- M0: libghostty SSH 终端(渲染/输入/连接)+ 白屏修复(OutputGate) + 会话状态机/自动重连 - M1: tsnet 用户态组网 + SSH-over-tsnet(fd 桥),shell 级真机验证;R5(Go+gvisor+C+++Swift 同进程) retire - M1.5: tmux -CC 原生 tab(MVP) - 结构: packages/(TXCore·TXTransport), apps/TerminalX, vendor/(libghostty-spm/libssh2/mbedtls/tsnet-bridge), artifacts/ - 文档: CLAUDE.md + docs/HANDOFF.md(新会话入口) - 环境: 认证代理→依赖 vendor 本地化;Go 在 ~/.local/go;仅模拟器/未签名 - 待续: M2 mosh, tmux 多 pane, M4 安全(host key/SE) Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>
122 lines
4.0 KiB
C
122 lines
4.0 KiB
C
/* BEGIN_HEADER */
|
|
#include "mbedtls/chacha20.h"
|
|
/* END_HEADER */
|
|
|
|
/* BEGIN_DEPENDENCIES
|
|
* depends_on:MBEDTLS_CHACHA20_C
|
|
* END_DEPENDENCIES
|
|
*/
|
|
|
|
/* BEGIN_CASE */
|
|
void chacha20_crypt(data_t *key_str,
|
|
data_t *nonce_str,
|
|
int counter,
|
|
data_t *src_str,
|
|
data_t *expected_output_str)
|
|
{
|
|
unsigned char output[375];
|
|
mbedtls_chacha20_context ctx;
|
|
|
|
memset(output, 0x00, sizeof(output));
|
|
|
|
TEST_ASSERT(src_str->len == expected_output_str->len);
|
|
TEST_ASSERT(key_str->len == 32U);
|
|
TEST_ASSERT(nonce_str->len == 12U);
|
|
|
|
/*
|
|
* Test the integrated API
|
|
*/
|
|
TEST_ASSERT(mbedtls_chacha20_crypt(key_str->x, nonce_str->x, counter, src_str->len, src_str->x,
|
|
output) == 0);
|
|
|
|
TEST_MEMORY_COMPARE(output, expected_output_str->len,
|
|
expected_output_str->x, expected_output_str->len);
|
|
|
|
/*
|
|
* Test the streaming API
|
|
*/
|
|
mbedtls_chacha20_init(&ctx);
|
|
|
|
TEST_ASSERT(mbedtls_chacha20_setkey(&ctx, key_str->x) == 0);
|
|
|
|
TEST_ASSERT(mbedtls_chacha20_starts(&ctx, nonce_str->x, counter) == 0);
|
|
|
|
memset(output, 0x00, sizeof(output));
|
|
TEST_ASSERT(mbedtls_chacha20_update(&ctx, src_str->len, src_str->x, output) == 0);
|
|
|
|
TEST_MEMORY_COMPARE(output, expected_output_str->len,
|
|
expected_output_str->x, expected_output_str->len);
|
|
|
|
/*
|
|
* Test the streaming API again, piecewise
|
|
*/
|
|
|
|
/* Don't free/init the context nor set the key again,
|
|
* in order to test that starts() does the right thing. */
|
|
TEST_ASSERT(mbedtls_chacha20_starts(&ctx, nonce_str->x, counter) == 0);
|
|
|
|
memset(output, 0x00, sizeof(output));
|
|
TEST_ASSERT(mbedtls_chacha20_update(&ctx, 1, src_str->x, output) == 0);
|
|
TEST_ASSERT(mbedtls_chacha20_update(&ctx, src_str->len - 1,
|
|
src_str->x + 1, output + 1) == 0);
|
|
|
|
TEST_MEMORY_COMPARE(output, expected_output_str->len,
|
|
expected_output_str->x, expected_output_str->len);
|
|
|
|
mbedtls_chacha20_free(&ctx);
|
|
}
|
|
/* END_CASE */
|
|
|
|
/* BEGIN_CASE */
|
|
void chacha20_input_len_too_long(void)
|
|
{
|
|
mbedtls_chacha20_context ctx;
|
|
unsigned char key[32] = { 0 };
|
|
unsigned char nonce[12] = { 0 };
|
|
unsigned char input[65] = { 0 };
|
|
unsigned char output[65] = { 0 };
|
|
size_t i;
|
|
|
|
mbedtls_chacha20_init(&ctx);
|
|
|
|
TEST_ASSERT(mbedtls_chacha20_setkey(&ctx, key) == 0);
|
|
TEST_ASSERT(mbedtls_chacha20_starts(&ctx, nonce, UINT32_MAX) == 0);
|
|
|
|
/*
|
|
* An overlong call must fail before consuming buffered keystream bytes,
|
|
* writing partial output, or advancing the context.
|
|
*/
|
|
TEST_EQUAL(mbedtls_chacha20_update(&ctx, 1, input, output), 0);
|
|
memset(output, 0x2a, sizeof(output));
|
|
TEST_EQUAL(mbedtls_chacha20_update(&ctx, 64, input, output),
|
|
MBEDTLS_ERR_CHACHA20_BAD_INPUT_DATA);
|
|
for (i = 0; i < sizeof(output); i++) {
|
|
TEST_EQUAL(output[i], 0x2a);
|
|
}
|
|
|
|
/* Consume the rest of the final counter block, then reject more input. */
|
|
TEST_EQUAL(mbedtls_chacha20_update(&ctx, 63, input, output), 0);
|
|
TEST_EQUAL(mbedtls_chacha20_update(&ctx, 0, NULL, NULL), 0);
|
|
/*Test that zero length update does not break an exhausted context */
|
|
TEST_EQUAL(mbedtls_chacha20_update(&ctx, 0, NULL, NULL), 0);
|
|
TEST_EQUAL(mbedtls_chacha20_update(&ctx, 1, input, output),
|
|
MBEDTLS_ERR_CHACHA20_BAD_INPUT_DATA);
|
|
|
|
/* The final counter block is valid, but generating another block is not. */
|
|
TEST_EQUAL(mbedtls_chacha20_crypt(key, nonce, UINT32_MAX,
|
|
64U, input, output), 0);
|
|
TEST_EQUAL(mbedtls_chacha20_crypt(key, nonce, UINT32_MAX,
|
|
sizeof(input), input, output),
|
|
MBEDTLS_ERR_CHACHA20_BAD_INPUT_DATA);
|
|
|
|
mbedtls_chacha20_free(&ctx);
|
|
}
|
|
/* END_CASE */
|
|
|
|
/* BEGIN_CASE depends_on:MBEDTLS_SELF_TEST */
|
|
void chacha20_self_test()
|
|
{
|
|
TEST_ASSERT(mbedtls_chacha20_self_test(1) == 0);
|
|
}
|
|
/* END_CASE */
|