| { | |
| "algorithm": "AES-FF1", | |
| "generatorVersion": "0.9rc5", | |
| "numberOfTests": 2854, | |
| "header": [ | |
| "Test vectors of type FpeListTest are intended for format preserving encryption." | |
| ], | |
| "notes": { | |
| "EdgeCasePrf": { | |
| "bugType": "EDGE_CASE", | |
| "description": "FF1 computes a pseudorandom function, converts the result into an integer y, which is then reduced modulo radix**v, where v is the size of the longer block in the Feistel structure. This test vector contains cases where the value y is an edge case. The goal of the test vector is to check for arithmetic errors such as integer overflow or incorrect modular reduction." | |
| }, | |
| "EdgeCaseState": { | |
| "bugType": "EDGE_CASE", | |
| "description": "FF1 requires integer arithmetic of various sizes. This test vector contains values such that edge cases are reached during encryption and decryption. The goal of the test vector is to check for incorrect integer arithmetic e.g., because of integer overflows." | |
| }, | |
| "InvalidKeySize": { | |
| "bugType": "MODIFIED_PARAMETER", | |
| "description": "The key size is invalid." | |
| }, | |
| "InvalidMessageSize": { | |
| "bugType": "MISSING_STEP", | |
| "description": "FF1 imposes a minimal size of the inputs. The original specification of FF1 required radix**minlen >= 100, NIST SP 800-38G rev 1, requires radix**minlen >= 1'000'000. This test vector contains a short message such that both limits are violated and hence should be rejected." | |
| }, | |
| "InvalidPlaintext": { | |
| "bugType": "MODIFIED_PARAMETER", | |
| "description": "FF1 expects inputs from a fixed range of digits. This test vector contains a plaintext containing invalid digits." | |
| }, | |
| "LargeMessageSize": { | |
| "bugType": "FUNCTIONALITY", | |
| "description": "The specification of FF1 uses integer arithmetic of arbitrary size for long messages. Some implementations may choose to restrict the message length to simplify the implementation of FF1. This test vector contains a message of size msglen such that radix**msglen > 2**128." | |
| }, | |
| "NormalMessageSize": { | |
| "bugType": "BASIC", | |
| "description": "The specification of FF1 uses integer arithmetic of arbitrary size for long messages. Some implementations may choose to restrict the message length to simplify the implementation of FF1. This test vector contains a message of size msglen such that 1'000'000 <= radix**msglen <= 2**128." | |
| }, | |
| "SmallMessageSize": { | |
| "bugType": "LEGACY", | |
| "description": "FF1 imposes a minimal size of the inputs. The original specification of FF1 required radix**msglen >= 100, NIST SP 800-38G rev 1 changes this and requires radix**msglen >= 1'000'000. This test vector contains a message of size msglen, such that radix**msglen lies between these two limits." | |
| } | |
| }, | |
| "schema": "fpe_list_test_schema.json", | |
| "testGroups": [ | |
| { | |
| "keySize": 128, | |
| "msgSize": 0, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 1, | |
| "comment": "Invalid message size", | |
| "flags": [ | |
| "InvalidMessageSize" | |
| ], | |
| "key": "fb9fc869af3e4828da6efa18b5fa71a0", | |
| "tweak": "379f81cab6ed2517", | |
| "msg": [], | |
| "ct": [], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 1, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 2, | |
| "comment": "Invalid message size", | |
| "flags": [ | |
| "InvalidMessageSize" | |
| ], | |
| "key": "7325733095d90aff456a1e00fa977365", | |
| "tweak": "a5f8950069a56f6c", | |
| "msg": [20], | |
| "ct": [], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 192, | |
| "msgSize": 0, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 3, | |
| "comment": "Invalid message size", | |
| "flags": [ | |
| "InvalidMessageSize" | |
| ], | |
| "key": "af2463f51df63a015178e30edcf25dacbeb2abbc5144d0a6", | |
| "tweak": "5d9c3dfb797c952a", | |
| "msg": [], | |
| "ct": [], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 192, | |
| "msgSize": 1, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 4, | |
| "comment": "Invalid message size", | |
| "flags": [ | |
| "InvalidMessageSize" | |
| ], | |
| "key": "e9e279f5fad3e7fd7922e838cf07da528ddcc5387f6145bf", | |
| "tweak": "a25989a2e4360bae", | |
| "msg": [15], | |
| "ct": [], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 256, | |
| "msgSize": 0, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 5, | |
| "comment": "Invalid message size", | |
| "flags": [ | |
| "InvalidMessageSize" | |
| ], | |
| "key": "f25e816c4d42629a428e48f2d48a31f79d6b1e8ef47e5ed3e7e5bbdf37f1806d", | |
| "tweak": "42dbc8913a275520", | |
| "msg": [], | |
| "ct": [], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 256, | |
| "msgSize": 1, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 6, | |
| "comment": "Invalid message size", | |
| "flags": [ | |
| "InvalidMessageSize" | |
| ], | |
| "key": "b8c800bed3286920bd1d9ad89a78808e9f815ec638663a725f256cc7078fdaf0", | |
| "tweak": "90120912eba3c19c", | |
| "msg": [3], | |
| "ct": [], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 2, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 7, | |
| "comment": "small message size", | |
| "flags": [ | |
| "SmallMessageSize" | |
| ], | |
| "key": "ad65778960d778c614e2673dee073acb", | |
| "tweak": "4505f45a8fa30b90", | |
| "msg": [13, 23], | |
| "ct": [18, 35], | |
| "result": "valid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 3, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 8, | |
| "comment": "small message size", | |
| "flags": [ | |
| "SmallMessageSize" | |
| ], | |
| "key": "aa6f23f573da39b110f4e155c418ba1f", | |
| "tweak": "8402018f66fd2cb9", | |
| "msg": [0, 20, 17], | |
| "ct": [5, 35, 16], | |
| "result": "valid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 192, | |
| "msgSize": 2, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 9, | |
| "comment": "small message size", | |
| "flags": [ | |
| "SmallMessageSize" | |
| ], | |
| "key": "911c9e0a87977587050ebb48f4f9e199fde8472781ecaf7a", | |
| "tweak": "cf98ea96ef005bc6", | |
| "msg": [9, 10], | |
| "ct": [6, 25], | |
| "result": "valid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 192, | |
| "msgSize": 3, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 10, | |
| "comment": "small message size", | |
| "flags": [ | |
| "SmallMessageSize" | |
| ], | |
| "key": "3c453964f4e42587db3a6de5de00673ede7e17672a4deb84", | |
| "tweak": "fe6290783f11946c", | |
| "msg": [19, 8, 27], | |
| "ct": [30, 6, 31], | |
| "result": "valid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 256, | |
| "msgSize": 2, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 11, | |
| "comment": "small message size", | |
| "flags": [ | |
| "SmallMessageSize" | |
| ], | |
| "key": "d05ae6e3819e2dcdd218be7c62465e8f1474f1fec8e79a1a3f7b88040d0f4160", | |
| "tweak": "823988f1ffb8ce23", | |
| "msg": [25, 25], | |
| "ct": [26, 21], | |
| "result": "valid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 256, | |
| "msgSize": 3, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 12, | |
| "comment": "small message size", | |
| "flags": [ | |
| "SmallMessageSize" | |
| ], | |
| "key": "1399758fa1ebf7cfda5f601c643443adaea4f4f8c19fc8772c5d5e3cc0cc6955", | |
| "tweak": "8c5a263a91b7cb4f", | |
| "msg": [1, 11, 32], | |
| "ct": [4, 30, 17], | |
| "result": "valid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 4, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 13, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "5dd5899794ff9b5007b4481aaa97f882", | |
| "tweak": "742f7f8b2ab0dc48", | |
| "msg": [27, 3, 18, 26], | |
| "ct": [3, 4, 24, 31], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 14, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [0, 0, 0, 0], | |
| "ct": [33, 24, 19, 32], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 15, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [35, 35, 35, 35], | |
| "ct": [12, 9, 20, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 16, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [28, 16, 28, 16], | |
| "ct": [11, 33, 12, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 17, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [28, 15, 28, 15], | |
| "ct": [6, 35, 16, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 18, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [10, 4, 35, 26], | |
| "ct": [4, 22, 23, 34], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 19, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [21, 29, 9, 28], | |
| "ct": [1, 9, 23, 19], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 20, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [1, 12, 17, 5], | |
| "ct": [15, 6, 4, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 21, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [23, 23, 14, 11], | |
| "ct": [32, 3, 9, 25], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 22, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [7, 20, 5, 5], | |
| "ct": [2, 25, 1, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 23, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [4, 3, 22, 26], | |
| "ct": [9, 2, 31, 23], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 24, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [35, 1, 34, 23], | |
| "ct": [4, 4, 22, 22], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 25, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [10, 10, 20, 22], | |
| "ct": [23, 1, 22, 28], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 26, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [2, 26, 35, 15], | |
| "ct": [0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 27, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [12, 14, 29, 25], | |
| "ct": [35, 35, 35, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 28, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [7, 32, 14, 8], | |
| "ct": [28, 16, 28, 16], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 29, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [9, 22, 20, 10], | |
| "ct": [28, 15, 28, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 30, | |
| "comment": "y = 0 and (y + a) % radix**2 == 0 in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "b667836c2f611d656e62df85d4", | |
| "msg": [19, 34, 20, 23], | |
| "ct": [16, 13, 32, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 31, | |
| "comment": "y = 0 and a = 1 in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "b667836c2f611d656e62df85d4", | |
| "msg": [22, 19, 14, 22], | |
| "ct": [16, 8, 11, 34], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 32, | |
| "comment": "y = 0 and a has large Hamming weight in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "b667836c2f611d656e62df85d4", | |
| "msg": [35, 18, 11, 16], | |
| "ct": [22, 11, 32, 25], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 33, | |
| "comment": "y = 0 and (y + a) % radix**2 is maximal in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "b667836c2f611d656e62df85d4", | |
| "msg": [35, 0, 0, 5], | |
| "ct": [35, 26, 14, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 34, | |
| "comment": "y = 1 and a = 0 in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "e82d2fcf0b8377557c0f030a16", | |
| "msg": [15, 19, 0, 0], | |
| "ct": [6, 16, 35, 34], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 35, | |
| "comment": "y = 1 and a = 1 in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "e82d2fcf0b8377557c0f030a16", | |
| "msg": [6, 15, 0, 1], | |
| "ct": [14, 15, 29, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 36, | |
| "comment": "y = 1 and a has large Hamming weight in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "e82d2fcf0b8377557c0f030a16", | |
| "msg": [13, 24, 28, 16], | |
| "ct": [0, 34, 24, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 37, | |
| "comment": "y = 1 and (y + a) % radix**2 is maximal in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "e82d2fcf0b8377557c0f030a16", | |
| "msg": [13, 19, 35, 34], | |
| "ct": [23, 8, 1, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 38, | |
| "comment": "y = 1 and (y + a) % radix**2 == 0 in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "e82d2fcf0b8377557c0f030a16", | |
| "msg": [4, 26, 35, 35], | |
| "ct": [35, 4, 12, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 39, | |
| "comment": "y is maximal and a = 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "2d96c2be38f936b5614c678157", | |
| "msg": [35, 31, 34, 3], | |
| "ct": [23, 27, 0, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 40, | |
| "comment": "y is maximal and a = 1 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "2d96c2be38f936b5614c678157", | |
| "msg": [9, 11, 16, 7], | |
| "ct": [20, 0, 7, 24], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 41, | |
| "comment": "y is maximal and (y + a) % radix**2 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "2d96c2be38f936b5614c678157", | |
| "msg": [21, 25, 30, 31], | |
| "ct": [3, 31, 19, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 42, | |
| "comment": "y is maximal and (y + a) % radix**2 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "2d96c2be38f936b5614c678157", | |
| "msg": [18, 1, 21, 6], | |
| "ct": [28, 14, 19, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 43, | |
| "comment": "y is maximal and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "2d96c2be38f936b5614c678157", | |
| "msg": [21, 33, 31, 19], | |
| "ct": [27, 20, 8, 31], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 44, | |
| "comment": "y is maximal and a is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "2d96c2be38f936b5614c678157", | |
| "msg": [30, 35, 5, 32], | |
| "ct": [0, 8, 1, 21], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 45, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "9715c66bce7d4bca8c7c254cc1", | |
| "msg": [13, 0, 15, 2], | |
| "ct": [23, 0, 5, 23], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 46, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "9715c66bce7d4bca8c7c254cc1", | |
| "msg": [15, 11, 27, 24], | |
| "ct": [7, 14, 31, 25], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 47, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**2 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "9715c66bce7d4bca8c7c254cc1", | |
| "msg": [9, 27, 10, 10], | |
| "ct": [23, 32, 7, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 48, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**2 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "9715c66bce7d4bca8c7c254cc1", | |
| "msg": [31, 15, 6, 14], | |
| "ct": [15, 31, 11, 24], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 49, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "9715c66bce7d4bca8c7c254cc1", | |
| "msg": [33, 15, 12, 9], | |
| "ct": [11, 12, 1, 31], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 50, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "9715c66bce7d4bca8c7c254cc1", | |
| "msg": [5, 24, 7, 31], | |
| "ct": [33, 0, 22, 21], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 51, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**2 is maximal in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "ba5e1de786e37f88cff57465b5", | |
| "msg": [18, 30, 0, 0], | |
| "ct": [19, 10, 1, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 52, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**2 == 0 in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "ba5e1de786e37f88cff57465b5", | |
| "msg": [16, 8, 0, 1], | |
| "ct": [20, 6, 3, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 53, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "ba5e1de786e37f88cff57465b5", | |
| "msg": [33, 28, 28, 16], | |
| "ct": [13, 21, 15, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 54, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "ba5e1de786e37f88cff57465b5", | |
| "msg": [9, 13, 35, 35], | |
| "ct": [0, 25, 19, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 55, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "8a74f1cae832ef8d58c26b49157c187b", | |
| "tweak": "d7b8bdae53aba381", | |
| "msg": [-1, 0, 27, 20], | |
| "ct": [28, 34, 32, 26], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 56, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "8a74f1cae832ef8d58c26b49157c187b", | |
| "tweak": "d7b8bdae53aba381", | |
| "msg": [8, -1, 27, 20], | |
| "ct": [17, 9, 18, 12], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 57, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "8a74f1cae832ef8d58c26b49157c187b", | |
| "tweak": "d7b8bdae53aba381", | |
| "msg": [8, 0, 27, -1], | |
| "ct": [29, 21, 2, 32], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 58, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "966b81981f425ab2d46cba39538e32f1", | |
| "tweak": "c8c929319e66596f", | |
| "msg": [36, 25, 11, 30], | |
| "ct": [32, 4, 11, 19], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 59, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "966b81981f425ab2d46cba39538e32f1", | |
| "tweak": "c8c929319e66596f", | |
| "msg": [0, 36, 11, 30], | |
| "ct": [9, 28, 30, 17], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 60, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "966b81981f425ab2d46cba39538e32f1", | |
| "tweak": "c8c929319e66596f", | |
| "msg": [0, 25, 11, 36], | |
| "ct": [29, 21, 26, 32], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 5, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 61, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "0319599d6c7ca301230ec2b06c681097", | |
| "tweak": "125fd8f86c787e2d", | |
| "msg": [16, 17, 3, 33, 22], | |
| "ct": [34, 21, 11, 31, 24], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 62, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [0, 0, 0, 0, 0], | |
| "ct": [34, 30, 17, 20, 27], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 63, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [35, 35, 35, 35, 35], | |
| "ct": [7, 30, 31, 30, 26], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 64, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [28, 16, 25, 10, 8], | |
| "ct": [30, 18, 0, 16, 18], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 65, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [28, 15, 25, 10, 7], | |
| "ct": [11, 32, 24, 16, 29], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 66, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [23, 30, 30, 32, 10], | |
| "ct": [5, 33, 35, 16, 21], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 67, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [15, 34, 27, 18, 7], | |
| "ct": [1, 25, 27, 16, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 68, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [17, 17, 33, 13, 21], | |
| "ct": [25, 7, 0, 4, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 69, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [24, 4, 0, 32, 1], | |
| "ct": [27, 6, 9, 28, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 70, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [28, 16, 4, 27, 27], | |
| "ct": [8, 16, 4, 35, 24], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 71, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [11, 19, 2, 2, 25], | |
| "ct": [17, 6, 26, 13, 28], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 72, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [5, 2, 8, 17, 15], | |
| "ct": [1, 16, 29, 13, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 73, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [4, 2, 8, 13, 8], | |
| "ct": [16, 22, 15, 25, 21], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 74, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [30, 21, 3, 15, 20], | |
| "ct": [0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 75, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [29, 30, 33, 20, 4], | |
| "ct": [35, 35, 35, 35, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 76, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [19, 29, 15, 31, 11], | |
| "ct": [28, 16, 25, 10, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 77, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [35, 32, 20, 5, 7], | |
| "ct": [28, 15, 25, 10, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 78, | |
| "comment": "y = 0 and (y + a) % radix**2 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "9999625fb566cfc76b1613e908", | |
| "msg": [15, 9, 15, 13, 33], | |
| "ct": [12, 0, 33, 10, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 79, | |
| "comment": "y = 0 and a = 1 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "9999625fb566cfc76b1613e908", | |
| "msg": [11, 22, 35, 18, 13], | |
| "ct": [19, 9, 27, 33, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 80, | |
| "comment": "y = 0 and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "9999625fb566cfc76b1613e908", | |
| "msg": [17, 35, 28, 33, 29], | |
| "ct": [33, 25, 31, 19, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 81, | |
| "comment": "y = 0 and (y + a) % radix**2 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "9999625fb566cfc76b1613e908", | |
| "msg": [4, 26, 33, 25, 28], | |
| "ct": [20, 31, 25, 19, 16], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 82, | |
| "comment": "y = 1 and a = 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "c81235ac54ce38028dd3af9497", | |
| "msg": [29, 8, 0, 28, 19], | |
| "ct": [14, 29, 5, 20, 27], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 83, | |
| "comment": "y = 1 and a = 1 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "c81235ac54ce38028dd3af9497", | |
| "msg": [17, 34, 7, 4, 30], | |
| "ct": [8, 26, 5, 14, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 84, | |
| "comment": "y = 1 and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "c81235ac54ce38028dd3af9497", | |
| "msg": [27, 10, 19, 5, 31], | |
| "ct": [27, 15, 31, 30, 29], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 85, | |
| "comment": "y = 1 and (y + a) % radix**2 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "c81235ac54ce38028dd3af9497", | |
| "msg": [31, 24, 0, 3, 10], | |
| "ct": [28, 7, 13, 23, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 86, | |
| "comment": "y = 1 and (y + a) % radix**2 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "c81235ac54ce38028dd3af9497", | |
| "msg": [33, 15, 3, 22, 28], | |
| "ct": [22, 4, 32, 31, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 87, | |
| "comment": "y is maximal and a = 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "154fec1b63e2b58eec57a3dbbd", | |
| "msg": [26, 16, 10, 25, 18], | |
| "ct": [28, 15, 30, 18, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 88, | |
| "comment": "y is maximal and a = 1 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "154fec1b63e2b58eec57a3dbbd", | |
| "msg": [31, 30, 0, 26, 2], | |
| "ct": [28, 16, 26, 10, 22], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 89, | |
| "comment": "y is maximal and (y + a) % radix**2 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "154fec1b63e2b58eec57a3dbbd", | |
| "msg": [14, 9, 35, 22, 15], | |
| "ct": [35, 35, 3, 24, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 90, | |
| "comment": "y is maximal and (y + a) % radix**2 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "154fec1b63e2b58eec57a3dbbd", | |
| "msg": [1, 24, 29, 29, 35], | |
| "ct": [0, 0, 10, 22, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 91, | |
| "comment": "y is maximal and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "154fec1b63e2b58eec57a3dbbd", | |
| "msg": [33, 23, 19, 24, 1], | |
| "ct": [20, 31, 9, 9, 23], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 92, | |
| "comment": "y is maximal and a is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "154fec1b63e2b58eec57a3dbbd", | |
| "msg": [26, 27, 24, 23, 25], | |
| "ct": [28, 14, 9, 26, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 93, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "6a75cbbe141e1370c51106bab1", | |
| "msg": [16, 10, 15, 24, 28], | |
| "ct": [21, 28, 14, 28, 25], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 94, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "6a75cbbe141e1370c51106bab1", | |
| "msg": [17, 14, 5, 12, 1], | |
| "ct": [35, 28, 25, 20, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 95, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**2 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "6a75cbbe141e1370c51106bab1", | |
| "msg": [7, 3, 4, 8, 9], | |
| "ct": [1, 32, 32, 35, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 96, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**2 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "6a75cbbe141e1370c51106bab1", | |
| "msg": [17, 35, 9, 24, 12], | |
| "ct": [5, 14, 0, 7, 28], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 97, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "6a75cbbe141e1370c51106bab1", | |
| "msg": [6, 32, 30, 20, 21], | |
| "ct": [5, 35, 3, 26, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 98, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "6a75cbbe141e1370c51106bab1", | |
| "msg": [20, 16, 15, 19, 13], | |
| "ct": [34, 31, 9, 17, 18], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 99, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**2 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "0af126bf4d4c0f7197bda1e0b9", | |
| "msg": [34, 22, 16, 24, 24], | |
| "ct": [0, 20, 7, 26, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 100, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**2 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "0af126bf4d4c0f7197bda1e0b9", | |
| "msg": [3, 19, 26, 28, 0], | |
| "ct": [28, 27, 35, 26, 27], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 101, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "0af126bf4d4c0f7197bda1e0b9", | |
| "msg": [29, 26, 32, 12, 6], | |
| "ct": [32, 27, 13, 22, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 102, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "0af126bf4d4c0f7197bda1e0b9", | |
| "msg": [23, 26, 26, 27, 27], | |
| "ct": [9, 11, 2, 15, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 103, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "8d8a7cd63e6554b77d0345f3d799bfad", | |
| "tweak": "ea7fef1b2f555ad8", | |
| "msg": [-1, 9, 2, 5, 31], | |
| "ct": [13, 26, 4, 12, 28], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 104, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "8d8a7cd63e6554b77d0345f3d799bfad", | |
| "tweak": "ea7fef1b2f555ad8", | |
| "msg": [4, -1, 2, 5, 31], | |
| "ct": [19, 26, 20, 25, 16], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 105, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "8d8a7cd63e6554b77d0345f3d799bfad", | |
| "tweak": "ea7fef1b2f555ad8", | |
| "msg": [4, 9, 2, 5, -1], | |
| "ct": [22, 8, 12, 19, 11], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 106, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "42ff3a98d403d630ad864a981427f22c", | |
| "tweak": "7aeba1747f15b51d", | |
| "msg": [36, 2, 12, 22, 8], | |
| "ct": [3, 20, 29, 9, 9], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 107, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "42ff3a98d403d630ad864a981427f22c", | |
| "tweak": "7aeba1747f15b51d", | |
| "msg": [9, 36, 12, 22, 8], | |
| "ct": [27, 35, 11, 21, 4], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 108, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "42ff3a98d403d630ad864a981427f22c", | |
| "tweak": "7aeba1747f15b51d", | |
| "msg": [9, 2, 12, 22, 36], | |
| "ct": [0, 24, 20, 28, 33], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 6, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 109, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "474bbf2aff5c252419c49a07d50e2bdf", | |
| "tweak": "d64296c362368a3d", | |
| "msg": [35, 20, 2, 19, 6, 25], | |
| "ct": [12, 7, 20, 19, 18, 28], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 110, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [0, 0, 0, 0, 0, 0], | |
| "ct": [14, 30, 21, 12, 13, 18], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 111, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [35, 35, 35, 35, 35, 35], | |
| "ct": [0, 30, 2, 6, 23, 21], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 112, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [25, 10, 8, 25, 10, 8], | |
| "ct": [14, 11, 7, 8, 7, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 113, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [25, 10, 7, 25, 10, 7], | |
| "ct": [28, 21, 3, 15, 4, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 114, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [10, 30, 22, 20, 8, 7], | |
| "ct": [6, 2, 22, 16, 12, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 115, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [33, 8, 7, 19, 8, 12], | |
| "ct": [6, 29, 35, 14, 31, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 116, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [16, 34, 29, 24, 2, 6], | |
| "ct": [5, 15, 33, 34, 27, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 117, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [12, 1, 30, 12, 22, 9], | |
| "ct": [31, 16, 26, 15, 7, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 118, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [15, 9, 8, 13, 1, 35], | |
| "ct": [6, 3, 13, 18, 8, 16], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 119, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [2, 30, 28, 27, 11, 22], | |
| "ct": [16, 12, 25, 4, 17, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 120, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [7, 4, 23, 35, 33, 13], | |
| "ct": [20, 14, 29, 0, 28, 21], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 121, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [2, 23, 10, 35, 32, 4], | |
| "ct": [12, 8, 21, 28, 15, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 122, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [5, 23, 2, 4, 2, 25], | |
| "ct": [0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 123, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [9, 11, 26, 2, 22, 32], | |
| "ct": [35, 35, 35, 35, 35, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 124, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [2, 20, 33, 33, 10, 15], | |
| "ct": [25, 10, 8, 25, 10, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 125, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [3, 33, 16, 31, 28, 35], | |
| "ct": [25, 10, 7, 25, 10, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 126, | |
| "comment": "y = 0 and (y + a) % radix**3 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "9a926408b47c9e0f84ba4a730d", | |
| "msg": [11, 27, 19, 0, 7, 9], | |
| "ct": [13, 11, 3, 8, 23, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 127, | |
| "comment": "y = 0 and a = 1 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "9a926408b47c9e0f84ba4a730d", | |
| "msg": [29, 7, 24, 8, 6, 24], | |
| "ct": [9, 24, 5, 0, 27, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 128, | |
| "comment": "y = 0 and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "9a926408b47c9e0f84ba4a730d", | |
| "msg": [30, 3, 15, 3, 21, 14], | |
| "ct": [26, 16, 30, 26, 14, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 129, | |
| "comment": "y = 0 and (y + a) % radix**3 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "9a926408b47c9e0f84ba4a730d", | |
| "msg": [24, 33, 0, 35, 19, 10], | |
| "ct": [24, 1, 21, 24, 5, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 130, | |
| "comment": "y = 1 and a = 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "e6a64877bd107f4c752d835e51", | |
| "msg": [8, 18, 5, 22, 14, 21], | |
| "ct": [35, 11, 28, 4, 16, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 131, | |
| "comment": "y = 1 and a = 1 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "e6a64877bd107f4c752d835e51", | |
| "msg": [5, 5, 32, 10, 23, 30], | |
| "ct": [10, 25, 6, 3, 24, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 132, | |
| "comment": "y = 1 and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "e6a64877bd107f4c752d835e51", | |
| "msg": [25, 18, 30, 11, 6, 11], | |
| "ct": [24, 13, 19, 24, 15, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 133, | |
| "comment": "y = 1 and (y + a) % radix**3 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "e6a64877bd107f4c752d835e51", | |
| "msg": [18, 9, 12, 10, 8, 12], | |
| "ct": [22, 16, 35, 11, 16, 19], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 134, | |
| "comment": "y = 1 and (y + a) % radix**3 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "e6a64877bd107f4c752d835e51", | |
| "msg": [20, 19, 34, 11, 10, 6], | |
| "ct": [1, 1, 5, 13, 27, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 135, | |
| "comment": "y is maximal and a = 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "de67f6b8a6b8ba49821cf21e64", | |
| "msg": [8, 0, 9, 33, 4, 22], | |
| "ct": [7, 21, 24, 15, 8, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 136, | |
| "comment": "y is maximal and a = 1 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "de67f6b8a6b8ba49821cf21e64", | |
| "msg": [19, 5, 19, 32, 28, 14], | |
| "ct": [22, 7, 0, 8, 21, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 137, | |
| "comment": "y is maximal and (y + a) % radix**3 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "de67f6b8a6b8ba49821cf21e64", | |
| "msg": [2, 20, 29, 30, 10, 12], | |
| "ct": [19, 33, 17, 13, 9, 28], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 138, | |
| "comment": "y is maximal and (y + a) % radix**3 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "de67f6b8a6b8ba49821cf21e64", | |
| "msg": [15, 28, 2, 9, 35, 12], | |
| "ct": [11, 21, 27, 24, 34, 30], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 139, | |
| "comment": "y is maximal and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "de67f6b8a6b8ba49821cf21e64", | |
| "msg": [33, 33, 3, 35, 27, 11], | |
| "ct": [29, 5, 13, 28, 29, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 140, | |
| "comment": "y is maximal and a is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "de67f6b8a6b8ba49821cf21e64", | |
| "msg": [12, 34, 23, 31, 0, 8], | |
| "ct": [8, 4, 27, 22, 20, 18], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 141, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "1c67474ff3103bef731692daf0", | |
| "msg": [22, 31, 22, 0, 0, 0], | |
| "ct": [10, 7, 11, 17, 28, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 142, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "1c67474ff3103bef731692daf0", | |
| "msg": [25, 2, 28, 0, 0, 1], | |
| "ct": [24, 9, 17, 27, 3, 22], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 143, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**3 is maximal in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "1c67474ff3103bef731692daf0", | |
| "msg": [30, 5, 25, 19, 7, 35], | |
| "ct": [22, 5, 26, 8, 28, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 144, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**3 == 0 in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "1c67474ff3103bef731692daf0", | |
| "msg": [35, 16, 24, 19, 8, 0], | |
| "ct": [4, 26, 14, 15, 27, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 145, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "1c67474ff3103bef731692daf0", | |
| "msg": [12, 35, 0, 25, 10, 8], | |
| "ct": [31, 5, 17, 23, 11, 31], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 146, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "1c67474ff3103bef731692daf0", | |
| "msg": [27, 25, 24, 35, 35, 35], | |
| "ct": [0, 32, 9, 16, 21, 29], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 147, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**3 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "02512638af6f478bfb6c1a3b81", | |
| "msg": [26, 31, 11, 16, 35, 16], | |
| "ct": [24, 31, 21, 7, 12, 32], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 148, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**3 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "02512638af6f478bfb6c1a3b81", | |
| "msg": [17, 32, 11, 30, 18, 19], | |
| "ct": [1, 3, 19, 33, 24, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 149, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "02512638af6f478bfb6c1a3b81", | |
| "msg": [29, 1, 20, 3, 3, 19], | |
| "ct": [22, 6, 1, 12, 19, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 150, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "02512638af6f478bfb6c1a3b81", | |
| "msg": [23, 24, 13, 19, 27, 22], | |
| "ct": [28, 18, 1, 2, 5, 24], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 151, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "ed4561abc903a9e722ddb8aa94cc662d", | |
| "tweak": "975f6d7701e004f7", | |
| "msg": [-1, 6, 8, 0, 27, 17], | |
| "ct": [5, 21, 5, 22, 24, 12], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 152, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "ed4561abc903a9e722ddb8aa94cc662d", | |
| "tweak": "975f6d7701e004f7", | |
| "msg": [24, 6, -1, 0, 27, 17], | |
| "ct": [30, 2, 11, 31, 5, 32], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 153, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "ed4561abc903a9e722ddb8aa94cc662d", | |
| "tweak": "975f6d7701e004f7", | |
| "msg": [24, 6, 8, 0, 27, -1], | |
| "ct": [1, 8, 11, 19, 26, 17], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 154, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "4226327d0d06ff764da4618e397557c1", | |
| "tweak": "5434c5046a2b6df6", | |
| "msg": [36, 32, 34, 27, 32, 5], | |
| "ct": [32, 26, 7, 6, 0, 7], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 155, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "4226327d0d06ff764da4618e397557c1", | |
| "tweak": "5434c5046a2b6df6", | |
| "msg": [25, 32, 36, 27, 32, 5], | |
| "ct": [11, 10, 29, 14, 33, 12], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 156, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "4226327d0d06ff764da4618e397557c1", | |
| "tweak": "5434c5046a2b6df6", | |
| "msg": [25, 32, 34, 27, 32, 36], | |
| "ct": [4, 23, 19, 19, 21, 33], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 7, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 157, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "20b2c30d44c72c32a4564541332f45c3", | |
| "tweak": "3de9de4b8736f463", | |
| "msg": [9, 15, 14, 22, 17, 28, 30], | |
| "ct": [13, 18, 22, 25, 17, 10, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 158, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [0, 0, 0, 0, 0, 0, 0], | |
| "ct": [8, 23, 20, 8, 13, 4, 25], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 159, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [35, 35, 35, 35, 35, 35, 35], | |
| "ct": [17, 25, 32, 32, 31, 2, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 160, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [25, 10, 8, 22, 17, 3, 4], | |
| "ct": [33, 34, 31, 2, 12, 34, 27], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 161, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [25, 10, 7, 22, 17, 3, 3], | |
| "ct": [23, 13, 4, 7, 8, 0, 25], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 162, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [1, 8, 32, 20, 33, 20, 1], | |
| "ct": [15, 32, 29, 29, 7, 4, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 163, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [11, 21, 9, 29, 25, 18, 1], | |
| "ct": [34, 31, 30, 7, 13, 35, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 164, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [30, 26, 16, 22, 17, 31, 11], | |
| "ct": [34, 23, 6, 9, 26, 5, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 165, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [29, 20, 19, 31, 3, 26, 0], | |
| "ct": [3, 4, 21, 4, 7, 7, 28], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 166, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [12, 33, 10, 30, 13, 22, 29], | |
| "ct": [1, 10, 11, 20, 32, 7, 24], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 167, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [12, 29, 0, 1, 25, 22, 12], | |
| "ct": [25, 29, 20, 30, 22, 10, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 168, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [2, 21, 22, 11, 2, 9, 7], | |
| "ct": [18, 6, 22, 13, 35, 0, 30], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 169, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [23, 25, 26, 27, 25, 11, 30], | |
| "ct": [11, 9, 0, 33, 13, 32, 31], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 170, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [20, 16, 28, 35, 8, 30, 28], | |
| "ct": [0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 171, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [20, 29, 24, 13, 6, 2, 20], | |
| "ct": [35, 35, 35, 35, 35, 35, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 172, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [32, 35, 13, 11, 2, 22, 18], | |
| "ct": [25, 10, 8, 22, 17, 3, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 173, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [9, 19, 12, 17, 4, 11, 7], | |
| "ct": [25, 10, 7, 22, 17, 3, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 174, | |
| "comment": "y = 0 and (y + a) % radix**3 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "eeeeb4e9d4b2bff6bff01649", | |
| "msg": [0, 0, 0, 34, 3, 12, 6], | |
| "ct": [4, 13, 0, 28, 9, 24, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 175, | |
| "comment": "y = 0 and a = 1 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "eeeeb4e9d4b2bff6bff01649", | |
| "msg": [0, 0, 1, 34, 3, 12, 6], | |
| "ct": [19, 15, 6, 18, 32, 18, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 176, | |
| "comment": "y = 0 and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "eeeeb4e9d4b2bff6bff01649", | |
| "msg": [25, 10, 8, 34, 3, 12, 6], | |
| "ct": [22, 12, 17, 16, 12, 15, 24], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 177, | |
| "comment": "y = 0 and (y + a) % radix**3 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "eeeeb4e9d4b2bff6bff01649", | |
| "msg": [35, 35, 35, 34, 3, 12, 6], | |
| "ct": [35, 14, 21, 17, 34, 7, 21], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 178, | |
| "comment": "y = 1 and a = 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "8bbd8abc5ac14642b3c3b971", | |
| "msg": [14, 22, 0, 12, 14, 2, 14], | |
| "ct": [23, 17, 29, 1, 32, 14, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 179, | |
| "comment": "y = 1 and a = 1 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "8bbd8abc5ac14642b3c3b971", | |
| "msg": [8, 13, 21, 26, 27, 34, 11], | |
| "ct": [23, 11, 6, 0, 20, 10, 27], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 180, | |
| "comment": "y = 1 and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "8bbd8abc5ac14642b3c3b971", | |
| "msg": [2, 9, 30, 26, 13, 10, 7], | |
| "ct": [17, 8, 31, 20, 7, 9, 25], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 181, | |
| "comment": "y = 1 and (y + a) % radix**3 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "8bbd8abc5ac14642b3c3b971", | |
| "msg": [19, 28, 32, 1, 25, 13, 5], | |
| "ct": [12, 4, 26, 24, 23, 31, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 182, | |
| "comment": "y = 1 and (y + a) % radix**3 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "8bbd8abc5ac14642b3c3b971", | |
| "msg": [34, 9, 12, 5, 35, 22, 15], | |
| "ct": [34, 31, 34, 32, 32, 2, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 183, | |
| "comment": "y is maximal and a = 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "c681513bc58486e398034a3b", | |
| "msg": [25, 30, 25, 16, 25, 2, 34], | |
| "ct": [24, 32, 23, 12, 28, 16, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 184, | |
| "comment": "y is maximal and a = 1 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "c681513bc58486e398034a3b", | |
| "msg": [34, 34, 13, 32, 15, 18, 26], | |
| "ct": [29, 13, 26, 22, 12, 30, 18], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 185, | |
| "comment": "y is maximal and (y + a) % radix**3 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "c681513bc58486e398034a3b", | |
| "msg": [1, 28, 14, 14, 25, 10, 33], | |
| "ct": [7, 20, 20, 16, 24, 9, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 186, | |
| "comment": "y is maximal and (y + a) % radix**3 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "c681513bc58486e398034a3b", | |
| "msg": [10, 30, 23, 24, 1, 31, 18], | |
| "ct": [28, 7, 26, 16, 24, 31, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 187, | |
| "comment": "y is maximal and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "c681513bc58486e398034a3b", | |
| "msg": [2, 18, 22, 5, 33, 10, 11], | |
| "ct": [4, 3, 21, 15, 10, 24, 32], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 188, | |
| "comment": "y is maximal and a is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "c681513bc58486e398034a3b", | |
| "msg": [30, 0, 13, 20, 29, 33, 4], | |
| "ct": [24, 4, 8, 5, 34, 13, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 189, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "289ba31442a25569221f5f44", | |
| "msg": [33, 20, 14, 29, 20, 9, 26], | |
| "ct": [9, 34, 34, 32, 27, 23, 22], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 190, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "289ba31442a25569221f5f44", | |
| "msg": [21, 4, 1, 22, 1, 1, 15], | |
| "ct": [2, 18, 23, 19, 6, 2, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 191, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**3 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "289ba31442a25569221f5f44", | |
| "msg": [29, 7, 16, 26, 35, 14, 18], | |
| "ct": [19, 12, 13, 1, 14, 4, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 192, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**3 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "289ba31442a25569221f5f44", | |
| "msg": [4, 20, 13, 26, 28, 13, 16], | |
| "ct": [5, 20, 13, 13, 11, 20, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 193, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "289ba31442a25569221f5f44", | |
| "msg": [33, 20, 10, 29, 35, 25, 15], | |
| "ct": [26, 13, 31, 23, 31, 16, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 194, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "289ba31442a25569221f5f44", | |
| "msg": [29, 15, 25, 0, 20, 5, 17], | |
| "ct": [13, 25, 24, 27, 35, 12, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 195, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**3 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "b128c67139dc42f6f4c505cf", | |
| "msg": [0, 0, 0, 26, 27, 6, 3], | |
| "ct": [15, 13, 31, 34, 14, 31, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 196, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**3 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "b128c67139dc42f6f4c505cf", | |
| "msg": [0, 0, 1, 26, 27, 6, 3], | |
| "ct": [21, 9, 27, 7, 0, 22, 19], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 197, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "b128c67139dc42f6f4c505cf", | |
| "msg": [25, 10, 8, 26, 27, 6, 3], | |
| "ct": [15, 27, 5, 4, 16, 23, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 198, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "b128c67139dc42f6f4c505cf", | |
| "msg": [35, 35, 35, 26, 27, 6, 3], | |
| "ct": [14, 1, 34, 11, 23, 11, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 199, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "ea35a8f24783be82abd93cc74e4944cb", | |
| "tweak": "a704f808982bb10f", | |
| "msg": [-1, 34, 29, 29, 17, 26, 0], | |
| "ct": [33, 5, 14, 22, 32, 11, 24], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 200, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "ea35a8f24783be82abd93cc74e4944cb", | |
| "tweak": "a704f808982bb10f", | |
| "msg": [34, 34, -1, 29, 17, 26, 0], | |
| "ct": [20, 29, 5, 15, 33, 21, 12], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 201, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "ea35a8f24783be82abd93cc74e4944cb", | |
| "tweak": "a704f808982bb10f", | |
| "msg": [34, 34, 29, 29, 17, 26, -1], | |
| "ct": [18, 35, 26, 4, 32, 5, 21], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 202, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "d539b0039d7b6a9509af6064ae8c86ae", | |
| "tweak": "0c2b1cf20d69abcb", | |
| "msg": [36, 6, 10, 9, 0, 11, 29], | |
| "ct": [15, 28, 7, 27, 31, 29, 16], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 203, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "d539b0039d7b6a9509af6064ae8c86ae", | |
| "tweak": "0c2b1cf20d69abcb", | |
| "msg": [21, 6, 36, 9, 0, 11, 29], | |
| "ct": [35, 11, 35, 22, 32, 30, 11], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 204, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "d539b0039d7b6a9509af6064ae8c86ae", | |
| "tweak": "0c2b1cf20d69abcb", | |
| "msg": [21, 6, 10, 9, 0, 11, 36], | |
| "ct": [27, 11, 4, 27, 34, 18, 8], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 8, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 205, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "60d83b209822c0d9b7033dca86444fa1", | |
| "tweak": "23ef05b155a108c4", | |
| "msg": [13, 10, 29, 25, 30, 22, 28, 11], | |
| "ct": [32, 11, 0, 30, 25, 26, 20, 21], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 206, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [21, 15, 17, 34, 11, 31, 26, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 207, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [35, 35, 35, 35, 35, 35, 35, 35], | |
| "ct": [22, 28, 31, 32, 8, 3, 29, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 208, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [22, 17, 3, 4, 22, 17, 3, 4], | |
| "ct": [3, 35, 22, 32, 6, 4, 33, 27], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 209, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [22, 17, 3, 3, 22, 17, 3, 3], | |
| "ct": [30, 14, 33, 16, 24, 13, 25, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 210, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [28, 11, 4, 1, 3, 18, 11, 16], | |
| "ct": [3, 7, 5, 28, 22, 24, 0, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 211, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [17, 10, 7, 12, 28, 7, 11, 8], | |
| "ct": [8, 26, 8, 18, 32, 29, 6, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 212, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [11, 24, 31, 2, 23, 13, 24, 12], | |
| "ct": [3, 10, 3, 30, 0, 21, 9, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 213, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [19, 23, 8, 28, 4, 0, 35, 0], | |
| "ct": [18, 11, 35, 6, 23, 15, 8, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 214, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [11, 22, 11, 32, 35, 8, 14, 25], | |
| "ct": [9, 7, 24, 2, 1, 18, 0, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 215, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [0, 19, 34, 29, 1, 32, 35, 22], | |
| "ct": [15, 27, 16, 0, 1, 32, 26, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 216, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [15, 19, 28, 5, 2, 32, 15, 3], | |
| "ct": [27, 34, 21, 28, 15, 9, 12, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 217, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [21, 34, 35, 29, 25, 21, 10, 4], | |
| "ct": [1, 29, 15, 25, 18, 14, 17, 18], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 218, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [9, 34, 9, 3, 11, 29, 13, 22], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 219, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [33, 31, 22, 10, 2, 10, 4, 21], | |
| "ct": [35, 35, 35, 35, 35, 35, 35, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 220, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [25, 16, 9, 4, 24, 9, 2, 23], | |
| "ct": [22, 17, 3, 4, 22, 17, 3, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 221, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [0, 5, 5, 26, 4, 5, 33, 16], | |
| "ct": [22, 17, 3, 3, 22, 17, 3, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 222, | |
| "comment": "y = 0 and (y + a) % radix**4 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "8fd06385cadc44a75211a8a6", | |
| "msg": [31, 3, 10, 35, 5, 20, 1, 5], | |
| "ct": [0, 0, 0, 0, 1, 27, 24, 26], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 223, | |
| "comment": "y = 0 and a = 1 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "8fd06385cadc44a75211a8a6", | |
| "msg": [9, 9, 22, 3, 6, 10, 34, 7], | |
| "ct": [0, 0, 0, 1, 21, 35, 20, 21], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 224, | |
| "comment": "y = 0 and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "8fd06385cadc44a75211a8a6", | |
| "msg": [28, 23, 33, 17, 20, 3, 18, 32], | |
| "ct": [22, 17, 3, 4, 27, 32, 6, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 225, | |
| "comment": "y = 0 and (y + a) % radix**4 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "8fd06385cadc44a75211a8a6", | |
| "msg": [10, 18, 34, 7, 15, 10, 1, 9], | |
| "ct": [35, 35, 35, 35, 4, 14, 13, 30], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 226, | |
| "comment": "y = 1 and a = 0 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "204c9d3684827b03b5187b04", | |
| "msg": [26, 22, 5, 23, 18, 27, 5, 30], | |
| "ct": [10, 10, 9, 18, 31, 2, 33, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 227, | |
| "comment": "y = 1 and a = 1 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "204c9d3684827b03b5187b04", | |
| "msg": [17, 14, 17, 27, 35, 32, 27, 17], | |
| "ct": [10, 22, 7, 15, 35, 25, 29, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 228, | |
| "comment": "y = 1 and a has large Hamming weight in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "204c9d3684827b03b5187b04", | |
| "msg": [24, 1, 21, 33, 17, 23, 15, 24], | |
| "ct": [31, 34, 14, 21, 13, 11, 35, 32], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 229, | |
| "comment": "y = 1 and (y + a) % radix**4 is maximal in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "204c9d3684827b03b5187b04", | |
| "msg": [3, 19, 12, 33, 15, 3, 30, 35], | |
| "ct": [19, 9, 33, 10, 6, 30, 4, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 230, | |
| "comment": "y = 1 and (y + a) % radix**4 == 0 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "204c9d3684827b03b5187b04", | |
| "msg": [14, 4, 11, 17, 13, 23, 7, 34], | |
| "ct": [4, 26, 8, 5, 5, 6, 14, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 231, | |
| "comment": "y is maximal and a = 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "1a284ea90e4659a2fdbc4fb1", | |
| "msg": [29, 35, 6, 12, 21, 12, 11, 17], | |
| "ct": [29, 21, 26, 11, 27, 26, 10, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 232, | |
| "comment": "y is maximal and a = 1 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "1a284ea90e4659a2fdbc4fb1", | |
| "msg": [12, 5, 1, 30, 21, 9, 31, 26], | |
| "ct": [26, 32, 19, 28, 34, 7, 1, 28], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 233, | |
| "comment": "y is maximal and (y + a) % radix**4 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "1a284ea90e4659a2fdbc4fb1", | |
| "msg": [26, 4, 22, 26, 21, 0, 17, 21], | |
| "ct": [11, 19, 5, 7, 5, 1, 8, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 234, | |
| "comment": "y is maximal and (y + a) % radix**4 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "1a284ea90e4659a2fdbc4fb1", | |
| "msg": [8, 15, 2, 18, 25, 0, 0, 5], | |
| "ct": [33, 24, 23, 9, 8, 20, 13, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 235, | |
| "comment": "y is maximal and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "1a284ea90e4659a2fdbc4fb1", | |
| "msg": [11, 18, 3, 6, 5, 34, 27, 24], | |
| "ct": [19, 17, 30, 2, 5, 3, 10, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 236, | |
| "comment": "y is maximal and a is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "1a284ea90e4659a2fdbc4fb1", | |
| "msg": [7, 33, 32, 34, 20, 13, 15, 23], | |
| "ct": [8, 7, 33, 15, 4, 29, 27, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 237, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "768d4cac6e183ca3989c5956", | |
| "msg": [1, 19, 22, 2, 28, 33, 19, 15], | |
| "ct": [28, 16, 28, 0, 6, 28, 2, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 238, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "768d4cac6e183ca3989c5956", | |
| "msg": [5, 3, 5, 35, 29, 12, 11, 26], | |
| "ct": [28, 16, 28, 1, 1, 0, 35, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 239, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**4 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "768d4cac6e183ca3989c5956", | |
| "msg": [29, 22, 35, 13, 4, 19, 8, 7], | |
| "ct": [35, 35, 35, 35, 0, 32, 2, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 240, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**4 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "768d4cac6e183ca3989c5956", | |
| "msg": [22, 6, 24, 0, 23, 13, 3, 15], | |
| "ct": [0, 0, 0, 0, 27, 20, 34, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 241, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "768d4cac6e183ca3989c5956", | |
| "msg": [2, 33, 34, 28, 26, 27, 20, 10], | |
| "ct": [14, 33, 31, 4, 26, 19, 14, 30], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 242, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "768d4cac6e183ca3989c5956", | |
| "msg": [26, 32, 17, 3, 2, 9, 13, 16], | |
| "ct": [28, 16, 27, 35, 19, 7, 15, 18], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 243, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**4 is maximal in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "c3271470e2d58abf460d1ba7", | |
| "msg": [10, 22, 32, 4, 23, 18, 33, 18], | |
| "ct": [26, 5, 23, 12, 26, 25, 3, 24], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 244, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**4 == 0 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "c3271470e2d58abf460d1ba7", | |
| "msg": [29, 3, 33, 0, 21, 16, 30, 6], | |
| "ct": [2, 21, 15, 14, 33, 11, 11, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 245, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "c3271470e2d58abf460d1ba7", | |
| "msg": [18, 25, 7, 7, 3, 31, 18, 3], | |
| "ct": [31, 11, 20, 7, 33, 30, 5, 34], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 246, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "c3271470e2d58abf460d1ba7", | |
| "msg": [30, 9, 23, 7, 2, 6, 27, 5], | |
| "ct": [30, 10, 16, 21, 19, 25, 20, 31], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 247, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "ebc261665fab01ae2bfe156e54de3006", | |
| "tweak": "5080dd547abdeddd", | |
| "msg": [-1, 17, 35, 10, 13, 35, 10, 21], | |
| "ct": [29, 2, 9, 25, 32, 3, 31, 2], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 248, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "ebc261665fab01ae2bfe156e54de3006", | |
| "tweak": "5080dd547abdeddd", | |
| "msg": [28, 17, -1, 10, 13, 35, 10, 21], | |
| "ct": [34, 1, 25, 25, 35, 2, 0, 17], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 249, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "ebc261665fab01ae2bfe156e54de3006", | |
| "tweak": "5080dd547abdeddd", | |
| "msg": [28, 17, 35, 10, 13, 35, 10, -1], | |
| "ct": [5, 13, 18, 27, 22, 0, 29, 27], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 250, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "a2ce6e7532d551c3d60da3b61b75dcee", | |
| "tweak": "d82feda10ba31deb", | |
| "msg": [36, 34, 19, 9, 26, 10, 25, 34], | |
| "ct": [7, 15, 30, 16, 4, 6, 22, 21], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 251, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "a2ce6e7532d551c3d60da3b61b75dcee", | |
| "tweak": "d82feda10ba31deb", | |
| "msg": [28, 34, 36, 9, 26, 10, 25, 34], | |
| "ct": [8, 0, 10, 19, 19, 3, 26, 27], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 252, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "a2ce6e7532d551c3d60da3b61b75dcee", | |
| "tweak": "d82feda10ba31deb", | |
| "msg": [28, 34, 19, 9, 26, 10, 25, 36], | |
| "ct": [3, 17, 24, 9, 2, 7, 22, 3], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 9, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 253, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "2215b9528000f5f306fcdfe2969c6785", | |
| "tweak": "0539d85c7b076285", | |
| "msg": [3, 9, 0, 30, 34, 20, 19, 23, 34], | |
| "ct": [21, 25, 0, 2, 14, 21, 31, 10, 34], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 254, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [6, 7, 21, 34, 16, 29, 3, 33, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 255, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "ct": [20, 23, 33, 27, 21, 12, 17, 16, 27], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 256, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [22, 17, 3, 4, 19, 35, 6, 27, 20], | |
| "ct": [17, 25, 31, 19, 5, 29, 1, 19, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 257, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [22, 17, 3, 3, 19, 35, 6, 27, 19], | |
| "ct": [24, 20, 29, 15, 31, 15, 5, 9, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 258, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [32, 8, 35, 11, 33, 11, 13, 17, 27], | |
| "ct": [27, 4, 30, 16, 5, 26, 13, 10, 24], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 259, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [23, 4, 0, 21, 15, 3, 28, 4, 31], | |
| "ct": [24, 18, 34, 4, 33, 0, 16, 6, 31], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 260, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [27, 17, 18, 6, 31, 25, 26, 8, 18], | |
| "ct": [27, 10, 12, 19, 22, 24, 25, 3, 23], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 261, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [28, 24, 20, 30, 35, 28, 32, 34, 28], | |
| "ct": [28, 9, 27, 33, 30, 17, 13, 35, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 262, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [20, 9, 27, 34, 2, 26, 17, 20, 15], | |
| "ct": [12, 7, 12, 15, 8, 21, 15, 22, 34], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 263, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [32, 14, 13, 14, 33, 27, 29, 8, 2], | |
| "ct": [23, 11, 28, 5, 35, 11, 5, 33, 24], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 264, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [26, 30, 25, 15, 7, 19, 13, 17, 15], | |
| "ct": [6, 20, 8, 27, 12, 8, 17, 18, 28], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 265, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [32, 1, 5, 0, 32, 23, 5, 34, 2], | |
| "ct": [28, 31, 5, 34, 12, 13, 4, 4, 22], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 266, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [1, 4, 15, 6, 15, 3, 34, 12, 31], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 267, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [13, 13, 2, 12, 5, 29, 26, 6, 33], | |
| "ct": [35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 268, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [14, 30, 26, 10, 0, 13, 11, 30, 2], | |
| "ct": [22, 17, 3, 4, 19, 35, 6, 27, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 269, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [31, 18, 26, 12, 12, 27, 22, 32, 22], | |
| "ct": [22, 17, 3, 3, 19, 35, 6, 27, 19], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 270, | |
| "comment": "y = 0 and (y + a) % radix**4 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "835365ed899e8c1e567347", | |
| "msg": [24, 6, 18, 29, 15, 9, 34, 5, 29], | |
| "ct": [0, 0, 0, 0, 35, 22, 11, 5, 22], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 271, | |
| "comment": "y = 0 and a = 1 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "835365ed899e8c1e567347", | |
| "msg": [9, 17, 28, 28, 14, 3, 27, 34, 32], | |
| "ct": [0, 0, 0, 1, 10, 31, 13, 22, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 272, | |
| "comment": "y = 0 and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "835365ed899e8c1e567347", | |
| "msg": [23, 22, 28, 30, 35, 24, 4, 6, 9], | |
| "ct": [22, 17, 3, 4, 6, 20, 11, 19, 25], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 273, | |
| "comment": "y = 0 and (y + a) % radix**4 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "835365ed899e8c1e567347", | |
| "msg": [17, 16, 28, 1, 34, 28, 32, 19, 5], | |
| "ct": [35, 35, 35, 35, 30, 17, 17, 28, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 274, | |
| "comment": "y = 1 and a = 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "b0e4dd7c0bc662380031f7", | |
| "msg": [0, 0, 0, 0, 31, 7, 5, 35, 0], | |
| "ct": [1, 6, 21, 31, 8, 13, 17, 8, 32], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 275, | |
| "comment": "y = 1 and a = 1 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "b0e4dd7c0bc662380031f7", | |
| "msg": [0, 0, 0, 1, 31, 7, 5, 35, 0], | |
| "ct": [5, 11, 21, 18, 10, 7, 4, 6, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 276, | |
| "comment": "y = 1 and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "b0e4dd7c0bc662380031f7", | |
| "msg": [22, 17, 3, 4, 31, 7, 5, 35, 0], | |
| "ct": [8, 19, 14, 8, 22, 10, 25, 12, 19], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 277, | |
| "comment": "y = 1 and (y + a) % radix**4 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "b0e4dd7c0bc662380031f7", | |
| "msg": [35, 35, 35, 34, 31, 7, 5, 35, 0], | |
| "ct": [13, 22, 16, 8, 2, 7, 28, 4, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 278, | |
| "comment": "y = 1 and (y + a) % radix**4 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "b0e4dd7c0bc662380031f7", | |
| "msg": [35, 35, 35, 35, 31, 7, 5, 35, 0], | |
| "ct": [32, 3, 18, 25, 34, 13, 7, 18, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 279, | |
| "comment": "y is maximal and a = 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "ff298c95a0d93e8179f5f9", | |
| "msg": [0, 33, 22, 35, 0, 0, 5, 11, 27], | |
| "ct": [25, 3, 15, 4, 29, 15, 7, 1, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 280, | |
| "comment": "y is maximal and a = 1 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "ff298c95a0d93e8179f5f9", | |
| "msg": [9, 25, 14, 21, 23, 28, 2, 14, 35], | |
| "ct": [10, 25, 16, 0, 5, 23, 35, 7, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 281, | |
| "comment": "y is maximal and (y + a) % radix**4 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "ff298c95a0d93e8179f5f9", | |
| "msg": [24, 9, 10, 19, 14, 9, 18, 30, 4], | |
| "ct": [15, 25, 2, 34, 8, 10, 33, 9, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 282, | |
| "comment": "y is maximal and (y + a) % radix**4 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "ff298c95a0d93e8179f5f9", | |
| "msg": [19, 35, 1, 26, 32, 2, 20, 13, 11], | |
| "ct": [29, 16, 7, 18, 31, 12, 3, 12, 22], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 283, | |
| "comment": "y is maximal and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "ff298c95a0d93e8179f5f9", | |
| "msg": [2, 23, 3, 14, 35, 11, 28, 6, 16], | |
| "ct": [19, 6, 13, 19, 3, 15, 25, 23, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 284, | |
| "comment": "y is maximal and a is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "ff298c95a0d93e8179f5f9", | |
| "msg": [18, 3, 22, 5, 18, 24, 20, 12, 12], | |
| "ct": [5, 0, 25, 16, 18, 3, 21, 8, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 285, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "7fd4e71784e95a3dd0b41315a67131d2", | |
| "tweak": "47d48ea4716ab8df", | |
| "msg": [-1, 3, 29, 2, 19, 23, 11, 29, 21], | |
| "ct": [32, 30, 22, 33, 0, 18, 24, 8, 31], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 286, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "7fd4e71784e95a3dd0b41315a67131d2", | |
| "tweak": "47d48ea4716ab8df", | |
| "msg": [34, 3, 29, -1, 19, 23, 11, 29, 21], | |
| "ct": [15, 29, 25, 24, 25, 6, 30, 21, 8], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 287, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "7fd4e71784e95a3dd0b41315a67131d2", | |
| "tweak": "47d48ea4716ab8df", | |
| "msg": [34, 3, 29, 2, 19, 23, 11, 29, -1], | |
| "ct": [19, 3, 21, 24, 12, 21, 32, 29, 15], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 288, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "f6193549ff5f8dc153f1e690b72f5729", | |
| "tweak": "98ce552e1af03e7e", | |
| "msg": [36, 34, 29, 21, 28, 21, 0, 33, 2], | |
| "ct": [11, 11, 16, 28, 3, 17, 30, 25, 14], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 289, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "f6193549ff5f8dc153f1e690b72f5729", | |
| "tweak": "98ce552e1af03e7e", | |
| "msg": [31, 34, 29, 36, 28, 21, 0, 33, 2], | |
| "ct": [3, 2, 35, 23, 8, 26, 17, 16, 23], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 290, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "f6193549ff5f8dc153f1e690b72f5729", | |
| "tweak": "98ce552e1af03e7e", | |
| "msg": [31, 34, 29, 21, 28, 21, 0, 33, 36], | |
| "ct": [18, 14, 0, 25, 32, 22, 15, 9, 23], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 10, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 291, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "5474525ca99fb5da2babdbd45c727d16", | |
| "tweak": "f2cb4d9ba04b81f8", | |
| "msg": [33, 20, 24, 8, 24, 29, 4, 12, 14, 34], | |
| "ct": [30, 2, 24, 19, 25, 26, 14, 22, 11, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 292, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [24, 9, 33, 0, 8, 3, 32, 6, 30, 31], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 293, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [35, 35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "ct": [11, 0, 23, 16, 24, 20, 25, 3, 13, 19], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 294, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [19, 35, 6, 27, 20, 19, 35, 6, 27, 20], | |
| "ct": [34, 25, 25, 7, 14, 32, 23, 23, 34, 21], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 295, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [19, 35, 6, 27, 19, 19, 35, 6, 27, 19], | |
| "ct": [29, 29, 26, 30, 33, 1, 31, 3, 3, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 296, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [21, 15, 4, 17, 18, 16, 7, 31, 15, 1], | |
| "ct": [15, 8, 18, 1, 25, 1, 30, 28, 0, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 297, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [14, 34, 1, 30, 2, 24, 11, 20, 8, 34], | |
| "ct": [9, 28, 10, 22, 8, 1, 0, 34, 32, 18], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 298, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [14, 31, 0, 1, 31, 26, 1, 12, 28, 14], | |
| "ct": [31, 1, 26, 22, 15, 16, 20, 23, 10, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 299, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [9, 26, 6, 13, 18, 35, 33, 17, 6, 19], | |
| "ct": [28, 19, 14, 34, 16, 17, 27, 12, 12, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 300, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [3, 10, 10, 14, 3, 1, 35, 9, 35, 13], | |
| "ct": [14, 7, 15, 19, 6, 25, 15, 10, 15, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 301, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [25, 6, 16, 1, 2, 33, 9, 10, 26, 15], | |
| "ct": [28, 34, 19, 17, 3, 25, 14, 18, 3, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 302, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [33, 2, 11, 35, 32, 15, 13, 29, 4, 33], | |
| "ct": [27, 19, 3, 25, 7, 32, 14, 25, 18, 26], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 303, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [4, 3, 14, 2, 23, 26, 7, 22, 4, 34], | |
| "ct": [2, 4, 27, 8, 25, 16, 10, 22, 33, 28], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 304, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [18, 17, 32, 17, 23, 9, 21, 12, 0, 17], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 305, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [24, 5, 7, 11, 14, 0, 14, 30, 8, 20], | |
| "ct": [35, 35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 306, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [12, 6, 16, 26, 18, 21, 35, 2, 20, 35], | |
| "ct": [19, 35, 6, 27, 20, 19, 35, 6, 27, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 307, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [13, 1, 20, 35, 14, 7, 13, 7, 26, 25], | |
| "ct": [19, 35, 6, 27, 19, 19, 35, 6, 27, 19], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 308, | |
| "comment": "y = 0 and (y + a) % radix**5 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "9d2810560f2ae9ac2b8b15", | |
| "msg": [29, 24, 32, 27, 33, 20, 22, 33, 31, 2], | |
| "ct": [7, 22, 24, 28, 19, 32, 11, 12, 21, 22], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 309, | |
| "comment": "y = 0 and a = 1 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "9d2810560f2ae9ac2b8b15", | |
| "msg": [18, 3, 5, 25, 13, 19, 28, 16, 6, 18], | |
| "ct": [7, 14, 30, 30, 34, 32, 21, 29, 11, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 310, | |
| "comment": "y = 0 and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "9d2810560f2ae9ac2b8b15", | |
| "msg": [14, 0, 19, 31, 19, 31, 34, 24, 12, 11], | |
| "ct": [30, 30, 4, 35, 35, 27, 4, 29, 19, 32], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 311, | |
| "comment": "y = 0 and (y + a) % radix**5 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "9d2810560f2ae9ac2b8b15", | |
| "msg": [35, 23, 22, 10, 34, 4, 25, 30, 11, 30], | |
| "ct": [31, 28, 20, 15, 14, 0, 0, 0, 9, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 312, | |
| "comment": "y = 1 and a = 0 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "3d9ab5277e363c823cefe0", | |
| "msg": [31, 5, 31, 7, 11, 29, 16, 9, 8, 11], | |
| "ct": [9, 23, 35, 16, 16, 33, 23, 16, 28, 23], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 313, | |
| "comment": "y = 1 and a = 1 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "3d9ab5277e363c823cefe0", | |
| "msg": [32, 7, 5, 11, 3, 8, 6, 20, 23, 17], | |
| "ct": [34, 32, 25, 14, 27, 6, 13, 35, 27, 30], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 314, | |
| "comment": "y = 1 and a has large Hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "3d9ab5277e363c823cefe0", | |
| "msg": [7, 12, 20, 13, 32, 13, 22, 28, 18, 29], | |
| "ct": [35, 19, 26, 10, 11, 25, 2, 0, 31, 34], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 315, | |
| "comment": "y = 1 and (y + a) % radix**5 is maximal in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "3d9ab5277e363c823cefe0", | |
| "msg": [25, 9, 26, 5, 17, 3, 29, 24, 1, 7], | |
| "ct": [16, 28, 25, 5, 21, 5, 30, 2, 5, 16], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 316, | |
| "comment": "y = 1 and (y + a) % radix**5 == 0 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "3d9ab5277e363c823cefe0", | |
| "msg": [6, 30, 9, 34, 0, 35, 7, 24, 30, 35], | |
| "ct": [26, 15, 15, 2, 17, 19, 34, 32, 23, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 317, | |
| "comment": "y is maximal and a = 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "012b51109023ef04c4bb98", | |
| "msg": [24, 5, 30, 13, 7, 24, 34, 19, 28, 28], | |
| "ct": [26, 17, 32, 19, 6, 21, 24, 28, 24, 27], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 318, | |
| "comment": "y is maximal and a = 1 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "012b51109023ef04c4bb98", | |
| "msg": [27, 9, 10, 12, 12, 10, 20, 33, 26, 29], | |
| "ct": [34, 31, 15, 3, 31, 9, 5, 28, 31, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 319, | |
| "comment": "y is maximal and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "012b51109023ef04c4bb98", | |
| "msg": [17, 4, 11, 22, 32, 6, 28, 19, 8, 15], | |
| "ct": [35, 25, 17, 20, 8, 29, 10, 26, 17, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 320, | |
| "comment": "y is maximal and (y + a) % radix**5 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "012b51109023ef04c4bb98", | |
| "msg": [35, 26, 28, 33, 32, 31, 28, 1, 18, 6], | |
| "ct": [12, 6, 6, 9, 10, 10, 10, 18, 22, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 321, | |
| "comment": "y is maximal and (y + a) % radix**5 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "012b51109023ef04c4bb98", | |
| "msg": [5, 18, 20, 2, 6, 20, 14, 25, 15, 30], | |
| "ct": [18, 32, 33, 11, 4, 1, 35, 21, 17, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 322, | |
| "comment": "y is maximal and a is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "012b51109023ef04c4bb98", | |
| "msg": [22, 26, 17, 33, 13, 29, 14, 0, 6, 9], | |
| "ct": [20, 28, 14, 24, 13, 5, 16, 3, 18, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 323, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "1d5751e5d5ddae311d38cb", | |
| "msg": [33, 27, 9, 26, 23, 0, 31, 35, 29, 25], | |
| "ct": [5, 18, 33, 14, 34, 1, 17, 35, 4, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 324, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "1d5751e5d5ddae311d38cb", | |
| "msg": [31, 13, 4, 15, 2, 28, 19, 1, 8, 8], | |
| "ct": [5, 24, 20, 4, 30, 29, 29, 21, 19, 21], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 325, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "1d5751e5d5ddae311d38cb", | |
| "msg": [15, 2, 10, 3, 14, 27, 18, 9, 12, 0], | |
| "ct": [26, 13, 32, 5, 25, 3, 10, 26, 0, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 326, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**5 is maximal in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "1d5751e5d5ddae311d38cb", | |
| "msg": [6, 17, 8, 17, 8, 25, 10, 6, 5, 14], | |
| "ct": [6, 26, 5, 33, 5, 14, 19, 11, 5, 30], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 327, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**5 == 0 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "1d5751e5d5ddae311d38cb", | |
| "msg": [9, 34, 29, 8, 29, 29, 21, 20, 29, 7], | |
| "ct": [8, 18, 29, 35, 31, 7, 27, 16, 30, 16], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 328, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "1d5751e5d5ddae311d38cb", | |
| "msg": [14, 14, 16, 4, 1, 29, 13, 21, 2, 4], | |
| "ct": [26, 20, 27, 13, 21, 28, 18, 3, 8, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 329, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "c2153daac19904cf16ea81dbc73a58dc", | |
| "tweak": "38b7196a238d3892", | |
| "msg": [-1, 18, 1, 5, 35, 9, 23, 7, 19, 32], | |
| "ct": [9, 18, 25, 7, 12, 32, 12, 30, 27, 31], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 330, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "c2153daac19904cf16ea81dbc73a58dc", | |
| "tweak": "38b7196a238d3892", | |
| "msg": [11, 18, 1, -1, 35, 9, 23, 7, 19, 32], | |
| "ct": [6, 2, 23, 26, 17, 33, 12, 7, 20, 20], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 331, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "c2153daac19904cf16ea81dbc73a58dc", | |
| "tweak": "38b7196a238d3892", | |
| "msg": [11, 18, 1, 5, 35, 9, 23, 7, 19, -1], | |
| "ct": [10, 4, 7, 26, 18, 19, 22, 15, 23, 32], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 332, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "92588e3212dcfa210a921ba834aa4107", | |
| "tweak": "2ab661c6a3a65f05", | |
| "msg": [36, 9, 14, 32, 11, 16, 29, 32, 33, 6], | |
| "ct": [22, 5, 9, 13, 8, 22, 33, 0, 7, 33], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 333, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "92588e3212dcfa210a921ba834aa4107", | |
| "tweak": "2ab661c6a3a65f05", | |
| "msg": [24, 9, 14, 36, 11, 16, 29, 32, 33, 6], | |
| "ct": [25, 2, 10, 11, 19, 17, 12, 34, 11, 8], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 334, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "92588e3212dcfa210a921ba834aa4107", | |
| "tweak": "2ab661c6a3a65f05", | |
| "msg": [24, 9, 14, 32, 11, 16, 29, 32, 33, 36], | |
| "ct": [23, 18, 13, 33, 0, 24, 24, 11, 8, 32], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 11, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 335, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "63396f38c44f0c2d97468c4804b5d022", | |
| "tweak": "73068af95fd924fc", | |
| "msg": [26, 31, 2, 27, 23, 31, 28, 22, 22, 29, 22], | |
| "ct": [18, 20, 11, 14, 18, 10, 29, 12, 10, 10, 18], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 336, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [1, 3, 22, 13, 22, 25, 30, 16, 30, 8, 22], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 337, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "ct": [12, 23, 12, 26, 33, 10, 6, 25, 8, 3, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 338, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [19, 35, 6, 27, 20, 35, 18, 20, 0, 35, 20], | |
| "ct": [35, 12, 35, 23, 19, 7, 31, 28, 22, 2, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 339, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [19, 35, 6, 27, 19, 35, 18, 20, 0, 35, 19], | |
| "ct": [4, 17, 20, 26, 17, 3, 21, 18, 26, 5, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 340, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [26, 16, 23, 6, 3, 31, 13, 30, 32, 0, 16], | |
| "ct": [8, 8, 7, 24, 28, 28, 35, 6, 23, 5, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 341, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [19, 5, 35, 15, 24, 30, 1, 15, 28, 0, 13], | |
| "ct": [33, 28, 27, 12, 15, 0, 12, 15, 30, 1, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 342, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [28, 19, 16, 10, 29, 32, 35, 11, 32, 0, 24], | |
| "ct": [30, 7, 17, 9, 16, 20, 3, 1, 24, 20, 23], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 343, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [0, 7, 0, 24, 34, 16, 16, 4, 10, 22, 30], | |
| "ct": [25, 14, 32, 21, 19, 35, 1, 7, 3, 16, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 344, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [2, 7, 4, 28, 11, 20, 24, 24, 29, 25, 34], | |
| "ct": [26, 4, 32, 18, 17, 21, 33, 16, 28, 6, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 345, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [26, 34, 10, 30, 31, 34, 24, 19, 28, 8, 31], | |
| "ct": [21, 16, 21, 21, 13, 11, 29, 24, 3, 19, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 346, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [9, 16, 6, 22, 27, 3, 28, 18, 1, 26, 23], | |
| "ct": [5, 20, 24, 5, 9, 11, 5, 12, 32, 11, 30], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 347, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [24, 2, 20, 3, 21, 7, 4, 3, 29, 19, 13], | |
| "ct": [14, 12, 10, 21, 25, 7, 2, 27, 19, 9, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 348, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [3, 7, 15, 13, 34, 1, 23, 29, 35, 30, 8], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 349, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [1, 5, 9, 3, 9, 31, 34, 16, 18, 29, 19], | |
| "ct": [35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 350, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [16, 22, 14, 26, 26, 1, 1, 27, 20, 7, 17], | |
| "ct": [19, 35, 6, 27, 20, 35, 18, 20, 0, 35, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 351, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [30, 32, 7, 0, 23, 9, 14, 17, 3, 13, 23], | |
| "ct": [19, 35, 6, 27, 19, 35, 18, 20, 0, 35, 19], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 352, | |
| "comment": "y = 0 and (y + a) % radix**5 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "eaad425feb44d8b2ed2015", | |
| "msg": [2, 23, 12, 21, 23, 13, 22, 30, 25, 18, 24], | |
| "ct": [6, 14, 33, 33, 5, 33, 35, 28, 11, 3, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 353, | |
| "comment": "y = 0 and a = 1 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "eaad425feb44d8b2ed2015", | |
| "msg": [19, 8, 19, 12, 9, 34, 16, 16, 33, 4, 1], | |
| "ct": [24, 27, 12, 16, 28, 11, 17, 0, 14, 20, 25], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 354, | |
| "comment": "y = 0 and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "eaad425feb44d8b2ed2015", | |
| "msg": [3, 28, 22, 31, 26, 30, 24, 10, 3, 1, 1], | |
| "ct": [25, 15, 3, 27, 16, 26, 32, 8, 15, 6, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 355, | |
| "comment": "y = 0 and (y + a) % radix**5 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "eaad425feb44d8b2ed2015", | |
| "msg": [4, 9, 15, 28, 12, 27, 35, 2, 18, 26, 24], | |
| "ct": [2, 7, 10, 1, 30, 6, 25, 18, 10, 9, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 356, | |
| "comment": "y = 1 and a = 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "46107ef6e7ca0ce2c63619", | |
| "msg": [24, 29, 5, 28, 27, 19, 20, 16, 30, 0, 12], | |
| "ct": [5, 13, 25, 27, 15, 25, 21, 1, 11, 7, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 357, | |
| "comment": "y = 1 and a = 1 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "46107ef6e7ca0ce2c63619", | |
| "msg": [6, 31, 22, 28, 4, 7, 29, 10, 35, 12, 17], | |
| "ct": [29, 33, 13, 32, 17, 12, 31, 30, 26, 35, 18], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 358, | |
| "comment": "y = 1 and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "46107ef6e7ca0ce2c63619", | |
| "msg": [33, 18, 25, 9, 18, 32, 35, 18, 30, 26, 26], | |
| "ct": [22, 3, 10, 25, 6, 14, 4, 21, 4, 8, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 359, | |
| "comment": "y = 1 and (y + a) % radix**5 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "46107ef6e7ca0ce2c63619", | |
| "msg": [7, 17, 3, 3, 33, 35, 15, 13, 26, 26, 7], | |
| "ct": [18, 25, 32, 33, 2, 0, 8, 35, 30, 19, 30], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 360, | |
| "comment": "y = 1 and (y + a) % radix**5 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "46107ef6e7ca0ce2c63619", | |
| "msg": [27, 33, 9, 29, 8, 14, 34, 14, 21, 1, 21], | |
| "ct": [10, 14, 24, 23, 29, 22, 9, 21, 22, 6, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 361, | |
| "comment": "y is maximal and a = 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "235ef6558682b0a4ea80a1", | |
| "msg": [2, 6, 3, 15, 31, 20, 35, 24, 16, 8, 12], | |
| "ct": [17, 35, 35, 35, 1, 1, 18, 4, 33, 1, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 362, | |
| "comment": "y is maximal and a = 1 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "235ef6558682b0a4ea80a1", | |
| "msg": [23, 17, 1, 2, 20, 1, 20, 31, 24, 33, 9], | |
| "ct": [27, 24, 13, 3, 2, 19, 18, 18, 9, 24, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 363, | |
| "comment": "y is maximal and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "235ef6558682b0a4ea80a1", | |
| "msg": [4, 12, 20, 16, 21, 33, 31, 12, 1, 3, 16], | |
| "ct": [16, 10, 29, 30, 19, 14, 4, 6, 5, 29, 32], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 364, | |
| "comment": "y is maximal and (y + a) % radix**5 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "235ef6558682b0a4ea80a1", | |
| "msg": [34, 15, 18, 10, 27, 16, 26, 3, 20, 9, 35], | |
| "ct": [0, 14, 4, 25, 4, 3, 7, 10, 34, 32, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 365, | |
| "comment": "y is maximal and (y + a) % radix**5 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "235ef6558682b0a4ea80a1", | |
| "msg": [6, 6, 23, 2, 26, 31, 10, 31, 35, 30, 1], | |
| "ct": [26, 25, 8, 2, 28, 27, 24, 22, 12, 19, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 366, | |
| "comment": "y is maximal and a is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "235ef6558682b0a4ea80a1", | |
| "msg": [10, 13, 3, 19, 9, 22, 1, 13, 9, 13, 22], | |
| "ct": [12, 5, 5, 15, 12, 23, 2, 17, 11, 20, 19], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 367, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "97d64ae9c17bc99a7cd54d", | |
| "msg": [11, 30, 19, 11, 5, 27, 29, 18, 8, 22, 22], | |
| "ct": [19, 19, 2, 35, 29, 31, 26, 27, 9, 17, 28], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 368, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "97d64ae9c17bc99a7cd54d", | |
| "msg": [24, 17, 32, 0, 9, 35, 22, 12, 16, 8, 24], | |
| "ct": [34, 8, 20, 16, 27, 16, 10, 1, 31, 28, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 369, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "97d64ae9c17bc99a7cd54d", | |
| "msg": [28, 23, 2, 20, 25, 17, 1, 32, 16, 31, 8], | |
| "ct": [2, 25, 21, 22, 11, 12, 7, 11, 8, 12, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 370, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**5 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "97d64ae9c17bc99a7cd54d", | |
| "msg": [15, 0, 20, 30, 5, 12, 22, 4, 23, 0, 4], | |
| "ct": [12, 20, 28, 25, 7, 5, 27, 15, 28, 6, 19], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 371, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**5 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "97d64ae9c17bc99a7cd54d", | |
| "msg": [18, 12, 6, 27, 29, 5, 21, 25, 18, 2, 5], | |
| "ct": [28, 33, 13, 5, 6, 16, 6, 10, 10, 8, 28], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 372, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "97d64ae9c17bc99a7cd54d", | |
| "msg": [21, 24, 30, 23, 19, 14, 0, 18, 35, 29, 11], | |
| "ct": [13, 22, 10, 2, 19, 19, 24, 18, 10, 27, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 373, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**5 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "84a68a678310c966918df9", | |
| "msg": [20, 32, 13, 4, 20, 26, 31, 10, 4, 31, 13], | |
| "ct": [24, 15, 8, 10, 9, 18, 34, 7, 10, 0, 28], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 374, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**5 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "84a68a678310c966918df9", | |
| "msg": [22, 25, 28, 24, 11, 13, 28, 8, 15, 23, 29], | |
| "ct": [19, 7, 13, 34, 25, 10, 4, 20, 30, 10, 21], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 375, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "84a68a678310c966918df9", | |
| "msg": [26, 1, 14, 21, 12, 2, 3, 30, 12, 13, 31], | |
| "ct": [19, 21, 7, 10, 17, 4, 25, 35, 28, 16, 25], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 376, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "84a68a678310c966918df9", | |
| "msg": [19, 22, 2, 13, 33, 28, 2, 12, 7, 35, 26], | |
| "ct": [24, 2, 10, 19, 16, 5, 29, 13, 6, 34, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 377, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "0b55b77a1d06778b795b541037eabb26", | |
| "tweak": "3e26f18ba99add01", | |
| "msg": [-1, 6, 32, 13, 16, 10, 9, 32, 21, 0, 15], | |
| "ct": [31, 5, 25, 3, 28, 32, 23, 26, 29, 5, 7], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 378, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "0b55b77a1d06778b795b541037eabb26", | |
| "tweak": "3e26f18ba99add01", | |
| "msg": [10, 6, 32, -1, 16, 10, 9, 32, 21, 0, 15], | |
| "ct": [33, 4, 4, 20, 29, 6, 20, 22, 1, 8, 14], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 379, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "0b55b77a1d06778b795b541037eabb26", | |
| "tweak": "3e26f18ba99add01", | |
| "msg": [10, 6, 32, 13, 16, 10, 9, 32, 21, 0, -1], | |
| "ct": [21, 7, 13, 1, 11, 17, 4, 5, 0, 1, 19], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 380, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "8558491a4239473db89450f2bacde423", | |
| "tweak": "55b8f00f031c9be0", | |
| "msg": [36, 21, 19, 13, 32, 29, 27, 6, 22, 4, 20], | |
| "ct": [8, 13, 10, 26, 20, 22, 21, 34, 29, 6, 35], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 381, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "8558491a4239473db89450f2bacde423", | |
| "tweak": "55b8f00f031c9be0", | |
| "msg": [28, 21, 19, 36, 32, 29, 27, 6, 22, 4, 20], | |
| "ct": [22, 1, 16, 18, 14, 15, 5, 8, 25, 28, 3], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 382, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "8558491a4239473db89450f2bacde423", | |
| "tweak": "55b8f00f031c9be0", | |
| "msg": [28, 21, 19, 13, 32, 29, 27, 6, 22, 4, 36], | |
| "ct": [11, 1, 10, 23, 26, 23, 3, 29, 18, 26, 10], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 12, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 383, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "ddc31fc7751a2bf5c8d2d815035622e8", | |
| "tweak": "0e10628c19795c4e", | |
| "msg": [11, 9, 35, 21, 11, 9, 34, 10, 11, 7, 4, 15], | |
| "ct": [33, 12, 10, 13, 6, 0, 32, 22, 7, 34, 19, 24], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 384, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [15, 17, 4, 33, 2, 26, 0, 26, 34, 18, 6, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 385, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "ct": [11, 22, 22, 34, 35, 29, 19, 7, 29, 30, 35, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 386, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [35, 18, 20, 0, 35, 20, 35, 18, 20, 0, 35, 20], | |
| "ct": [9, 22, 17, 20, 12, 16, 13, 30, 20, 11, 25, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 387, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [35, 18, 20, 0, 35, 19, 35, 18, 20, 0, 35, 19], | |
| "ct": [26, 2, 4, 8, 0, 22, 10, 31, 7, 35, 22, 25], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 388, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [23, 9, 29, 0, 1, 21, 9, 26, 13, 9, 18, 5], | |
| "ct": [14, 19, 35, 28, 29, 28, 6, 7, 9, 9, 14, 28], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 389, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [6, 25, 13, 16, 26, 9, 13, 0, 24, 30, 27, 24], | |
| "ct": [20, 4, 31, 27, 28, 20, 14, 35, 29, 20, 7, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 390, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [2, 5, 4, 27, 29, 10, 35, 23, 15, 10, 31, 11], | |
| "ct": [4, 12, 24, 35, 18, 0, 9, 30, 29, 26, 31, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 391, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [23, 9, 11, 20, 27, 19, 27, 17, 31, 9, 6, 28], | |
| "ct": [35, 23, 6, 22, 13, 30, 8, 16, 4, 31, 15, 21], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 392, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [23, 24, 34, 28, 23, 18, 26, 31, 34, 24, 18, 21], | |
| "ct": [5, 7, 26, 8, 28, 24, 21, 24, 33, 31, 20, 25], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 393, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [6, 8, 5, 25, 6, 11, 27, 20, 3, 31, 17, 4], | |
| "ct": [18, 12, 0, 2, 30, 26, 8, 2, 7, 32, 29, 26], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 394, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [21, 6, 26, 30, 2, 13, 3, 26, 3, 4, 1, 11], | |
| "ct": [3, 32, 12, 0, 9, 13, 27, 16, 26, 35, 7, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 395, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [26, 31, 27, 10, 6, 21, 34, 20, 31, 2, 32, 2], | |
| "ct": [8, 33, 18, 26, 8, 16, 3, 25, 26, 26, 27, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 396, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [17, 23, 14, 26, 2, 2, 32, 34, 12, 20, 32, 18], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 397, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [14, 5, 33, 4, 10, 21, 10, 1, 35, 3, 25, 21], | |
| "ct": [35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 398, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [19, 4, 15, 28, 9, 32, 22, 30, 28, 19, 11, 27], | |
| "ct": [35, 18, 20, 0, 35, 20, 35, 18, 20, 0, 35, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 399, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [29, 20, 6, 15, 8, 16, 14, 25, 3, 27, 25, 6], | |
| "ct": [35, 18, 20, 0, 35, 19, 35, 18, 20, 0, 35, 19], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 400, | |
| "comment": "y = 0 and (y + a) % radix**6 == 0 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "abe2ef6e757bd094c92f70", | |
| "msg": [31, 19, 2, 28, 9, 16, 1, 22, 13, 34, 22, 6], | |
| "ct": [2, 2, 32, 29, 12, 9, 7, 9, 20, 25, 30, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 401, | |
| "comment": "y = 0 and a = 1 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "abe2ef6e757bd094c92f70", | |
| "msg": [8, 11, 21, 16, 33, 11, 9, 25, 23, 22, 28, 18], | |
| "ct": [30, 11, 9, 23, 30, 33, 32, 9, 18, 24, 1, 30], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 402, | |
| "comment": "y = 0 and a has large Hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "abe2ef6e757bd094c92f70", | |
| "msg": [31, 11, 4, 23, 21, 33, 12, 29, 17, 29, 10, 4], | |
| "ct": [28, 21, 26, 2, 20, 26, 15, 24, 11, 30, 7, 23], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 403, | |
| "comment": "y = 0 and (y + a) % radix**6 is maximal in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "abe2ef6e757bd094c92f70", | |
| "msg": [8, 0, 35, 10, 14, 20, 31, 26, 21, 22, 16, 0], | |
| "ct": [14, 13, 32, 31, 2, 10, 6, 33, 22, 35, 5, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 404, | |
| "comment": "y = 1 and a = 0 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "32e8d76711ed86c187ae0f", | |
| "msg": [12, 21, 23, 7, 1, 7, 26, 18, 26, 30, 5, 19], | |
| "ct": [4, 34, 13, 0, 7, 9, 0, 0, 0, 0, 0, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 405, | |
| "comment": "y = 1 and a = 1 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "32e8d76711ed86c187ae0f", | |
| "msg": [34, 22, 30, 21, 12, 26, 32, 28, 11, 6, 11, 3], | |
| "ct": [4, 34, 13, 0, 7, 9, 0, 0, 0, 0, 0, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 406, | |
| "comment": "y = 1 and a has large Hamming weight in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "32e8d76711ed86c187ae0f", | |
| "msg": [16, 8, 12, 14, 6, 23, 21, 11, 33, 22, 16, 34], | |
| "ct": [4, 34, 13, 0, 7, 9, 35, 18, 20, 0, 35, 21], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 407, | |
| "comment": "y = 1 and (y + a) % radix**6 is maximal in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "32e8d76711ed86c187ae0f", | |
| "msg": [24, 18, 28, 9, 21, 16, 19, 29, 10, 19, 14, 24], | |
| "ct": [4, 34, 13, 0, 7, 9, 35, 35, 35, 35, 35, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 408, | |
| "comment": "y = 1 and (y + a) % radix**6 == 0 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "32e8d76711ed86c187ae0f", | |
| "msg": [32, 0, 28, 0, 3, 2, 32, 0, 27, 28, 13, 25], | |
| "ct": [4, 34, 13, 0, 7, 9, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 409, | |
| "comment": "y is maximal and a = 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "c932b6c067dd065c61aded", | |
| "msg": [21, 28, 11, 19, 35, 1, 4, 30, 23, 26, 14, 2], | |
| "ct": [26, 9, 3, 8, 22, 33, 9, 32, 29, 9, 0, 23], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 410, | |
| "comment": "y is maximal and a = 1 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "c932b6c067dd065c61aded", | |
| "msg": [0, 34, 29, 31, 29, 11, 32, 3, 30, 23, 33, 31], | |
| "ct": [29, 6, 6, 34, 9, 22, 23, 29, 21, 7, 34, 16], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 411, | |
| "comment": "y is maximal and (y + a) % radix**6 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "c932b6c067dd065c61aded", | |
| "msg": [1, 24, 17, 3, 10, 9, 4, 19, 19, 21, 32, 11], | |
| "ct": [0, 33, 26, 35, 21, 20, 33, 14, 33, 0, 29, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 412, | |
| "comment": "y is maximal and (y + a) % radix**6 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "c932b6c067dd065c61aded", | |
| "msg": [24, 16, 0, 10, 28, 18, 18, 12, 13, 29, 4, 3], | |
| "ct": [5, 4, 2, 2, 5, 8, 19, 17, 31, 23, 4, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 413, | |
| "comment": "y is maximal and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "c932b6c067dd065c61aded", | |
| "msg": [33, 20, 35, 9, 9, 13, 9, 23, 9, 28, 22, 28], | |
| "ct": [19, 17, 35, 21, 7, 20, 13, 31, 4, 34, 14, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 414, | |
| "comment": "y is maximal and a is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "c932b6c067dd065c61aded", | |
| "msg": [31, 27, 22, 27, 3, 15, 22, 13, 17, 24, 23, 22], | |
| "ct": [35, 24, 33, 11, 4, 33, 7, 33, 5, 31, 24, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 415, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "4ea632f1312a4f926c0dd1", | |
| "msg": [27, 3, 3, 7, 14, 29, 12, 31, 8, 17, 25, 14], | |
| "ct": [35, 33, 14, 22, 3, 33, 31, 8, 17, 4, 31, 31], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 416, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "4ea632f1312a4f926c0dd1", | |
| "msg": [20, 0, 33, 9, 34, 4, 17, 4, 3, 19, 17, 11], | |
| "ct": [22, 29, 7, 8, 8, 34, 12, 31, 8, 28, 11, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 417, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**6 is maximal in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "4ea632f1312a4f926c0dd1", | |
| "msg": [6, 6, 30, 14, 15, 27, 20, 26, 17, 7, 34, 29], | |
| "ct": [14, 15, 23, 33, 23, 25, 11, 7, 18, 1, 5, 25], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 418, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**6 == 0 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "4ea632f1312a4f926c0dd1", | |
| "msg": [2, 22, 35, 27, 22, 33, 6, 30, 28, 27, 21, 18], | |
| "ct": [13, 3, 31, 15, 35, 29, 11, 10, 24, 3, 6, 21], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 419, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "4ea632f1312a4f926c0dd1", | |
| "msg": [5, 13, 3, 35, 20, 1, 12, 13, 3, 11, 2, 33], | |
| "ct": [22, 20, 15, 20, 8, 2, 35, 10, 14, 15, 11, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 420, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "4ea632f1312a4f926c0dd1", | |
| "msg": [19, 1, 8, 25, 20, 10, 34, 15, 0, 26, 17, 7], | |
| "ct": [12, 7, 19, 12, 20, 17, 34, 29, 7, 2, 32, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 421, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**6 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "077591294c6ed96f7c917a", | |
| "msg": [13, 10, 7, 31, 11, 10, 20, 29, 0, 10, 18, 34], | |
| "ct": [24, 14, 22, 3, 29, 16, 16, 31, 24, 30, 28, 16], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 422, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**6 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "077591294c6ed96f7c917a", | |
| "msg": [17, 22, 15, 2, 14, 7, 24, 18, 11, 12, 33, 19], | |
| "ct": [32, 11, 18, 25, 33, 17, 5, 5, 21, 31, 3, 31], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 423, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "077591294c6ed96f7c917a", | |
| "msg": [24, 30, 11, 28, 7, 0, 34, 0, 17, 32, 5, 10], | |
| "ct": [10, 18, 2, 17, 8, 1, 10, 20, 15, 19, 28, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 424, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "077591294c6ed96f7c917a", | |
| "msg": [6, 34, 31, 32, 12, 17, 23, 1, 26, 0, 21, 35], | |
| "ct": [15, 12, 17, 12, 33, 31, 3, 4, 7, 24, 1, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 425, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "dbac185fba36fe7028184de1a577dbaa", | |
| "tweak": "6ba28735b4acc0ff", | |
| "msg": [-1, 32, 25, 0, 13, 1, 34, 7, 34, 21, 25, 19], | |
| "ct": [19, 0, 32, 23, 32, 27, 5, 33, 5, 3, 17, 22], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 426, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "dbac185fba36fe7028184de1a577dbaa", | |
| "tweak": "6ba28735b4acc0ff", | |
| "msg": [2, 32, 25, 0, -1, 1, 34, 7, 34, 21, 25, 19], | |
| "ct": [20, 15, 16, 26, 17, 4, 32, 2, 1, 30, 7, 31], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 427, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "dbac185fba36fe7028184de1a577dbaa", | |
| "tweak": "6ba28735b4acc0ff", | |
| "msg": [2, 32, 25, 0, 13, 1, 34, 7, 34, 21, 25, -1], | |
| "ct": [7, 13, 25, 10, 23, 34, 5, 31, 24, 24, 3, 10], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 428, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "258624fef47e78ff2b310abedfd200a2", | |
| "tweak": "2ab9d6d9051d3ebb", | |
| "msg": [36, 26, 15, 27, 12, 3, 12, 9, 14, 2, 25, 23], | |
| "ct": [23, 30, 18, 15, 25, 10, 30, 14, 14, 5, 7, 12], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 429, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "258624fef47e78ff2b310abedfd200a2", | |
| "tweak": "2ab9d6d9051d3ebb", | |
| "msg": [13, 26, 15, 27, 36, 3, 12, 9, 14, 2, 25, 23], | |
| "ct": [11, 13, 33, 3, 34, 5, 30, 9, 33, 10, 25, 6], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 430, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "258624fef47e78ff2b310abedfd200a2", | |
| "tweak": "2ab9d6d9051d3ebb", | |
| "msg": [13, 26, 15, 27, 12, 3, 12, 9, 14, 2, 25, 36], | |
| "ct": [5, 9, 6, 7, 20, 4, 21, 35, 27, 18, 6, 18], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 13, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 431, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "d5e6c882f005525ce577f704ef6b525d", | |
| "tweak": "7ce1a7a4e6508c83", | |
| "msg": [13, 8, 25, 1, 1, 32, 7, 22, 10, 18, 23, 28, 5], | |
| "ct": [15, 8, 20, 25, 13, 6, 20, 16, 25, 23, 16, 11, 28], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 432, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [5, 28, 18, 18, 12, 30, 15, 4, 17, 5, 20, 8, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 433, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "ct": [18, 10, 33, 6, 3, 19, 13, 12, 16, 35, 32, 20, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 434, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [35, 18, 20, 0, 35, 20, 31, 20, 17, 28, 31, 21, 28], | |
| "ct": [3, 35, 29, 5, 2, 32, 4, 0, 28, 23, 34, 9, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 435, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [35, 18, 20, 0, 35, 19, 31, 20, 17, 28, 31, 21, 27], | |
| "ct": [4, 8, 4, 28, 9, 22, 17, 20, 22, 9, 26, 3, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 436, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [27, 9, 0, 15, 6, 5, 9, 9, 0, 34, 3, 4, 21], | |
| "ct": [25, 24, 5, 4, 22, 12, 27, 3, 28, 16, 7, 15, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 437, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [34, 21, 35, 8, 4, 3, 16, 26, 20, 10, 16, 0, 7], | |
| "ct": [17, 35, 18, 30, 32, 33, 25, 12, 9, 30, 14, 1, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 438, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [14, 11, 33, 11, 6, 17, 3, 19, 8, 27, 27, 20, 2], | |
| "ct": [17, 19, 28, 15, 27, 14, 17, 34, 18, 32, 7, 32, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 439, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [21, 3, 23, 5, 9, 17, 20, 35, 30, 2, 16, 34, 24], | |
| "ct": [23, 25, 27, 16, 17, 0, 23, 27, 5, 14, 29, 19, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 440, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [0, 0, 21, 35, 20, 12, 14, 22, 7, 0, 29, 17, 15], | |
| "ct": [23, 20, 33, 28, 17, 32, 34, 25, 24, 5, 27, 31, 34], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 441, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [7, 5, 26, 32, 13, 10, 35, 18, 33, 13, 1, 4, 9], | |
| "ct": [15, 22, 6, 4, 7, 34, 30, 9, 3, 18, 7, 14, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 442, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [33, 10, 35, 7, 18, 3, 14, 6, 22, 5, 29, 17, 16], | |
| "ct": [2, 28, 11, 15, 31, 20, 7, 17, 4, 7, 9, 7, 32], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 443, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [26, 2, 6, 5, 11, 19, 21, 32, 32, 17, 5, 4, 20], | |
| "ct": [23, 10, 35, 24, 15, 12, 24, 19, 34, 27, 32, 29, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 444, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [24, 30, 9, 34, 26, 32, 9, 15, 31, 17, 33, 27, 25], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 445, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [5, 29, 22, 2, 10, 32, 25, 28, 28, 18, 19, 0, 14], | |
| "ct": [35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 446, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [7, 1, 27, 19, 19, 8, 18, 2, 23, 29, 28, 13, 34], | |
| "ct": [35, 18, 20, 0, 35, 20, 31, 20, 17, 28, 31, 21, 28], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 447, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [3, 27, 25, 23, 25, 2, 30, 7, 11, 30, 29, 22, 8], | |
| "ct": [35, 18, 20, 0, 35, 19, 31, 20, 17, 28, 31, 21, 27], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 448, | |
| "comment": "y = 0 and (y + a) % radix**6 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "ee72236ce5e3e5e9ac72", | |
| "msg": [0, 0, 0, 0, 0, 0, 35, 4, 0, 31, 16, 9, 17], | |
| "ct": [30, 32, 30, 32, 27, 16, 29, 21, 10, 4, 22, 28, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 449, | |
| "comment": "y = 0 and a = 1 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "ee72236ce5e3e5e9ac72", | |
| "msg": [0, 0, 0, 0, 0, 1, 35, 4, 0, 31, 16, 9, 17], | |
| "ct": [18, 34, 15, 3, 18, 13, 25, 23, 8, 23, 22, 22, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 450, | |
| "comment": "y = 0 and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "ee72236ce5e3e5e9ac72", | |
| "msg": [35, 18, 20, 0, 35, 20, 35, 4, 0, 31, 16, 9, 17], | |
| "ct": [15, 28, 9, 0, 23, 24, 24, 8, 20, 6, 29, 18, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 451, | |
| "comment": "y = 0 and (y + a) % radix**6 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "ee72236ce5e3e5e9ac72", | |
| "msg": [35, 35, 35, 35, 35, 35, 35, 4, 0, 31, 16, 9, 17], | |
| "ct": [35, 1, 17, 24, 12, 24, 12, 20, 9, 25, 5, 25, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 452, | |
| "comment": "y = 1 and a = 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "b83a8b0466a2c1fa2d57", | |
| "msg": [30, 5, 28, 31, 23, 26, 19, 3, 8, 2, 5, 23, 11], | |
| "ct": [9, 15, 9, 12, 21, 29, 13, 14, 20, 32, 31, 11, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 453, | |
| "comment": "y = 1 and a = 1 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "b83a8b0466a2c1fa2d57", | |
| "msg": [21, 13, 3, 24, 25, 3, 25, 4, 7, 34, 22, 16, 24], | |
| "ct": [19, 9, 18, 6, 29, 29, 33, 0, 31, 17, 28, 12, 16], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 454, | |
| "comment": "y = 1 and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "b83a8b0466a2c1fa2d57", | |
| "msg": [8, 33, 31, 7, 33, 24, 5, 33, 6, 11, 10, 18, 30], | |
| "ct": [16, 33, 13, 10, 16, 30, 12, 13, 15, 26, 4, 13, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 455, | |
| "comment": "y = 1 and (y + a) % radix**6 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "b83a8b0466a2c1fa2d57", | |
| "msg": [21, 6, 29, 21, 23, 32, 12, 5, 27, 31, 24, 0, 1], | |
| "ct": [13, 7, 1, 29, 7, 3, 17, 7, 14, 30, 7, 0, 34], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 456, | |
| "comment": "y = 1 and (y + a) % radix**6 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "b83a8b0466a2c1fa2d57", | |
| "msg": [17, 27, 23, 5, 25, 13, 13, 11, 13, 19, 31, 21, 3], | |
| "ct": [18, 14, 13, 30, 26, 30, 18, 22, 13, 17, 34, 1, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 457, | |
| "comment": "y is maximal and a = 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "49eef11a0b48e68fd633", | |
| "msg": [11, 28, 27, 26, 6, 13, 35, 28, 21, 16, 16, 8, 17], | |
| "ct": [15, 9, 15, 17, 18, 13, 19, 27, 21, 27, 14, 9, 31], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 458, | |
| "comment": "y is maximal and a = 1 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "49eef11a0b48e68fd633", | |
| "msg": [32, 11, 16, 14, 35, 8, 32, 9, 19, 1, 33, 14, 17], | |
| "ct": [13, 24, 23, 20, 12, 31, 22, 18, 11, 5, 0, 16, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 459, | |
| "comment": "y is maximal and (y + a) % radix**6 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "49eef11a0b48e68fd633", | |
| "msg": [35, 34, 3, 1, 13, 8, 17, 19, 32, 13, 33, 29, 1], | |
| "ct": [34, 2, 32, 15, 27, 12, 31, 4, 30, 12, 5, 8, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 460, | |
| "comment": "y is maximal and (y + a) % radix**6 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "49eef11a0b48e68fd633", | |
| "msg": [33, 35, 35, 34, 7, 0, 27, 19, 25, 30, 33, 14, 35], | |
| "ct": [25, 14, 5, 0, 33, 16, 11, 28, 1, 4, 9, 14, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 461, | |
| "comment": "y is maximal and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "49eef11a0b48e68fd633", | |
| "msg": [25, 15, 25, 24, 33, 14, 28, 19, 3, 23, 2, 35, 27], | |
| "ct": [27, 7, 18, 26, 2, 18, 7, 9, 29, 31, 22, 6, 31], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 462, | |
| "comment": "y is maximal and a is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "49eef11a0b48e68fd633", | |
| "msg": [14, 11, 14, 1, 23, 33, 28, 26, 4, 6, 29, 18, 7], | |
| "ct": [30, 24, 23, 13, 35, 8, 2, 34, 19, 17, 7, 0, 19], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 463, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "1d65bda3d7c8e21c1408", | |
| "msg": [17, 35, 13, 10, 24, 11, 5, 25, 25, 3, 17, 28, 33], | |
| "ct": [12, 10, 1, 34, 25, 0, 24, 25, 25, 0, 31, 19, 30], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 464, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "1d65bda3d7c8e21c1408", | |
| "msg": [31, 25, 29, 10, 34, 5, 24, 23, 19, 2, 13, 9, 10], | |
| "ct": [12, 10, 1, 34, 25, 1, 8, 22, 3, 10, 3, 23, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 465, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**6 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "1d65bda3d7c8e21c1408", | |
| "msg": [30, 14, 1, 11, 4, 9, 26, 3, 0, 32, 7, 26, 31], | |
| "ct": [35, 35, 35, 35, 35, 35, 14, 28, 18, 2, 8, 15, 22], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 466, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**6 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "1d65bda3d7c8e21c1408", | |
| "msg": [24, 35, 22, 23, 24, 23, 12, 35, 17, 18, 27, 10, 10], | |
| "ct": [0, 0, 0, 0, 0, 0, 6, 2, 2, 0, 7, 12, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 467, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "1d65bda3d7c8e21c1408", | |
| "msg": [26, 9, 27, 30, 21, 18, 26, 34, 20, 1, 25, 23, 27], | |
| "ct": [11, 28, 21, 35, 24, 20, 32, 0, 31, 33, 10, 26, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 468, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "1d65bda3d7c8e21c1408", | |
| "msg": [6, 31, 6, 3, 11, 6, 25, 30, 4, 17, 4, 2, 5], | |
| "ct": [12, 10, 1, 34, 24, 35, 33, 2, 3, 23, 9, 29, 21], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 469, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**6 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "bba6da91976d658c43cd", | |
| "msg": [8, 24, 19, 12, 21, 16, 34, 14, 28, 27, 27, 22, 16], | |
| "ct": [1, 16, 19, 10, 3, 28, 20, 23, 31, 17, 13, 0, 27], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 470, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**6 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "bba6da91976d658c43cd", | |
| "msg": [22, 35, 35, 17, 29, 30, 21, 20, 19, 34, 17, 20, 16], | |
| "ct": [33, 35, 3, 20, 31, 10, 23, 7, 3, 12, 5, 29, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 471, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "bba6da91976d658c43cd", | |
| "msg": [7, 7, 26, 10, 3, 14, 21, 32, 3, 35, 22, 32, 9], | |
| "ct": [15, 21, 29, 23, 5, 29, 22, 29, 20, 22, 23, 29, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 472, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "bba6da91976d658c43cd", | |
| "msg": [24, 15, 19, 18, 20, 28, 2, 19, 8, 35, 11, 26, 10], | |
| "ct": [6, 27, 6, 27, 19, 18, 16, 20, 28, 6, 34, 6, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 473, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "b8d9b3c80209587bbe3c0f7125eed049", | |
| "tweak": "522499e28e9e7712", | |
| "msg": [-1, 6, 21, 26, 23, 30, 19, 23, 22, 34, 18, 19, 13], | |
| "ct": [8, 35, 26, 19, 7, 32, 15, 11, 11, 6, 6, 12, 10], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 474, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "b8d9b3c80209587bbe3c0f7125eed049", | |
| "tweak": "522499e28e9e7712", | |
| "msg": [3, 6, 21, 26, -1, 30, 19, 23, 22, 34, 18, 19, 13], | |
| "ct": [34, 23, 17, 13, 25, 22, 24, 13, 3, 13, 35, 16, 27], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 475, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "b8d9b3c80209587bbe3c0f7125eed049", | |
| "tweak": "522499e28e9e7712", | |
| "msg": [3, 6, 21, 26, 23, 30, 19, 23, 22, 34, 18, 19, -1], | |
| "ct": [15, 30, 26, 2, 21, 15, 17, 27, 35, 30, 31, 35, 2], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 476, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "5fdadd291f94ff6aa8109353ea77eb91", | |
| "tweak": "a5f158bf97305a91", | |
| "msg": [36, 16, 6, 2, 7, 34, 0, 9, 6, 19, 19, 2, 2], | |
| "ct": [33, 1, 5, 35, 20, 13, 7, 7, 18, 35, 29, 2, 1], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 477, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "5fdadd291f94ff6aa8109353ea77eb91", | |
| "tweak": "a5f158bf97305a91", | |
| "msg": [26, 16, 6, 2, 36, 34, 0, 9, 6, 19, 19, 2, 2], | |
| "ct": [22, 25, 34, 6, 3, 16, 22, 35, 14, 4, 23, 30, 4], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 478, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "5fdadd291f94ff6aa8109353ea77eb91", | |
| "tweak": "a5f158bf97305a91", | |
| "msg": [26, 16, 6, 2, 7, 34, 0, 9, 6, 19, 19, 2, 36], | |
| "ct": [25, 24, 24, 21, 4, 5, 17, 0, 29, 23, 19, 35, 18], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 14, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 479, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "7a1122636a4417351c97156308d4f6aa", | |
| "tweak": "a9508e64d1ab8e34", | |
| "msg": [2, 10, 31, 25, 27, 22, 8, 20, 4, 3, 1, 34, 10, 8], | |
| "ct": [3, 30, 12, 31, 16, 19, 25, 30, 25, 18, 6, 4, 17, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 480, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [9, 28, 4, 20, 11, 34, 1, 1, 17, 16, 5, 0, 20, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 481, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "ct": [7, 3, 12, 15, 14, 22, 6, 32, 1, 29, 8, 3, 15, 16], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 482, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [31, 20, 17, 28, 31, 21, 28, 31, 20, 17, 28, 31, 21, 28], | |
| "ct": [2, 31, 3, 14, 30, 2, 7, 21, 5, 6, 33, 35, 28, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 483, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [31, 20, 17, 28, 31, 21, 27, 31, 20, 17, 28, 31, 21, 27], | |
| "ct": [18, 4, 23, 7, 24, 10, 29, 22, 18, 6, 6, 33, 13, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 484, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [24, 20, 29, 6, 11, 17, 13, 14, 10, 10, 25, 11, 28, 13], | |
| "ct": [16, 3, 28, 1, 19, 15, 1, 24, 16, 4, 11, 9, 14, 31], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 485, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [33, 1, 22, 4, 11, 10, 18, 34, 15, 31, 32, 34, 18, 14], | |
| "ct": [14, 22, 12, 20, 10, 6, 9, 24, 1, 34, 26, 25, 26, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 486, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [7, 16, 6, 14, 33, 0, 4, 24, 9, 20, 24, 4, 7, 3], | |
| "ct": [3, 9, 13, 18, 6, 20, 14, 6, 1, 35, 10, 28, 12, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 487, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [3, 32, 21, 29, 0, 1, 23, 24, 4, 14, 24, 17, 18, 8], | |
| "ct": [2, 15, 22, 32, 18, 8, 10, 22, 3, 3, 22, 18, 30, 34], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 488, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [20, 32, 23, 24, 12, 21, 18, 30, 4, 30, 6, 24, 25, 15], | |
| "ct": [31, 4, 27, 20, 6, 3, 0, 32, 31, 33, 5, 32, 14, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 489, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [13, 2, 3, 9, 24, 8, 15, 7, 27, 14, 14, 9, 31, 6], | |
| "ct": [34, 4, 15, 35, 31, 16, 22, 34, 21, 8, 28, 20, 31, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 490, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [10, 4, 35, 10, 7, 33, 25, 2, 32, 27, 17, 13, 30, 11], | |
| "ct": [25, 20, 5, 10, 24, 15, 12, 10, 24, 28, 9, 17, 35, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 491, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [8, 9, 7, 33, 31, 2, 29, 18, 20, 4, 0, 11, 7, 8], | |
| "ct": [0, 15, 25, 28, 25, 30, 31, 16, 23, 9, 5, 1, 29, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 492, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [27, 14, 29, 33, 25, 20, 5, 15, 20, 16, 17, 0, 22, 20], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 493, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [32, 26, 0, 13, 23, 11, 5, 3, 9, 19, 32, 20, 34, 6], | |
| "ct": [35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 494, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [30, 33, 7, 25, 34, 6, 0, 32, 15, 7, 14, 19, 30, 20], | |
| "ct": [31, 20, 17, 28, 31, 21, 28, 31, 20, 17, 28, 31, 21, 28], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 495, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [34, 0, 6, 10, 11, 11, 15, 3, 27, 5, 20, 29, 32, 13], | |
| "ct": [31, 20, 17, 28, 31, 21, 27, 31, 20, 17, 28, 31, 21, 27], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 496, | |
| "comment": "y = 0 and (y + a) % radix**7 == 0 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "e346662de34cd7dfabc7", | |
| "msg": [8, 32, 12, 33, 22, 18, 7, 7, 18, 13, 28, 28, 28, 0], | |
| "ct": [16, 15, 25, 4, 3, 13, 34, 23, 12, 21, 7, 30, 3, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 497, | |
| "comment": "y = 0 and a = 1 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "e346662de34cd7dfabc7", | |
| "msg": [1, 19, 8, 22, 22, 34, 29, 30, 18, 3, 23, 0, 21, 25], | |
| "ct": [15, 33, 31, 28, 19, 28, 27, 34, 15, 24, 13, 20, 5, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 498, | |
| "comment": "y = 0 and a has large Hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "e346662de34cd7dfabc7", | |
| "msg": [3, 26, 7, 16, 18, 9, 12, 5, 14, 6, 18, 14, 18, 18], | |
| "ct": [26, 23, 24, 11, 16, 9, 29, 16, 17, 15, 18, 3, 3, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 499, | |
| "comment": "y = 0 and (y + a) % radix**7 is maximal in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "e346662de34cd7dfabc7", | |
| "msg": [34, 23, 19, 24, 21, 20, 30, 29, 1, 3, 22, 0, 14, 11], | |
| "ct": [31, 25, 4, 2, 25, 5, 23, 4, 33, 19, 6, 7, 31, 24], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 500, | |
| "comment": "y = 1 and a = 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "c3c8e4a7a4d5ce4e2be6", | |
| "msg": [7, 28, 28, 16, 18, 5, 13, 33, 32, 26, 9, 19, 25, 24], | |
| "ct": [1, 10, 26, 6, 26, 3, 29, 19, 28, 24, 29, 26, 34, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 501, | |
| "comment": "y = 1 and a = 1 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "c3c8e4a7a4d5ce4e2be6", | |
| "msg": [7, 6, 29, 29, 24, 4, 20, 32, 2, 11, 22, 28, 21, 6], | |
| "ct": [6, 14, 23, 34, 30, 23, 10, 13, 8, 7, 35, 31, 27, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 502, | |
| "comment": "y = 1 and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "c3c8e4a7a4d5ce4e2be6", | |
| "msg": [12, 7, 16, 9, 16, 34, 32, 14, 32, 9, 15, 23, 27, 9], | |
| "ct": [12, 1, 22, 7, 9, 8, 25, 4, 16, 31, 28, 2, 19, 22], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 503, | |
| "comment": "y = 1 and (y + a) % radix**7 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "c3c8e4a7a4d5ce4e2be6", | |
| "msg": [8, 11, 0, 20, 25, 29, 8, 11, 19, 4, 15, 20, 32, 27], | |
| "ct": [15, 2, 2, 16, 14, 33, 15, 5, 19, 0, 24, 26, 11, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 504, | |
| "comment": "y = 1 and (y + a) % radix**7 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "c3c8e4a7a4d5ce4e2be6", | |
| "msg": [14, 4, 3, 25, 16, 26, 21, 6, 13, 9, 18, 4, 12, 25], | |
| "ct": [4, 35, 2, 18, 20, 7, 3, 34, 5, 14, 1, 12, 26, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 505, | |
| "comment": "y is maximal and a = 0 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "cc457c29b579d5d2d940", | |
| "msg": [20, 0, 6, 0, 30, 6, 29, 10, 13, 32, 30, 24, 0, 31], | |
| "ct": [31, 5, 9, 21, 33, 21, 24, 31, 10, 12, 9, 6, 5, 18], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 506, | |
| "comment": "y is maximal and a = 1 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "cc457c29b579d5d2d940", | |
| "msg": [29, 7, 10, 23, 18, 31, 9, 16, 7, 16, 27, 31, 14, 10], | |
| "ct": [20, 30, 33, 2, 3, 9, 15, 12, 1, 33, 10, 23, 34, 18], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 507, | |
| "comment": "y is maximal and a has large Hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "cc457c29b579d5d2d940", | |
| "msg": [25, 10, 33, 13, 6, 20, 23, 17, 29, 4, 32, 33, 14, 34], | |
| "ct": [24, 33, 20, 2, 32, 28, 12, 11, 24, 18, 27, 6, 11, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 508, | |
| "comment": "y is maximal and (y + a) % radix**7 is maximal in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "cc457c29b579d5d2d940", | |
| "msg": [16, 11, 14, 3, 17, 22, 0, 0, 15, 25, 1, 1, 11, 29], | |
| "ct": [3, 7, 13, 0, 26, 30, 31, 2, 15, 6, 3, 35, 24, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 509, | |
| "comment": "y is maximal and (y + a) % radix**7 == 0 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "cc457c29b579d5d2d940", | |
| "msg": [25, 27, 27, 4, 0, 10, 31, 25, 24, 16, 1, 2, 18, 15], | |
| "ct": [34, 21, 22, 7, 6, 7, 7, 15, 2, 32, 0, 4, 10, 29], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 510, | |
| "comment": "y is maximal and a is maximal in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "cc457c29b579d5d2d940", | |
| "msg": [16, 28, 11, 25, 14, 6, 27, 4, 16, 11, 33, 24, 25, 19], | |
| "ct": [8, 6, 14, 16, 34, 24, 13, 4, 11, 5, 9, 17, 33, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 511, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "313b0ab1b4967552b2b7", | |
| "msg": [30, 13, 14, 12, 7, 20, 15, 1, 19, 21, 7, 10, 28, 19], | |
| "ct": [16, 9, 31, 24, 22, 19, 9, 6, 18, 34, 12, 13, 9, 32], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 512, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "313b0ab1b4967552b2b7", | |
| "msg": [5, 22, 14, 35, 8, 3, 21, 11, 23, 17, 8, 23, 16, 9], | |
| "ct": [6, 30, 20, 7, 3, 32, 29, 31, 10, 20, 26, 32, 33, 30], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 513, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "313b0ab1b4967552b2b7", | |
| "msg": [16, 16, 30, 1, 8, 10, 7, 14, 3, 3, 5, 17, 33, 32], | |
| "ct": [9, 18, 10, 28, 32, 1, 10, 13, 31, 12, 15, 7, 24, 26], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 514, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**7 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "313b0ab1b4967552b2b7", | |
| "msg": [2, 11, 33, 32, 33, 14, 4, 8, 13, 29, 28, 19, 33, 3], | |
| "ct": [29, 3, 31, 14, 12, 11, 3, 7, 4, 29, 11, 33, 4, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 515, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**7 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "313b0ab1b4967552b2b7", | |
| "msg": [10, 17, 31, 24, 13, 4, 8, 9, 8, 27, 34, 20, 3, 15], | |
| "ct": [31, 4, 30, 17, 6, 22, 17, 15, 10, 35, 9, 18, 0, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 516, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "313b0ab1b4967552b2b7", | |
| "msg": [28, 30, 29, 30, 26, 26, 12, 32, 27, 33, 23, 20, 12, 4], | |
| "ct": [2, 5, 24, 31, 26, 11, 20, 22, 30, 32, 30, 1, 9, 22], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 517, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**7 is maximal in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "af4165d61ab799fef41f", | |
| "msg": [24, 0, 31, 26, 18, 28, 14, 16, 8, 21, 26, 23, 22, 33], | |
| "ct": [33, 21, 3, 22, 24, 18, 2, 13, 16, 15, 26, 18, 0, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 518, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**7 == 0 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "af4165d61ab799fef41f", | |
| "msg": [16, 33, 34, 8, 27, 7, 26, 1, 13, 14, 9, 33, 33, 27], | |
| "ct": [28, 16, 27, 18, 32, 30, 17, 15, 11, 29, 13, 25, 3, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 519, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "af4165d61ab799fef41f", | |
| "msg": [18, 17, 8, 17, 34, 26, 9, 12, 13, 16, 10, 26, 0, 14], | |
| "ct": [19, 25, 7, 24, 34, 22, 1, 30, 10, 5, 29, 25, 19, 21], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 520, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "af4165d61ab799fef41f", | |
| "msg": [19, 7, 3, 32, 26, 32, 31, 5, 29, 1, 22, 26, 31, 16], | |
| "ct": [27, 32, 33, 5, 35, 1, 31, 20, 25, 2, 2, 31, 18, 31], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 521, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "3a6e047dffbfcdaf0ee7e0c93fc4c0e0", | |
| "tweak": "0e5628b6bce472c6", | |
| "msg": [-1, 32, 29, 2, 10, 11, 30, 19, 4, 15, 11, 4, 18, 3], | |
| "ct": [13, 16, 7, 21, 19, 9, 14, 2, 10, 8, 35, 15, 4, 21], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 522, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "3a6e047dffbfcdaf0ee7e0c93fc4c0e0", | |
| "tweak": "0e5628b6bce472c6", | |
| "msg": [2, 32, 29, 2, -1, 11, 30, 19, 4, 15, 11, 4, 18, 3], | |
| "ct": [24, 25, 15, 31, 19, 34, 35, 11, 11, 26, 23, 13, 13, 18], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 523, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "3a6e047dffbfcdaf0ee7e0c93fc4c0e0", | |
| "tweak": "0e5628b6bce472c6", | |
| "msg": [2, 32, 29, 2, 10, 11, 30, 19, 4, 15, 11, 4, 18, -1], | |
| "ct": [16, 25, 31, 28, 0, 2, 15, 12, 1, 35, 29, 24, 30, 16], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 524, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "b2fc1da392e32c3dc06b38bad825fedc", | |
| "tweak": "6fffb6acca8a08de", | |
| "msg": [36, 16, 11, 14, 32, 30, 27, 16, 16, 8, 0, 21, 22, 6], | |
| "ct": [34, 18, 17, 24, 16, 28, 17, 16, 9, 19, 18, 5, 14, 10], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 525, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "b2fc1da392e32c3dc06b38bad825fedc", | |
| "tweak": "6fffb6acca8a08de", | |
| "msg": [24, 16, 11, 14, 36, 30, 27, 16, 16, 8, 0, 21, 22, 6], | |
| "ct": [11, 11, 35, 4, 10, 0, 27, 28, 19, 30, 10, 29, 15, 32], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 526, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "b2fc1da392e32c3dc06b38bad825fedc", | |
| "tweak": "6fffb6acca8a08de", | |
| "msg": [24, 16, 11, 14, 32, 30, 27, 16, 16, 8, 0, 21, 22, 36], | |
| "ct": [7, 20, 1, 13, 25, 25, 33, 28, 35, 1, 4, 15, 30, 4], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 15, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 527, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "7b0c5d430ef9383b04b2691ce3402a9a", | |
| "tweak": "ec71532112064259", | |
| "msg": [28, 9, 2, 26, 30, 4, 35, 24, 11, 10, 31, 5, 6, 6, 0], | |
| "ct": [3, 34, 5, 3, 15, 35, 6, 30, 13, 23, 10, 23, 35, 2, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 528, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [6, 14, 12, 5, 23, 23, 28, 25, 20, 19, 24, 31, 18, 34, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 529, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "ct": [0, 0, 14, 27, 18, 25, 27, 8, 1, 23, 30, 5, 1, 10, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 530, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [31, 20, 17, 28, 31, 21, 28, 28, 2, 7, 29, 24, 3, 12, 32], | |
| "ct": [3, 33, 13, 23, 30, 24, 7, 33, 15, 1, 29, 6, 34, 17, 16], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 531, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [31, 20, 17, 28, 31, 21, 27, 28, 2, 7, 29, 24, 3, 12, 31], | |
| "ct": [21, 34, 6, 30, 10, 20, 13, 35, 0, 6, 23, 24, 10, 26, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 532, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [4, 25, 15, 26, 16, 35, 1, 31, 24, 1, 6, 19, 0, 28, 5], | |
| "ct": [4, 34, 17, 17, 6, 24, 0, 29, 23, 25, 7, 28, 29, 0, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 533, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [35, 1, 25, 13, 30, 5, 35, 28, 8, 19, 2, 18, 8, 34, 30], | |
| "ct": [7, 1, 18, 27, 28, 12, 20, 11, 8, 29, 11, 14, 6, 10, 23], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 534, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [28, 26, 34, 21, 16, 7, 32, 1, 27, 19, 26, 7, 5, 1, 15], | |
| "ct": [9, 24, 25, 7, 27, 11, 17, 21, 30, 26, 0, 17, 16, 22, 19], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 535, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [22, 31, 30, 17, 3, 28, 15, 26, 17, 21, 1, 28, 19, 18, 14], | |
| "ct": [10, 29, 7, 21, 2, 33, 12, 31, 33, 7, 19, 0, 31, 5, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 536, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [10, 34, 34, 1, 16, 35, 2, 0, 11, 35, 2, 27, 4, 15, 3], | |
| "ct": [16, 34, 15, 31, 11, 10, 6, 8, 15, 33, 31, 8, 16, 19, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 537, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [11, 7, 23, 3, 16, 19, 4, 20, 6, 4, 4, 30, 21, 10, 25], | |
| "ct": [10, 19, 18, 0, 10, 9, 14, 35, 28, 13, 12, 4, 18, 27, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 538, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [3, 17, 29, 32, 20, 0, 3, 16, 7, 15, 7, 30, 14, 27, 28], | |
| "ct": [14, 34, 31, 7, 7, 12, 21, 27, 25, 17, 31, 23, 32, 27, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 539, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [27, 24, 17, 20, 21, 26, 7, 0, 33, 4, 29, 10, 17, 15, 27], | |
| "ct": [1, 28, 0, 7, 32, 8, 20, 22, 26, 22, 27, 13, 11, 23, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 540, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [20, 12, 2, 9, 4, 8, 24, 26, 31, 5, 11, 28, 14, 35, 6], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 541, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [27, 16, 35, 2, 7, 6, 5, 25, 3, 18, 3, 2, 1, 23, 30], | |
| "ct": [35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 542, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [15, 32, 21, 1, 7, 33, 11, 29, 0, 10, 27, 24, 24, 19, 21], | |
| "ct": [31, 20, 17, 28, 31, 21, 28, 28, 2, 7, 29, 24, 3, 12, 32], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 543, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [33, 18, 34, 5, 5, 32, 23, 34, 3, 28, 13, 27, 10, 13, 1], | |
| "ct": [31, 20, 17, 28, 31, 21, 27, 28, 2, 7, 29, 24, 3, 12, 31], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 544, | |
| "comment": "y is maximal and a = 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "4670347635ba864243", | |
| "msg": [18, 12, 15, 9, 32, 30, 26, 21, 17, 17, 4, 6, 29, 31, 31], | |
| "ct": [12, 0, 28, 3, 34, 27, 6, 20, 14, 4, 19, 18, 24, 3, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 545, | |
| "comment": "y is maximal and a = 1 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "4670347635ba864243", | |
| "msg": [11, 28, 16, 25, 25, 8, 2, 15, 8, 5, 30, 13, 15, 2, 20], | |
| "ct": [34, 28, 12, 23, 16, 21, 22, 9, 24, 5, 21, 33, 7, 6, 27], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 546, | |
| "comment": "y is maximal and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "4670347635ba864243", | |
| "msg": [26, 19, 23, 19, 33, 2, 14, 3, 10, 24, 20, 14, 12, 2, 2], | |
| "ct": [12, 18, 14, 5, 4, 23, 2, 35, 30, 26, 18, 8, 20, 16, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 547, | |
| "comment": "y is maximal and (y + a) % radix**7 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "4670347635ba864243", | |
| "msg": [5, 12, 11, 1, 21, 23, 24, 19, 5, 32, 21, 17, 20, 0, 17], | |
| "ct": [23, 0, 29, 20, 14, 14, 12, 29, 33, 34, 2, 35, 23, 20, 30], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 548, | |
| "comment": "y is maximal and (y + a) % radix**7 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "4670347635ba864243", | |
| "msg": [20, 16, 6, 13, 6, 5, 3, 21, 10, 24, 33, 7, 35, 8, 6], | |
| "ct": [8, 1, 2, 21, 3, 19, 19, 17, 0, 34, 24, 30, 20, 3, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 549, | |
| "comment": "y is maximal and a is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "4670347635ba864243", | |
| "msg": [24, 32, 30, 21, 15, 18, 29, 8, 8, 25, 2, 0, 5, 26, 8], | |
| "ct": [20, 34, 12, 7, 30, 27, 8, 35, 11, 3, 23, 33, 20, 28, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 550, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "18f316e92e027b0d4d068bb94f8dd864", | |
| "tweak": "17d37026864474b3", | |
| "msg": [-1, 11, 19, 26, 4, 18, 3, 2, 35, 24, 25, 10, 31, 27, 7], | |
| "ct": [7, 7, 10, 34, 14, 27, 32, 20, 0, 19, 34, 33, 20, 24, 18], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 551, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "18f316e92e027b0d4d068bb94f8dd864", | |
| "tweak": "17d37026864474b3", | |
| "msg": [9, 11, 19, 26, 4, -1, 3, 2, 35, 24, 25, 10, 31, 27, 7], | |
| "ct": [20, 35, 27, 29, 6, 0, 33, 30, 26, 22, 2, 29, 21, 10, 4], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 552, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "18f316e92e027b0d4d068bb94f8dd864", | |
| "tweak": "17d37026864474b3", | |
| "msg": [9, 11, 19, 26, 4, 18, 3, 2, 35, 24, 25, 10, 31, 27, -1], | |
| "ct": [23, 21, 30, 10, 10, 23, 0, 34, 16, 30, 14, 20, 7, 25, 27], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 553, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "a4b0c1db4102d87e8f6d76d68ac65bd7", | |
| "tweak": "b07759e0e4acd7a0", | |
| "msg": [36, 6, 23, 26, 25, 7, 23, 3, 8, 7, 15, 16, 30, 16, 23], | |
| "ct": [16, 20, 10, 6, 26, 16, 20, 14, 8, 3, 11, 30, 31, 0, 5], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 554, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "a4b0c1db4102d87e8f6d76d68ac65bd7", | |
| "tweak": "b07759e0e4acd7a0", | |
| "msg": [0, 6, 23, 26, 25, 36, 23, 3, 8, 7, 15, 16, 30, 16, 23], | |
| "ct": [12, 11, 2, 26, 7, 32, 22, 19, 20, 34, 3, 30, 23, 17, 32], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 555, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "a4b0c1db4102d87e8f6d76d68ac65bd7", | |
| "tweak": "b07759e0e4acd7a0", | |
| "msg": [0, 6, 23, 26, 25, 7, 23, 3, 8, 7, 15, 16, 30, 16, 36], | |
| "ct": [22, 6, 5, 1, 35, 32, 21, 0, 31, 33, 21, 11, 22, 6, 16], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 16, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 556, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "48f0d03e41cc55c4b58f737b5acdea32", | |
| "tweak": "30944debca89ca90", | |
| "msg": [0, 32, 19, 14, 33, 25, 32, 5, 17, 6, 30, 33, 19, 33, 31, 4], | |
| "ct": [8, 32, 14, 8, 5, 19, 19, 30, 17, 23, 17, 32, 12, 22, 4, 23], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 557, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [35, 8, 19, 19, 10, 13, 9, 31, 31, 5, 13, 12, 33, 18, 12, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 558, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "ct": [20, 28, 34, 20, 31, 25, 22, 33, 0, 15, 22, 4, 11, 0, 14, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 559, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [28, 2, 7, 29, 24, 3, 12, 32, 28, 2, 7, 29, 24, 3, 12, 32], | |
| "ct": [31, 8, 21, 21, 22, 3, 7, 3, 29, 28, 24, 12, 19, 19, 24, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 560, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [28, 2, 7, 29, 24, 3, 12, 31, 28, 2, 7, 29, 24, 3, 12, 31], | |
| "ct": [13, 29, 20, 34, 13, 29, 28, 0, 32, 20, 31, 22, 28, 10, 32, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 561, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [2, 21, 21, 7, 24, 31, 3, 22, 12, 13, 10, 4, 35, 24, 4, 20], | |
| "ct": [30, 26, 32, 1, 32, 6, 27, 11, 0, 34, 7, 28, 34, 10, 11, 28], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 562, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [2, 14, 11, 15, 17, 15, 19, 0, 20, 30, 23, 32, 10, 20, 33, 15], | |
| "ct": [31, 27, 19, 35, 26, 6, 2, 2, 4, 1, 28, 5, 11, 5, 8, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 563, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [19, 0, 31, 31, 22, 24, 7, 11, 11, 25, 15, 13, 11, 2, 30, 22], | |
| "ct": [25, 4, 26, 11, 33, 32, 23, 2, 21, 11, 14, 27, 8, 33, 31, 29], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 564, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [13, 20, 33, 1, 9, 27, 10, 29, 29, 20, 16, 22, 3, 4, 24, 35], | |
| "ct": [13, 23, 29, 27, 33, 32, 3, 5, 17, 35, 7, 29, 1, 25, 10, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 565, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [15, 21, 26, 16, 11, 26, 27, 15, 22, 23, 7, 23, 8, 30, 28, 7], | |
| "ct": [2, 17, 28, 21, 23, 20, 6, 12, 27, 10, 29, 11, 12, 10, 13, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 566, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [3, 19, 15, 3, 25, 35, 26, 16, 7, 15, 35, 1, 31, 32, 14, 16], | |
| "ct": [33, 16, 25, 23, 16, 18, 28, 28, 6, 22, 3, 31, 5, 35, 35, 23], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 567, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [19, 29, 3, 24, 4, 16, 0, 17, 30, 10, 32, 14, 21, 33, 14, 35], | |
| "ct": [24, 17, 22, 1, 25, 9, 34, 6, 23, 14, 27, 27, 20, 34, 18, 34], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 568, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [8, 2, 10, 12, 27, 29, 20, 17, 9, 16, 13, 2, 33, 1, 0, 28], | |
| "ct": [17, 29, 32, 32, 28, 12, 31, 2, 35, 5, 3, 8, 23, 20, 19, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 569, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [31, 10, 16, 14, 17, 35, 35, 28, 24, 29, 5, 2, 24, 7, 20, 7], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 570, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [27, 32, 33, 10, 32, 28, 32, 10, 0, 32, 25, 21, 1, 13, 13, 6], | |
| "ct": [35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 571, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [16, 10, 0, 28, 32, 28, 19, 30, 16, 0, 35, 16, 0, 8, 14, 15], | |
| "ct": [28, 2, 7, 29, 24, 3, 12, 32, 28, 2, 7, 29, 24, 3, 12, 32], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 572, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [0, 11, 12, 34, 30, 12, 18, 20, 6, 0, 14, 19, 18, 20, 29, 31], | |
| "ct": [28, 2, 7, 29, 24, 3, 12, 31, 28, 2, 7, 29, 24, 3, 12, 31], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 573, | |
| "comment": "y = 0 and (y + a) % radix**8 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "676adcecb6830636a7", | |
| "msg": [23, 17, 29, 31, 15, 22, 9, 21, 15, 33, 29, 4, 28, 21, 35, 20], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 17, 9, 32, 26, 12, 12, 16, 27], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 574, | |
| "comment": "y = 0 and a = 1 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "676adcecb6830636a7", | |
| "msg": [14, 12, 15, 11, 5, 20, 16, 15, 4, 0, 34, 9, 19, 15, 28, 23], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 1, 26, 30, 13, 19, 33, 28, 25, 19], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 575, | |
| "comment": "y = 0 and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "676adcecb6830636a7", | |
| "msg": [0, 32, 31, 8, 4, 22, 16, 0, 30, 2, 7, 10, 3, 26, 21, 5], | |
| "ct": [28, 2, 7, 29, 24, 3, 12, 32, 11, 12, 23, 34, 24, 6, 19, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 576, | |
| "comment": "y = 0 and (y + a) % radix**8 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "676adcecb6830636a7", | |
| "msg": [5, 30, 25, 8, 35, 33, 10, 17, 21, 21, 0, 4, 24, 24, 16, 13], | |
| "ct": [35, 35, 35, 35, 35, 35, 35, 35, 28, 8, 5, 18, 32, 4, 6, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 577, | |
| "comment": "y = 1 and a = 0 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "f6010cacab593263a7", | |
| "msg": [28, 4, 23, 20, 5, 16, 14, 13, 1, 26, 16, 3, 24, 29, 16, 10], | |
| "ct": [13, 16, 4, 3, 32, 25, 13, 5, 0, 0, 0, 0, 0, 0, 0, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 578, | |
| "comment": "y = 1 and a = 1 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "f6010cacab593263a7", | |
| "msg": [15, 2, 0, 3, 18, 14, 30, 3, 14, 12, 19, 20, 6, 18, 3, 4], | |
| "ct": [13, 16, 4, 3, 32, 25, 13, 5, 0, 0, 0, 0, 0, 0, 0, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 579, | |
| "comment": "y = 1 and a has large Hamming weight in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "f6010cacab593263a7", | |
| "msg": [18, 14, 10, 31, 28, 9, 21, 15, 12, 34, 3, 13, 21, 3, 32, 27], | |
| "ct": [13, 16, 4, 3, 32, 25, 13, 5, 28, 2, 7, 29, 24, 3, 12, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 580, | |
| "comment": "y = 1 and (y + a) % radix**8 is maximal in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "f6010cacab593263a7", | |
| "msg": [32, 24, 4, 20, 35, 35, 16, 17, 8, 13, 12, 25, 4, 1, 18, 26], | |
| "ct": [13, 16, 4, 3, 32, 25, 13, 5, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 581, | |
| "comment": "y = 1 and (y + a) % radix**8 == 0 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "f6010cacab593263a7", | |
| "msg": [27, 31, 2, 19, 26, 6, 10, 6, 25, 20, 17, 19, 30, 13, 29, 18], | |
| "ct": [13, 16, 4, 3, 32, 25, 13, 5, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 582, | |
| "comment": "y is maximal and a = 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "6c9d00586b3e3aada3", | |
| "msg": [7, 35, 12, 30, 8, 28, 12, 15, 4, 4, 9, 14, 18, 7, 28, 4], | |
| "ct": [1, 22, 12, 8, 23, 3, 11, 34, 24, 32, 14, 26, 0, 23, 20, 21], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 583, | |
| "comment": "y is maximal and a = 1 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "6c9d00586b3e3aada3", | |
| "msg": [28, 21, 0, 11, 33, 12, 17, 14, 1, 32, 9, 10, 26, 33, 24, 11], | |
| "ct": [26, 5, 27, 12, 19, 35, 31, 16, 9, 32, 29, 15, 35, 12, 24, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 584, | |
| "comment": "y is maximal and (y + a) % radix**8 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "6c9d00586b3e3aada3", | |
| "msg": [8, 12, 32, 19, 16, 25, 24, 15, 25, 27, 9, 35, 21, 27, 33, 14], | |
| "ct": [20, 30, 18, 33, 10, 28, 26, 2, 29, 31, 35, 13, 16, 32, 31, 34], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 585, | |
| "comment": "y is maximal and (y + a) % radix**8 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "6c9d00586b3e3aada3", | |
| "msg": [6, 13, 32, 13, 17, 24, 0, 13, 10, 35, 13, 7, 23, 25, 5, 9], | |
| "ct": [33, 24, 5, 0, 22, 0, 13, 17, 9, 2, 6, 4, 24, 21, 32, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 586, | |
| "comment": "y is maximal and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "6c9d00586b3e3aada3", | |
| "msg": [16, 0, 29, 17, 33, 6, 4, 33, 28, 33, 11, 33, 15, 19, 34, 17], | |
| "ct": [0, 35, 7, 30, 30, 19, 16, 11, 14, 18, 25, 3, 27, 5, 0, 29], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 587, | |
| "comment": "y is maximal and a is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "6c9d00586b3e3aada3", | |
| "msg": [14, 3, 19, 4, 17, 19, 27, 21, 6, 4, 18, 33, 32, 7, 8, 34], | |
| "ct": [20, 14, 15, 2, 1, 24, 11, 11, 32, 5, 16, 18, 15, 25, 4, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 588, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**8 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "c142156fb1377def4a", | |
| "msg": [17, 12, 35, 32, 10, 16, 11, 20, 3, 6, 21, 17, 23, 33, 22, 22], | |
| "ct": [35, 35, 35, 35, 35, 35, 35, 35, 3, 2, 15, 8, 32, 35, 25, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 589, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**8 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "c142156fb1377def4a", | |
| "msg": [21, 12, 27, 30, 15, 34, 1, 15, 29, 8, 30, 23, 27, 20, 32, 21], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 30, 20, 14, 21, 25, 25, 33, 34], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 590, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "c142156fb1377def4a", | |
| "msg": [13, 21, 18, 24, 11, 2, 16, 3, 19, 19, 0, 2, 0, 27, 27, 3], | |
| "ct": [28, 2, 7, 29, 24, 3, 12, 31, 21, 10, 6, 18, 28, 30, 34, 24], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 591, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "c142156fb1377def4a", | |
| "msg": [8, 20, 22, 18, 24, 32, 11, 34, 24, 9, 28, 31, 13, 18, 14, 19], | |
| "ct": [35, 35, 35, 35, 35, 35, 35, 34, 32, 23, 1, 1, 19, 16, 30, 16], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 592, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "c3a8f68c88eeea1a255db6a7e012ec22", | |
| "tweak": "a841e8a1819dfb69", | |
| "msg": [-1, 25, 24, 33, 33, 29, 10, 1, 31, 35, 31, 35, 29, 25, 6, 20], | |
| "ct": [3, 2, 34, 21, 29, 33, 34, 6, 25, 15, 18, 7, 28, 19, 6, 3], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 593, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "c3a8f68c88eeea1a255db6a7e012ec22", | |
| "tweak": "a841e8a1819dfb69", | |
| "msg": [20, 25, 24, 33, 33, -1, 10, 1, 31, 35, 31, 35, 29, 25, 6, 20], | |
| "ct": [22, 13, 16, 19, 26, 14, 33, 24, 13, 13, 25, 24, 3, 29, 19, 2], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 594, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "c3a8f68c88eeea1a255db6a7e012ec22", | |
| "tweak": "a841e8a1819dfb69", | |
| "msg": [20, 25, 24, 33, 33, 29, 10, 1, 31, 35, 31, 35, 29, 25, 6, -1], | |
| "ct": [21, 34, 13, 23, 17, 33, 26, 34, 22, 12, 8, 7, 22, 16, 2, 14], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 595, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "01dfa9fbe1a2ada71f97c3088c30293c", | |
| "tweak": "e7fc6a5a990ca1d4", | |
| "msg": [36, 16, 27, 15, 20, 33, 13, 22, 21, 19, 26, 16, 16, 27, 6, 21], | |
| "ct": [17, 29, 3, 13, 30, 28, 13, 32, 29, 1, 17, 3, 27, 22, 12, 10], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 596, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "01dfa9fbe1a2ada71f97c3088c30293c", | |
| "tweak": "e7fc6a5a990ca1d4", | |
| "msg": [30, 16, 27, 15, 20, 36, 13, 22, 21, 19, 26, 16, 16, 27, 6, 21], | |
| "ct": [15, 26, 32, 13, 29, 30, 6, 33, 25, 24, 32, 28, 3, 3, 0, 8], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 597, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "01dfa9fbe1a2ada71f97c3088c30293c", | |
| "tweak": "e7fc6a5a990ca1d4", | |
| "msg": [30, 16, 27, 15, 20, 33, 13, 22, 21, 19, 26, 16, 16, 27, 6, 36], | |
| "ct": [17, 18, 24, 21, 28, 5, 4, 22, 19, 15, 13, 34, 16, 27, 7, 23], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 17, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 598, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "22351a53774415942eb879b483eda9a2", | |
| "tweak": "b4a5dce9958d53fc", | |
| "msg": [1, 0, 4, 15, 22, 1, 23, 7, 25, 33, 25, 26, 8, 28, 3, 16, 14], | |
| "ct": [20, 8, 34, 15, 8, 35, 0, 10, 35, 31, 12, 4, 18, 32, 31, 18, 26], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 599, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [9, 0, 4, 26, 24, 8, 30, 2, 34, 15, 7, 18, 17, 9, 11, 15, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 600, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "ct": [7, 13, 3, 7, 10, 17, 33, 31, 23, 32, 26, 19, 23, 31, 21, 2, 29], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 601, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [28, 2, 7, 29, 24, 3, 12, 32, 24, 33, 34, 34, 13, 14, 35, 16, 16], | |
| "ct": [1, 9, 32, 25, 8, 11, 17, 19, 27, 32, 31, 0, 35, 16, 29, 24, 22], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 602, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [28, 2, 7, 29, 24, 3, 12, 31, 24, 33, 34, 34, 13, 14, 35, 16, 15], | |
| "ct": [27, 19, 17, 21, 2, 16, 18, 29, 25, 18, 24, 29, 4, 17, 34, 21, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 603, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [10, 13, 33, 20, 22, 2, 12, 17, 24, 34, 2, 9, 32, 1, 21, 17, 30], | |
| "ct": [14, 3, 19, 31, 23, 2, 6, 11, 2, 31, 2, 29, 0, 24, 12, 30, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 604, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [1, 16, 15, 11, 13, 6, 35, 25, 12, 15, 24, 2, 32, 32, 33, 5, 14], | |
| "ct": [24, 17, 17, 24, 16, 10, 34, 12, 35, 27, 9, 1, 6, 33, 20, 18, 26], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 605, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [14, 18, 4, 14, 30, 14, 34, 4, 35, 11, 4, 12, 26, 5, 34, 26, 28], | |
| "ct": [26, 15, 29, 3, 33, 27, 8, 10, 32, 15, 33, 11, 5, 28, 4, 35, 25], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 606, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [19, 27, 17, 2, 5, 21, 22, 1, 2, 18, 15, 25, 6, 20, 32, 11, 27], | |
| "ct": [30, 27, 17, 19, 17, 25, 5, 12, 33, 3, 4, 28, 31, 22, 23, 25, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 607, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [34, 14, 20, 29, 1, 10, 31, 25, 31, 18, 17, 3, 7, 32, 19, 15, 17], | |
| "ct": [5, 21, 28, 11, 14, 33, 3, 4, 0, 7, 34, 35, 35, 5, 32, 22, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 608, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [0, 35, 18, 5, 10, 29, 34, 27, 10, 20, 34, 12, 7, 19, 35, 12, 0], | |
| "ct": [34, 34, 14, 26, 20, 5, 7, 3, 15, 33, 31, 32, 32, 27, 2, 21, 27], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 609, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [31, 14, 12, 9, 32, 31, 19, 33, 0, 0, 26, 18, 35, 5, 19, 4, 0], | |
| "ct": [18, 27, 18, 28, 2, 5, 12, 4, 6, 6, 35, 16, 26, 28, 29, 19, 22], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 610, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [23, 23, 0, 20, 1, 15, 8, 10, 17, 35, 26, 20, 17, 19, 34, 30, 27], | |
| "ct": [28, 6, 17, 28, 19, 28, 18, 8, 6, 1, 25, 10, 21, 26, 26, 18, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 611, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [22, 24, 23, 22, 2, 29, 5, 23, 24, 25, 8, 4, 15, 18, 27, 1, 30], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 612, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [30, 16, 11, 7, 5, 27, 23, 29, 29, 22, 0, 30, 13, 30, 7, 7, 6], | |
| "ct": [35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 613, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [35, 30, 19, 10, 26, 3, 20, 4, 16, 19, 8, 9, 23, 12, 3, 23, 35], | |
| "ct": [28, 2, 7, 29, 24, 3, 12, 32, 24, 33, 34, 34, 13, 14, 35, 16, 16], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 614, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [23, 25, 10, 29, 31, 21, 32, 32, 0, 4, 11, 2, 34, 0, 25, 18, 16], | |
| "ct": [28, 2, 7, 29, 24, 3, 12, 31, 24, 33, 34, 34, 13, 14, 35, 16, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 615, | |
| "comment": "y = 0 and (y + a) % radix**8 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "7334599807aa92173e", | |
| "msg": [7, 12, 19, 3, 28, 32, 11, 28, 5, 33, 5, 6, 25, 14, 33, 28, 15], | |
| "ct": [32, 5, 17, 2, 26, 19, 23, 21, 12, 17, 22, 21, 10, 15, 26, 12, 32], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 616, | |
| "comment": "y = 0 and a = 1 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "7334599807aa92173e", | |
| "msg": [21, 18, 14, 9, 14, 12, 13, 6, 12, 7, 23, 17, 17, 16, 33, 28, 16], | |
| "ct": [8, 20, 19, 35, 3, 2, 27, 27, 29, 21, 25, 7, 22, 6, 31, 11, 23], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 617, | |
| "comment": "y = 0 and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "7334599807aa92173e", | |
| "msg": [9, 31, 28, 13, 30, 33, 24, 29, 2, 33, 18, 7, 32, 18, 20, 23, 18], | |
| "ct": [22, 32, 21, 3, 20, 6, 12, 13, 13, 16, 34, 11, 13, 0, 4, 31, 25], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 618, | |
| "comment": "y = 0 and (y + a) % radix**8 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "7334599807aa92173e", | |
| "msg": [11, 14, 12, 19, 30, 22, 26, 17, 34, 32, 8, 16, 35, 16, 0, 25, 14], | |
| "ct": [3, 24, 8, 28, 11, 3, 35, 11, 31, 26, 11, 9, 35, 24, 22, 8, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 619, | |
| "comment": "y = 1 and a = 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "f6fea1fd8bb8a87768", | |
| "msg": [27, 8, 19, 34, 29, 28, 9, 34, 18, 29, 5, 33, 8, 33, 28, 11, 2], | |
| "ct": [28, 21, 16, 25, 34, 29, 22, 0, 13, 24, 9, 10, 30, 9, 31, 34, 32], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 620, | |
| "comment": "y = 1 and a = 1 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "f6fea1fd8bb8a87768", | |
| "msg": [10, 32, 11, 11, 20, 5, 27, 18, 19, 34, 34, 35, 1, 17, 5, 11, 8], | |
| "ct": [3, 7, 34, 27, 23, 4, 16, 18, 2, 22, 10, 10, 30, 28, 19, 7, 30], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 621, | |
| "comment": "y = 1 and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "f6fea1fd8bb8a87768", | |
| "msg": [24, 0, 23, 13, 27, 27, 24, 21, 13, 4, 14, 34, 31, 27, 24, 0, 18], | |
| "ct": [1, 33, 23, 32, 8, 27, 19, 32, 22, 34, 19, 15, 31, 26, 33, 22, 16], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 622, | |
| "comment": "y = 1 and (y + a) % radix**8 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "f6fea1fd8bb8a87768", | |
| "msg": [3, 9, 2, 29, 20, 17, 2, 30, 21, 3, 21, 16, 0, 5, 9, 10, 32], | |
| "ct": [15, 12, 34, 27, 17, 26, 11, 17, 31, 30, 16, 8, 23, 10, 30, 24, 19], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 623, | |
| "comment": "y = 1 and (y + a) % radix**8 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "f6fea1fd8bb8a87768", | |
| "msg": [33, 9, 4, 2, 14, 35, 33, 30, 14, 14, 32, 4, 8, 32, 27, 1, 24], | |
| "ct": [3, 8, 7, 25, 0, 4, 33, 10, 0, 12, 9, 17, 34, 9, 3, 34, 23], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 624, | |
| "comment": "y is maximal and a = 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "f3a7eaca7b3180ece3", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 32, 26, 18, 32, 18, 24, 3, 7, 15], | |
| "ct": [13, 17, 24, 14, 21, 11, 3, 33, 26, 9, 32, 15, 25, 30, 1, 35, 32], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 625, | |
| "comment": "y is maximal and a = 1 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "f3a7eaca7b3180ece3", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 1, 32, 26, 18, 32, 18, 24, 3, 7, 15], | |
| "ct": [4, 30, 2, 20, 22, 7, 4, 30, 9, 21, 9, 33, 34, 14, 27, 5, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 626, | |
| "comment": "y is maximal and (y + a) % radix**8 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "f3a7eaca7b3180ece3", | |
| "msg": [5, 33, 23, 25, 34, 1, 10, 8, 32, 26, 18, 32, 18, 24, 3, 7, 15], | |
| "ct": [4, 1, 25, 26, 22, 35, 6, 24, 3, 23, 8, 3, 18, 28, 13, 14, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 627, | |
| "comment": "y is maximal and (y + a) % radix**8 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "f3a7eaca7b3180ece3", | |
| "msg": [5, 33, 23, 25, 34, 1, 10, 9, 32, 26, 18, 32, 18, 24, 3, 7, 15], | |
| "ct": [29, 3, 10, 0, 16, 9, 33, 18, 0, 32, 27, 14, 10, 11, 19, 24, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 628, | |
| "comment": "y is maximal and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "f3a7eaca7b3180ece3", | |
| "msg": [28, 2, 7, 29, 24, 3, 12, 32, 32, 26, 18, 32, 18, 24, 3, 7, 15], | |
| "ct": [22, 20, 6, 29, 21, 2, 25, 29, 3, 35, 9, 32, 31, 25, 4, 8, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 629, | |
| "comment": "y is maximal and a is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "f3a7eaca7b3180ece3", | |
| "msg": [35, 35, 35, 35, 35, 35, 35, 35, 32, 26, 18, 32, 18, 24, 3, 7, 15], | |
| "ct": [8, 25, 35, 29, 2, 6, 31, 30, 30, 23, 2, 1, 34, 23, 0, 35, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 630, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "4bf6a4d5c8a54023f6", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 3, 5, 7, 34, 25, 24, 30, 28, 18], | |
| "ct": [9, 26, 25, 4, 17, 31, 29, 13, 19, 11, 23, 17, 34, 2, 8, 18, 24], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 631, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "4bf6a4d5c8a54023f6", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 1, 3, 5, 7, 34, 25, 24, 30, 28, 18], | |
| "ct": [13, 18, 15, 18, 14, 11, 30, 14, 4, 22, 29, 21, 31, 16, 1, 9, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 632, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**8 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "4bf6a4d5c8a54023f6", | |
| "msg": [5, 33, 23, 25, 34, 1, 10, 35, 3, 5, 7, 34, 25, 24, 30, 28, 18], | |
| "ct": [17, 34, 12, 22, 12, 30, 25, 34, 9, 15, 12, 20, 7, 16, 4, 32, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 633, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**8 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "4bf6a4d5c8a54023f6", | |
| "msg": [5, 33, 23, 25, 34, 1, 11, 0, 3, 5, 7, 34, 25, 24, 30, 28, 18], | |
| "ct": [33, 34, 3, 27, 6, 30, 11, 12, 12, 34, 1, 1, 26, 16, 21, 26, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 634, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "4bf6a4d5c8a54023f6", | |
| "msg": [28, 2, 7, 29, 24, 3, 12, 32, 3, 5, 7, 34, 25, 24, 30, 28, 18], | |
| "ct": [32, 28, 34, 28, 1, 34, 22, 11, 27, 31, 16, 30, 28, 33, 25, 28, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 635, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "4bf6a4d5c8a54023f6", | |
| "msg": [35, 35, 35, 35, 35, 35, 35, 35, 3, 5, 7, 34, 25, 24, 30, 28, 18], | |
| "ct": [30, 0, 21, 12, 24, 30, 33, 16, 21, 14, 32, 13, 0, 7, 26, 23, 30], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 636, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**8 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "108652c10fc328ce1e", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 3, 35, 25, 12, 20, 22, 8, 4, 18], | |
| "ct": [35, 33, 10, 17, 11, 34, 15, 6, 11, 10, 5, 14, 2, 2, 21, 5, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 637, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**8 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "108652c10fc328ce1e", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 1, 3, 35, 25, 12, 20, 22, 8, 4, 18], | |
| "ct": [15, 14, 0, 28, 29, 8, 21, 28, 0, 5, 12, 12, 22, 2, 33, 17, 28], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 638, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "108652c10fc328ce1e", | |
| "msg": [28, 2, 7, 29, 24, 3, 12, 32, 3, 35, 25, 12, 20, 22, 8, 4, 18], | |
| "ct": [7, 8, 22, 0, 5, 27, 13, 2, 1, 28, 8, 11, 31, 26, 35, 15, 29], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 639, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "108652c10fc328ce1e", | |
| "msg": [35, 35, 35, 35, 35, 35, 35, 35, 3, 35, 25, 12, 20, 22, 8, 4, 18], | |
| "ct": [34, 30, 25, 6, 25, 35, 27, 23, 9, 18, 22, 20, 9, 25, 12, 20, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 640, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "2ec80962dad2bf783abd539d85a7c8d6", | |
| "tweak": "1a36d2cb8088c664", | |
| "msg": [-1, 22, 5, 32, 29, 1, 4, 10, 28, 27, 29, 24, 26, 17, 20, 1, 12], | |
| "ct": [20, 24, 16, 4, 25, 32, 15, 35, 9, 33, 28, 10, 14, 2, 1, 32, 25], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 641, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "2ec80962dad2bf783abd539d85a7c8d6", | |
| "tweak": "1a36d2cb8088c664", | |
| "msg": [1, 22, 5, 32, 29, -1, 4, 10, 28, 27, 29, 24, 26, 17, 20, 1, 12], | |
| "ct": [24, 33, 1, 21, 19, 33, 9, 0, 28, 1, 33, 15, 13, 23, 20, 33, 13], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 642, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "2ec80962dad2bf783abd539d85a7c8d6", | |
| "tweak": "1a36d2cb8088c664", | |
| "msg": [1, 22, 5, 32, 29, 1, 4, 10, 28, 27, 29, 24, 26, 17, 20, 1, -1], | |
| "ct": [24, 33, 24, 32, 35, 9, 30, 15, 5, 27, 16, 29, 9, 10, 10, 34, 25], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 643, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "bd40a8b41d580b3ae069ede88be2b1b2", | |
| "tweak": "f56f6d0847a998dc", | |
| "msg": [36, 12, 1, 8, 17, 14, 3, 10, 3, 7, 24, 13, 32, 0, 34, 32, 17], | |
| "ct": [11, 5, 19, 24, 34, 30, 10, 2, 3, 30, 33, 32, 5, 5, 3, 15, 6], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 644, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "bd40a8b41d580b3ae069ede88be2b1b2", | |
| "tweak": "f56f6d0847a998dc", | |
| "msg": [29, 12, 1, 8, 17, 36, 3, 10, 3, 7, 24, 13, 32, 0, 34, 32, 17], | |
| "ct": [27, 33, 2, 25, 6, 14, 3, 25, 30, 20, 19, 14, 27, 22, 7, 26, 16], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 645, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "bd40a8b41d580b3ae069ede88be2b1b2", | |
| "tweak": "f56f6d0847a998dc", | |
| "msg": [29, 12, 1, 8, 17, 14, 3, 10, 3, 7, 24, 13, 32, 0, 34, 32, 36], | |
| "ct": [17, 23, 34, 25, 21, 21, 16, 30, 16, 0, 21, 8, 9, 34, 11, 1, 7], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 18, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 646, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "40dcd7ccae73e5e9bba5523fbab77a3c", | |
| "tweak": "60ddd7c8df1437cf", | |
| "msg": [19, 21, 16, 13, 29, 26, 0, 18, 2, 32, 34, 4, 5, 13, 31, 15, 13, 11], | |
| "ct": [13, 22, 28, 22, 3, 24, 21, 18, 14, 34, 15, 2, 20, 15, 24, 25, 7, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 647, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [9, 24, 11, 17, 35, 13, 26, 24, 33, 19, 22, 14, 8, 13, 18, 16, 22, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 648, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "ct": [12, 16, 24, 27, 26, 18, 33, 23, 17, 7, 18, 13, 13, 2, 15, 24, 8, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 649, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [24, 33, 34, 34, 13, 14, 35, 16, 16, 24, 33, 34, 34, 13, 14, 35, 16, 16], | |
| "ct": [18, 15, 1, 8, 4, 8, 25, 31, 23, 18, 11, 1, 34, 21, 32, 25, 9, 34], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 650, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [24, 33, 34, 34, 13, 14, 35, 16, 15, 24, 33, 34, 34, 13, 14, 35, 16, 15], | |
| "ct": [8, 17, 5, 1, 30, 13, 24, 10, 32, 16, 15, 6, 28, 33, 22, 31, 30, 16], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 651, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [20, 17, 6, 9, 2, 13, 22, 33, 3, 13, 1, 33, 17, 16, 2, 28, 9, 20], | |
| "ct": [8, 20, 9, 20, 30, 5, 30, 21, 34, 32, 34, 10, 18, 11, 7, 20, 26, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 652, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [4, 28, 15, 17, 2, 19, 11, 28, 20, 22, 32, 33, 31, 21, 12, 25, 10, 33], | |
| "ct": [24, 12, 15, 15, 29, 26, 9, 6, 28, 35, 29, 20, 30, 4, 31, 0, 32, 24], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 653, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [21, 17, 8, 10, 21, 29, 26, 29, 15, 31, 0, 26, 32, 23, 15, 7, 9, 17], | |
| "ct": [15, 14, 10, 33, 17, 31, 7, 31, 34, 26, 17, 33, 28, 15, 20, 6, 13, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 654, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [26, 26, 4, 21, 16, 5, 13, 26, 1, 21, 8, 23, 21, 3, 10, 33, 25, 6], | |
| "ct": [19, 13, 26, 7, 23, 14, 12, 30, 28, 17, 35, 19, 2, 8, 24, 30, 7, 34], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 655, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [11, 6, 7, 17, 32, 2, 18, 34, 10, 0, 19, 8, 0, 28, 26, 5, 27, 12], | |
| "ct": [27, 31, 26, 23, 0, 10, 2, 21, 32, 34, 10, 0, 15, 24, 29, 23, 18, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 656, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [21, 29, 9, 26, 31, 17, 25, 7, 31, 3, 12, 33, 2, 10, 3, 31, 14, 21], | |
| "ct": [2, 24, 17, 19, 34, 25, 16, 31, 24, 34, 5, 22, 4, 24, 12, 33, 4, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 657, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [12, 17, 3, 15, 16, 14, 4, 32, 6, 19, 30, 25, 22, 10, 18, 19, 31, 29], | |
| "ct": [26, 34, 22, 3, 12, 12, 32, 14, 28, 17, 16, 11, 32, 4, 24, 3, 25, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 658, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [19, 27, 3, 14, 34, 9, 17, 12, 33, 1, 33, 29, 16, 6, 14, 31, 11, 9], | |
| "ct": [35, 16, 34, 17, 26, 27, 29, 3, 3, 22, 29, 12, 23, 13, 25, 3, 19, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 659, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [13, 9, 2, 27, 16, 34, 7, 30, 24, 12, 30, 29, 20, 33, 30, 33, 10, 22], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 660, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [24, 28, 1, 13, 33, 34, 20, 27, 11, 3, 11, 27, 11, 23, 9, 20, 24, 5], | |
| "ct": [35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 661, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [31, 15, 33, 11, 3, 28, 31, 7, 18, 13, 31, 16, 8, 15, 31, 23, 33, 2], | |
| "ct": [24, 33, 34, 34, 13, 14, 35, 16, 16, 24, 33, 34, 34, 13, 14, 35, 16, 16], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 662, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [10, 8, 31, 19, 6, 26, 1, 7, 22, 13, 27, 24, 22, 26, 9, 34, 2, 27], | |
| "ct": [24, 33, 34, 34, 13, 14, 35, 16, 15, 24, 33, 34, 34, 13, 14, 35, 16, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 663, | |
| "comment": "y = 0 and (y + a) % radix**9 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "6787741c83234cd840", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 18, 6, 2, 17, 2, 18, 8, 1, 24], | |
| "ct": [21, 26, 1, 27, 23, 20, 10, 1, 9, 17, 12, 34, 21, 24, 16, 6, 23, 30], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 664, | |
| "comment": "y = 0 and a = 1 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "6787741c83234cd840", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 1, 18, 6, 2, 17, 2, 18, 8, 1, 24], | |
| "ct": [0, 18, 31, 27, 26, 13, 31, 9, 12, 6, 28, 28, 24, 19, 1, 20, 19, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 665, | |
| "comment": "y = 0 and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "6787741c83234cd840", | |
| "msg": [24, 33, 34, 34, 13, 14, 35, 16, 16, 18, 6, 2, 17, 2, 18, 8, 1, 24], | |
| "ct": [6, 1, 24, 4, 25, 13, 2, 24, 31, 30, 28, 18, 31, 2, 8, 3, 29, 25], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 666, | |
| "comment": "y = 0 and (y + a) % radix**9 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "6787741c83234cd840", | |
| "msg": [35, 35, 35, 35, 35, 35, 35, 35, 35, 18, 6, 2, 17, 2, 18, 8, 1, 24], | |
| "ct": [6, 13, 9, 1, 11, 13, 26, 23, 1, 17, 17, 0, 24, 11, 0, 18, 9, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 667, | |
| "comment": "y = 1 and a = 0 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "51a42c6628afa3667b", | |
| "msg": [34, 29, 29, 33, 5, 1, 21, 28, 10, 21, 33, 24, 32, 9, 24, 24, 4, 19], | |
| "ct": [32, 28, 14, 0, 29, 25, 12, 34, 19, 5, 8, 8, 24, 3, 31, 24, 20, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 668, | |
| "comment": "y = 1 and a = 1 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "51a42c6628afa3667b", | |
| "msg": [18, 13, 3, 6, 26, 34, 2, 22, 20, 34, 4, 14, 13, 9, 0, 32, 26, 35], | |
| "ct": [19, 24, 0, 25, 20, 28, 7, 13, 13, 14, 15, 33, 18, 33, 1, 27, 27, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 669, | |
| "comment": "y = 1 and a has large Hamming weight in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "51a42c6628afa3667b", | |
| "msg": [11, 14, 35, 31, 13, 34, 31, 24, 31, 35, 1, 28, 28, 34, 18, 22, 3, 28], | |
| "ct": [8, 14, 24, 19, 8, 15, 34, 0, 32, 7, 1, 9, 30, 3, 29, 14, 29, 32], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 670, | |
| "comment": "y = 1 and (y + a) % radix**9 is maximal in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "51a42c6628afa3667b", | |
| "msg": [6, 24, 0, 33, 16, 11, 31, 15, 3, 16, 17, 11, 21, 15, 30, 3, 7, 10], | |
| "ct": [17, 35, 21, 24, 11, 11, 14, 8, 3, 15, 17, 7, 26, 19, 33, 13, 24, 32], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 671, | |
| "comment": "y = 1 and (y + a) % radix**9 == 0 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "51a42c6628afa3667b", | |
| "msg": [7, 23, 24, 0, 35, 19, 7, 20, 2, 7, 32, 5, 24, 30, 32, 35, 21, 22], | |
| "ct": [23, 8, 5, 24, 16, 24, 33, 29, 1, 7, 20, 6, 31, 14, 23, 6, 2, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 672, | |
| "comment": "y is maximal and a = 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "ca2b2f4de94e9d56c4", | |
| "msg": [29, 3, 25, 15, 2, 9, 32, 21, 19, 33, 26, 10, 14, 1, 20, 27, 28, 6], | |
| "ct": [5, 30, 2, 12, 10, 1, 34, 25, 27, 21, 3, 7, 20, 17, 33, 30, 15, 22], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 673, | |
| "comment": "y is maximal and a = 1 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "ca2b2f4de94e9d56c4", | |
| "msg": [17, 18, 8, 15, 28, 17, 15, 23, 6, 23, 29, 22, 15, 4, 1, 32, 9, 18], | |
| "ct": [5, 30, 2, 12, 10, 1, 34, 25, 28, 8, 18, 4, 18, 17, 12, 4, 23, 18], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 674, | |
| "comment": "y is maximal and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "ca2b2f4de94e9d56c4", | |
| "msg": [9, 0, 29, 30, 22, 5, 2, 35, 18, 13, 27, 7, 29, 35, 7, 3, 33, 20], | |
| "ct": [30, 28, 1, 10, 23, 16, 34, 6, 7, 28, 23, 12, 2, 6, 18, 10, 10, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 675, | |
| "comment": "y is maximal and (y + a) % radix**9 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "ca2b2f4de94e9d56c4", | |
| "msg": [30, 13, 17, 15, 25, 3, 31, 7, 33, 9, 19, 15, 22, 14, 7, 24, 26, 15], | |
| "ct": [35, 35, 35, 35, 35, 35, 35, 35, 35, 1, 9, 29, 28, 7, 15, 32, 7, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 676, | |
| "comment": "y is maximal and (y + a) % radix**9 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "ca2b2f4de94e9d56c4", | |
| "msg": [18, 32, 11, 30, 25, 22, 10, 25, 3, 11, 13, 30, 19, 20, 31, 35, 11, 13], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 28, 29, 28, 24, 17, 5, 17, 23, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 677, | |
| "comment": "y is maximal and a is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "ca2b2f4de94e9d56c4", | |
| "msg": [3, 25, 6, 30, 16, 11, 21, 12, 1, 5, 20, 21, 22, 16, 17, 8, 30, 34], | |
| "ct": [5, 30, 2, 12, 10, 1, 34, 25, 26, 31, 3, 1, 21, 17, 35, 25, 22, 16], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 678, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "e1f2acf9f980631fba", | |
| "msg": [5, 35, 31, 9, 26, 21, 10, 23, 25, 10, 32, 27, 31, 1, 10, 28, 12, 5], | |
| "ct": [5, 30, 2, 12, 10, 1, 34, 25, 0, 26, 21, 26, 16, 27, 11, 32, 4, 21], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 679, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "e1f2acf9f980631fba", | |
| "msg": [23, 6, 33, 16, 22, 9, 18, 8, 4, 3, 1, 6, 22, 8, 28, 3, 12, 21], | |
| "ct": [5, 30, 2, 12, 10, 1, 34, 25, 1, 34, 29, 27, 14, 11, 13, 4, 34, 25], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 680, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "e1f2acf9f980631fba", | |
| "msg": [3, 34, 26, 4, 18, 34, 21, 10, 18, 10, 26, 19, 8, 29, 32, 8, 22, 10], | |
| "ct": [30, 28, 1, 10, 23, 16, 34, 5, 16, 1, 4, 26, 7, 18, 9, 9, 30, 29], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 681, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**9 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "e1f2acf9f980631fba", | |
| "msg": [26, 2, 29, 9, 25, 32, 12, 28, 10, 29, 34, 8, 5, 12, 7, 32, 4, 21], | |
| "ct": [35, 35, 35, 35, 35, 35, 35, 35, 35, 21, 31, 30, 16, 22, 11, 23, 25, 34], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 682, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**9 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "e1f2acf9f980631fba", | |
| "msg": [35, 3, 12, 3, 16, 4, 21, 6, 25, 16, 8, 8, 28, 34, 30, 33, 31, 28], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 13, 24, 16, 22, 15, 3, 8, 29, 22], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 683, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "e1f2acf9f980631fba", | |
| "msg": [20, 21, 7, 26, 13, 22, 30, 18, 23, 12, 21, 23, 9, 14, 19, 32, 33, 0], | |
| "ct": [5, 30, 2, 12, 10, 1, 34, 24, 35, 5, 28, 2, 6, 30, 8, 25, 0, 31], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 684, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**9 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "ed2c18c84f206d9a3b", | |
| "msg": [2, 34, 19, 28, 7, 15, 3, 22, 18, 2, 21, 30, 11, 4, 16, 28, 30, 33], | |
| "ct": [34, 35, 33, 16, 22, 22, 16, 20, 24, 30, 17, 11, 17, 15, 2, 12, 6, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 685, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**9 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "ed2c18c84f206d9a3b", | |
| "msg": [8, 6, 12, 31, 25, 15, 2, 18, 18, 16, 1, 0, 13, 35, 23, 13, 12, 26], | |
| "ct": [13, 20, 13, 29, 25, 10, 22, 17, 1, 21, 5, 3, 16, 5, 8, 22, 26, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 686, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "ed2c18c84f206d9a3b", | |
| "msg": [5, 34, 3, 33, 34, 35, 13, 6, 24, 28, 24, 32, 23, 12, 34, 28, 2, 20], | |
| "ct": [20, 7, 28, 13, 10, 25, 18, 27, 28, 2, 15, 11, 23, 7, 15, 33, 19, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 687, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "ed2c18c84f206d9a3b", | |
| "msg": [14, 35, 15, 23, 7, 33, 13, 28, 22, 17, 12, 26, 0, 13, 24, 24, 1, 24], | |
| "ct": [22, 28, 20, 25, 23, 15, 14, 23, 34, 14, 35, 7, 27, 1, 7, 6, 7, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 688, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "8f3a40ed121d763ce94121d1a884ac4f", | |
| "tweak": "5e37cf940f79d378", | |
| "msg": [-1, 27, 29, 16, 34, 1, 28, 20, 10, 31, 33, 0, 28, 26, 17, 9, 35, 17], | |
| "ct": [22, 5, 6, 22, 35, 5, 34, 27, 9, 14, 18, 25, 1, 17, 22, 31, 16, 9], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 689, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "8f3a40ed121d763ce94121d1a884ac4f", | |
| "tweak": "5e37cf940f79d378", | |
| "msg": [3, 27, 29, 16, 34, 1, -1, 20, 10, 31, 33, 0, 28, 26, 17, 9, 35, 17], | |
| "ct": [28, 10, 8, 14, 4, 21, 34, 28, 10, 32, 29, 1, 10, 23, 18, 29, 5, 15], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 690, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "8f3a40ed121d763ce94121d1a884ac4f", | |
| "tweak": "5e37cf940f79d378", | |
| "msg": [3, 27, 29, 16, 34, 1, 28, 20, 10, 31, 33, 0, 28, 26, 17, 9, 35, -1], | |
| "ct": [7, 3, 10, 31, 9, 4, 23, 18, 9, 16, 3, 29, 18, 32, 26, 20, 28, 20], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 691, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "50e53bef6a6de0c622c38c6300442ad8", | |
| "tweak": "92875b2dd2e63358", | |
| "msg": [36, 24, 16, 35, 34, 3, 26, 11, 1, 14, 2, 33, 23, 22, 5, 35, 23, 33], | |
| "ct": [32, 10, 26, 33, 7, 30, 15, 2, 21, 25, 17, 18, 24, 11, 35, 8, 22, 15], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 692, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "50e53bef6a6de0c622c38c6300442ad8", | |
| "tweak": "92875b2dd2e63358", | |
| "msg": [20, 24, 16, 35, 34, 3, 36, 11, 1, 14, 2, 33, 23, 22, 5, 35, 23, 33], | |
| "ct": [30, 8, 35, 13, 2, 8, 4, 17, 15, 18, 35, 2, 9, 4, 4, 0, 20, 6], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 693, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "50e53bef6a6de0c622c38c6300442ad8", | |
| "tweak": "92875b2dd2e63358", | |
| "msg": [20, 24, 16, 35, 34, 3, 26, 11, 1, 14, 2, 33, 23, 22, 5, 35, 23, 36], | |
| "ct": [18, 15, 1, 8, 11, 34, 10, 23, 4, 27, 34, 33, 20, 24, 21, 31, 5, 24], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 19, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 694, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "3591cc97af4a5d1492305f87269ee691", | |
| "tweak": "13786144a50ef10a", | |
| "msg": [16, 27, 5, 13, 33, 23, 9, 27, 29, 31, 30, 0, 32, 22, 24, 7, 2, 1, 18], | |
| "ct": [32, 11, 14, 17, 3, 30, 27, 18, 15, 21, 17, 17, 29, 12, 31, 14, 2, 35, 31], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 695, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [7, 12, 7, 8, 15, 24, 8, 12, 0, 5, 2, 26, 26, 23, 33, 26, 10, 16, 25], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 696, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "ct": [33, 19, 18, 34, 32, 7, 16, 25, 20, 8, 24, 8, 26, 0, 2, 30, 12, 12, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 697, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [24, 33, 34, 34, 13, 14, 35, 16, 16, 22, 6, 7, 2, 19, 33, 11, 18, 22, 8], | |
| "ct": [21, 26, 15, 2, 1, 13, 3, 5, 22, 27, 0, 3, 32, 8, 0, 25, 4, 17, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 698, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [24, 33, 34, 34, 13, 14, 35, 16, 15, 22, 6, 7, 2, 19, 33, 11, 18, 22, 7], | |
| "ct": [6, 4, 21, 18, 19, 13, 24, 3, 16, 32, 11, 31, 21, 29, 1, 1, 18, 32, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 699, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [32, 35, 19, 21, 23, 5, 15, 8, 26, 32, 31, 19, 25, 5, 3, 15, 10, 34, 0], | |
| "ct": [6, 21, 8, 33, 2, 18, 35, 14, 17, 22, 16, 30, 28, 20, 7, 35, 16, 6, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 700, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [32, 4, 35, 8, 1, 28, 5, 20, 11, 35, 3, 16, 5, 13, 11, 8, 2, 24, 25], | |
| "ct": [9, 13, 18, 18, 1, 17, 1, 13, 0, 22, 33, 14, 13, 19, 35, 26, 8, 7, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 701, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [9, 5, 14, 29, 4, 26, 14, 11, 31, 24, 31, 20, 12, 22, 15, 30, 17, 30, 19], | |
| "ct": [14, 19, 29, 31, 35, 24, 5, 35, 19, 16, 25, 7, 2, 9, 15, 13, 23, 27, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 702, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [30, 21, 35, 4, 25, 6, 31, 2, 24, 3, 23, 9, 33, 6, 17, 14, 12, 7, 28], | |
| "ct": [28, 27, 33, 9, 30, 23, 1, 1, 34, 20, 21, 23, 9, 3, 18, 12, 21, 13, 24], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 703, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [33, 30, 6, 27, 27, 5, 0, 24, 14, 2, 29, 15, 0, 15, 22, 17, 0, 28, 15], | |
| "ct": [26, 1, 33, 4, 0, 30, 25, 13, 30, 31, 25, 32, 17, 26, 5, 9, 2, 29, 28], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 704, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [35, 32, 21, 30, 18, 32, 26, 1, 28, 29, 28, 15, 11, 12, 34, 15, 25, 0, 14], | |
| "ct": [7, 3, 16, 2, 3, 15, 33, 23, 10, 13, 14, 25, 12, 35, 13, 32, 6, 15, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 705, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [15, 0, 2, 15, 6, 11, 17, 8, 18, 11, 11, 26, 12, 10, 18, 21, 21, 31, 11], | |
| "ct": [21, 15, 5, 9, 4, 7, 12, 3, 34, 22, 35, 18, 30, 7, 22, 27, 8, 32, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 706, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [20, 4, 18, 9, 23, 7, 28, 23, 6, 32, 7, 6, 26, 33, 4, 31, 29, 26, 14], | |
| "ct": [4, 18, 1, 16, 8, 7, 20, 7, 24, 25, 15, 21, 15, 8, 35, 2, 10, 22, 24], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 707, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [14, 25, 4, 6, 35, 4, 17, 29, 32, 21, 5, 11, 24, 16, 14, 0, 7, 17, 5], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 708, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [17, 29, 22, 26, 12, 14, 4, 21, 0, 9, 16, 19, 35, 11, 33, 21, 17, 16, 11], | |
| "ct": [35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 709, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [24, 14, 13, 29, 16, 22, 9, 7, 3, 0, 19, 28, 0, 3, 28, 10, 35, 6, 2], | |
| "ct": [24, 33, 34, 34, 13, 14, 35, 16, 16, 22, 6, 7, 2, 19, 33, 11, 18, 22, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 710, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [34, 22, 9, 26, 30, 21, 8, 19, 19, 2, 17, 1, 21, 28, 19, 4, 34, 19, 17], | |
| "ct": [24, 33, 34, 34, 13, 14, 35, 16, 15, 22, 6, 7, 2, 19, 33, 11, 18, 22, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 711, | |
| "comment": "y = 0 and (y + a) % radix**9 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "cc0926c5165ff53e", | |
| "msg": [22, 23, 11, 10, 10, 34, 11, 9, 33, 11, 22, 22, 33, 29, 8, 17, 21, 9, 17], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 16, 5, 32, 5, 20, 1, 29, 9, 25, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 712, | |
| "comment": "y = 0 and a = 1 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "cc0926c5165ff53e", | |
| "msg": [24, 20, 27, 0, 7, 34, 28, 31, 1, 26, 24, 0, 30, 34, 7, 25, 4, 19, 7], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 1, 20, 9, 26, 12, 6, 33, 24, 30, 30, 18], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 713, | |
| "comment": "y = 0 and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "cc0926c5165ff53e", | |
| "msg": [5, 28, 1, 34, 19, 26, 11, 4, 9, 2, 33, 17, 32, 15, 14, 17, 8, 3, 17], | |
| "ct": [24, 33, 34, 34, 13, 14, 35, 16, 16, 22, 21, 21, 32, 10, 11, 15, 1, 3, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 714, | |
| "comment": "y = 0 and (y + a) % radix**9 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "cc0926c5165ff53e", | |
| "msg": [2, 16, 14, 7, 20, 32, 30, 7, 17, 6, 31, 13, 8, 6, 3, 26, 12, 3, 1], | |
| "ct": [35, 35, 35, 35, 35, 35, 35, 35, 35, 30, 21, 20, 19, 26, 0, 35, 30, 18, 26], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 715, | |
| "comment": "y = 1 and a = 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "ab1910d134149b3a", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 18, 13, 18, 35, 11, 12, 30, 3, 14, 22], | |
| "ct": [13, 5, 5, 27, 23, 21, 30, 28, 22, 29, 32, 20, 5, 32, 35, 9, 20, 31, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 716, | |
| "comment": "y = 1 and a = 1 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "ab1910d134149b3a", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 1, 18, 13, 18, 35, 11, 12, 30, 3, 14, 22], | |
| "ct": [26, 19, 32, 26, 21, 16, 19, 0, 34, 24, 28, 30, 4, 29, 35, 35, 3, 4, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 717, | |
| "comment": "y = 1 and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "ab1910d134149b3a", | |
| "msg": [24, 33, 34, 34, 13, 14, 35, 16, 16, 18, 13, 18, 35, 11, 12, 30, 3, 14, 22], | |
| "ct": [27, 12, 14, 10, 34, 19, 13, 3, 25, 7, 27, 24, 30, 27, 3, 10, 10, 3, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 718, | |
| "comment": "y = 1 and (y + a) % radix**9 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "ab1910d134149b3a", | |
| "msg": [35, 35, 35, 35, 35, 35, 35, 35, 34, 18, 13, 18, 35, 11, 12, 30, 3, 14, 22], | |
| "ct": [7, 19, 24, 2, 1, 10, 16, 6, 5, 29, 29, 6, 15, 7, 18, 35, 11, 34, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 719, | |
| "comment": "y = 1 and (y + a) % radix**9 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "ab1910d134149b3a", | |
| "msg": [35, 35, 35, 35, 35, 35, 35, 35, 35, 18, 13, 18, 35, 11, 12, 30, 3, 14, 22], | |
| "ct": [4, 22, 28, 2, 12, 32, 17, 14, 1, 25, 14, 23, 9, 3, 26, 6, 32, 15, 26], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 720, | |
| "comment": "y is maximal and a = 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "c367313d4cfc6894", | |
| "msg": [32, 33, 6, 35, 15, 21, 12, 16, 5, 19, 24, 1, 22, 26, 12, 29, 23, 2, 26], | |
| "ct": [16, 34, 32, 16, 28, 21, 0, 0, 12, 11, 5, 30, 29, 12, 8, 2, 21, 10, 18], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 721, | |
| "comment": "y is maximal and a = 1 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "c367313d4cfc6894", | |
| "msg": [25, 14, 24, 6, 30, 17, 7, 18, 29, 32, 31, 3, 2, 14, 34, 34, 14, 12, 18], | |
| "ct": [30, 20, 23, 24, 27, 3, 31, 12, 17, 33, 33, 29, 9, 32, 34, 9, 31, 21, 18], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 722, | |
| "comment": "y is maximal and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "c367313d4cfc6894", | |
| "msg": [1, 21, 23, 28, 9, 35, 3, 3, 19, 4, 34, 32, 1, 22, 23, 26, 0, 16, 2], | |
| "ct": [18, 10, 0, 21, 27, 29, 16, 26, 5, 24, 4, 29, 30, 7, 30, 22, 8, 28, 26], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 723, | |
| "comment": "y is maximal and (y + a) % radix**9 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "c367313d4cfc6894", | |
| "msg": [29, 33, 3, 8, 17, 9, 24, 7, 4, 23, 12, 10, 15, 10, 2, 27, 23, 32, 31], | |
| "ct": [18, 6, 0, 7, 31, 17, 26, 3, 15, 24, 27, 18, 10, 4, 18, 21, 7, 5, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 724, | |
| "comment": "y is maximal and (y + a) % radix**9 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "c367313d4cfc6894", | |
| "msg": [29, 3, 27, 0, 13, 18, 16, 0, 10, 23, 20, 8, 32, 3, 29, 32, 34, 35, 20], | |
| "ct": [23, 31, 24, 35, 10, 27, 27, 17, 24, 7, 31, 12, 11, 33, 2, 24, 9, 15, 26], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 725, | |
| "comment": "y is maximal and a is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "c367313d4cfc6894", | |
| "msg": [18, 7, 26, 25, 8, 25, 7, 7, 25, 27, 3, 8, 23, 1, 20, 25, 31, 2, 23], | |
| "ct": [4, 32, 17, 18, 18, 20, 7, 32, 7, 7, 22, 11, 34, 16, 31, 10, 7, 25, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 726, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "69f43f4161d7cdbc", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 30, 12, 30, 6, 6, 23, 24, 9, 15, 8], | |
| "ct": [16, 30, 35, 8, 26, 16, 20, 9, 24, 21, 26, 17, 32, 31, 30, 9, 9, 26, 25], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 727, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "69f43f4161d7cdbc", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 1, 30, 12, 30, 6, 6, 23, 24, 9, 15, 8], | |
| "ct": [25, 14, 18, 22, 19, 5, 27, 5, 34, 13, 28, 0, 12, 25, 26, 31, 7, 18, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 728, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "69f43f4161d7cdbc", | |
| "msg": [24, 33, 34, 34, 13, 14, 35, 16, 16, 30, 12, 30, 6, 6, 23, 24, 9, 15, 8], | |
| "ct": [8, 0, 28, 27, 20, 25, 23, 30, 6, 30, 2, 31, 12, 26, 30, 28, 27, 7, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 729, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**9 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "69f43f4161d7cdbc", | |
| "msg": [30, 5, 33, 23, 25, 34, 1, 10, 35, 30, 12, 30, 6, 6, 23, 24, 9, 15, 8], | |
| "ct": [18, 24, 11, 13, 14, 14, 9, 19, 24, 31, 26, 34, 33, 5, 34, 34, 29, 3, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 730, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**9 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "69f43f4161d7cdbc", | |
| "msg": [30, 5, 33, 23, 25, 34, 1, 11, 0, 30, 12, 30, 6, 6, 23, 24, 9, 15, 8], | |
| "ct": [28, 22, 25, 12, 20, 6, 27, 33, 2, 22, 34, 9, 5, 27, 35, 23, 10, 1, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 731, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "69f43f4161d7cdbc", | |
| "msg": [35, 35, 35, 35, 35, 35, 35, 35, 35, 30, 12, 30, 6, 6, 23, 24, 9, 15, 8], | |
| "ct": [26, 13, 8, 29, 1, 32, 3, 14, 6, 2, 13, 21, 14, 21, 2, 35, 0, 14, 29], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 732, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**9 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "f1e785108e2dd1c5", | |
| "msg": [26, 2, 24, 1, 32, 35, 1, 19, 26, 5, 11, 29, 8, 13, 18, 14, 28, 24, 18], | |
| "ct": [35, 35, 35, 35, 35, 35, 35, 35, 35, 14, 20, 6, 17, 13, 12, 25, 19, 12, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 733, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**9 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "f1e785108e2dd1c5", | |
| "msg": [12, 2, 5, 15, 31, 35, 33, 28, 29, 35, 11, 24, 27, 34, 26, 7, 23, 26, 25], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 9, 26, 20, 19, 20, 29, 33, 35, 12, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 734, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "f1e785108e2dd1c5", | |
| "msg": [13, 9, 5, 21, 18, 3, 9, 0, 22, 24, 19, 25, 32, 14, 0, 16, 8, 13, 5], | |
| "ct": [24, 33, 34, 34, 13, 14, 35, 16, 15, 25, 14, 2, 30, 21, 11, 19, 22, 9, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 735, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "f1e785108e2dd1c5", | |
| "msg": [18, 9, 2, 23, 32, 35, 13, 24, 22, 13, 23, 19, 18, 4, 30, 30, 33, 18, 30], | |
| "ct": [35, 35, 35, 35, 35, 35, 35, 35, 34, 0, 6, 7, 34, 6, 7, 12, 6, 1, 22], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 736, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "1cf89329cac719e6c7544a9303e78801", | |
| "tweak": "169faf154b10cac4", | |
| "msg": [-1, 7, 34, 33, 20, 13, 8, 34, 9, 15, 1, 15, 19, 12, 27, 27, 34, 22, 23], | |
| "ct": [9, 11, 24, 17, 12, 34, 25, 11, 9, 2, 26, 1, 30, 5, 22, 1, 10, 11, 19], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 737, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "1cf89329cac719e6c7544a9303e78801", | |
| "tweak": "169faf154b10cac4", | |
| "msg": [2, 7, 34, 33, 20, 13, -1, 34, 9, 15, 1, 15, 19, 12, 27, 27, 34, 22, 23], | |
| "ct": [7, 11, 22, 3, 6, 9, 20, 19, 18, 1, 14, 12, 13, 26, 24, 7, 30, 10, 15], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 738, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "1cf89329cac719e6c7544a9303e78801", | |
| "tweak": "169faf154b10cac4", | |
| "msg": [2, 7, 34, 33, 20, 13, 8, 34, 9, 15, 1, 15, 19, 12, 27, 27, 34, 22, -1], | |
| "ct": [24, 28, 0, 9, 22, 7, 13, 8, 5, 24, 12, 5, 3, 1, 29, 19, 26, 7, 29], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 739, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "0566d0dd4d1e33e2107ae38cfb219cc8", | |
| "tweak": "6c7caff29caa8383", | |
| "msg": [36, 14, 9, 28, 9, 11, 22, 26, 22, 16, 29, 17, 16, 0, 20, 34, 24, 22, 7], | |
| "ct": [15, 2, 28, 19, 9, 5, 0, 22, 23, 9, 5, 12, 31, 19, 20, 2, 24, 19, 11], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 740, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "0566d0dd4d1e33e2107ae38cfb219cc8", | |
| "tweak": "6c7caff29caa8383", | |
| "msg": [7, 14, 9, 28, 9, 11, 36, 26, 22, 16, 29, 17, 16, 0, 20, 34, 24, 22, 7], | |
| "ct": [8, 18, 14, 0, 3, 8, 17, 5, 32, 14, 11, 24, 5, 27, 15, 27, 17, 33, 19], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 741, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "0566d0dd4d1e33e2107ae38cfb219cc8", | |
| "tweak": "6c7caff29caa8383", | |
| "msg": [7, 14, 9, 28, 9, 11, 22, 26, 22, 16, 29, 17, 16, 0, 20, 34, 24, 22, 36], | |
| "ct": [2, 1, 28, 29, 26, 13, 1, 1, 8, 29, 2, 8, 16, 21, 18, 35, 1, 19, 14], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 20, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 742, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "ccdf8f792a48fd841d49e060315b0c3d", | |
| "tweak": "508c6ff22207dc5b", | |
| "msg": [33, 1, 22, 32, 27, 24, 16, 33, 16, 31, 11, 25, 35, 24, 12, 11, 11, 14, 24, 5], | |
| "ct": [16, 32, 15, 23, 28, 21, 7, 11, 15, 15, 12, 9, 26, 32, 0, 27, 31, 5, 14, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 743, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [0, 3, 2, 9, 1, 29, 30, 26, 19, 14, 4, 11, 23, 11, 12, 5, 21, 29, 10, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 744, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "ct": [10, 28, 3, 23, 31, 5, 8, 34, 14, 19, 3, 0, 5, 27, 17, 29, 8, 21, 21, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 745, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [22, 6, 7, 2, 19, 33, 11, 18, 22, 8, 22, 6, 7, 2, 19, 33, 11, 18, 22, 8], | |
| "ct": [0, 4, 33, 27, 1, 30, 17, 3, 16, 1, 22, 14, 14, 16, 12, 6, 12, 26, 27, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 746, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [22, 6, 7, 2, 19, 33, 11, 18, 22, 7, 22, 6, 7, 2, 19, 33, 11, 18, 22, 7], | |
| "ct": [34, 6, 14, 15, 4, 34, 9, 9, 9, 34, 12, 12, 10, 35, 27, 4, 11, 10, 17, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 747, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [5, 8, 24, 16, 24, 13, 13, 20, 26, 29, 0, 10, 20, 16, 2, 1, 35, 24, 8, 3], | |
| "ct": [25, 19, 11, 29, 22, 35, 9, 10, 27, 10, 0, 11, 12, 19, 18, 25, 22, 23, 25, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 748, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [35, 27, 9, 3, 3, 33, 8, 25, 16, 33, 33, 9, 4, 14, 6, 22, 8, 23, 21, 34], | |
| "ct": [20, 15, 28, 20, 0, 35, 34, 17, 32, 28, 27, 2, 24, 18, 32, 10, 28, 7, 12, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 749, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [22, 11, 11, 20, 2, 15, 33, 0, 7, 26, 2, 32, 33, 19, 6, 9, 9, 17, 2, 18], | |
| "ct": [8, 32, 28, 15, 15, 32, 13, 34, 21, 21, 35, 32, 34, 29, 23, 12, 29, 22, 11, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 750, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [13, 3, 20, 30, 16, 1, 17, 33, 10, 33, 18, 3, 10, 31, 6, 24, 32, 14, 24, 35], | |
| "ct": [26, 9, 7, 14, 3, 9, 30, 1, 5, 25, 30, 16, 29, 1, 2, 17, 22, 34, 3, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 751, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [27, 22, 35, 8, 25, 6, 28, 14, 28, 8, 25, 4, 23, 24, 0, 3, 13, 12, 22, 8], | |
| "ct": [14, 11, 26, 5, 16, 11, 4, 21, 9, 4, 5, 11, 23, 33, 21, 33, 29, 8, 34, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 752, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [33, 29, 9, 13, 18, 17, 16, 15, 0, 12, 24, 5, 13, 13, 6, 10, 35, 34, 17, 23], | |
| "ct": [11, 14, 2, 6, 10, 4, 1, 19, 29, 1, 3, 22, 31, 24, 14, 6, 11, 27, 32, 23], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 753, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [18, 14, 6, 20, 3, 16, 6, 2, 24, 4, 24, 16, 32, 0, 7, 21, 4, 29, 9, 25], | |
| "ct": [0, 6, 27, 31, 4, 24, 13, 15, 34, 18, 2, 28, 29, 11, 17, 30, 24, 31, 17, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 754, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [10, 31, 26, 23, 2, 34, 27, 8, 12, 32, 2, 2, 22, 6, 21, 31, 2, 23, 28, 20], | |
| "ct": [16, 11, 13, 4, 9, 21, 11, 25, 26, 16, 7, 22, 5, 27, 35, 2, 7, 19, 3, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 755, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [26, 29, 3, 20, 32, 9, 13, 8, 8, 24, 4, 9, 22, 11, 27, 35, 32, 22, 18, 2], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 756, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [13, 30, 22, 13, 14, 31, 31, 23, 7, 14, 31, 22, 15, 13, 10, 22, 9, 16, 19, 27], | |
| "ct": [35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 757, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [25, 27, 33, 27, 19, 31, 22, 18, 14, 7, 33, 7, 6, 26, 22, 0, 26, 7, 0, 0], | |
| "ct": [22, 6, 7, 2, 19, 33, 11, 18, 22, 8, 22, 6, 7, 2, 19, 33, 11, 18, 22, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 758, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [20, 9, 19, 26, 0, 13, 7, 16, 2, 35, 34, 27, 4, 27, 34, 25, 32, 33, 29, 24], | |
| "ct": [22, 6, 7, 2, 19, 33, 11, 18, 22, 7, 22, 6, 7, 2, 19, 33, 11, 18, 22, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 759, | |
| "comment": "y = 0 and (y + a) % radix**10 == 0 in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "37d2f22769f73404", | |
| "msg": [35, 3, 19, 1, 29, 23, 6, 8, 10, 5, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [28, 23, 3, 30, 16, 10, 2, 21, 17, 2, 21, 5, 0, 12, 7, 17, 27, 35, 30, 18], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 760, | |
| "comment": "y = 0 and a = 1 in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "37d2f22769f73404", | |
| "msg": [5, 34, 14, 17, 18, 20, 14, 4, 21, 33, 0, 0, 0, 0, 0, 0, 0, 0, 0, 1], | |
| "ct": [32, 22, 1, 9, 29, 3, 20, 18, 32, 23, 25, 34, 23, 7, 8, 12, 33, 15, 19, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 761, | |
| "comment": "y = 0 and a has large Hamming weight in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "37d2f22769f73404", | |
| "msg": [17, 1, 2, 13, 0, 18, 7, 5, 34, 33, 22, 6, 7, 2, 19, 33, 11, 18, 22, 8], | |
| "ct": [2, 14, 7, 6, 35, 1, 18, 18, 32, 27, 26, 27, 7, 33, 22, 10, 26, 6, 3, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 762, | |
| "comment": "y = 0 and (y + a) % radix**10 is maximal in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "37d2f22769f73404", | |
| "msg": [32, 30, 32, 13, 1, 15, 16, 24, 26, 5, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "ct": [0, 15, 1, 27, 9, 22, 24, 25, 10, 7, 13, 34, 33, 28, 24, 34, 4, 27, 34, 18], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 763, | |
| "comment": "y = 1 and a = 0 in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "c212bdbaba1f6b62", | |
| "msg": [13, 24, 0, 14, 25, 13, 4, 2, 27, 24, 14, 1, 16, 35, 30, 28, 18, 32, 20, 35], | |
| "ct": [33, 27, 28, 4, 22, 31, 16, 5, 12, 9, 18, 1, 33, 15, 15, 26, 3, 3, 34, 25], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 764, | |
| "comment": "y = 1 and a = 1 in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "c212bdbaba1f6b62", | |
| "msg": [19, 11, 27, 20, 18, 1, 14, 15, 23, 33, 22, 19, 21, 11, 28, 10, 30, 34, 33, 33], | |
| "ct": [27, 24, 24, 15, 33, 19, 28, 16, 22, 35, 14, 16, 23, 15, 9, 19, 30, 18, 5, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 765, | |
| "comment": "y = 1 and a has large Hamming weight in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "c212bdbaba1f6b62", | |
| "msg": [5, 29, 20, 0, 25, 17, 19, 0, 16, 19, 24, 24, 7, 31, 4, 0, 30, 34, 15, 7], | |
| "ct": [8, 30, 35, 6, 6, 20, 21, 32, 19, 20, 1, 19, 8, 32, 35, 32, 10, 7, 25, 26], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 766, | |
| "comment": "y = 1 and (y + a) % radix**10 is maximal in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "c212bdbaba1f6b62", | |
| "msg": [4, 28, 13, 19, 28, 27, 27, 28, 29, 27, 34, 11, 28, 2, 11, 20, 23, 19, 17, 24], | |
| "ct": [18, 4, 10, 2, 28, 9, 28, 26, 24, 28, 7, 0, 7, 7, 29, 12, 30, 1, 22, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 767, | |
| "comment": "y = 1 and (y + a) % radix**10 == 0 in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "c212bdbaba1f6b62", | |
| "msg": [33, 3, 21, 17, 0, 17, 13, 31, 0, 1, 21, 28, 1, 4, 18, 25, 22, 10, 4, 2], | |
| "ct": [10, 6, 35, 6, 7, 18, 28, 1, 5, 12, 35, 35, 28, 20, 9, 17, 25, 5, 35, 34], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 768, | |
| "comment": "y is maximal and a = 0 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "d13c00dbe4c1c80f", | |
| "msg": [20, 31, 19, 28, 26, 6, 28, 31, 7, 28, 3, 32, 19, 32, 11, 0, 9, 11, 16, 33], | |
| "ct": [21, 29, 1, 30, 31, 1, 29, 20, 13, 4, 16, 5, 30, 2, 12, 10, 1, 34, 25, 27], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 769, | |
| "comment": "y is maximal and a = 1 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "d13c00dbe4c1c80f", | |
| "msg": [11, 26, 7, 31, 31, 4, 28, 19, 15, 25, 4, 24, 15, 19, 4, 4, 11, 3, 0, 20], | |
| "ct": [21, 29, 1, 30, 31, 1, 29, 20, 13, 4, 16, 5, 30, 2, 12, 10, 1, 34, 25, 28], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 770, | |
| "comment": "y is maximal and (y + a) % radix**10 is maximal in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "d13c00dbe4c1c80f", | |
| "msg": [8, 28, 10, 24, 14, 31, 14, 18, 11, 34, 29, 34, 29, 3, 21, 24, 12, 26, 15, 22], | |
| "ct": [21, 29, 1, 30, 31, 1, 29, 20, 13, 4, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 771, | |
| "comment": "y is maximal and (y + a) % radix**10 == 0 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "d13c00dbe4c1c80f", | |
| "msg": [15, 21, 31, 6, 12, 30, 4, 0, 16, 7, 5, 0, 23, 25, 7, 23, 10, 1, 32, 25], | |
| "ct": [21, 29, 1, 30, 31, 1, 29, 20, 13, 4, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 772, | |
| "comment": "y is maximal and a has large Hamming weight in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "d13c00dbe4c1c80f", | |
| "msg": [1, 20, 0, 4, 3, 11, 14, 10, 12, 9, 17, 28, 9, 31, 10, 22, 6, 27, 0, 9], | |
| "ct": [21, 29, 1, 30, 31, 1, 29, 20, 13, 4, 2, 12, 1, 4, 32, 7, 13, 17, 11, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 773, | |
| "comment": "y is maximal and a is maximal in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "d13c00dbe4c1c80f", | |
| "msg": [10, 9, 33, 20, 16, 25, 3, 3, 20, 8, 30, 30, 35, 16, 30, 32, 21, 0, 16, 13], | |
| "ct": [21, 29, 1, 30, 31, 1, 29, 20, 13, 4, 16, 5, 30, 2, 12, 10, 1, 34, 25, 26], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 774, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "ef2f02428ffe0b38", | |
| "msg": [28, 19, 21, 22, 5, 16, 6, 19, 32, 21, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [7, 13, 14, 2, 4, 30, 34, 19, 32, 6, 22, 1, 11, 29, 2, 17, 15, 34, 10, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 775, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "ef2f02428ffe0b38", | |
| "msg": [7, 34, 11, 4, 9, 2, 4, 15, 2, 21, 0, 0, 0, 0, 0, 0, 0, 0, 0, 1], | |
| "ct": [5, 19, 6, 23, 6, 30, 30, 4, 15, 4, 10, 10, 32, 31, 33, 21, 7, 9, 5, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 776, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**10 is maximal in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "ef2f02428ffe0b38", | |
| "msg": [11, 2, 2, 10, 16, 19, 5, 3, 1, 33, 19, 30, 5, 33, 23, 25, 34, 1, 10, 35], | |
| "ct": [23, 35, 21, 15, 12, 8, 16, 16, 29, 0, 11, 30, 21, 22, 16, 10, 3, 12, 20, 23], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 777, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**10 == 0 in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "ef2f02428ffe0b38", | |
| "msg": [17, 23, 19, 21, 21, 10, 12, 14, 19, 14, 19, 30, 5, 33, 23, 25, 34, 1, 11, 0], | |
| "ct": [17, 12, 17, 35, 19, 15, 0, 34, 2, 17, 23, 26, 13, 5, 20, 24, 10, 5, 31, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 778, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "ef2f02428ffe0b38", | |
| "msg": [34, 25, 13, 22, 29, 5, 10, 6, 26, 1, 22, 6, 7, 2, 19, 33, 11, 18, 22, 8], | |
| "ct": [28, 34, 25, 32, 4, 0, 20, 6, 4, 9, 22, 19, 13, 6, 1, 1, 1, 26, 1, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 779, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "ef2f02428ffe0b38", | |
| "msg": [23, 7, 8, 6, 24, 35, 17, 16, 3, 26, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "ct": [16, 23, 33, 2, 23, 10, 32, 19, 25, 24, 29, 1, 14, 17, 0, 1, 10, 19, 7, 29], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 780, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**10 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "10f3f096e726e694", | |
| "msg": [30, 31, 3, 0, 5, 23, 18, 13, 34, 8, 21, 16, 33, 29, 10, 24, 17, 12, 3, 18], | |
| "ct": [35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 9, 27, 9, 31, 14, 21, 10, 8, 30, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 781, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**10 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "10f3f096e726e694", | |
| "msg": [34, 3, 13, 10, 16, 5, 16, 24, 20, 1, 32, 33, 21, 24, 18, 3, 19, 34, 0, 4], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 9, 16, 35, 21, 30, 7, 25, 23, 24, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 782, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "10f3f096e726e694", | |
| "msg": [24, 7, 5, 12, 35, 7, 34, 20, 16, 22, 20, 12, 23, 33, 24, 15, 30, 20, 14, 24], | |
| "ct": [22, 6, 7, 2, 19, 33, 11, 18, 22, 7, 9, 5, 22, 26, 8, 30, 2, 12, 31, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 783, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "10f3f096e726e694", | |
| "msg": [10, 7, 32, 8, 21, 12, 23, 21, 21, 4, 1, 22, 25, 23, 28, 0, 21, 18, 1, 31], | |
| "ct": [35, 35, 35, 35, 35, 35, 35, 35, 35, 34, 19, 23, 12, 17, 24, 1, 12, 20, 20, 24], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 784, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "4e8c0fdab138c9df8d4a888e6c2df1dd", | |
| "tweak": "76f494b34dbcd3bc", | |
| "msg": [-1, 25, 16, 21, 34, 24, 32, 28, 32, 13, 29, 11, 17, 16, 31, 20, 28, 34, 26, 31], | |
| "ct": [12, 2, 3, 26, 6, 15, 20, 2, 6, 25, 16, 12, 35, 17, 19, 15, 5, 12, 19, 27], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 785, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "4e8c0fdab138c9df8d4a888e6c2df1dd", | |
| "tweak": "76f494b34dbcd3bc", | |
| "msg": [31, 25, 16, 21, 34, 24, -1, 28, 32, 13, 29, 11, 17, 16, 31, 20, 28, 34, 26, 31], | |
| "ct": [22, 4, 19, 8, 29, 22, 17, 9, 22, 34, 6, 33, 18, 15, 3, 3, 33, 30, 30, 23], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 786, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "4e8c0fdab138c9df8d4a888e6c2df1dd", | |
| "tweak": "76f494b34dbcd3bc", | |
| "msg": [31, 25, 16, 21, 34, 24, 32, 28, 32, 13, 29, 11, 17, 16, 31, 20, 28, 34, 26, -1], | |
| "ct": [8, 6, 35, 22, 14, 16, 32, 5, 19, 1, 15, 18, 4, 0, 4, 26, 12, 8, 8, 23], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 787, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "02944e79e375f907e167ab1592e18f1c", | |
| "tweak": "d5c3994b85f84c55", | |
| "msg": [36, 27, 16, 12, 12, 14, 31, 4, 12, 33, 23, 17, 10, 20, 27, 19, 0, 21, 3, 2], | |
| "ct": [35, 19, 2, 6, 6, 1, 18, 2, 10, 17, 34, 6, 6, 15, 4, 33, 34, 23, 27, 4], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 788, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "02944e79e375f907e167ab1592e18f1c", | |
| "tweak": "d5c3994b85f84c55", | |
| "msg": [23, 27, 16, 12, 12, 14, 36, 4, 12, 33, 23, 17, 10, 20, 27, 19, 0, 21, 3, 2], | |
| "ct": [34, 30, 28, 3, 0, 24, 9, 29, 4, 34, 20, 8, 19, 23, 27, 22, 27, 17, 25, 35], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 789, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "02944e79e375f907e167ab1592e18f1c", | |
| "tweak": "d5c3994b85f84c55", | |
| "msg": [23, 27, 16, 12, 12, 14, 31, 4, 12, 33, 23, 17, 10, 20, 27, 19, 0, 21, 3, 36], | |
| "ct": [3, 0, 22, 6, 35, 29, 20, 35, 22, 30, 2, 27, 22, 23, 24, 0, 7, 18, 4, 33], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 21, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 790, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "c0e4c4a9b86c17e4efe9a12733e7aff4", | |
| "tweak": "f71b48c8172125d4", | |
| "msg": [12, 17, 11, 32, 8, 23, 34, 5, 2, 25, 18, 22, 28, 25, 28, 27, 14, 31, 4, 8, 12], | |
| "ct": [2, 3, 23, 7, 11, 3, 19, 10, 25, 1, 7, 6, 4, 35, 27, 13, 35, 21, 24, 18, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 791, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [33, 10, 7, 23, 8, 15, 3, 30, 12, 28, 12, 10, 35, 14, 30, 18, 27, 14, 13, 9, 32], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 792, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "ct": [5, 13, 6, 17, 10, 4, 22, 1, 24, 5, 15, 3, 11, 5, 0, 34, 27, 10, 2, 21, 21], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 793, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [22, 6, 7, 2, 19, 33, 11, 18, 22, 8, 19, 25, 18, 10, 9, 25, 22, 8, 19, 27, 4], | |
| "ct": [19, 4, 11, 27, 18, 34, 34, 0, 20, 11, 15, 30, 24, 28, 23, 5, 34, 33, 18, 10, 30], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 794, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [22, 6, 7, 2, 19, 33, 11, 18, 22, 7, 19, 25, 18, 10, 9, 25, 22, 8, 19, 27, 3], | |
| "ct": [12, 32, 23, 35, 3, 32, 5, 17, 12, 8, 28, 22, 0, 21, 14, 22, 30, 31, 5, 25, 23], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 795, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [0, 20, 10, 24, 27, 0, 19, 25, 26, 23, 33, 34, 11, 24, 2, 27, 20, 20, 15, 19, 13], | |
| "ct": [23, 18, 6, 19, 15, 20, 0, 21, 33, 14, 27, 13, 9, 23, 13, 18, 17, 26, 2, 20, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 796, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [29, 11, 34, 14, 19, 21, 22, 17, 25, 10, 2, 18, 12, 35, 27, 26, 8, 15, 4, 7, 7], | |
| "ct": [2, 25, 11, 26, 1, 17, 11, 10, 2, 10, 35, 2, 2, 1, 0, 4, 12, 7, 29, 16, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 797, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [27, 8, 22, 9, 14, 22, 16, 33, 8, 21, 23, 8, 6, 0, 28, 25, 30, 11, 21, 15, 2], | |
| "ct": [22, 3, 28, 35, 8, 35, 20, 29, 28, 23, 30, 17, 31, 26, 17, 13, 22, 22, 24, 14, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 798, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [24, 22, 24, 9, 33, 23, 19, 1, 27, 28, 16, 29, 7, 16, 17, 11, 18, 10, 5, 0, 11], | |
| "ct": [19, 10, 12, 13, 13, 19, 20, 33, 27, 6, 10, 34, 4, 14, 29, 11, 19, 19, 17, 28, 16], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 799, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [25, 17, 1, 31, 16, 18, 11, 28, 34, 15, 25, 8, 32, 6, 3, 35, 14, 2, 8, 16, 23], | |
| "ct": [24, 33, 22, 10, 20, 30, 15, 4, 24, 21, 0, 6, 6, 16, 22, 15, 20, 18, 30, 24, 32], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 800, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [3, 28, 25, 26, 29, 24, 8, 16, 9, 31, 23, 28, 24, 22, 34, 27, 7, 23, 15, 27, 13], | |
| "ct": [27, 33, 25, 22, 1, 31, 29, 21, 33, 7, 35, 22, 6, 17, 20, 9, 20, 7, 25, 20, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 801, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [0, 33, 12, 19, 10, 3, 21, 8, 17, 18, 21, 30, 24, 7, 20, 30, 18, 26, 31, 27, 13], | |
| "ct": [14, 11, 23, 0, 24, 16, 33, 9, 7, 25, 2, 21, 19, 22, 29, 33, 33, 27, 18, 0, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 802, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [5, 17, 21, 7, 25, 5, 26, 16, 8, 32, 17, 32, 32, 8, 10, 17, 15, 23, 3, 0, 28], | |
| "ct": [11, 14, 6, 24, 26, 11, 11, 3, 27, 10, 15, 23, 30, 25, 8, 7, 14, 0, 6, 13, 24], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 803, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [15, 23, 24, 7, 34, 31, 17, 13, 11, 32, 22, 6, 31, 32, 29, 34, 15, 23, 21, 24, 9], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 804, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [26, 10, 6, 28, 22, 4, 25, 16, 7, 31, 25, 29, 1, 21, 34, 29, 21, 29, 34, 27, 20], | |
| "ct": [35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 805, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [6, 23, 2, 33, 34, 5, 16, 21, 26, 11, 14, 26, 25, 31, 30, 18, 2, 18, 0, 30, 8], | |
| "ct": [22, 6, 7, 2, 19, 33, 11, 18, 22, 8, 19, 25, 18, 10, 9, 25, 22, 8, 19, 27, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 806, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [32, 8, 28, 18, 6, 16, 34, 15, 32, 23, 4, 13, 10, 24, 31, 31, 10, 33, 8, 12, 10], | |
| "ct": [22, 6, 7, 2, 19, 33, 11, 18, 22, 7, 19, 25, 18, 10, 9, 25, 22, 8, 19, 27, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 807, | |
| "comment": "y = 1 and a = 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "9f8e8c264fa779", | |
| "msg": [21, 4, 10, 32, 5, 19, 21, 14, 32, 24, 1, 13, 3, 22, 5, 6, 3, 8, 16, 17, 4], | |
| "ct": [22, 8, 9, 35, 31, 7, 11, 3, 5, 25, 6, 29, 5, 15, 30, 30, 7, 8, 26, 26, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 808, | |
| "comment": "y = 1 and a = 1 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "9f8e8c264fa779", | |
| "msg": [6, 9, 3, 22, 13, 21, 17, 13, 26, 33, 5, 3, 0, 32, 21, 35, 5, 33, 15, 10, 21], | |
| "ct": [9, 13, 33, 13, 27, 33, 8, 10, 35, 4, 30, 4, 15, 34, 19, 29, 26, 7, 3, 25, 27], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 809, | |
| "comment": "y = 1 and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "9f8e8c264fa779", | |
| "msg": [25, 30, 34, 11, 19, 25, 28, 21, 34, 34, 27, 14, 29, 13, 34, 31, 26, 22, 12, 26, 31], | |
| "ct": [28, 25, 25, 6, 32, 23, 2, 10, 14, 10, 15, 9, 25, 1, 35, 31, 0, 19, 13, 0, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 810, | |
| "comment": "y = 1 and (y + a) % radix**10 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "9f8e8c264fa779", | |
| "msg": [10, 8, 8, 26, 26, 20, 1, 14, 12, 11, 32, 17, 7, 28, 4, 29, 34, 27, 16, 21, 17], | |
| "ct": [11, 23, 28, 20, 14, 4, 23, 33, 16, 29, 10, 19, 27, 14, 2, 3, 33, 25, 10, 7, 32], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 811, | |
| "comment": "y = 1 and (y + a) % radix**10 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "9f8e8c264fa779", | |
| "msg": [24, 23, 35, 7, 20, 30, 18, 9, 4, 12, 20, 4, 18, 28, 20, 9, 29, 1, 27, 20, 12], | |
| "ct": [34, 33, 3, 13, 35, 29, 32, 13, 11, 29, 0, 0, 5, 18, 9, 7, 2, 17, 34, 21, 29], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 812, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "fd90f1e9599e12563bf788a1a521d6ab", | |
| "tweak": "d0a005b45247f038", | |
| "msg": [-1, 2, 2, 10, 35, 35, 25, 7, 24, 15, 28, 15, 28, 33, 34, 33, 21, 4, 4, 19, 9], | |
| "ct": [16, 22, 35, 12, 24, 12, 16, 30, 2, 10, 0, 8, 6, 23, 15, 35, 8, 26, 12, 9, 12], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 813, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "fd90f1e9599e12563bf788a1a521d6ab", | |
| "tweak": "d0a005b45247f038", | |
| "msg": [1, 2, 2, 10, 35, 35, 25, -1, 24, 15, 28, 15, 28, 33, 34, 33, 21, 4, 4, 19, 9], | |
| "ct": [34, 8, 5, 12, 26, 30, 12, 17, 20, 32, 33, 25, 3, 10, 19, 17, 25, 32, 27, 21, 2], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 814, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "fd90f1e9599e12563bf788a1a521d6ab", | |
| "tweak": "d0a005b45247f038", | |
| "msg": [1, 2, 2, 10, 35, 35, 25, 7, 24, 15, 28, 15, 28, 33, 34, 33, 21, 4, 4, 19, -1], | |
| "ct": [15, 33, 25, 8, 1, 19, 7, 4, 13, 6, 33, 31, 1, 26, 5, 27, 18, 10, 29, 34, 8], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 815, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "8f178f612018c6d475600d7252d4993f", | |
| "tweak": "b1cb082ed1a8c4ed", | |
| "msg": [36, 17, 5, 30, 33, 26, 12, 33, 4, 20, 3, 22, 13, 0, 20, 30, 35, 29, 15, 29, 15], | |
| "ct": [12, 21, 32, 18, 6, 6, 7, 11, 31, 10, 20, 19, 15, 32, 0, 30, 4, 19, 21, 8, 15], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 816, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "8f178f612018c6d475600d7252d4993f", | |
| "tweak": "b1cb082ed1a8c4ed", | |
| "msg": [32, 17, 5, 30, 33, 26, 12, 36, 4, 20, 3, 22, 13, 0, 20, 30, 35, 29, 15, 29, 15], | |
| "ct": [2, 3, 22, 20, 32, 19, 14, 14, 24, 26, 24, 27, 28, 3, 28, 4, 2, 13, 32, 24, 33], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 817, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "8f178f612018c6d475600d7252d4993f", | |
| "tweak": "b1cb082ed1a8c4ed", | |
| "msg": [32, 17, 5, 30, 33, 26, 12, 33, 4, 20, 3, 22, 13, 0, 20, 30, 35, 29, 15, 29, 36], | |
| "ct": [4, 10, 0, 24, 8, 19, 32, 32, 29, 18, 13, 35, 34, 0, 23, 27, 24, 30, 5, 21, 25], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 22, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 818, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "9ed2a54df9219a3d61b5f1758b73bda6", | |
| "tweak": "5ecd852b587b8148", | |
| "msg": [14, 29, 16, 19, 22, 32, 19, 31, 27, 11, 11, 32, 23, 25, 29, 13, 14, 3, 5, 34, 5, 25], | |
| "ct": [16, 8, 17, 27, 25, 0, 19, 16, 10, 11, 6, 20, 21, 7, 19, 27, 35, 13, 18, 5, 27, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 819, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [28, 8, 12, 17, 10, 5, 34, 28, 33, 26, 35, 0, 9, 19, 18, 35, 7, 5, 17, 32, 24, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 820, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "ct": [1, 9, 22, 10, 34, 20, 16, 9, 18, 7, 17, 33, 18, 29, 6, 10, 11, 24, 12, 7, 23, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 821, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [19, 25, 18, 10, 9, 25, 22, 8, 19, 27, 4, 19, 25, 18, 10, 9, 25, 22, 8, 19, 27, 4], | |
| "ct": [7, 3, 17, 35, 5, 23, 34, 33, 17, 27, 18, 6, 19, 26, 5, 20, 28, 32, 19, 29, 23, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 822, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [19, 25, 18, 10, 9, 25, 22, 8, 19, 27, 3, 19, 25, 18, 10, 9, 25, 22, 8, 19, 27, 3], | |
| "ct": [31, 20, 4, 34, 32, 18, 5, 10, 35, 8, 3, 16, 0, 15, 34, 35, 31, 6, 10, 4, 10, 23], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 823, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [12, 0, 24, 17, 8, 15, 4, 19, 20, 8, 32, 30, 23, 22, 8, 21, 26, 5, 14, 16, 24, 12], | |
| "ct": [17, 18, 7, 35, 12, 30, 10, 18, 13, 4, 18, 30, 8, 2, 35, 15, 35, 31, 1, 9, 22, 29], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 824, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [33, 13, 14, 31, 8, 10, 1, 15, 26, 7, 18, 15, 35, 31, 7, 13, 18, 26, 1, 20, 16, 3], | |
| "ct": [16, 5, 14, 8, 21, 7, 9, 9, 16, 16, 4, 9, 0, 17, 23, 1, 25, 33, 14, 8, 32, 31], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 825, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [1, 29, 30, 7, 22, 32, 13, 6, 19, 34, 10, 22, 35, 24, 24, 17, 15, 12, 0, 27, 12, 3], | |
| "ct": [1, 18, 35, 1, 23, 23, 32, 28, 5, 25, 9, 19, 16, 30, 33, 28, 30, 34, 28, 18, 35, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 826, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [1, 11, 1, 16, 10, 34, 8, 7, 25, 30, 22, 16, 2, 22, 31, 4, 6, 33, 12, 34, 28, 4], | |
| "ct": [16, 35, 2, 30, 0, 6, 6, 31, 23, 7, 5, 26, 9, 23, 31, 28, 7, 7, 24, 24, 33, 21], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 827, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [5, 1, 15, 35, 6, 22, 22, 30, 26, 19, 18, 13, 28, 11, 23, 11, 11, 21, 0, 15, 11, 30], | |
| "ct": [8, 34, 16, 21, 10, 15, 15, 18, 18, 4, 4, 30, 4, 18, 27, 34, 31, 9, 30, 19, 17, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 828, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [6, 20, 5, 6, 18, 21, 12, 8, 19, 28, 15, 18, 24, 29, 29, 5, 33, 32, 8, 32, 3, 12], | |
| "ct": [24, 27, 34, 4, 7, 8, 24, 7, 26, 32, 31, 3, 15, 19, 21, 2, 6, 15, 26, 12, 22, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 829, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [30, 34, 22, 28, 13, 2, 31, 6, 32, 14, 33, 11, 28, 12, 5, 7, 7, 23, 29, 35, 15, 33], | |
| "ct": [25, 32, 9, 10, 14, 7, 2, 30, 21, 18, 35, 30, 5, 29, 5, 20, 6, 26, 15, 1, 18, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 830, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [32, 32, 2, 15, 0, 8, 23, 17, 10, 27, 34, 9, 15, 32, 12, 28, 34, 31, 20, 13, 7, 6], | |
| "ct": [31, 25, 19, 20, 24, 10, 10, 31, 27, 6, 11, 7, 34, 22, 5, 30, 27, 2, 7, 13, 24, 19], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 831, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [8, 34, 19, 21, 0, 0, 20, 15, 16, 4, 11, 34, 31, 4, 21, 29, 34, 22, 21, 26, 32, 35], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 832, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [28, 13, 35, 16, 32, 18, 23, 6, 2, 18, 17, 30, 17, 15, 25, 5, 31, 3, 10, 12, 27, 18], | |
| "ct": [35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 833, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [19, 22, 0, 27, 19, 21, 3, 35, 9, 20, 17, 22, 3, 2, 19, 15, 24, 15, 1, 11, 6, 28], | |
| "ct": [19, 25, 18, 10, 9, 25, 22, 8, 19, 27, 4, 19, 25, 18, 10, 9, 25, 22, 8, 19, 27, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 834, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "97ad828cba00ca3d4ee15115dc5845a7", | |
| "tweak": "695c7692d9cebe71", | |
| "msg": [28, 28, 20, 23, 28, 7, 19, 13, 22, 18, 1, 21, 32, 12, 2, 29, 29, 29, 7, 9, 7, 12], | |
| "ct": [19, 25, 18, 10, 9, 25, 22, 8, 19, 27, 3, 19, 25, 18, 10, 9, 25, 22, 8, 19, 27, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 835, | |
| "comment": "y is maximal and a = 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "f59f44b768c63b", | |
| "msg": [12, 11, 16, 30, 0, 5, 16, 18, 31, 28, 24, 26, 11, 30, 31, 28, 11, 15, 20, 5, 0, 22], | |
| "ct": [21, 18, 5, 28, 31, 1, 19, 20, 34, 27, 14, 22, 4, 24, 22, 29, 28, 24, 15, 24, 31, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 836, | |
| "comment": "y is maximal and a = 1 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "f59f44b768c63b", | |
| "msg": [19, 18, 15, 11, 7, 7, 22, 32, 15, 18, 24, 5, 14, 34, 18, 29, 32, 0, 13, 25, 12, 6], | |
| "ct": [7, 14, 27, 34, 23, 13, 1, 25, 32, 23, 1, 35, 24, 9, 9, 20, 17, 6, 28, 34, 2, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 837, | |
| "comment": "y is maximal and (y + a) % radix**11 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "f59f44b768c63b", | |
| "msg": [15, 20, 29, 5, 16, 32, 10, 28, 16, 5, 4, 7, 6, 35, 16, 9, 5, 2, 1, 17, 13, 23], | |
| "ct": [0, 30, 30, 32, 2, 6, 26, 34, 24, 11, 33, 7, 12, 8, 21, 24, 9, 4, 19, 21, 18, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 838, | |
| "comment": "y is maximal and (y + a) % radix**11 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "f59f44b768c63b", | |
| "msg": [31, 34, 16, 8, 23, 20, 4, 6, 20, 6, 13, 28, 24, 8, 16, 26, 10, 24, 35, 27, 22, 31], | |
| "ct": [7, 33, 18, 30, 33, 9, 9, 22, 31, 10, 22, 14, 12, 25, 31, 20, 15, 8, 27, 23, 12, 31], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 839, | |
| "comment": "y is maximal and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "f59f44b768c63b", | |
| "msg": [32, 10, 18, 3, 21, 7, 32, 20, 27, 30, 2, 23, 26, 18, 33, 0, 11, 6, 1, 7, 8, 2], | |
| "ct": [0, 13, 8, 24, 4, 5, 7, 23, 27, 18, 15, 23, 27, 12, 3, 26, 12, 17, 21, 24, 29, 24], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 840, | |
| "comment": "y is maximal and a is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "f59f44b768c63b", | |
| "msg": [33, 34, 9, 19, 4, 19, 23, 18, 23, 21, 24, 22, 11, 2, 0, 28, 4, 13, 32, 8, 11, 21], | |
| "ct": [33, 17, 21, 34, 35, 2, 18, 17, 26, 25, 26, 32, 7, 21, 29, 35, 35, 0, 10, 19, 24, 18], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 841, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "fa2b885290f2af", | |
| "msg": [1, 24, 15, 26, 24, 27, 13, 31, 8, 1, 22, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [7, 25, 25, 12, 13, 28, 23, 18, 18, 28, 12, 6, 6, 14, 30, 13, 32, 0, 30, 10, 1, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 842, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "fa2b885290f2af", | |
| "msg": [18, 30, 33, 5, 23, 7, 30, 29, 28, 32, 2, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 1], | |
| "ct": [27, 23, 24, 34, 27, 12, 16, 8, 7, 5, 35, 13, 1, 2, 6, 6, 17, 16, 0, 14, 10, 23], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 843, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**11 is maximal in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "fa2b885290f2af", | |
| "msg": [8, 26, 16, 29, 26, 3, 34, 16, 20, 3, 31, 16, 19, 30, 5, 33, 23, 25, 34, 1, 10, 35], | |
| "ct": [21, 17, 17, 29, 4, 28, 18, 8, 33, 23, 16, 10, 35, 35, 3, 13, 27, 10, 28, 14, 11, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 844, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**11 == 0 in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "fa2b885290f2af", | |
| "msg": [3, 20, 17, 24, 11, 23, 18, 1, 14, 7, 6, 16, 19, 30, 5, 33, 23, 25, 34, 1, 11, 0], | |
| "ct": [15, 26, 31, 19, 35, 2, 13, 22, 12, 24, 34, 5, 0, 29, 16, 26, 28, 17, 7, 35, 17, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 845, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "fa2b885290f2af", | |
| "msg": [32, 18, 33, 10, 30, 12, 18, 35, 20, 32, 13, 19, 25, 18, 10, 9, 25, 22, 8, 19, 27, 4], | |
| "ct": [26, 17, 2, 10, 1, 26, 12, 3, 11, 7, 19, 23, 8, 11, 29, 15, 24, 26, 5, 6, 4, 18], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 846, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "42ace51e4cacf58876336222ae9b433e", | |
| "tweak": "fa2b885290f2af", | |
| "msg": [20, 12, 11, 34, 35, 19, 15, 18, 34, 20, 5, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "ct": [14, 9, 12, 11, 7, 9, 16, 16, 26, 27, 3, 13, 28, 6, 30, 32, 15, 24, 27, 8, 6, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 847, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "1a09b8fb562701a282ce28747f0b0a52", | |
| "tweak": "ec1b2b9ede1b38ea", | |
| "msg": [-1, 23, 28, 8, 24, 12, 34, 4, 1, 27, 32, 5, 28, 25, 15, 30, 2, 1, 3, 14, 25, 21], | |
| "ct": [0, 4, 15, 15, 34, 18, 12, 10, 14, 28, 24, 34, 14, 14, 21, 31, 27, 11, 28, 21, 22, 35], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 848, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "1a09b8fb562701a282ce28747f0b0a52", | |
| "tweak": "ec1b2b9ede1b38ea", | |
| "msg": [14, 23, 28, 8, 24, 12, 34, -1, 1, 27, 32, 5, 28, 25, 15, 30, 2, 1, 3, 14, 25, 21], | |
| "ct": [10, 0, 32, 24, 9, 35, 20, 11, 8, 22, 19, 27, 13, 16, 4, 21, 21, 23, 34, 16, 14, 11], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 849, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "1a09b8fb562701a282ce28747f0b0a52", | |
| "tweak": "ec1b2b9ede1b38ea", | |
| "msg": [14, 23, 28, 8, 24, 12, 34, 4, 1, 27, 32, 5, 28, 25, 15, 30, 2, 1, 3, 14, 25, -1], | |
| "ct": [24, 22, 26, 21, 23, 11, 0, 21, 11, 7, 2, 22, 31, 26, 10, 11, 10, 12, 5, 14, 32, 10], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 850, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "f333d447d7affcbd15ae353f81f656c5", | |
| "tweak": "76dd67ca61313823", | |
| "msg": [36, 32, 13, 22, 18, 6, 11, 2, 23, 26, 12, 23, 0, 17, 24, 22, 7, 9, 28, 17, 10, 2], | |
| "ct": [5, 20, 5, 5, 15, 6, 33, 25, 6, 10, 22, 8, 26, 29, 23, 17, 14, 0, 0, 0, 35, 15], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 851, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "f333d447d7affcbd15ae353f81f656c5", | |
| "tweak": "76dd67ca61313823", | |
| "msg": [22, 32, 13, 22, 18, 6, 11, 36, 23, 26, 12, 23, 0, 17, 24, 22, 7, 9, 28, 17, 10, 2], | |
| "ct": [16, 13, 11, 8, 3, 10, 29, 11, 11, 10, 9, 24, 18, 4, 30, 31, 21, 23, 1, 22, 7, 23], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 852, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "f333d447d7affcbd15ae353f81f656c5", | |
| "tweak": "76dd67ca61313823", | |
| "msg": [22, 32, 13, 22, 18, 6, 11, 2, 23, 26, 12, 23, 0, 17, 24, 22, 7, 9, 28, 17, 10, 36], | |
| "ct": [2, 10, 16, 1, 27, 30, 5, 29, 28, 3, 22, 1, 16, 13, 18, 34, 26, 26, 10, 21, 33, 34], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 23, | |
| "radix": 36, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 853, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "b9259b7f8c36246e73802b650cec0f3a", | |
| "tweak": "338104fb3b076bc4", | |
| "msg": [17, 31, 34, 6, 24, 7, 21, 29, 6, 24, 30, 2, 1, 30, 30, 27, 8, 4, 12, 26, 30, 20, 34], | |
| "ct": [25, 7, 30, 21, 32, 17, 22, 9, 15, 0, 28, 12, 30, 12, 21, 26, 34, 20, 29, 29, 15, 21, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 854, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "54dc637b4efc6ee03d4bd532295d63b8", | |
| "tweak": "cc32b4959acf967c", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [35, 16, 27, 5, 16, 12, 15, 35, 26, 28, 35, 6, 1, 5, 19, 13, 25, 30, 34, 14, 27, 26, 19], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 855, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "54dc637b4efc6ee03d4bd532295d63b8", | |
| "tweak": "cc32b4959acf967c", | |
| "msg": [35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35, 35], | |
| "ct": [6, 10, 11, 32, 27, 5, 16, 6, 4, 4, 14, 24, 34, 18, 18, 31, 16, 25, 2, 23, 29, 22, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 856, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "54dc637b4efc6ee03d4bd532295d63b8", | |
| "tweak": "cc32b4959acf967c", | |
| "msg": [19, 25, 18, 10, 9, 25, 22, 8, 19, 27, 4, 35, 1, 12, 18, 9, 9, 19, 19, 7, 4, 7, 4], | |
| "ct": [2, 31, 1, 18, 15, 2, 6, 31, 12, 0, 1, 32, 22, 18, 6, 16, 33, 9, 34, 17, 0, 31, 26], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 857, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "54dc637b4efc6ee03d4bd532295d63b8", | |
| "tweak": "cc32b4959acf967c", | |
| "msg": [19, 25, 18, 10, 9, 25, 22, 8, 19, 27, 3, 35, 1, 12, 18, 9, 9, 19, 19, 7, 4, 7, 3], | |
| "ct": [0, 27, 8, 30, 8, 16, 19, 32, 4, 0, 15, 5, 18, 32, 12, 7, 8, 31, 21, 8, 20, 21, 16], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 858, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "54dc637b4efc6ee03d4bd532295d63b8", | |
| "tweak": "cc32b4959acf967c", | |
| "msg": [35, 18, 0, 34, 13, 35, 9, 25, 21, 19, 9, 25, 22, 32, 3, 23, 23, 18, 7, 15, 31, 14, 24], | |
| "ct": [34, 1, 26, 33, 2, 32, 33, 6, 35, 31, 16, 27, 6, 3, 32, 32, 0, 19, 18, 13, 6, 4, 24], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 859, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "54dc637b4efc6ee03d4bd532295d63b8", | |
| "tweak": "cc32b4959acf967c", | |
| "msg": [0, 24, 17, 5, 24, 28, 30, 15, 29, 24, 15, 2, 18, 17, 10, 8, 3, 27, 23, 15, 23, 6, 21], | |
| "ct": [4, 15, 31, 24, 12, 19, 6, 3, 6, 1, 35, 13, 18, 18, 27, 29, 21, 6, 18, 11, 21, 25, 29], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 860, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "54dc637b4efc6ee03d4bd532295d63b8", | |
| "tweak": "cc32b4959acf967c", | |
| "msg": [14, 1, 15, 5, 15, 26, 16, 20, 31, 3, 7, 3, 13, 34, 23, 18, 10, 15, 8, 31, 8, 25, 13], | |
| "ct": [22, 0, 3, 9, 20, 33, 6, 15, 31, 33, 2, 28, 23, 31, 14, 20, 6, 33, 10, 8, 3, 22, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 861, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "54dc637b4efc6ee03d4bd532295d63b8", | |
| "tweak": "cc32b4959acf967c", | |
| "msg": [13, 26, 7, 27, 20, 32, 8, 24, 25, 22, 18, 10, 5, 13, 1, 8, 2, 32, 29, 0, 24, 8, 25], | |
| "ct": [19, 1, 1, 27, 11, 10, 32, 25, 8, 5, 14, 12, 18, 29, 5, 14, 24, 3, 27, 27, 30, 24, 32], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 862, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "54dc637b4efc6ee03d4bd532295d63b8", | |
| "tweak": "cc32b4959acf967c", | |
| "msg": [30, 10, 5, 19, 22, 23, 33, 6, 30, 34, 26, 12, 10, 13, 26, 29, 16, 28, 23, 23, 21, 28, 1], | |
| "ct": [33, 4, 0, 10, 13, 15, 32, 8, 27, 3, 22, 28, 26, 8, 25, 1, 22, 21, 9, 24, 1, 1, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 863, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "54dc637b4efc6ee03d4bd532295d63b8", | |
| "tweak": "cc32b4959acf967c", | |