4, 2, 10, 12, 7, 8, 13, 12, 1, 7, 8, 0], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 567, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "adaaad8b8a7d1a4f2a6da658cae4e875", | |
| "tweak": "0626fa2f2f429602", | |
| "msg": [13, 7, 14, 3, 5, 9, 12, 13, 3, 11, 7, 15, 5, 7, 14, 16], | |
| "ct": [0, 6, 8, 5, 14, 14, 2, 12, 5, 10, 8, 5, 6, 8, 2, 15], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 17, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 568, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "22351a53774415942eb879b483eda9a2", | |
| "tweak": "b4a5dce9958d53fc", | |
| "msg": [1, 12, 0, 11, 2, 5, 7, 11, 1, 5, 9, 2, 8, 4, 15, 12, 10], | |
| "ct": [6, 8, 9, 10, 9, 4, 3, 15, 7, 2, 5, 15, 8, 15, 2, 2, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 569, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [7, 6, 6, 3, 11, 13, 8, 1, 8, 8, 11, 5, 2, 13, 4, 6, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 570, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "ct": [8, 8, 9, 12, 13, 9, 4, 0, 9, 10, 1, 2, 2, 10, 7, 13, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 571, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [8, 0, 0, 0, 0, 0, 0, 0, 8, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [1, 6, 10, 10, 14, 13, 12, 15, 15, 14, 0, 2, 2, 13, 12, 9, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 572, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [7, 15, 15, 15, 15, 15, 15, 15, 7, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "ct": [14, 7, 4, 12, 12, 12, 14, 12, 13, 13, 7, 15, 1, 3, 4, 14, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 573, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [13, 15, 13, 5, 11, 11, 11, 12, 14, 6, 15, 9, 11, 7, 6, 7, 2], | |
| "ct": [6, 7, 2, 4, 5, 15, 11, 2, 14, 9, 13, 3, 9, 1, 7, 0, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 574, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [3, 4, 3, 10, 10, 9, 5, 0, 13, 15, 15, 0, 3, 12, 6, 6, 5], | |
| "ct": [6, 6, 2, 4, 9, 5, 6, 0, 6, 2, 7, 4, 10, 15, 12, 11, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 575, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [11, 4, 3, 5, 1, 12, 2, 15, 13, 15, 15, 7, 10, 1, 10, 1, 1], | |
| "ct": [4, 4, 3, 1, 13, 15, 10, 3, 7, 15, 1, 11, 7, 8, 7, 2, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 576, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [4, 13, 13, 2, 3, 9, 9, 11, 7, 11, 11, 0, 9, 13, 0, 7, 7], | |
| "ct": [6, 13, 12, 10, 12, 8, 10, 14, 1, 15, 8, 8, 3, 5, 9, 7, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 577, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [13, 14, 13, 3, 7, 12, 8, 1, 2, 6, 15, 9, 13, 2, 15, 4, 5], | |
| "ct": [13, 9, 0, 14, 10, 9, 1, 15, 5, 9, 15, 10, 9, 13, 1, 1, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 578, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [2, 5, 5, 14, 5, 2, 0, 14, 5, 8, 12, 12, 6, 7, 3, 10, 10], | |
| "ct": [0, 12, 13, 15, 2, 7, 10, 11, 3, 1, 1, 14, 15, 2, 15, 3, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 579, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [0, 0, 13, 0, 1, 4, 8, 5, 1, 6, 0, 13, 9, 10, 7, 2, 3], | |
| "ct": [3, 7, 1, 12, 0, 14, 1, 10, 1, 0, 5, 8, 0, 13, 2, 14, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 580, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [9, 3, 4, 13, 8, 10, 15, 4, 5, 11, 5, 0, 4, 15, 1, 5, 15], | |
| "ct": [11, 15, 11, 11, 7, 13, 14, 14, 14, 9, 4, 12, 12, 10, 10, 14, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 581, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [5, 12, 12, 5, 9, 8, 12, 13, 14, 4, 6, 10, 0, 7, 13, 13, 1], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 582, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [14, 6, 9, 10, 4, 0, 12, 2, 1, 3, 14, 1, 4, 4, 1, 4, 15], | |
| "ct": [15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 583, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [15, 7, 15, 9, 7, 1, 7, 12, 8, 8, 4, 8, 13, 9, 6, 1, 6], | |
| "ct": [8, 0, 0, 0, 0, 0, 0, 0, 8, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 584, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [9, 6, 5, 13, 8, 9, 12, 12, 3, 3, 3, 13, 9, 0, 5, 1, 7], | |
| "ct": [7, 15, 15, 15, 15, 15, 15, 15, 7, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 585, | |
| "comment": "y = 0 and (y + a) % radix**8 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "032a1d5371ba5b2e33fe", | |
| "msg": [15, 8, 13, 15, 14, 5, 8, 15, 10, 9, 1, 7, 10, 9, 0, 1, 14], | |
| "ct": [15, 5, 12, 8, 12, 14, 1, 4, 15, 3, 14, 14, 12, 9, 13, 15, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 586, | |
| "comment": "y = 0 and a = 1 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "032a1d5371ba5b2e33fe", | |
| "msg": [3, 10, 2, 7, 4, 11, 2, 3, 14, 3, 0, 0, 14, 9, 3, 9, 5], | |
| "ct": [12, 3, 14, 6, 14, 4, 4, 2, 5, 2, 13, 11, 0, 10, 4, 12, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 587, | |
| "comment": "y = 0 and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "032a1d5371ba5b2e33fe", | |
| "msg": [3, 14, 1, 9, 4, 8, 5, 9, 12, 1, 9, 9, 7, 2, 2, 11, 10], | |
| "ct": [10, 2, 8, 1, 13, 6, 11, 7, 12, 11, 3, 2, 0, 2, 3, 9, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 588, | |
| "comment": "y = 0 and (y + a) % radix**8 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "032a1d5371ba5b2e33fe", | |
| "msg": [10, 5, 0, 6, 2, 8, 13, 3, 8, 13, 14, 8, 13, 4, 11, 15, 5], | |
| "ct": [11, 4, 0, 5, 11, 2, 13, 4, 12, 11, 1, 13, 5, 5, 6, 8, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 589, | |
| "comment": "y = 1 and a = 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "08f54441e69e190c00de", | |
| "msg": [9, 8, 12, 6, 3, 9, 11, 7, 5, 0, 11, 4, 2, 7, 4, 10, 3], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 1, 13, 6, 15, 13, 6, 1, 1, 5, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 590, | |
| "comment": "y = 1 and a = 1 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "08f54441e69e190c00de", | |
| "msg": [11, 11, 4, 4, 14, 7, 15, 13, 2, 5, 12, 14, 10, 0, 1, 5, 5], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 2, 12, 6, 2, 6, 3, 7, 14, 8, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 591, | |
| "comment": "y = 1 and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "08f54441e69e190c00de", | |
| "msg": [7, 3, 14, 8, 10, 4, 4, 4, 3, 13, 8, 12, 6, 12, 13, 2, 3], | |
| "ct": [8, 0, 0, 0, 0, 0, 0, 1, 9, 3, 1, 3, 7, 8, 7, 4, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 592, | |
| "comment": "y = 1 and (y + a) % radix**8 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "08f54441e69e190c00de", | |
| "msg": [1, 4, 0, 8, 14, 5, 11, 11, 0, 15, 11, 4, 15, 13, 9, 3, 9], | |
| "ct": [15, 15, 15, 15, 15, 15, 15, 15, 7, 12, 5, 15, 7, 14, 2, 15, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 593, | |
| "comment": "y = 1 and (y + a) % radix**8 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "08f54441e69e190c00de", | |
| "msg": [12, 9, 12, 5, 2, 2, 7, 8, 10, 5, 10, 5, 10, 9, 1, 4, 6], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 4, 1, 10, 3, 13, 6, 8, 12, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 594, | |
| "comment": "y is maximal and (y + a) % radix**8 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "e367ca8f281c1aeab732", | |
| "msg": [2, 11, 3, 15, 15, 0, 0, 4, 2, 5, 8, 2, 7, 7, 15, 6, 8], | |
| "ct": [5, 12, 4, 9, 12, 11, 3, 14, 1, 14, 11, 1, 14, 2, 6, 14, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 595, | |
| "comment": "y is maximal and (y + a) % radix**8 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "e367ca8f281c1aeab732", | |
| "msg": [1, 0, 5, 1, 10, 6, 5, 3, 9, 0, 5, 10, 2, 6, 14, 2, 5], | |
| "ct": [12, 9, 5, 5, 0, 2, 5, 8, 10, 7, 4, 2, 15, 7, 6, 6, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 596, | |
| "comment": "y is maximal and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "e367ca8f281c1aeab732", | |
| "msg": [3, 10, 9, 4, 10, 0, 15, 3, 15, 8, 4, 9, 11, 2, 1, 9, 10], | |
| "ct": [0, 14, 14, 14, 12, 4, 8, 12, 7, 5, 6, 7, 0, 11, 11, 1, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 597, | |
| "comment": "y is maximal and a is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "e367ca8f281c1aeab732", | |
| "msg": [8, 11, 4, 4, 2, 2, 10, 8, 3, 1, 12, 12, 7, 4, 1, 4, 11], | |
| "ct": [15, 1, 11, 5, 2, 5, 6, 15, 14, 0, 15, 13, 5, 7, 3, 12, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 598, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**8 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "29a406c0b7a7f5e1e6d7", | |
| "msg": [11, 11, 6, 7, 9, 3, 14, 4, 9, 10, 13, 8, 12, 9, 9, 12, 11], | |
| "ct": [15, 15, 15, 15, 15, 15, 15, 15, 9, 13, 10, 14, 8, 1, 1, 9, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 599, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**8 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "29a406c0b7a7f5e1e6d7", | |
| "msg": [1, 1, 7, 0, 13, 11, 15, 2, 0, 5, 14, 10, 6, 13, 11, 0, 6], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 11, 11, 12, 3, 8, 7, 2, 0, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 600, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "29a406c0b7a7f5e1e6d7", | |
| "msg": [11, 14, 14, 14, 15, 2, 0, 0, 7, 5, 6, 5, 5, 7, 14, 4, 7], | |
| "ct": [7, 15, 15, 15, 15, 15, 15, 15, 4, 0, 7, 3, 5, 12, 5, 14, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 601, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "29a406c0b7a7f5e1e6d7", | |
| "msg": [13, 4, 11, 14, 9, 13, 2, 0, 7, 2, 5, 9, 6, 11, 10, 11, 0], | |
| "ct": [15, 15, 15, 15, 15, 15, 15, 14, 7, 9, 7, 6, 8, 8, 9, 4, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 602, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "2ec80962dad2bf783abd539d85a7c8d6", | |
| "tweak": "1a36d2cb8088c664", | |
| "msg": [-1, 6, 1, 12, 13, 1, 4, 2, 12, 11, 9, 4, 2, 13, 8, 9, 4], | |
| "ct": [12, 12, 3, 1, 13, 14, 2, 5, 4, 1, 12, 5, 4, 9, 2, 2, 5], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 603, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "2ec80962dad2bf783abd539d85a7c8d6", | |
| "tweak": "1a36d2cb8088c664", | |
| "msg": [5, 6, 1, 12, 13, -1, 4, 2, 12, 11, 9, 4, 2, 13, 8, 9, 4], | |
| "ct": [8, 6, 12, 13, 13, 1, 3, 9, 6, 13, 5, 10, 3, 13, 13, 1, 3], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 604, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "2ec80962dad2bf783abd539d85a7c8d6", | |
| "tweak": "1a36d2cb8088c664", | |
| "msg": [5, 6, 1, 12, 13, 1, 4, 2, 12, 11, 9, 4, 2, 13, 8, 9, -1], | |
| "ct": [5, 0, 9, 15, 0, 13, 0, 9, 7, 9, 0, 4, 11, 15, 2, 6, 0], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 605, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "dd29abf3a18fad40cf872bdf97185ef4", | |
| "tweak": "3c50c31e6acc2a66", | |
| "msg": [16, 13, 2, 12, 8, 1, 4, 9, 13, 8, 5, 12, 10, 12, 6, 0, 14], | |
| "ct": [2, 4, 2, 10, 3, 6, 4, 13, 12, 2, 5, 7, 3, 3, 12, 3, 12], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 606, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "dd29abf3a18fad40cf872bdf97185ef4", | |
| "tweak": "3c50c31e6acc2a66", | |
| "msg": [12, 13, 2, 12, 8, 16, 4, 9, 13, 8, 5, 12, 10, 12, 6, 0, 14], | |
| "ct": [8, 4, 10, 12, 9, 14, 13, 9, 11, 13, 15, 8, 8, 0, 12, 12, 6], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 607, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "dd29abf3a18fad40cf872bdf97185ef4", | |
| "tweak": "3c50c31e6acc2a66", | |
| "msg": [12, 13, 2, 12, 8, 1, 4, 9, 13, 8, 5, 12, 10, 12, 6, 0, 16], | |
| "ct": [12, 7, 1, 13, 3, 8, 8, 2, 2, 3, 14, 3, 1, 9, 5, 15, 4], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 18, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 608, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "40dcd7ccae73e5e9bba5523fbab77a3c", | |
| "tweak": "60ddd7c8df1437cf", | |
| "msg": [3, 9, 0, 9, 5, 10, 8, 6, 2, 8, 2, 0, 5, 5, 7, 11, 13, 15], | |
| "ct": [0, 1, 14, 4, 3, 11, 5, 8, 3, 6, 10, 12, 3, 15, 8, 7, 8, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 609, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [4, 3, 8, 2, 14, 15, 2, 10, 10, 6, 7, 9, 2, 1, 1, 5, 10, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 610, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "ct": [7, 2, 2, 6, 12, 11, 13, 12, 13, 15, 10, 11, 4, 14, 7, 1, 7, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 611, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [8, 0, 0, 0, 0, 0, 0, 0, 0, 8, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [4, 8, 13, 2, 2, 13, 0, 12, 10, 15, 5, 5, 14, 14, 11, 7, 5, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 612, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [7, 15, 15, 15, 15, 15, 15, 15, 15, 7, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "ct": [0, 1, 13, 8, 3, 8, 1, 1, 5, 3, 13, 10, 7, 11, 8, 11, 0, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 613, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [11, 14, 15, 2, 7, 13, 14, 14, 9, 10, 8, 1, 4, 0, 7, 0, 14, 13], | |
| "ct": [2, 13, 5, 10, 4, 7, 11, 3, 2, 13, 14, 8, 2, 0, 11, 0, 2, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 614, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [12, 9, 1, 11, 3, 4, 14, 5, 5, 2, 11, 12, 12, 2, 7, 5, 7, 8], | |
| "ct": [4, 2, 5, 0, 9, 1, 8, 15, 5, 5, 15, 11, 9, 10, 13, 9, 11, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 615, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [8, 3, 11, 3, 11, 14, 9, 4, 4, 6, 3, 6, 1, 12, 11, 2, 0, 5], | |
| "ct": [14, 13, 3, 3, 4, 15, 8, 0, 1, 8, 3, 3, 3, 3, 12, 11, 8, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 616, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [14, 8, 14, 3, 7, 1, 4, 6, 12, 4, 4, 14, 8, 11, 12, 6, 13, 1], | |
| "ct": [13, 12, 13, 0, 9, 6, 11, 15, 9, 15, 15, 0, 10, 12, 3, 4, 7, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 617, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [1, 7, 2, 14, 10, 1, 10, 7, 14, 14, 14, 3, 0, 1, 0, 15, 0, 9], | |
| "ct": [9, 12, 0, 7, 0, 9, 5, 5, 14, 15, 6, 8, 3, 14, 3, 10, 0, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 618, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [8, 12, 5, 4, 2, 14, 0, 12, 12, 6, 12, 11, 8, 2, 15, 7, 3, 5], | |
| "ct": [14, 3, 7, 10, 4, 15, 6, 3, 11, 0, 1, 4, 0, 6, 6, 0, 9, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 619, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [15, 1, 8, 9, 11, 4, 4, 7, 12, 7, 13, 6, 3, 2, 8, 5, 4, 10], | |
| "ct": [13, 8, 2, 3, 5, 6, 7, 11, 15, 2, 10, 13, 8, 14, 1, 15, 6, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 620, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [3, 4, 8, 2, 6, 5, 11, 3, 12, 13, 7, 2, 9, 0, 4, 7, 7, 8], | |
| "ct": [10, 10, 7, 6, 13, 6, 12, 7, 3, 0, 11, 0, 0, 12, 12, 4, 11, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 621, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [6, 2, 14, 9, 10, 13, 8, 11, 1, 9, 10, 11, 10, 14, 13, 9, 4, 13], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 622, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [5, 14, 14, 7, 11, 6, 5, 14, 6, 7, 8, 1, 12, 1, 10, 15, 14, 4], | |
| "ct": [15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 623, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [10, 9, 11, 13, 6, 11, 11, 14, 15, 15, 9, 6, 8, 6, 7, 1, 3, 1], | |
| "ct": [8, 0, 0, 0, 0, 0, 0, 0, 0, 8, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 624, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [14, 5, 0, 1, 5, 14, 2, 4, 2, 6, 3, 3, 15, 7, 2, 13, 10, 15], | |
| "ct": [7, 15, 15, 15, 15, 15, 15, 15, 15, 7, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 625, | |
| "comment": "y = 0 and (y + a) % radix**9 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "3e9b68debd7de8aeda93", | |
| "msg": [0, 10, 0, 3, 10, 7, 13, 3, 3, 0, 1, 4, 1, 4, 11, 11, 15, 6], | |
| "ct": [1, 10, 4, 11, 5, 7, 3, 5, 3, 1, 9, 4, 10, 2, 5, 7, 13, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 626, | |
| "comment": "y = 0 and a = 1 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "3e9b68debd7de8aeda93", | |
| "msg": [5, 0, 3, 15, 10, 0, 13, 15, 13, 0, 8, 0, 12, 5, 6, 14, 5, 9], | |
| "ct": [8, 0, 14, 6, 10, 15, 9, 3, 9, 1, 10, 13, 0, 1, 13, 1, 9, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 627, | |
| "comment": "y = 0 and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "3e9b68debd7de8aeda93", | |
| "msg": [11, 11, 3, 3, 0, 1, 13, 3, 11, 10, 4, 1, 4, 13, 8, 10, 10, 3], | |
| "ct": [15, 3, 2, 15, 12, 3, 6, 0, 6, 9, 12, 11, 10, 5, 1, 15, 1, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 628, | |
| "comment": "y = 0 and (y + a) % radix**9 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "3e9b68debd7de8aeda93", | |
| "msg": [14, 13, 7, 4, 8, 0, 7, 9, 10, 15, 5, 8, 9, 5, 0, 13, 6, 6], | |
| "ct": [3, 3, 15, 13, 10, 3, 6, 0, 2, 1, 10, 3, 11, 7, 12, 8, 9, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 629, | |
| "comment": "y = 1 and a = 0 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "216b89f2c39bc8977d07", | |
| "msg": [3, 14, 6, 8, 10, 8, 12, 5, 7, 14, 9, 8, 1, 14, 0, 0, 0, 1], | |
| "ct": [8, 0, 14, 13, 14, 11, 12, 11, 15, 2, 0, 3, 0, 5, 11, 12, 14, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 630, | |
| "comment": "y = 1 and a = 1 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "216b89f2c39bc8977d07", | |
| "msg": [14, 7, 2, 5, 13, 2, 10, 2, 0, 11, 13, 4, 0, 3, 8, 1, 13, 0], | |
| "ct": [4, 10, 10, 4, 5, 9, 10, 12, 14, 9, 10, 7, 3, 4, 1, 12, 11, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 631, | |
| "comment": "y = 1 and a has large Hamming weight in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "216b89f2c39bc8977d07", | |
| "msg": [4, 15, 1, 2, 10, 1, 3, 5, 4, 5, 7, 11, 10, 0, 8, 0, 5, 8], | |
| "ct": [1, 15, 13, 12, 13, 2, 10, 4, 1, 6, 3, 11, 9, 5, 10, 3, 7, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 632, | |
| "comment": "y = 1 and (y + a) % radix**9 is maximal in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "216b89f2c39bc8977d07", | |
| "msg": [0, 8, 1, 9, 8, 10, 4, 10, 10, 3, 11, 6, 14, 10, 7, 0, 15, 15], | |
| "ct": [5, 8, 11, 10, 0, 10, 3, 1, 5, 1, 12, 13, 13, 3, 0, 15, 1, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 633, | |
| "comment": "y = 1 and (y + a) % radix**9 == 0 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "216b89f2c39bc8977d07", | |
| "msg": [13, 6, 0, 5, 10, 12, 6, 5, 0, 3, 15, 0, 10, 8, 0, 11, 7, 5], | |
| "ct": [2, 4, 1, 2, 3, 5, 1, 13, 3, 12, 8, 9, 8, 3, 13, 4, 3, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 634, | |
| "comment": "y is maximal and (y + a) % radix**9 is maximal in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "eccb7578c8eb5222b60e", | |
| "msg": [5, 4, 7, 6, 13, 12, 3, 7, 8, 11, 2, 11, 4, 3, 0, 7, 9, 14], | |
| "ct": [14, 6, 7, 4, 13, 14, 12, 4, 12, 7, 0, 5, 11, 14, 10, 7, 14, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 635, | |
| "comment": "y is maximal and (y + a) % radix**9 == 0 in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "eccb7578c8eb5222b60e", | |
| "msg": [4, 1, 10, 6, 2, 2, 7, 0, 2, 4, 9, 1, 14, 1, 4, 14, 1, 2], | |
| "ct": [6, 7, 10, 15, 12, 14, 4, 10, 7, 3, 6, 8, 3, 4, 10, 0, 4, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 636, | |
| "comment": "y is maximal and a has large Hamming weight in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "eccb7578c8eb5222b60e", | |
| "msg": [15, 3, 7, 9, 0, 2, 4, 9, 4, 7, 4, 14, 15, 7, 12, 5, 3, 11], | |
| "ct": [2, 13, 6, 6, 6, 10, 12, 11, 0, 3, 0, 9, 10, 2, 1, 15, 8, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 637, | |
| "comment": "y is maximal and a is maximal in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "eccb7578c8eb5222b60e", | |
| "msg": [2, 2, 3, 15, 8, 10, 4, 10, 9, 11, 12, 14, 3, 0, 12, 2, 2, 12], | |
| "ct": [9, 4, 14, 10, 2, 15, 10, 6, 7, 2, 2, 9, 0, 11, 7, 7, 14, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 638, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "8539e800a93a87c5821a", | |
| "msg": [13, 10, 15, 7, 4, 7, 3, 9, 7, 8, 0, 6, 13, 15, 9, 3, 7, 7], | |
| "ct": [14, 6, 0, 5, 11, 9, 8, 11, 4, 15, 15, 15, 15, 15, 15, 15, 15, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 639, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "8539e800a93a87c5821a", | |
| "msg": [14, 9, 13, 4, 10, 6, 1, 6, 1, 11, 11, 4, 9, 12, 6, 7, 2, 8], | |
| "ct": [14, 6, 0, 5, 11, 9, 8, 11, 4, 15, 15, 15, 15, 15, 15, 15, 15, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 640, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**9 is maximal in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "8539e800a93a87c5821a", | |
| "msg": [11, 6, 0, 13, 13, 1, 1, 7, 10, 15, 1, 4, 13, 14, 7, 11, 14, 1], | |
| "ct": [14, 6, 0, 5, 11, 9, 8, 11, 4, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 641, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**9 == 0 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "8539e800a93a87c5821a", | |
| "msg": [4, 3, 1, 8, 2, 2, 5, 13, 9, 4, 7, 5, 4, 0, 4, 2, 0, 11], | |
| "ct": [14, 6, 0, 5, 11, 9, 8, 11, 4, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 642, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "8539e800a93a87c5821a", | |
| "msg": [2, 6, 6, 9, 9, 3, 6, 12, 0, 5, 7, 7, 6, 9, 7, 2, 7, 10], | |
| "ct": [14, 6, 0, 5, 11, 9, 8, 11, 4, 7, 15, 15, 15, 15, 15, 15, 15, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 643, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "8539e800a93a87c5821a", | |
| "msg": [1, 6, 5, 6, 1, 10, 11, 15, 10, 5, 5, 15, 13, 0, 11, 3, 5, 9], | |
| "ct": [14, 6, 0, 5, 11, 9, 8, 11, 4, 15, 15, 15, 15, 15, 15, 15, 14, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 644, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**9 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "0f16f1d62289fbad1bc9", | |
| "msg": [4, 7, 7, 3, 9, 9, 2, 7, 13, 15, 13, 10, 0, 2, 1, 3, 1, 9], | |
| "ct": [15, 15, 15, 15, 15, 15, 15, 15, 15, 7, 0, 10, 10, 7, 0, 10, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 645, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**9 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "0f16f1d62289fbad1bc9", | |
| "msg": [13, 12, 11, 5, 3, 1, 6, 14, 4, 15, 7, 10, 1, 7, 15, 7, 7, 3], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 6, 15, 7, 6, 8, 0, 2, 8, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 646, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "0f16f1d62289fbad1bc9", | |
| "msg": [9, 5, 15, 7, 4, 8, 10, 6, 9, 15, 1, 9, 1, 1, 9, 14, 6, 11], | |
| "ct": [7, 15, 15, 15, 15, 15, 15, 15, 15, 15, 5, 9, 15, 7, 0, 0, 8, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 647, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "0f16f1d62289fbad1bc9", | |
| "msg": [7, 13, 10, 3, 15, 14, 4, 8, 4, 5, 3, 13, 13, 13, 7, 11, 8, 5], | |
| "ct": [15, 15, 15, 15, 15, 15, 15, 15, 14, 15, 11, 0, 5, 6, 3, 5, 4, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 648, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "8f3a40ed121d763ce94121d1a884ac4f", | |
| "tweak": "5e37cf940f79d378", | |
| "msg": [-1, 11, 1, 0, 14, 13, 8, 8, 14, 3, 13, 8, 8, 6, 9, 13, 7, 5], | |
| "ct": [9, 10, 9, 2, 13, 4, 6, 3, 7, 7, 10, 13, 11, 7, 4, 1, 15, 7], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 649, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "8f3a40ed121d763ce94121d1a884ac4f", | |
| "tweak": "5e37cf940f79d378", | |
| "msg": [3, 11, 1, 0, 14, 13, -1, 8, 14, 3, 13, 8, 8, 6, 9, 13, 7, 5], | |
| "ct": [15, 14, 3, 2, 7, 5, 6, 7, 6, 9, 3, 7, 14, 14, 12, 5, 15, 5], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 650, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "8f3a40ed121d763ce94121d1a884ac4f", | |
| "tweak": "5e37cf940f79d378", | |
| "msg": [3, 11, 1, 0, 14, 13, 8, 8, 14, 3, 13, 8, 8, 6, 9, 13, 7, -1], | |
| "ct": [5, 10, 13, 14, 12, 11, 5, 1, 4, 10, 6, 13, 2, 11, 9, 14, 2, 9], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 651, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "92da820ad8b8a53bbd780571c39b742a", | |
| "tweak": "c46d9899f7e8176a", | |
| "msg": [16, 4, 12, 7, 3, 2, 2, 1, 11, 5, 14, 15, 12, 1, 4, 2, 10, 11], | |
| "ct": [6, 5, 1, 13, 13, 2, 7, 11, 12, 0, 7, 7, 13, 12, 2, 7, 3, 12], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 652, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "92da820ad8b8a53bbd780571c39b742a", | |
| "tweak": "c46d9899f7e8176a", | |
| "msg": [0, 4, 12, 7, 3, 2, 16, 1, 11, 5, 14, 15, 12, 1, 4, 2, 10, 11], | |
| "ct": [12, 6, 8, 8, 10, 1, 3, 14, 12, 7, 15, 3, 15, 1, 14, 5, 6, 5], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 653, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "92da820ad8b8a53bbd780571c39b742a", | |
| "tweak": "c46d9899f7e8176a", | |
| "msg": [0, 4, 12, 7, 3, 2, 2, 1, 11, 5, 14, 15, 12, 1, 4, 2, 10, 16], | |
| "ct": [7, 6, 4, 11, 6, 11, 8, 11, 12, 11, 15, 8, 12, 12, 6, 4, 14, 13], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 19, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 654, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "3591cc97af4a5d1492305f87269ee691", | |
| "tweak": "13786144a50ef10a", | |
| "msg": [12, 3, 13, 1, 9, 7, 13, 15, 9, 11, 10, 12, 0, 14, 4, 3, 10, 1, 10], | |
| "ct": [12, 7, 4, 6, 9, 5, 7, 10, 1, 14, 15, 2, 4, 3, 9, 8, 7, 3, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 655, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [5, 1, 2, 0, 0, 9, 7, 7, 0, 1, 5, 5, 11, 13, 12, 6, 2, 2, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 656, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "ct": [12, 3, 4, 0, 10, 9, 9, 11, 9, 8, 14, 2, 2, 9, 13, 4, 1, 11, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 657, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [8, 0, 0, 0, 0, 0, 0, 0, 0, 8, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [15, 13, 14, 14, 3, 0, 13, 15, 8, 4, 6, 5, 15, 13, 8, 10, 3, 14, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 658, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [7, 15, 15, 15, 15, 15, 15, 15, 15, 7, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "ct": [9, 1, 13, 7, 8, 14, 5, 11, 9, 6, 9, 15, 10, 3, 2, 7, 11, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 659, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [7, 4, 12, 4, 1, 13, 1, 4, 8, 0, 11, 10, 5, 0, 6, 4, 7, 5, 15], | |
| "ct": [15, 4, 0, 4, 14, 6, 4, 12, 5, 14, 4, 9, 6, 3, 12, 3, 3, 8, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 660, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [1, 5, 0, 15, 2, 10, 9, 14, 4, 15, 14, 1, 1, 1, 6, 5, 9, 4, 8], | |
| "ct": [12, 10, 4, 13, 3, 13, 14, 8, 15, 14, 12, 9, 2, 4, 8, 3, 6, 12, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 661, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [10, 13, 12, 14, 14, 8, 7, 9, 14, 15, 7, 14, 9, 11, 1, 1, 11, 14, 4], | |
| "ct": [5, 5, 13, 12, 14, 6, 9, 4, 1, 0, 8, 9, 3, 9, 8, 1, 2, 14, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 662, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [8, 15, 8, 4, 13, 14, 3, 11, 14, 1, 1, 11, 8, 7, 4, 10, 14, 5, 14], | |
| "ct": [11, 11, 11, 5, 13, 5, 9, 1, 7, 0, 3, 12, 7, 9, 13, 10, 14, 9, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 663, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [0, 10, 15, 9, 10, 4, 4, 6, 3, 10, 1, 9, 12, 12, 3, 2, 10, 3, 7], | |
| "ct": [10, 11, 4, 6, 6, 3, 6, 9, 12, 0, 12, 15, 15, 14, 12, 15, 12, 12, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 664, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [4, 7, 2, 7, 4, 12, 3, 13, 10, 9, 11, 11, 9, 11, 13, 0, 9, 5, 0], | |
| "ct": [13, 10, 12, 2, 2, 6, 9, 10, 4, 5, 10, 11, 15, 0, 3, 8, 0, 6, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 665, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [13, 6, 4, 0, 12, 12, 8, 5, 8, 2, 14, 14, 14, 4, 14, 3, 13, 14, 2], | |
| "ct": [15, 1, 2, 8, 8, 15, 13, 3, 5, 10, 1, 13, 11, 8, 4, 0, 10, 4, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 666, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [1, 5, 5, 4, 13, 7, 12, 5, 0, 0, 12, 3, 1, 6, 0, 0, 2, 3, 10], | |
| "ct": [10, 12, 3, 11, 12, 10, 4, 11, 7, 15, 8, 14, 5, 6, 7, 6, 13, 7, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 667, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [11, 13, 6, 4, 9, 7, 2, 2, 2, 4, 13, 7, 0, 7, 4, 8, 11, 14, 10], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 668, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [8, 11, 6, 15, 4, 3, 12, 7, 12, 14, 15, 8, 12, 6, 8, 2, 4, 14, 11], | |
| "ct": [15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 669, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [9, 13, 5, 0, 15, 15, 3, 6, 9, 8, 14, 15, 4, 14, 9, 3, 10, 7, 9], | |
| "ct": [8, 0, 0, 0, 0, 0, 0, 0, 0, 8, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 670, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [14, 1, 6, 3, 14, 12, 11, 11, 11, 14, 12, 11, 2, 5, 5, 3, 13, 1, 8], | |
| "ct": [7, 15, 15, 15, 15, 15, 15, 15, 15, 7, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 671, | |
| "comment": "y = 0 and (y + a) % radix**9 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "77bba355abf6ffa47045", | |
| "msg": [8, 3, 9, 12, 11, 11, 7, 14, 6, 2, 9, 3, 4, 9, 4, 10, 11, 0, 15], | |
| "ct": [6, 10, 4, 9, 15, 10, 11, 6, 0, 14, 6, 13, 14, 10, 6, 7, 10, 4, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 672, | |
| "comment": "y = 0 and a = 1 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "77bba355abf6ffa47045", | |
| "msg": [8, 3, 5, 1, 5, 6, 6, 9, 2, 7, 5, 13, 15, 7, 5, 7, 0, 0, 1], | |
| "ct": [2, 2, 10, 4, 6, 5, 0, 11, 4, 8, 4, 2, 1, 14, 15, 2, 0, 7, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 673, | |
| "comment": "y = 0 and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "77bba355abf6ffa47045", | |
| "msg": [6, 0, 12, 7, 4, 1, 7, 5, 15, 2, 1, 4, 10, 15, 5, 0, 2, 12, 2], | |
| "ct": [12, 0, 2, 5, 13, 4, 13, 7, 2, 3, 11, 12, 14, 0, 9, 5, 13, 2, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 674, | |
| "comment": "y = 0 and (y + a) % radix**9 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "77bba355abf6ffa47045", | |
| "msg": [5, 5, 1, 6, 8, 10, 4, 5, 8, 7, 10, 11, 13, 0, 2, 2, 12, 12, 0], | |
| "ct": [2, 9, 1, 12, 12, 10, 9, 4, 14, 9, 10, 0, 2, 12, 4, 12, 7, 7, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 675, | |
| "comment": "y = 1 and a = 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "912173d17354dc35a86f", | |
| "msg": [9, 3, 13, 8, 13, 10, 2, 14, 0, 6, 10, 2, 10, 4, 7, 2, 4, 9, 12], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 1, 15, 5, 7, 8, 3, 4, 2, 3, 4, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 676, | |
| "comment": "y = 1 and a = 1 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "912173d17354dc35a86f", | |
| "msg": [4, 13, 12, 4, 0, 6, 8, 0, 6, 11, 7, 8, 3, 5, 1, 6, 8, 7, 0], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 2, 4, 13, 13, 10, 4, 8, 9, 7, 6, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 677, | |
| "comment": "y = 1 and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "912173d17354dc35a86f", | |
| "msg": [14, 5, 7, 10, 3, 2, 11, 6, 5, 1, 13, 10, 12, 12, 13, 5, 2, 14, 0], | |
| "ct": [8, 0, 0, 0, 0, 0, 0, 0, 1, 8, 6, 15, 15, 1, 7, 10, 8, 2, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 678, | |
| "comment": "y = 1 and (y + a) % radix**9 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "912173d17354dc35a86f", | |
| "msg": [13, 11, 12, 1, 1, 9, 3, 7, 2, 14, 1, 4, 8, 13, 6, 3, 10, 4, 13], | |
| "ct": [15, 15, 15, 15, 15, 15, 15, 15, 15, 10, 15, 5, 0, 12, 2, 8, 15, 6, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 679, | |
| "comment": "y = 1 and (y + a) % radix**9 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "912173d17354dc35a86f", | |
| "msg": [4, 0, 1, 9, 10, 14, 1, 6, 6, 2, 12, 1, 15, 4, 8, 10, 6, 12, 13], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 6, 8, 6, 15, 4, 5, 5, 10, 11, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 680, | |
| "comment": "y is maximal and (y + a) % radix**9 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "b1fec69aa40c85bee265", | |
| "msg": [5, 9, 3, 5, 11, 3, 5, 12, 2, 8, 11, 10, 10, 11, 2, 11, 1, 6, 5], | |
| "ct": [1, 2, 1, 8, 3, 4, 12, 0, 10, 2, 6, 3, 6, 15, 1, 12, 8, 8, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 681, | |
| "comment": "y is maximal and (y + a) % radix**9 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "b1fec69aa40c85bee265", | |
| "msg": [6, 6, 1, 1, 0, 3, 2, 11, 14, 8, 4, 15, 12, 11, 7, 0, 12, 2, 8], | |
| "ct": [12, 13, 1, 0, 11, 8, 1, 13, 6, 4, 5, 14, 3, 11, 13, 5, 9, 5, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 682, | |
| "comment": "y is maximal and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "b1fec69aa40c85bee265", | |
| "msg": [7, 9, 10, 15, 1, 0, 10, 15, 1, 1, 15, 0, 15, 14, 0, 3, 13, 5, 12], | |
| "ct": [0, 8, 5, 13, 14, 1, 8, 15, 2, 0, 12, 6, 1, 2, 12, 4, 13, 4, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 683, | |
| "comment": "y is maximal and a is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "b1fec69aa40c85bee265", | |
| "msg": [8, 11, 0, 8, 10, 13, 6, 9, 5, 14, 1, 6, 14, 4, 14, 3, 8, 15, 15], | |
| "ct": [3, 10, 6, 4, 2, 14, 2, 5, 1, 3, 3, 10, 8, 12, 8, 8, 11, 8, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 684, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "412c443f853821fccbab", | |
| "msg": [11, 11, 5, 9, 11, 3, 15, 0, 7, 15, 7, 8, 3, 12, 11, 0, 0, 9, 0], | |
| "ct": [15, 15, 15, 15, 15, 15, 15, 15, 0, 10, 2, 3, 14, 7, 14, 5, 6, 5, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 685, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "412c443f853821fccbab", | |
| "msg": [9, 8, 0, 10, 5, 10, 8, 6, 7, 2, 0, 5, 4, 3, 7, 15, 9, 12, 13], | |
| "ct": [15, 15, 15, 15, 15, 15, 15, 15, 1, 7, 12, 0, 8, 12, 6, 8, 13, 4, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 686, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**9 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "412c443f853821fccbab", | |
| "msg": [9, 12, 14, 11, 3, 10, 3, 8, 0, 5, 3, 6, 12, 13, 8, 13, 1, 5, 3], | |
| "ct": [15, 15, 15, 15, 15, 15, 15, 15, 15, 6, 13, 8, 12, 9, 4, 3, 4, 11, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 687, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**9 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "412c443f853821fccbab", | |
| "msg": [12, 12, 14, 2, 9, 5, 3, 10, 0, 7, 11, 3, 5, 15, 11, 9, 1, 13, 3], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 11, 13, 1, 5, 14, 12, 1, 1, 14, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 688, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "412c443f853821fccbab", | |
| "msg": [5, 15, 13, 5, 12, 5, 0, 11, 8, 9, 14, 8, 3, 5, 2, 12, 4, 13, 15], | |
| "ct": [7, 15, 15, 15, 15, 15, 15, 15, 0, 4, 13, 15, 14, 5, 12, 4, 15, 6, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 689, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "412c443f853821fccbab", | |
| "msg": [13, 2, 5, 12, 9, 6, 3, 2, 6, 9, 0, 2, 6, 13, 4, 12, 4, 3, 10], | |
| "ct": [15, 15, 15, 15, 15, 15, 15, 14, 15, 14, 7, 12, 8, 1, 0, 9, 2, 7, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 690, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**9 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "786e8b45590a7c260a63", | |
| "msg": [8, 8, 9, 6, 13, 9, 5, 7, 6, 6, 13, 11, 10, 0, 8, 5, 5, 10, 3], | |
| "ct": [15, 15, 15, 15, 15, 15, 15, 15, 15, 13, 13, 4, 14, 0, 6, 14, 6, 7, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 691, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**9 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "786e8b45590a7c260a63", | |
| "msg": [5, 5, 10, 7, 2, 3, 15, 4, 10, 8, 0, 14, 6, 6, 11, 11, 6, 0, 1], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 4, 1, 1, 15, 4, 12, 4, 3, 13, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 692, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "786e8b45590a7c260a63", | |
| "msg": [13, 4, 4, 13, 7, 9, 5, 14, 7, 12, 10, 7, 5, 12, 9, 12, 7, 6, 14], | |
| "ct": [7, 15, 15, 15, 15, 15, 15, 15, 15, 6, 12, 6, 15, 12, 2, 14, 12, 5, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 693, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "786e8b45590a7c260a63", | |
| "msg": [3, 11, 11, 14, 11, 4, 15, 9, 1, 7, 3, 14, 8, 5, 14, 10, 6, 3, 15], | |
| "ct": [15, 15, 15, 15, 15, 15, 15, 15, 14, 14, 13, 4, 0, 2, 15, 1, 4, 9, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 694, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "1cf89329cac719e6c7544a9303e78801", | |
| "tweak": "169faf154b10cac4", | |
| "msg": [-1, 15, 14, 1, 12, 5, 8, 14, 9, 15, 1, 15, 7, 8, 11, 11, 14, 2, 11], | |
| "ct": [12, 11, 13, 10, 5, 10, 14, 4, 3, 13, 4, 6, 10, 4, 2, 7, 11, 0, 12], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 695, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "1cf89329cac719e6c7544a9303e78801", | |
| "tweak": "169faf154b10cac4", | |
| "msg": [2, 15, 14, 1, 12, 5, -1, 14, 9, 15, 1, 15, 7, 8, 11, 11, 14, 2, 11], | |
| "ct": [1, 8, 0, 12, 13, 15, 5, 11, 2, 12, 5, 12, 0, 13, 6, 7, 2, 10, 10], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 696, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "1cf89329cac719e6c7544a9303e78801", | |
| "tweak": "169faf154b10cac4", | |
| "msg": [2, 15, 14, 1, 12, 5, 8, 14, 9, 15, 1, 15, 7, 8, 11, 11, 14, 2, -1], | |
| "ct": [13, 4, 4, 8, 9, 4, 13, 0, 15, 6, 14, 3, 10, 11, 4, 6, 12, 9, 3], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 697, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "7b234ad34b4b960b25e6b3cc7fe2cc05", | |
| "tweak": "23910efd8af91f8d", | |
| "msg": [16, 13, 7, 5, 4, 10, 8, 14, 12, 6, 14, 8, 12, 14, 6, 14, 2, 14, 10], | |
| "ct": [14, 11, 3, 7, 14, 2, 4, 14, 14, 2, 11, 9, 8, 4, 14, 10, 15, 14, 14], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 698, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "7b234ad34b4b960b25e6b3cc7fe2cc05", | |
| "tweak": "23910efd8af91f8d", | |
| "msg": [7, 13, 7, 5, 4, 10, 16, 14, 12, 6, 14, 8, 12, 14, 6, 14, 2, 14, 10], | |
| "ct": [1, 7, 15, 4, 9, 6, 14, 10, 12, 13, 8, 0, 1, 3, 4, 7, 12, 5, 13], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 699, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "7b234ad34b4b960b25e6b3cc7fe2cc05", | |
| "tweak": "23910efd8af91f8d", | |
| "msg": [7, 13, 7, 5, 4, 10, 8, 14, 12, 6, 14, 8, 12, 14, 6, 14, 2, 14, 16], | |
| "ct": [1, 8, 4, 7, 3, 0, 3, 0, 8, 6, 15, 5, 12, 15, 4, 10, 13, 14, 14], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 20, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 700, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "ccdf8f792a48fd841d49e060315b0c3d", | |
| "tweak": "508c6ff22207dc5b", | |
| "msg": [13, 1, 10, 8, 11, 0, 8, 1, 12, 15, 3, 13, 3, 4, 12, 11, 11, 10, 0, 13], | |
| "ct": [13, 6, 15, 8, 15, 4, 2, 10, 2, 9, 11, 6, 3, 0, 3, 0, 14, 12, 10, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 701, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [1, 13, 5, 8, 14, 6, 13, 8, 10, 13, 0, 13, 8, 3, 14, 0, 13, 11, 15, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 702, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "ct": [1, 11, 14, 9, 0, 8, 5, 9, 7, 14, 5, 14, 12, 7, 14, 4, 2, 11, 13, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 703, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [8, 0, 0, 0, 0, 0, 0, 0, 0, 0, 8, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [5, 11, 6, 3, 0, 13, 5, 10, 9, 14, 1, 6, 6, 15, 11, 15, 15, 4, 9, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 704, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [7, 15, 15, 15, 15, 15, 15, 15, 15, 15, 7, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "ct": [7, 10, 9, 10, 10, 14, 8, 13, 14, 3, 13, 9, 9, 12, 13, 13, 3, 0, 13, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 705, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [1, 0, 0, 11, 9, 6, 13, 7, 3, 3, 2, 15, 10, 6, 13, 15, 1, 11, 7, 1], | |
| "ct": [7, 11, 12, 14, 7, 5, 1, 2, 6, 7, 2, 3, 8, 12, 5, 4, 6, 7, 0, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 706, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [15, 13, 1, 4, 6, 2, 2, 15, 9, 3, 2, 2, 15, 4, 9, 8, 8, 15, 0, 12], | |
| "ct": [9, 12, 1, 2, 4, 13, 8, 7, 10, 13, 3, 9, 13, 13, 13, 10, 2, 3, 7, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 707, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [13, 15, 7, 14, 10, 15, 14, 0, 11, 6, 14, 7, 10, 15, 10, 8, 0, 6, 14, 9], | |
| "ct": [9, 12, 6, 6, 9, 0, 5, 3, 14, 2, 15, 12, 13, 10, 1, 6, 9, 11, 3, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 708, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [8, 2, 5, 11, 6, 4, 8, 12, 12, 14, 13, 4, 13, 13, 8, 9, 6, 0, 1, 13], | |
| "ct": [1, 10, 9, 6, 9, 14, 10, 11, 14, 2, 12, 13, 1, 12, 12, 11, 11, 0, 1, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 709, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [4, 2, 4, 10, 14, 13, 15, 0, 7, 2, 14, 14, 15, 11, 5, 10, 13, 13, 14, 12], | |
| "ct": [3, 1, 3, 12, 6, 8, 4, 9, 6, 14, 3, 15, 3, 7, 7, 15, 5, 5, 11, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 710, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [12, 1, 11, 13, 5, 12, 6, 9, 5, 14, 3, 15, 15, 3, 12, 3, 9, 6, 4, 8], | |
| "ct": [5, 15, 7, 3, 1, 8, 3, 9, 1, 8, 4, 15, 1, 10, 4, 1, 11, 1, 7, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 711, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [1, 9, 12, 10, 12, 2, 5, 11, 1, 3, 5, 10, 11, 14, 6, 11, 12, 7, 0, 7], | |
| "ct": [2, 4, 13, 13, 6, 13, 5, 8, 15, 3, 7, 4, 12, 9, 14, 3, 8, 9, 11, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 712, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [0, 11, 14, 5, 5, 9, 0, 15, 13, 0, 1, 8, 2, 2, 9, 10, 4, 8, 0, 10], | |
| "ct": [9, 15, 7, 5, 6, 2, 5, 15, 13, 14, 13, 7, 0, 3, 12, 6, 6, 2, 1, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 713, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [1, 12, 10, 2, 10, 2, 14, 13, 8, 15, 15, 13, 5, 15, 14, 9, 7, 6, 9, 8], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 714, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [7, 13, 5, 6, 6, 2, 3, 14, 0, 15, 13, 15, 13, 5, 1, 1, 8, 3, 10, 9], | |
| "ct": [15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 715, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [7, 9, 2, 3, 9, 5, 5, 4, 8, 0, 8, 8, 13, 0, 6, 14, 9, 0, 10, 1], | |
| "ct": [8, 0, 0, 0, 0, 0, 0, 0, 0, 0, 8, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 716, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [13, 9, 4, 12, 6, 10, 13, 11, 7, 7, 12, 14, 15, 14, 1, 5, 13, 3, 13, 12], | |
| "ct": [7, 15, 15, 15, 15, 15, 15, 15, 15, 15, 7, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 717, | |
| "comment": "y = 0 and (y + a) % radix**10 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "8f795c67621916ef3b45", | |
| "msg": [10, 10, 0, 13, 5, 3, 10, 0, 0, 7, 9, 14, 8, 6, 9, 3, 8, 8, 10, 2], | |
| "ct": [10, 8, 13, 14, 10, 6, 6, 4, 7, 6, 8, 8, 3, 8, 5, 6, 15, 5, 13, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 718, | |
| "comment": "y = 0 and a = 1 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "8f795c67621916ef3b45", | |
| "msg": [9, 15, 13, 13, 3, 14, 4, 13, 9, 14, 11, 7, 6, 12, 13, 0, 15, 9, 9, 7], | |
| "ct": [5, 9, 15, 3, 8, 10, 7, 7, 5, 10, 2, 15, 7, 4, 12, 1, 10, 7, 0, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 719, | |
| "comment": "y = 0 and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "8f795c67621916ef3b45", | |
| "msg": [15, 0, 5, 1, 15, 14, 5, 2, 8, 8, 3, 0, 4, 4, 13, 11, 5, 11, 4, 8], | |
| "ct": [7, 15, 12, 10, 1, 4, 10, 0, 10, 10, 12, 3, 9, 8, 8, 6, 5, 11, 12, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 720, | |
| "comment": "y = 0 and (y + a) % radix**10 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "8f795c67621916ef3b45", | |
| "msg": [8, 15, 14, 0, 2, 8, 9, 2, 2, 6, 4, 13, 11, 11, 2, 15, 5, 3, 12, 12], | |
| "ct": [0, 11, 12, 3, 11, 7, 12, 12, 12, 5, 15, 15, 13, 14, 15, 5, 5, 1, 13, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 721, | |
| "comment": "y = 1 and a = 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "76dab6b3accf42a24e85", | |
| "msg": [8, 13, 2, 3, 1, 15, 10, 14, 15, 14, 14, 6, 4, 8, 5, 8, 8, 6, 7, 5], | |
| "ct": [4, 5, 7, 0, 14, 0, 4, 0, 4, 8, 13, 1, 1, 12, 11, 15, 7, 10, 0, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 722, | |
| "comment": "y = 1 and a = 1 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "76dab6b3accf42a24e85", | |
| "msg": [10, 12, 3, 15, 8, 4, 9, 15, 2, 7, 15, 13, 2, 9, 11, 4, 7, 0, 15, 1], | |
| "ct": [15, 3, 5, 0, 8, 9, 10, 11, 13, 6, 15, 5, 6, 0, 9, 14, 7, 12, 0, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 723, | |
| "comment": "y = 1 and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "76dab6b3accf42a24e85", | |
| "msg": [6, 8, 11, 1, 5, 6, 15, 7, 2, 4, 6, 5, 4, 11, 14, 8, 14, 14, 5, 1], | |
| "ct": [1, 4, 1, 3, 0, 15, 13, 15, 10, 1, 8, 1, 14, 0, 14, 9, 1, 4, 9, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 724, | |
| "comment": "y = 1 and (y + a) % radix**10 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "76dab6b3accf42a24e85", | |
| "msg": [9, 15, 11, 1, 15, 13, 11, 7, 8, 7, 15, 14, 11, 1, 15, 0, 14, 15, 11, 6], | |
| "ct": [12, 4, 15, 10, 12, 4, 2, 6, 7, 0, 12, 9, 6, 2, 7, 4, 12, 14, 3, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 725, | |
| "comment": "y = 1 and (y + a) % radix**10 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "76dab6b3accf42a24e85", | |
| "msg": [7, 0, 11, 15, 14, 0, 6, 9, 2, 8, 4, 13, 7, 12, 0, 12, 13, 5, 5, 11], | |
| "ct": [13, 12, 6, 1, 9, 4, 6, 11, 12, 2, 13, 11, 5, 13, 6, 9, 6, 4, 10, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 726, | |
| "comment": "y is maximal and (y + a) % radix**10 is maximal in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "7cc053b6e9839d6f2aa9", | |
| "msg": [6, 3, 5, 3, 14, 12, 14, 7, 8, 3, 15, 2, 11, 8, 10, 14, 12, 9, 6, 14], | |
| "ct": [0, 9, 13, 0, 11, 1, 14, 9, 12, 2, 8, 12, 0, 7, 11, 11, 3, 1, 15, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 727, | |
| "comment": "y is maximal and (y + a) % radix**10 == 0 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "7cc053b6e9839d6f2aa9", | |
| "msg": [15, 9, 6, 9, 2, 5, 12, 5, 13, 2, 5, 0, 14, 0, 1, 2, 13, 12, 2, 1], | |
| "ct": [5, 11, 5, 14, 7, 2, 11, 0, 7, 8, 3, 14, 8, 13, 11, 6, 15, 11, 7, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 728, | |
| "comment": "y is maximal and a has large Hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "7cc053b6e9839d6f2aa9", | |
| "msg": [13, 8, 7, 2, 9, 8, 4, 3, 2, 10, 13, 6, 7, 10, 4, 15, 6, 10, 14, 5], | |
| "ct": [14, 5, 10, 11, 9, 0, 4, 6, 14, 10, 10, 6, 11, 0, 10, 13, 1, 5, 2, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 729, | |
| "comment": "y is maximal and a is maximal in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "7cc053b6e9839d6f2aa9", | |
| "msg": [7, 10, 6, 12, 15, 12, 8, 12, 10, 14, 4, 5, 8, 11, 13, 4, 3, 6, 8, 9], | |
| "ct": [8, 15, 11, 6, 0, 8, 2, 7, 8, 9, 15, 6, 1, 3, 15, 3, 10, 3, 8, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 730, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "32a1b8707f80b3132191", | |
| "msg": [1, 4, 10, 9, 11, 10, 15, 11, 13, 10, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [6, 14, 0, 3, 10, 11, 7, 5, 7, 0, 1, 7, 8, 9, 4, 12, 11, 12, 13, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 731, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "32a1b8707f80b3132191", | |
| "msg": [11, 11, 3, 3, 2, 14, 10, 5, 10, 11, 0, 0, 0, 0, 0, 0, 0, 0, 0, 1], | |
| "ct": [14, 8, 4, 8, 14, 8, 10, 7, 2, 10, 3, 12, 14, 8, 5, 11, 6, 7, 1, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 732, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**10 is maximal in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "32a1b8707f80b3132191", | |
| "msg": [14, 12, 12, 3, 10, 10, 6, 10, 3, 1, 0, 0, 0, 0, 0, 0, 0, 0, 0, 15], | |
| "ct": [5, 6, 12, 10, 5, 10, 4, 7, 12, 4, 9, 6, 11, 1, 9, 11, 1, 7, 10, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 733, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**10 == 0 in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "32a1b8707f80b3132191", | |
| "msg": [5, 13, 4, 3, 1, 11, 2, 12, 2, 4, 0, 0, 0, 0, 0, 0, 0, 0, 1, 0], | |
| "ct": [5, 6, 2, 12, 8, 15, 0, 4, 10, 1, 1, 3, 15, 6, 9, 2, 6, 6, 9, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 734, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "32a1b8707f80b3132191", | |
| "msg": [4, 10, 5, 11, 8, 9, 3, 8, 9, 3, 8, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [12, 14, 14, 2, 12, 10, 1, 6, 2, 13, 7, 14, 8, 4, 9, 8, 4, 14, 12, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 735, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "32a1b8707f80b3132191", | |
| "msg": [5, 7, 7, 14, 0, 5, 7, 1, 13, 1, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "ct": [10, 7, 4, 13, 14, 12, 5, 14, 6, 11, 13, 1, 13, 13, 12, 2, 2, 4, 8, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 736, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**10 is maximal in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "794127b2a082954e007c", | |
| "msg": [4, 13, 2, 0, 10, 5, 14, 4, 12, 15, 0, 8, 8, 14, 1, 11, 2, 15, 10, 3], | |
| "ct": [14, 15, 5, 1, 8, 9, 8, 12, 5, 9, 14, 10, 10, 9, 2, 4, 14, 9, 2, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 737, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**10 == 0 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "794127b2a082954e007c", | |
| "msg": [6, 11, 14, 0, 10, 12, 8, 6, 14, 14, 2, 8, 6, 0, 8, 6, 6, 4, 4, 10], | |
| "ct": [12, 8, 15, 3, 7, 1, 2, 3, 13, 7, 1, 13, 5, 5, 15, 2, 14, 6, 4, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 738, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "794127b2a082954e007c", | |
| "msg": [15, 3, 1, 9, 2, 3, 5, 1, 9, 4, 14, 4, 3, 12, 2, 13, 15, 2, 13, 9], | |
| "ct": [13, 12, 4, 15, 4, 11, 6, 14, 0, 15, 1, 7, 9, 10, 5, 11, 5, 3, 10, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 739, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "794127b2a082954e007c", | |
| "msg": [11, 15, 7, 10, 3, 0, 11, 10, 12, 13, 9, 12, 0, 8, 12, 3, 11, 11, 12, 0], | |
| "ct": [15, 5, 7, 11, 11, 10, 7, 11, 5, 7, 10, 5, 2, 6, 12, 11, 12, 4, 8, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 740, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "4e8c0fdab138c9df8d4a888e6c2df1dd", | |
| "tweak": "76f494b34dbcd3bc", | |
| "msg": [-1, 1, 4, 9, 14, 4, 12, 12, 4, 5, 9, 7, 9, 4, 11, 8, 12, 10, 14, 11], | |
| "ct": [0, 1, 11, 6, 13, 9, 14, 3, 15, 8, 11, 14, 0, 12, 5, 9, 6, 12, 1, 13], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 741, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "4e8c0fdab138c9df8d4a888e6c2df1dd", | |
| "tweak": "76f494b34dbcd3bc", | |
| "msg": [7, 1, 4, 9, 14, 4, -1, 12, 4, 5, 9, 7, 9, 4, 11, 8, 12, 10, 14, 11], | |
| "ct": [6, 11, 13, 5, 1, 1, 1, 12, 14, 10, 3, 10, 9, 9, 12, 3, 6, 4, 1, 13], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 742, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "4e8c0fdab138c9df8d4a888e6c2df1dd", | |
| "tweak": "76f494b34dbcd3bc", | |
| "msg": [7, 1, 4, 9, 14, 4, 12, 12, 4, 5, 9, 7, 9, 4, 11, 8, 12, 10, 14, -1], | |
| "ct": [11, 10, 7, 0, 0, 1, 1, 13, 9, 5, 1, 9, 0, 12, 12, 11, 5, 11, 3, 2], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 743, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "2023ceb64073ad465234ec65cb08735c", | |
| "tweak": "61afc9d561d304e5", | |
| "msg": [16, 15, 11, 12, 10, 8, 14, 7, 0, 14, 12, 14, 6, 3, 11, 0, 5, 15, 8, 10], | |
| "ct": [12, 13, 0, 8, 4, 11, 5, 1, 8, 6, 6, 12, 13, 10, 15, 1, 7, 12, 1, 9], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 744, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "2023ceb64073ad465234ec65cb08735c", | |
| "tweak": "61afc9d561d304e5", | |
| "msg": [6, 15, 11, 12, 10, 8, 16, 7, 0, 14, 12, 14, 6, 3, 11, 0, 5, 15, 8, 10], | |
| "ct": [6, 13, 14, 5, 14, 2, 2, 5, 0, 1, 13, 12, 5, 15, 9, 14, 6, 3, 9, 10], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 745, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "2023ceb64073ad465234ec65cb08735c", | |
| "tweak": "61afc9d561d304e5", | |
| "msg": [6, 15, 11, 12, 10, 8, 14, 7, 0, 14, 12, 14, 6, 3, 11, 0, 5, 15, 8, 16], | |
| "ct": [1, 0, 4, 9, 7, 11, 7, 7, 5, 6, 14, 1, 13, 3, 11, 11, 7, 1, 0, 12], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 21, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 746, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "c0e4c4a9b86c17e4efe9a12733e7aff4", | |
| "tweak": "f71b48c8172125d4", | |
| "msg": [0, 13, 11, 12, 4, 11, 2, 5, 14, 13, 10, 2, 4, 13, 12, 11, 10, 15, 0, 8, 4], | |
| "ct": [5, 15, 6, 15, 4, 10, 12, 4, 4, 14, 9, 12, 11, 1, 5, 3, 0, 6, 2, 9, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 747, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [10, 4, 7, 7, 5, 5, 4, 5, 14, 12, 14, 1, 7, 11, 9, 9, 7, 6, 11, 13, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 748, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "ct": [12, 9, 1, 14, 5, 9, 4, 12, 15, 14, 8, 7, 7, 15, 7, 5, 15, 8, 7, 5, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 749, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [8, 0, 0, 0, 0, 0, 0, 0, 0, 0, 8, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [15, 8, 0, 15, 8, 10, 15, 14, 8, 7, 5, 4, 2, 4, 15, 14, 13, 13, 8, 3, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 750, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [7, 15, 15, 15, 15, 15, 15, 15, 15, 15, 7, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "ct": [1, 8, 2, 12, 1, 2, 3, 5, 10, 4, 4, 12, 15, 7, 9, 12, 0, 8, 7, 4, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 751, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [11, 14, 11, 11, 7, 1, 3, 1, 2, 8, 6, 7, 5, 0, 13, 11, 2, 1, 0, 2, 5], | |
| "ct": [12, 7, 14, 12, 2, 9, 15, 2, 5, 5, 13, 15, 10, 6, 13, 10, 0, 15, 3, 10, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 752, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [5, 8, 9, 7, 9, 2, 6, 3, 5, 7, 14, 4, 9, 3, 1, 11, 8, 8, 11, 1, 4], | |
| "ct": [2, 5, 5, 0, 2, 3, 14, 10, 13, 6, 1, 15, 0, 15, 8, 6, 7, 4, 7, 2, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 753, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [14, 3, 3, 6, 15, 4, 13, 0, 0, 10, 9, 6, 9, 5, 13, 14, 1, 15, 0, 1, 7], | |
| "ct": [1, 13, 14, 9, 0, 3, 2, 8, 2, 2, 8, 11, 6, 9, 9, 5, 3, 1, 8, 15, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 754, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [0, 12, 15, 11, 3, 8, 0, 3, 1, 13, 14, 15, 13, 11, 13, 10, 3, 7, 7, 4, 14], | |
| "ct": [6, 0, 11, 12, 8, 11, 15, 3, 10, 6, 12, 11, 1, 4, 3, 10, 6, 5, 0, 11, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 755, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [0, 8, 15, 13, 8, 10, 12, 15, 9, 7, 2, 14, 5, 14, 3, 15, 15, 3, 3, 9, 1], | |
| "ct": [4, 2, 12, 4, 11, 7, 9, 9, 9, 13, 3, 9, 15, 3, 0, 12, 5, 10, 2, 5, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 756, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [14, 0, 4, 15, 12, 8, 11, 8, 13, 6, 0, 15, 2, 6, 2, 10, 12, 1, 3, 7, 4], | |
| "ct": [8, 4, 0, 13, 5, 3, 6, 14, 0, 11, 11, 1, 4, 9, 10, 13, 7, 12, 8, 5, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 757, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [2, 15, 3, 3, 2, 3, 15, 0, 10, 5, 2, 9, 6, 4, 15, 12, 3, 7, 3, 9, 10], | |
| "ct": [11, 1, 10, 12, 14, 11, 3, 4, 2, 8, 12, 11, 0, 7, 6, 6, 6, 11, 8, 0, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 758, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [10, 6, 10, 11, 9, 7, 13, 11, 11, 8, 8, 0, 15, 0, 15, 10, 2, 1, 13, 13, 7], | |
| "ct": [12, 10, 7, 4, 3, 5, 0, 14, 13, 14, 5, 1, 9, 5, 11, 1, 5, 13, 12, 6, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 759, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [1, 11, 1, 11, 7, 11, 11, 2, 3, 3, 0, 14, 13, 14, 10, 10, 8, 3, 5, 3, 11], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 760, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [12, 15, 8, 13, 2, 9, 11, 11, 8, 11, 12, 3, 2, 1, 2, 9, 13, 9, 8, 15, 11], | |
| "ct": [15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 761, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [1, 2, 0, 5, 12, 13, 13, 7, 1, 5, 12, 9, 4, 6, 15, 8, 5, 4, 8, 8, 4], | |
| "ct": [8, 0, 0, 0, 0, 0, 0, 0, 0, 0, 8, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 762, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [14, 1, 4, 2, 2, 4, 6, 15, 6, 14, 2, 5, 8, 7, 6, 11, 6, 9, 15, 7, 8], | |
| "ct": [7, 15, 15, 15, 15, 15, 15, 15, 15, 15, 7, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 763, | |
| "comment": "y = 0 and (y + a) % radix**10 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "4166382024c11325ae", | |
| "msg": [7, 11, 12, 5, 10, 9, 11, 2, 12, 9, 15, 2, 5, 11, 13, 9, 10, 14, 0, 0, 0], | |
| "ct": [4, 2, 13, 15, 13, 14, 10, 5, 7, 13, 10, 15, 4, 12, 3, 2, 12, 3, 7, 1, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 764, | |
| "comment": "y = 0 and a = 1 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "4166382024c11325ae", | |
| "msg": [6, 0, 5, 12, 2, 5, 11, 14, 2, 0, 0, 3, 2, 12, 0, 1, 13, 10, 5, 8, 13], | |
| "ct": [9, 6, 10, 8, 0, 10, 3, 12, 13, 14, 9, 4, 2, 5, 6, 12, 7, 7, 2, 5, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 765, | |
| "comment": "y = 0 and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "4166382024c11325ae", | |
| "msg": [14, 10, 1, 4, 6, 5, 8, 13, 7, 13, 15, 14, 12, 9, 11, 8, 8, 5, 15, 5, 1], | |
| "ct": [4, 11, 7, 0, 8, 9, 7, 5, 4, 1, 9, 9, 15, 1, 1, 9, 8, 8, 8, 8, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 766, | |
| "comment": "y = 0 and (y + a) % radix**10 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "4166382024c11325ae", | |
| "msg": [0, 10, 10, 15, 10, 0, 2, 9, 12, 0, 13, 10, 2, 0, 12, 4, 6, 3, 9, 12, 2], | |
| "ct": [6, 12, 3, 5, 15, 14, 12, 7, 10, 11, 4, 7, 10, 2, 13, 7, 11, 0, 1, 0, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 767, | |
| "comment": "y = 1 and a = 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "04605ea41cad300949", | |
| "msg": [3, 11, 8, 4, 9, 0, 12, 13, 6, 6, 3, 12, 8, 0, 3, 9, 15, 1, 0, 9, 10], | |
| "ct": [8, 7, 14, 6, 8, 11, 12, 9, 6, 13, 10, 0, 6, 2, 4, 15, 2, 8, 11, 9, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 768, | |
| "comment": "y = 1 and a = 1 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "04605ea41cad300949", | |
| "msg": [1, 10, 13, 0, 1, 7, 11, 0, 12, 12, 8, 8, 9, 2, 7, 6, 15, 8, 14, 14, 11], | |
| "ct": [10, 4, 2, 13, 15, 14, 10, 14, 8, 14, 1, 4, 7, 14, 2, 2, 1, 13, 6, 6, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 769, | |
| "comment": "y = 1 and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "04605ea41cad300949", | |
| "msg": [3, 10, 10, 4, 14, 4, 7, 11, 11, 8, 4, 6, 1, 2, 9, 8, 1, 8, 9, 14, 14], | |
| "ct": [11, 10, 12, 13, 4, 8, 4, 3, 11, 8, 7, 4, 1, 8, 14, 5, 0, 13, 10, 5, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 770, | |
| "comment": "y = 1 and (y + a) % radix**10 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "04605ea41cad300949", | |
| "msg": [2, 3, 7, 3, 2, 6, 15, 10, 0, 13, 14, 6, 3, 6, 12, 6, 5, 15, 15, 7, 13], | |
| "ct": [5, 15, 6, 0, 3, 7, 6, 2, 5, 15, 4, 12, 10, 7, 8, 10, 9, 3, 2, 4, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 771, | |
| "comment": "y = 1 and (y + a) % radix**10 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "04605ea41cad300949", | |
| "msg": [11, 7, 3, 4, 1, 6, 15, 1, 11, 10, 5, 4, 3, 7, 8, 14, 14, 5, 8, 7, 12], | |
| "ct": [11, 2, 11, 6, 9, 13, 14, 0, 14, 10, 10, 7, 6, 9, 7, 13, 11, 13, 6, 3, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 772, | |
| "comment": "y is maximal and (y + a) % radix**10 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "004c5548b418bceaad", | |
| "msg": [13, 0, 2, 0, 6, 13, 15, 11, 6, 13, 1, 14, 1, 3, 10, 8, 2, 3, 4, 15, 4], | |
| "ct": [15, 1, 14, 15, 14, 0, 2, 2, 9, 10, 14, 0, 15, 14, 5, 12, 2, 5, 4, 10, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 773, | |
| "comment": "y is maximal and (y + a) % radix**10 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "004c5548b418bceaad", | |
| "msg": [11, 0, 6, 8, 0, 13, 11, 9, 2, 0, 13, 4, 7, 5, 5, 14, 15, 15, 14, 3, 11], | |
| "ct": [7, 0, 12, 8, 14, 8, 15, 1, 15, 1, 5, 3, 13, 11, 3, 15, 10, 4, 14, 1, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 774, | |
| "comment": "y is maximal and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "004c5548b418bceaad", | |
| "msg": [12, 2, 2, 1, 4, 3, 12, 4, 2, 6, 1, 4, 3, 6, 10, 14, 8, 5, 14, 5, 3], | |
| "ct": [6, 6, 5, 4, 1, 7, 5, 3, 6, 13, 12, 7, 10, 0, 6, 7, 4, 4, 7, 10, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 775, | |
| "comment": "y is maximal and a is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "004c5548b418bceaad", | |
| "msg": [15, 6, 5, 12, 14, 0, 3, 4, 12, 11, 11, 8, 7, 5, 0, 7, 3, 1, 1, 11, 8], | |
| "ct": [14, 3, 0, 11, 5, 1, 12, 7, 9, 13, 6, 7, 11, 12, 7, 15, 15, 6, 6, 9, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 776, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "1ce9ed5f36d5c1c556", | |
| "msg": [7, 8, 6, 14, 14, 8, 8, 3, 14, 15, 1, 4, 1, 14, 8, 9, 6, 5, 7, 6, 3], | |
| "ct": [7, 5, 3, 11, 10, 0, 8, 1, 14, 11, 3, 11, 0, 1, 2, 5, 10, 11, 4, 12, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 777, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "1ce9ed5f36d5c1c556", | |
| "msg": [1, 2, 2, 8, 2, 13, 3, 1, 6, 11, 7, 3, 12, 12, 5, 13, 10, 12, 10, 2, 13], | |
| "ct": [10, 14, 11, 15, 14, 2, 0, 12, 5, 3, 7, 4, 10, 15, 6, 14, 6, 12, 9, 11, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 778, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**10 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "1ce9ed5f36d5c1c556", | |
| "msg": [15, 9, 15, 10, 7, 11, 3, 12, 1, 6, 11, 12, 4, 9, 8, 11, 12, 6, 15, 2, 2], | |
| "ct": [9, 5, 9, 3, 11, 7, 8, 1, 15, 10, 7, 2, 1, 11, 3, 7, 6, 15, 2, 3, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 779, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**10 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "1ce9ed5f36d5c1c556", | |
| "msg": [12, 2, 8, 15, 15, 12, 4, 14, 1, 2, 11, 7, 11, 4, 2, 3, 0, 4, 6, 13, 6], | |
| "ct": [10, 11, 15, 4, 5, 10, 13, 9, 11, 8, 12, 11, 9, 10, 13, 6, 15, 15, 4, 7, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 780, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "1ce9ed5f36d5c1c556", | |
| "msg": [11, 2, 11, 6, 4, 14, 6, 7, 12, 4, 5, 2, 4, 9, 12, 14, 14, 2, 6, 15, 3], | |
| "ct": [0, 14, 4, 10, 6, 13, 5, 2, 1, 14, 12, 15, 0, 10, 6, 4, 7, 15, 9, 8, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 781, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "1ce9ed5f36d5c1c556", | |
| "msg": [3, 5, 3, 4, 1, 1, 14, 4, 9, 12, 5, 13, 5, 10, 2, 8, 3, 8, 12, 9, 12], | |
| "ct": [11, 13, 3, 0, 2, 5, 8, 2, 2, 6, 9, 3, 2, 1, 11, 9, 8, 7, 15, 8, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 782, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**10 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "add29f02a8149621ca", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 9, 10, 4, 6, 0, 10, 2, 6, 14, 3, 14], | |
| "ct": [0, 10, 11, 13, 3, 3, 0, 5, 1, 8, 9, 3, 14, 4, 1, 7, 3, 14, 9, 2, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 783, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**10 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "add29f02a8149621ca", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 1, 9, 10, 4, 6, 0, 10, 2, 6, 14, 3, 14], | |
| "ct": [3, 11, 10, 14, 2, 3, 15, 6, 5, 9, 11, 3, 7, 10, 3, 0, 4, 6, 0, 13, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 784, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "add29f02a8149621ca", | |
| "msg": [8, 0, 0, 0, 0, 0, 0, 0, 0, 0, 9, 10, 4, 6, 0, 10, 2, 6, 14, 3, 14], | |
| "ct": [9, 15, 15, 9, 5, 0, 4, 6, 2, 7, 10, 8, 14, 0, 12, 1, 4, 5, 12, 13, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 785, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "add29f02a8149621ca", | |
| "msg": [15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 9, 10, 4, 6, 0, 10, 2, 6, 14, 3, 14], | |
| "ct": [12, 12, 14, 13, 1, 11, 9, 9, 11, 9, 15, 12, 5, 12, 4, 12, 0, 4, 10, 13, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 786, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "fd90f1e9599e12563bf788a1a521d6ab", | |
| "tweak": "d0a005b45247f038", | |
| "msg": [-1, 6, 6, 14, 3, 15, 9, 15, 12, 11, 0, 3, 4, 1, 10, 13, 5, 4, 12, 3, 13], | |
| "ct": [14, 6, 3, 1, 7, 10, 13, 9, 3, 7, 9, 5, 3, 11, 4, 15, 14, 9, 1, 6, 8], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 787, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "fd90f1e9599e12563bf788a1a521d6ab", | |
| "tweak": "d0a005b45247f038", | |
| "msg": [5, 6, 6, 14, 3, 15, 9, -1, 12, 11, 0, 3, 4, 1, 10, 13, 5, 4, 12, 3, 13], | |
| "ct": [15, 6, 2, 12, 15, 8, 6, 7, 9, 13, 8, 12, 3, 9, 13, 10, 11, 5, 8, 12, 0], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 788, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "fd90f1e9599e12563bf788a1a521d6ab", | |
| "tweak": "d0a005b45247f038", | |
| "msg": [5, 6, 6, 14, 3, 15, 9, 15, 12, 11, 0, 3, 4, 1, 10, 13, 5, 4, 12, 3, -1], | |
| "ct": [4, 8, 8, 10, 7, 9, 8, 3, 3, 8, 0, 13, 0, 4, 8, 1, 7, 4, 1, 6, 3], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 789, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "afd7dd92076d101acb927cb21f4c2ded", | |
| "tweak": "c5ebae0b8a67200d", | |
| "msg": [16, 3, 1, 9, 7, 4, 10, 15, 15, 3, 4, 8, 4, 4, 0, 0, 13, 10, 13, 9, 7], | |
| "ct": [3, 14, 6, 9, 15, 11, 4, 14, 8, 6, 4, 3, 9, 8, 14, 13, 0, 14, 5, 6, 1], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 790, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "afd7dd92076d101acb927cb21f4c2ded", | |
| "tweak": "c5ebae0b8a67200d", | |
| "msg": [3, 3, 1, 9, 7, 4, 10, 16, 15, 3, 4, 8, 4, 4, 0, 0, 13, 10, 13, 9, 7], | |
| "ct": [10, 8, 12, 0, 5, 4, 12, 7, 14, 5, 3, 13, 10, 5, 9, 0, 1, 5, 15, 5, 2], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 791, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "afd7dd92076d101acb927cb21f4c2ded", | |
| "tweak": "c5ebae0b8a67200d", | |
| "msg": [3, 3, 1, 9, 7, 4, 10, 15, 15, 3, 4, 8, 4, 4, 0, 0, 13, 10, 13, 9, 16], | |
| "ct": [2, 0, 5, 11, 7, 1, 13, 6, 3, 11, 8, 13, 8, 0, 14, 4, 8, 0, 8, 3, 9], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 22, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 792, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "9ed2a54df9219a3d61b5f1758b73bda6", | |
| "tweak": "5ecd852b587b8148", | |
| "msg": [14, 1, 12, 11, 6, 0, 15, 11, 11, 3, 7, 4, 3, 1, 1, 1, 14, 15, 13, 6, 5, 1], | |
| "ct": [6, 10, 7, 7, 6, 8, 6, 11, 8, 13, 1, 0, 7, 12, 13, 13, 5, 3, 10, 10, 7, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 793, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [15, 11, 15, 10, 12, 3, 2, 10, 14, 10, 13, 6, 11, 12, 13, 11, 15, 15, 15, 6, 4, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 794, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "ct": [2, 9, 6, 11, 3, 9, 2, 11, 0, 9, 0, 11, 15, 10, 0, 1, 1, 15, 0, 5, 1, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 795, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [8, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 8, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [4, 0, 6, 3, 3, 13, 4, 12, 5, 5, 2, 8, 12, 15, 4, 14, 8, 9, 9, 9, 2, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 796, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [7, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 7, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "ct": [8, 14, 14, 10, 0, 9, 1, 12, 9, 11, 7, 3, 4, 14, 1, 2, 14, 0, 0, 9, 14, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 797, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [10, 2, 2, 1, 4, 11, 14, 5, 7, 3, 6, 1, 5, 1, 11, 9, 3, 14, 5, 8, 13, 6], | |
| "ct": [4, 11, 0, 3, 1, 9, 0, 2, 12, 6, 11, 3, 13, 11, 12, 8, 0, 12, 3, 14, 9, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 798, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [15, 2, 14, 4, 14, 8, 3, 14, 12, 10, 7, 9, 6, 12, 4, 9, 9, 11, 6, 12, 1, 14], | |
| "ct": [11, 9, 11, 6, 14, 6, 9, 15, 13, 0, 12, 1, 10, 13, 4, 0, 1, 3, 11, 0, 13, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 799, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [10, 9, 4, 6, 8, 14, 1, 6, 10, 3, 11, 1, 13, 3, 0, 10, 10, 11, 2, 15, 0, 10], | |
| "ct": [8, 4, 2, 13, 11, 0, 0, 3, 2, 3, 0, 15, 15, 8, 6, 10, 12, 1, 9, 4, 4, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 800, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [13, 8, 9, 14, 6, 3, 2, 1, 3, 4, 5, 6, 13, 2, 3, 12, 0, 1, 10, 14, 14, 10], | |
| "ct": [13, 4, 13, 12, 5, 3, 12, 14, 7, 2, 5, 13, 11, 11, 4, 7, 8, 6, 2, 2, 9, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 801, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [7, 12, 12, 11, 10, 14, 1, 3, 13, 5, 2, 12, 15, 6, 5, 11, 2, 8, 0, 2, 15, 10], | |
| "ct": [4, 7, 5, 12, 8, 0, 10, 6, 4, 10, 8, 4, 0, 6, 6, 7, 15, 5, 2, 15, 0, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 802, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [11, 9, 9, 9, 5, 14, 8, 2, 13, 12, 14, 5, 1, 10, 11, 0, 4, 5, 12, 15, 9, 4], | |
| "ct": [15, 12, 11, 7, 12, 3, 10, 11, 0, 9, 0, 6, 4, 3, 12, 10, 0, 1, 7, 5, 9, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 803, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [14, 2, 3, 13, 8, 15, 0, 9, 15, 15, 14, 2, 4, 15, 3, 12, 8, 12, 11, 0, 11, 10], | |
| "ct": [3, 6, 14, 9, 12, 12, 6, 4, 14, 3, 4, 8, 0, 8, 7, 1, 11, 0, 10, 6, 2, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 804, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [9, 15, 11, 10, 2, 10, 14, 12, 1, 15, 2, 15, 10, 15, 1, 2, 4, 11, 8, 0, 12, 8], | |
| "ct": [8, 2, 0, 2, 3, 15, 10, 6, 4, 11, 0, 12, 15, 5, 7, 9, 5, 12, 9, 10, 9, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 805, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [11, 9, 14, 6, 1, 4, 13, 13, 5, 5, 2, 6, 11, 4, 12, 1, 5, 6, 4, 15, 2, 2], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 806, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [4, 5, 13, 12, 3, 13, 0, 3, 4, 6, 3, 6, 0, 1, 14, 4, 8, 0, 11, 8, 5, 12], | |
| "ct": [15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 807, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [15, 14, 4, 4, 6, 2, 7, 2, 11, 2, 6, 5, 4, 4, 11, 10, 0, 10, 4, 2, 3, 12], | |
| "ct": [8, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 8, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 808, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [12, 13, 14, 10, 10, 10, 3, 3, 7, 4, 4, 9, 0, 3, 2, 7, 14, 6, 12, 3, 15, 7], | |
| "ct": [7, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 7, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 809, | |
| "comment": "y = 0 and (y + a) % radix**11 == 0 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "cbbce022fea97525ed", | |
| "msg": [14, 13, 4, 13, 0, 12, 3, 11, 11, 15, 10, 5, 10, 11, 0, 15, 14, 8, 12, 4, 4, 12], | |
| "ct": [10, 1, 5, 15, 2, 1, 6, 1, 4, 12, 12, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 810, | |
| "comment": "y = 0 and a = 1 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "cbbce022fea97525ed", | |
| "msg": [14, 13, 15, 12, 4, 13, 5, 7, 11, 0, 7, 13, 12, 9, 12, 12, 1, 7, 2, 0, 9, 4], | |
| "ct": [10, 1, 5, 15, 2, 1, 6, 1, 4, 12, 12, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 811, | |
| "comment": "y = 0 and a has large Hamming weight in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "cbbce022fea97525ed", | |
| "msg": [4, 4, 1, 12, 7, 14, 10, 1, 12, 13, 2, 15, 14, 1, 15, 8, 5, 8, 3, 8, 5, 14], | |
| "ct": [10, 1, 5, 15, 2, 1, 6, 1, 4, 12, 12, 8, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 812, | |
| "comment": "y = 0 and (y + a) % radix**11 is maximal in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "cbbce022fea97525ed", | |
| "msg": [7, 1, 3, 5, 2, 12, 6, 12, 0, 6, 13, 1, 5, 2, 3, 5, 9, 8, 8, 6, 4, 8], | |
| "ct": [10, 1, 5, 15, 2, 1, 6, 1, 4, 12, 12, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 813, | |
| "comment": "y = 1 and a = 0 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "e6f703e500ae760b77", | |
| "msg": [4, 5, 15, 5, 4, 13, 8, 4, 11, 7, 4, 12, 11, 14, 2, 0, 9, 4, 10, 11, 13, 15], | |
| "ct": [0, 11, 8, 1, 12, 15, 10, 2, 7, 1, 8, 9, 13, 7, 14, 12, 15, 9, 3, 9, 10, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 814, | |
| "comment": "y = 1 and a = 1 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "e6f703e500ae760b77", | |
| "msg": [2, 3, 2, 0, 9, 3, 12, 12, 7, 3, 4, 2, 14, 11, 12, 4, 15, 12, 5, 15, 14, 15], | |
| "ct": [15, 11, 8, 11, 10, 0, 1, 0, 5, 15, 4, 1, 14, 4, 3, 14, 14, 0, 10, 14, 11, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 815, | |
| "comment": "y = 1 and a has large Hamming weight in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "e6f703e500ae760b77", | |
| "msg": [5, 3, 2, 6, 15, 8, 2, 8, 14, 8, 0, 1, 10, 10, 0, 6, 9, 0, 13, 13, 15, 11], | |
| "ct": [0, 3, 0, 2, 14, 11, 6, 3, 8, 13, 13, 8, 15, 6, 7, 3, 14, 0, 4, 15, 13, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 816, | |
| "comment": "y = 1 and (y + a) % radix**11 is maximal in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "e6f703e500ae760b77", | |
| "msg": [7, 5, 7, 4, 4, 8, 8, 15, 11, 13, 14, 4, 6, 15, 12, 15, 13, 12, 15, 1, 6, 6], | |
| "ct": [9, 5, 15, 10, 9, 2, 14, 5, 15, 12, 12, 9, 8, 6, 11, 10, 8, 4, 8, 7, 8, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 817, | |
| "comment": "y = 1 and (y + a) % radix**11 == 0 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "e6f703e500ae760b77", | |
| "msg": [10, 14, 1, 9, 0, 9, 7, 10, 13, 9, 3, 5, 1, 5, 10, 4, 2, 10, 8, 3, 15, 11], | |
| "ct": [1, 4, 9, 9, 0, 6, 7, 10, 6, 15, 0, 3, 13, 0, 8, 11, 4, 12, 12, 15, 15, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 818, | |
| "comment": "y is maximal and (y + a) % radix**11 is maximal in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "456ea2ee2ae9b6bbf7", | |
| "msg": [15, 0, 7, 13, 15, 0, 8, 11, 14, 0, 13, 11, 6, 4, 13, 3, 0, 12, 10, 6, 0, 4], | |
| "ct": [8, 7, 11, 11, 7, 8, 6, 11, 9, 3, 9, 5, 12, 8, 15, 2, 14, 3, 14, 3, 0, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 819, | |
| "comment": "y is maximal and (y + a) % radix**11 == 0 in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "456ea2ee2ae9b6bbf7", | |
| "msg": [1, 12, 5, 8, 2, 6, 9, 7, 6, 7, 7, 1, 10, 2, 11, 14, 1, 10, 7, 2, 0, 13], | |
| "ct": [11, 13, 11, 15, 14, 2, 11, 2, 0, 15, 12, 1, 3, 3, 4, 4, 11, 3, 6, 8, 4, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 820, | |
| "comment": "y is maximal and a has large Hamming weight in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "456ea2ee2ae9b6bbf7", | |
| "msg": [6, 5, 11, 9, 10, 13, 15, 9, 3, 9, 6, 7, 15, 1, 0, 9, 7, 8, 13, 8, 11, 12], | |
| "ct": [1, 2, 5, 12, 6, 7, 14, 0, 8, 1, 6, 15, 5, 5, 3, 11, 14, 10, 9, 0, 7, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 821, | |
| "comment": "y is maximal and a is maximal in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "456ea2ee2ae9b6bbf7", | |
| "msg": [14, 5, 14, 6, 12, 1, 15, 6, 3, 10, 0, 14, 9, 3, 3, 8, 5, 8, 5, 0, 1, 9], | |
| "ct": [1, 1, 0, 1, 11, 7, 15, 12, 3, 13, 2, 8, 1, 3, 11, 7, 2, 11, 1, 1, 6, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 822, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "6e1a5a98d7e703362c", | |
| "msg": [7, 11, 15, 9, 4, 13, 5, 7, 4, 7, 10, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [6, 3, 10, 5, 12, 7, 15, 7, 10, 3, 11, 6, 7, 0, 5, 11, 4, 6, 9, 5, 3, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 823, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "6e1a5a98d7e703362c", | |
| "msg": [3, 2, 10, 10, 11, 6, 2, 12, 2, 15, 2, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 1], | |
| "ct": [1, 2, 13, 13, 15, 15, 2, 14, 2, 13, 15, 6, 9, 6, 3, 1, 11, 15, 10, 1, 10, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 824, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**11 is maximal in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "6e1a5a98d7e703362c", | |
| "msg": [10, 15, 6, 4, 14, 5, 12, 1, 5, 7, 14, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 15], | |
| "ct": [10, 4, 11, 14, 14, 10, 15, 7, 0, 1, 12, 13, 5, 3, 7, 15, 12, 6, 4, 4, 3, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 825, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**11 == 0 in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "6e1a5a98d7e703362c", | |
| "msg": [3, 8, 4, 9, 7, 4, 9, 0, 6, 11, 10, 0, 0, 0, 0, 0, 0, 0, 0, 0, 1, 0], | |
| "ct": [5, 6, 9, 1, 7, 5, 13, 7, 4, 0, 15, 3, 6, 0, 9, 10, 13, 14, 10, 3, 3, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 826, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "6e1a5a98d7e703362c", | |
| "msg": [6, 0, 5, 6, 6, 3, 10, 10, 8, 9, 9, 8, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [8, 7, 13, 2, 8, 11, 8, 9, 15, 7, 12, 6, 7, 10, 0, 15, 5, 12, 7, 8, 8, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 827, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "6e1a5a98d7e703362c", | |
| "msg": [14, 5, 13, 1, 10, 13, 6, 9, 2, 2, 6, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "ct": [14, 9, 14, 2, 0, 10, 4, 14, 15, 1, 7, 1, 5, 12, 14, 9, 15, 15, 10, 5, 7, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 828, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**11 is maximal in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "3a95fcfb1d017e09bd", | |
| "msg": [2, 6, 8, 12, 15, 10, 2, 12, 7, 15, 6, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [14, 5, 8, 6, 4, 10, 7, 3, 9, 7, 11, 9, 12, 14, 0, 1, 6, 2, 2, 11, 2, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 829, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**11 == 0 in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "3a95fcfb1d017e09bd", | |
| "msg": [0, 15, 9, 1, 13, 10, 4, 14, 1, 11, 4, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 1], | |
| "ct": [6, 4, 13, 8, 5, 6, 4, 5, 5, 8, 13, 7, 1, 2, 5, 9, 13, 8, 15, 8, 6, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 830, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "3a95fcfb1d017e09bd", | |
| "msg": [0, 8, 14, 6, 3, 15, 4, 11, 10, 14, 0, 8, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [14, 7, 15, 11, 1, 13, 5, 9, 15, 15, 4, 7, 15, 10, 13, 4, 1, 8, 15, 3, 11, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 831, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "3a95fcfb1d017e09bd", | |
| "msg": [14, 5, 12, 8, 5, 12, 10, 1, 14, 7, 4, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "ct": [9, 3, 6, 7, 1, 2, 5, 13, 0, 14, 5, 6, 10, 1, 0, 2, 1, 3, 14, 1, 15, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 832, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "1a09b8fb562701a282ce28747f0b0a52", | |
| "tweak": "ec1b2b9ede1b38ea", | |
| "msg": [-1, 11, 4, 12, 12, 0, 2, 0, 9, 7, 4, 1, 4, 5, 11, 2, 14, 1, 7, 10, 5, 1], | |
| "ct": [5, 9, 7, 10, 11, 11, 9, 14, 0, 3, 0, 1, 15, 7, 1, 9, 14, 9, 7, 12, 9, 2], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 833, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "1a09b8fb562701a282ce28747f0b0a52", | |
| "tweak": "ec1b2b9ede1b38ea", | |
| "msg": [6, 11, 4, 12, 12, 0, 2, -1, 9, 7, 4, 1, 4, 5, 11, 2, 14, 1, 7, 10, 5, 1], | |
| "ct": [6, 12, 7, 0, 15, 3, 12, 1, 1, 0, 4, 5, 6, 5, 5, 8, 15, 5, 11, 12, 3, 5], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 834, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "1a09b8fb562701a282ce28747f0b0a52", | |
| "tweak": "ec1b2b9ede1b38ea", | |
| "msg": [6, 11, 4, 12, 12, 0, 2, 0, 9, 7, 4, 1, 4, 5, 11, 2, 14, 1, 7, 10, 5, -1], | |
| "ct": [1, 11, 5, 3, 1, 12, 8, 3, 5, 9, 6, 2, 6, 0, 7, 4, 3, 4, 2, 3, 7, 4], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 835, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "6311c63d5eba451c52bc4ac9649a9fe5", | |
| "tweak": "9995d08758fdc0e4", | |
| "msg": [16, 6, 12, 13, 15, 4, 14, 3, 12, 14, 0, 1, 8, 7, 10, 4, 2, 14, 13, 10, 5, 8], | |
| "ct": [8, 14, 9, 11, 0, 8, 6, 0, 4, 2, 14, 1, 8, 11, 10, 10, 3, 4, 8, 15, 11, 8], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 836, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "6311c63d5eba451c52bc4ac9649a9fe5", | |
| "tweak": "9995d08758fdc0e4", | |
| "msg": [3, 6, 12, 13, 15, 4, 14, 16, 12, 14, 0, 1, 8, 7, 10, 4, 2, 14, 13, 10, 5, 8], | |
| "ct": [9, 9, 6, 11, 12, 5, 7, 15, 0, 6, 11, 6, 11, 4, 7, 1, 7, 15, 3, 6, 1, 12], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 837, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "6311c63d5eba451c52bc4ac9649a9fe5", | |
| "tweak": "9995d08758fdc0e4", | |
| "msg": [3, 6, 12, 13, 15, 4, 14, 3, 12, 14, 0, 1, 8, 7, 10, 4, 2, 14, 13, 10, 5, 16], | |
| "ct": [11, 9, 10, 10, 9, 1, 6, 11, 1, 2, 14, 1, 0, 10, 5, 2, 2, 5, 15, 10, 5, 0], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 23, | |
| "radix": 16, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 838, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "b9259b7f8c36246e73802b650cec0f3a", | |
| "tweak": "338104fb3b076bc4", | |
| "msg": [5, 15, 6, 6, 0, 11, 13, 13, 6, 4, 2, 10, 1, 2, 6, 7, 8, 0, 0, 10, 2, 4, 6], | |
| "ct": [5, 6, 13, 12, 7, 0, 7, 6, 3, 5, 15, 2, 15, 0, 11, 2, 13, 11, 7, 1, 14, 4, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 839, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "54dc637b4efc6ee03d4bd532295d63b8", | |
| "tweak": "cc32b4959acf967c", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [2, 4, 15, 0, 12, 12, 6, 13, 6, 9, 5, 13, 0, 1, 5, 1, 13, 7, 0, 1, 9, 4, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 840, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "54dc637b4efc6ee03d4bd532295d63b8", | |
| "tweak": "cc32b4959acf967c", | |
| "msg": [15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "ct": [13, 4, 15, 15, 7, 15, 2, 0, 4, 10, 2, 8, 1, 9, 14, 10, 11, 3, 7, 9, 7, 6, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 841, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "54dc637b4efc6ee03d4bd532295d63b8", | |
| "tweak": "cc32b4959acf967c", | |
| "msg": [8, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 8, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [8, 8, 1, 4, 9, 6, 14, 12, 14, 1, 14, 15, 3, 7, 3, 15, 10, 15, 15, 6, 10, 11, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 842, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "54dc637b4efc6ee03d4bd532295d63b8", | |
| "tweak": "cc32b4959acf967c", | |
| "msg": [7, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 7, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15, 15], | |
| "ct": [13, 2, 12, 14, 5, 10, 5, 3, 15, 15, 8, 6, 6, 4, 1, 15, 11, 2, 11, 11, 14, 2, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 843, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "54dc637b4efc6ee03d4bd532295d63b8", | |
| "tweak": "cc32b4959acf967c", | |
| "msg": [13, 1, 4, 1, 8, 15, 13, 5, 15, 13, 10, 8, 12, 9, 3, 15, 2, 6, 1, 0, 7, 10, 2], | |
| "ct": [2, 10, 4, 4, 2, 5, 4, 0, 8, 14, 11, 12, 14, 9, 6, 1, 11, 6, 6, 10, 3, 3, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 844, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "54dc637b4efc6ee03d4bd532295d63b8", | |
| "tweak": "cc32b4959acf967c", | |
| "msg": [4, 1, 2, 1, 15, 5, 14, 14, 0, 5, 10, 13, 5, 9, 3, 9, 3, 15, 7, 6, 14, 13, 3], | |
| "ct": [6, 5, 4, 8, 11, 9, 4, 13, 1, 4, 11, 4, 14, 11, 12, 13, 4, 8, 1, 4, 3, 3, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 845, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "54dc637b4efc6ee03d4bd532295d63b8", | |
| "tweak": "cc32b4959acf967c", | |
| "msg": [7, 4, 13, 0, 3, 11, 14, 6, 15, 5, 12, 13, 14, 14, 4, 8, 11, 15, 8, 13, 3, 0, 12], | |
| "ct": [0, 13, 10, 15, 1, 4, 13, 4, 4, 4, 0, 3, 2, 2, 15, 10, 13, 8, 8, 12, 3, 2, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 846, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "54dc637b4efc6ee03d4bd532295d63b8", | |
| "tweak": "cc32b4959acf967c", | |
| "msg": [1, 13, 10, 9, 10, 9, 8, 3, 6, 12, 9, 10, 9, 1, 14, 3, 9, 1, 7, 3, 4, 8, 8], | |
| "ct": [12, 4, 15, 13, 9, 10, 4, 10, 3, 6, 2, 10, 11, 7, 2, 3, 8, 0, 9, 0, 8, 5, 10], | |
| "result": "valid" | |
| }, | |
| { | |