| { | |
| "algorithm": "AES-FF1", | |
| "generatorVersion": "0.9rc5", | |
| "numberOfTests": 2417, | |
| "header": [ | |
| "Test vectors of type FpeListTest are intended for format preserving encryption." | |
| ], | |
| "notes": { | |
| "EdgeCasePrf": { | |
| "bugType": "EDGE_CASE", | |
| "description": "FF1 computes a pseudorandom function, converts the result into an integer y, which is then reduced modulo radix**v, where v is the size of the longer block in the Feistel structure. This test vector contains cases where the value y is an edge case. The goal of the test vector is to check for arithmetic errors such as integer overflow or incorrect modular reduction." | |
| }, | |
| "EdgeCaseState": { | |
| "bugType": "EDGE_CASE", | |
| "description": "FF1 requires integer arithmetic of various sizes. This test vector contains values such that edge cases are reached during encryption and decryption. The goal of the test vector is to check for incorrect integer arithmetic e.g., because of integer overflows." | |
| }, | |
| "InvalidKeySize": { | |
| "bugType": "MODIFIED_PARAMETER", | |
| "description": "The key size is invalid." | |
| }, | |
| "InvalidMessageSize": { | |
| "bugType": "MISSING_STEP", | |
| "description": "FF1 imposes a minimal size of the inputs. The original specification of FF1 required radix**minlen >= 100, NIST SP 800-38G rev 1, requires radix**minlen >= 1'000'000. This test vector contains a short message such that both limits are violated and hence should be rejected." | |
| }, | |
| "InvalidPlaintext": { | |
| "bugType": "MODIFIED_PARAMETER", | |
| "description": "FF1 expects inputs from a fixed range of digits. This test vector contains a plaintext containing invalid digits." | |
| }, | |
| "LargeMessageSize": { | |
| "bugType": "FUNCTIONALITY", | |
| "description": "The specification of FF1 uses integer arithmetic of arbitrary size for long messages. Some implementations may choose to restrict the message length to simplify the implementation of FF1. This test vector contains a message of size msglen such that radix**msglen > 2**128." | |
| }, | |
| "NormalMessageSize": { | |
| "bugType": "BASIC", | |
| "description": "The specification of FF1 uses integer arithmetic of arbitrary size for long messages. Some implementations may choose to restrict the message length to simplify the implementation of FF1. This test vector contains a message of size msglen such that 1'000'000 <= radix**msglen <= 2**128." | |
| }, | |
| "SmallMessageSize": { | |
| "bugType": "LEGACY", | |
| "description": "FF1 imposes a minimal size of the inputs. The original specification of FF1 required radix**msglen >= 100, NIST SP 800-38G rev 1 changes this and requires radix**msglen >= 1'000'000. This test vector contains a message of size msglen, such that radix**msglen lies between these two limits." | |
| } | |
| }, | |
| "schema": "fpe_list_test_schema.json", | |
| "testGroups": [ | |
| { | |
| "keySize": 128, | |
| "msgSize": 0, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 1, | |
| "comment": "Invalid message size", | |
| "flags": [ | |
| "InvalidMessageSize" | |
| ], | |
| "key": "fb9fc869af3e4828da6efa18b5fa71a0", | |
| "tweak": "379f81cab6ed2517", | |
| "msg": [], | |
| "ct": [], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 1, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 2, | |
| "comment": "Invalid message size", | |
| "flags": [ | |
| "InvalidMessageSize" | |
| ], | |
| "key": "7325733095d90aff456a1e00fa977365", | |
| "tweak": "a5f8950069a56f6c", | |
| "msg": [40], | |
| "ct": [], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 192, | |
| "msgSize": 0, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 3, | |
| "comment": "Invalid message size", | |
| "flags": [ | |
| "InvalidMessageSize" | |
| ], | |
| "key": "af2463f51df63a015178e30edcf25dacbeb2abbc5144d0a6", | |
| "tweak": "5d9c3dfb797c952a", | |
| "msg": [], | |
| "ct": [], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 192, | |
| "msgSize": 1, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 4, | |
| "comment": "Invalid message size", | |
| "flags": [ | |
| "InvalidMessageSize" | |
| ], | |
| "key": "e9e279f5fad3e7fd7922e838cf07da528ddcc5387f6145bf", | |
| "tweak": "a25989a2e4360bae", | |
| "msg": [19], | |
| "ct": [], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 256, | |
| "msgSize": 0, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 5, | |
| "comment": "Invalid message size", | |
| "flags": [ | |
| "InvalidMessageSize" | |
| ], | |
| "key": "f25e816c4d42629a428e48f2d48a31f79d6b1e8ef47e5ed3e7e5bbdf37f1806d", | |
| "tweak": "42dbc8913a275520", | |
| "msg": [], | |
| "ct": [], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 256, | |
| "msgSize": 1, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 6, | |
| "comment": "Invalid message size", | |
| "flags": [ | |
| "InvalidMessageSize" | |
| ], | |
| "key": "b8c800bed3286920bd1d9ad89a78808e9f815ec638663a725f256cc7078fdaf0", | |
| "tweak": "90120912eba3c19c", | |
| "msg": [35], | |
| "ct": [], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 2, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 7, | |
| "comment": "small message size", | |
| "flags": [ | |
| "SmallMessageSize" | |
| ], | |
| "key": "ad65778960d778c614e2673dee073acb", | |
| "tweak": "4505f45a8fa30b90", | |
| "msg": [33, 31], | |
| "ct": [34, 37], | |
| "result": "valid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 3, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 8, | |
| "comment": "small message size", | |
| "flags": [ | |
| "SmallMessageSize" | |
| ], | |
| "key": "aa6f23f573da39b110f4e155c418ba1f", | |
| "tweak": "8402018f66fd2cb9", | |
| "msg": [0, 36, 33], | |
| "ct": [2, 54, 47], | |
| "result": "valid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 192, | |
| "msgSize": 2, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 9, | |
| "comment": "small message size", | |
| "flags": [ | |
| "SmallMessageSize" | |
| ], | |
| "key": "911c9e0a87977587050ebb48f4f9e199fde8472781ecaf7a", | |
| "tweak": "cf98ea96ef005bc6", | |
| "msg": [1, 26], | |
| "ct": [49, 6], | |
| "result": "valid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 192, | |
| "msgSize": 3, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 10, | |
| "comment": "small message size", | |
| "flags": [ | |
| "SmallMessageSize" | |
| ], | |
| "key": "3c453964f4e42587db3a6de5de00673ede7e17672a4deb84", | |
| "tweak": "fe6290783f11946c", | |
| "msg": [47, 56, 7], | |
| "ct": [5, 7, 41], | |
| "result": "valid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 256, | |
| "msgSize": 2, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 11, | |
| "comment": "small message size", | |
| "flags": [ | |
| "SmallMessageSize" | |
| ], | |
| "key": "d05ae6e3819e2dcdd218be7c62465e8f1474f1fec8e79a1a3f7b88040d0f4160", | |
| "tweak": "823988f1ffb8ce23", | |
| "msg": [13, 29], | |
| "ct": [61, 21], | |
| "result": "valid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 256, | |
| "msgSize": 3, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 12, | |
| "comment": "small message size", | |
| "flags": [ | |
| "SmallMessageSize" | |
| ], | |
| "key": "1399758fa1ebf7cfda5f601c643443adaea4f4f8c19fc8772c5d5e3cc0cc6955", | |
| "tweak": "8c5a263a91b7cb4f", | |
| "msg": [5, 47, 36], | |
| "ct": [22, 55, 35], | |
| "result": "valid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 4, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 13, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "5dd5899794ff9b5007b4481aaa97f882", | |
| "tweak": "742f7f8b2ab0dc48", | |
| "msg": [35, 63, 18, 22], | |
| "ct": [34, 40, 60, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 14, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [0, 0, 0, 0], | |
| "ct": [35, 15, 45, 39], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 15, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [63, 63, 63, 63], | |
| "ct": [22, 26, 26, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 16, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [32, 0, 32, 0], | |
| "ct": [43, 24, 34, 29], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 17, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [31, 63, 31, 63], | |
| "ct": [1, 5, 16, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 18, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [2, 43, 3, 38], | |
| "ct": [33, 61, 13, 55], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 19, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [62, 49, 47, 13], | |
| "ct": [54, 3, 59, 61], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 20, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [1, 15, 20, 37], | |
| "ct": [55, 26, 1, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 21, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [46, 3, 47, 44], | |
| "ct": [36, 8, 9, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 22, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [7, 41, 26, 35], | |
| "ct": [33, 9, 28, 34], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 23, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [25, 58, 33, 5], | |
| "ct": [39, 10, 43, 62], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 24, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [19, 37, 27, 22], | |
| "ct": [8, 40, 6, 48], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 25, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [63, 54, 36, 35], | |
| "ct": [54, 10, 61, 40], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 26, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [52, 11, 11, 48], | |
| "ct": [0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 27, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [11, 15, 57, 57], | |
| "ct": [63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 28, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [4, 57, 17, 54], | |
| "ct": [32, 0, 32, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 29, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "16e4e676552c2fef6f1942adef4c440a", | |
| "tweak": "aba4ba6db9422dc4", | |
| "msg": [43, 33, 31, 6], | |
| "ct": [31, 63, 31, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 30, | |
| "comment": "y = 0 and (y + a) % radix**2 == 0 in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "22ca94dfc3b4dde5da900bf38c", | |
| "msg": [59, 62, 30, 41], | |
| "ct": [42, 7, 6, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 31, | |
| "comment": "y = 0 and a = 1 in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "22ca94dfc3b4dde5da900bf38c", | |
| "msg": [16, 33, 20, 17], | |
| "ct": [20, 26, 10, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 32, | |
| "comment": "y = 0 and a has large Hamming weight in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "22ca94dfc3b4dde5da900bf38c", | |
| "msg": [60, 17, 0, 47], | |
| "ct": [51, 41, 10, 55], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 33, | |
| "comment": "y = 0 and (y + a) % radix**2 is maximal in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "22ca94dfc3b4dde5da900bf38c", | |
| "msg": [15, 48, 17, 21], | |
| "ct": [28, 42, 37, 31], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 34, | |
| "comment": "y = 1 and a = 0 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "8a8e0bdedfaf7ce1915560ef62", | |
| "msg": [53, 63, 48, 62], | |
| "ct": [25, 16, 0, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 35, | |
| "comment": "y = 1 and a = 1 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "8a8e0bdedfaf7ce1915560ef62", | |
| "msg": [20, 20, 40, 51], | |
| "ct": [25, 16, 0, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 36, | |
| "comment": "y = 1 and a has large Hamming weight in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "8a8e0bdedfaf7ce1915560ef62", | |
| "msg": [55, 60, 7, 34], | |
| "ct": [25, 16, 32, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 37, | |
| "comment": "y = 1 and (y + a) % radix**2 is maximal in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "8a8e0bdedfaf7ce1915560ef62", | |
| "msg": [24, 35, 4, 54], | |
| "ct": [25, 16, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 38, | |
| "comment": "y = 1 and (y + a) % radix**2 == 0 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "8a8e0bdedfaf7ce1915560ef62", | |
| "msg": [11, 45, 15, 60], | |
| "ct": [25, 16, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 39, | |
| "comment": "y is maximal and (y + a) % radix**2 is maximal in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "c2ba173995293f493d03ae61fe", | |
| "msg": [3, 60, 55, 49], | |
| "ct": [13, 26, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 40, | |
| "comment": "y is maximal and (y + a) % radix**2 == 0 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "c2ba173995293f493d03ae61fe", | |
| "msg": [43, 15, 60, 11], | |
| "ct": [13, 26, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 41, | |
| "comment": "y is maximal and a has large Hamming weight in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "c2ba173995293f493d03ae61fe", | |
| "msg": [7, 36, 26, 51], | |
| "ct": [13, 26, 31, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 42, | |
| "comment": "y is maximal and a is maximal in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "c2ba173995293f493d03ae61fe", | |
| "msg": [50, 61, 60, 56], | |
| "ct": [13, 26, 63, 62], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 43, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "e54433a5d6f6cdfc3f7e92055c", | |
| "msg": [32, 15, 47, 0], | |
| "ct": [10, 59, 63, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 44, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "e54433a5d6f6cdfc3f7e92055c", | |
| "msg": [31, 5, 23, 21], | |
| "ct": [10, 59, 63, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 45, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**2 is maximal in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "e54433a5d6f6cdfc3f7e92055c", | |
| "msg": [32, 49, 33, 1], | |
| "ct": [10, 59, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 46, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**2 == 0 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "e54433a5d6f6cdfc3f7e92055c", | |
| "msg": [21, 29, 26, 30], | |
| "ct": [10, 59, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 47, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "e54433a5d6f6cdfc3f7e92055c", | |
| "msg": [62, 35, 21, 63], | |
| "ct": [10, 59, 31, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 48, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "e54433a5d6f6cdfc3f7e92055c", | |
| "msg": [18, 27, 12, 19], | |
| "ct": [10, 59, 62, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 49, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**2 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "bfc2e0e87a8cc7a0bef375ce3d", | |
| "msg": [41, 31, 62, 51], | |
| "ct": [63, 63, 42, 27], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 50, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**2 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "bfc2e0e87a8cc7a0bef375ce3d", | |
| "msg": [53, 18, 43, 8], | |
| "ct": [0, 0, 48, 40], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 51, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "bfc2e0e87a8cc7a0bef375ce3d", | |
| "msg": [54, 50, 5, 33], | |
| "ct": [31, 63, 61, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 52, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a88f0018e583ed7310f3f5336e592a25", | |
| "tweak": "bfc2e0e87a8cc7a0bef375ce3d", | |
| "msg": [48, 27, 54, 45], | |
| "ct": [63, 62, 5, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 53, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "8a74f1cae832ef8d58c26b49157c187b", | |
| "tweak": "d7b8bdae53aba381", | |
| "msg": [-1, 44, 11, 56], | |
| "ct": [31, 35, 7, 40], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 54, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "8a74f1cae832ef8d58c26b49157c187b", | |
| "tweak": "d7b8bdae53aba381", | |
| "msg": [36, -1, 11, 56], | |
| "ct": [51, 13, 48, 51], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 55, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "8a74f1cae832ef8d58c26b49157c187b", | |
| "tweak": "d7b8bdae53aba381", | |
| "msg": [36, 44, 11, -1], | |
| "ct": [38, 20, 26, 53], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 56, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "d600f52590bcf531eb1d1b45dfdd4825", | |
| "tweak": "9b77188de6f4fcbd", | |
| "msg": [64, 12, 57, 53], | |
| "ct": [6, 32, 32, 13], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 57, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "d600f52590bcf531eb1d1b45dfdd4825", | |
| "tweak": "9b77188de6f4fcbd", | |
| "msg": [58, 64, 57, 53], | |
| "ct": [56, 46, 63, 62], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 58, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "d600f52590bcf531eb1d1b45dfdd4825", | |
| "tweak": "9b77188de6f4fcbd", | |
| "msg": [58, 12, 57, 64], | |
| "ct": [32, 27, 48, 48], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 5, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 59, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "0319599d6c7ca301230ec2b06c681097", | |
| "tweak": "125fd8f86c787e2d", | |
| "msg": [0, 41, 19, 9, 34], | |
| "ct": [44, 11, 34, 0, 38], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 60, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [0, 0, 0, 0, 0], | |
| "ct": [18, 0, 46, 31, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 61, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [63, 63, 63, 63, 63], | |
| "ct": [18, 46, 8, 47, 26], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 62, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [32, 0, 32, 0, 0], | |
| "ct": [59, 18, 62, 18, 42], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 63, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [31, 63, 31, 63, 63], | |
| "ct": [26, 1, 29, 38, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 64, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [54, 30, 0, 2, 41], | |
| "ct": [44, 3, 19, 44, 61], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 65, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [37, 43, 35, 44, 18], | |
| "ct": [38, 1, 7, 16, 46], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 66, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [54, 13, 51, 23, 27], | |
| "ct": [52, 13, 37, 29, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 67, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [59, 38, 37, 15, 12], | |
| "ct": [19, 42, 54, 63, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 68, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [30, 33, 30, 31, 42], | |
| "ct": [50, 44, 35, 60, 60], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 69, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [40, 53, 52, 22, 16], | |
| "ct": [16, 11, 4, 59, 59], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 70, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [16, 18, 61, 14, 2], | |
| "ct": [47, 16, 56, 22, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 71, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [1, 27, 3, 35, 16], | |
| "ct": [57, 0, 33, 23, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 72, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [48, 50, 46, 59, 20], | |
| "ct": [0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 73, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [37, 10, 8, 14, 14], | |
| "ct": [63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 74, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [53, 22, 58, 52, 2], | |
| "ct": [32, 0, 32, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 75, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "ed3d0c6668748336d74abc8a161dea33", | |
| "tweak": "61a3e1c030481108", | |
| "msg": [18, 13, 8, 45, 37], | |
| "ct": [31, 63, 31, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 76, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "a73bdd667924a055e4e676cd", | |
| "msg": [32, 56, 20, 60, 17], | |
| "ct": [8, 23, 26, 30, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 77, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "a73bdd667924a055e4e676cd", | |
| "msg": [57, 48, 1, 58, 47], | |
| "ct": [27, 19, 45, 51, 22], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 78, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**2 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "a73bdd667924a055e4e676cd", | |
| "msg": [31, 53, 9, 30, 23], | |
| "ct": [49, 23, 9, 49, 21], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 79, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**2 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "a73bdd667924a055e4e676cd", | |
| "msg": [25, 2, 61, 20, 53], | |
| "ct": [30, 61, 26, 29, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 80, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "a73bdd667924a055e4e676cd", | |
| "msg": [50, 53, 21, 34, 4], | |
| "ct": [5, 10, 53, 34, 60], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 81, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "a73bdd667924a055e4e676cd", | |
| "msg": [25, 11, 56, 8, 6], | |
| "ct": [52, 61, 13, 7, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 82, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**2 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "143c0fba8168001bb64e7379", | |
| "msg": [34, 14, 5, 34, 12], | |
| "ct": [33, 51, 45, 27, 28], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 83, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**2 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "143c0fba8168001bb64e7379", | |
| "msg": [52, 31, 22, 19, 17], | |
| "ct": [17, 57, 43, 59, 53], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 84, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "143c0fba8168001bb64e7379", | |
| "msg": [17, 60, 7, 57, 35], | |
| "ct": [7, 11, 59, 36, 34], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 85, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "2dcc7a48fa759e58062f64099e2654fb", | |
| "tweak": "143c0fba8168001bb64e7379", | |
| "msg": [1, 57, 29, 24, 45], | |
| "ct": [48, 21, 17, 50, 50], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 86, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "8d8a7cd63e6554b77d0345f3d799bfad", | |
| "tweak": "ea7fef1b2f555ad8", | |
| "msg": [-1, 57, 22, 33, 19], | |
| "ct": [11, 12, 30, 31, 51], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 87, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "8d8a7cd63e6554b77d0345f3d799bfad", | |
| "tweak": "ea7fef1b2f555ad8", | |
| "msg": [4, -1, 22, 33, 19], | |
| "ct": [51, 35, 46, 30, 0], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 88, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "8d8a7cd63e6554b77d0345f3d799bfad", | |
| "tweak": "ea7fef1b2f555ad8", | |
| "msg": [4, 57, 22, 33, -1], | |
| "ct": [10, 22, 2, 50, 4], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 89, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "9b2927b6388a31a86714390db6f99b59", | |
| "tweak": "70aa79f9eb3447e2", | |
| "msg": [64, 21, 43, 12, 58], | |
| "ct": [34, 23, 42, 48, 60], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 90, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "9b2927b6388a31a86714390db6f99b59", | |
| "tweak": "70aa79f9eb3447e2", | |
| "msg": [14, 64, 43, 12, 58], | |
| "ct": [16, 48, 14, 47, 15], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 91, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "9b2927b6388a31a86714390db6f99b59", | |
| "tweak": "70aa79f9eb3447e2", | |
| "msg": [14, 21, 43, 12, 64], | |
| "ct": [57, 38, 13, 38, 6], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 6, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 92, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "474bbf2aff5c252419c49a07d50e2bdf", | |
| "tweak": "d64296c362368a3d", | |
| "msg": [39, 36, 50, 23, 42, 33], | |
| "ct": [34, 13, 48, 55, 8, 28], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 93, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [0, 0, 0, 0, 0, 0], | |
| "ct": [27, 1, 62, 44, 3, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 94, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [63, 63, 63, 63, 63, 63], | |
| "ct": [33, 43, 51, 24, 18, 61], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 95, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [32, 0, 0, 32, 0, 0], | |
| "ct": [59, 60, 58, 14, 15, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 96, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [31, 63, 63, 31, 63, 63], | |
| "ct": [11, 52, 15, 3, 33, 58], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 97, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [33, 12, 14, 61, 4, 26], | |
| "ct": [60, 28, 10, 2, 16, 24], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 98, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [63, 29, 60, 34, 47, 45], | |
| "ct": [11, 37, 23, 24, 36, 53], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 99, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [27, 61, 2, 19, 47, 59], | |
| "ct": [32, 7, 12, 61, 40, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 100, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [61, 2, 49, 27, 12, 61], | |
| "ct": [10, 44, 43, 35, 1, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 101, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [30, 15, 17, 17, 1, 3], | |
| "ct": [27, 43, 4, 27, 9, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 102, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [40, 2, 55, 52, 41, 26], | |
| "ct": [30, 52, 33, 36, 4, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 103, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [42, 60, 37, 46, 43, 9], | |
| "ct": [19, 10, 25, 21, 22, 54], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 104, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [36, 26, 41, 25, 44, 10], | |
| "ct": [55, 54, 5, 47, 63, 31], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 105, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [3, 21, 62, 15, 55, 22], | |
| "ct": [0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 106, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [31, 55, 21, 23, 22, 38], | |
| "ct": [63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 107, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [37, 2, 1, 9, 61, 4], | |
| "ct": [32, 0, 0, 32, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 108, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "26dbd1998c3a046ac3ff11937079c034", | |
| "tweak": "5e551c3daad7e5fa", | |
| "msg": [30, 26, 19, 50, 4, 10], | |
| "ct": [31, 63, 63, 31, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 109, | |
| "comment": "y = 0 and (y + a) % radix**3 == 0 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "969ed5aee638b33c1cf2db3d", | |
| "msg": [51, 48, 38, 4, 43, 27], | |
| "ct": [59, 60, 22, 38, 20, 44], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 110, | |
| "comment": "y = 0 and a = 1 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "969ed5aee638b33c1cf2db3d", | |
| "msg": [40, 42, 53, 5, 15, 44], | |
| "ct": [31, 53, 27, 46, 10, 32], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 111, | |
| "comment": "y = 0 and a has large Hamming weight in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "969ed5aee638b33c1cf2db3d", | |
| "msg": [63, 5, 51, 24, 32, 11], | |
| "ct": [43, 14, 24, 27, 56, 47], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 112, | |
| "comment": "y = 0 and (y + a) % radix**3 is maximal in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "969ed5aee638b33c1cf2db3d", | |
| "msg": [13, 5, 34, 20, 20, 13], | |
| "ct": [24, 6, 55, 23, 3, 58], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 113, | |
| "comment": "y = 1 and a = 0 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "ef7976ba5037aa5eaab116fe", | |
| "msg": [50, 28, 12, 37, 3, 32], | |
| "ct": [34, 61, 31, 9, 3, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 114, | |
| "comment": "y = 1 and a = 1 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "ef7976ba5037aa5eaab116fe", | |
| "msg": [44, 62, 24, 16, 40, 58], | |
| "ct": [24, 63, 26, 2, 7, 34], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 115, | |
| "comment": "y = 1 and a has large Hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "ef7976ba5037aa5eaab116fe", | |
| "msg": [24, 30, 36, 2, 47, 31], | |
| "ct": [26, 43, 38, 21, 63, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 116, | |
| "comment": "y = 1 and (y + a) % radix**3 is maximal in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "ef7976ba5037aa5eaab116fe", | |
| "msg": [19, 49, 31, 44, 30, 39], | |
| "ct": [29, 55, 11, 33, 54, 36], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 117, | |
| "comment": "y = 1 and (y + a) % radix**3 == 0 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "ef7976ba5037aa5eaab116fe", | |
| "msg": [61, 2, 31, 61, 0, 10], | |
| "ct": [10, 20, 14, 8, 20, 41], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 118, | |
| "comment": "y is maximal and (y + a) % radix**3 is maximal in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "f1dbe9ed989ec4a90ccfc4c3", | |
| "msg": [36, 17, 41, 36, 29, 3], | |
| "ct": [59, 21, 10, 54, 12, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 119, | |
| "comment": "y is maximal and (y + a) % radix**3 == 0 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "f1dbe9ed989ec4a90ccfc4c3", | |
| "msg": [19, 13, 4, 17, 59, 48], | |
| "ct": [31, 26, 11, 7, 8, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 120, | |
| "comment": "y is maximal and a has large Hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "f1dbe9ed989ec4a90ccfc4c3", | |
| "msg": [50, 54, 3, 10, 43, 27], | |
| "ct": [42, 1, 30, 23, 38, 44], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 121, | |
| "comment": "y is maximal and a is maximal in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "f1dbe9ed989ec4a90ccfc4c3", | |
| "msg": [1, 14, 19, 34, 31, 4], | |
| "ct": [35, 32, 45, 39, 21, 44], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 122, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**3 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "b90c957a55a622719d8c9cee", | |
| "msg": [29, 28, 27, 6, 25, 15], | |
| "ct": [18, 55, 28, 22, 29, 42], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 123, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**3 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "b90c957a55a622719d8c9cee", | |
| "msg": [63, 46, 6, 29, 3, 63], | |
| "ct": [29, 34, 29, 11, 57, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 124, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "b90c957a55a622719d8c9cee", | |
| "msg": [46, 13, 33, 62, 17, 29], | |
| "ct": [26, 30, 2, 4, 43, 54], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 125, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6a24278db37f29768c4263256ffbd956", | |
| "tweak": "b90c957a55a622719d8c9cee", | |
| "msg": [3, 45, 59, 43, 27, 29], | |
| "ct": [19, 1, 52, 53, 1, 24], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 126, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "ed4561abc903a9e722ddb8aa94cc662d", | |
| "tweak": "975f6d7701e004f7", | |
| "msg": [-1, 50, 4, 12, 47, 33], | |
| "ct": [54, 55, 3, 34, 22, 50], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 127, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "ed4561abc903a9e722ddb8aa94cc662d", | |
| "tweak": "975f6d7701e004f7", | |
| "msg": [32, 50, -1, 12, 47, 33], | |
| "ct": [4, 31, 9, 3, 22, 43], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 128, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "ed4561abc903a9e722ddb8aa94cc662d", | |
| "tweak": "975f6d7701e004f7", | |
| "msg": [32, 50, 4, 12, 47, -1], | |
| "ct": [8, 62, 37, 19, 4, 33], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 129, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "2e30ffe60124da692c553d837657163a", | |
| "tweak": "15dc2d2627697d86", | |
| "msg": [64, 15, 9, 30, 12, 25], | |
| "ct": [50, 26, 24, 0, 41, 0], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 130, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "2e30ffe60124da692c553d837657163a", | |
| "tweak": "15dc2d2627697d86", | |
| "msg": [35, 15, 64, 30, 12, 25], | |
| "ct": [14, 16, 35, 27, 34, 59], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 131, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "2e30ffe60124da692c553d837657163a", | |
| "tweak": "15dc2d2627697d86", | |
| "msg": [35, 15, 9, 30, 12, 64], | |
| "ct": [14, 42, 2, 35, 38, 9], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 7, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 132, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "20b2c30d44c72c32a4564541332f45c3", | |
| "tweak": "3de9de4b8736f463", | |
| "msg": [49, 59, 54, 54, 37, 8, 18], | |
| "ct": [61, 17, 0, 35, 30, 59, 57], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 133, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [0, 0, 0, 0, 0, 0, 0], | |
| "ct": [30, 26, 17, 42, 32, 15, 32], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 134, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [63, 63, 63, 63, 63, 63, 63], | |
| "ct": [59, 32, 26, 4, 33, 33, 27], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 135, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [32, 0, 0, 32, 0, 0, 0], | |
| "ct": [62, 17, 45, 59, 43, 22, 59], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 136, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [31, 63, 63, 31, 63, 63, 63], | |
| "ct": [59, 33, 34, 14, 4, 3, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 137, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [41, 3, 5, 43, 34, 52, 43], | |
| "ct": [34, 37, 33, 25, 4, 0, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 138, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [34, 15, 61, 49, 57, 18, 40], | |
| "ct": [32, 35, 45, 27, 26, 57, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 139, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [47, 21, 46, 25, 45, 45, 1], | |
| "ct": [63, 17, 24, 61, 25, 47, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 140, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [31, 19, 47, 36, 62, 39, 21], | |
| "ct": [57, 10, 51, 32, 24, 14, 22], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 141, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [24, 42, 53, 33, 12, 30, 54], | |
| "ct": [29, 9, 35, 11, 0, 26, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 142, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [59, 53, 59, 13, 59, 40, 38], | |
| "ct": [13, 27, 15, 57, 62, 17, 62], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 143, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [58, 49, 41, 29, 27, 42, 58], | |
| "ct": [33, 54, 7, 15, 37, 23, 22], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 144, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [18, 3, 27, 18, 29, 60, 47], | |
| "ct": [52, 62, 34, 55, 14, 55, 16], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 145, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [30, 11, 35, 60, 12, 39, 24], | |
| "ct": [0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 146, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [29, 51, 30, 0, 47, 24, 23], | |
| "ct": [63, 63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 147, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [13, 50, 14, 28, 4, 37, 33], | |
| "ct": [32, 0, 0, 32, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 148, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "53b43d40c44c62982d5123e5716d25db", | |
| "tweak": "c34af5583d26dacc", | |
| "msg": [23, 28, 55, 16, 28, 60, 38], | |
| "ct": [31, 63, 63, 31, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 149, | |
| "comment": "y = 0 and (y + a) % radix**3 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "f4f034e7337ede5790ab8872", | |
| "msg": [10, 9, 37, 45, 16, 23, 63], | |
| "ct": [56, 52, 27, 49, 53, 11, 44], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 150, | |
| "comment": "y = 0 and a = 1 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "f4f034e7337ede5790ab8872", | |
| "msg": [9, 50, 3, 44, 25, 61, 53], | |
| "ct": [54, 57, 39, 19, 55, 24, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 151, | |
| "comment": "y = 0 and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "f4f034e7337ede5790ab8872", | |
| "msg": [39, 53, 61, 17, 38, 32, 8], | |
| "ct": [7, 31, 14, 42, 39, 0, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 152, | |
| "comment": "y = 0 and (y + a) % radix**3 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "f4f034e7337ede5790ab8872", | |
| "msg": [23, 7, 24, 33, 41, 0, 63], | |
| "ct": [57, 24, 50, 28, 13, 59, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 153, | |
| "comment": "y = 1 and a = 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "4afb665fd4309b09433740f5", | |
| "msg": [47, 0, 18, 6, 8, 9, 1], | |
| "ct": [21, 58, 22, 15, 15, 20, 52], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 154, | |
| "comment": "y = 1 and a = 1 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "4afb665fd4309b09433740f5", | |
| "msg": [1, 12, 52, 9, 52, 8, 29], | |
| "ct": [31, 21, 58, 40, 54, 28, 48], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 155, | |
| "comment": "y = 1 and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "4afb665fd4309b09433740f5", | |
| "msg": [44, 47, 33, 61, 37, 17, 44], | |
| "ct": [29, 44, 17, 23, 10, 29, 44], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 156, | |
| "comment": "y = 1 and (y + a) % radix**3 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "4afb665fd4309b09433740f5", | |
| "msg": [5, 7, 40, 38, 38, 11, 17], | |
| "ct": [23, 62, 61, 42, 57, 48, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 157, | |
| "comment": "y = 1 and (y + a) % radix**3 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "4afb665fd4309b09433740f5", | |
| "msg": [45, 57, 35, 7, 48, 29, 34], | |
| "ct": [2, 30, 20, 21, 36, 48, 36], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 158, | |
| "comment": "y is maximal and (y + a) % radix**3 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "958e3ca676bc34a316b2bba8", | |
| "msg": [37, 58, 5, 62, 5, 19, 22], | |
| "ct": [32, 14, 9, 60, 19, 54, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 159, | |
| "comment": "y is maximal and (y + a) % radix**3 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "958e3ca676bc34a316b2bba8", | |
| "msg": [63, 60, 46, 52, 54, 20, 16], | |
| "ct": [1, 43, 15, 20, 42, 28, 41], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 160, | |
| "comment": "y is maximal and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "958e3ca676bc34a316b2bba8", | |
| "msg": [19, 13, 39, 58, 41, 43, 51], | |
| "ct": [43, 8, 23, 41, 8, 16, 41], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 161, | |
| "comment": "y is maximal and a is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "958e3ca676bc34a316b2bba8", | |
| "msg": [7, 25, 33, 41, 34, 46, 56], | |
| "ct": [26, 27, 20, 58, 10, 54, 39], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 162, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "60861e05ad216032a4fe1b9c", | |
| "msg": [46, 11, 7, 47, 42, 13, 49], | |
| "ct": [54, 0, 11, 39, 18, 62, 47], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 163, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "60861e05ad216032a4fe1b9c", | |
| "msg": [46, 19, 29, 43, 33, 7, 51], | |
| "ct": [53, 2, 14, 10, 58, 49, 32], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 164, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**3 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "60861e05ad216032a4fe1b9c", | |
| "msg": [37, 55, 46, 21, 4, 48, 43], | |
| "ct": [8, 19, 25, 24, 38, 48, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 165, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**3 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "60861e05ad216032a4fe1b9c", | |
| "msg": [55, 4, 29, 7, 60, 58, 61], | |
| "ct": [1, 23, 46, 12, 34, 56, 16], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 166, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "60861e05ad216032a4fe1b9c", | |
| "msg": [39, 57, 52, 7, 57, 10, 23], | |
| "ct": [17, 25, 11, 14, 63, 38, 34], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 167, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "60861e05ad216032a4fe1b9c", | |
| "msg": [50, 22, 20, 61, 7, 60, 57], | |
| "ct": [43, 25, 19, 40, 4, 40, 32], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 168, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**3 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "589bf338ddcb8c56af495fcc", | |
| "msg": [63, 45, 47, 34, 26, 4, 54], | |
| "ct": [47, 49, 49, 30, 53, 63, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 169, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**3 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "589bf338ddcb8c56af495fcc", | |
| "msg": [36, 61, 10, 24, 60, 14, 40], | |
| "ct": [22, 44, 48, 2, 60, 16, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 170, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "589bf338ddcb8c56af495fcc", | |
| "msg": [61, 42, 61, 45, 12, 35, 39], | |
| "ct": [32, 43, 7, 3, 41, 10, 25], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 171, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ad837c09903b33e60eecfa1d04308e32", | |
| "tweak": "589bf338ddcb8c56af495fcc", | |
| "msg": [34, 24, 47, 52, 52, 1, 20], | |
| "ct": [16, 56, 28, 10, 34, 8, 59], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 172, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "ea35a8f24783be82abd93cc74e4944cb", | |
| "tweak": "a704f808982bb10f", | |
| "msg": [-1, 10, 17, 61, 13, 18, 4], | |
| "ct": [34, 59, 5, 55, 19, 51, 18], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 173, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "ea35a8f24783be82abd93cc74e4944cb", | |
| "tweak": "a704f808982bb10f", | |
| "msg": [58, 10, -1, 61, 13, 18, 4], | |
| "ct": [56, 45, 14, 41, 3, 25, 38], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 174, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "ea35a8f24783be82abd93cc74e4944cb", | |
| "tweak": "a704f808982bb10f", | |
| "msg": [58, 10, 17, 61, 13, 18, -1], | |
| "ct": [28, 14, 4, 59, 27, 56, 63], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 175, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "72e286c4aa163f62176b31a16e524c75", | |
| "tweak": "ab3d5c86e9b7827f", | |
| "msg": [64, 51, 2, 57, 39, 6, 15], | |
| "ct": [20, 49, 61, 48, 2, 0, 60], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 176, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "72e286c4aa163f62176b31a16e524c75", | |
| "tweak": "ab3d5c86e9b7827f", | |
| "msg": [50, 51, 64, 57, 39, 6, 15], | |
| "ct": [27, 22, 51, 32, 63, 21, 38], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 177, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "72e286c4aa163f62176b31a16e524c75", | |
| "tweak": "ab3d5c86e9b7827f", | |
| "msg": [50, 51, 2, 57, 39, 6, 64], | |
| "ct": [23, 4, 36, 51, 15, 41, 50], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 8, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 178, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "60d83b209822c0d9b7033dca86444fa1", | |
| "tweak": "23ef05b155a108c4", | |
| "msg": [33, 58, 45, 53, 46, 26, 40, 55], | |
| "ct": [55, 60, 11, 44, 29, 29, 56, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 179, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [55, 54, 0, 57, 52, 39, 13, 39], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 180, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [63, 63, 63, 63, 63, 63, 63, 63], | |
| "ct": [0, 18, 1, 11, 43, 21, 0, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 181, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [32, 0, 0, 0, 32, 0, 0, 0], | |
| "ct": [20, 12, 50, 43, 4, 11, 49, 27], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 182, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [31, 63, 63, 63, 31, 63, 63, 63], | |
| "ct": [28, 50, 13, 29, 56, 47, 61, 24], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 183, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [54, 53, 54, 37, 39, 55, 21, 42], | |
| "ct": [41, 19, 24, 17, 42, 62, 37, 55], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 184, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [54, 31, 29, 14, 52, 6, 48, 47], | |
| "ct": [35, 8, 54, 8, 60, 26, 19, 26], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 185, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [52, 35, 48, 44, 12, 17, 61, 60], | |
| "ct": [23, 39, 20, 5, 40, 55, 30, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 186, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [0, 47, 34, 43, 7, 20, 27, 51], | |
| "ct": [41, 49, 35, 31, 26, 57, 52, 22], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 187, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [22, 27, 53, 55, 43, 34, 6, 43], | |
| "ct": [18, 1, 48, 11, 53, 27, 16, 30], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 188, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [19, 25, 31, 7, 20, 51, 0, 15], | |
| "ct": [15, 60, 22, 34, 13, 21, 12, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 189, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [11, 35, 43, 44, 25, 1, 39, 40], | |
| "ct": [10, 44, 42, 59, 8, 40, 39, 44], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 190, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [56, 1, 47, 47, 0, 4, 8, 4], | |
| "ct": [26, 39, 26, 38, 25, 37, 13, 61], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 191, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [19, 55, 40, 51, 52, 58, 16, 49], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 192, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [10, 21, 5, 60, 18, 0, 9, 7], | |
| "ct": [63, 63, 63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 193, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [7, 36, 5, 58, 51, 22, 55, 16], | |
| "ct": [32, 0, 0, 0, 32, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 194, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3bfee9ab1eadaa8cff5b05281fcb0140", | |
| "tweak": "2024d5e34b3ba6a0", | |
| "msg": [5, 16, 28, 33, 43, 55, 37, 23], | |
| "ct": [31, 63, 63, 63, 31, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 195, | |
| "comment": "y = 0 and (y + a) % radix**4 == 0 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "55c826ecf195b4ddf287e2a2", | |
| "msg": [7, 45, 62, 60, 45, 20, 49, 41], | |
| "ct": [16, 60, 5, 52, 0, 4, 44, 47], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 196, | |
| "comment": "y = 0 and a = 1 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "55c826ecf195b4ddf287e2a2", | |
| "msg": [35, 59, 45, 1, 4, 19, 4, 58], | |
| "ct": [55, 52, 48, 46, 22, 39, 10, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 197, | |
| "comment": "y = 0 and a has large Hamming weight in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "55c826ecf195b4ddf287e2a2", | |
| "msg": [37, 43, 42, 6, 63, 19, 37, 55], | |
| "ct": [39, 37, 23, 36, 28, 5, 3, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 198, | |
| "comment": "y = 0 and (y + a) % radix**4 is maximal in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "55c826ecf195b4ddf287e2a2", | |
| "msg": [1, 59, 49, 7, 12, 32, 51, 20], | |
| "ct": [5, 44, 41, 7, 63, 3, 54, 23], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 199, | |
| "comment": "y = 1 and a = 0 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "ae040a0fedf6c99792bddd1d", | |
| "msg": [56, 15, 33, 26, 17, 19, 21, 18], | |
| "ct": [30, 56, 27, 32, 29, 4, 22, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 200, | |
| "comment": "y = 1 and a = 1 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "ae040a0fedf6c99792bddd1d", | |
| "msg": [33, 13, 38, 24, 3, 38, 13, 2], | |
| "ct": [21, 63, 17, 28, 63, 16, 50, 34], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 201, | |
| "comment": "y = 1 and a has large Hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "ae040a0fedf6c99792bddd1d", | |
| "msg": [34, 42, 14, 18, 52, 30, 53, 49], | |
| "ct": [39, 46, 39, 17, 40, 53, 3, 55], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 202, | |
| "comment": "y = 1 and (y + a) % radix**4 is maximal in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "ae040a0fedf6c99792bddd1d", | |
| "msg": [13, 34, 35, 54, 43, 46, 52, 58], | |
| "ct": [11, 14, 11, 11, 35, 22, 13, 24], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 203, | |
| "comment": "y = 1 and (y + a) % radix**4 == 0 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "ae040a0fedf6c99792bddd1d", | |
| "msg": [19, 53, 58, 46, 9, 63, 26, 33], | |
| "ct": [52, 31, 15, 42, 12, 27, 0, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 204, | |
| "comment": "y is maximal and (y + a) % radix**4 is maximal in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "d3e3009fe5ed5604bb5935fe", | |
| "msg": [46, 1, 6, 35, 4, 20, 3, 51], | |
| "ct": [22, 24, 9, 51, 38, 19, 3, 22], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 205, | |
| "comment": "y is maximal and (y + a) % radix**4 == 0 in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "d3e3009fe5ed5604bb5935fe", | |
| "msg": [37, 60, 40, 15, 0, 58, 18, 59], | |
| "ct": [21, 44, 62, 12, 35, 42, 23, 30], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 206, | |
| "comment": "y is maximal and a has large Hamming weight in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "d3e3009fe5ed5604bb5935fe", | |
| "msg": [13, 11, 10, 58, 21, 47, 23, 56], | |
| "ct": [0, 58, 16, 33, 32, 31, 18, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 207, | |
| "comment": "y is maximal and a is maximal in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "d3e3009fe5ed5604bb5935fe", | |
| "msg": [48, 54, 61, 51, 1, 9, 7, 48], | |
| "ct": [19, 40, 23, 55, 21, 41, 29, 39], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 208, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "1c6b8b0d241776b025dbad32", | |
| "msg": [18, 50, 59, 35, 63, 28, 41, 7], | |
| "ct": [45, 5, 37, 41, 37, 19, 7, 42], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 209, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "1c6b8b0d241776b025dbad32", | |
| "msg": [22, 50, 40, 55, 34, 1, 9, 55], | |
| "ct": [55, 56, 2, 27, 34, 32, 1, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 210, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**4 is maximal in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "1c6b8b0d241776b025dbad32", | |
| "msg": [58, 55, 25, 13, 29, 51, 60, 62], | |
| "ct": [57, 40, 19, 18, 24, 28, 51, 41], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 211, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**4 == 0 in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "1c6b8b0d241776b025dbad32", | |
| "msg": [54, 17, 9, 45, 17, 49, 7, 7], | |
| "ct": [4, 17, 41, 9, 45, 45, 37, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 212, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "1c6b8b0d241776b025dbad32", | |
| "msg": [63, 6, 37, 40, 7, 62, 17, 46], | |
| "ct": [6, 26, 40, 17, 8, 0, 6, 42], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 213, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "1c6b8b0d241776b025dbad32", | |
| "msg": [1, 2, 63, 59, 37, 18, 10, 37], | |
| "ct": [55, 32, 20, 59, 22, 56, 18, 58], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 214, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**4 is maximal in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "d57c61fad8183ffa34439fc1", | |
| "msg": [3, 54, 58, 10, 47, 59, 19, 38], | |
| "ct": [17, 12, 40, 46, 26, 20, 41, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 215, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**4 == 0 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "d57c61fad8183ffa34439fc1", | |
| "msg": [49, 55, 17, 51, 19, 44, 21, 27], | |
| "ct": [56, 12, 33, 51, 12, 29, 49, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 216, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "d57c61fad8183ffa34439fc1", | |
| "msg": [39, 24, 41, 1, 39, 48, 17, 28], | |
| "ct": [47, 21, 60, 0, 48, 7, 14, 46], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 217, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "475b7573760904fa57ad2cb88ea52f32", | |
| "tweak": "d57c61fad8183ffa34439fc1", | |
| "msg": [39, 27, 42, 13, 63, 0, 45, 2], | |
| "ct": [0, 58, 36, 24, 48, 21, 35, 36], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 218, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "ebc261665fab01ae2bfe156e54de3006", | |
| "tweak": "5080dd547abdeddd", | |
| "msg": [-1, 33, 47, 46, 53, 31, 22, 61], | |
| "ct": [54, 32, 43, 9, 57, 40, 50, 9], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 219, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "ebc261665fab01ae2bfe156e54de3006", | |
| "tweak": "5080dd547abdeddd", | |
| "msg": [56, 33, -1, 46, 53, 31, 22, 61], | |
| "ct": [13, 52, 57, 35, 7, 54, 63, 47], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 220, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "ebc261665fab01ae2bfe156e54de3006", | |
| "tweak": "5080dd547abdeddd", | |
| "msg": [56, 33, 47, 46, 53, 31, 22, -1], | |
| "ct": [11, 20, 53, 60, 53, 9, 34, 49], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 221, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "5453b38972df2df0db8db08aa5ebf04f", | |
| "tweak": "f1ce6e18009b5343", | |
| "msg": [64, 46, 41, 7, 47, 62, 61, 49], | |
| "ct": [47, 47, 60, 37, 51, 49, 2, 34], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 222, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "5453b38972df2df0db8db08aa5ebf04f", | |
| "tweak": "f1ce6e18009b5343", | |
| "msg": [19, 46, 64, 7, 47, 62, 61, 49], | |
| "ct": [22, 39, 39, 10, 60, 59, 54, 38], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 223, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "5453b38972df2df0db8db08aa5ebf04f", | |
| "tweak": "f1ce6e18009b5343", | |
| "msg": [19, 46, 41, 7, 47, 62, 61, 64], | |
| "ct": [18, 16, 43, 29, 43, 30, 7, 57], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 9, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 224, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "2215b9528000f5f306fcdfe2969c6785", | |
| "tweak": "0539d85c7b076285", | |
| "msg": [15, 29, 24, 58, 6, 4, 11, 39, 58], | |
| "ct": [37, 13, 32, 0, 56, 21, 2, 36, 23], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 225, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [7, 35, 15, 23, 51, 58, 56, 7, 25], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 226, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "ct": [20, 52, 18, 60, 0, 17, 14, 41, 59], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 227, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [32, 0, 0, 0, 32, 0, 0, 0, 0], | |
| "ct": [47, 29, 33, 3, 3, 20, 27, 6, 31], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 228, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [31, 63, 63, 63, 31, 63, 63, 63, 63], | |
| "ct": [36, 45, 3, 47, 27, 62, 1, 23, 29], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 229, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [25, 11, 58, 57, 46, 53, 7, 29, 36], | |
| "ct": [5, 13, 17, 29, 8, 35, 13, 62, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 230, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [23, 0, 15, 53, 51, 11, 25, 62, 9], | |
| "ct": [28, 8, 42, 38, 28, 46, 50, 26, 31], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 231, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [44, 31, 36, 36, 24, 25, 32, 42, 6], | |
| "ct": [33, 50, 48, 44, 63, 1, 48, 16, 32], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 232, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [40, 6, 47, 60, 23, 43, 45, 9, 27], | |
| "ct": [15, 10, 14, 48, 45, 13, 49, 44, 40], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 233, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [62, 18, 4, 46, 35, 26, 10, 41, 61], | |
| "ct": [30, 1, 26, 48, 42, 44, 18, 12, 18], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 234, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [5, 21, 36, 26, 42, 59, 10, 41, 59], | |
| "ct": [60, 0, 15, 3, 8, 48, 15, 54, 58], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 235, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [0, 54, 47, 20, 40, 10, 11, 25, 48], | |
| "ct": [54, 29, 25, 36, 36, 12, 58, 4, 61], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 236, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [44, 33, 49, 30, 24, 15, 48, 6, 30], | |
| "ct": [43, 22, 41, 49, 25, 23, 23, 20, 45], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 237, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [51, 5, 29, 36, 17, 40, 59, 18, 50], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 238, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [11, 8, 6, 48, 2, 42, 41, 18, 7], | |
| "ct": [63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 239, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [49, 3, 16, 56, 36, 16, 20, 41, 61], | |
| "ct": [32, 0, 0, 0, 32, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 240, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "4c00ade3e32b12866bb56e736e18eaf4", | |
| "tweak": "3f0bf1e88240178e", | |
| "msg": [31, 23, 60, 21, 13, 28, 20, 23, 41], | |
| "ct": [31, 63, 63, 63, 31, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 241, | |
| "comment": "y = 0 and (y + a) % radix**4 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "ca54139f48ffdd9cc88405", | |
| "msg": [36, 4, 56, 40, 34, 63, 10, 22, 20], | |
| "ct": [0, 0, 0, 0, 44, 25, 56, 15, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 242, | |
| "comment": "y = 0 and a = 1 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "ca54139f48ffdd9cc88405", | |
| "msg": [7, 25, 40, 13, 18, 49, 60, 21, 62], | |
| "ct": [0, 0, 0, 1, 27, 13, 47, 30, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 243, | |
| "comment": "y = 0 and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "ca54139f48ffdd9cc88405", | |
| "msg": [61, 31, 54, 0, 24, 6, 59, 49, 49], | |
| "ct": [32, 0, 0, 0, 16, 13, 11, 4, 58], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 244, | |
| "comment": "y = 0 and (y + a) % radix**4 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "ca54139f48ffdd9cc88405", | |
| "msg": [35, 44, 61, 29, 13, 62, 35, 51, 56], | |
| "ct": [63, 63, 63, 63, 29, 48, 10, 3, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 245, | |
| "comment": "y = 1 and a = 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "9cf4492d17267e32e6ab96", | |
| "msg": [0, 0, 0, 0, 26, 55, 20, 59, 0], | |
| "ct": [63, 4, 5, 26, 38, 20, 41, 40, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 246, | |
| "comment": "y = 1 and a = 1 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "9cf4492d17267e32e6ab96", | |
| "msg": [0, 0, 0, 1, 26, 55, 20, 59, 0], | |
| "ct": [26, 38, 0, 23, 32, 4, 45, 5, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 247, | |
| "comment": "y = 1 and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "9cf4492d17267e32e6ab96", | |
| "msg": [32, 0, 0, 0, 26, 55, 20, 59, 0], | |
| "ct": [7, 23, 17, 26, 9, 7, 44, 19, 19], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 248, | |
| "comment": "y = 1 and (y + a) % radix**4 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "9cf4492d17267e32e6ab96", | |
| "msg": [63, 63, 63, 62, 26, 55, 20, 59, 0], | |
| "ct": [21, 46, 45, 10, 61, 39, 48, 17, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 249, | |
| "comment": "y = 1 and (y + a) % radix**4 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "9cf4492d17267e32e6ab96", | |
| "msg": [63, 63, 63, 63, 26, 55, 20, 59, 0], | |
| "ct": [24, 15, 47, 9, 25, 23, 45, 32, 43], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 250, | |
| "comment": "y is maximal and (y + a) % radix**4 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "247dcbdc13841c98451c08", | |
| "msg": [54, 25, 46, 20, 5, 49, 9, 4, 59], | |
| "ct": [51, 17, 48, 23, 13, 43, 40, 28, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 251, | |
| "comment": "y is maximal and (y + a) % radix**4 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "247dcbdc13841c98451c08", | |
| "msg": [43, 36, 53, 2, 29, 51, 1, 59, 30], | |
| "ct": [18, 19, 8, 31, 16, 49, 23, 57, 48], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 252, | |
| "comment": "y is maximal and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "247dcbdc13841c98451c08", | |
| "msg": [60, 51, 27, 6, 44, 54, 53, 52, 53], | |
| "ct": [40, 14, 27, 55, 37, 6, 18, 49, 34], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 253, | |
| "comment": "y is maximal and a is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "247dcbdc13841c98451c08", | |
| "msg": [36, 60, 21, 31, 15, 1, 1, 36, 28], | |
| "ct": [47, 39, 26, 25, 61, 46, 17, 34, 34], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 254, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "34d0c5eeaa88dcdf9776d6", | |
| "msg": [32, 19, 23, 53, 42, 10, 13, 13, 21], | |
| "ct": [34, 37, 47, 9, 38, 3, 11, 17, 27], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 255, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "34d0c5eeaa88dcdf9776d6", | |
| "msg": [3, 5, 36, 24, 60, 26, 34, 4, 17], | |
| "ct": [60, 12, 36, 33, 7, 49, 56, 39, 30], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 256, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**4 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "34d0c5eeaa88dcdf9776d6", | |
| "msg": [31, 24, 12, 32, 13, 5, 17, 0, 55], | |
| "ct": [59, 12, 40, 45, 61, 49, 13, 17, 46], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 257, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**4 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "34d0c5eeaa88dcdf9776d6", | |
| "msg": [46, 50, 3, 21, 9, 15, 62, 31, 21], | |
| "ct": [51, 23, 42, 8, 13, 37, 27, 32, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 258, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "34d0c5eeaa88dcdf9776d6", | |
| "msg": [51, 55, 23, 23, 30, 52, 20, 54, 32], | |
| "ct": [7, 41, 31, 58, 1, 38, 9, 13, 25], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 259, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "34d0c5eeaa88dcdf9776d6", | |
| "msg": [52, 49, 42, 35, 19, 3, 25, 55, 12], | |
| "ct": [51, 59, 44, 44, 24, 35, 57, 24, 53], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 260, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**4 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "759c9f89f02bae0e068485", | |
| "msg": [0, 0, 0, 0, 57, 31, 11, 18, 52], | |
| "ct": [27, 3, 40, 55, 62, 53, 45, 35, 27], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 261, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**4 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "759c9f89f02bae0e068485", | |
| "msg": [0, 0, 0, 1, 57, 31, 11, 18, 52], | |
| "ct": [20, 52, 18, 23, 34, 47, 25, 55, 58], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 262, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "759c9f89f02bae0e068485", | |
| "msg": [32, 0, 0, 0, 57, 31, 11, 18, 52], | |
| "ct": [44, 42, 39, 45, 55, 16, 60, 25, 47], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 263, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "36e6ec14d7abaf2fa03904af42244b5f", | |
| "tweak": "759c9f89f02bae0e068485", | |
| "msg": [63, 63, 63, 63, 57, 31, 11, 18, 52], | |
| "ct": [33, 49, 35, 59, 40, 26, 55, 5, 60], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 264, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "7fd4e71784e95a3dd0b41315a67131d2", | |
| "tweak": "47d48ea4716ab8df", | |
| "msg": [-1, 3, 25, 22, 19, 27, 51, 9, 25], | |
| "ct": [50, 47, 6, 62, 48, 63, 16, 17, 26], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 265, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "7fd4e71784e95a3dd0b41315a67131d2", | |
| "tweak": "47d48ea4716ab8df", | |
| "msg": [54, 3, 25, -1, 19, 27, 51, 9, 25], | |
| "ct": [46, 35, 8, 36, 30, 2, 50, 36, 2], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 266, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "7fd4e71784e95a3dd0b41315a67131d2", | |
| "tweak": "47d48ea4716ab8df", | |
| "msg": [54, 3, 25, 22, 19, 27, 51, 9, -1], | |
| "ct": [29, 25, 17, 26, 60, 56, 20, 6, 13], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 267, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "861810626956a95b6d19729f520b4ef4", | |
| "tweak": "222cf62dbf8b50db", | |
| "msg": [64, 41, 61, 3, 0, 58, 39, 38, 55], | |
| "ct": [57, 21, 46, 62, 49, 62, 23, 24, 12], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 268, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "861810626956a95b6d19729f520b4ef4", | |
| "tweak": "222cf62dbf8b50db", | |
| "msg": [30, 41, 61, 64, 0, 58, 39, 38, 55], | |
| "ct": [39, 24, 0, 26, 18, 18, 3, 9, 61], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 269, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "861810626956a95b6d19729f520b4ef4", | |
| "tweak": "222cf62dbf8b50db", | |
| "msg": [30, 41, 61, 3, 0, 58, 39, 38, 64], | |
| "ct": [2, 26, 35, 42, 47, 0, 16, 31, 49], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 10, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 270, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "5474525ca99fb5da2babdbd45c727d16", | |
| "tweak": "f2cb4d9ba04b81f8", | |
| "msg": [29, 24, 16, 44, 52, 29, 8, 32, 2, 54], | |
| "ct": [40, 49, 50, 49, 6, 18, 8, 43, 59, 48], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 271, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [46, 50, 44, 36, 31, 28, 22, 59, 38, 42], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 272, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [63, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "ct": [19, 53, 1, 13, 53, 41, 7, 6, 8, 26], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 273, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [32, 0, 0, 0, 0, 32, 0, 0, 0, 0], | |
| "ct": [46, 39, 48, 8, 44, 4, 15, 4, 52, 30], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 274, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [31, 63, 63, 63, 63, 31, 63, 63, 63, 63], | |
| "ct": [50, 5, 28, 62, 37, 50, 25, 5, 15, 48], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 275, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [12, 7, 25, 62, 19, 59, 46, 63, 49, 19], | |
| "ct": [4, 54, 23, 26, 15, 50, 9, 58, 2, 16], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 276, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [17, 53, 7, 17, 27, 0, 26, 60, 2, 40], | |
| "ct": [2, 34, 7, 61, 44, 13, 4, 23, 6, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 277, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [17, 27, 1, 58, 33, 19, 25, 24, 59, 23], | |
| "ct": [10, 13, 11, 22, 35, 24, 28, 19, 44, 57], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 278, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [44, 60, 40, 8, 9, 27, 62, 59, 28, 61], | |
| "ct": [49, 20, 7, 43, 10, 0, 12, 28, 6, 30], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 279, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [62, 43, 38, 31, 26, 25, 23, 61, 47, 39], | |
| "ct": [60, 53, 19, 6, 2, 54, 0, 35, 52, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 280, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [58, 40, 52, 36, 21, 16, 11, 0, 63, 33], | |
| "ct": [32, 44, 14, 51, 24, 20, 60, 27, 51, 47], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 281, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [14, 13, 7, 46, 51, 44, 11, 12, 30, 11], | |
| "ct": [50, 20, 35, 0, 26, 26, 56, 15, 33, 21], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 282, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [18, 53, 47, 48, 30, 28, 9, 7, 21, 21], | |
| "ct": [11, 55, 20, 25, 7, 51, 13, 5, 8, 47], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 283, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [47, 13, 20, 30, 61, 29, 30, 50, 41, 15], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 284, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [30, 50, 0, 58, 55, 19, 36, 54, 45, 8], | |
| "ct": [63, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 285, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [52, 28, 45, 8, 61, 50, 61, 56, 27, 42], | |
| "ct": [32, 0, 0, 0, 0, 32, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 286, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "3e7ffa3f410e329464ad1d205799b3d5", | |
| "tweak": "0d5a58b58855ef5a", | |
| "msg": [11, 62, 32, 30, 12, 27, 22, 42, 60, 26], | |
| "ct": [31, 63, 63, 63, 63, 31, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 287, | |
| "comment": "y = 0 and (y + a) % radix**5 == 0 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "4512ab841d2e65baf7d304", | |
| "msg": [23, 2, 27, 63, 24, 0, 36, 11, 19, 10], | |
| "ct": [26, 28, 37, 0, 20, 16, 41, 10, 58, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 288, | |
| "comment": "y = 0 and a = 1 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "4512ab841d2e65baf7d304", | |
| "msg": [19, 26, 39, 14, 16, 46, 32, 23, 34, 32], | |
| "ct": [8, 17, 34, 17, 6, 8, 61, 32, 24, 53], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 289, | |
| "comment": "y = 0 and a has large Hamming weight in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "4512ab841d2e65baf7d304", | |
| "msg": [43, 16, 2, 22, 55, 15, 13, 57, 35, 29], | |
| "ct": [35, 29, 34, 14, 49, 4, 27, 49, 8, 54], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 290, | |
| "comment": "y = 0 and (y + a) % radix**5 is maximal in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "4512ab841d2e65baf7d304", | |
| "msg": [14, 0, 31, 1, 47, 10, 55, 42, 50, 61], | |
| "ct": [43, 6, 35, 59, 57, 30, 48, 16, 31, 31], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 291, | |
| "comment": "y = 1 and a = 0 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "e7ccbcac32e998fda1f19f", | |
| "msg": [34, 46, 33, 60, 33, 3, 38, 7, 63, 6], | |
| "ct": [23, 34, 27, 14, 62, 17, 51, 11, 2, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 292, | |
| "comment": "y = 1 and a = 1 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "e7ccbcac32e998fda1f19f", | |
| "msg": [2, 35, 50, 34, 28, 14, 53, 56, 17, 14], | |
| "ct": [15, 24, 59, 31, 22, 0, 34, 45, 8, 22], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 293, | |
| "comment": "y = 1 and a has large Hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "e7ccbcac32e998fda1f19f", | |
| "msg": [58, 7, 14, 39, 23, 55, 44, 60, 18, 1], | |
| "ct": [35, 44, 38, 48, 59, 59, 35, 7, 18, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 294, | |
| "comment": "y = 1 and (y + a) % radix**5 is maximal in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "e7ccbcac32e998fda1f19f", | |
| "msg": [30, 21, 25, 61, 31, 55, 41, 16, 26, 57], | |
| "ct": [59, 9, 49, 19, 22, 43, 10, 46, 46, 42], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 295, | |
| "comment": "y = 1 and (y + a) % radix**5 == 0 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "e7ccbcac32e998fda1f19f", | |
| "msg": [5, 56, 25, 4, 5, 28, 34, 1, 8, 56], | |
| "ct": [36, 12, 8, 11, 6, 49, 30, 11, 51, 42], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 296, | |
| "comment": "y is maximal and (y + a) % radix**5 is maximal in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "72c0e8f2827180b8130b03", | |
| "msg": [24, 11, 13, 29, 13, 54, 63, 21, 34, 17], | |
| "ct": [27, 22, 31, 0, 26, 20, 62, 59, 9, 41], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 297, | |
| "comment": "y is maximal and (y + a) % radix**5 == 0 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "72c0e8f2827180b8130b03", | |
| "msg": [39, 33, 49, 23, 12, 56, 19, 20, 43, 61], | |
| "ct": [46, 31, 13, 55, 14, 42, 44, 50, 45, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 298, | |
| "comment": "y is maximal and a has large Hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "72c0e8f2827180b8130b03", | |
| "msg": [40, 7, 30, 19, 59, 45, 9, 40, 59, 54], | |
| "ct": [60, 12, 41, 20, 8, 7, 50, 5, 49, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 299, | |
| "comment": "y is maximal and a is maximal in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "72c0e8f2827180b8130b03", | |
| "msg": [37, 35, 50, 2, 54, 30, 27, 53, 11, 62], | |
| "ct": [25, 20, 16, 12, 50, 41, 32, 34, 6, 21], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 300, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "156e3d9f32a247d9f216bc", | |
| "msg": [47, 33, 11, 38, 16, 22, 21, 42, 33, 30], | |
| "ct": [18, 11, 5, 21, 30, 10, 4, 3, 47, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 301, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "156e3d9f32a247d9f216bc", | |
| "msg": [63, 12, 4, 50, 16, 33, 46, 19, 51, 50], | |
| "ct": [23, 42, 36, 47, 16, 1, 27, 59, 26, 29], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 302, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**5 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "156e3d9f32a247d9f216bc", | |
| "msg": [63, 15, 22, 35, 47, 46, 22, 7, 51, 23], | |
| "ct": [15, 38, 54, 4, 25, 52, 46, 35, 34, 34], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 303, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**5 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "156e3d9f32a247d9f216bc", | |
| "msg": [16, 45, 8, 46, 60, 50, 25, 50, 57, 59], | |
| "ct": [25, 8, 40, 58, 34, 35, 44, 9, 41, 30], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 304, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "156e3d9f32a247d9f216bc", | |
| "msg": [36, 31, 50, 57, 39, 30, 7, 61, 50, 10], | |
| "ct": [63, 14, 48, 43, 42, 12, 61, 60, 47, 62], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 305, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "156e3d9f32a247d9f216bc", | |
| "msg": [4, 54, 18, 46, 9, 11, 6, 53, 29, 35], | |
| "ct": [60, 27, 37, 2, 1, 17, 31, 47, 44, 47], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 306, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**5 is maximal in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "3233acb538cd7eb408fcf9", | |
| "msg": [31, 26, 7, 52, 43, 39, 21, 52, 5, 2], | |
| "ct": [59, 5, 32, 3, 46, 11, 34, 53, 39, 51], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 307, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**5 == 0 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "3233acb538cd7eb408fcf9", | |
| "msg": [14, 47, 14, 36, 54, 24, 30, 53, 5, 57], | |
| "ct": [1, 41, 0, 35, 22, 63, 23, 36, 25, 62], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 308, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "3233acb538cd7eb408fcf9", | |
| "msg": [22, 39, 11, 9, 58, 46, 39, 10, 12, 19], | |
| "ct": [7, 5, 51, 20, 23, 43, 45, 39, 35, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 309, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "7b64450714b0a262376044de6e260f0a", | |
| "tweak": "3233acb538cd7eb408fcf9", | |
| "msg": [50, 51, 20, 23, 11, 33, 33, 45, 50, 43], | |
| "ct": [7, 41, 53, 1, 25, 23, 58, 26, 52, 54], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 310, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "c2153daac19904cf16ea81dbc73a58dc", | |
| "tweak": "38b7196a238d3892", | |
| "msg": [-1, 58, 41, 9, 47, 17, 23, 51, 55, 32], | |
| "ct": [8, 3, 54, 58, 61, 30, 18, 58, 58, 23], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 311, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "c2153daac19904cf16ea81dbc73a58dc", | |
| "tweak": "38b7196a238d3892", | |
| "msg": [59, 58, 41, -1, 47, 17, 23, 51, 55, 32], | |
| "ct": [31, 60, 40, 56, 13, 60, 10, 34, 25, 13], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 312, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "c2153daac19904cf16ea81dbc73a58dc", | |
| "tweak": "38b7196a238d3892", | |
| "msg": [59, 58, 41, 9, 47, 17, 23, 51, 55, -1], | |
| "ct": [56, 24, 38, 18, 58, 14, 17, 54, 0, 23], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 313, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "2465c2ef8ca708679805e4cb6dfef26c", | |
| "tweak": "658c12cd1c22f67d", | |
| "msg": [64, 31, 34, 19, 7, 63, 54, 33, 60, 48], | |
| "ct": [35, 26, 11, 45, 41, 8, 37, 51, 3, 17], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 314, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "2465c2ef8ca708679805e4cb6dfef26c", | |
| "tweak": "658c12cd1c22f67d", | |
| "msg": [53, 31, 34, 64, 7, 63, 54, 33, 60, 48], | |
| "ct": [53, 2, 25, 6, 40, 45, 20, 13, 19, 38], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 315, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "2465c2ef8ca708679805e4cb6dfef26c", | |
| "tweak": "658c12cd1c22f67d", | |
| "msg": [53, 31, 34, 19, 7, 63, 54, 33, 60, 64], | |
| "ct": [44, 63, 6, 43, 34, 38, 22, 8, 55, 19], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 11, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 316, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "63396f38c44f0c2d97468c4804b5d022", | |
| "tweak": "73068af95fd924fc", | |
| "msg": [34, 11, 58, 27, 63, 7, 56, 10, 30, 25, 6], | |
| "ct": [20, 20, 47, 0, 24, 11, 23, 35, 40, 16, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 317, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [19, 56, 63, 57, 35, 23, 28, 8, 12, 59, 62], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 318, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "ct": [60, 41, 7, 41, 50, 33, 36, 38, 23, 54, 53], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 319, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [32, 0, 0, 0, 0, 32, 0, 0, 0, 0, 0], | |
| "ct": [51, 62, 23, 50, 40, 28, 32, 12, 57, 37, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 320, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [31, 63, 63, 63, 63, 31, 63, 63, 63, 63, 63], | |
| "ct": [15, 1, 33, 17, 28, 8, 31, 60, 61, 36, 22], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 321, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [22, 9, 5, 21, 39, 61, 47, 46, 32, 26, 2], | |
| "ct": [24, 18, 39, 20, 54, 48, 18, 22, 49, 29, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 322, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [5, 7, 35, 60, 28, 46, 17, 25, 6, 43, 0], | |
| "ct": [59, 53, 53, 57, 30, 11, 49, 0, 9, 25, 38], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 323, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [29, 10, 55, 50, 45, 8, 39, 1, 13, 26, 3], | |
| "ct": [44, 19, 14, 49, 18, 45, 21, 56, 59, 13, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 324, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [3, 1, 11, 5, 26, 9, 2, 35, 20, 0, 62], | |
| "ct": [3, 5, 42, 37, 50, 23, 3, 38, 17, 1, 48], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 325, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [2, 61, 12, 37, 29, 1, 51, 43, 17, 34, 35], | |
| "ct": [56, 37, 58, 21, 3, 10, 63, 36, 47, 62, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 326, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [40, 63, 24, 49, 51, 12, 51, 22, 53, 40, 45], | |
| "ct": [47, 58, 21, 48, 31, 63, 14, 26, 49, 40, 43], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 327, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [22, 53, 38, 24, 33, 56, 38, 53, 23, 30, 19], | |
| "ct": [31, 33, 29, 42, 57, 18, 19, 11, 42, 15, 21], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 328, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [31, 44, 49, 58, 53, 23, 53, 57, 29, 22, 27], | |
| "ct": [31, 40, 21, 5, 4, 35, 39, 13, 8, 56, 18], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 329, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [36, 27, 38, 37, 55, 8, 40, 52, 63, 62, 53], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 330, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [12, 34, 24, 14, 27, 20, 14, 16, 8, 63, 16], | |
| "ct": [63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 331, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [31, 18, 27, 20, 13, 50, 0, 11, 1, 35, 7], | |
| "ct": [32, 0, 0, 0, 0, 32, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 332, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd69e5d5444781e0645ba24b2a32dee8", | |
| "tweak": "e1310d099e8e72c6", | |
| "msg": [27, 63, 3, 26, 50, 4, 46, 59, 31, 25, 27], | |
| "ct": [31, 63, 63, 63, 63, 31, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 333, | |
| "comment": "y = 0 and (y + a) % radix**5 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "d7946d11eecb590197ca", | |
| "msg": [7, 47, 15, 31, 54, 54, 15, 45, 9, 57, 43], | |
| "ct": [0, 0, 0, 0, 0, 63, 20, 40, 0, 24, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 334, | |
| "comment": "y = 0 and a = 1 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "d7946d11eecb590197ca", | |
| "msg": [0, 6, 61, 16, 15, 57, 16, 31, 52, 53, 45], | |
| "ct": [0, 0, 0, 0, 1, 48, 22, 19, 33, 60, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 335, | |
| "comment": "y = 0 and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "d7946d11eecb590197ca", | |
| "msg": [62, 3, 36, 42, 9, 34, 62, 7, 41, 1, 33], | |
| "ct": [32, 0, 0, 0, 0, 7, 47, 30, 52, 26, 29], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 336, | |
| "comment": "y = 0 and (y + a) % radix**5 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "d7946d11eecb590197ca", | |
| "msg": [33, 28, 35, 32, 8, 20, 38, 25, 18, 18, 29], | |
| "ct": [63, 63, 63, 63, 63, 11, 30, 15, 42, 36, 60], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 337, | |
| "comment": "y = 1 and a = 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "0e4d44e473f94bb27f85", | |
| "msg": [20, 40, 22, 43, 6, 49, 32, 37, 2, 37, 35], | |
| "ct": [62, 11, 41, 47, 9, 11, 13, 17, 0, 9, 52], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 338, | |
| "comment": "y = 1 and a = 1 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "0e4d44e473f94bb27f85", | |
| "msg": [17, 26, 8, 48, 4, 46, 22, 25, 39, 46, 52], | |
| "ct": [4, 3, 28, 36, 5, 46, 35, 43, 23, 30, 41], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 339, | |
| "comment": "y = 1 and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "0e4d44e473f94bb27f85", | |
| "msg": [36, 18, 25, 56, 54, 39, 29, 35, 49, 63, 38], | |
| "ct": [55, 46, 61, 36, 32, 49, 37, 29, 23, 0, 42], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 340, | |
| "comment": "y = 1 and (y + a) % radix**5 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "0e4d44e473f94bb27f85", | |
| "msg": [36, 19, 61, 58, 24, 45, 26, 15, 14, 44, 3], | |
| "ct": [19, 54, 29, 45, 56, 52, 17, 53, 11, 45, 39], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 341, | |
| "comment": "y = 1 and (y + a) % radix**5 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "0e4d44e473f94bb27f85", | |
| "msg": [6, 24, 61, 41, 61, 17, 10, 58, 8, 36, 19], | |
| "ct": [4, 17, 1, 59, 46, 51, 8, 25, 44, 1, 57], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 342, | |
| "comment": "y is maximal and (y + a) % radix**5 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "c38d8a3d3415bec5d184", | |
| "msg": [59, 59, 5, 63, 36, 62, 58, 35, 28, 59, 36], | |
| "ct": [63, 63, 63, 63, 63, 50, 33, 35, 57, 2, 23], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 343, | |
| "comment": "y is maximal and (y + a) % radix**5 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "c38d8a3d3415bec5d184", | |
| "msg": [37, 47, 52, 49, 50, 33, 1, 53, 41, 24, 40], | |
| "ct": [0, 0, 0, 0, 0, 14, 32, 41, 28, 51, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 344, | |
| "comment": "y is maximal and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "c38d8a3d3415bec5d184", | |
| "msg": [38, 7, 44, 11, 53, 52, 6, 15, 17, 55, 34], | |
| "ct": [31, 63, 63, 63, 63, 15, 11, 49, 16, 49, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 345, | |
| "comment": "y is maximal and a is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "c38d8a3d3415bec5d184", | |
| "msg": [38, 57, 20, 56, 55, 10, 20, 20, 58, 0, 17], | |
| "ct": [63, 63, 63, 63, 62, 26, 10, 23, 5, 59, 34], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 346, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "80e3dc0e735b8575e2f9", | |
| "msg": [0, 0, 0, 0, 0, 62, 60, 60, 37, 18, 46], | |
| "ct": [62, 25, 8, 53, 29, 12, 32, 2, 51, 31, 60], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 347, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "80e3dc0e735b8575e2f9", | |
| "msg": [0, 0, 0, 0, 1, 62, 60, 60, 37, 18, 46], | |
| "ct": [56, 25, 22, 34, 46, 41, 15, 11, 2, 26, 27], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 348, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**5 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "80e3dc0e735b8575e2f9", | |
| "msg": [0, 0, 0, 0, 63, 62, 60, 60, 37, 18, 46], | |
| "ct": [35, 61, 48, 42, 1, 62, 38, 1, 30, 32, 41], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 349, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**5 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "80e3dc0e735b8575e2f9", | |
| "msg": [0, 0, 0, 1, 0, 62, 60, 60, 37, 18, 46], | |
| "ct": [34, 20, 21, 37, 63, 60, 33, 59, 17, 4, 53], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 350, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "80e3dc0e735b8575e2f9", | |
| "msg": [32, 0, 0, 0, 0, 62, 60, 60, 37, 18, 46], | |
| "ct": [50, 32, 3, 22, 31, 29, 50, 3, 25, 6, 62], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 351, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "80e3dc0e735b8575e2f9", | |
| "msg": [63, 63, 63, 63, 63, 62, 60, 60, 37, 18, 46], | |
| "ct": [48, 39, 2, 8, 33, 51, 37, 59, 13, 39, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 352, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**5 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "dd247ae57b41dde75ca3", | |
| "msg": [59, 13, 41, 36, 3, 15, 6, 61, 61, 54, 23], | |
| "ct": [14, 40, 1, 24, 55, 50, 24, 35, 43, 45, 39], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 353, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**5 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "dd247ae57b41dde75ca3", | |
| "msg": [10, 45, 28, 20, 7, 9, 42, 5, 26, 52, 55], | |
| "ct": [62, 22, 29, 24, 11, 12, 58, 40, 63, 59, 28], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 354, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "dd247ae57b41dde75ca3", | |
| "msg": [62, 51, 34, 60, 43, 53, 15, 40, 13, 56, 23], | |
| "ct": [33, 19, 9, 15, 9, 35, 62, 52, 23, 46, 25], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 355, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "6c6ec910e1fcdff2f0df935de10d0560", | |
| "tweak": "dd247ae57b41dde75ca3", | |
| "msg": [1, 62, 2, 23, 35, 61, 1, 47, 29, 60, 14], | |
| "ct": [12, 33, 16, 36, 25, 16, 37, 29, 1, 27, 26], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 356, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "0b55b77a1d06778b795b541037eabb26", | |
| "tweak": "3e26f18ba99add01", | |
| "msg": [-1, 10, 56, 41, 32, 46, 1, 20, 37, 44, 43], | |
| "ct": [40, 4, 10, 47, 9, 18, 14, 43, 23, 25, 20], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 357, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "0b55b77a1d06778b795b541037eabb26", | |
| "tweak": "3e26f18ba99add01", | |
| "msg": [62, 10, 56, -1, 32, 46, 1, 20, 37, 44, 43], | |
| "ct": [28, 54, 2, 9, 30, 54, 39, 32, 11, 34, 58], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 358, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "0b55b77a1d06778b795b541037eabb26", | |
| "tweak": "3e26f18ba99add01", | |
| "msg": [62, 10, 56, 41, 32, 46, 1, 20, 37, 44, -1], | |
| "ct": [29, 8, 54, 61, 5, 36, 31, 52, 42, 21, 47], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 359, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "d1590f660b6a5fa00335a7718ec4ca76", | |
| "tweak": "80324fbe53c0f359", | |
| "msg": [64, 62, 12, 30, 14, 31, 30, 54, 32, 41, 24], | |
| "ct": [49, 40, 36, 42, 2, 10, 43, 38, 25, 14, 16], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 360, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "d1590f660b6a5fa00335a7718ec4ca76", | |
| "tweak": "80324fbe53c0f359", | |
| "msg": [8, 62, 12, 64, 14, 31, 30, 54, 32, 41, 24], | |
| "ct": [19, 39, 57, 10, 62, 24, 35, 25, 20, 21, 16], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 361, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "d1590f660b6a5fa00335a7718ec4ca76", | |
| "tweak": "80324fbe53c0f359", | |
| "msg": [8, 62, 12, 30, 14, 31, 30, 54, 32, 41, 64], | |
| "ct": [9, 30, 43, 56, 6, 22, 14, 39, 61, 57, 47], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 12, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 362, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "ddc31fc7751a2bf5c8d2d815035622e8", | |
| "tweak": "0e10628c19795c4e", | |
| "msg": [51, 5, 55, 57, 11, 13, 30, 38, 15, 7, 56, 63], | |
| "ct": [48, 22, 61, 32, 15, 11, 1, 7, 49, 30, 21, 25], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 363, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [62, 33, 7, 39, 42, 51, 36, 11, 35, 19, 2, 40], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 364, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "ct": [4, 31, 31, 31, 55, 4, 17, 61, 16, 1, 50, 52], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 365, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [32, 0, 0, 0, 0, 0, 32, 0, 0, 0, 0, 0], | |
| "ct": [4, 23, 63, 10, 49, 20, 28, 25, 23, 61, 28, 45], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 366, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [31, 63, 63, 63, 63, 63, 31, 63, 63, 63, 63, 63], | |
| "ct": [58, 55, 4, 35, 58, 41, 2, 3, 23, 51, 50, 43], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 367, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [27, 48, 30, 50, 39, 39, 18, 60, 42, 63, 49, 61], | |
| "ct": [25, 30, 24, 27, 30, 10, 31, 41, 47, 41, 39, 54], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 368, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [61, 6, 26, 62, 24, 15, 4, 26, 50, 51, 13, 48], | |
| "ct": [48, 17, 16, 10, 12, 25, 13, 4, 8, 0, 39, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 369, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [30, 36, 38, 51, 22, 30, 62, 44, 35, 38, 43, 16], | |
| "ct": [62, 52, 43, 36, 11, 49, 38, 35, 5, 40, 41, 48], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 370, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [6, 11, 32, 32, 7, 44, 21, 45, 38, 7, 63, 63], | |
| "ct": [34, 26, 52, 12, 1, 2, 4, 17, 31, 62, 26, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 371, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [58, 22, 44, 34, 20, 11, 55, 4, 48, 3, 49, 36], | |
| "ct": [47, 63, 16, 6, 51, 47, 47, 51, 11, 40, 14, 36], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 372, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [44, 63, 61, 48, 53, 2, 15, 61, 42, 63, 8, 59], | |
| "ct": [12, 36, 21, 2, 49, 34, 52, 50, 46, 17, 24, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 373, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [11, 7, 1, 51, 15, 30, 39, 18, 25, 36, 30, 3], | |
| "ct": [63, 40, 44, 47, 14, 55, 62, 1, 13, 16, 30, 61], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 374, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [0, 25, 47, 56, 36, 4, 53, 29, 5, 22, 54, 58], | |
| "ct": [0, 63, 47, 45, 38, 29, 58, 49, 19, 32, 10, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 375, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [50, 27, 51, 31, 33, 59, 25, 18, 60, 50, 12, 14], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 376, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [3, 21, 4, 11, 38, 10, 47, 1, 53, 56, 56, 51], | |
| "ct": [63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 377, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [31, 1, 31, 54, 34, 49, 18, 33, 8, 34, 31, 13], | |
| "ct": [32, 0, 0, 0, 0, 0, 32, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 378, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "d954ee3f3fabdcd92a2ad30b675ef74d", | |
| "tweak": "bb3a5b86df3e19bc", | |
| "msg": [15, 53, 19, 32, 49, 51, 36, 43, 44, 52, 30, 31], | |
| "ct": [31, 63, 63, 63, 63, 63, 31, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 379, | |
| "comment": "y = 0 and (y + a) % radix**6 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "2b766fc22833ade79eba", | |
| "msg": [25, 21, 16, 41, 40, 56, 31, 5, 31, 4, 42, 13], | |
| "ct": [0, 24, 29, 33, 45, 33, 11, 27, 13, 24, 58, 54], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 380, | |
| "comment": "y = 0 and a = 1 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "2b766fc22833ade79eba", | |
| "msg": [54, 43, 3, 26, 2, 24, 56, 10, 31, 51, 4, 26], | |
| "ct": [35, 28, 51, 20, 14, 9, 25, 24, 16, 24, 52, 61], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 381, | |
| "comment": "y = 0 and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "2b766fc22833ade79eba", | |
| "msg": [14, 47, 51, 11, 14, 36, 53, 45, 58, 16, 17, 58], | |
| "ct": [28, 38, 8, 50, 55, 51, 57, 59, 49, 34, 43, 27], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 382, | |
| "comment": "y = 0 and (y + a) % radix**6 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "2b766fc22833ade79eba", | |
| "msg": [21, 49, 56, 23, 16, 35, 3, 6, 32, 6, 14, 2], | |
| "ct": [42, 41, 56, 26, 16, 47, 19, 53, 42, 37, 11, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 383, | |
| "comment": "y = 1 and a = 0 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "17b6701454095f5389bc", | |
| "msg": [29, 59, 1, 4, 38, 40, 9, 17, 10, 7, 63, 19], | |
| "ct": [62, 59, 33, 32, 47, 51, 26, 17, 50, 60, 38, 62], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 384, | |
| "comment": "y = 1 and a = 1 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "17b6701454095f5389bc", | |
| "msg": [58, 11, 52, 21, 37, 42, 47, 25, 30, 37, 17, 17], | |
| "ct": [31, 46, 35, 27, 24, 62, 14, 27, 44, 16, 52, 49], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 385, | |
| "comment": "y = 1 and a has large Hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "17b6701454095f5389bc", | |
| "msg": [36, 33, 48, 51, 15, 44, 37, 11, 37, 63, 56, 23], | |
| "ct": [49, 33, 15, 26, 45, 57, 52, 20, 43, 46, 21, 45], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 386, | |
| "comment": "y = 1 and (y + a) % radix**6 is maximal in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "17b6701454095f5389bc", | |
| "msg": [15, 39, 51, 3, 40, 54, 17, 18, 56, 14, 56, 50], | |
| "ct": [18, 25, 2, 8, 12, 13, 44, 33, 4, 24, 12, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 387, | |
| "comment": "y = 1 and (y + a) % radix**6 == 0 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "17b6701454095f5389bc", | |
| "msg": [36, 15, 7, 35, 39, 6, 31, 11, 32, 17, 63, 3], | |
| "ct": [18, 5, 43, 14, 16, 5, 56, 60, 32, 24, 16, 24], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 388, | |
| "comment": "y is maximal and (y + a) % radix**6 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "dd5b873568a4c6d8b833", | |
| "msg": [41, 13, 42, 1, 27, 14, 38, 1, 60, 41, 57, 56], | |
| "ct": [12, 13, 1, 38, 46, 6, 62, 50, 49, 11, 41, 43], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 389, | |
| "comment": "y is maximal and (y + a) % radix**6 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "dd5b873568a4c6d8b833", | |
| "msg": [48, 29, 33, 41, 10, 1, 6, 53, 60, 48, 5, 8], | |
| "ct": [26, 34, 62, 11, 15, 21, 43, 46, 8, 19, 34, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 390, | |
| "comment": "y is maximal and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "dd5b873568a4c6d8b833", | |
| "msg": [34, 31, 25, 4, 17, 27, 51, 42, 34, 11, 48, 45], | |
| "ct": [26, 33, 1, 29, 3, 27, 19, 30, 42, 22, 46, 48], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 391, | |
| "comment": "y is maximal and a is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "dd5b873568a4c6d8b833", | |
| "msg": [50, 47, 14, 31, 22, 17, 25, 58, 25, 42, 55, 10], | |
| "ct": [31, 17, 16, 6, 62, 54, 60, 48, 22, 56, 40, 55], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 392, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "822f4f4dba84faa6474d", | |
| "msg": [14, 59, 31, 5, 58, 19, 25, 13, 17, 23, 56, 41], | |
| "ct": [45, 61, 10, 24, 10, 12, 53, 13, 51, 24, 13, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 393, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "822f4f4dba84faa6474d", | |
| "msg": [54, 27, 19, 62, 13, 35, 45, 48, 33, 41, 41, 59], | |
| "ct": [37, 26, 46, 28, 40, 33, 35, 30, 14, 36, 3, 39], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 394, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**6 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "822f4f4dba84faa6474d", | |
| "msg": [58, 14, 48, 52, 38, 43, 14, 1, 42, 53, 43, 58], | |
| "ct": [34, 39, 55, 59, 52, 22, 58, 40, 40, 40, 43, 46], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 395, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**6 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "822f4f4dba84faa6474d", | |
| "msg": [21, 28, 28, 54, 62, 18, 53, 14, 45, 41, 12, 13], | |
| "ct": [30, 49, 11, 0, 55, 43, 44, 49, 53, 5, 18, 52], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 396, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "822f4f4dba84faa6474d", | |
| "msg": [59, 41, 22, 24, 27, 31, 24, 35, 47, 51, 25, 54], | |
| "ct": [50, 40, 31, 15, 35, 1, 56, 32, 44, 51, 57, 48], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 397, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "822f4f4dba84faa6474d", | |
| "msg": [28, 22, 37, 45, 38, 40, 23, 59, 59, 47, 17, 47], | |
| "ct": [3, 10, 61, 50, 37, 58, 47, 23, 54, 62, 14, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 398, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**6 is maximal in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "b0e4310cbd7e355039d0", | |
| "msg": [1, 23, 39, 60, 56, 35, 0, 0, 0, 0, 0, 0], | |
| "ct": [42, 41, 1, 44, 28, 21, 19, 12, 45, 62, 0, 28], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 399, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**6 == 0 in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "b0e4310cbd7e355039d0", | |
| "msg": [58, 56, 20, 41, 2, 37, 0, 0, 0, 0, 0, 1], | |
| "ct": [27, 17, 9, 30, 27, 50, 6, 29, 29, 53, 37, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 400, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "b0e4310cbd7e355039d0", | |
| "msg": [32, 37, 45, 16, 0, 61, 32, 0, 0, 0, 0, 0], | |
| "ct": [8, 31, 58, 36, 24, 55, 26, 40, 25, 37, 13, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 401, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 1", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "a3e590e923e5c47a216ec271e9da8180", | |
| "tweak": "b0e4310cbd7e355039d0", | |
| "msg": [29, 36, 39, 0, 47, 42, 63, 63, 63, 63, 63, 63], | |
| "ct": [39, 43, 63, 12, 63, 49, 60, 32, 37, 43, 38, 55], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 402, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "dbac185fba36fe7028184de1a577dbaa", | |
| "tweak": "6ba28735b4acc0ff", | |
| "msg": [-1, 36, 5, 44, 5, 37, 54, 63, 22, 9, 5, 59], | |
| "ct": [39, 20, 16, 63, 35, 62, 41, 53, 3, 15, 15, 31], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 403, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "dbac185fba36fe7028184de1a577dbaa", | |
| "tweak": "6ba28735b4acc0ff", | |
| "msg": [42, 36, 5, 44, -1, 37, 54, 63, 22, 9, 5, 59], | |
| "ct": [33, 50, 39, 53, 49, 59, 16, 56, 59, 58, 5, 24], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 404, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "dbac185fba36fe7028184de1a577dbaa", | |
| "tweak": "6ba28735b4acc0ff", | |
| "msg": [42, 36, 5, 44, 5, 37, 54, 63, 22, 9, 5, -1], | |
| "ct": [52, 30, 2, 63, 9, 35, 13, 28, 12, 44, 29, 49], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 405, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "55f2614cb960df49ba3fe2121450813a", | |
| "tweak": "938dbcc2449bac42", | |
| "msg": [64, 1, 37, 35, 50, 57, 45, 63, 35, 6, 57, 22], | |
| "ct": [52, 19, 30, 56, 14, 49, 22, 60, 5, 37, 39, 40], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 406, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "55f2614cb960df49ba3fe2121450813a", | |
| "tweak": "938dbcc2449bac42", | |
| "msg": [39, 1, 37, 35, 64, 57, 45, 63, 35, 6, 57, 22], | |
| "ct": [53, 9, 26, 29, 49, 39, 37, 28, 61, 55, 61, 47], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 407, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "55f2614cb960df49ba3fe2121450813a", | |
| "tweak": "938dbcc2449bac42", | |
| "msg": [39, 1, 37, 35, 50, 57, 45, 63, 35, 6, 57, 64], | |
| "ct": [42, 9, 19, 2, 4, 62, 39, 57, 40, 42, 55, 49], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 13, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 408, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "d5e6c882f005525ce577f704ef6b525d", | |
| "tweak": "7ce1a7a4e6508c83", | |
| "msg": [21, 12, 13, 1, 13, 52, 63, 42, 18, 42, 63, 24, 53], | |
| "ct": [17, 12, 25, 39, 35, 24, 9, 35, 50, 39, 17, 57, 48], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 409, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [44, 63, 33, 52, 3, 4, 22, 46, 40, 4, 6, 8, 56], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 410, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "ct": [17, 46, 52, 26, 47, 14, 2, 5, 60, 52, 47, 11, 48], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 411, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [32, 0, 0, 0, 0, 0, 32, 0, 0, 0, 0, 0, 0], | |
| "ct": [57, 31, 35, 30, 12, 4, 45, 28, 47, 24, 46, 46, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 412, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [31, 63, 63, 63, 63, 63, 31, 63, 63, 63, 63, 63, 63], | |
| "ct": [52, 0, 1, 20, 46, 20, 60, 17, 1, 20, 61, 35, 59], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 413, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [25, 23, 39, 63, 16, 22, 38, 2, 31, 47, 61, 21, 46], | |
| "ct": [43, 22, 5, 61, 26, 38, 31, 4, 44, 47, 0, 18, 16], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 414, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [61, 12, 50, 0, 14, 55, 51, 17, 43, 18, 41, 50, 46], | |
| "ct": [60, 41, 34, 43, 54, 35, 51, 1, 53, 27, 27, 47, 39], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 415, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [30, 11, 39, 18, 0, 31, 42, 34, 25, 53, 7, 60, 57], | |
| "ct": [49, 63, 35, 13, 57, 46, 12, 12, 16, 34, 31, 29, 37], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 416, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [15, 26, 13, 46, 58, 10, 52, 54, 47, 20, 37, 39, 37], | |
| "ct": [19, 52, 62, 54, 14, 10, 29, 36, 62, 12, 1, 40, 42], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 417, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [29, 27, 30, 12, 30, 42, 7, 4, 2, 8, 39, 14, 24], | |
| "ct": [27, 55, 38, 29, 60, 0, 51, 37, 24, 35, 37, 14, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 418, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [3, 35, 2, 29, 16, 39, 16, 43, 16, 32, 11, 20, 35], | |
| "ct": [23, 34, 9, 49, 27, 46, 50, 22, 30, 34, 30, 7, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 419, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [7, 43, 60, 25, 0, 26, 43, 1, 1, 49, 49, 47, 32], | |
| "ct": [43, 30, 37, 27, 30, 34, 62, 11, 39, 7, 6, 16, 19], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 420, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [49, 41, 48, 19, 28, 42, 23, 16, 14, 63, 2, 2, 56], | |
| "ct": [19, 20, 42, 19, 23, 17, 4, 41, 48, 1, 9, 52, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 421, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [33, 52, 27, 20, 25, 14, 4, 63, 9, 34, 36, 27, 35], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 422, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [47, 52, 0, 14, 54, 14, 54, 28, 24, 51, 33, 40, 28], | |
| "ct": [63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 423, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [24, 1, 42, 48, 32, 16, 27, 44, 61, 45, 10, 29, 53], | |
| "ct": [32, 0, 0, 0, 0, 0, 32, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 424, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bb7ca258d353deb4a4f52b08290ab6a1", | |
| "tweak": "a211ccbb8d59238e", | |
| "msg": [25, 38, 8, 16, 19, 4, 29, 10, 24, 43, 53, 41, 41], | |
| "ct": [31, 63, 63, 63, 63, 63, 31, 63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 425, | |
| "comment": "y = 0 and (y + a) % radix**6 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "0317cd5f93396a4bd8", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 6, 30, 6, 52, 54, 10], | |
| "ct": [1, 16, 23, 41, 62, 48, 44, 57, 27, 24, 44, 42, 21], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 426, | |
| "comment": "y = 0 and a = 1 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "0317cd5f93396a4bd8", | |
| "msg": [0, 0, 0, 0, 0, 1, 0, 6, 30, 6, 52, 54, 10], | |
| "ct": [1, 42, 59, 37, 24, 46, 48, 12, 42, 58, 36, 37, 32], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 427, | |
| "comment": "y = 0 and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "0317cd5f93396a4bd8", | |
| "msg": [32, 0, 0, 0, 0, 0, 0, 6, 30, 6, 52, 54, 10], | |
| "ct": [14, 60, 7, 26, 58, 37, 30, 39, 39, 9, 55, 22, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 428, | |
| "comment": "y = 0 and (y + a) % radix**6 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "0317cd5f93396a4bd8", | |
| "msg": [63, 63, 63, 63, 63, 63, 0, 6, 30, 6, 52, 54, 10], | |
| "ct": [24, 52, 54, 35, 61, 28, 45, 5, 39, 26, 43, 4, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 429, | |
| "comment": "y = 1 and a = 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "6b6231516ad10c159a", | |
| "msg": [0, 0, 0, 0, 0, 0, 54, 7, 19, 55, 52, 42, 27], | |
| "ct": [23, 21, 32, 8, 43, 4, 52, 50, 0, 50, 58, 11, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 430, | |
| "comment": "y = 1 and a = 1 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "6b6231516ad10c159a", | |
| "msg": [0, 0, 0, 0, 0, 1, 54, 7, 19, 55, 52, 42, 27], | |
| "ct": [40, 45, 24, 12, 32, 20, 61, 49, 33, 49, 21, 35, 48], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 431, | |
| "comment": "y = 1 and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "6b6231516ad10c159a", | |
| "msg": [32, 0, 0, 0, 0, 0, 54, 7, 19, 55, 52, 42, 27], | |
| "ct": [1, 60, 28, 63, 58, 60, 60, 62, 62, 27, 26, 45, 43], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 432, | |
| "comment": "y = 1 and (y + a) % radix**6 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "6b6231516ad10c159a", | |
| "msg": [63, 63, 63, 63, 63, 62, 54, 7, 19, 55, 52, 42, 27], | |
| "ct": [0, 37, 49, 15, 33, 1, 33, 15, 27, 27, 48, 58, 61], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 433, | |
| "comment": "y = 1 and (y + a) % radix**6 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "6b6231516ad10c159a", | |
| "msg": [63, 63, 63, 63, 63, 63, 54, 7, 19, 55, 52, 42, 27], | |
| "ct": [53, 15, 12, 45, 8, 27, 15, 40, 62, 36, 59, 5, 55], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 434, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**6 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "b85ef65b57f8dd5fa8", | |
| "msg": [0, 0, 0, 0, 0, 0, 20, 2, 32, 49, 40, 31, 50], | |
| "ct": [34, 39, 7, 3, 1, 61, 16, 15, 22, 53, 63, 3, 31], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 435, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**6 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "b85ef65b57f8dd5fa8", | |
| "msg": [0, 0, 0, 0, 0, 1, 20, 2, 32, 49, 40, 31, 50], | |
| "ct": [34, 22, 8, 54, 39, 60, 53, 11, 17, 45, 60, 1, 48], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 436, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "b85ef65b57f8dd5fa8", | |
| "msg": [32, 0, 0, 0, 0, 0, 20, 2, 32, 49, 40, 31, 50], | |
| "ct": [2, 28, 61, 49, 60, 62, 13, 58, 34, 37, 24, 40, 53], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 437, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "002d4f865568a9c32a7edeb2b39d73d7", | |
| "tweak": "b85ef65b57f8dd5fa8", | |
| "msg": [63, 63, 63, 63, 63, 63, 20, 2, 32, 49, 40, 31, 50], | |
| "ct": [30, 38, 49, 11, 23, 7, 15, 28, 50, 61, 7, 46, 46], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 438, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "b8d9b3c80209587bbe3c0f7125eed049", | |
| "tweak": "522499e28e9e7712", | |
| "msg": [-1, 6, 57, 14, 35, 54, 47, 59, 10, 18, 26, 27, 37], | |
| "ct": [3, 33, 30, 27, 8, 2, 42, 27, 22, 27, 6, 36, 62], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 439, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "b8d9b3c80209587bbe3c0f7125eed049", | |
| "tweak": "522499e28e9e7712", | |
| "msg": [19, 6, 57, 14, -1, 54, 47, 59, 10, 18, 26, 27, 37], | |
| "ct": [19, 28, 25, 32, 44, 15, 30, 23, 3, 52, 63, 12, 12], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 440, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "b8d9b3c80209587bbe3c0f7125eed049", | |
| "tweak": "522499e28e9e7712", | |
| "msg": [19, 6, 57, 14, 35, 54, 47, 59, 10, 18, 26, 27, -1], | |
| "ct": [26, 9, 7, 60, 3, 34, 36, 43, 13, 40, 19, 28, 30], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 441, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "2a8d45a073c98e64d71e268b4664d223", | |
| "tweak": "36220a15219d6bf9", | |
| "msg": [64, 8, 19, 59, 47, 54, 16, 54, 3, 61, 18, 8, 15], | |
| "ct": [46, 44, 0, 25, 9, 1, 28, 37, 41, 7, 60, 17, 47], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 442, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "2a8d45a073c98e64d71e268b4664d223", | |
| "tweak": "36220a15219d6bf9", | |
| "msg": [41, 8, 19, 59, 64, 54, 16, 54, 3, 61, 18, 8, 15], | |
| "ct": [25, 38, 52, 37, 19, 17, 6, 49, 15, 7, 24, 51, 30], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 443, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "2a8d45a073c98e64d71e268b4664d223", | |
| "tweak": "36220a15219d6bf9", | |
| "msg": [41, 8, 19, 59, 47, 54, 16, 54, 3, 61, 18, 8, 64], | |
| "ct": [17, 60, 28, 17, 41, 4, 29, 57, 32, 10, 47, 39, 27], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 14, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 444, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "7a1122636a4417351c97156308d4f6aa", | |
| "tweak": "a9508e64d1ab8e34", | |
| "msg": [6, 38, 35, 49, 11, 14, 8, 56, 12, 59, 25, 42, 6, 44], | |
| "ct": [9, 54, 53, 40, 32, 27, 58, 15, 44, 36, 43, 60, 50, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 445, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [60, 58, 41, 37, 15, 13, 19, 56, 35, 40, 54, 6, 3, 18], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 446, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "ct": [55, 9, 14, 17, 4, 52, 51, 30, 15, 9, 59, 46, 17, 30], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 447, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [32, 0, 0, 0, 0, 0, 0, 32, 0, 0, 0, 0, 0, 0], | |
| "ct": [58, 57, 15, 31, 55, 34, 34, 4, 63, 18, 56, 3, 45, 58], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 448, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [31, 63, 63, 63, 63, 63, 63, 31, 63, 63, 63, 63, 63, 63], | |
| "ct": [40, 40, 29, 27, 48, 11, 54, 19, 63, 10, 34, 60, 46, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 449, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [45, 63, 23, 20, 43, 26, 19, 42, 2, 19, 40, 31, 56, 20], | |
| "ct": [10, 24, 52, 5, 44, 33, 27, 23, 60, 31, 3, 42, 1, 41], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 450, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [21, 35, 53, 50, 4, 38, 44, 37, 17, 24, 50, 7, 21, 24], | |
| "ct": [52, 2, 26, 52, 40, 29, 22, 55, 34, 26, 20, 37, 13, 48], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 451, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [49, 31, 33, 2, 15, 3, 31, 32, 38, 59, 52, 9, 22, 4], | |
| "ct": [38, 32, 15, 10, 37, 4, 36, 48, 47, 3, 32, 49, 34, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 452, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [1, 6, 12, 59, 24, 25, 14, 57, 3, 36, 8, 32, 6, 45], | |
| "ct": [53, 12, 39, 13, 23, 42, 49, 46, 35, 25, 53, 46, 62, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 453, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [36, 62, 40, 4, 36, 42, 47, 20, 5, 5, 11, 32, 19, 47], | |
| "ct": [52, 10, 0, 47, 27, 2, 45, 39, 40, 52, 52, 17, 38, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 454, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [17, 56, 21, 14, 22, 51, 53, 48, 61, 16, 44, 18, 33, 5], | |
| "ct": [46, 31, 14, 37, 32, 39, 45, 33, 41, 7, 4, 14, 43, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 455, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [0, 49, 50, 46, 63, 18, 30, 57, 35, 5, 54, 28, 13, 52], | |
| "ct": [45, 25, 24, 21, 41, 55, 56, 39, 42, 27, 50, 57, 35, 57], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 456, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [33, 23, 62, 21, 22, 30, 47, 40, 52, 45, 55, 41, 4, 52], | |
| "ct": [11, 53, 37, 43, 49, 52, 38, 42, 30, 26, 36, 18, 38, 3], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 457, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [23, 50, 50, 11, 14, 40, 52, 50, 14, 8, 55, 43, 36, 45], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 458, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [0, 22, 56, 56, 48, 42, 6, 27, 3, 55, 4, 33, 49, 30], | |
| "ct": [63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 459, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [12, 7, 23, 51, 58, 20, 60, 24, 25, 36, 15, 23, 63, 16], | |
| "ct": [32, 0, 0, 0, 0, 0, 0, 32, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 460, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "8a9c22148e4fed1fc918f33eba1f06cc", | |
| "tweak": "c37a26d7ade80ea1", | |
| "msg": [16, 60, 62, 17, 19, 40, 9, 26, 7, 25, 60, 10, 39, 50], | |
| "ct": [31, 63, 63, 63, 63, 63, 63, 31, 63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 461, | |
| "comment": "y = 1 and a = 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "afe46807e18e6f5e44", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 27, 62, 10, 44, 58, 18, 9], | |
| "ct": [23, 35, 59, 42, 57, 40, 37, 28, 51, 47, 24, 61, 19, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 462, | |
| "comment": "y = 1 and a = 1 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "afe46807e18e6f5e44", | |
| "msg": [0, 0, 0, 0, 0, 0, 1, 27, 62, 10, 44, 58, 18, 9], | |
| "ct": [11, 19, 15, 58, 32, 60, 56, 24, 57, 37, 22, 30, 47, 22], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 463, | |
| "comment": "y = 1 and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "afe46807e18e6f5e44", | |
| "msg": [32, 0, 0, 0, 0, 0, 0, 27, 62, 10, 44, 58, 18, 9], | |
| "ct": [9, 60, 35, 47, 17, 25, 28, 10, 53, 51, 9, 17, 26, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 464, | |
| "comment": "y = 1 and (y + a) % radix**7 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "afe46807e18e6f5e44", | |
| "msg": [63, 63, 63, 63, 63, 63, 62, 27, 62, 10, 44, 58, 18, 9], | |
| "ct": [52, 18, 4, 44, 60, 26, 39, 36, 23, 45, 4, 3, 41, 49], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 465, | |
| "comment": "y = 1 and (y + a) % radix**7 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "afe46807e18e6f5e44", | |
| "msg": [63, 63, 63, 63, 63, 63, 63, 27, 62, 10, 44, 58, 18, 9], | |
| "ct": [52, 54, 58, 45, 5, 48, 12, 58, 3, 34, 29, 34, 11, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 466, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "e4d13bcdfa5f772e90", | |
| "msg": [38, 46, 21, 60, 19, 19, 38, 62, 19, 63, 7, 55, 7, 5], | |
| "ct": [63, 63, 63, 63, 63, 63, 0, 5, 37, 13, 62, 27, 35, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 467, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "e4d13bcdfa5f772e90", | |
| "msg": [36, 26, 38, 18, 52, 35, 6, 8, 25, 56, 47, 24, 30, 11], | |
| "ct": [63, 63, 63, 63, 63, 63, 1, 38, 9, 39, 48, 1, 40, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 468, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**7 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "e4d13bcdfa5f772e90", | |
| "msg": [61, 57, 50, 10, 32, 39, 32, 1, 3, 57, 63, 52, 53, 18], | |
| "ct": [63, 63, 63, 63, 63, 63, 63, 14, 3, 29, 26, 52, 62, 41], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 469, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**7 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "e4d13bcdfa5f772e90", | |
| "msg": [2, 38, 25, 38, 63, 2, 24, 10, 3, 21, 22, 44, 63, 10], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 56, 3, 44, 47, 29, 27, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 470, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "e4d13bcdfa5f772e90", | |
| "msg": [37, 47, 11, 21, 30, 48, 57, 44, 47, 0, 14, 42, 35, 25], | |
| "ct": [31, 63, 63, 63, 63, 63, 0, 21, 30, 13, 6, 32, 43, 46], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 471, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "e4d13bcdfa5f772e90", | |
| "msg": [34, 8, 11, 56, 20, 38, 28, 61, 63, 18, 23, 36, 17, 22], | |
| "ct": [63, 63, 63, 63, 63, 62, 63, 15, 62, 63, 61, 19, 38, 31], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 472, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**7 is maximal in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "aafb628b635cb90656", | |
| "msg": [52, 22, 2, 27, 35, 58, 39, 23, 6, 1, 47, 3, 44, 30], | |
| "ct": [5, 31, 36, 15, 6, 11, 24, 22, 62, 61, 26, 36, 13, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 473, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**7 == 0 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "aafb628b635cb90656", | |
| "msg": [6, 19, 40, 18, 62, 20, 59, 57, 45, 55, 39, 10, 63, 28], | |
| "ct": [35, 33, 32, 18, 30, 35, 31, 42, 60, 1, 47, 32, 4, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 474, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "aafb628b635cb90656", | |
| "msg": [27, 37, 32, 29, 24, 18, 45, 56, 21, 37, 53, 25, 24, 34], | |
| "ct": [2, 62, 27, 16, 43, 52, 14, 39, 22, 2, 25, 0, 56, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 475, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "4dfedd6f97765da94b445cc712ea4e7f", | |
| "tweak": "aafb628b635cb90656", | |
| "msg": [28, 15, 40, 22, 19, 8, 10, 51, 2, 9, 14, 7, 6, 39], | |
| "ct": [47, 39, 44, 3, 13, 46, 38, 5, 42, 39, 8, 15, 44, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 476, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "3a6e047dffbfcdaf0ee7e0c93fc4c0e0", | |
| "tweak": "0e5628b6bce472c6", | |
| "msg": [-1, 44, 45, 38, 58, 23, 22, 31, 8, 47, 59, 60, 6, 35], | |
| "ct": [46, 33, 10, 6, 45, 13, 0, 4, 19, 16, 44, 12, 43, 41], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 477, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "3a6e047dffbfcdaf0ee7e0c93fc4c0e0", | |
| "tweak": "0e5628b6bce472c6", | |
| "msg": [26, 44, 45, 38, -1, 23, 22, 31, 8, 47, 59, 60, 6, 35], | |
| "ct": [17, 46, 27, 58, 34, 27, 17, 33, 12, 59, 31, 0, 40, 59], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 478, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "3a6e047dffbfcdaf0ee7e0c93fc4c0e0", | |
| "tweak": "0e5628b6bce472c6", | |
| "msg": [26, 44, 45, 38, 58, 23, 22, 31, 8, 47, 59, 60, 6, -1], | |
| "ct": [50, 47, 17, 35, 38, 28, 27, 31, 24, 42, 0, 60, 57, 55], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 479, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "98b68f204432156c698b264c25f9a482", | |
| "tweak": "11bfc5643f7067ab", | |
| "msg": [64, 44, 56, 45, 13, 45, 44, 55, 24, 51, 27, 5, 57, 24], | |
| "ct": [39, 35, 9, 25, 26, 28, 63, 28, 15, 36, 55, 40, 17, 31], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 480, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "98b68f204432156c698b264c25f9a482", | |
| "tweak": "11bfc5643f7067ab", | |
| "msg": [48, 44, 56, 45, 64, 45, 44, 55, 24, 51, 27, 5, 57, 24], | |
| "ct": [19, 45, 53, 47, 25, 0, 47, 5, 60, 23, 57, 23, 4, 48], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 481, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "98b68f204432156c698b264c25f9a482", | |
| "tweak": "11bfc5643f7067ab", | |
| "msg": [48, 44, 56, 45, 13, 45, 44, 55, 24, 51, 27, 5, 57, 64], | |
| "ct": [6, 14, 49, 43, 1, 12, 23, 29, 13, 10, 27, 34, 30, 15], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 15, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 482, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "7b0c5d430ef9383b04b2691ce3402a9a", | |
| "tweak": "ec71532112064259", | |
| "msg": [12, 5, 14, 30, 2, 12, 27, 36, 27, 34, 7, 17, 42, 58, 60], | |
| "ct": [51, 30, 14, 62, 60, 42, 21, 51, 32, 62, 41, 19, 41, 0, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 483, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [33, 27, 56, 52, 44, 53, 29, 16, 1, 10, 42, 14, 15, 29, 36], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 484, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "ct": [29, 22, 39, 9, 18, 59, 9, 60, 6, 13, 2, 50, 38, 23, 28], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 485, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [32, 0, 0, 0, 0, 0, 0, 32, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [33, 47, 25, 34, 7, 46, 10, 37, 11, 10, 16, 33, 5, 35, 36], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 486, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [31, 63, 63, 63, 63, 63, 63, 31, 63, 63, 63, 63, 63, 63, 63], | |
| "ct": [42, 26, 13, 29, 10, 19, 10, 4, 17, 47, 24, 47, 34, 45, 47], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 487, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [29, 63, 32, 46, 27, 44, 21, 11, 29, 51, 46, 2, 13, 13, 38], | |
| "ct": [16, 58, 49, 15, 27, 32, 28, 35, 61, 3, 46, 28, 20, 3, 16], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 488, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [26, 54, 43, 32, 2, 8, 22, 62, 48, 35, 49, 23, 10, 21, 47], | |
| "ct": [51, 18, 35, 30, 4, 56, 49, 45, 11, 8, 26, 19, 52, 25, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 489, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [6, 34, 46, 3, 58, 5, 49, 31, 42, 44, 5, 51, 0, 60, 1], | |
| "ct": [1, 9, 39, 26, 24, 35, 13, 42, 43, 35, 2, 51, 1, 46, 40], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 490, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [20, 20, 15, 29, 41, 35, 9, 8, 32, 30, 1, 22, 36, 17, 4], | |
| "ct": [30, 57, 55, 26, 25, 38, 32, 6, 11, 24, 12, 60, 8, 52, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 491, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [8, 12, 47, 13, 6, 50, 34, 7, 20, 23, 0, 28, 2, 18, 14], | |
| "ct": [22, 17, 38, 55, 14, 0, 36, 14, 19, 55, 32, 8, 7, 45, 51], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 492, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [42, 16, 24, 10, 34, 62, 3, 24, 51, 46, 56, 47, 47, 48, 43], | |
| "ct": [57, 35, 13, 62, 7, 17, 15, 47, 46, 38, 56, 36, 37, 37, 36], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 493, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [41, 2, 50, 10, 54, 22, 35, 29, 39, 40, 19, 25, 11, 28, 51], | |
| "ct": [24, 2, 30, 29, 0, 30, 36, 23, 43, 16, 53, 21, 38, 40, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 494, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [54, 56, 24, 36, 21, 19, 54, 26, 49, 51, 23, 59, 22, 53, 9], | |
| "ct": [21, 27, 28, 3, 54, 21, 14, 36, 43, 31, 4, 62, 38, 52, 41], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 495, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [44, 50, 2, 16, 49, 41, 24, 53, 29, 42, 16, 2, 18, 63, 45], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 496, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [11, 54, 60, 35, 7, 43, 6, 56, 43, 21, 35, 49, 43, 55, 36], | |
| "ct": [63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 497, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [45, 38, 26, 15, 28, 61, 28, 48, 16, 62, 45, 52, 27, 43, 38], | |
| "ct": [32, 0, 0, 0, 0, 0, 0, 32, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 498, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "bd2dc7f87af6e676fa6bf4e92c43f183", | |
| "tweak": "71e1ede1a7e70a42", | |
| "msg": [37, 13, 12, 17, 9, 48, 48, 18, 56, 59, 51, 9, 59, 46, 63], | |
| "ct": [31, 63, 63, 63, 63, 63, 63, 31, 63, 63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 499, | |
| "comment": "y = 0 and (y + a) % radix**7 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "25cae4d236432bb997", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 18, 40, 17, 7, 61, 47, 6, 1], | |
| "ct": [56, 8, 16, 9, 55, 29, 44, 19, 57, 50, 8, 4, 40, 14, 50], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 500, | |
| "comment": "y = 0 and a = 1 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "25cae4d236432bb997", | |
| "msg": [0, 0, 0, 0, 0, 0, 1, 18, 40, 17, 7, 61, 47, 6, 1], | |
| "ct": [10, 5, 22, 48, 55, 63, 5, 20, 52, 54, 2, 55, 29, 2, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 501, | |
| "comment": "y = 0 and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "25cae4d236432bb997", | |
| "msg": [32, 0, 0, 0, 0, 0, 0, 18, 40, 17, 7, 61, 47, 6, 1], | |
| "ct": [60, 56, 28, 3, 29, 10, 58, 14, 9, 44, 21, 63, 8, 28, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 502, | |
| "comment": "y = 0 and (y + a) % radix**7 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "25cae4d236432bb997", | |
| "msg": [63, 63, 63, 63, 63, 63, 63, 18, 40, 17, 7, 61, 47, 6, 1], | |
| "ct": [10, 9, 1, 16, 34, 18, 21, 5, 14, 41, 26, 21, 42, 17, 50], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 503, | |
| "comment": "y = 1 and a = 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "074c17b8f4ad9ac944", | |
| "msg": [13, 25, 12, 61, 57, 25, 7, 34, 38, 45, 54, 40, 38, 54, 11], | |
| "ct": [51, 57, 18, 38, 56, 5, 19, 6, 12, 43, 18, 7, 5, 27, 59], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 504, | |
| "comment": "y = 1 and a = 1 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "074c17b8f4ad9ac944", | |
| "msg": [45, 42, 16, 48, 15, 13, 35, 61, 22, 6, 55, 55, 44, 15, 11], | |
| "ct": [59, 41, 37, 57, 47, 58, 2, 51, 31, 48, 55, 11, 12, 46, 62], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 505, | |
| "comment": "y = 1 and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "074c17b8f4ad9ac944", | |
| "msg": [45, 7, 56, 20, 15, 53, 10, 26, 51, 29, 50, 51, 39, 42, 34], | |
| "ct": [54, 9, 56, 21, 7, 16, 11, 55, 48, 50, 28, 4, 20, 18, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 506, | |
| "comment": "y = 1 and (y + a) % radix**7 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "074c17b8f4ad9ac944", | |
| "msg": [58, 55, 61, 20, 43, 20, 54, 3, 40, 0, 9, 42, 9, 16, 56], | |
| "ct": [2, 13, 59, 27, 49, 46, 0, 31, 61, 61, 23, 4, 10, 14, 27], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 507, | |
| "comment": "y = 1 and (y + a) % radix**7 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "074c17b8f4ad9ac944", | |
| "msg": [54, 11, 24, 24, 53, 52, 52, 0, 20, 21, 60, 57, 12, 32, 49], | |
| "ct": [51, 2, 31, 21, 0, 37, 3, 25, 42, 49, 54, 58, 27, 45, 41], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 508, | |
| "comment": "y is maximal and (y + a) % radix**7 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "c4655d788add8d019a", | |
| "msg": [16, 13, 32, 29, 6, 32, 57, 1, 20, 63, 54, 0, 53, 61, 13], | |
| "ct": [32, 47, 62, 60, 55, 1, 9, 25, 16, 23, 4, 31, 21, 59, 38], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 509, | |
| "comment": "y is maximal and (y + a) % radix**7 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "c4655d788add8d019a", | |
| "msg": [0, 41, 34, 1, 63, 63, 19, 49, 47, 26, 59, 0, 12, 0, 57], | |
| "ct": [48, 50, 31, 62, 1, 53, 8, 3, 43, 38, 55, 24, 27, 32, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 510, | |
| "comment": "y is maximal and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "c4655d788add8d019a", | |
| "msg": [50, 47, 52, 27, 2, 3, 21, 57, 46, 25, 46, 8, 44, 29, 11], | |
| "ct": [35, 57, 40, 61, 21, 34, 35, 32, 60, 20, 53, 55, 12, 23, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 511, | |
| "comment": "y is maximal and a is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "c4655d788add8d019a", | |
| "msg": [41, 39, 51, 2, 35, 32, 11, 26, 47, 52, 16, 58, 36, 7, 35], | |
| "ct": [13, 8, 30, 16, 13, 54, 55, 28, 46, 34, 11, 14, 38, 8, 37], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 512, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "9996ac405f769ed835", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 25, 43, 61, 54, 9, 35, 26, 14], | |
| "ct": [33, 11, 33, 34, 51, 4, 8, 57, 3, 24, 62, 17, 42, 60, 44], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 513, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "9996ac405f769ed835", | |
| "msg": [0, 0, 0, 0, 0, 0, 1, 25, 43, 61, 54, 9, 35, 26, 14], | |
| "ct": [18, 26, 43, 35, 52, 53, 61, 11, 30, 57, 41, 39, 16, 15, 30], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 514, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**7 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "9996ac405f769ed835", | |
| "msg": [0, 0, 0, 0, 0, 0, 63, 25, 43, 61, 54, 9, 35, 26, 14], | |
| "ct": [26, 24, 40, 51, 50, 0, 31, 52, 60, 29, 62, 54, 36, 55, 21], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 515, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**7 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "9996ac405f769ed835", | |
| "msg": [0, 0, 0, 0, 0, 1, 0, 25, 43, 61, 54, 9, 35, 26, 14], | |
| "ct": [33, 17, 16, 43, 48, 18, 62, 49, 39, 20, 45, 18, 19, 32, 19], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 516, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "9996ac405f769ed835", | |
| "msg": [32, 0, 0, 0, 0, 0, 0, 25, 43, 61, 54, 9, 35, 26, 14], | |
| "ct": [13, 51, 32, 15, 9, 10, 55, 17, 32, 28, 11, 60, 51, 19, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 517, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "9996ac405f769ed835", | |
| "msg": [63, 63, 63, 63, 63, 63, 63, 25, 43, 61, 54, 9, 35, 26, 14], | |
| "ct": [40, 14, 51, 14, 28, 54, 58, 18, 42, 54, 46, 55, 3, 16, 46], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 518, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**7 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "5a26f2d44dc8edac51", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 17, 46, 7, 31, 7, 3, 47, 12], | |
| "ct": [58, 45, 45, 57, 30, 55, 53, 50, 23, 22, 51, 16, 14, 33, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 519, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**7 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "5a26f2d44dc8edac51", | |
| "msg": [0, 0, 0, 0, 0, 0, 1, 17, 46, 7, 31, 7, 3, 47, 12], | |
| "ct": [9, 32, 63, 26, 33, 49, 54, 46, 11, 61, 12, 17, 4, 17, 59], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 520, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "5a26f2d44dc8edac51", | |
| "msg": [32, 0, 0, 0, 0, 0, 0, 17, 46, 7, 31, 7, 3, 47, 12], | |
| "ct": [52, 33, 47, 61, 6, 52, 4, 23, 15, 21, 0, 50, 33, 3, 50], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 521, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "b4aac83ef6dc59fd0ab9a7692e6ef3c4", | |
| "tweak": "5a26f2d44dc8edac51", | |
| "msg": [63, 63, 63, 63, 63, 63, 63, 17, 46, 7, 31, 7, 3, 47, 12], | |
| "ct": [3, 30, 0, 28, 13, 5, 7, 42, 28, 15, 56, 22, 58, 29, 51], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 522, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "18f316e92e027b0d4d068bb94f8dd864", | |
| "tweak": "17d37026864474b3", | |
| "msg": [-1, 23, 3, 22, 24, 42, 7, 10, 43, 12, 21, 26, 39, 7, 47], | |
| "ct": [40, 7, 7, 57, 43, 63, 29, 43, 46, 21, 6, 12, 0, 63, 10], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 523, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "18f316e92e027b0d4d068bb94f8dd864", | |
| "tweak": "17d37026864474b3", | |
| "msg": [33, 23, 3, 22, 24, -1, 7, 10, 43, 12, 21, 26, 39, 7, 47], | |
| "ct": [3, 3, 23, 62, 21, 27, 46, 54, 49, 34, 59, 52, 16, 28, 13], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 524, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "18f316e92e027b0d4d068bb94f8dd864", | |
| "tweak": "17d37026864474b3", | |
| "msg": [33, 23, 3, 22, 24, 42, 7, 10, 43, 12, 21, 26, 39, 7, -1], | |
| "ct": [16, 53, 45, 19, 15, 63, 16, 20, 17, 61, 19, 62, 14, 3, 2], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 525, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "37c461cc55853a0a6d98c9a713cb772d", | |
| "tweak": "576d43fb2d4660f8", | |
| "msg": [64, 57, 36, 40, 56, 6, 59, 62, 6, 37, 8, 39, 6, 38, 53], | |
| "ct": [12, 42, 39, 11, 10, 30, 35, 47, 39, 38, 33, 47, 26, 15, 33], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 526, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "37c461cc55853a0a6d98c9a713cb772d", | |
| "tweak": "576d43fb2d4660f8", | |
| "msg": [60, 57, 36, 40, 56, 64, 59, 62, 6, 37, 8, 39, 6, 38, 53], | |
| "ct": [13, 45, 7, 3, 3, 34, 44, 38, 47, 10, 40, 6, 59, 28, 26], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 527, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "37c461cc55853a0a6d98c9a713cb772d", | |
| "tweak": "576d43fb2d4660f8", | |
| "msg": [60, 57, 36, 40, 56, 6, 59, 62, 6, 37, 8, 39, 6, 38, 64], | |
| "ct": [57, 57, 19, 61, 32, 28, 3, 2, 47, 35, 35, 0, 12, 9, 14], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 16, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 528, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "48f0d03e41cc55c4b58f737b5acdea32", | |
| "tweak": "30944debca89ca90", | |
| "msg": [16, 4, 15, 62, 1, 49, 36, 1, 9, 22, 42, 1, 47, 5, 15, 24], | |
| "ct": [0, 53, 32, 60, 63, 41, 26, 8, 8, 35, 35, 6, 48, 49, 10, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 529, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [63, 60, 30, 52, 12, 17, 61, 31, 5, 18, 61, 55, 58, 1, 13, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 530, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "ct": [3, 42, 19, 48, 16, 29, 4, 29, 54, 0, 49, 48, 9, 42, 33, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 531, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [32, 0, 0, 0, 0, 0, 0, 0, 32, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [61, 29, 22, 10, 20, 41, 33, 16, 51, 47, 21, 34, 41, 1, 47, 23], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 532, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [31, 63, 63, 63, 63, 63, 63, 63, 31, 63, 63, 63, 63, 63, 63, 63], | |
| "ct": [30, 60, 62, 3, 46, 8, 47, 55, 10, 8, 11, 14, 32, 42, 16, 24], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 533, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [2, 29, 13, 5, 37, 0, 46, 61, 35, 33, 14, 32, 19, 37, 34, 9], | |
| "ct": [39, 53, 10, 37, 9, 15, 27, 45, 62, 10, 26, 7, 33, 46, 30, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 534, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [9, 33, 55, 25, 46, 11, 63, 10, 17, 44, 39, 44, 42, 10, 62, 61], | |
| "ct": [29, 43, 10, 24, 59, 18, 38, 36, 45, 4, 3, 33, 51, 1, 40, 18], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 535, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [20, 47, 43, 51, 27, 10, 12, 3, 40, 22, 46, 31, 13, 44, 7, 60], | |
| "ct": [0, 34, 25, 24, 38, 38, 51, 42, 3, 57, 4, 43, 38, 51, 2, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 536, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [8, 24, 16, 46, 26, 55, 14, 17, 3, 34, 1, 51, 60, 8, 5, 13], | |
| "ct": [10, 63, 23, 5, 52, 57, 59, 38, 33, 50, 34, 22, 40, 48, 28, 60], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 537, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [22, 1, 44, 19, 39, 61, 62, 35, 61, 13, 34, 40, 40, 2, 21, 15], | |
| "ct": [43, 13, 35, 63, 16, 45, 22, 55, 20, 47, 53, 25, 63, 60, 3, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 538, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [2, 32, 7, 10, 26, 63, 60, 12, 34, 24, 55, 20, 58, 22, 57, 49], | |
| "ct": [17, 55, 43, 2, 56, 36, 11, 31, 11, 12, 10, 59, 58, 36, 38, 32], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 539, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [0, 10, 22, 58, 34, 23, 46, 62, 26, 62, 19, 4, 25, 29, 52, 29], | |
| "ct": [30, 19, 46, 13, 20, 41, 1, 30, 40, 28, 39, 53, 16, 54, 8, 22], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 540, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [24, 57, 24, 38, 11, 47, 3, 2, 11, 45, 8, 22, 49, 33, 6, 25], | |
| "ct": [62, 53, 46, 0, 24, 1, 37, 38, 59, 24, 51, 47, 43, 14, 58, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 541, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [22, 27, 6, 31, 14, 7, 12, 59, 7, 34, 44, 31, 39, 47, 59, 55], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 542, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [17, 57, 59, 27, 13, 38, 19, 12, 4, 62, 47, 56, 2, 63, 61, 16], | |
| "ct": [63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 543, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [10, 42, 52, 45, 16, 38, 57, 53, 39, 57, 49, 36, 27, 62, 25, 36], | |
| "ct": [32, 0, 0, 0, 0, 0, 0, 0, 32, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 544, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "58a68a9bf81642540bcff165563af592", | |
| "tweak": "a4a9513e222fab29", | |
| "msg": [2, 55, 54, 22, 46, 50, 22, 1, 3, 13, 52, 0, 23, 2, 54, 30], | |
| "ct": [31, 63, 63, 63, 63, 63, 63, 63, 31, 63, 63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 545, | |
| "comment": "y = 0 and (y + a) % radix**8 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "a29b4d372fe6cabfd8", | |
| "msg": [42, 15, 42, 62, 7, 20, 29, 54, 34, 25, 58, 56, 30, 22, 38, 18], | |
| "ct": [54, 3, 23, 40, 57, 56, 50, 12, 42, 38, 30, 31, 48, 45, 21, 36], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 546, | |
| "comment": "y = 0 and a = 1 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "a29b4d372fe6cabfd8", | |
| "msg": [47, 2, 0, 10, 18, 60, 49, 50, 24, 16, 39, 24, 18, 30, 40, 24], | |
| "ct": [32, 63, 30, 59, 19, 0, 13, 58, 31, 24, 28, 57, 6, 24, 30, 29], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 547, | |
| "comment": "y = 0 and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "a29b4d372fe6cabfd8", | |
| "msg": [20, 48, 9, 7, 63, 32, 61, 7, 47, 38, 4, 42, 63, 8, 0, 55], | |
| "ct": [25, 37, 63, 9, 59, 4, 30, 60, 6, 41, 43, 32, 50, 16, 54, 14], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 548, | |
| "comment": "y = 0 and (y + a) % radix**8 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "a29b4d372fe6cabfd8", | |
| "msg": [17, 1, 45, 28, 10, 37, 61, 51, 2, 20, 53, 37, 11, 28, 36, 6], | |
| "ct": [12, 1, 49, 0, 30, 45, 50, 26, 35, 22, 14, 49, 21, 18, 36, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 549, | |
| "comment": "y = 1 and a = 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "9ff45186136b0dc2be", | |
| "msg": [25, 37, 9, 11, 40, 4, 38, 63, 57, 3, 63, 25, 39, 59, 49, 53], | |
| "ct": [3, 26, 48, 28, 26, 15, 3, 15, 0, 38, 19, 5, 57, 38, 1, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 550, | |
| "comment": "y = 1 and a = 1 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "9ff45186136b0dc2be", | |
| "msg": [53, 26, 7, 40, 36, 18, 26, 0, 2, 28, 13, 53, 27, 36, 6, 42], | |
| "ct": [29, 11, 1, 44, 54, 49, 29, 55, 56, 37, 12, 61, 31, 21, 12, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 551, | |
| "comment": "y = 1 and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "9ff45186136b0dc2be", | |
| "msg": [35, 29, 19, 56, 24, 46, 43, 29, 32, 36, 24, 13, 60, 56, 11, 43], | |
| "ct": [27, 22, 59, 46, 8, 35, 56, 53, 33, 35, 25, 1, 30, 48, 53, 46], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 552, | |
| "comment": "y = 1 and (y + a) % radix**8 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "9ff45186136b0dc2be", | |
| "msg": [21, 17, 6, 42, 55, 49, 47, 1, 56, 58, 10, 33, 0, 15, 29, 24], | |
| "ct": [51, 21, 53, 57, 58, 9, 45, 7, 2, 30, 37, 19, 9, 31, 22, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 553, | |
| "comment": "y = 1 and (y + a) % radix**8 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "9ff45186136b0dc2be", | |
| "msg": [43, 46, 50, 11, 13, 5, 14, 58, 56, 30, 12, 11, 13, 35, 32, 56], | |
| "ct": [47, 39, 3, 22, 46, 10, 12, 1, 1, 19, 61, 48, 54, 47, 46, 17], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 554, | |
| "comment": "y is maximal and (y + a) % radix**8 is maximal in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "b4f513ac64d500f470", | |
| "msg": [32, 45, 61, 7, 49, 53, 6, 10, 18, 36, 14, 55, 53, 61, 14, 29], | |
| "ct": [44, 44, 45, 54, 34, 23, 15, 50, 38, 55, 43, 24, 11, 3, 19, 16], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 555, | |
| "comment": "y is maximal and (y + a) % radix**8 == 0 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "b4f513ac64d500f470", | |
| "msg": [18, 4, 0, 18, 62, 52, 0, 6, 2, 32, 60, 48, 42, 56, 4, 45], | |
| "ct": [54, 13, 43, 41, 59, 36, 36, 60, 22, 1, 44, 34, 13, 55, 49, 25], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 556, | |
| "comment": "y is maximal and a has large Hamming weight in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "b4f513ac64d500f470", | |
| "msg": [19, 19, 37, 40, 45, 41, 11, 62, 18, 53, 23, 8, 60, 49, 50, 18], | |
| "ct": [38, 10, 32, 12, 47, 35, 31, 54, 21, 50, 19, 46, 5, 45, 56, 46], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 557, | |
| "comment": "y is maximal and a is maximal in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "b4f513ac64d500f470", | |
| "msg": [7, 23, 25, 14, 9, 28, 8, 38, 2, 38, 5, 54, 51, 16, 10, 51], | |
| "ct": [43, 48, 55, 0, 24, 53, 0, 50, 17, 19, 47, 23, 24, 42, 17, 54], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 558, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "37b663e0df347e9fd6", | |
| "msg": [28, 52, 8, 11, 12, 36, 15, 22, 34, 11, 50, 63, 41, 47, 60, 49], | |
| "ct": [30, 7, 8, 22, 29, 24, 59, 1, 63, 63, 63, 63, 63, 63, 63, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 559, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "37b663e0df347e9fd6", | |
| "msg": [6, 6, 41, 42, 56, 39, 16, 18, 21, 7, 58, 23, 47, 23, 32, 57], | |
| "ct": [30, 7, 8, 22, 29, 24, 59, 1, 63, 63, 63, 63, 63, 63, 63, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 560, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**8 is maximal in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "37b663e0df347e9fd6", | |
| "msg": [63, 1, 35, 20, 8, 20, 50, 5, 37, 39, 13, 5, 52, 23, 61, 0], | |
| "ct": [30, 7, 8, 22, 29, 24, 59, 1, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 561, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**8 == 0 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "37b663e0df347e9fd6", | |
| "msg": [23, 28, 18, 39, 54, 6, 15, 20, 22, 2, 62, 14, 20, 17, 33, 42], | |
| "ct": [30, 7, 8, 22, 29, 24, 59, 1, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 562, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "37b663e0df347e9fd6", | |
| "msg": [32, 32, 21, 40, 12, 2, 30, 26, 16, 3, 26, 25, 41, 19, 52, 45], | |
| "ct": [30, 7, 8, 22, 29, 24, 59, 1, 31, 63, 63, 63, 63, 63, 63, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 563, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "37b663e0df347e9fd6", | |
| "msg": [40, 47, 27, 28, 18, 1, 50, 2, 22, 24, 52, 46, 63, 20, 2, 50], | |
| "ct": [30, 7, 8, 22, 29, 24, 59, 1, 63, 63, 63, 63, 63, 63, 62, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 564, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**8 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "8fa70e423d0c130272", | |
| "msg": [51, 61, 39, 41, 41, 9, 52, 31, 49, 46, 0, 48, 59, 3, 61, 48], | |
| "ct": [63, 63, 63, 63, 63, 63, 63, 63, 61, 28, 37, 30, 7, 31, 10, 31], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 565, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**8 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "8fa70e423d0c130272", | |
| "msg": [16, 27, 61, 61, 19, 43, 38, 15, 12, 50, 36, 22, 30, 53, 1, 14], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 50, 58, 35, 0, 48, 48, 18, 58], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 566, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "8fa70e423d0c130272", | |
| "msg": [13, 35, 28, 41, 23, 13, 0, 3, 34, 44, 59, 5, 15, 24, 9, 34], | |
| "ct": [31, 63, 63, 63, 63, 63, 63, 63, 7, 18, 27, 8, 13, 41, 57, 36], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 567, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "ce2295b38289779ad19a532cd6be845b", | |
| "tweak": "8fa70e423d0c130272", | |
| "msg": [24, 24, 24, 15, 0, 35, 54, 56, 1, 50, 15, 12, 21, 26, 63, 21], | |
| "ct": [63, 63, 63, 63, 63, 63, 63, 62, 24, 15, 13, 49, 14, 41, 8, 28], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 568, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "c3a8f68c88eeea1a255db6a7e012ec22", | |
| "tweak": "a841e8a1819dfb69", | |
| "msg": [-1, 37, 20, 21, 9, 29, 6, 5, 7, 39, 59, 31, 21, 21, 34, 40], | |
| "ct": [49, 44, 54, 6, 6, 38, 1, 49, 13, 32, 2, 61, 49, 22, 47, 13], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 569, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "c3a8f68c88eeea1a255db6a7e012ec22", | |
| "tweak": "a841e8a1819dfb69", | |
| "msg": [28, 37, 20, 21, 9, -1, 6, 5, 7, 39, 59, 31, 21, 21, 34, 40], | |
| "ct": [62, 28, 27, 26, 5, 44, 39, 37, 19, 18, 23, 63, 57, 10, 35, 20], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 570, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "c3a8f68c88eeea1a255db6a7e012ec22", | |
| "tweak": "a841e8a1819dfb69", | |
| "msg": [28, 37, 20, 21, 9, 29, 6, 5, 7, 39, 59, 31, 21, 21, 34, -1], | |
| "ct": [10, 55, 52, 40, 54, 54, 37, 21, 35, 40, 57, 30, 34, 11, 4, 42], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 571, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "af0e51d63b2ee91711233efb432a40e8", | |
| "tweak": "f5d1dd9c081cd5e9", | |
| "msg": [64, 51, 6, 46, 27, 35, 13, 35, 5, 60, 15, 49, 53, 59, 47, 33], | |
| "ct": [5, 27, 35, 10, 58, 26, 55, 16, 21, 39, 40, 61, 39, 17, 54, 50], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 572, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "af0e51d63b2ee91711233efb432a40e8", | |
| "tweak": "f5d1dd9c081cd5e9", | |
| "msg": [15, 51, 6, 46, 27, 64, 13, 35, 5, 60, 15, 49, 53, 59, 47, 33], | |
| "ct": [39, 6, 19, 1, 42, 6, 26, 38, 50, 62, 62, 5, 1, 38, 29, 62], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 573, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "af0e51d63b2ee91711233efb432a40e8", | |
| "tweak": "f5d1dd9c081cd5e9", | |
| "msg": [15, 51, 6, 46, 27, 35, 13, 35, 5, 60, 15, 49, 53, 59, 47, 64], | |
| "ct": [28, 29, 47, 22, 8, 41, 20, 10, 0, 55, 60, 16, 61, 57, 18, 61], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 17, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 574, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "22351a53774415942eb879b483eda9a2", | |
| "tweak": "b4a5dce9958d53fc", | |
| "msg": [17, 44, 16, 11, 50, 53, 55, 59, 17, 21, 57, 34, 56, 52, 47, 44, 58], | |
| "ct": [38, 12, 30, 9, 53, 12, 34, 48, 49, 49, 6, 7, 37, 49, 21, 34, 56], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 575, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [45, 49, 48, 38, 61, 2, 2, 61, 30, 51, 25, 54, 36, 23, 55, 44, 24], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 576, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "ct": [61, 34, 21, 8, 5, 54, 19, 19, 22, 48, 42, 28, 50, 14, 54, 53, 55], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 577, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [32, 0, 0, 0, 0, 0, 0, 0, 32, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [59, 46, 31, 6, 13, 37, 26, 1, 15, 3, 60, 58, 13, 54, 57, 8, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 578, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [31, 63, 63, 63, 63, 63, 63, 63, 31, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "ct": [51, 40, 60, 48, 40, 38, 45, 33, 29, 8, 36, 46, 62, 8, 18, 57, 28], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 579, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [62, 14, 50, 63, 51, 52, 42, 41, 1, 58, 31, 47, 3, 0, 41, 15, 63], | |
| "ct": [38, 9, 3, 45, 63, 9, 53, 8, 49, 21, 11, 34, 5, 6, 6, 0, 56], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 580, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [36, 36, 20, 33, 59, 31, 0, 24, 53, 20, 32, 43, 14, 16, 11, 49, 14], | |
| "ct": [59, 51, 48, 41, 38, 51, 25, 9, 24, 29, 32, 38, 32, 6, 20, 30, 23], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 581, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [23, 22, 12, 12, 48, 22, 22, 18, 39, 17, 63, 22, 9, 23, 9, 18, 44], | |
| "ct": [31, 62, 29, 30, 10, 37, 0, 58, 29, 40, 47, 50, 12, 25, 39, 41, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 582, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [1, 59, 39, 7, 58, 1, 40, 20, 39, 43, 38, 20, 15, 20, 14, 47, 4], | |
| "ct": [57, 9, 26, 58, 1, 12, 12, 3, 26, 5, 54, 19, 34, 25, 18, 59, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 583, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [10, 30, 14, 24, 21, 14, 46, 26, 49, 21, 0, 30, 34, 23, 3, 22, 36], | |
| "ct": [41, 26, 36, 27, 20, 35, 47, 19, 14, 63, 54, 37, 17, 28, 3, 7, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 584, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [8, 43, 39, 16, 5, 51, 39, 26, 24, 29, 31, 8, 19, 58, 52, 40, 53], | |
| "ct": [53, 9, 37, 57, 30, 63, 25, 30, 51, 8, 58, 42, 21, 16, 57, 63, 55], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 585, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [9, 6, 53, 51, 6, 36, 34, 42, 27, 9, 3, 9, 17, 18, 9, 58, 62], | |
| "ct": [36, 50, 58, 12, 20, 29, 56, 11, 41, 22, 42, 56, 53, 2, 47, 32, 31], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 586, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [29, 59, 62, 4, 9, 23, 53, 35, 58, 53, 21, 8, 24, 13, 13, 21, 15], | |
| "ct": [33, 12, 15, 57, 53, 21, 8, 39, 9, 62, 9, 47, 1, 31, 46, 4, 23], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 587, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [13, 38, 4, 24, 13, 38, 1, 7, 1, 38, 10, 11, 5, 23, 26, 49, 50], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 588, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [21, 5, 25, 53, 50, 62, 38, 45, 33, 61, 24, 48, 0, 36, 38, 2, 58], | |
| "ct": [63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 589, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [23, 38, 17, 48, 61, 40, 31, 22, 14, 43, 18, 34, 60, 5, 32, 36, 59], | |
| "ct": [32, 0, 0, 0, 0, 0, 0, 0, 32, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 590, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "586c34235df3fd6ed8995a643fd52d41", | |
| "tweak": "c41f1671a352a8fb", | |
| "msg": [11, 39, 60, 20, 16, 11, 38, 44, 50, 25, 37, 38, 19, 53, 62, 30, 50], | |
| "ct": [31, 63, 63, 63, 63, 63, 63, 63, 31, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 591, | |
| "comment": "y = 0 and (y + a) % radix**8 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "b8b565663d384096", | |
| "msg": [25, 61, 24, 60, 30, 27, 60, 63, 2, 27, 15, 55, 56, 52, 34, 13, 61], | |
| "ct": [10, 12, 47, 15, 35, 35, 9, 45, 50, 60, 2, 11, 56, 7, 39, 47, 2], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 592, | |
| "comment": "y = 0 and a = 1 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "b8b565663d384096", | |
| "msg": [35, 57, 44, 59, 35, 31, 4, 40, 56, 22, 19, 52, 63, 10, 45, 47, 14], | |
| "ct": [60, 27, 27, 19, 5, 29, 13, 11, 14, 37, 47, 53, 60, 60, 15, 60, 50], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 593, | |
| "comment": "y = 0 and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "b8b565663d384096", | |
| "msg": [41, 63, 40, 53, 5, 24, 38, 3, 17, 63, 20, 48, 15, 21, 59, 6, 9], | |
| "ct": [24, 44, 46, 35, 24, 8, 12, 31, 4, 47, 18, 58, 22, 13, 61, 45, 62], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 594, | |
| "comment": "y = 0 and (y + a) % radix**8 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "b8b565663d384096", | |
| "msg": [57, 16, 27, 3, 29, 28, 23, 53, 3, 0, 62, 42, 34, 0, 27, 36, 34], | |
| "ct": [36, 3, 17, 0, 44, 9, 25, 27, 24, 6, 32, 52, 20, 52, 37, 4, 16], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 595, | |
| "comment": "y = 1 and a = 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "2ad933b536320368", | |
| "msg": [23, 48, 16, 56, 55, 41, 19, 21, 9, 50, 20, 36, 21, 24, 34, 40, 43], | |
| "ct": [19, 2, 51, 21, 36, 28, 57, 24, 44, 6, 13, 45, 27, 25, 46, 20, 23], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 596, | |
| "comment": "y = 1 and a = 1 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "2ad933b536320368", | |
| "msg": [9, 40, 35, 3, 0, 52, 40, 25, 40, 41, 53, 56, 35, 30, 51, 45, 34], | |
| "ct": [41, 54, 55, 18, 31, 40, 23, 0, 8, 47, 26, 19, 10, 34, 13, 51, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 597, | |
| "comment": "y = 1 and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "2ad933b536320368", | |
| "msg": [63, 35, 41, 14, 16, 39, 26, 52, 43, 10, 56, 2, 31, 39, 6, 0, 12], | |
| "ct": [39, 56, 45, 50, 31, 22, 50, 6, 7, 23, 22, 58, 50, 27, 21, 20, 16], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 598, | |
| "comment": "y = 1 and (y + a) % radix**8 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "2ad933b536320368", | |
| "msg": [5, 3, 56, 33, 32, 1, 8, 52, 11, 63, 2, 7, 44, 44, 28, 5, 33], | |
| "ct": [45, 14, 51, 10, 24, 34, 38, 42, 55, 34, 61, 50, 2, 5, 10, 39, 26], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 599, | |
| "comment": "y = 1 and (y + a) % radix**8 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "2ad933b536320368", | |
| "msg": [63, 6, 52, 53, 15, 42, 51, 16, 20, 46, 26, 57, 53, 11, 47, 49, 12], | |
| "ct": [26, 37, 9, 15, 44, 14, 49, 24, 20, 38, 14, 30, 40, 62, 52, 8, 47], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 600, | |
| "comment": "y is maximal and (y + a) % radix**8 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "882bb5d7fcf6e148", | |
| "msg": [23, 45, 46, 56, 47, 53, 29, 29, 61, 30, 50, 63, 45, 8, 30, 34, 12], | |
| "ct": [5, 21, 28, 53, 10, 15, 41, 1, 46, 40, 30, 34, 11, 48, 6, 30, 46], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 601, | |
| "comment": "y is maximal and (y + a) % radix**8 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "882bb5d7fcf6e148", | |
| "msg": [37, 57, 58, 30, 9, 12, 29, 3, 46, 9, 1, 0, 54, 39, 63, 9, 49], | |
| "ct": [43, 49, 25, 4, 6, 6, 21, 27, 13, 48, 35, 11, 59, 36, 50, 8, 16], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 602, | |
| "comment": "y is maximal and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "882bb5d7fcf6e148", | |
| "msg": [47, 52, 63, 45, 54, 62, 1, 37, 37, 13, 2, 2, 56, 54, 21, 38, 17], | |
| "ct": [39, 47, 30, 20, 5, 14, 48, 30, 15, 13, 61, 42, 0, 13, 13, 3, 47], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 603, | |
| "comment": "y is maximal and a is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "882bb5d7fcf6e148", | |
| "msg": [52, 58, 6, 7, 59, 1, 24, 41, 6, 52, 13, 12, 25, 40, 59, 49, 0], | |
| "ct": [35, 1, 1, 44, 14, 35, 61, 56, 0, 26, 25, 16, 50, 16, 25, 28, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 604, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "7188b04e5eb02d7e", | |
| "msg": [12, 47, 22, 13, 58, 18, 12, 39, 40, 58, 58, 23, 35, 57, 29, 51, 33], | |
| "ct": [19, 33, 57, 23, 29, 43, 31, 16, 51, 54, 22, 62, 25, 14, 35, 61, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 605, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "7188b04e5eb02d7e", | |
| "msg": [42, 45, 23, 15, 48, 59, 20, 37, 9, 42, 62, 39, 38, 28, 28, 39, 37], | |
| "ct": [9, 50, 4, 18, 46, 32, 5, 13, 30, 53, 63, 46, 29, 5, 44, 29, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 606, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**8 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "7188b04e5eb02d7e", | |
| "msg": [31, 6, 58, 30, 17, 10, 61, 44, 48, 31, 13, 48, 4, 6, 41, 38, 55], | |
| "ct": [41, 46, 15, 16, 27, 12, 61, 54, 46, 63, 43, 14, 4, 47, 6, 31, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 607, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**8 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "7188b04e5eb02d7e", | |
| "msg": [29, 37, 31, 10, 8, 45, 34, 34, 20, 22, 5, 32, 43, 6, 22, 18, 32], | |
| "ct": [3, 25, 35, 13, 17, 17, 48, 18, 1, 62, 39, 59, 58, 7, 61, 59, 23], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 608, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "7188b04e5eb02d7e", | |
| "msg": [9, 36, 50, 15, 60, 29, 12, 58, 62, 52, 4, 14, 18, 42, 26, 12, 4], | |
| "ct": [56, 12, 62, 0, 12, 30, 1, 31, 1, 11, 23, 0, 46, 0, 56, 62, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 609, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "7188b04e5eb02d7e", | |
| "msg": [25, 17, 23, 6, 41, 57, 34, 6, 28, 28, 4, 33, 54, 2, 14, 34, 26], | |
| "ct": [7, 60, 61, 52, 51, 40, 55, 17, 41, 2, 40, 10, 59, 21, 20, 46, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 610, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**8 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "8177557646252bdd", | |
| "msg": [50, 60, 3, 27, 35, 45, 38, 62, 25, 46, 8, 57, 5, 46, 41, 19, 51], | |
| "ct": [14, 35, 4, 39, 27, 55, 20, 47, 42, 54, 34, 41, 16, 45, 49, 57, 19], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 611, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**8 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "8177557646252bdd", | |
| "msg": [9, 22, 62, 62, 0, 47, 48, 32, 46, 44, 9, 22, 22, 12, 15, 29, 58], | |
| "ct": [34, 22, 4, 5, 27, 30, 45, 52, 29, 34, 53, 26, 2, 5, 23, 14, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 612, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "8177557646252bdd", | |
| "msg": [28, 36, 51, 38, 62, 21, 39, 60, 6, 50, 60, 30, 14, 54, 34, 35, 18], | |
| "ct": [49, 43, 19, 39, 30, 19, 18, 18, 2, 9, 35, 8, 9, 62, 12, 54, 52], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 613, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "47b31cab4872b3dfea0ebed259ac5cb7", | |
| "tweak": "8177557646252bdd", | |
| "msg": [57, 61, 59, 28, 61, 42, 11, 54, 34, 21, 22, 45, 58, 4, 15, 62, 0], | |
| "ct": [9, 0, 32, 41, 36, 46, 39, 35, 5, 36, 24, 40, 12, 60, 36, 5, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 614, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "2ec80962dad2bf783abd539d85a7c8d6", | |
| "tweak": "1a36d2cb8088c664", | |
| "msg": [-1, 54, 33, 12, 61, 17, 52, 50, 28, 11, 57, 4, 18, 13, 40, 41, 4], | |
| "ct": [46, 29, 40, 53, 9, 34, 63, 46, 30, 29, 29, 43, 54, 2, 47, 32, 46], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 615, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "2ec80962dad2bf783abd539d85a7c8d6", | |
| "tweak": "1a36d2cb8088c664", | |
| "msg": [21, 54, 33, 12, 61, -1, 52, 50, 28, 11, 57, 4, 18, 13, 40, 41, 4], | |
| "ct": [54, 0, 43, 0, 15, 10, 38, 32, 3, 15, 41, 31, 44, 42, 24, 27, 2], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 616, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "2ec80962dad2bf783abd539d85a7c8d6", | |
| "tweak": "1a36d2cb8088c664", | |
| "msg": [21, 54, 33, 12, 61, 17, 52, 50, 28, 11, 57, 4, 18, 13, 40, 41, -1], | |
| "ct": [62, 56, 34, 14, 46, 42, 2, 48, 47, 55, 29, 33, 58, 45, 13, 62, 31], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 617, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "c361e7cfd5c8089a89e9f061c8ea9c06", | |
| "tweak": "cce3ea227ba838f7", | |
| "msg": [64, 0, 44, 3, 5, 13, 10, 11, 45, 51, 3, 32, 37, 13, 40, 19, 12], | |
| "ct": [40, 7, 1, 14, 28, 0, 10, 34, 0, 50, 61, 54, 18, 50, 14, 1, 17], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 618, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "c361e7cfd5c8089a89e9f061c8ea9c06", | |
| "tweak": "cce3ea227ba838f7", | |
| "msg": [12, 0, 44, 3, 5, 64, 10, 11, 45, 51, 3, 32, 37, 13, 40, 19, 12], | |
| "ct": [51, 25, 44, 62, 11, 9, 57, 50, 51, 16, 16, 34, 50, 40, 50, 28, 30], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 619, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "c361e7cfd5c8089a89e9f061c8ea9c06", | |
| "tweak": "cce3ea227ba838f7", | |
| "msg": [12, 0, 44, 3, 5, 13, 10, 11, 45, 51, 3, 32, 37, 13, 40, 19, 64], | |
| "ct": [46, 60, 34, 4, 7, 23, 10, 15, 3, 11, 10, 11, 3, 12, 6, 63, 51], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 18, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 620, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "40dcd7ccae73e5e9bba5523fbab77a3c", | |
| "tweak": "60ddd7c8df1437cf", | |
| "msg": [35, 57, 16, 57, 53, 58, 40, 54, 2, 56, 34, 0, 5, 5, 39, 11, 45, 15], | |
| "ct": [24, 61, 5, 56, 12, 13, 36, 47, 3, 29, 0, 24, 12, 43, 36, 56, 0, 39], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 621, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [3, 23, 63, 57, 1, 60, 16, 16, 35, 10, 2, 47, 57, 26, 13, 2, 62, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 622, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "ct": [49, 19, 30, 8, 6, 62, 52, 1, 26, 53, 45, 61, 51, 15, 34, 19, 0, 44], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 623, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [32, 0, 0, 0, 0, 0, 0, 0, 0, 32, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [46, 29, 38, 29, 41, 55, 8, 52, 39, 46, 39, 39, 28, 44, 19, 58, 8, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 624, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [31, 63, 63, 63, 63, 63, 63, 63, 63, 31, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "ct": [28, 11, 9, 32, 53, 56, 56, 16, 9, 17, 17, 4, 48, 39, 13, 46, 6, 28], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 625, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [26, 13, 40, 9, 62, 1, 49, 42, 26, 7, 37, 45, 34, 52, 36, 34, 1, 28], | |
| "ct": [10, 18, 48, 36, 21, 51, 50, 37, 62, 62, 9, 57, 37, 57, 2, 57, 15, 28], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 626, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [3, 13, 12, 51, 34, 2, 34, 24, 19, 14, 50, 62, 39, 24, 32, 48, 17, 5], | |
| "ct": [11, 25, 49, 2, 7, 10, 5, 31, 14, 31, 48, 36, 13, 43, 1, 9, 55, 8], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 627, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [39, 51, 62, 31, 55, 25, 17, 23, 14, 24, 41, 39, 18, 59, 59, 16, 5, 10], | |
| "ct": [56, 13, 43, 8, 29, 15, 38, 63, 42, 23, 15, 38, 6, 3, 11, 58, 2, 39], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 628, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [4, 25, 63, 53, 56, 12, 57, 23, 37, 51, 44, 59, 29, 33, 33, 35, 6, 43], | |
| "ct": [42, 11, 29, 43, 61, 48, 37, 40, 8, 40, 14, 56, 45, 13, 40, 51, 18, 32], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 629, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [15, 16, 35, 10, 38, 25, 6, 13, 29, 42, 41, 46, 7, 40, 42, 58, 2, 21], | |
| "ct": [51, 39, 45, 63, 45, 49, 35, 19, 51, 28, 60, 34, 43, 37, 55, 63, 57, 27], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 630, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [10, 30, 57, 17, 50, 47, 25, 4, 20, 21, 59, 50, 55, 63, 55, 42, 26, 54], | |
| "ct": [35, 21, 17, 26, 24, 59, 40, 28, 16, 0, 62, 24, 9, 4, 32, 54, 49, 51], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 631, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [60, 54, 13, 41, 5, 23, 6, 36, 35, 59, 2, 49, 36, 55, 1, 23, 57, 55], | |
| "ct": [27, 11, 42, 13, 58, 59, 30, 46, 14, 42, 12, 0, 26, 40, 8, 59, 59, 57], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 632, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [62, 30, 15, 3, 24, 49, 10, 29, 59, 34, 42, 46, 43, 59, 17, 28, 39, 51], | |
| "ct": [47, 28, 63, 25, 16, 6, 41, 23, 32, 60, 52, 58, 53, 39, 1, 49, 23, 26], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 633, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [59, 37, 26, 63, 39, 44, 22, 37, 59, 44, 52, 23, 8, 17, 22, 54, 0, 21], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 634, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [38, 43, 57, 56, 37, 41, 48, 8, 58, 2, 23, 62, 19, 31, 45, 31, 50, 63], | |
| "ct": [63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 635, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [50, 11, 20, 13, 56, 25, 48, 35, 45, 21, 23, 42, 19, 32, 23, 28, 3, 19], | |
| "ct": [32, 0, 0, 0, 0, 0, 0, 0, 0, 32, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 636, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fbe6a74c32f28d6fcb00598b1d6c531a", | |
| "tweak": "308cfb8c6402c842", | |
| "msg": [0, 44, 19, 42, 18, 3, 33, 38, 60, 24, 39, 51, 23, 41, 54, 10, 63, 40], | |
| "ct": [31, 63, 63, 63, 63, 63, 63, 63, 63, 31, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 637, | |
| "comment": "y = 0 and (y + a) % radix**9 == 0 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "15d940d672d3844d", | |
| "msg": [32, 11, 0, 38, 0, 47, 11, 61, 63, 28, 42, 61, 14, 22, 15, 43, 5, 40], | |
| "ct": [19, 19, 63, 36, 30, 36, 42, 46, 4, 6, 15, 24, 44, 16, 16, 5, 15, 21], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 638, | |
| "comment": "y = 0 and a = 1 in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "15d940d672d3844d", | |
| "msg": [0, 6, 44, 29, 49, 31, 7, 12, 44, 40, 37, 3, 25, 49, 11, 55, 1, 16], | |
| "ct": [43, 58, 16, 25, 29, 10, 27, 39, 39, 48, 51, 40, 56, 2, 52, 52, 43, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 639, | |
| "comment": "y = 0 and a has large Hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "15d940d672d3844d", | |
| "msg": [52, 22, 26, 51, 51, 28, 21, 26, 19, 36, 10, 21, 38, 59, 49, 3, 40, 34], | |
| "ct": [33, 28, 43, 41, 17, 53, 36, 30, 58, 49, 43, 22, 53, 25, 9, 51, 4, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 640, | |
| "comment": "y = 0 and (y + a) % radix**9 is maximal in round 5", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "15d940d672d3844d", | |
| "msg": [0, 11, 62, 33, 38, 36, 54, 48, 16, 63, 22, 17, 17, 5, 3, 32, 16, 37], | |
| "ct": [5, 14, 39, 40, 34, 36, 56, 6, 50, 63, 7, 55, 56, 4, 4, 27, 21, 29], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 641, | |
| "comment": "y = 1 and a = 0 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "4244be113bab79d6", | |
| "msg": [11, 39, 56, 11, 28, 31, 25, 0, 36, 29, 10, 49, 32, 20, 5, 19, 11, 60], | |
| "ct": [9, 0, 13, 39, 53, 4, 24, 62, 60, 43, 39, 39, 30, 4, 59, 39, 2, 44], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 642, | |
| "comment": "y = 1 and a = 1 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "4244be113bab79d6", | |
| "msg": [13, 53, 1, 21, 4, 25, 52, 36, 59, 54, 43, 19, 47, 16, 15, 59, 47, 54], | |
| "ct": [2, 13, 35, 24, 11, 62, 49, 13, 34, 58, 55, 18, 31, 60, 6, 5, 57, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 643, | |
| "comment": "y = 1 and a has large Hamming weight in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "4244be113bab79d6", | |
| "msg": [3, 2, 41, 13, 36, 59, 23, 12, 47, 13, 59, 11, 63, 22, 33, 35, 26, 3], | |
| "ct": [53, 53, 47, 47, 60, 48, 41, 9, 51, 30, 32, 18, 48, 3, 48, 62, 60, 57], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 644, | |
| "comment": "y = 1 and (y + a) % radix**9 is maximal in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "4244be113bab79d6", | |
| "msg": [13, 36, 2, 7, 9, 26, 51, 38, 42, 46, 58, 48, 56, 34, 49, 40, 38, 28], | |
| "ct": [61, 16, 32, 0, 40, 25, 48, 14, 16, 57, 35, 59, 50, 37, 31, 35, 3, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 645, | |
| "comment": "y = 1 and (y + a) % radix**9 == 0 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "4244be113bab79d6", | |
| "msg": [58, 25, 34, 22, 11, 9, 55, 9, 48, 40, 50, 33, 16, 54, 20, 39, 8, 46], | |
| "ct": [40, 34, 5, 56, 54, 49, 12, 49, 14, 11, 25, 39, 0, 32, 0, 11, 9, 16], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 646, | |
| "comment": "y is maximal and (y + a) % radix**9 is maximal in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "4ca0fb523ebf3abf", | |
| "msg": [26, 20, 25, 3, 51, 43, 20, 37, 5, 55, 16, 59, 25, 57, 40, 51, 63, 42], | |
| "ct": [20, 2, 12, 13, 9, 37, 4, 20, 45, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 647, | |
| "comment": "y is maximal and (y + a) % radix**9 == 0 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "4ca0fb523ebf3abf", | |
| "msg": [41, 11, 31, 40, 38, 46, 39, 17, 19, 33, 53, 31, 61, 45, 36, 40, 22, 49], | |
| "ct": [20, 2, 12, 13, 9, 37, 4, 20, 45, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 648, | |
| "comment": "y is maximal and a has large Hamming weight in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "4ca0fb523ebf3abf", | |
| "msg": [40, 33, 18, 51, 61, 52, 38, 13, 48, 5, 29, 56, 59, 32, 1, 45, 29, 35], | |
| "ct": [20, 2, 12, 13, 9, 37, 4, 20, 45, 31, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 649, | |
| "comment": "y is maximal and a is maximal in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "4ca0fb523ebf3abf", | |
| "msg": [27, 4, 28, 51, 27, 11, 20, 39, 21, 10, 55, 54, 49, 47, 5, 27, 28, 20], | |
| "ct": [20, 2, 12, 13, 9, 37, 4, 20, 45, 63, 63, 63, 63, 63, 63, 63, 63, 62], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 650, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "f5deef39c4773611", | |
| "msg": [40, 57, 61, 13, 22, 56, 17, 51, 17, 40, 26, 15, 50, 14, 18, 48, 40, 9], | |
| "ct": [50, 16, 63, 1, 41, 60, 35, 9, 63, 42, 15, 43, 11, 15, 37, 18, 22, 49], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 651, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "f5deef39c4773611", | |
| "msg": [63, 36, 48, 45, 0, 28, 3, 21, 23, 11, 33, 10, 55, 57, 61, 31, 22, 28], | |
| "ct": [40, 10, 50, 32, 61, 38, 8, 40, 19, 2, 1, 11, 7, 56, 31, 8, 35, 40], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 652, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**9 is maximal in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "f5deef39c4773611", | |
| "msg": [13, 54, 6, 29, 15, 59, 9, 62, 50, 28, 50, 40, 7, 31, 15, 46, 54, 37], | |
| "ct": [49, 38, 20, 42, 1, 60, 56, 45, 10, 46, 23, 44, 20, 56, 32, 24, 33, 29], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 653, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**9 == 0 in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "f5deef39c4773611", | |
| "msg": [17, 26, 59, 30, 33, 9, 12, 0, 15, 41, 38, 47, 51, 24, 50, 9, 11, 28], | |
| "ct": [60, 20, 3, 5, 21, 58, 25, 21, 62, 48, 45, 49, 56, 60, 60, 35, 20, 58], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 654, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "f5deef39c4773611", | |
| "msg": [29, 3, 10, 43, 29, 37, 15, 40, 32, 11, 51, 52, 32, 32, 15, 57, 61, 43], | |
| "ct": [60, 59, 39, 43, 9, 24, 36, 62, 6, 24, 53, 32, 18, 8, 59, 20, 23, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 655, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "f5deef39c4773611", | |
| "msg": [38, 16, 46, 5, 29, 11, 63, 21, 40, 29, 34, 57, 19, 40, 46, 43, 3, 25], | |
| "ct": [23, 25, 56, 49, 0, 18, 22, 20, 7, 15, 56, 39, 28, 37, 5, 8, 59, 26], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 656, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**9 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "fe3d8f47cf3ca728", | |
| "msg": [54, 26, 36, 56, 46, 12, 41, 51, 26, 31, 27, 1, 55, 42, 13, 35, 41, 40], | |
| "ct": [63, 63, 63, 63, 63, 63, 63, 63, 63, 40, 52, 25, 55, 38, 51, 19, 62, 18], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 657, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**9 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "fe3d8f47cf3ca728", | |
| "msg": [47, 22, 59, 30, 22, 12, 11, 36, 8, 2, 50, 17, 27, 44, 60, 29, 24, 8], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 30, 20, 50, 18, 33, 43, 52, 32, 18], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 658, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "fe3d8f47cf3ca728", | |
| "msg": [46, 52, 37, 8, 40, 62, 24, 58, 37, 27, 26, 28, 11, 58, 37, 52, 28, 10], | |
| "ct": [31, 63, 63, 63, 63, 63, 63, 63, 63, 37, 30, 15, 20, 37, 18, 13, 24, 49], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 659, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "93f59a2f91ad3ca69e10b50b2ada2f7f", | |
| "tweak": "fe3d8f47cf3ca728", | |
| "msg": [57, 28, 12, 21, 30, 48, 50, 14, 34, 53, 58, 58, 52, 41, 33, 0, 47, 17], | |
| "ct": [63, 63, 63, 63, 63, 63, 63, 63, 62, 6, 28, 19, 61, 47, 3, 27, 45, 30], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 660, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "8f3a40ed121d763ce94121d1a884ac4f", | |
| "tweak": "5e37cf940f79d378", | |
| "msg": [-1, 27, 17, 48, 62, 45, 8, 40, 62, 19, 29, 40, 8, 38, 9, 45, 55, 53], | |
| "ct": [22, 2, 34, 51, 50, 26, 40, 0, 14, 31, 16, 26, 59, 45, 6, 42, 38, 16], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 661, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "8f3a40ed121d763ce94121d1a884ac4f", | |
| "tweak": "5e37cf940f79d378", | |
| "msg": [19, 27, 17, 48, 62, 45, -1, 40, 62, 19, 29, 40, 8, 38, 9, 45, 55, 53], | |
| "ct": [5, 62, 16, 63, 53, 51, 39, 39, 38, 50, 50, 5, 7, 41, 27, 8, 21, 23], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 662, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "8f3a40ed121d763ce94121d1a884ac4f", | |
| "tweak": "5e37cf940f79d378", | |
| "msg": [19, 27, 17, 48, 62, 45, 8, 40, 62, 19, 29, 40, 8, 38, 9, 45, 55, -1], | |
| "ct": [48, 18, 6, 43, 13, 54, 8, 18, 53, 10, 34, 55, 13, 48, 54, 1, 0, 33], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 663, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "41f70b3d41282493dd0031fac05d9536", | |
| "tweak": "9989e3b2d2566e31", | |
| "msg": [64, 33, 19, 47, 52, 23, 47, 30, 63, 48, 25, 34, 32, 60, 10, 61, 33, 35], | |
| "ct": [46, 41, 43, 43, 63, 42, 18, 28, 46, 18, 45, 12, 62, 3, 51, 27, 45, 31], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 664, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "41f70b3d41282493dd0031fac05d9536", | |
| "tweak": "9989e3b2d2566e31", | |
| "msg": [19, 33, 19, 47, 52, 23, 64, 30, 63, 48, 25, 34, 32, 60, 10, 61, 33, 35], | |
| "ct": [30, 42, 1, 51, 32, 10, 26, 20, 32, 40, 22, 48, 23, 62, 16, 4, 10, 26], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 665, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "41f70b3d41282493dd0031fac05d9536", | |
| "tweak": "9989e3b2d2566e31", | |
| "msg": [19, 33, 19, 47, 52, 23, 47, 30, 63, 48, 25, 34, 32, 60, 10, 61, 33, 64], | |
| "ct": [42, 41, 23, 30, 31, 21, 24, 63, 6, 37, 27, 48, 38, 48, 41, 17, 33, 20], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 19, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 666, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "3591cc97af4a5d1492305f87269ee691", | |
| "tweak": "13786144a50ef10a", | |
| "msg": [60, 51, 45, 33, 25, 7, 29, 15, 25, 11, 10, 12, 16, 30, 20, 19, 10, 17, 10], | |
| "ct": [16, 24, 39, 57, 14, 21, 63, 3, 15, 4, 62, 14, 11, 4, 47, 32, 28, 5, 54], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 667, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [60, 19, 13, 45, 45, 48, 12, 9, 19, 11, 62, 61, 52, 26, 37, 52, 55, 25, 49], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 668, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "ct": [60, 33, 18, 19, 63, 50, 9, 49, 2, 35, 13, 59, 29, 52, 61, 24, 23, 31, 24], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 669, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [32, 0, 0, 0, 0, 0, 0, 0, 0, 32, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [1, 10, 21, 63, 53, 42, 58, 17, 21, 3, 3, 14, 44, 18, 57, 49, 29, 32, 57], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 670, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [31, 63, 63, 63, 63, 63, 63, 63, 63, 31, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "ct": [27, 7, 57, 0, 31, 47, 13, 36, 18, 47, 51, 57, 31, 3, 53, 25, 60, 32, 58], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 671, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [54, 35, 56, 28, 53, 42, 10, 33, 29, 1, 47, 54, 1, 54, 63, 32, 31, 61, 19], | |
| "ct": [57, 25, 41, 29, 17, 5, 12, 28, 51, 46, 42, 21, 30, 59, 3, 56, 58, 46, 39], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 672, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [54, 60, 24, 4, 60, 2, 63, 59, 39, 47, 17, 1, 8, 31, 13, 28, 12, 4, 0], | |
| "ct": [13, 15, 10, 38, 29, 51, 6, 29, 54, 18, 25, 10, 57, 9, 19, 8, 40, 41, 55], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 673, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [51, 5, 38, 48, 24, 61, 19, 33, 12, 38, 45, 62, 11, 52, 23, 52, 46, 52, 9], | |
| "ct": [0, 11, 58, 43, 52, 50, 22, 45, 24, 45, 14, 28, 16, 0, 51, 36, 5, 46, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 674, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [20, 60, 25, 4, 46, 46, 63, 37, 4, 7, 62, 3, 3, 25, 60, 5, 12, 25, 9], | |
| "ct": [7, 47, 0, 35, 52, 61, 53, 8, 40, 31, 27, 56, 35, 15, 6, 40, 48, 10, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 675, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [39, 52, 33, 58, 63, 38, 16, 20, 42, 43, 25, 55, 60, 6, 13, 17, 32, 57, 26], | |
| "ct": [36, 46, 60, 60, 31, 55, 40, 20, 39, 45, 47, 34, 24, 50, 43, 9, 0, 42, 47], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 676, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [12, 51, 35, 35, 7, 24, 24, 35, 2, 8, 14, 60, 31, 20, 4, 63, 53, 54, 34], | |
| "ct": [60, 40, 60, 2, 59, 63, 14, 54, 54, 40, 34, 55, 59, 55, 7, 27, 10, 12, 46], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 677, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [6, 29, 41, 51, 19, 60, 37, 2, 13, 38, 5, 59, 59, 32, 30, 10, 46, 43, 32], | |
| "ct": [52, 26, 34, 14, 36, 25, 5, 23, 59, 22, 10, 4, 20, 13, 58, 42, 33, 60, 45], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 678, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [24, 22, 4, 34, 9, 3, 45, 14, 20, 4, 50, 34, 45, 51, 11, 24, 54, 62, 46], | |
| "ct": [40, 11, 20, 6, 7, 26, 4, 53, 50, 3, 18, 22, 40, 37, 45, 37, 7, 26, 51], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 679, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [60, 42, 1, 58, 57, 47, 40, 2, 51, 54, 40, 5, 53, 36, 35, 9, 2, 16, 11], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 680, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [52, 51, 29, 24, 47, 57, 0, 25, 52, 30, 62, 16, 41, 53, 30, 19, 50, 12, 28], | |
| "ct": [63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 681, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [37, 36, 17, 4, 13, 0, 55, 32, 7, 33, 39, 47, 55, 12, 19, 53, 4, 59, 28], | |
| "ct": [32, 0, 0, 0, 0, 0, 0, 0, 0, 32, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 682, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "cd031dce5e1bca3a7e04c997ac13ef2d", | |
| "tweak": "3d906a02e77bcc5c", | |
| "msg": [10, 30, 22, 5, 3, 18, 1, 56, 49, 29, 2, 42, 43, 51, 40, 59, 60, 4, 39], | |
| "ct": [31, 63, 63, 63, 63, 63, 63, 63, 63, 31, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 683, | |
| "comment": "y = 0 and (y + a) % radix**9 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "033b2b84368440", | |
| "msg": [15, 31, 41, 60, 37, 15, 14, 44, 28, 16, 0, 15, 61, 49, 55, 34, 15, 55, 1], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 5, 46, 26, 16, 53, 36, 36, 24, 50, 43], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 684, | |
| "comment": "y = 0 and a = 1 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "033b2b84368440", | |
| "msg": [2, 27, 23, 58, 1, 32, 21, 51, 14, 23, 21, 31, 55, 53, 10, 9, 33, 5, 49], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 1, 36, 21, 40, 0, 60, 22, 9, 60, 36, 23], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 685, | |
| "comment": "y = 0 and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "033b2b84368440", | |
| "msg": [11, 60, 30, 48, 60, 6, 13, 31, 56, 55, 48, 26, 38, 56, 47, 20, 11, 49, 47], | |
| "ct": [32, 0, 0, 0, 0, 0, 0, 0, 0, 48, 59, 32, 49, 6, 53, 56, 20, 13, 52], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 686, | |
| "comment": "y = 0 and (y + a) % radix**9 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "033b2b84368440", | |
| "msg": [27, 5, 29, 9, 20, 56, 6, 35, 43, 33, 35, 49, 46, 46, 37, 33, 14, 1, 39], | |
| "ct": [63, 63, 63, 63, 63, 63, 63, 63, 63, 18, 6, 44, 47, 37, 57, 13, 33, 17, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 687, | |
| "comment": "y = 1 and a = 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "23e70b7920c0f7", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 15, 13, 60, 18, 14, 42, 52, 54, 28, 55], | |
| "ct": [2, 36, 10, 52, 42, 50, 51, 36, 30, 15, 49, 58, 2, 0, 61, 15, 60, 49, 51], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 688, | |
| "comment": "y = 1 and a = 1 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "23e70b7920c0f7", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 1, 15, 13, 60, 18, 14, 42, 52, 54, 28, 55], | |
| "ct": [39, 44, 24, 46, 51, 22, 17, 17, 49, 48, 61, 0, 21, 7, 15, 54, 61, 46, 61], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 689, | |
| "comment": "y = 1 and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "23e70b7920c0f7", | |
| "msg": [32, 0, 0, 0, 0, 0, 0, 0, 0, 15, 13, 60, 18, 14, 42, 52, 54, 28, 55], | |
| "ct": [6, 46, 10, 31, 30, 58, 38, 55, 41, 56, 30, 37, 13, 9, 19, 28, 37, 14, 51], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 690, | |
| "comment": "y = 1 and (y + a) % radix**9 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "23e70b7920c0f7", | |
| "msg": [63, 63, 63, 63, 63, 63, 63, 63, 62, 15, 13, 60, 18, 14, 42, 52, 54, 28, 55], | |
| "ct": [28, 62, 15, 15, 7, 42, 25, 61, 2, 51, 7, 52, 30, 36, 15, 48, 39, 51, 48], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 691, | |
| "comment": "y = 1 and (y + a) % radix**9 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "23e70b7920c0f7", | |
| "msg": [63, 63, 63, 63, 63, 63, 63, 63, 63, 15, 13, 60, 18, 14, 42, 52, 54, 28, 55], | |
| "ct": [31, 30, 32, 28, 24, 25, 21, 21, 45, 59, 54, 4, 61, 43, 55, 59, 47, 24, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 692, | |
| "comment": "y is maximal and (y + a) % radix**9 is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "85595191ba7f7b", | |
| "msg": [25, 8, 31, 30, 24, 42, 27, 10, 3, 43, 25, 39, 1, 15, 23, 55, 12, 51, 46], | |
| "ct": [42, 62, 2, 63, 45, 5, 8, 2, 15, 14, 2, 44, 53, 32, 11, 12, 19, 7, 29], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 693, | |
| "comment": "y is maximal and (y + a) % radix**9 == 0 in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "85595191ba7f7b", | |
| "msg": [50, 27, 7, 32, 55, 53, 55, 17, 48, 25, 36, 0, 40, 3, 26, 57, 17, 30, 57], | |
| "ct": [63, 28, 50, 27, 39, 60, 30, 12, 48, 51, 19, 59, 21, 57, 53, 28, 59, 62, 25], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 694, | |
| "comment": "y is maximal and a has large Hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "85595191ba7f7b", | |
| "msg": [21, 3, 62, 57, 39, 43, 0, 35, 39, 45, 6, 0, 61, 3, 43, 20, 62, 58, 3], | |
| "ct": [61, 8, 50, 57, 5, 32, 39, 60, 52, 7, 13, 27, 6, 37, 4, 37, 9, 45, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 695, | |
| "comment": "y is maximal and a is maximal in round 6", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "85595191ba7f7b", | |
| "msg": [7, 0, 0, 49, 9, 3, 46, 21, 5, 14, 23, 8, 2, 61, 43, 17, 44, 41, 32], | |
| "ct": [18, 44, 59, 10, 31, 27, 41, 3, 57, 50, 47, 33, 60, 11, 4, 9, 34, 40, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 696, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "1c8a2107ee4f27", | |
| "msg": [19, 29, 55, 7, 61, 54, 39, 47, 18, 36, 39, 2, 5, 46, 36, 16, 61, 6, 55], | |
| "ct": [39, 21, 36, 34, 35, 13, 38, 44, 19, 63, 63, 63, 63, 63, 63, 63, 63, 63, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 697, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "1c8a2107ee4f27", | |
| "msg": [26, 13, 49, 23, 54, 23, 50, 62, 34, 7, 33, 50, 41, 3, 35, 45, 1, 31, 2], | |
| "ct": [39, 21, 36, 34, 35, 13, 38, 44, 19, 63, 63, 63, 63, 63, 63, 63, 63, 63, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 698, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**10 is maximal in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "1c8a2107ee4f27", | |
| "msg": [53, 29, 27, 6, 46, 45, 14, 56, 56, 16, 62, 34, 0, 34, 50, 45, 3, 22, 20], | |
| "ct": [39, 21, 36, 34, 35, 13, 38, 44, 19, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 699, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**10 == 0 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "1c8a2107ee4f27", | |
| "msg": [62, 26, 11, 47, 35, 21, 33, 50, 9, 42, 63, 43, 54, 0, 23, 20, 13, 57, 58], | |
| "ct": [39, 21, 36, 34, 35, 13, 38, 44, 19, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 700, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "1c8a2107ee4f27", | |
| "msg": [47, 42, 13, 34, 30, 2, 34, 32, 51, 28, 27, 24, 37, 23, 38, 17, 45, 49, 37], | |
| "ct": [39, 21, 36, 34, 35, 13, 38, 44, 19, 31, 63, 63, 63, 63, 63, 63, 63, 63, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 701, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "1c8a2107ee4f27", | |
| "msg": [55, 56, 50, 13, 14, 28, 50, 55, 28, 61, 25, 11, 28, 44, 32, 15, 6, 5, 47], | |
| "ct": [39, 21, 36, 34, 35, 13, 38, 44, 19, 63, 63, 63, 63, 63, 63, 63, 63, 62, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 702, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**9 is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "bca82f1a037cb6", | |
| "msg": [60, 22, 9, 0, 60, 46, 31, 36, 10, 28, 23, 25, 35, 18, 9, 51, 57, 15, 15], | |
| "ct": [4, 3, 11, 3, 36, 58, 14, 51, 37, 52, 38, 20, 10, 9, 47, 47, 56, 13, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 703, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**9 == 0 in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "bca82f1a037cb6", | |
| "msg": [52, 44, 16, 25, 17, 18, 60, 10, 38, 55, 46, 41, 20, 36, 44, 34, 3, 34, 60], | |
| "ct": [12, 8, 53, 23, 27, 28, 3, 46, 31, 7, 46, 27, 61, 62, 61, 31, 32, 35, 34], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 704, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "bca82f1a037cb6", | |
| "msg": [32, 34, 8, 61, 34, 27, 30, 11, 30, 31, 25, 33, 60, 60, 35, 43, 35, 29, 43], | |
| "ct": [14, 29, 26, 48, 0, 48, 1, 8, 3, 63, 43, 42, 30, 29, 2, 13, 38, 30, 36], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 705, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 4", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "522debdfba3b6828bb97848da895884a", | |
| "tweak": "bca82f1a037cb6", | |
| "msg": [49, 50, 22, 3, 26, 39, 58, 32, 50, 32, 10, 33, 46, 47, 52, 0, 0, 20, 19], | |
| "ct": [5, 54, 29, 54, 18, 29, 41, 38, 30, 4, 43, 26, 17, 42, 62, 52, 26, 60, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 706, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "1cf89329cac719e6c7544a9303e78801", | |
| "tweak": "169faf154b10cac4", | |
| "msg": [-1, 63, 62, 33, 12, 37, 24, 62, 57, 63, 1, 15, 7, 56, 27, 11, 62, 34, 11], | |
| "ct": [62, 15, 50, 58, 55, 14, 63, 57, 13, 41, 19, 5, 57, 31, 46, 28, 0, 41, 62], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 707, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "1cf89329cac719e6c7544a9303e78801", | |
| "tweak": "169faf154b10cac4", | |
| "msg": [2, 63, 62, 33, 12, 37, -1, 62, 57, 63, 1, 15, 7, 56, 27, 11, 62, 34, 11], | |
| "ct": [1, 29, 5, 6, 26, 38, 1, 12, 62, 8, 59, 24, 57, 50, 58, 48, 20, 5, 63], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 708, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "1cf89329cac719e6c7544a9303e78801", | |
| "tweak": "169faf154b10cac4", | |
| "msg": [2, 63, 62, 33, 12, 37, 24, 62, 57, 63, 1, 15, 7, 56, 27, 11, 62, 34, -1], | |
| "ct": [60, 62, 35, 10, 55, 41, 60, 0, 8, 46, 50, 46, 35, 19, 2, 5, 48, 41, 49], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 709, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "1d188cc18320f01df46d31fad3ab489e", | |
| "tweak": "ee9e238ced0bebb2", | |
| "msg": [64, 48, 10, 45, 46, 11, 16, 7, 0, 28, 60, 14, 17, 14, 32, 60, 2, 21, 52], | |
| "ct": [34, 23, 2, 22, 39, 4, 35, 54, 62, 46, 37, 8, 47, 3, 3, 50, 10, 39, 8], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 710, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "1d188cc18320f01df46d31fad3ab489e", | |
| "tweak": "ee9e238ced0bebb2", | |
| "msg": [7, 48, 10, 45, 46, 11, 64, 7, 0, 28, 60, 14, 17, 14, 32, 60, 2, 21, 52], | |
| "ct": [7, 11, 2, 21, 59, 63, 25, 20, 29, 32, 23, 49, 17, 50, 29, 0, 39, 40, 58], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 711, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "1d188cc18320f01df46d31fad3ab489e", | |
| "tweak": "ee9e238ced0bebb2", | |
| "msg": [7, 48, 10, 45, 46, 11, 16, 7, 0, 28, 60, 14, 17, 14, 32, 60, 2, 21, 64], | |
| "ct": [8, 44, 14, 33, 2, 53, 49, 60, 18, 63, 14, 4, 32, 6, 30, 21, 51, 39, 5], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 20, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 712, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "ccdf8f792a48fd841d49e060315b0c3d", | |
| "tweak": "508c6ff22207dc5b", | |
| "msg": [29, 17, 42, 56, 59, 48, 24, 33, 12, 31, 19, 13, 51, 52, 28, 27, 59, 26, 0, 61], | |
| "ct": [63, 19, 13, 63, 38, 3, 18, 4, 45, 9, 49, 11, 8, 45, 18, 4, 27, 11, 29, 27], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 713, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [54, 16, 11, 12, 36, 3, 38, 54, 62, 0, 53, 4, 31, 33, 41, 50, 34, 16, 26, 55], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 714, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "ct": [60, 58, 56, 5, 55, 55, 57, 51, 48, 38, 61, 61, 1, 45, 1, 45, 1, 47, 36, 52], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 715, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [32, 0, 0, 0, 0, 0, 0, 0, 0, 0, 32, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [31, 41, 32, 12, 32, 26, 14, 45, 56, 59, 50, 52, 44, 5, 11, 36, 21, 15, 58, 38], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 716, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [31, 63, 63, 63, 63, 63, 63, 63, 63, 63, 31, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "ct": [9, 59, 26, 50, 53, 17, 39, 10, 55, 32, 1, 10, 8, 33, 45, 16, 31, 57, 34, 16], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 717, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [48, 56, 11, 25, 39, 31, 36, 55, 17, 8, 25, 33, 30, 48, 16, 9, 31, 26, 23, 63], | |
| "ct": [28, 33, 35, 58, 41, 50, 19, 47, 10, 21, 34, 32, 60, 8, 31, 7, 33, 24, 22, 16], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 718, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [1, 60, 32, 26, 4, 41, 63, 25, 21, 17, 16, 14, 35, 1, 38, 62, 54, 3, 33, 1], | |
| "ct": [54, 29, 62, 19, 61, 11, 46, 25, 55, 7, 49, 30, 25, 14, 15, 17, 63, 31, 59, 60], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 719, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [37, 17, 18, 28, 44, 18, 14, 23, 38, 18, 37, 28, 20, 52, 13, 16, 1, 17, 30, 63], | |
| "ct": [38, 18, 8, 19, 2, 10, 55, 10, 62, 33, 31, 42, 38, 14, 4, 51, 5, 44, 0, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 720, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [43, 36, 40, 29, 52, 14, 62, 8, 19, 53, 41, 32, 2, 8, 52, 38, 21, 58, 31, 24], | |
| "ct": [8, 32, 63, 47, 26, 26, 48, 2, 51, 40, 3, 59, 42, 24, 7, 29, 26, 50, 63, 59], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 721, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [14, 56, 17, 51, 59, 62, 50, 32, 26, 14, 63, 51, 32, 12, 53, 53, 0, 34, 48, 59], | |
| "ct": [58, 57, 21, 39, 24, 29, 7, 4, 13, 23, 20, 36, 33, 18, 41, 45, 0, 47, 11, 19], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 722, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [2, 36, 52, 44, 14, 33, 54, 63, 23, 5, 20, 1, 36, 55, 45, 34, 25, 56, 30, 13], | |
| "ct": [15, 34, 50, 38, 13, 5, 34, 5, 52, 29, 26, 18, 43, 23, 63, 18, 1, 17, 23, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 723, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [25, 19, 41, 35, 12, 40, 12, 50, 20, 60, 46, 63, 7, 20, 1, 31, 58, 3, 10, 50], | |
| "ct": [11, 55, 41, 24, 20, 3, 20, 56, 6, 54, 5, 48, 27, 53, 22, 38, 23, 43, 16, 4], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 724, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [13, 32, 37, 56, 17, 26, 5, 39, 57, 12, 60, 22, 35, 10, 52, 26, 14, 55, 19, 32], | |
| "ct": [57, 34, 5, 25, 30, 36, 27, 7, 54, 48, 53, 52, 26, 11, 37, 62, 13, 26, 55, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 725, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [35, 34, 10, 42, 33, 25, 28, 23, 28, 17, 34, 55, 42, 6, 0, 25, 32, 30, 38, 10], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 726, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [42, 40, 23, 49, 14, 6, 30, 32, 21, 1, 16, 17, 61, 53, 50, 7, 31, 33, 44, 35], | |
| "ct": [63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 727, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [1, 49, 28, 39, 56, 15, 43, 12, 14, 38, 37, 24, 30, 62, 37, 62, 22, 53, 11, 22], | |
| "ct": [32, 0, 0, 0, 0, 0, 0, 0, 0, 0, 32, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 728, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "e957b00cf440abed5e9a5d06cd5f5cdb", | |
| "tweak": "f6fa77d46df38c3b", | |
| "msg": [30, 19, 20, 63, 9, 8, 33, 38, 39, 39, 8, 50, 16, 52, 58, 50, 20, 2, 52, 31], | |
| "ct": [31, 63, 63, 63, 63, 63, 63, 63, 63, 63, 31, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 729, | |
| "comment": "y = 0 and (y + a) % radix**10 == 0 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "516c6425876fe7", | |
| "msg": [10, 26, 27, 38, 52, 45, 30, 34, 1, 8, 6, 32, 36, 46, 36, 22, 44, 33, 18, 59], | |
| "ct": [8, 48, 54, 42, 50, 41, 21, 44, 32, 1, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 730, | |
| "comment": "y = 0 and a = 1 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "516c6425876fe7", | |
| "msg": [25, 56, 18, 2, 45, 28, 62, 49, 7, 8, 30, 7, 52, 31, 21, 41, 47, 18, 56, 44], | |
| "ct": [8, 48, 54, 42, 50, 41, 21, 44, 32, 1, 0, 0, 0, 0, 0, 0, 0, 0, 0, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 731, | |
| "comment": "y = 0 and a has large Hamming weight in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "516c6425876fe7", | |
| "msg": [42, 15, 44, 12, 15, 31, 16, 23, 0, 27, 41, 62, 36, 11, 47, 31, 19, 31, 36, 20], | |
| "ct": [8, 48, 54, 42, 50, 41, 21, 44, 32, 1, 32, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 732, | |
| "comment": "y = 0 and (y + a) % radix**10 is maximal in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "516c6425876fe7", | |
| "msg": [25, 26, 11, 31, 20, 14, 48, 27, 4, 1, 50, 25, 33, 19, 0, 26, 12, 47, 40, 53], | |
| "ct": [8, 48, 54, 42, 50, 41, 21, 44, 32, 1, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 733, | |
| "comment": "y = 1 and a = 0 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "c78c794f8d6bed", | |
| "msg": [48, 21, 2, 18, 53, 1, 10, 6, 32, 30, 3, 11, 34, 34, 58, 11, 30, 27, 45, 18], | |
| "ct": [26, 22, 25, 5, 27, 25, 38, 38, 8, 17, 52, 27, 41, 20, 46, 56, 33, 6, 17, 50], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 734, | |
| "comment": "y = 1 and a = 1 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "c78c794f8d6bed", | |
| "msg": [22, 25, 21, 4, 26, 18, 19, 59, 38, 21, 4, 28, 61, 53, 21, 10, 45, 34, 34, 12], | |
| "ct": [12, 21, 44, 15, 55, 31, 19, 29, 28, 44, 18, 40, 30, 7, 47, 4, 57, 44, 24, 26], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 735, | |
| "comment": "y = 1 and a has large Hamming weight in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "c78c794f8d6bed", | |
| "msg": [50, 49, 29, 56, 52, 47, 34, 7, 16, 31, 44, 12, 31, 8, 38, 23, 41, 47, 8, 54], | |
| "ct": [50, 38, 62, 21, 45, 43, 55, 16, 21, 3, 35, 1, 26, 4, 2, 42, 40, 13, 45, 6], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 736, | |
| "comment": "y = 1 and (y + a) % radix**10 is maximal in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "c78c794f8d6bed", | |
| "msg": [17, 52, 6, 23, 56, 21, 48, 62, 15, 30, 42, 29, 38, 47, 56, 6, 45, 51, 11, 26], | |
| "ct": [45, 42, 22, 59, 14, 23, 53, 53, 22, 51, 44, 34, 14, 17, 56, 19, 46, 32, 38, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 737, | |
| "comment": "y = 1 and (y + a) % radix**10 == 0 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "c78c794f8d6bed", | |
| "msg": [5, 18, 15, 26, 28, 30, 23, 1, 14, 24, 60, 40, 1, 0, 28, 13, 43, 14, 48, 4], | |
| "ct": [30, 16, 40, 34, 33, 33, 12, 0, 6, 57, 4, 12, 35, 20, 3, 26, 60, 24, 34, 29], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 738, | |
| "comment": "y is maximal and (y + a) % radix**10 is maximal in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "5b1db17433b2eb", | |
| "msg": [7, 0, 18, 37, 9, 54, 25, 49, 45, 26, 39, 14, 1, 44, 62, 41, 15, 46, 26, 50], | |
| "ct": [38, 31, 27, 58, 45, 11, 59, 25, 37, 42, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 739, | |
| "comment": "y is maximal and (y + a) % radix**10 == 0 in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "5b1db17433b2eb", | |
| "msg": [27, 29, 33, 53, 59, 57, 26, 21, 29, 62, 10, 44, 26, 61, 54, 53, 11, 25, 21, 52], | |
| "ct": [38, 31, 27, 58, 45, 11, 59, 25, 37, 42, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 740, | |
| "comment": "y is maximal and a has large Hamming weight in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "5b1db17433b2eb", | |
| "msg": [24, 29, 9, 56, 9, 56, 6, 33, 19, 48, 31, 6, 52, 8, 56, 38, 51, 61, 36, 13], | |
| "ct": [38, 31, 27, 58, 45, 11, 59, 25, 37, 42, 31, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 741, | |
| "comment": "y is maximal and a is maximal in round 9", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "5b1db17433b2eb", | |
| "msg": [8, 56, 0, 26, 2, 45, 27, 61, 21, 34, 49, 14, 12, 0, 62, 44, 42, 59, 4, 0], | |
| "ct": [38, 31, 27, 58, 45, 11, 59, 25, 37, 42, 63, 63, 63, 63, 63, 63, 63, 63, 63, 62], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 742, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "b14485192fd95f", | |
| "msg": [0, 34, 37, 0, 45, 63, 22, 49, 16, 60, 17, 32, 26, 42, 40, 27, 57, 26, 50, 39], | |
| "ct": [9, 36, 41, 53, 58, 9, 18, 14, 9, 59, 49, 54, 49, 62, 20, 43, 12, 39, 55, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 743, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "b14485192fd95f", | |
| "msg": [1, 16, 29, 51, 28, 56, 2, 58, 14, 36, 54, 12, 4, 0, 62, 32, 5, 54, 39, 0], | |
| "ct": [2, 37, 33, 15, 42, 56, 47, 19, 44, 37, 18, 49, 13, 55, 25, 12, 44, 58, 60, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 744, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**10 is maximal in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "b14485192fd95f", | |
| "msg": [41, 22, 49, 30, 19, 22, 61, 31, 38, 19, 41, 0, 32, 62, 41, 41, 26, 61, 23, 29], | |
| "ct": [18, 29, 3, 9, 48, 56, 57, 23, 46, 8, 8, 54, 25, 34, 42, 53, 61, 28, 2, 47], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 745, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**10 == 0 in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "b14485192fd95f", | |
| "msg": [3, 18, 22, 23, 51, 25, 32, 40, 14, 51, 52, 11, 3, 62, 54, 35, 13, 19, 44, 4], | |
| "ct": [45, 45, 48, 2, 61, 31, 41, 19, 40, 28, 36, 37, 8, 16, 40, 41, 36, 7, 53, 26], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 746, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "b14485192fd95f", | |
| "msg": [52, 7, 57, 7, 24, 27, 7, 44, 10, 60, 34, 51, 16, 15, 57, 25, 31, 34, 6, 12], | |
| "ct": [45, 30, 19, 18, 13, 44, 61, 32, 47, 2, 45, 13, 25, 11, 44, 31, 0, 49, 37, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 747, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 3", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "b14485192fd95f", | |
| "msg": [31, 1, 49, 14, 30, 42, 63, 18, 6, 48, 38, 39, 25, 25, 31, 45, 26, 30, 3, 45], | |
| "ct": [35, 42, 59, 55, 39, 21, 56, 24, 59, 0, 20, 58, 25, 22, 30, 47, 21, 38, 59, 56], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 748, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**10 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "31b5608a1ca8fc", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 3, 29, 27, 1, 23, 15, 43, 52, 55, 28], | |
| "ct": [55, 30, 13, 51, 11, 1, 19, 3, 57, 36, 32, 16, 41, 23, 2, 21, 30, 62, 7, 53], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 749, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**10 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "31b5608a1ca8fc", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 1, 3, 29, 27, 1, 23, 15, 43, 52, 55, 28], | |
| "ct": [25, 7, 37, 57, 11, 20, 18, 63, 5, 18, 53, 58, 36, 45, 56, 46, 57, 3, 50, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 750, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "31b5608a1ca8fc", | |
| "msg": [32, 0, 0, 0, 0, 0, 0, 0, 0, 0, 3, 29, 27, 1, 23, 15, 43, 52, 55, 28], | |
| "ct": [3, 4, 25, 12, 7, 48, 19, 39, 4, 16, 51, 59, 60, 59, 27, 25, 38, 61, 46, 11], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 751, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "541d381b9f5c1e6ae2cc1b92e7c7e5e3", | |
| "tweak": "31b5608a1ca8fc", | |
| "msg": [63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 3, 29, 27, 1, 23, 15, 43, 52, 55, 28], | |
| "ct": [23, 47, 60, 41, 7, 33, 22, 50, 17, 38, 13, 17, 58, 38, 24, 59, 21, 40, 59, 56], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 752, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "4e8c0fdab138c9df8d4a888e6c2df1dd", | |
| "tweak": "76f494b34dbcd3bc", | |
| "msg": [-1, 49, 36, 25, 30, 4, 60, 12, 36, 53, 25, 39, 9, 4, 43, 40, 12, 10, 14, 27], | |
| "ct": [28, 23, 49, 44, 56, 1, 41, 30, 13, 62, 10, 46, 61, 36, 51, 8, 34, 60, 62, 24], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 753, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "4e8c0fdab138c9df8d4a888e6c2df1dd", | |
| "tweak": "76f494b34dbcd3bc", | |
| "msg": [39, 49, 36, 25, 30, 4, -1, 12, 36, 53, 25, 39, 9, 4, 43, 40, 12, 10, 14, 27], | |
| "ct": [58, 25, 42, 40, 28, 56, 10, 45, 54, 23, 4, 4, 9, 24, 47, 3, 45, 21, 48, 30], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 754, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "4e8c0fdab138c9df8d4a888e6c2df1dd", | |
| "tweak": "76f494b34dbcd3bc", | |
| "msg": [39, 49, 36, 25, 30, 4, 60, 12, 36, 53, 25, 39, 9, 4, 43, 40, 12, 10, 14, -1], | |
| "ct": [40, 44, 29, 53, 28, 11, 54, 61, 19, 1, 27, 52, 19, 43, 40, 28, 42, 32, 21, 35], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 755, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "25294cdcfbeb5e1e7ab12e1b3470f07e", | |
| "tweak": "0f25ab985711e3ce", | |
| "msg": [64, 53, 5, 5, 48, 37, 49, 57, 37, 55, 5, 22, 52, 51, 59, 21, 37, 40, 23, 0], | |
| "ct": [44, 21, 26, 29, 14, 45, 47, 49, 46, 11, 6, 39, 31, 36, 32, 28, 38, 40, 23, 17], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 756, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "25294cdcfbeb5e1e7ab12e1b3470f07e", | |
| "tweak": "0f25ab985711e3ce", | |
| "msg": [31, 53, 5, 5, 48, 37, 64, 57, 37, 55, 5, 22, 52, 51, 59, 21, 37, 40, 23, 0], | |
| "ct": [10, 47, 1, 18, 27, 61, 55, 4, 50, 48, 11, 0, 45, 58, 27, 51, 40, 24, 10, 63], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 757, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "25294cdcfbeb5e1e7ab12e1b3470f07e", | |
| "tweak": "0f25ab985711e3ce", | |
| "msg": [31, 53, 5, 5, 48, 37, 49, 57, 37, 55, 5, 22, 52, 51, 59, 21, 37, 40, 23, 64], | |
| "ct": [11, 39, 54, 59, 50, 47, 35, 57, 55, 0, 45, 2, 41, 0, 54, 38, 15, 48, 33, 5], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 128, | |
| "msgSize": 21, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 758, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "c0e4c4a9b86c17e4efe9a12733e7aff4", | |
| "tweak": "f71b48c8172125d4", | |
| "msg": [0, 29, 59, 60, 20, 59, 2, 5, 30, 13, 42, 2, 52, 45, 60, 11, 42, 15, 48, 24, 4], | |
| "ct": [5, 4, 41, 44, 48, 0, 38, 15, 55, 19, 57, 31, 19, 20, 21, 4, 1, 40, 10, 31, 61], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 759, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [38, 5, 14, 6, 48, 16, 23, 3, 36, 20, 59, 22, 12, 21, 30, 36, 8, 56, 3, 24, 62], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 760, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "ct": [20, 60, 3, 31, 52, 53, 34, 12, 14, 26, 19, 33, 25, 50, 17, 20, 26, 41, 31, 47, 37], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 761, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [32, 0, 0, 0, 0, 0, 0, 0, 0, 0, 32, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "ct": [39, 38, 44, 8, 35, 60, 4, 24, 33, 13, 54, 30, 45, 23, 59, 51, 10, 61, 6, 45, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 762, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [31, 63, 63, 63, 63, 63, 63, 63, 63, 63, 31, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "ct": [61, 18, 27, 50, 22, 14, 33, 10, 25, 42, 46, 29, 26, 39, 43, 30, 46, 52, 30, 4, 38], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 763, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [10, 43, 3, 15, 16, 32, 59, 3, 1, 56, 14, 61, 0, 63, 13, 11, 31, 1, 2, 32, 28], | |
| "ct": [44, 52, 47, 33, 53, 36, 53, 51, 63, 19, 57, 35, 6, 13, 38, 4, 16, 4, 15, 11, 49], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 764, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [16, 56, 41, 61, 8, 61, 1, 15, 63, 13, 45, 10, 46, 34, 46, 40, 39, 10, 48, 29, 33], | |
| "ct": [24, 29, 58, 34, 31, 7, 15, 3, 12, 9, 59, 57, 49, 28, 9, 38, 56, 45, 42, 2, 22], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 765, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [5, 2, 26, 6, 56, 58, 44, 3, 1, 54, 47, 13, 51, 8, 7, 47, 11, 6, 3, 11, 42], | |
| "ct": [4, 11, 34, 54, 29, 41, 28, 41, 36, 37, 5, 13, 54, 6, 46, 18, 62, 46, 5, 43, 28], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 766, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [28, 44, 10, 17, 7, 41, 62, 18, 30, 0, 63, 25, 43, 1, 6, 20, 49, 18, 47, 24, 25], | |
| "ct": [23, 32, 51, 39, 24, 13, 36, 22, 41, 55, 6, 52, 15, 10, 31, 8, 15, 17, 40, 51, 62], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 767, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [8, 63, 33, 2, 16, 25, 33, 58, 63, 17, 47, 43, 35, 50, 5, 61, 22, 26, 35, 10, 48], | |
| "ct": [15, 56, 5, 46, 13, 0, 43, 53, 44, 32, 32, 14, 44, 43, 20, 5, 36, 18, 22, 55, 27], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 768, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [37, 36, 8, 9, 23, 0, 55, 19, 50, 14, 2, 31, 4, 53, 14, 14, 24, 11, 7, 20, 0], | |
| "ct": [35, 18, 15, 57, 57, 6, 40, 60, 63, 61, 12, 60, 37, 21, 32, 59, 49, 59, 38, 28, 58], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 769, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [10, 57, 58, 54, 55, 20, 38, 32, 33, 10, 16, 53, 2, 29, 61, 29, 10, 20, 35, 47, 60], | |
| "ct": [60, 25, 56, 3, 49, 23, 22, 35, 40, 48, 18, 63, 14, 34, 33, 34, 39, 48, 37, 44, 18], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 770, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [42, 43, 15, 28, 22, 22, 44, 44, 42, 13, 41, 35, 16, 39, 53, 29, 0, 32, 11, 62, 33], | |
| "ct": [51, 11, 35, 53, 61, 18, 19, 60, 62, 2, 47, 59, 35, 17, 63, 61, 5, 15, 55, 6, 46], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 771, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [54, 47, 57, 34, 13, 25, 21, 37, 11, 14, 56, 39, 28, 47, 10, 49, 11, 7, 30, 17, 35], | |
| "ct": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 772, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [60, 46, 12, 41, 50, 1, 30, 37, 16, 13, 35, 40, 17, 41, 33, 36, 38, 46, 45, 28, 4], | |
| "ct": [63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 773, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [12, 30, 41, 1, 31, 58, 44, 21, 28, 18, 52, 39, 8, 2, 2, 22, 8, 36, 58, 4, 42], | |
| "ct": [32, 0, 0, 0, 0, 0, 0, 0, 0, 0, 32, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 774, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "25d4448872edf13aa8be04f271b3568c", | |
| "tweak": "e243d35dba4fcc44", | |
| "msg": [39, 40, 4, 16, 40, 46, 58, 28, 46, 10, 46, 18, 32, 32, 59, 49, 46, 34, 8, 56, 24], | |
| "ct": [31, 63, 63, 63, 63, 63, 63, 63, 63, 63, 31, 63, 63, 63, 63, 63, 63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 775, | |
| "comment": "y = 0 and (y + a) % radix**10 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "d7074ea853177b2aa1ba2428f228643221f5eea2f2f2", | |
| "msg": [51, 53, 26, 53, 29, 62, 19, 42, 37, 29, 0, 35, 6, 6, 12, 24, 60, 23, 51, 58, 25], | |
| "ct": [2, 5, 54, 46, 24, 16, 32, 58, 52, 22, 44, 20, 45, 22, 4, 5, 57, 22, 60, 46, 13], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 776, | |
| "comment": "y = 0 and a = 1 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "d7074ea853177b2aa1ba2428f228643221f5eea2f2f2", | |
| "msg": [40, 51, 47, 22, 52, 7, 13, 30, 63, 9, 3, 0, 38, 36, 51, 45, 8, 37, 47, 8, 14], | |
| "ct": [20, 11, 55, 4, 54, 9, 40, 7, 43, 26, 5, 9, 17, 12, 56, 13, 62, 43, 51, 31, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 777, | |
| "comment": "y = 0 and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "d7074ea853177b2aa1ba2428f228643221f5eea2f2f2", | |
| "msg": [21, 15, 40, 58, 40, 18, 41, 53, 48, 33, 23, 17, 9, 57, 42, 59, 57, 51, 5, 29, 48], | |
| "ct": [35, 25, 3, 47, 46, 44, 21, 9, 17, 18, 37, 57, 5, 41, 21, 6, 25, 23, 41, 14, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 778, | |
| "comment": "y = 0 and (y + a) % radix**10 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "d7074ea853177b2aa1ba2428f228643221f5eea2f2f2", | |
| "msg": [29, 51, 62, 1, 58, 26, 49, 48, 18, 59, 10, 42, 56, 1, 25, 22, 54, 17, 33, 44, 36], | |
| "ct": [7, 17, 18, 27, 20, 12, 31, 34, 36, 62, 15, 56, 28, 43, 19, 48, 29, 23, 4, 24, 45], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 779, | |
| "comment": "y = 1 and a = 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "cbcbafcaa824846827d771d3c7d4fb2df66b39298757", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 21, 5, 62, 40, 20, 58, 22, 15, 53, 1, 53], | |
| "ct": [47, 21, 15, 20, 63, 52, 12, 32, 0, 58, 62, 15, 62, 18, 52, 35, 50, 47, 13, 31, 42], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 780, | |
| "comment": "y = 1 and a = 1 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "cbcbafcaa824846827d771d3c7d4fb2df66b39298757", | |
| "msg": [0, 0, 0, 0, 0, 0, 0, 0, 0, 1, 21, 5, 62, 40, 20, 58, 22, 15, 53, 1, 53], | |
| "ct": [28, 53, 34, 25, 27, 39, 34, 62, 19, 30, 38, 14, 50, 31, 6, 21, 21, 31, 0, 32, 30], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 781, | |
| "comment": "y = 1 and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "cbcbafcaa824846827d771d3c7d4fb2df66b39298757", | |
| "msg": [32, 0, 0, 0, 0, 0, 0, 0, 0, 0, 21, 5, 62, 40, 20, 58, 22, 15, 53, 1, 53], | |
| "ct": [57, 7, 0, 59, 13, 60, 41, 33, 63, 37, 21, 0, 63, 58, 42, 16, 18, 58, 31, 40, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 782, | |
| "comment": "y = 1 and (y + a) % radix**10 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "cbcbafcaa824846827d771d3c7d4fb2df66b39298757", | |
| "msg": [63, 63, 63, 63, 63, 63, 63, 63, 63, 62, 21, 5, 62, 40, 20, 58, 22, 15, 53, 1, 53], | |
| "ct": [29, 16, 5, 33, 2, 27, 30, 39, 25, 4, 1, 31, 33, 62, 60, 52, 37, 48, 35, 38, 31], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 783, | |
| "comment": "y = 1 and (y + a) % radix**10 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "cbcbafcaa824846827d771d3c7d4fb2df66b39298757", | |
| "msg": [63, 63, 63, 63, 63, 63, 63, 63, 63, 63, 21, 5, 62, 40, 20, 58, 22, 15, 53, 1, 53], | |
| "ct": [31, 55, 25, 56, 51, 49, 19, 59, 9, 16, 56, 23, 44, 2, 10, 5, 16, 58, 62, 14, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 784, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "e32279b5e6c05eb14b2a3dead32c775b391ebbd2a894", | |
| "msg": [12, 33, 42, 9, 44, 27, 23, 48, 43, 15, 61, 42, 2, 12, 40, 14, 54, 26, 6, 13, 18], | |
| "ct": [56, 58, 3, 1, 27, 20, 36, 35, 31, 30, 8, 12, 62, 9, 5, 24, 42, 63, 19, 39, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 785, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "e32279b5e6c05eb14b2a3dead32c775b391ebbd2a894", | |
| "msg": [4, 37, 56, 48, 19, 7, 15, 9, 25, 5, 30, 55, 42, 58, 36, 30, 8, 30, 31, 34, 22], | |
| "ct": [20, 54, 31, 46, 14, 35, 30, 3, 15, 40, 42, 56, 32, 8, 2, 36, 48, 63, 5, 42, 15], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 786, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**10 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "e32279b5e6c05eb14b2a3dead32c775b391ebbd2a894", | |
| "msg": [62, 44, 46, 63, 36, 35, 39, 35, 11, 6, 37, 18, 59, 13, 41, 61, 47, 21, 43, 37, 25], | |
| "ct": [61, 1, 34, 13, 41, 62, 61, 56, 6, 7, 59, 27, 5, 58, 31, 9, 62, 58, 49, 60, 37], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 787, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**10 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "e32279b5e6c05eb14b2a3dead32c775b391ebbd2a894", | |
| "msg": [38, 61, 40, 53, 51, 10, 10, 43, 15, 13, 58, 44, 17, 34, 35, 44, 24, 61, 33, 24, 26], | |
| "ct": [13, 15, 63, 23, 26, 10, 25, 29, 36, 55, 17, 47, 34, 45, 3, 39, 55, 11, 26, 14, 29], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 788, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "e32279b5e6c05eb14b2a3dead32c775b391ebbd2a894", | |
| "msg": [17, 14, 47, 42, 27, 48, 36, 43, 63, 40, 49, 0, 28, 63, 26, 22, 9, 61, 21, 8, 61], | |
| "ct": [21, 13, 20, 30, 7, 58, 22, 35, 53, 8, 11, 9, 39, 47, 31, 41, 11, 3, 9, 30, 40], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 789, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "e32279b5e6c05eb14b2a3dead32c775b391ebbd2a894", | |
| "msg": [15, 8, 14, 9, 36, 38, 61, 58, 25, 31, 27, 8, 4, 8, 33, 61, 9, 47, 58, 25, 29], | |
| "ct": [2, 8, 40, 50, 52, 21, 44, 14, 18, 8, 57, 36, 24, 8, 18, 20, 27, 47, 29, 46, 33], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 790, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**10 is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "70f30ee06de5241565c77b708657cb5af62f4f58e861", | |
| "msg": [62, 53, 33, 6, 29, 45, 48, 49, 38, 34, 40, 11, 21, 21, 20, 13, 21, 33, 35, 16, 43], | |
| "ct": [50, 2, 18, 47, 18, 39, 9, 29, 58, 37, 60, 47, 43, 42, 55, 12, 39, 58, 61, 33, 56], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 791, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**10 == 0 in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "70f30ee06de5241565c77b708657cb5af62f4f58e861", | |
| "msg": [9, 27, 23, 3, 43, 33, 29, 54, 33, 13, 54, 57, 2, 15, 4, 50, 17, 32, 1, 41, 45], | |
| "ct": [1, 26, 18, 18, 23, 32, 3, 14, 30, 50, 4, 14, 52, 51, 41, 42, 37, 54, 23, 10, 50], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 792, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "70f30ee06de5241565c77b708657cb5af62f4f58e861", | |
| "msg": [16, 57, 50, 42, 10, 52, 58, 34, 8, 39, 43, 17, 57, 49, 47, 27, 17, 23, 38, 50, 31], | |
| "ct": [42, 2, 58, 54, 56, 41, 51, 18, 18, 18, 1, 56, 50, 37, 27, 13, 30, 62, 3, 21, 51], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 793, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 2", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "54897a7e63855142189bc30a692271dd", | |
| "tweak": "70f30ee06de5241565c77b708657cb5af62f4f58e861", | |
| "msg": [12, 28, 7, 3, 17, 27, 58, 47, 36, 1, 10, 35, 59, 58, 17, 40, 57, 59, 19, 52, 50], | |
| "ct": [22, 51, 26, 1, 36, 45, 20, 55, 31, 35, 54, 47, 5, 39, 58, 3, 47, 46, 51, 4, 50], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 794, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "fd90f1e9599e12563bf788a1a521d6ab", | |
| "tweak": "d0a005b45247f038", | |
| "msg": [-1, 6, 6, 62, 51, 63, 25, 63, 28, 59, 32, 19, 20, 17, 10, 13, 53, 52, 60, 35, 61], | |
| "ct": [3, 54, 32, 53, 18, 47, 25, 49, 62, 51, 43, 6, 53, 56, 30, 39, 22, 28, 0, 54, 9], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 795, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "fd90f1e9599e12563bf788a1a521d6ab", | |
| "tweak": "d0a005b45247f038", | |
| "msg": [37, 6, 6, 62, 51, 63, 25, -1, 28, 59, 32, 19, 20, 17, 10, 13, 53, 52, 60, 35, 61], | |
| "ct": [10, 13, 40, 29, 44, 3, 3, 51, 28, 52, 45, 49, 38, 35, 55, 25, 22, 25, 11, 54, 16], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 796, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "fd90f1e9599e12563bf788a1a521d6ab", | |
| "tweak": "d0a005b45247f038", | |
| "msg": [37, 6, 6, 62, 51, 63, 25, 63, 28, 59, 32, 19, 20, 17, 10, 13, 53, 52, 60, 35, -1], | |
| "ct": [1, 7, 39, 48, 59, 33, 52, 50, 45, 41, 18, 57, 42, 26, 61, 38, 49, 57, 59, 37, 44], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 797, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "e2d919c8ae75e22c6686f56d86def391", | |
| "tweak": "c6ba901bf3159aea", | |
| "msg": [64, 47, 33, 21, 4, 0, 35, 16, 34, 52, 46, 21, 51, 51, 43, 59, 14, 36, 51, 46, 31], | |
| "ct": [5, 13, 36, 49, 63, 3, 6, 34, 4, 0, 0, 44, 39, 28, 11, 11, 35, 37, 51, 44, 21], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 798, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "e2d919c8ae75e22c6686f56d86def391", | |
| "tweak": "c6ba901bf3159aea", | |
| "msg": [37, 47, 33, 21, 4, 0, 35, 64, 34, 52, 46, 21, 51, 51, 43, 59, 14, 36, 51, 46, 31], | |
| "ct": [1, 42, 61, 33, 53, 54, 40, 21, 16, 19, 15, 21, 47, 52, 61, 42, 27, 55, 61, 33, 0], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 799, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "e2d919c8ae75e22c6686f56d86def391", | |
| "tweak": "c6ba901bf3159aea", | |
| "msg": [37, 47, 33, 21, 4, 0, 35, 16, 34, 52, 46, 21, 51, 51, 43, 59, 14, 36, 51, 46, 64], | |
| "ct": [17, 59, 33, 50, 38, 24, 54, 45, 40, 20, 8, 20, 33, 22, 4, 8, 37, 7, 2, 21, 7], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 192, | |
| "msgSize": 4, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 800, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "f9626066827656fe088a7bf737c1cc1a3a3adc7015ffee7f", | |
| "tweak": "bc6d9ff72c250366", | |
| "msg": [14, 29, 56, 48], | |
| "ct": [18, 58, 42, 42], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 801, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "449d31bba4be09dfd5a4523610236b6c80775dfa965a70dc", | |
| "tweak": "f7e902be3a607c1c", | |
| "msg": [0, 0, 0, 0], | |
| "ct": [3, 1, 43, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 802, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "449d31bba4be09dfd5a4523610236b6c80775dfa965a70dc", | |
| "tweak": "f7e902be3a607c1c", | |
| "msg": [63, 63, 63, 63], | |
| "ct": [15, 57, 23, 61], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 803, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "449d31bba4be09dfd5a4523610236b6c80775dfa965a70dc", | |
| "tweak": "f7e902be3a607c1c", | |
| "msg": [32, 0, 32, 0], | |
| "ct": [34, 7, 3, 44], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 804, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "449d31bba4be09dfd5a4523610236b6c80775dfa965a70dc", | |
| "tweak": "f7e902be3a607c1c", | |
| "msg": [31, 63, 31, 63], | |
| "ct": [17, 3, 29, 45], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 805, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "449d31bba4be09dfd5a4523610236b6c80775dfa965a70dc", | |
| "tweak": "f7e902be3a607c1c", | |
| "msg": [59, 0, 62, 46], | |
| "ct": [57, 44, 43, 22], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 806, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "449d31bba4be09dfd5a4523610236b6c80775dfa965a70dc", | |
| "tweak": "f7e902be3a607c1c", | |
| "msg": [41, 31, 14, 24], | |
| "ct": [0, 63, 62, 61], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 807, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "449d31bba4be09dfd5a4523610236b6c80775dfa965a70dc", | |
| "tweak": "f7e902be3a607c1c", | |
| "msg": [39, 51, 48, 60], | |
| "ct": [51, 19, 37, 61], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 808, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "449d31bba4be09dfd5a4523610236b6c80775dfa965a70dc", | |
| "tweak": "f7e902be3a607c1c", | |
| "msg": [59, 2, 44, 40], | |
| "ct": [58, 27, 57, 26], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 809, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "449d31bba4be09dfd5a4523610236b6c80775dfa965a70dc", | |
| "tweak": "f7e902be3a607c1c", | |
| "msg": [54, 46, 1, 7], | |
| "ct": [43, 5, 23, 34], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 810, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "449d31bba4be09dfd5a4523610236b6c80775dfa965a70dc", | |
| "tweak": "f7e902be3a607c1c", | |
| "msg": [7, 16, 16, 54], | |
| "ct": [47, 58, 42, 32], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 811, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "449d31bba4be09dfd5a4523610236b6c80775dfa965a70dc", | |
| "tweak": "f7e902be3a607c1c", | |
| "msg": [0, 56, 31, 39], | |
| "ct": [42, 29, 16, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 812, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "449d31bba4be09dfd5a4523610236b6c80775dfa965a70dc", | |
| "tweak": "f7e902be3a607c1c", | |
| "msg": [45, 37, 23, 8], | |
| "ct": [32, 34, 25, 49], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 813, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "449d31bba4be09dfd5a4523610236b6c80775dfa965a70dc", | |
| "tweak": "f7e902be3a607c1c", | |
| "msg": [38, 46, 58, 33], | |
| "ct": [0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 814, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "449d31bba4be09dfd5a4523610236b6c80775dfa965a70dc", | |
| "tweak": "f7e902be3a607c1c", | |
| "msg": [4, 11, 8, 2], | |
| "ct": [63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 815, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "449d31bba4be09dfd5a4523610236b6c80775dfa965a70dc", | |
| "tweak": "f7e902be3a607c1c", | |
| "msg": [41, 49, 9, 9], | |
| "ct": [32, 0, 32, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 816, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "449d31bba4be09dfd5a4523610236b6c80775dfa965a70dc", | |
| "tweak": "f7e902be3a607c1c", | |
| "msg": [45, 14, 32, 59], | |
| "ct": [31, 63, 31, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 817, | |
| "comment": "y = 0 and (y + a) % radix**2 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "cc15ff8fc1e35214d16a3a58278c62123d56a1b8b87fc1b3", | |
| "tweak": "39366637b29e9d50755b1dc281", | |
| "msg": [33, 16, 16, 44], | |
| "ct": [0, 0, 38, 39], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 818, | |
| "comment": "y = 0 and a = 1 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "cc15ff8fc1e35214d16a3a58278c62123d56a1b8b87fc1b3", | |
| "tweak": "39366637b29e9d50755b1dc281", | |
| "msg": [42, 42, 28, 36], | |
| "ct": [0, 1, 17, 18], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 819, | |
| "comment": "y = 0 and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "cc15ff8fc1e35214d16a3a58278c62123d56a1b8b87fc1b3", | |
| "tweak": "39366637b29e9d50755b1dc281", | |
| "msg": [45, 51, 56, 36], | |
| "ct": [32, 0, 19, 59], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 820, | |
| "comment": "y = 0 and (y + a) % radix**2 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "cc15ff8fc1e35214d16a3a58278c62123d56a1b8b87fc1b3", | |
| "tweak": "39366637b29e9d50755b1dc281", | |
| "msg": [2, 16, 56, 53], | |
| "ct": [63, 63, 11, 18], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 821, | |
| "comment": "y = 1 and a = 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "cc15ff8fc1e35214d16a3a58278c62123d56a1b8b87fc1b3", | |
| "tweak": "18ef6e90c81bd04dc25ca6c9a5", | |
| "msg": [3, 6, 35, 13], | |
| "ct": [0, 1, 2, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 822, | |
| "comment": "y = 1 and a = 1 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "cc15ff8fc1e35214d16a3a58278c62123d56a1b8b87fc1b3", | |
| "tweak": "18ef6e90c81bd04dc25ca6c9a5", | |
| "msg": [40, 52, 61, 14], | |
| "ct": [0, 2, 15, 18], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 823, | |
| "comment": "y = 1 and a has large Hamming weight in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "cc15ff8fc1e35214d16a3a58278c62123d56a1b8b87fc1b3", | |
| "tweak": "18ef6e90c81bd04dc25ca6c9a5", | |
| "msg": [61, 30, 27, 59], | |
| "ct": [32, 1, 28, 9], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 824, | |
| "comment": "y = 1 and (y + a) % radix**2 is maximal in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "cc15ff8fc1e35214d16a3a58278c62123d56a1b8b87fc1b3", | |
| "tweak": "18ef6e90c81bd04dc25ca6c9a5", | |
| "msg": [35, 45, 33, 28], | |
| "ct": [63, 63, 52, 30], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 825, | |
| "comment": "y = 1 and (y + a) % radix**2 == 0 in round 8", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "cc15ff8fc1e35214d16a3a58278c62123d56a1b8b87fc1b3", | |
| "tweak": "18ef6e90c81bd04dc25ca6c9a5", | |
| "msg": [60, 18, 32, 13], | |
| "ct": [0, 0, 33, 28], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 826, | |
| "comment": "y is maximal and (y + a) % radix**2 is maximal in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "cc15ff8fc1e35214d16a3a58278c62123d56a1b8b87fc1b3", | |
| "tweak": "71283f5feb52fa173eaac09964", | |
| "msg": [36, 16, 48, 3], | |
| "ct": [12, 25, 61, 55], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 827, | |
| "comment": "y is maximal and (y + a) % radix**2 == 0 in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "cc15ff8fc1e35214d16a3a58278c62123d56a1b8b87fc1b3", | |
| "tweak": "71283f5feb52fa173eaac09964", | |
| "msg": [43, 39, 44, 16], | |
| "ct": [12, 30, 41, 35], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 828, | |
| "comment": "y is maximal and a has large Hamming weight in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "cc15ff8fc1e35214d16a3a58278c62123d56a1b8b87fc1b3", | |
| "tweak": "71283f5feb52fa173eaac09964", | |
| "msg": [29, 4, 52, 56], | |
| "ct": [22, 52, 40, 55], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 829, | |
| "comment": "y is maximal and a is maximal in round 7", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "cc15ff8fc1e35214d16a3a58278c62123d56a1b8b87fc1b3", | |
| "tweak": "71283f5feb52fa173eaac09964", | |
| "msg": [1, 61, 28, 60], | |
| "ct": [5, 55, 1, 34], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 830, | |
| "comment": "y is edge case for modular reduction and a = 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "cc15ff8fc1e35214d16a3a58278c62123d56a1b8b87fc1b3", | |
| "tweak": "2298a9b565490c6ba7d39d24d7", | |
| "msg": [0, 0, 54, 36], | |
| "ct": [10, 47, 61, 51], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 831, | |
| "comment": "y is edge case for modular reduction and a = 1 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "cc15ff8fc1e35214d16a3a58278c62123d56a1b8b87fc1b3", | |
| "tweak": "2298a9b565490c6ba7d39d24d7", | |
| "msg": [0, 1, 54, 36], | |
| "ct": [21, 27, 51, 7], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 832, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**2 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "cc15ff8fc1e35214d16a3a58278c62123d56a1b8b87fc1b3", | |
| "tweak": "2298a9b565490c6ba7d39d24d7", | |
| "msg": [0, 63, 54, 36], | |
| "ct": [12, 61, 25, 23], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 833, | |
| "comment": "y is edge case for modular reduction and (y + a) % radix**2 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "cc15ff8fc1e35214d16a3a58278c62123d56a1b8b87fc1b3", | |
| "tweak": "2298a9b565490c6ba7d39d24d7", | |
| "msg": [1, 0, 54, 36], | |
| "ct": [26, 19, 4, 5], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 834, | |
| "comment": "y is edge case for modular reduction and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "cc15ff8fc1e35214d16a3a58278c62123d56a1b8b87fc1b3", | |
| "tweak": "2298a9b565490c6ba7d39d24d7", | |
| "msg": [32, 0, 54, 36], | |
| "ct": [13, 50, 12, 43], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 835, | |
| "comment": "y is edge case for modular reduction and a is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "cc15ff8fc1e35214d16a3a58278c62123d56a1b8b87fc1b3", | |
| "tweak": "2298a9b565490c6ba7d39d24d7", | |
| "msg": [63, 63, 54, 36], | |
| "ct": [25, 27, 20, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 836, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**2 is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "cc15ff8fc1e35214d16a3a58278c62123d56a1b8b87fc1b3", | |
| "tweak": "37b34de84704ade5d5a7651648", | |
| "msg": [0, 0, 61, 43], | |
| "ct": [2, 35, 3, 56], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 837, | |
| "comment": "y is maximal after modular reduction and (y + a) % radix**2 == 0 in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "cc15ff8fc1e35214d16a3a58278c62123d56a1b8b87fc1b3", | |
| "tweak": "37b34de84704ade5d5a7651648", | |
| "msg": [0, 1, 61, 43], | |
| "ct": [60, 32, 44, 37], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 838, | |
| "comment": "y is maximal after modular reduction and a has large Hamming weight in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "cc15ff8fc1e35214d16a3a58278c62123d56a1b8b87fc1b3", | |
| "tweak": "37b34de84704ade5d5a7651648", | |
| "msg": [32, 0, 61, 43], | |
| "ct": [31, 1, 35, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 839, | |
| "comment": "y is maximal after modular reduction and a is maximal in round 0", | |
| "flags": [ | |
| "EdgeCasePrf" | |
| ], | |
| "key": "cc15ff8fc1e35214d16a3a58278c62123d56a1b8b87fc1b3", | |
| "tweak": "37b34de84704ade5d5a7651648", | |
| "msg": [63, 63, 61, 43], | |
| "ct": [58, 29, 59, 41], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 840, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "ecd2c32bd1b77097a477742649b384243714a567a0f67eb9", | |
| "tweak": "2cd30b0db6e83292", | |
| "msg": [-1, 49, 50, 34], | |
| "ct": [44, 9, 41, 0], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 841, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "ecd2c32bd1b77097a477742649b384243714a567a0f67eb9", | |
| "tweak": "2cd30b0db6e83292", | |
| "msg": [60, -1, 50, 34], | |
| "ct": [6, 2, 2, 43], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 842, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "ecd2c32bd1b77097a477742649b384243714a567a0f67eb9", | |
| "tweak": "2cd30b0db6e83292", | |
| "msg": [60, 49, 50, -1], | |
| "ct": [46, 11, 32, 47], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 843, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "afc1fe563c7721c12f9837abfd35a9cc3f29eb445addd715", | |
| "tweak": "1772ab83b9caa57a", | |
| "msg": [64, 7, 47, 48], | |
| "ct": [59, 13, 63, 24], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 844, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "afc1fe563c7721c12f9837abfd35a9cc3f29eb445addd715", | |
| "tweak": "1772ab83b9caa57a", | |
| "msg": [35, 64, 47, 48], | |
| "ct": [51, 16, 40, 50], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 845, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "afc1fe563c7721c12f9837abfd35a9cc3f29eb445addd715", | |
| "tweak": "1772ab83b9caa57a", | |
| "msg": [35, 7, 47, 64], | |
| "ct": [5, 8, 5, 32], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 192, | |
| "msgSize": 5, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 846, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "a6c055a8cba4718f411d1a3d9c9e2051261ce3e369b2fa13", | |
| "tweak": "c5d9512a52de22b7", | |
| "msg": [23, 6, 50, 59, 52], | |
| "ct": [35, 22, 52, 52, 45], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 847, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "96fc2e2e2fba26508b73927dea1a42c8edcaa1e9d752f84e", | |
| "tweak": "bdbf3377d69e6a6e", | |
| "msg": [0, 0, 0, 0, 0], | |
| "ct": [30, 17, 8, 38, 50], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 848, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "96fc2e2e2fba26508b73927dea1a42c8edcaa1e9d752f84e", | |
| "tweak": "bdbf3377d69e6a6e", | |
| "msg": [63, 63, 63, 63, 63], | |
| "ct": [45, 58, 46, 58, 23], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 849, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "96fc2e2e2fba26508b73927dea1a42c8edcaa1e9d752f84e", | |
| "tweak": "bdbf3377d69e6a6e", | |
| "msg": [32, 0, 32, 0, 0], | |
| "ct": [57, 6, 47, 56, 62], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 850, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "96fc2e2e2fba26508b73927dea1a42c8edcaa1e9d752f84e", | |
| "tweak": "bdbf3377d69e6a6e", | |
| "msg": [31, 63, 31, 63, 63], | |
| "ct": [58, 2, 7, 45, 49], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 851, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "96fc2e2e2fba26508b73927dea1a42c8edcaa1e9d752f84e", | |
| "tweak": "bdbf3377d69e6a6e", | |
| "msg": [46, 33, 15, 54, 54], | |
| "ct": [54, 45, 42, 0, 36], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 852, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "96fc2e2e2fba26508b73927dea1a42c8edcaa1e9d752f84e", | |
| "tweak": "bdbf3377d69e6a6e", | |
| "msg": [26, 3, 52, 4, 6], | |
| "ct": [4, 49, 10, 45, 55], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 853, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "96fc2e2e2fba26508b73927dea1a42c8edcaa1e9d752f84e", | |
| "tweak": "bdbf3377d69e6a6e", | |
| "msg": [37, 8, 12, 6, 28], | |
| "ct": [16, 11, 32, 47, 29], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 854, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "96fc2e2e2fba26508b73927dea1a42c8edcaa1e9d752f84e", | |
| "tweak": "bdbf3377d69e6a6e", | |
| "msg": [56, 35, 26, 45, 4], | |
| "ct": [32, 18, 6, 11, 1], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 855, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "96fc2e2e2fba26508b73927dea1a42c8edcaa1e9d752f84e", | |
| "tweak": "bdbf3377d69e6a6e", | |
| "msg": [31, 20, 13, 33, 53], | |
| "ct": [18, 56, 22, 58, 16], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 856, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "96fc2e2e2fba26508b73927dea1a42c8edcaa1e9d752f84e", | |
| "tweak": "bdbf3377d69e6a6e", | |
| "msg": [13, 61, 59, 13, 17], | |
| "ct": [57, 6, 46, 48, 22], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 857, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "96fc2e2e2fba26508b73927dea1a42c8edcaa1e9d752f84e", | |
| "tweak": "bdbf3377d69e6a6e", | |
| "msg": [1, 23, 57, 0, 39], | |
| "ct": [31, 46, 9, 5, 22], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 858, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "96fc2e2e2fba26508b73927dea1a42c8edcaa1e9d752f84e", | |
| "tweak": "bdbf3377d69e6a6e", | |
| "msg": [13, 57, 20, 19, 11], | |
| "ct": [56, 5, 6, 18, 53], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 859, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "96fc2e2e2fba26508b73927dea1a42c8edcaa1e9d752f84e", | |
| "tweak": "bdbf3377d69e6a6e", | |
| "msg": [41, 14, 42, 45, 11], | |
| "ct": [0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 860, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "96fc2e2e2fba26508b73927dea1a42c8edcaa1e9d752f84e", | |
| "tweak": "bdbf3377d69e6a6e", | |
| "msg": [61, 27, 12, 50, 59], | |
| "ct": [63, 63, 63, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 861, | |
| "comment": "powers of two in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "96fc2e2e2fba26508b73927dea1a42c8edcaa1e9d752f84e", | |
| "tweak": "bdbf3377d69e6a6e", | |
| "msg": [2, 2, 62, 7, 4], | |
| "ct": [32, 0, 32, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 862, | |
| "comment": "integers with large hamming weight in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "96fc2e2e2fba26508b73927dea1a42c8edcaa1e9d752f84e", | |
| "tweak": "bdbf3377d69e6a6e", | |
| "msg": [34, 25, 14, 28, 63], | |
| "ct": [31, 63, 31, 63, 63], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 863, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "7d1dd7c87db4b2ad95137c34ca1baac73b195c0ede42becd", | |
| "tweak": "2ae737de3b2aa4b0", | |
| "msg": [-1, 28, 30, 57, 54], | |
| "ct": [4, 14, 57, 13, 17], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 864, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "7d1dd7c87db4b2ad95137c34ca1baac73b195c0ede42becd", | |
| "tweak": "2ae737de3b2aa4b0", | |
| "msg": [12, -1, 30, 57, 54], | |
| "ct": [27, 40, 12, 41, 31], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 865, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "7d1dd7c87db4b2ad95137c34ca1baac73b195c0ede42becd", | |
| "tweak": "2ae737de3b2aa4b0", | |
| "msg": [12, 28, 30, 57, -1], | |
| "ct": [19, 31, 6, 24, 35], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 866, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "347ee5225467783da925bef6e007c088aeb2cb0390d10422", | |
| "tweak": "7d51ea810844a210", | |
| "msg": [64, 3, 5, 54, 56], | |
| "ct": [55, 37, 57, 40, 62], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 867, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "347ee5225467783da925bef6e007c088aeb2cb0390d10422", | |
| "tweak": "7d51ea810844a210", | |
| "msg": [9, 64, 5, 54, 56], | |
| "ct": [49, 3, 62, 43, 33], | |
| "result": "invalid" | |
| }, | |
| { | |
| "tcId": 868, | |
| "comment": "plaintext contains invalid values", | |
| "flags": [ | |
| "InvalidPlaintext" | |
| ], | |
| "key": "347ee5225467783da925bef6e007c088aeb2cb0390d10422", | |
| "tweak": "7d51ea810844a210", | |
| "msg": [9, 3, 5, 54, 64], | |
| "ct": [19, 2, 2, 6, 22], | |
| "result": "invalid" | |
| } | |
| ] | |
| }, | |
| { | |
| "keySize": 192, | |
| "msgSize": 6, | |
| "radix": 64, | |
| "type": "FpeListTest", | |
| "tests": [ | |
| { | |
| "tcId": 869, | |
| "comment": "normal message size", | |
| "flags": [ | |
| "NormalMessageSize" | |
| ], | |
| "key": "4d7429ddc83d27457a152d4981aab3ddf56dd2410647ad47", | |
| "tweak": "ada060734534dfa1", | |
| "msg": [34, 4, 52, 50, 8, 53], | |
| "ct": [25, 39, 61, 19, 48, 37], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 870, | |
| "comment": "minimal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fb11ec30c2d9417c1a8e1484073c1d8e73277b92880ff21e", | |
| "tweak": "94045aa1a1f8fef4", | |
| "msg": [0, 0, 0, 0, 0, 0], | |
| "ct": [24, 30, 58, 19, 2, 46], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 871, | |
| "comment": "maximal integer values in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fb11ec30c2d9417c1a8e1484073c1d8e73277b92880ff21e", | |
| "tweak": "94045aa1a1f8fef4", | |
| "msg": [63, 63, 63, 63, 63, 63], | |
| "ct": [40, 24, 25, 4, 62, 32], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 872, | |
| "comment": "powers of two in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fb11ec30c2d9417c1a8e1484073c1d8e73277b92880ff21e", | |
| "tweak": "94045aa1a1f8fef4", | |
| "msg": [32, 0, 0, 32, 0, 0], | |
| "ct": [55, 1, 22, 44, 43, 61], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 873, | |
| "comment": "integers with large hamming weight in plaintext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fb11ec30c2d9417c1a8e1484073c1d8e73277b92880ff21e", | |
| "tweak": "94045aa1a1f8fef4", | |
| "msg": [31, 63, 63, 31, 63, 63], | |
| "ct": [51, 58, 34, 61, 21, 43], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 874, | |
| "comment": "minimal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fb11ec30c2d9417c1a8e1484073c1d8e73277b92880ff21e", | |
| "tweak": "94045aa1a1f8fef4", | |
| "msg": [7, 25, 24, 28, 3, 44], | |
| "ct": [34, 60, 29, 4, 22, 52], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 875, | |
| "comment": "maximal integer values in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fb11ec30c2d9417c1a8e1484073c1d8e73277b92880ff21e", | |
| "tweak": "94045aa1a1f8fef4", | |
| "msg": [30, 62, 8, 27, 29, 21], | |
| "ct": [6, 44, 10, 31, 31, 23], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 876, | |
| "comment": "powers of two in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fb11ec30c2d9417c1a8e1484073c1d8e73277b92880ff21e", | |
| "tweak": "94045aa1a1f8fef4", | |
| "msg": [2, 54, 6, 37, 10, 17], | |
| "ct": [61, 27, 39, 28, 54, 12], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 877, | |
| "comment": "integers with large hamming weight in round 5", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fb11ec30c2d9417c1a8e1484073c1d8e73277b92880ff21e", | |
| "tweak": "94045aa1a1f8fef4", | |
| "msg": [52, 42, 18, 10, 7, 15], | |
| "ct": [55, 58, 24, 47, 30, 34], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 878, | |
| "comment": "minimal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fb11ec30c2d9417c1a8e1484073c1d8e73277b92880ff21e", | |
| "tweak": "94045aa1a1f8fef4", | |
| "msg": [62, 61, 33, 9, 3, 17], | |
| "ct": [28, 62, 15, 46, 44, 10], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 879, | |
| "comment": "maximal integer values in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fb11ec30c2d9417c1a8e1484073c1d8e73277b92880ff21e", | |
| "tweak": "94045aa1a1f8fef4", | |
| "msg": [9, 33, 48, 57, 38, 34], | |
| "ct": [51, 63, 28, 11, 21, 53], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 880, | |
| "comment": "powers of two in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fb11ec30c2d9417c1a8e1484073c1d8e73277b92880ff21e", | |
| "tweak": "94045aa1a1f8fef4", | |
| "msg": [11, 42, 43, 53, 58, 21], | |
| "ct": [6, 52, 26, 63, 37, 45], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 881, | |
| "comment": "integers with large hamming weight in round 6", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fb11ec30c2d9417c1a8e1484073c1d8e73277b92880ff21e", | |
| "tweak": "94045aa1a1f8fef4", | |
| "msg": [46, 46, 37, 43, 12, 34], | |
| "ct": [49, 25, 39, 29, 37, 20], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 882, | |
| "comment": "minimal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fb11ec30c2d9417c1a8e1484073c1d8e73277b92880ff21e", | |
| "tweak": "94045aa1a1f8fef4", | |
| "msg": [55, 14, 29, 50, 44, 54], | |
| "ct": [0, 0, 0, 0, 0, 0], | |
| "result": "valid" | |
| }, | |
| { | |
| "tcId": 883, | |
| "comment": "maximal integer values in ciphertext", | |
| "flags": [ | |
| "EdgeCaseState" | |
| ], | |
| "key": "fb11ec30c2d9417c1a8e1484073c1d8e73277b92880ff21e", | |
| "tweak": "94045aa1a1f8fef4", | |
| "msg": [45, 0, 42, 45, 57, 29], | |
| "ct": [63, 63, 63, 63, 63, 63], | |
| "result": "valid" |