Errors when running OpenSSL fipsalgtest.pl

Previous Topic Next Topic
 
classic Classic list List threaded Threaded
2 messages Options
Reply | Threaded
Open this post in threaded view
|

Errors when running OpenSSL fipsalgtest.pl

security veteran
Hi All:

I was using theĀ fipsalgtest.pl utility for running tests with some input vectors.

Somehow I ran into the following errors:

Any suggestions will be greatly appreciated.

Thanks.


Running ECDSA2 tests

DEBUG: KeyPair, Pass=240, Fail=0

ERROR: PKV mismatch:

"QX = Z87BV029A938A157D32I7662BFBC5252BB1016B9347F7J93" != "QX = LKJHGB0E5B672ETD46D39D35E2797F8E25C3572D87A29653"

DEBUG: SigGen, Pass=600, Fail=0

ERROR:100E5092:lib=16,func=229,reason=146:file=ec_key.c:line=522

Error setting public key

Error running SigVer

WARNING: error executing test SigVer for command: ../test/fips_ecdsavs SigVer "/TestVector/ECDSA/req/SigVer.req" "/TestVector/ECDSA/resp/SigVer.tst"

Running RSA tests

FATAL parse error processing line 4

FATAL RSAVTEST file processing error

WARNING: error executing verify test SigGen15 ../test/fips_rsavtest "/TestVector/RSA/resp/SigGen15_186-3.tst" "/TestVector/RSA/resp/SigGen15_186-3.ver"


--
openssl-users mailing list
To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-users
Reply | Threaded
Open this post in threaded view
|

Re: Errors when running OpenSSL fipsalgtest.pl

Steve Marquess-4


On 09/15/2017 05:35 PM, security veteran wrote:

> Hi All:
>
> I was using the fipsalgtest.pl utility for running tests with some input
> vectors.
>
> Somehow I ran into the following errors:
>
> Any suggestions will be greatly appreciated.
>
> Thanks.
>
>
>

The format of the test vectors changes constantly so fipsalgtest.pl
needs constant tweaking. Also it is not uncommon for any specific set of
test vectors to have errors; they are manually generated from a labor
intensive software tool and it's all too easy for the test lab to err
even when the current version of the tool isn't buggy (also not
uncommon). Each set of test vectors needs to be carefully matched to the
specific module.

Figuring our such discrepancies can be a lot of fun (not!). I suggest
you start by comparing the test vectors you're trying to process with
one of the recent sets at
https://www.openssl.com/testing/validation-2.0/testvectors/.

-Steve M.

--
Steve Marquess
OpenSSL Validation Services, Inc.
1829 Mount Ephraim Road
Adamstown, MD  21710
USA
+1 301 874 2571
[hidden email]
gpg/pgp key: http://openssl.com/docs/0x6D1892F5.asc

--
openssl-users mailing list
To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-users