xref: /dpdk/examples/fips_validation/main.c (revision 72b452c5f2599f970f47fd17d3e8e5d60bfebe7a)
13d0fad56SMarko Kovacevic /* SPDX-License-Identifier: BSD-3-Clause
23d0fad56SMarko Kovacevic  * Copyright(c) 2018 Intel Corporation
33d0fad56SMarko Kovacevic  */
43d0fad56SMarko Kovacevic 
53d0fad56SMarko Kovacevic #include <sys/stat.h>
63d0fad56SMarko Kovacevic #include <getopt.h>
73d0fad56SMarko Kovacevic #include <dirent.h>
8*72b452c5SDmitry Kozlyuk #include <stdlib.h>
93d0fad56SMarko Kovacevic 
103d0fad56SMarko Kovacevic #include <rte_cryptodev.h>
1174645f64SAkhil Goyal #include <rte_malloc.h>
123d0fad56SMarko Kovacevic #include <rte_mempool.h>
133d0fad56SMarko Kovacevic #include <rte_mbuf.h>
143d0fad56SMarko Kovacevic #include <rte_string_fns.h>
153d0fad56SMarko Kovacevic 
163d0fad56SMarko Kovacevic #include "fips_validation.h"
1741d561cbSFan Zhang #include "fips_dev_self_test.h"
183d0fad56SMarko Kovacevic 
19fc6e6515SIbtisam Tariq enum {
20fc6e6515SIbtisam Tariq #define OPT_REQ_FILE_PATH           "req-file"
21fc6e6515SIbtisam Tariq 	OPT_REQ_FILE_PATH_NUM = 256,
22fc6e6515SIbtisam Tariq #define OPT_RSP_FILE_PATH           "rsp-file"
23fc6e6515SIbtisam Tariq 	OPT_RSP_FILE_PATH_NUM,
24fc6e6515SIbtisam Tariq #define OPT_MBUF_DATAROOM           "mbuf-dataroom"
25fc6e6515SIbtisam Tariq 	OPT_MBUF_DATAROOM_NUM,
26fc6e6515SIbtisam Tariq #define OPT_FOLDER                  "path-is-folder"
27fc6e6515SIbtisam Tariq 	OPT_FOLDER_NUM,
28fc6e6515SIbtisam Tariq #define OPT_CRYPTODEV               "cryptodev"
29fc6e6515SIbtisam Tariq 	OPT_CRYPTODEV_NUM,
30fc6e6515SIbtisam Tariq #define OPT_CRYPTODEV_ID            "cryptodev-id"
31fc6e6515SIbtisam Tariq 	OPT_CRYPTODEV_ID_NUM,
32fc6e6515SIbtisam Tariq #define OPT_CRYPTODEV_ST            "self-test"
33fc6e6515SIbtisam Tariq 	OPT_CRYPTODEV_ST_NUM,
34fc6e6515SIbtisam Tariq #define OPT_CRYPTODEV_BK_ID         "broken-test-id"
35fc6e6515SIbtisam Tariq 	OPT_CRYPTODEV_BK_ID_NUM,
36fc6e6515SIbtisam Tariq #define OPT_CRYPTODEV_BK_DIR_KEY    "broken-test-dir"
37fc6e6515SIbtisam Tariq 	OPT_CRYPTODEV_BK_DIR_KEY_NUM,
3889be27e3SBrandon Lo #define OPT_USE_JSON                "use-json"
3989be27e3SBrandon Lo 	OPT_USE_JSON_NUM,
40fc6e6515SIbtisam Tariq };
413d0fad56SMarko Kovacevic 
423d0fad56SMarko Kovacevic struct fips_test_vector vec;
433d0fad56SMarko Kovacevic struct fips_test_interim_info info;
443d0fad56SMarko Kovacevic 
458d70a194SDavid Marchand #ifdef USE_JANSSON
4658cc9880SBrandon Lo struct fips_test_json_info json_info;
478d70a194SDavid Marchand #endif /* USE_JANSSON */
4858cc9880SBrandon Lo 
493d0fad56SMarko Kovacevic struct cryptodev_fips_validate_env {
503d0fad56SMarko Kovacevic 	const char *req_path;
513d0fad56SMarko Kovacevic 	const char *rsp_path;
523d0fad56SMarko Kovacevic 	uint32_t is_path_folder;
53952e10cdSFan Zhang 	uint8_t dev_id;
54952e10cdSFan Zhang 	uint8_t dev_support_sgl;
55952e10cdSFan Zhang 	uint16_t mbuf_data_room;
563d0fad56SMarko Kovacevic 	struct rte_mempool *mpool;
57261bbff7SFan Zhang 	struct rte_mempool *sess_mpool;
58261bbff7SFan Zhang 	struct rte_mempool *sess_priv_mpool;
593d0fad56SMarko Kovacevic 	struct rte_mempool *op_pool;
603d0fad56SMarko Kovacevic 	struct rte_mbuf *mbuf;
61952e10cdSFan Zhang 	uint8_t *digest;
62952e10cdSFan Zhang 	uint16_t digest_len;
633d0fad56SMarko Kovacevic 	struct rte_crypto_op *op;
643d0fad56SMarko Kovacevic 	struct rte_cryptodev_sym_session *sess;
65952e10cdSFan Zhang 	uint16_t self_test;
6641d561cbSFan Zhang 	struct fips_dev_broken_test_config *broken_test_config;
673d0fad56SMarko Kovacevic } env;
683d0fad56SMarko Kovacevic 
693d0fad56SMarko Kovacevic static int
703d0fad56SMarko Kovacevic cryptodev_fips_validate_app_int(void)
713d0fad56SMarko Kovacevic {
72c9030ae3SAnoob Joseph 	struct rte_cryptodev_config conf = {rte_socket_id(), 1, 0};
73725d2a7fSFan Zhang 	struct rte_cryptodev_qp_conf qp_conf = {128, NULL, NULL};
74952e10cdSFan Zhang 	struct rte_cryptodev_info dev_info;
75261bbff7SFan Zhang 	uint32_t sess_sz = rte_cryptodev_sym_get_private_session_size(
76261bbff7SFan Zhang 			env.dev_id);
77952e10cdSFan Zhang 	uint32_t nb_mbufs = UINT16_MAX / env.mbuf_data_room + 1;
783d0fad56SMarko Kovacevic 	int ret;
793d0fad56SMarko Kovacevic 
8041d561cbSFan Zhang 	if (env.self_test) {
8141d561cbSFan Zhang 		ret = fips_dev_self_test(env.dev_id, env.broken_test_config);
8241d561cbSFan Zhang 		if (ret < 0) {
8374645f64SAkhil Goyal 			rte_cryptodev_close(env.dev_id);
8441d561cbSFan Zhang 
8541d561cbSFan Zhang 			return ret;
8641d561cbSFan Zhang 		}
8741d561cbSFan Zhang 	}
8841d561cbSFan Zhang 
893d0fad56SMarko Kovacevic 	ret = rte_cryptodev_configure(env.dev_id, &conf);
903d0fad56SMarko Kovacevic 	if (ret < 0)
913d0fad56SMarko Kovacevic 		return ret;
923d0fad56SMarko Kovacevic 
93952e10cdSFan Zhang 	rte_cryptodev_info_get(env.dev_id, &dev_info);
94952e10cdSFan Zhang 	if (dev_info.feature_flags & RTE_CRYPTODEV_FF_IN_PLACE_SGL)
95952e10cdSFan Zhang 		env.dev_support_sgl = 1;
96952e10cdSFan Zhang 	else
97952e10cdSFan Zhang 		env.dev_support_sgl = 0;
98952e10cdSFan Zhang 
99952e10cdSFan Zhang 	env.mpool = rte_pktmbuf_pool_create("FIPS_MEMPOOL", nb_mbufs,
100952e10cdSFan Zhang 			0, 0, sizeof(struct rte_mbuf) + RTE_PKTMBUF_HEADROOM +
101952e10cdSFan Zhang 			env.mbuf_data_room, rte_socket_id());
1023d0fad56SMarko Kovacevic 	if (!env.mpool)
1033d0fad56SMarko Kovacevic 		return ret;
1043d0fad56SMarko Kovacevic 
1053d0fad56SMarko Kovacevic 	ret = rte_cryptodev_queue_pair_setup(env.dev_id, 0, &qp_conf,
106725d2a7fSFan Zhang 			rte_socket_id());
1073d0fad56SMarko Kovacevic 	if (ret < 0)
1083d0fad56SMarko Kovacevic 		return ret;
1093d0fad56SMarko Kovacevic 
1103d0fad56SMarko Kovacevic 	ret = -ENOMEM;
1113d0fad56SMarko Kovacevic 
112261bbff7SFan Zhang 	env.sess_mpool = rte_cryptodev_sym_session_pool_create(
113261bbff7SFan Zhang 			"FIPS_SESS_MEMPOOL", 16, 0, 0, 0, rte_socket_id());
114261bbff7SFan Zhang 	if (!env.sess_mpool)
115261bbff7SFan Zhang 		goto error_exit;
116261bbff7SFan Zhang 
117261bbff7SFan Zhang 	env.sess_priv_mpool = rte_mempool_create("FIPS_SESS_PRIV_MEMPOOL",
118261bbff7SFan Zhang 			16, sess_sz, 0, 0, NULL, NULL, NULL,
119261bbff7SFan Zhang 			NULL, rte_socket_id(), 0);
120261bbff7SFan Zhang 	if (!env.sess_priv_mpool)
121261bbff7SFan Zhang 		goto error_exit;
122261bbff7SFan Zhang 
1233d0fad56SMarko Kovacevic 	env.op_pool = rte_crypto_op_pool_create(
1243d0fad56SMarko Kovacevic 			"FIPS_OP_POOL",
1253d0fad56SMarko Kovacevic 			RTE_CRYPTO_OP_TYPE_SYMMETRIC,
1263d0fad56SMarko Kovacevic 			1, 0,
1273d0fad56SMarko Kovacevic 			16,
1283d0fad56SMarko Kovacevic 			rte_socket_id());
1293d0fad56SMarko Kovacevic 	if (!env.op_pool)
1303d0fad56SMarko Kovacevic 		goto error_exit;
1313d0fad56SMarko Kovacevic 
1323d0fad56SMarko Kovacevic 	env.op = rte_crypto_op_alloc(env.op_pool, RTE_CRYPTO_OP_TYPE_SYMMETRIC);
1333d0fad56SMarko Kovacevic 	if (!env.op)
1343d0fad56SMarko Kovacevic 		goto error_exit;
1353d0fad56SMarko Kovacevic 
136261bbff7SFan Zhang 	qp_conf.mp_session = env.sess_mpool;
137261bbff7SFan Zhang 	qp_conf.mp_session_private = env.sess_priv_mpool;
138261bbff7SFan Zhang 
139261bbff7SFan Zhang 	ret = rte_cryptodev_queue_pair_setup(env.dev_id, 0, &qp_conf,
140261bbff7SFan Zhang 			rte_socket_id());
141261bbff7SFan Zhang 	if (ret < 0)
142261bbff7SFan Zhang 		goto error_exit;
143261bbff7SFan Zhang 
1443b2311ccSFan Zhang 	ret = rte_cryptodev_start(env.dev_id);
1453b2311ccSFan Zhang 	if (ret < 0)
1463b2311ccSFan Zhang 		goto error_exit;
1473b2311ccSFan Zhang 
1483d0fad56SMarko Kovacevic 	return 0;
1493d0fad56SMarko Kovacevic 
1503d0fad56SMarko Kovacevic error_exit:
151261bbff7SFan Zhang 
1523d0fad56SMarko Kovacevic 	rte_mempool_free(env.mpool);
153261bbff7SFan Zhang 	rte_mempool_free(env.sess_mpool);
154261bbff7SFan Zhang 	rte_mempool_free(env.sess_priv_mpool);
1553d0fad56SMarko Kovacevic 	rte_mempool_free(env.op_pool);
1563d0fad56SMarko Kovacevic 
1573d0fad56SMarko Kovacevic 	return ret;
1583d0fad56SMarko Kovacevic }
1593d0fad56SMarko Kovacevic 
1603d0fad56SMarko Kovacevic static void
1613d0fad56SMarko Kovacevic cryptodev_fips_validate_app_uninit(void)
1623d0fad56SMarko Kovacevic {
1633d0fad56SMarko Kovacevic 	rte_pktmbuf_free(env.mbuf);
1643d0fad56SMarko Kovacevic 	rte_crypto_op_free(env.op);
1653d0fad56SMarko Kovacevic 	rte_cryptodev_sym_session_clear(env.dev_id, env.sess);
1663d0fad56SMarko Kovacevic 	rte_cryptodev_sym_session_free(env.sess);
1673d0fad56SMarko Kovacevic 	rte_mempool_free(env.mpool);
168261bbff7SFan Zhang 	rte_mempool_free(env.sess_mpool);
169261bbff7SFan Zhang 	rte_mempool_free(env.sess_priv_mpool);
1703d0fad56SMarko Kovacevic 	rte_mempool_free(env.op_pool);
1713d0fad56SMarko Kovacevic }
1723d0fad56SMarko Kovacevic 
1733d0fad56SMarko Kovacevic static int
1743d0fad56SMarko Kovacevic fips_test_one_file(void);
1753d0fad56SMarko Kovacevic 
1768d70a194SDavid Marchand #ifdef USE_JANSSON
17789be27e3SBrandon Lo static int
17889be27e3SBrandon Lo fips_test_one_json_file(void);
1798d70a194SDavid Marchand #endif /* USE_JANSSON */
18089be27e3SBrandon Lo 
1813d0fad56SMarko Kovacevic static int
1823d0fad56SMarko Kovacevic parse_cryptodev_arg(char *arg)
1833d0fad56SMarko Kovacevic {
1843d0fad56SMarko Kovacevic 	int id = rte_cryptodev_get_dev_id(arg);
1853d0fad56SMarko Kovacevic 
1863d0fad56SMarko Kovacevic 	if (id < 0) {
1873d0fad56SMarko Kovacevic 		RTE_LOG(ERR, USER1, "Error %i: invalid cryptodev name %s\n",
1883d0fad56SMarko Kovacevic 				id, arg);
1893d0fad56SMarko Kovacevic 		return id;
1903d0fad56SMarko Kovacevic 	}
1913d0fad56SMarko Kovacevic 
192952e10cdSFan Zhang 	env.dev_id = (uint8_t)id;
1933d0fad56SMarko Kovacevic 
1943d0fad56SMarko Kovacevic 	return 0;
1953d0fad56SMarko Kovacevic }
1963d0fad56SMarko Kovacevic 
1973d0fad56SMarko Kovacevic static int
1983d0fad56SMarko Kovacevic parse_cryptodev_id_arg(char *arg)
1993d0fad56SMarko Kovacevic {
2003d0fad56SMarko Kovacevic 	uint32_t cryptodev_id;
2013d0fad56SMarko Kovacevic 
2023d0fad56SMarko Kovacevic 	if (parser_read_uint32(&cryptodev_id, arg) < 0) {
2033d0fad56SMarko Kovacevic 		RTE_LOG(ERR, USER1, "Error %i: invalid cryptodev id %s\n",
2043d0fad56SMarko Kovacevic 				-EINVAL, arg);
2053d0fad56SMarko Kovacevic 		return -1;
2063d0fad56SMarko Kovacevic 	}
2073d0fad56SMarko Kovacevic 
2083d0fad56SMarko Kovacevic 
209e74abd48SAkhil Goyal 	if (!rte_cryptodev_is_valid_dev(cryptodev_id)) {
2103d0fad56SMarko Kovacevic 		RTE_LOG(ERR, USER1, "Error %i: invalid cryptodev id %s\n",
2113d0fad56SMarko Kovacevic 				cryptodev_id, arg);
2123d0fad56SMarko Kovacevic 		return -1;
2133d0fad56SMarko Kovacevic 	}
2143d0fad56SMarko Kovacevic 
215952e10cdSFan Zhang 	env.dev_id = (uint8_t)cryptodev_id;
2163d0fad56SMarko Kovacevic 
2173d0fad56SMarko Kovacevic 	return 0;
2183d0fad56SMarko Kovacevic }
2193d0fad56SMarko Kovacevic 
2203d0fad56SMarko Kovacevic static void
2213d0fad56SMarko Kovacevic cryptodev_fips_validate_usage(const char *prgname)
2223d0fad56SMarko Kovacevic {
223952e10cdSFan Zhang 	uint32_t def_mbuf_seg_size = DEF_MBUF_SEG_SIZE;
2243d0fad56SMarko Kovacevic 	printf("%s [EAL options] --\n"
2253d0fad56SMarko Kovacevic 		"  --%s: REQUEST-FILE-PATH\n"
2263d0fad56SMarko Kovacevic 		"  --%s: RESPONSE-FILE-PATH\n"
2273d0fad56SMarko Kovacevic 		"  --%s: indicating both paths are folders\n"
228952e10cdSFan Zhang 		"  --%s: mbuf dataroom size (default %u bytes)\n"
2293d0fad56SMarko Kovacevic 		"  --%s: CRYPTODEV-NAME\n"
23041d561cbSFan Zhang 		"  --%s: CRYPTODEV-ID-NAME\n"
23141d561cbSFan Zhang 		"  --%s: self test indicator\n"
23241d561cbSFan Zhang 		"  --%s: self broken test ID\n"
23341d561cbSFan Zhang 		"  --%s: self broken test direction\n",
234fc6e6515SIbtisam Tariq 		prgname, OPT_REQ_FILE_PATH, OPT_RSP_FILE_PATH,
235fc6e6515SIbtisam Tariq 		OPT_FOLDER, OPT_MBUF_DATAROOM, def_mbuf_seg_size,
236fc6e6515SIbtisam Tariq 		OPT_CRYPTODEV, OPT_CRYPTODEV_ID, OPT_CRYPTODEV_ST,
237fc6e6515SIbtisam Tariq 		OPT_CRYPTODEV_BK_ID, OPT_CRYPTODEV_BK_DIR_KEY);
2383d0fad56SMarko Kovacevic }
2393d0fad56SMarko Kovacevic 
2403d0fad56SMarko Kovacevic static int
2413d0fad56SMarko Kovacevic cryptodev_fips_validate_parse_args(int argc, char **argv)
2423d0fad56SMarko Kovacevic {
2433d0fad56SMarko Kovacevic 	int opt, ret;
2443d0fad56SMarko Kovacevic 	char *prgname = argv[0];
2453d0fad56SMarko Kovacevic 	char **argvopt;
2463d0fad56SMarko Kovacevic 	int option_index;
2473d0fad56SMarko Kovacevic 	struct option lgopts[] = {
248fc6e6515SIbtisam Tariq 		{OPT_REQ_FILE_PATH, required_argument,
249fc6e6515SIbtisam Tariq 				NULL, OPT_REQ_FILE_PATH_NUM},
250fc6e6515SIbtisam Tariq 		{OPT_RSP_FILE_PATH, required_argument,
251fc6e6515SIbtisam Tariq 				NULL, OPT_RSP_FILE_PATH_NUM},
252fc6e6515SIbtisam Tariq 		{OPT_FOLDER, no_argument,
253fc6e6515SIbtisam Tariq 				NULL, OPT_FOLDER_NUM},
254fc6e6515SIbtisam Tariq 		{OPT_MBUF_DATAROOM, required_argument,
255fc6e6515SIbtisam Tariq 				NULL, OPT_MBUF_DATAROOM_NUM},
256fc6e6515SIbtisam Tariq 		{OPT_CRYPTODEV, required_argument,
257fc6e6515SIbtisam Tariq 				NULL, OPT_CRYPTODEV_NUM},
258fc6e6515SIbtisam Tariq 		{OPT_CRYPTODEV_ID, required_argument,
259fc6e6515SIbtisam Tariq 				NULL, OPT_CRYPTODEV_ID_NUM},
260fc6e6515SIbtisam Tariq 		{OPT_CRYPTODEV_ST, no_argument,
261fc6e6515SIbtisam Tariq 				NULL, OPT_CRYPTODEV_ST_NUM},
262fc6e6515SIbtisam Tariq 		{OPT_CRYPTODEV_BK_ID, required_argument,
263fc6e6515SIbtisam Tariq 				NULL, OPT_CRYPTODEV_BK_ID_NUM},
264fc6e6515SIbtisam Tariq 		{OPT_CRYPTODEV_BK_DIR_KEY, required_argument,
265fc6e6515SIbtisam Tariq 				NULL, OPT_CRYPTODEV_BK_DIR_KEY_NUM},
2663d0fad56SMarko Kovacevic 		{NULL, 0, 0, 0}
2673d0fad56SMarko Kovacevic 	};
2683d0fad56SMarko Kovacevic 
2693d0fad56SMarko Kovacevic 	argvopt = argv;
2703d0fad56SMarko Kovacevic 
271952e10cdSFan Zhang 	env.mbuf_data_room = DEF_MBUF_SEG_SIZE;
272952e10cdSFan Zhang 	if (rte_cryptodev_count())
273952e10cdSFan Zhang 		env.dev_id = 0;
274952e10cdSFan Zhang 	else {
275952e10cdSFan Zhang 		cryptodev_fips_validate_usage(prgname);
276952e10cdSFan Zhang 		return -EINVAL;
277952e10cdSFan Zhang 	}
278952e10cdSFan Zhang 
2793d0fad56SMarko Kovacevic 	while ((opt = getopt_long(argc, argvopt, "s:",
2803d0fad56SMarko Kovacevic 				  lgopts, &option_index)) != EOF) {
2813d0fad56SMarko Kovacevic 
2823d0fad56SMarko Kovacevic 		switch (opt) {
283fc6e6515SIbtisam Tariq 		case OPT_REQ_FILE_PATH_NUM:
2843d0fad56SMarko Kovacevic 			env.req_path = optarg;
285fc6e6515SIbtisam Tariq 			break;
286fc6e6515SIbtisam Tariq 
287fc6e6515SIbtisam Tariq 		case OPT_RSP_FILE_PATH_NUM:
2883d0fad56SMarko Kovacevic 			env.rsp_path = optarg;
289fc6e6515SIbtisam Tariq 			break;
290fc6e6515SIbtisam Tariq 
291fc6e6515SIbtisam Tariq 		case OPT_FOLDER_NUM:
2923d0fad56SMarko Kovacevic 			env.is_path_folder = 1;
293fc6e6515SIbtisam Tariq 			break;
294fc6e6515SIbtisam Tariq 
295fc6e6515SIbtisam Tariq 		case OPT_CRYPTODEV_NUM:
2963d0fad56SMarko Kovacevic 			ret = parse_cryptodev_arg(optarg);
2973d0fad56SMarko Kovacevic 			if (ret < 0) {
2983d0fad56SMarko Kovacevic 				cryptodev_fips_validate_usage(prgname);
2993d0fad56SMarko Kovacevic 				return -EINVAL;
3003d0fad56SMarko Kovacevic 			}
301fc6e6515SIbtisam Tariq 			break;
302fc6e6515SIbtisam Tariq 
303fc6e6515SIbtisam Tariq 		case OPT_CRYPTODEV_ID_NUM:
3043d0fad56SMarko Kovacevic 			ret = parse_cryptodev_id_arg(optarg);
3053d0fad56SMarko Kovacevic 			if (ret < 0) {
3063d0fad56SMarko Kovacevic 				cryptodev_fips_validate_usage(prgname);
3073d0fad56SMarko Kovacevic 				return -EINVAL;
3083d0fad56SMarko Kovacevic 			}
309fc6e6515SIbtisam Tariq 			break;
310fc6e6515SIbtisam Tariq 
311fc6e6515SIbtisam Tariq 		case OPT_CRYPTODEV_ST_NUM:
31241d561cbSFan Zhang 			env.self_test = 1;
313fc6e6515SIbtisam Tariq 			break;
314fc6e6515SIbtisam Tariq 
315fc6e6515SIbtisam Tariq 		case OPT_CRYPTODEV_BK_ID_NUM:
31641d561cbSFan Zhang 			if (!env.broken_test_config) {
31741d561cbSFan Zhang 				env.broken_test_config = rte_malloc(
31841d561cbSFan Zhang 					NULL,
31941d561cbSFan Zhang 					sizeof(*env.broken_test_config),
32041d561cbSFan Zhang 					0);
32141d561cbSFan Zhang 				if (!env.broken_test_config)
32241d561cbSFan Zhang 					return -ENOMEM;
32341d561cbSFan Zhang 
32441d561cbSFan Zhang 				env.broken_test_config->expect_fail_dir =
32541d561cbSFan Zhang 					self_test_dir_enc_auth_gen;
32641d561cbSFan Zhang 			}
32741d561cbSFan Zhang 
32841d561cbSFan Zhang 			if (parser_read_uint32(
32941d561cbSFan Zhang 				&env.broken_test_config->expect_fail_test_idx,
33041d561cbSFan Zhang 					optarg) < 0) {
33141d561cbSFan Zhang 				rte_free(env.broken_test_config);
33241d561cbSFan Zhang 				cryptodev_fips_validate_usage(prgname);
33341d561cbSFan Zhang 				return -EINVAL;
33441d561cbSFan Zhang 			}
335fc6e6515SIbtisam Tariq 			break;
336fc6e6515SIbtisam Tariq 
337fc6e6515SIbtisam Tariq 		case OPT_CRYPTODEV_BK_DIR_KEY_NUM:
33841d561cbSFan Zhang 			if (!env.broken_test_config) {
33941d561cbSFan Zhang 				env.broken_test_config = rte_malloc(
34041d561cbSFan Zhang 					NULL,
34141d561cbSFan Zhang 					sizeof(*env.broken_test_config),
34241d561cbSFan Zhang 					0);
34341d561cbSFan Zhang 				if (!env.broken_test_config)
34441d561cbSFan Zhang 					return -ENOMEM;
34541d561cbSFan Zhang 
346fc6e6515SIbtisam Tariq 				env.broken_test_config->expect_fail_test_idx =
347fc6e6515SIbtisam Tariq 					0;
34841d561cbSFan Zhang 			}
34941d561cbSFan Zhang 
350fc6e6515SIbtisam Tariq 			if (strcmp(optarg, "enc") == 0)
35141d561cbSFan Zhang 				env.broken_test_config->expect_fail_dir =
35241d561cbSFan Zhang 					self_test_dir_enc_auth_gen;
353fc6e6515SIbtisam Tariq 			else if (strcmp(optarg, "dec")
35441d561cbSFan Zhang 					== 0)
35541d561cbSFan Zhang 				env.broken_test_config->expect_fail_dir =
35641d561cbSFan Zhang 					self_test_dir_dec_auth_verify;
35741d561cbSFan Zhang 			else {
35841d561cbSFan Zhang 				rte_free(env.broken_test_config);
35941d561cbSFan Zhang 				cryptodev_fips_validate_usage(prgname);
36041d561cbSFan Zhang 				return -EINVAL;
36141d561cbSFan Zhang 			}
362fc6e6515SIbtisam Tariq 			break;
363952e10cdSFan Zhang 
364fc6e6515SIbtisam Tariq 
365fc6e6515SIbtisam Tariq 		case OPT_MBUF_DATAROOM_NUM:
366fc6e6515SIbtisam Tariq 			if (parser_read_uint16(&env.mbuf_data_room,
367952e10cdSFan Zhang 					optarg) < 0) {
368952e10cdSFan Zhang 				cryptodev_fips_validate_usage(prgname);
369952e10cdSFan Zhang 				return -EINVAL;
370952e10cdSFan Zhang 			}
371952e10cdSFan Zhang 
372fc6e6515SIbtisam Tariq 			if (env.mbuf_data_room == 0) {
3733d0fad56SMarko Kovacevic 				cryptodev_fips_validate_usage(prgname);
3743d0fad56SMarko Kovacevic 				return -EINVAL;
3753d0fad56SMarko Kovacevic 			}
3763d0fad56SMarko Kovacevic 			break;
377fc6e6515SIbtisam Tariq 
3783d0fad56SMarko Kovacevic 		default:
379fc6e6515SIbtisam Tariq 			cryptodev_fips_validate_usage(prgname);
380fc6e6515SIbtisam Tariq 			return -EINVAL;
3813d0fad56SMarko Kovacevic 		}
3823d0fad56SMarko Kovacevic 	}
3833d0fad56SMarko Kovacevic 
3841442ab1aSOlivier Matz 	if ((env.req_path == NULL && env.rsp_path != NULL) ||
3851442ab1aSOlivier Matz 			(env.req_path != NULL && env.rsp_path == NULL)) {
3861442ab1aSOlivier Matz 		RTE_LOG(ERR, USER1, "Missing req path or rsp path\n");
3871442ab1aSOlivier Matz 		cryptodev_fips_validate_usage(prgname);
3881442ab1aSOlivier Matz 		return -EINVAL;
3891442ab1aSOlivier Matz 	}
3901442ab1aSOlivier Matz 
3911442ab1aSOlivier Matz 	if (env.req_path == NULL && env.self_test == 0) {
3921442ab1aSOlivier Matz 		RTE_LOG(ERR, USER1, "--self-test must be set if req path is missing\n");
3933d0fad56SMarko Kovacevic 		cryptodev_fips_validate_usage(prgname);
3943d0fad56SMarko Kovacevic 		return -EINVAL;
3953d0fad56SMarko Kovacevic 	}
3963d0fad56SMarko Kovacevic 
3973d0fad56SMarko Kovacevic 	return 0;
3983d0fad56SMarko Kovacevic }
3993d0fad56SMarko Kovacevic 
4003d0fad56SMarko Kovacevic int
4013d0fad56SMarko Kovacevic main(int argc, char *argv[])
4023d0fad56SMarko Kovacevic {
4033d0fad56SMarko Kovacevic 	int ret;
4043d0fad56SMarko Kovacevic 
4053d0fad56SMarko Kovacevic 	ret = rte_eal_init(argc, argv);
4063d0fad56SMarko Kovacevic 	if (ret < 0) {
4073d0fad56SMarko Kovacevic 		RTE_LOG(ERR, USER1, "Error %i: Failed init\n", ret);
4083d0fad56SMarko Kovacevic 		return -1;
4093d0fad56SMarko Kovacevic 	}
4103d0fad56SMarko Kovacevic 
4113d0fad56SMarko Kovacevic 	argc -= ret;
4123d0fad56SMarko Kovacevic 	argv += ret;
4133d0fad56SMarko Kovacevic 
4143d0fad56SMarko Kovacevic 	ret = cryptodev_fips_validate_parse_args(argc, argv);
4153d0fad56SMarko Kovacevic 	if (ret < 0)
4163d0fad56SMarko Kovacevic 		rte_exit(EXIT_FAILURE, "Failed to parse arguments!\n");
4173d0fad56SMarko Kovacevic 
4183d0fad56SMarko Kovacevic 	ret = cryptodev_fips_validate_app_int();
4193d0fad56SMarko Kovacevic 	if (ret < 0) {
4203d0fad56SMarko Kovacevic 		RTE_LOG(ERR, USER1, "Error %i: Failed init\n", ret);
4213d0fad56SMarko Kovacevic 		return -1;
4223d0fad56SMarko Kovacevic 	}
4233d0fad56SMarko Kovacevic 
4241442ab1aSOlivier Matz 	if (env.req_path == NULL || env.rsp_path == NULL) {
4251442ab1aSOlivier Matz 		printf("No request, exit.\n");
4261442ab1aSOlivier Matz 		goto exit;
4271442ab1aSOlivier Matz 	}
4281442ab1aSOlivier Matz 
4293d0fad56SMarko Kovacevic 	if (!env.is_path_folder) {
4303d0fad56SMarko Kovacevic 		printf("Processing file %s... ", env.req_path);
4313d0fad56SMarko Kovacevic 
4323d0fad56SMarko Kovacevic 		ret = fips_test_init(env.req_path, env.rsp_path,
4333d0fad56SMarko Kovacevic 			rte_cryptodev_name_get(env.dev_id));
4343d0fad56SMarko Kovacevic 		if (ret < 0) {
4353d0fad56SMarko Kovacevic 			RTE_LOG(ERR, USER1, "Error %i: Failed test %s\n",
4363d0fad56SMarko Kovacevic 					ret, env.req_path);
4373d0fad56SMarko Kovacevic 			goto exit;
4383d0fad56SMarko Kovacevic 		}
4393d0fad56SMarko Kovacevic 
4408d70a194SDavid Marchand #ifdef USE_JANSSON
44189be27e3SBrandon Lo 		if (info.file_type == FIPS_TYPE_JSON) {
44289be27e3SBrandon Lo 			ret = fips_test_one_json_file();
44389be27e3SBrandon Lo 			json_decref(json_info.json_root);
44489be27e3SBrandon Lo 		}  else {
4453d0fad56SMarko Kovacevic 			ret = fips_test_one_file();
44689be27e3SBrandon Lo 		}
4478d70a194SDavid Marchand #else /* USE_JANSSON */
44889be27e3SBrandon Lo 		ret = fips_test_one_file();
4498d70a194SDavid Marchand #endif /* USE_JANSSON */
45089be27e3SBrandon Lo 
4513d0fad56SMarko Kovacevic 		if (ret < 0) {
4523d0fad56SMarko Kovacevic 			RTE_LOG(ERR, USER1, "Error %i: Failed test %s\n",
4533d0fad56SMarko Kovacevic 					ret, env.req_path);
4543d0fad56SMarko Kovacevic 			goto exit;
4553d0fad56SMarko Kovacevic 		}
4563d0fad56SMarko Kovacevic 
4573d0fad56SMarko Kovacevic 		printf("Done\n");
4583d0fad56SMarko Kovacevic 
4593d0fad56SMarko Kovacevic 	} else {
4603d0fad56SMarko Kovacevic 		struct dirent *dir;
4613d0fad56SMarko Kovacevic 		DIR *d_req, *d_rsp;
4623d0fad56SMarko Kovacevic 		char req_path[1024];
4633d0fad56SMarko Kovacevic 		char rsp_path[1024];
4643d0fad56SMarko Kovacevic 
4653d0fad56SMarko Kovacevic 		d_req = opendir(env.req_path);
4663d0fad56SMarko Kovacevic 		if (!d_req) {
4673d0fad56SMarko Kovacevic 			RTE_LOG(ERR, USER1, "Error %i: Path %s not exist\n",
4683d0fad56SMarko Kovacevic 					-EINVAL, env.req_path);
4693d0fad56SMarko Kovacevic 			goto exit;
4703d0fad56SMarko Kovacevic 		}
4713d0fad56SMarko Kovacevic 
4723d0fad56SMarko Kovacevic 		d_rsp = opendir(env.rsp_path);
4733d0fad56SMarko Kovacevic 		if (!d_rsp) {
4743d0fad56SMarko Kovacevic 			ret = mkdir(env.rsp_path, 0700);
4753d0fad56SMarko Kovacevic 			if (ret == 0)
4763d0fad56SMarko Kovacevic 				d_rsp = opendir(env.rsp_path);
4773d0fad56SMarko Kovacevic 			else {
4783d0fad56SMarko Kovacevic 				RTE_LOG(ERR, USER1, "Error %i: Invalid %s\n",
4793d0fad56SMarko Kovacevic 						-EINVAL, env.rsp_path);
4803d0fad56SMarko Kovacevic 				goto exit;
4813d0fad56SMarko Kovacevic 			}
4823d0fad56SMarko Kovacevic 		}
4833d0fad56SMarko Kovacevic 		closedir(d_rsp);
4843d0fad56SMarko Kovacevic 
4853d0fad56SMarko Kovacevic 		while ((dir = readdir(d_req)) != NULL) {
4863d0fad56SMarko Kovacevic 			if (strstr(dir->d_name, "req") == NULL)
4873d0fad56SMarko Kovacevic 				continue;
4883d0fad56SMarko Kovacevic 
4893d0fad56SMarko Kovacevic 			snprintf(req_path, 1023, "%s/%s", env.req_path,
4903d0fad56SMarko Kovacevic 					dir->d_name);
4913d0fad56SMarko Kovacevic 			snprintf(rsp_path, 1023, "%s/%s", env.rsp_path,
4923d0fad56SMarko Kovacevic 					dir->d_name);
4933d0fad56SMarko Kovacevic 			strlcpy(strstr(rsp_path, "req"), "rsp", 4);
4943d0fad56SMarko Kovacevic 
4953d0fad56SMarko Kovacevic 			printf("Processing file %s... ", req_path);
4963d0fad56SMarko Kovacevic 
4973d0fad56SMarko Kovacevic 			ret = fips_test_init(req_path, rsp_path,
4983d0fad56SMarko Kovacevic 			rte_cryptodev_name_get(env.dev_id));
4993d0fad56SMarko Kovacevic 			if (ret < 0) {
5003d0fad56SMarko Kovacevic 				RTE_LOG(ERR, USER1, "Error %i: Failed test %s\n",
5013d0fad56SMarko Kovacevic 						ret, req_path);
5023d0fad56SMarko Kovacevic 				break;
5033d0fad56SMarko Kovacevic 			}
5043d0fad56SMarko Kovacevic 
5058d70a194SDavid Marchand #ifdef USE_JANSSON
50689be27e3SBrandon Lo 			if (info.file_type == FIPS_TYPE_JSON) {
50789be27e3SBrandon Lo 				ret = fips_test_one_json_file();
50889be27e3SBrandon Lo 				json_decref(json_info.json_root);
50989be27e3SBrandon Lo 			} else {
5103d0fad56SMarko Kovacevic 				ret = fips_test_one_file();
51189be27e3SBrandon Lo 			}
5128d70a194SDavid Marchand #else /* USE_JANSSON */
51389be27e3SBrandon Lo 			ret = fips_test_one_file();
5148d70a194SDavid Marchand #endif /* USE_JANSSON */
51589be27e3SBrandon Lo 
5163d0fad56SMarko Kovacevic 			if (ret < 0) {
5173d0fad56SMarko Kovacevic 				RTE_LOG(ERR, USER1, "Error %i: Failed test %s\n",
5183d0fad56SMarko Kovacevic 						ret, req_path);
5193d0fad56SMarko Kovacevic 				break;
5203d0fad56SMarko Kovacevic 			}
5213d0fad56SMarko Kovacevic 
5223d0fad56SMarko Kovacevic 			printf("Done\n");
5233d0fad56SMarko Kovacevic 		}
5243d0fad56SMarko Kovacevic 
5253d0fad56SMarko Kovacevic 		closedir(d_req);
5263d0fad56SMarko Kovacevic 	}
5273d0fad56SMarko Kovacevic 
5283d0fad56SMarko Kovacevic 
5293d0fad56SMarko Kovacevic exit:
5303d0fad56SMarko Kovacevic 	fips_test_clear();
5313d0fad56SMarko Kovacevic 	cryptodev_fips_validate_app_uninit();
5323d0fad56SMarko Kovacevic 
53310aa3757SChengchang Tang 	/* clean up the EAL */
53410aa3757SChengchang Tang 	rte_eal_cleanup();
53510aa3757SChengchang Tang 
5363d0fad56SMarko Kovacevic 	return ret;
5373d0fad56SMarko Kovacevic 
5383d0fad56SMarko Kovacevic }
5393d0fad56SMarko Kovacevic 
540cd255ccfSMarko Kovacevic #define IV_OFF (sizeof(struct rte_crypto_op) + sizeof(struct rte_crypto_sym_op))
541cd255ccfSMarko Kovacevic #define CRYPTODEV_FIPS_MAX_RETRIES	16
542cd255ccfSMarko Kovacevic 
543d09abf2dSFan Zhang struct fips_test_ops test_ops;
544cd255ccfSMarko Kovacevic 
545cd255ccfSMarko Kovacevic static int
546952e10cdSFan Zhang prepare_data_mbufs(struct fips_val *val)
547952e10cdSFan Zhang {
548952e10cdSFan Zhang 	struct rte_mbuf *m, *head = 0;
549952e10cdSFan Zhang 	uint8_t *src = val->val;
550952e10cdSFan Zhang 	uint32_t total_len = val->len;
551952e10cdSFan Zhang 	uint16_t nb_seg;
552952e10cdSFan Zhang 	int ret = 0;
553952e10cdSFan Zhang 
554952e10cdSFan Zhang 	rte_pktmbuf_free(env.mbuf);
555952e10cdSFan Zhang 
556952e10cdSFan Zhang 	if (total_len > RTE_MBUF_MAX_NB_SEGS) {
557952e10cdSFan Zhang 		RTE_LOG(ERR, USER1, "Data len %u too big\n", total_len);
558952e10cdSFan Zhang 		return -EPERM;
559952e10cdSFan Zhang 	}
560952e10cdSFan Zhang 
561952e10cdSFan Zhang 	nb_seg = total_len / env.mbuf_data_room;
562952e10cdSFan Zhang 	if (total_len % env.mbuf_data_room)
563952e10cdSFan Zhang 		nb_seg++;
564952e10cdSFan Zhang 
565952e10cdSFan Zhang 	m = rte_pktmbuf_alloc(env.mpool);
566952e10cdSFan Zhang 	if (!m) {
567952e10cdSFan Zhang 		RTE_LOG(ERR, USER1, "Error %i: Not enough mbuf\n",
568952e10cdSFan Zhang 				-ENOMEM);
569952e10cdSFan Zhang 		return -ENOMEM;
570952e10cdSFan Zhang 	}
571952e10cdSFan Zhang 	head = m;
572952e10cdSFan Zhang 
573952e10cdSFan Zhang 	while (nb_seg) {
574952e10cdSFan Zhang 		uint16_t len = RTE_MIN(total_len, env.mbuf_data_room);
575952e10cdSFan Zhang 		uint8_t *dst = (uint8_t *)rte_pktmbuf_append(m, len);
576952e10cdSFan Zhang 
577952e10cdSFan Zhang 		if (!dst) {
578952e10cdSFan Zhang 			RTE_LOG(ERR, USER1, "Error %i: MBUF too small\n",
579952e10cdSFan Zhang 					-ENOMEM);
580952e10cdSFan Zhang 			ret = -ENOMEM;
581952e10cdSFan Zhang 			goto error_exit;
582952e10cdSFan Zhang 		}
583952e10cdSFan Zhang 
584952e10cdSFan Zhang 		memcpy(dst, src, len);
585952e10cdSFan Zhang 
586952e10cdSFan Zhang 		if (head != m) {
587952e10cdSFan Zhang 			ret = rte_pktmbuf_chain(head, m);
588952e10cdSFan Zhang 			if (ret) {
589952e10cdSFan Zhang 				rte_pktmbuf_free(m);
590952e10cdSFan Zhang 				RTE_LOG(ERR, USER1, "Error %i: SGL build\n",
591952e10cdSFan Zhang 						ret);
592952e10cdSFan Zhang 				goto error_exit;
593952e10cdSFan Zhang 			}
594952e10cdSFan Zhang 		}
595952e10cdSFan Zhang 		total_len -= len;
596952e10cdSFan Zhang 
597952e10cdSFan Zhang 		if (total_len) {
598952e10cdSFan Zhang 			if (!env.dev_support_sgl) {
599952e10cdSFan Zhang 				RTE_LOG(ERR, USER1, "SGL not supported\n");
600952e10cdSFan Zhang 				ret = -EPERM;
601952e10cdSFan Zhang 				goto error_exit;
602952e10cdSFan Zhang 			}
603952e10cdSFan Zhang 
604952e10cdSFan Zhang 			m = rte_pktmbuf_alloc(env.mpool);
605952e10cdSFan Zhang 			if (!m) {
606952e10cdSFan Zhang 				RTE_LOG(ERR, USER1, "Error %i: No memory\n",
607952e10cdSFan Zhang 						-ENOMEM);
608952e10cdSFan Zhang 				goto error_exit;
609952e10cdSFan Zhang 			}
610952e10cdSFan Zhang 		} else
611952e10cdSFan Zhang 			break;
612952e10cdSFan Zhang 
613952e10cdSFan Zhang 		src += len;
614952e10cdSFan Zhang 		nb_seg--;
615952e10cdSFan Zhang 	}
616952e10cdSFan Zhang 
617952e10cdSFan Zhang 	if (total_len) {
618952e10cdSFan Zhang 		RTE_LOG(ERR, USER1, "Error %i: Failed to store all data\n",
619952e10cdSFan Zhang 				-ENOMEM);
620952e10cdSFan Zhang 		goto error_exit;
621952e10cdSFan Zhang 	}
622952e10cdSFan Zhang 
623952e10cdSFan Zhang 	env.mbuf = head;
624952e10cdSFan Zhang 
625952e10cdSFan Zhang 	return 0;
626952e10cdSFan Zhang 
627952e10cdSFan Zhang error_exit:
628952e10cdSFan Zhang 	rte_pktmbuf_free(head);
629952e10cdSFan Zhang 	return ret;
630952e10cdSFan Zhang }
631952e10cdSFan Zhang 
632952e10cdSFan Zhang static int
633cd255ccfSMarko Kovacevic prepare_cipher_op(void)
634cd255ccfSMarko Kovacevic {
635cd255ccfSMarko Kovacevic 	struct rte_crypto_sym_op *sym = env.op->sym;
636cd255ccfSMarko Kovacevic 	uint8_t *iv = rte_crypto_op_ctod_offset(env.op, uint8_t *, IV_OFF);
637952e10cdSFan Zhang 	int ret;
638cd255ccfSMarko Kovacevic 
639cd255ccfSMarko Kovacevic 	__rte_crypto_op_reset(env.op, RTE_CRYPTO_OP_TYPE_SYMMETRIC);
640cd255ccfSMarko Kovacevic 
641cd255ccfSMarko Kovacevic 	memcpy(iv, vec.iv.val, vec.iv.len);
642cd255ccfSMarko Kovacevic 
643cd255ccfSMarko Kovacevic 	if (info.op == FIPS_TEST_ENC_AUTH_GEN) {
644952e10cdSFan Zhang 		ret = prepare_data_mbufs(&vec.pt);
645952e10cdSFan Zhang 		if (ret < 0)
646952e10cdSFan Zhang 			return ret;
647cd255ccfSMarko Kovacevic 
648cd255ccfSMarko Kovacevic 		sym->cipher.data.length = vec.pt.len;
649cd255ccfSMarko Kovacevic 	} else {
650952e10cdSFan Zhang 		ret = prepare_data_mbufs(&vec.ct);
651952e10cdSFan Zhang 		if (ret < 0)
652952e10cdSFan Zhang 			return ret;
653cd255ccfSMarko Kovacevic 
654cd255ccfSMarko Kovacevic 		sym->cipher.data.length = vec.ct.len;
655cd255ccfSMarko Kovacevic 	}
656cd255ccfSMarko Kovacevic 
657cd255ccfSMarko Kovacevic 	rte_crypto_op_attach_sym_session(env.op, env.sess);
658cd255ccfSMarko Kovacevic 
659952e10cdSFan Zhang 	sym->m_src = env.mbuf;
660952e10cdSFan Zhang 	sym->cipher.data.offset = 0;
661952e10cdSFan Zhang 
662cd255ccfSMarko Kovacevic 	return 0;
663cd255ccfSMarko Kovacevic }
664cd255ccfSMarko Kovacevic 
665d09abf2dSFan Zhang int
666f64adb67SMarko Kovacevic prepare_auth_op(void)
667f64adb67SMarko Kovacevic {
668f64adb67SMarko Kovacevic 	struct rte_crypto_sym_op *sym = env.op->sym;
669952e10cdSFan Zhang 	int ret;
670f64adb67SMarko Kovacevic 
671f64adb67SMarko Kovacevic 	__rte_crypto_op_reset(env.op, RTE_CRYPTO_OP_TYPE_SYMMETRIC);
672952e10cdSFan Zhang 
673d09abf2dSFan Zhang 	if (vec.iv.len) {
674d09abf2dSFan Zhang 		uint8_t *iv = rte_crypto_op_ctod_offset(env.op, uint8_t *,
675d09abf2dSFan Zhang 				IV_OFF);
676d09abf2dSFan Zhang 		memset(iv, 0, vec.iv.len);
677d09abf2dSFan Zhang 		if (vec.iv.val)
678d09abf2dSFan Zhang 			memcpy(iv, vec.iv.val, vec.iv.len);
679d09abf2dSFan Zhang 	}
680d09abf2dSFan Zhang 
681952e10cdSFan Zhang 	ret = prepare_data_mbufs(&vec.pt);
682952e10cdSFan Zhang 	if (ret < 0)
683952e10cdSFan Zhang 		return ret;
684952e10cdSFan Zhang 
685952e10cdSFan Zhang 	rte_free(env.digest);
686952e10cdSFan Zhang 
687952e10cdSFan Zhang 	env.digest = rte_zmalloc(NULL, vec.cipher_auth.digest.len,
688952e10cdSFan Zhang 			RTE_CACHE_LINE_SIZE);
689952e10cdSFan Zhang 	if (!env.digest) {
690952e10cdSFan Zhang 		RTE_LOG(ERR, USER1, "Not enough memory\n");
691952e10cdSFan Zhang 		return -ENOMEM;
692952e10cdSFan Zhang 	}
693952e10cdSFan Zhang 	env.digest_len = vec.cipher_auth.digest.len;
694f64adb67SMarko Kovacevic 
695f64adb67SMarko Kovacevic 	sym->m_src = env.mbuf;
696f64adb67SMarko Kovacevic 	sym->auth.data.offset = 0;
697f64adb67SMarko Kovacevic 	sym->auth.data.length = vec.pt.len;
698952e10cdSFan Zhang 	sym->auth.digest.data = env.digest;
699952e10cdSFan Zhang 	sym->auth.digest.phys_addr = rte_malloc_virt2iova(env.digest);
700f64adb67SMarko Kovacevic 
70182cfb9c2SFan Zhang 	if (info.op == FIPS_TEST_DEC_AUTH_VERIF)
702952e10cdSFan Zhang 		memcpy(env.digest, vec.cipher_auth.digest.val,
70382cfb9c2SFan Zhang 				vec.cipher_auth.digest.len);
704f64adb67SMarko Kovacevic 
705f64adb67SMarko Kovacevic 	rte_crypto_op_attach_sym_session(env.op, env.sess);
706c05e4ab7SThomas Monjalon 
707c05e4ab7SThomas Monjalon 	return 0;
708f64adb67SMarko Kovacevic }
709f64adb67SMarko Kovacevic 
710d09abf2dSFan Zhang int
7114aaad299SMarko Kovacevic prepare_aead_op(void)
7124aaad299SMarko Kovacevic {
7134aaad299SMarko Kovacevic 	struct rte_crypto_sym_op *sym = env.op->sym;
7144aaad299SMarko Kovacevic 	uint8_t *iv = rte_crypto_op_ctod_offset(env.op, uint8_t *, IV_OFF);
715952e10cdSFan Zhang 	int ret;
7164aaad299SMarko Kovacevic 
7174aaad299SMarko Kovacevic 	__rte_crypto_op_reset(env.op, RTE_CRYPTO_OP_TYPE_SYMMETRIC);
7184aaad299SMarko Kovacevic 
719305921f4SMarko Kovacevic 	if (info.algo == FIPS_TEST_ALGO_AES_CCM)
720952e10cdSFan Zhang 		iv++;
7214aaad299SMarko Kovacevic 
722952e10cdSFan Zhang 	if (vec.iv.val)
723952e10cdSFan Zhang 		memcpy(iv, vec.iv.val, vec.iv.len);
724952e10cdSFan Zhang 	else
725952e10cdSFan Zhang 		/* if REQ file has iv length but not data, default as all 0 */
726952e10cdSFan Zhang 		memset(iv, 0, vec.iv.len);
7274aaad299SMarko Kovacevic 
7284aaad299SMarko Kovacevic 	if (info.op == FIPS_TEST_ENC_AUTH_GEN) {
729952e10cdSFan Zhang 		ret = prepare_data_mbufs(&vec.pt);
730952e10cdSFan Zhang 		if (ret < 0)
731952e10cdSFan Zhang 			return ret;
7324aaad299SMarko Kovacevic 
733952e10cdSFan Zhang 		rte_free(env.digest);
734952e10cdSFan Zhang 		env.digest = rte_zmalloc(NULL, vec.aead.digest.len,
735952e10cdSFan Zhang 				RTE_CACHE_LINE_SIZE);
736952e10cdSFan Zhang 		if (!env.digest) {
737952e10cdSFan Zhang 			RTE_LOG(ERR, USER1, "Not enough memory\n");
7384aaad299SMarko Kovacevic 			return -ENOMEM;
7394aaad299SMarko Kovacevic 		}
740952e10cdSFan Zhang 		env.digest_len = vec.cipher_auth.digest.len;
7414aaad299SMarko Kovacevic 
7424aaad299SMarko Kovacevic 		sym->aead.data.length = vec.pt.len;
743952e10cdSFan Zhang 		sym->aead.digest.data = env.digest;
744952e10cdSFan Zhang 		sym->aead.digest.phys_addr = rte_malloc_virt2iova(env.digest);
7454aaad299SMarko Kovacevic 	} else {
746952e10cdSFan Zhang 		ret = prepare_data_mbufs(&vec.ct);
747952e10cdSFan Zhang 		if (ret < 0)
748952e10cdSFan Zhang 			return ret;
7494aaad299SMarko Kovacevic 
7504aaad299SMarko Kovacevic 		sym->aead.data.length = vec.ct.len;
7514aaad299SMarko Kovacevic 		sym->aead.digest.data = vec.aead.digest.val;
7524aaad299SMarko Kovacevic 		sym->aead.digest.phys_addr = rte_malloc_virt2iova(
7534aaad299SMarko Kovacevic 				sym->aead.digest.data);
7544aaad299SMarko Kovacevic 	}
7554aaad299SMarko Kovacevic 
756952e10cdSFan Zhang 	sym->m_src = env.mbuf;
757952e10cdSFan Zhang 	sym->aead.data.offset = 0;
758952e10cdSFan Zhang 	sym->aead.aad.data = vec.aead.aad.val;
759952e10cdSFan Zhang 	sym->aead.aad.phys_addr = rte_malloc_virt2iova(sym->aead.aad.data);
760952e10cdSFan Zhang 
7614aaad299SMarko Kovacevic 	rte_crypto_op_attach_sym_session(env.op, env.sess);
762c05e4ab7SThomas Monjalon 
763c05e4ab7SThomas Monjalon 	return 0;
7644aaad299SMarko Kovacevic }
7654aaad299SMarko Kovacevic 
7664aaad299SMarko Kovacevic static int
767cd255ccfSMarko Kovacevic prepare_aes_xform(struct rte_crypto_sym_xform *xform)
768cd255ccfSMarko Kovacevic {
769cd255ccfSMarko Kovacevic 	const struct rte_cryptodev_symmetric_capability *cap;
770cd255ccfSMarko Kovacevic 	struct rte_cryptodev_sym_capability_idx cap_idx;
771cd255ccfSMarko Kovacevic 	struct rte_crypto_cipher_xform *cipher_xform = &xform->cipher;
772cd255ccfSMarko Kovacevic 
773cd255ccfSMarko Kovacevic 	xform->type = RTE_CRYPTO_SYM_XFORM_CIPHER;
774cd255ccfSMarko Kovacevic 
775d3190431SMichael Shamis 	if (info.interim_info.aes_data.cipher_algo == RTE_CRYPTO_CIPHER_AES_CBC)
776cd255ccfSMarko Kovacevic 		cipher_xform->algo = RTE_CRYPTO_CIPHER_AES_CBC;
777d3190431SMichael Shamis 	else
778d3190431SMichael Shamis 		cipher_xform->algo = RTE_CRYPTO_CIPHER_AES_ECB;
779d3190431SMichael Shamis 
780cd255ccfSMarko Kovacevic 	cipher_xform->op = (info.op == FIPS_TEST_ENC_AUTH_GEN) ?
781cd255ccfSMarko Kovacevic 			RTE_CRYPTO_CIPHER_OP_ENCRYPT :
782cd255ccfSMarko Kovacevic 			RTE_CRYPTO_CIPHER_OP_DECRYPT;
783cd255ccfSMarko Kovacevic 	cipher_xform->key.data = vec.cipher_auth.key.val;
784cd255ccfSMarko Kovacevic 	cipher_xform->key.length = vec.cipher_auth.key.len;
785d3190431SMichael Shamis 	if (cipher_xform->algo == RTE_CRYPTO_CIPHER_AES_CBC) {
786cd255ccfSMarko Kovacevic 		cipher_xform->iv.length = vec.iv.len;
787cd255ccfSMarko Kovacevic 		cipher_xform->iv.offset = IV_OFF;
788d3190431SMichael Shamis 	} else {
789d3190431SMichael Shamis 		cipher_xform->iv.length = 0;
790d3190431SMichael Shamis 		cipher_xform->iv.offset = 0;
791d3190431SMichael Shamis 	}
792d3190431SMichael Shamis 	cap_idx.algo.cipher = cipher_xform->algo;
793cd255ccfSMarko Kovacevic 	cap_idx.type = RTE_CRYPTO_SYM_XFORM_CIPHER;
794cd255ccfSMarko Kovacevic 
795cd255ccfSMarko Kovacevic 	cap = rte_cryptodev_sym_capability_get(env.dev_id, &cap_idx);
796cd255ccfSMarko Kovacevic 	if (!cap) {
797cd255ccfSMarko Kovacevic 		RTE_LOG(ERR, USER1, "Failed to get capability for cdev %u\n",
798cd255ccfSMarko Kovacevic 				env.dev_id);
799cd255ccfSMarko Kovacevic 		return -EINVAL;
800cd255ccfSMarko Kovacevic 	}
801cd255ccfSMarko Kovacevic 
802cd255ccfSMarko Kovacevic 	if (rte_cryptodev_sym_capability_check_cipher(cap,
803cd255ccfSMarko Kovacevic 			cipher_xform->key.length,
804cd255ccfSMarko Kovacevic 			cipher_xform->iv.length) != 0) {
805cd255ccfSMarko Kovacevic 		RTE_LOG(ERR, USER1, "PMD %s key length %u IV length %u\n",
806cd255ccfSMarko Kovacevic 				info.device_name, cipher_xform->key.length,
807cd255ccfSMarko Kovacevic 				cipher_xform->iv.length);
808cd255ccfSMarko Kovacevic 		return -EPERM;
809cd255ccfSMarko Kovacevic 	}
810cd255ccfSMarko Kovacevic 
811cd255ccfSMarko Kovacevic 	return 0;
812cd255ccfSMarko Kovacevic }
813cd255ccfSMarko Kovacevic 
814f64adb67SMarko Kovacevic static int
815527cbf3dSMarko Kovacevic prepare_tdes_xform(struct rte_crypto_sym_xform *xform)
816527cbf3dSMarko Kovacevic {
817527cbf3dSMarko Kovacevic 	const struct rte_cryptodev_symmetric_capability *cap;
818527cbf3dSMarko Kovacevic 	struct rte_cryptodev_sym_capability_idx cap_idx;
819527cbf3dSMarko Kovacevic 	struct rte_crypto_cipher_xform *cipher_xform = &xform->cipher;
820527cbf3dSMarko Kovacevic 
821527cbf3dSMarko Kovacevic 	xform->type = RTE_CRYPTO_SYM_XFORM_CIPHER;
822527cbf3dSMarko Kovacevic 
823efe3a8dbSMichael Shamis 	if (info.interim_info.tdes_data.test_mode == TDES_MODE_CBC)
824527cbf3dSMarko Kovacevic 		cipher_xform->algo = RTE_CRYPTO_CIPHER_3DES_CBC;
825efe3a8dbSMichael Shamis 	else
826efe3a8dbSMichael Shamis 		cipher_xform->algo = RTE_CRYPTO_CIPHER_3DES_ECB;
827527cbf3dSMarko Kovacevic 	cipher_xform->op = (info.op == FIPS_TEST_ENC_AUTH_GEN) ?
828527cbf3dSMarko Kovacevic 			RTE_CRYPTO_CIPHER_OP_ENCRYPT :
829527cbf3dSMarko Kovacevic 			RTE_CRYPTO_CIPHER_OP_DECRYPT;
830527cbf3dSMarko Kovacevic 	cipher_xform->key.data = vec.cipher_auth.key.val;
831527cbf3dSMarko Kovacevic 	cipher_xform->key.length = vec.cipher_auth.key.len;
832efe3a8dbSMichael Shamis 
833efe3a8dbSMichael Shamis 	if (cipher_xform->algo == RTE_CRYPTO_CIPHER_3DES_CBC) {
834527cbf3dSMarko Kovacevic 		cipher_xform->iv.length = vec.iv.len;
835527cbf3dSMarko Kovacevic 		cipher_xform->iv.offset = IV_OFF;
836efe3a8dbSMichael Shamis 	} else {
837efe3a8dbSMichael Shamis 		cipher_xform->iv.length = 0;
838efe3a8dbSMichael Shamis 		cipher_xform->iv.offset = 0;
839efe3a8dbSMichael Shamis 	}
840efe3a8dbSMichael Shamis 	cap_idx.algo.cipher = cipher_xform->algo;
841527cbf3dSMarko Kovacevic 	cap_idx.type = RTE_CRYPTO_SYM_XFORM_CIPHER;
842527cbf3dSMarko Kovacevic 
843527cbf3dSMarko Kovacevic 	cap = rte_cryptodev_sym_capability_get(env.dev_id, &cap_idx);
844527cbf3dSMarko Kovacevic 	if (!cap) {
845527cbf3dSMarko Kovacevic 		RTE_LOG(ERR, USER1, "Failed to get capability for cdev %u\n",
846527cbf3dSMarko Kovacevic 				env.dev_id);
847527cbf3dSMarko Kovacevic 		return -EINVAL;
848527cbf3dSMarko Kovacevic 	}
849527cbf3dSMarko Kovacevic 
850527cbf3dSMarko Kovacevic 	if (rte_cryptodev_sym_capability_check_cipher(cap,
851527cbf3dSMarko Kovacevic 			cipher_xform->key.length,
852527cbf3dSMarko Kovacevic 			cipher_xform->iv.length) != 0) {
853527cbf3dSMarko Kovacevic 		RTE_LOG(ERR, USER1, "PMD %s key length %u IV length %u\n",
854527cbf3dSMarko Kovacevic 				info.device_name, cipher_xform->key.length,
855527cbf3dSMarko Kovacevic 				cipher_xform->iv.length);
856527cbf3dSMarko Kovacevic 		return -EPERM;
857527cbf3dSMarko Kovacevic 	}
858527cbf3dSMarko Kovacevic 
859527cbf3dSMarko Kovacevic 	return 0;
860527cbf3dSMarko Kovacevic }
861527cbf3dSMarko Kovacevic 
862527cbf3dSMarko Kovacevic static int
863f64adb67SMarko Kovacevic prepare_hmac_xform(struct rte_crypto_sym_xform *xform)
864f64adb67SMarko Kovacevic {
865f64adb67SMarko Kovacevic 	const struct rte_cryptodev_symmetric_capability *cap;
866f64adb67SMarko Kovacevic 	struct rte_cryptodev_sym_capability_idx cap_idx;
867f64adb67SMarko Kovacevic 	struct rte_crypto_auth_xform *auth_xform = &xform->auth;
868f64adb67SMarko Kovacevic 
869f64adb67SMarko Kovacevic 	xform->type = RTE_CRYPTO_SYM_XFORM_AUTH;
870f64adb67SMarko Kovacevic 
871f64adb67SMarko Kovacevic 	auth_xform->algo = info.interim_info.hmac_data.algo;
872f64adb67SMarko Kovacevic 	auth_xform->op = RTE_CRYPTO_AUTH_OP_GENERATE;
873f64adb67SMarko Kovacevic 	auth_xform->digest_length = vec.cipher_auth.digest.len;
874f64adb67SMarko Kovacevic 	auth_xform->key.data = vec.cipher_auth.key.val;
875f64adb67SMarko Kovacevic 	auth_xform->key.length = vec.cipher_auth.key.len;
876f64adb67SMarko Kovacevic 
877f64adb67SMarko Kovacevic 	cap_idx.algo.auth = auth_xform->algo;
878f64adb67SMarko Kovacevic 	cap_idx.type = RTE_CRYPTO_SYM_XFORM_AUTH;
879f64adb67SMarko Kovacevic 
880f64adb67SMarko Kovacevic 	cap = rte_cryptodev_sym_capability_get(env.dev_id, &cap_idx);
881f64adb67SMarko Kovacevic 	if (!cap) {
882f64adb67SMarko Kovacevic 		RTE_LOG(ERR, USER1, "Failed to get capability for cdev %u\n",
883f64adb67SMarko Kovacevic 				env.dev_id);
884f64adb67SMarko Kovacevic 		return -EINVAL;
885f64adb67SMarko Kovacevic 	}
886f64adb67SMarko Kovacevic 
887f64adb67SMarko Kovacevic 	if (rte_cryptodev_sym_capability_check_auth(cap,
888f64adb67SMarko Kovacevic 			auth_xform->key.length,
889f64adb67SMarko Kovacevic 			auth_xform->digest_length, 0) != 0) {
890f64adb67SMarko Kovacevic 		RTE_LOG(ERR, USER1, "PMD %s key length %u IV length %u\n",
891f64adb67SMarko Kovacevic 				info.device_name, auth_xform->key.length,
892f64adb67SMarko Kovacevic 				auth_xform->digest_length);
893f64adb67SMarko Kovacevic 		return -EPERM;
894f64adb67SMarko Kovacevic 	}
895f64adb67SMarko Kovacevic 
896f64adb67SMarko Kovacevic 	return 0;
897f64adb67SMarko Kovacevic }
898f64adb67SMarko Kovacevic 
899d09abf2dSFan Zhang int
9004aaad299SMarko Kovacevic prepare_gcm_xform(struct rte_crypto_sym_xform *xform)
9014aaad299SMarko Kovacevic {
9024aaad299SMarko Kovacevic 	const struct rte_cryptodev_symmetric_capability *cap;
9034aaad299SMarko Kovacevic 	struct rte_cryptodev_sym_capability_idx cap_idx;
9044aaad299SMarko Kovacevic 	struct rte_crypto_aead_xform *aead_xform = &xform->aead;
9054aaad299SMarko Kovacevic 
9064aaad299SMarko Kovacevic 	xform->type = RTE_CRYPTO_SYM_XFORM_AEAD;
9074aaad299SMarko Kovacevic 
9084aaad299SMarko Kovacevic 	aead_xform->algo = RTE_CRYPTO_AEAD_AES_GCM;
9094aaad299SMarko Kovacevic 	aead_xform->aad_length = vec.aead.aad.len;
9104aaad299SMarko Kovacevic 	aead_xform->digest_length = vec.aead.digest.len;
9114aaad299SMarko Kovacevic 	aead_xform->iv.offset = IV_OFF;
9124aaad299SMarko Kovacevic 	aead_xform->iv.length = vec.iv.len;
9134aaad299SMarko Kovacevic 	aead_xform->key.data = vec.aead.key.val;
9144aaad299SMarko Kovacevic 	aead_xform->key.length = vec.aead.key.len;
9154aaad299SMarko Kovacevic 	aead_xform->op = (info.op == FIPS_TEST_ENC_AUTH_GEN) ?
9164aaad299SMarko Kovacevic 			RTE_CRYPTO_AEAD_OP_ENCRYPT :
9174aaad299SMarko Kovacevic 			RTE_CRYPTO_AEAD_OP_DECRYPT;
9184aaad299SMarko Kovacevic 
9194aaad299SMarko Kovacevic 	cap_idx.algo.aead = aead_xform->algo;
9204aaad299SMarko Kovacevic 	cap_idx.type = RTE_CRYPTO_SYM_XFORM_AEAD;
9214aaad299SMarko Kovacevic 
9224aaad299SMarko Kovacevic 	cap = rte_cryptodev_sym_capability_get(env.dev_id, &cap_idx);
9234aaad299SMarko Kovacevic 	if (!cap) {
9244aaad299SMarko Kovacevic 		RTE_LOG(ERR, USER1, "Failed to get capability for cdev %u\n",
9254aaad299SMarko Kovacevic 				env.dev_id);
9264aaad299SMarko Kovacevic 		return -EINVAL;
9274aaad299SMarko Kovacevic 	}
9284aaad299SMarko Kovacevic 
9294aaad299SMarko Kovacevic 	if (rte_cryptodev_sym_capability_check_aead(cap,
9304aaad299SMarko Kovacevic 			aead_xform->key.length,
9314aaad299SMarko Kovacevic 			aead_xform->digest_length, aead_xform->aad_length,
9324aaad299SMarko Kovacevic 			aead_xform->iv.length) != 0) {
9334aaad299SMarko Kovacevic 		RTE_LOG(ERR, USER1,
9344aaad299SMarko Kovacevic 			"PMD %s key_len %u tag_len %u aad_len %u iv_len %u\n",
9354aaad299SMarko Kovacevic 				info.device_name, aead_xform->key.length,
9364aaad299SMarko Kovacevic 				aead_xform->digest_length,
9374aaad299SMarko Kovacevic 				aead_xform->aad_length,
9384aaad299SMarko Kovacevic 				aead_xform->iv.length);
9394aaad299SMarko Kovacevic 		return -EPERM;
9404aaad299SMarko Kovacevic 	}
9414aaad299SMarko Kovacevic 
9424aaad299SMarko Kovacevic 	return 0;
9434aaad299SMarko Kovacevic }
9444aaad299SMarko Kovacevic 
945d09abf2dSFan Zhang int
946d09abf2dSFan Zhang prepare_gmac_xform(struct rte_crypto_sym_xform *xform)
947d09abf2dSFan Zhang {
948d09abf2dSFan Zhang 	const struct rte_cryptodev_symmetric_capability *cap;
949d09abf2dSFan Zhang 	struct rte_cryptodev_sym_capability_idx cap_idx;
950d09abf2dSFan Zhang 	struct rte_crypto_auth_xform *auth_xform = &xform->auth;
951d09abf2dSFan Zhang 
952d09abf2dSFan Zhang 	xform->type = RTE_CRYPTO_SYM_XFORM_AUTH;
953d09abf2dSFan Zhang 
954d09abf2dSFan Zhang 	auth_xform->algo = RTE_CRYPTO_AUTH_AES_GMAC;
955d09abf2dSFan Zhang 	auth_xform->op = (info.op == FIPS_TEST_ENC_AUTH_GEN) ?
956d09abf2dSFan Zhang 			RTE_CRYPTO_AUTH_OP_GENERATE :
957d09abf2dSFan Zhang 			RTE_CRYPTO_AUTH_OP_VERIFY;
958d09abf2dSFan Zhang 	auth_xform->iv.offset = IV_OFF;
959d09abf2dSFan Zhang 	auth_xform->iv.length = vec.iv.len;
960d09abf2dSFan Zhang 	auth_xform->digest_length = vec.aead.digest.len;
961d09abf2dSFan Zhang 	auth_xform->key.data = vec.aead.key.val;
962d09abf2dSFan Zhang 	auth_xform->key.length = vec.aead.key.len;
963d09abf2dSFan Zhang 
964d09abf2dSFan Zhang 	cap_idx.algo.auth = auth_xform->algo;
965d09abf2dSFan Zhang 	cap_idx.type = RTE_CRYPTO_SYM_XFORM_AUTH;
966d09abf2dSFan Zhang 
967d09abf2dSFan Zhang 	cap = rte_cryptodev_sym_capability_get(env.dev_id, &cap_idx);
968d09abf2dSFan Zhang 	if (!cap) {
969d09abf2dSFan Zhang 		RTE_LOG(ERR, USER1, "Failed to get capability for cdev %u\n",
970d09abf2dSFan Zhang 				env.dev_id);
971d09abf2dSFan Zhang 		return -EINVAL;
972d09abf2dSFan Zhang 	}
973d09abf2dSFan Zhang 
974d09abf2dSFan Zhang 	if (rte_cryptodev_sym_capability_check_auth(cap,
975d09abf2dSFan Zhang 			auth_xform->key.length,
976601b8a54SFan Zhang 			auth_xform->digest_length,
977601b8a54SFan Zhang 			auth_xform->iv.length) != 0) {
978601b8a54SFan Zhang 
979601b8a54SFan Zhang 		RTE_LOG(ERR, USER1,
980601b8a54SFan Zhang 			"PMD %s key length %u Digest length %u IV length %u\n",
981d09abf2dSFan Zhang 				info.device_name, auth_xform->key.length,
982601b8a54SFan Zhang 				auth_xform->digest_length,
983601b8a54SFan Zhang 				auth_xform->iv.length);
984d09abf2dSFan Zhang 		return -EPERM;
985d09abf2dSFan Zhang 	}
986d09abf2dSFan Zhang 
987d09abf2dSFan Zhang 	return 0;
988d09abf2dSFan Zhang }
989d09abf2dSFan Zhang 
990ac026f46SMarko Kovacevic static int
991ac026f46SMarko Kovacevic prepare_cmac_xform(struct rte_crypto_sym_xform *xform)
992ac026f46SMarko Kovacevic {
993ac026f46SMarko Kovacevic 	const struct rte_cryptodev_symmetric_capability *cap;
994ac026f46SMarko Kovacevic 	struct rte_cryptodev_sym_capability_idx cap_idx;
995ac026f46SMarko Kovacevic 	struct rte_crypto_auth_xform *auth_xform = &xform->auth;
996ac026f46SMarko Kovacevic 
997ac026f46SMarko Kovacevic 	xform->type = RTE_CRYPTO_SYM_XFORM_AUTH;
998ac026f46SMarko Kovacevic 
999ac026f46SMarko Kovacevic 	auth_xform->algo = RTE_CRYPTO_AUTH_AES_CMAC;
1000ac026f46SMarko Kovacevic 	auth_xform->op = (info.op == FIPS_TEST_ENC_AUTH_GEN) ?
1001ac026f46SMarko Kovacevic 			RTE_CRYPTO_AUTH_OP_GENERATE : RTE_CRYPTO_AUTH_OP_VERIFY;
1002ac026f46SMarko Kovacevic 	auth_xform->digest_length = vec.cipher_auth.digest.len;
1003ac026f46SMarko Kovacevic 	auth_xform->key.data = vec.cipher_auth.key.val;
1004ac026f46SMarko Kovacevic 	auth_xform->key.length = vec.cipher_auth.key.len;
1005ac026f46SMarko Kovacevic 
1006ac026f46SMarko Kovacevic 	cap_idx.algo.auth = auth_xform->algo;
1007ac026f46SMarko Kovacevic 	cap_idx.type = RTE_CRYPTO_SYM_XFORM_AUTH;
1008ac026f46SMarko Kovacevic 
1009ac026f46SMarko Kovacevic 	cap = rte_cryptodev_sym_capability_get(env.dev_id, &cap_idx);
1010ac026f46SMarko Kovacevic 	if (!cap) {
1011ac026f46SMarko Kovacevic 		RTE_LOG(ERR, USER1, "Failed to get capability for cdev %u\n",
1012ac026f46SMarko Kovacevic 				env.dev_id);
1013ac026f46SMarko Kovacevic 		return -EINVAL;
1014ac026f46SMarko Kovacevic 	}
1015ac026f46SMarko Kovacevic 
1016ac026f46SMarko Kovacevic 	if (rte_cryptodev_sym_capability_check_auth(cap,
1017ac026f46SMarko Kovacevic 			auth_xform->key.length,
1018ac026f46SMarko Kovacevic 			auth_xform->digest_length, 0) != 0) {
1019ac026f46SMarko Kovacevic 		RTE_LOG(ERR, USER1, "PMD %s key length %u IV length %u\n",
1020ac026f46SMarko Kovacevic 				info.device_name, auth_xform->key.length,
1021ac026f46SMarko Kovacevic 				auth_xform->digest_length);
1022ac026f46SMarko Kovacevic 		return -EPERM;
1023ac026f46SMarko Kovacevic 	}
1024ac026f46SMarko Kovacevic 
1025ac026f46SMarko Kovacevic 	return 0;
1026ac026f46SMarko Kovacevic }
1027ac026f46SMarko Kovacevic 
1028305921f4SMarko Kovacevic static int
1029305921f4SMarko Kovacevic prepare_ccm_xform(struct rte_crypto_sym_xform *xform)
1030305921f4SMarko Kovacevic {
1031305921f4SMarko Kovacevic 	const struct rte_cryptodev_symmetric_capability *cap;
1032305921f4SMarko Kovacevic 	struct rte_cryptodev_sym_capability_idx cap_idx;
1033305921f4SMarko Kovacevic 	struct rte_crypto_aead_xform *aead_xform = &xform->aead;
1034305921f4SMarko Kovacevic 
1035305921f4SMarko Kovacevic 	xform->type = RTE_CRYPTO_SYM_XFORM_AEAD;
1036305921f4SMarko Kovacevic 
1037305921f4SMarko Kovacevic 	aead_xform->algo = RTE_CRYPTO_AEAD_AES_CCM;
1038305921f4SMarko Kovacevic 	aead_xform->aad_length = vec.aead.aad.len;
1039305921f4SMarko Kovacevic 	aead_xform->digest_length = vec.aead.digest.len;
1040305921f4SMarko Kovacevic 	aead_xform->iv.offset = IV_OFF;
1041305921f4SMarko Kovacevic 	aead_xform->iv.length = vec.iv.len;
1042305921f4SMarko Kovacevic 	aead_xform->key.data = vec.aead.key.val;
1043305921f4SMarko Kovacevic 	aead_xform->key.length = vec.aead.key.len;
1044305921f4SMarko Kovacevic 	aead_xform->op = (info.op == FIPS_TEST_ENC_AUTH_GEN) ?
1045305921f4SMarko Kovacevic 			RTE_CRYPTO_AEAD_OP_ENCRYPT :
1046305921f4SMarko Kovacevic 			RTE_CRYPTO_AEAD_OP_DECRYPT;
1047305921f4SMarko Kovacevic 
1048305921f4SMarko Kovacevic 	cap_idx.algo.aead = aead_xform->algo;
1049305921f4SMarko Kovacevic 	cap_idx.type = RTE_CRYPTO_SYM_XFORM_AEAD;
1050305921f4SMarko Kovacevic 
1051305921f4SMarko Kovacevic 	cap = rte_cryptodev_sym_capability_get(env.dev_id, &cap_idx);
1052305921f4SMarko Kovacevic 	if (!cap) {
1053305921f4SMarko Kovacevic 		RTE_LOG(ERR, USER1, "Failed to get capability for cdev %u\n",
1054305921f4SMarko Kovacevic 				env.dev_id);
1055305921f4SMarko Kovacevic 		return -EINVAL;
1056305921f4SMarko Kovacevic 	}
1057305921f4SMarko Kovacevic 
1058305921f4SMarko Kovacevic 	if (rte_cryptodev_sym_capability_check_aead(cap,
1059305921f4SMarko Kovacevic 			aead_xform->key.length,
1060305921f4SMarko Kovacevic 			aead_xform->digest_length, aead_xform->aad_length,
1061305921f4SMarko Kovacevic 			aead_xform->iv.length) != 0) {
1062305921f4SMarko Kovacevic 		RTE_LOG(ERR, USER1,
1063305921f4SMarko Kovacevic 			"PMD %s key_len %u tag_len %u aad_len %u iv_len %u\n",
1064305921f4SMarko Kovacevic 				info.device_name, aead_xform->key.length,
1065305921f4SMarko Kovacevic 				aead_xform->digest_length,
1066305921f4SMarko Kovacevic 				aead_xform->aad_length,
1067305921f4SMarko Kovacevic 				aead_xform->iv.length);
1068305921f4SMarko Kovacevic 		return -EPERM;
1069305921f4SMarko Kovacevic 	}
1070305921f4SMarko Kovacevic 
1071305921f4SMarko Kovacevic 	return 0;
1072305921f4SMarko Kovacevic }
1073305921f4SMarko Kovacevic 
1074f4797baeSDamian Nowak static int
1075f4797baeSDamian Nowak prepare_sha_xform(struct rte_crypto_sym_xform *xform)
1076f4797baeSDamian Nowak {
1077f4797baeSDamian Nowak 	const struct rte_cryptodev_symmetric_capability *cap;
1078f4797baeSDamian Nowak 	struct rte_cryptodev_sym_capability_idx cap_idx;
1079f4797baeSDamian Nowak 	struct rte_crypto_auth_xform *auth_xform = &xform->auth;
1080f4797baeSDamian Nowak 
1081f4797baeSDamian Nowak 	xform->type = RTE_CRYPTO_SYM_XFORM_AUTH;
1082f4797baeSDamian Nowak 
1083f4797baeSDamian Nowak 	auth_xform->algo = info.interim_info.sha_data.algo;
1084f4797baeSDamian Nowak 	auth_xform->op = RTE_CRYPTO_AUTH_OP_GENERATE;
1085f4797baeSDamian Nowak 	auth_xform->digest_length = vec.cipher_auth.digest.len;
1086f4797baeSDamian Nowak 
1087f4797baeSDamian Nowak 	cap_idx.algo.auth = auth_xform->algo;
1088f4797baeSDamian Nowak 	cap_idx.type = RTE_CRYPTO_SYM_XFORM_AUTH;
1089f4797baeSDamian Nowak 
1090f4797baeSDamian Nowak 	cap = rte_cryptodev_sym_capability_get(env.dev_id, &cap_idx);
1091f4797baeSDamian Nowak 	if (!cap) {
1092f4797baeSDamian Nowak 		RTE_LOG(ERR, USER1, "Failed to get capability for cdev %u\n",
1093f4797baeSDamian Nowak 				env.dev_id);
1094f4797baeSDamian Nowak 		return -EINVAL;
1095f4797baeSDamian Nowak 	}
1096f4797baeSDamian Nowak 
1097f4797baeSDamian Nowak 	if (rte_cryptodev_sym_capability_check_auth(cap,
1098f4797baeSDamian Nowak 			auth_xform->key.length,
1099f4797baeSDamian Nowak 			auth_xform->digest_length, 0) != 0) {
1100f4797baeSDamian Nowak 		RTE_LOG(ERR, USER1, "PMD %s key length %u digest length %u\n",
1101f4797baeSDamian Nowak 				info.device_name, auth_xform->key.length,
1102f4797baeSDamian Nowak 				auth_xform->digest_length);
1103f4797baeSDamian Nowak 		return -EPERM;
1104f4797baeSDamian Nowak 	}
1105f4797baeSDamian Nowak 
1106f4797baeSDamian Nowak 	return 0;
1107f4797baeSDamian Nowak }
1108f4797baeSDamian Nowak 
1109d5a9ea55SSucharitha Sarananaga static int
1110d5a9ea55SSucharitha Sarananaga prepare_xts_xform(struct rte_crypto_sym_xform *xform)
1111d5a9ea55SSucharitha Sarananaga {
1112d5a9ea55SSucharitha Sarananaga 	const struct rte_cryptodev_symmetric_capability *cap;
1113d5a9ea55SSucharitha Sarananaga 	struct rte_cryptodev_sym_capability_idx cap_idx;
1114d5a9ea55SSucharitha Sarananaga 	struct rte_crypto_cipher_xform *cipher_xform = &xform->cipher;
1115d5a9ea55SSucharitha Sarananaga 
1116d5a9ea55SSucharitha Sarananaga 	xform->type = RTE_CRYPTO_SYM_XFORM_CIPHER;
1117d5a9ea55SSucharitha Sarananaga 
1118d5a9ea55SSucharitha Sarananaga 	cipher_xform->algo = RTE_CRYPTO_CIPHER_AES_XTS;
1119d5a9ea55SSucharitha Sarananaga 	cipher_xform->op = (info.op == FIPS_TEST_ENC_AUTH_GEN) ?
1120d5a9ea55SSucharitha Sarananaga 			RTE_CRYPTO_CIPHER_OP_ENCRYPT :
1121d5a9ea55SSucharitha Sarananaga 			RTE_CRYPTO_CIPHER_OP_DECRYPT;
1122d5a9ea55SSucharitha Sarananaga 	cipher_xform->key.data = vec.cipher_auth.key.val;
1123d5a9ea55SSucharitha Sarananaga 	cipher_xform->key.length = vec.cipher_auth.key.len;
1124d5a9ea55SSucharitha Sarananaga 	cipher_xform->iv.length = vec.iv.len;
1125d5a9ea55SSucharitha Sarananaga 	cipher_xform->iv.offset = IV_OFF;
1126d5a9ea55SSucharitha Sarananaga 
1127d5a9ea55SSucharitha Sarananaga 	cap_idx.algo.cipher = RTE_CRYPTO_CIPHER_AES_XTS;
1128d5a9ea55SSucharitha Sarananaga 	cap_idx.type = RTE_CRYPTO_SYM_XFORM_CIPHER;
1129d5a9ea55SSucharitha Sarananaga 
1130d5a9ea55SSucharitha Sarananaga 	cap = rte_cryptodev_sym_capability_get(env.dev_id, &cap_idx);
1131d5a9ea55SSucharitha Sarananaga 	if (!cap) {
1132d5a9ea55SSucharitha Sarananaga 		RTE_LOG(ERR, USER1, "Failed to get capability for cdev %u\n",
1133d5a9ea55SSucharitha Sarananaga 				env.dev_id);
1134d5a9ea55SSucharitha Sarananaga 		return -EINVAL;
1135d5a9ea55SSucharitha Sarananaga 	}
1136d5a9ea55SSucharitha Sarananaga 
1137d5a9ea55SSucharitha Sarananaga 	if (rte_cryptodev_sym_capability_check_cipher(cap,
1138d5a9ea55SSucharitha Sarananaga 			cipher_xform->key.length,
1139d5a9ea55SSucharitha Sarananaga 			cipher_xform->iv.length) != 0) {
1140d5a9ea55SSucharitha Sarananaga 		RTE_LOG(ERR, USER1, "PMD %s key length %u IV length %u\n",
1141d5a9ea55SSucharitha Sarananaga 				info.device_name, cipher_xform->key.length,
1142d5a9ea55SSucharitha Sarananaga 				cipher_xform->iv.length);
1143d5a9ea55SSucharitha Sarananaga 		return -EPERM;
1144d5a9ea55SSucharitha Sarananaga 	}
1145d5a9ea55SSucharitha Sarananaga 
1146d5a9ea55SSucharitha Sarananaga 	return 0;
1147d5a9ea55SSucharitha Sarananaga }
1148d5a9ea55SSucharitha Sarananaga 
1149952e10cdSFan Zhang static int
1150cd255ccfSMarko Kovacevic get_writeback_data(struct fips_val *val)
1151cd255ccfSMarko Kovacevic {
1152952e10cdSFan Zhang 	struct rte_mbuf *m = env.mbuf;
1153952e10cdSFan Zhang 	uint16_t data_len = rte_pktmbuf_pkt_len(m);
1154952e10cdSFan Zhang 	uint16_t total_len = data_len + env.digest_len;
1155952e10cdSFan Zhang 	uint8_t *src, *dst, *wb_data;
1156952e10cdSFan Zhang 
1157952e10cdSFan Zhang 	/* in case val is reused for MCT test, try to free the buffer first */
1158952e10cdSFan Zhang 	if (val->val) {
1159952e10cdSFan Zhang 		free(val->val);
1160952e10cdSFan Zhang 		val->val = NULL;
1161952e10cdSFan Zhang 	}
1162952e10cdSFan Zhang 
1163952e10cdSFan Zhang 	wb_data = dst = calloc(1, total_len);
1164952e10cdSFan Zhang 	if (!dst) {
1165952e10cdSFan Zhang 		RTE_LOG(ERR, USER1, "Error %i: Not enough memory\n", -ENOMEM);
1166952e10cdSFan Zhang 		return -ENOMEM;
1167952e10cdSFan Zhang 	}
1168952e10cdSFan Zhang 
1169952e10cdSFan Zhang 	while (m && data_len) {
1170952e10cdSFan Zhang 		uint16_t seg_len = RTE_MIN(rte_pktmbuf_data_len(m), data_len);
1171952e10cdSFan Zhang 
1172952e10cdSFan Zhang 		src = rte_pktmbuf_mtod(m, uint8_t *);
1173952e10cdSFan Zhang 		memcpy(dst, src, seg_len);
1174952e10cdSFan Zhang 		m = m->next;
1175952e10cdSFan Zhang 		data_len -= seg_len;
1176952e10cdSFan Zhang 		dst += seg_len;
1177952e10cdSFan Zhang 	}
1178952e10cdSFan Zhang 
1179952e10cdSFan Zhang 	if (data_len) {
1180952e10cdSFan Zhang 		RTE_LOG(ERR, USER1, "Error -1: write back data\n");
1181bda9ce3cSCiara Power 		free(wb_data);
1182952e10cdSFan Zhang 		return -1;
1183952e10cdSFan Zhang 	}
1184952e10cdSFan Zhang 
1185952e10cdSFan Zhang 	if (env.digest)
1186952e10cdSFan Zhang 		memcpy(dst, env.digest, env.digest_len);
1187952e10cdSFan Zhang 
1188952e10cdSFan Zhang 	val->val = wb_data;
1189952e10cdSFan Zhang 	val->len = total_len;
1190952e10cdSFan Zhang 
1191952e10cdSFan Zhang 	return 0;
1192cd255ccfSMarko Kovacevic }
1193cd255ccfSMarko Kovacevic 
1194cd255ccfSMarko Kovacevic static int
1195cd255ccfSMarko Kovacevic fips_run_test(void)
1196cd255ccfSMarko Kovacevic {
1197cd255ccfSMarko Kovacevic 	struct rte_crypto_sym_xform xform = {0};
1198cd255ccfSMarko Kovacevic 	uint16_t n_deqd;
1199cd255ccfSMarko Kovacevic 	int ret;
1200cd255ccfSMarko Kovacevic 
1201cd255ccfSMarko Kovacevic 	ret = test_ops.prepare_xform(&xform);
1202cd255ccfSMarko Kovacevic 	if (ret < 0)
1203cd255ccfSMarko Kovacevic 		return ret;
1204cd255ccfSMarko Kovacevic 
1205261bbff7SFan Zhang 	env.sess = rte_cryptodev_sym_session_create(env.sess_mpool);
1206cd255ccfSMarko Kovacevic 	if (!env.sess)
1207cd255ccfSMarko Kovacevic 		return -ENOMEM;
1208cd255ccfSMarko Kovacevic 
1209cd255ccfSMarko Kovacevic 	ret = rte_cryptodev_sym_session_init(env.dev_id,
1210261bbff7SFan Zhang 			env.sess, &xform, env.sess_priv_mpool);
1211cd255ccfSMarko Kovacevic 	if (ret < 0) {
1212cd255ccfSMarko Kovacevic 		RTE_LOG(ERR, USER1, "Error %i: Init session\n",
1213cd255ccfSMarko Kovacevic 				ret);
1214083a2777SMarko Kovacevic 		goto exit;
1215cd255ccfSMarko Kovacevic 	}
1216cd255ccfSMarko Kovacevic 
1217cd255ccfSMarko Kovacevic 	ret = test_ops.prepare_op();
1218cd255ccfSMarko Kovacevic 	if (ret < 0) {
1219cd255ccfSMarko Kovacevic 		RTE_LOG(ERR, USER1, "Error %i: Prepare op\n",
1220cd255ccfSMarko Kovacevic 				ret);
1221083a2777SMarko Kovacevic 		goto exit;
1222cd255ccfSMarko Kovacevic 	}
1223cd255ccfSMarko Kovacevic 
1224cd255ccfSMarko Kovacevic 	if (rte_cryptodev_enqueue_burst(env.dev_id, 0, &env.op, 1) < 1) {
1225cd255ccfSMarko Kovacevic 		RTE_LOG(ERR, USER1, "Error: Failed enqueue\n");
1226083a2777SMarko Kovacevic 		ret = -1;
1227083a2777SMarko Kovacevic 		goto exit;
1228cd255ccfSMarko Kovacevic 	}
1229cd255ccfSMarko Kovacevic 
1230cd255ccfSMarko Kovacevic 	do {
1231cd255ccfSMarko Kovacevic 		struct rte_crypto_op *deqd_op;
1232cd255ccfSMarko Kovacevic 
1233cd255ccfSMarko Kovacevic 		n_deqd = rte_cryptodev_dequeue_burst(env.dev_id, 0, &deqd_op,
1234cd255ccfSMarko Kovacevic 				1);
1235cd255ccfSMarko Kovacevic 	} while (n_deqd == 0);
1236cd255ccfSMarko Kovacevic 
1237cd255ccfSMarko Kovacevic 	vec.status = env.op->status;
1238cd255ccfSMarko Kovacevic 
1239083a2777SMarko Kovacevic exit:
1240cd255ccfSMarko Kovacevic 	rte_cryptodev_sym_session_clear(env.dev_id, env.sess);
1241cd255ccfSMarko Kovacevic 	rte_cryptodev_sym_session_free(env.sess);
1242cd255ccfSMarko Kovacevic 	env.sess = NULL;
1243cd255ccfSMarko Kovacevic 
1244cd255ccfSMarko Kovacevic 	return ret;
1245cd255ccfSMarko Kovacevic }
1246cd255ccfSMarko Kovacevic 
1247cd255ccfSMarko Kovacevic static int
1248cd255ccfSMarko Kovacevic fips_generic_test(void)
1249cd255ccfSMarko Kovacevic {
1250952e10cdSFan Zhang 	struct fips_val val = {NULL, 0};
1251cd255ccfSMarko Kovacevic 	int ret;
1252cd255ccfSMarko Kovacevic 
125389be27e3SBrandon Lo 	if (info.file_type != FIPS_TYPE_JSON)
1254cd255ccfSMarko Kovacevic 		fips_test_write_one_case();
1255cd255ccfSMarko Kovacevic 
1256cd255ccfSMarko Kovacevic 	ret = fips_run_test();
1257cd255ccfSMarko Kovacevic 	if (ret < 0) {
12588a40ff39SArchana Muniganti 		if (ret == -EPERM || ret == -ENOTSUP) {
125989be27e3SBrandon Lo 			if (info.file_type == FIPS_TYPE_JSON)
126089be27e3SBrandon Lo 				return ret;
126189be27e3SBrandon Lo 
1262cd255ccfSMarko Kovacevic 			fprintf(info.fp_wr, "Bypass\n\n");
1263cd255ccfSMarko Kovacevic 			return 0;
1264cd255ccfSMarko Kovacevic 		}
1265cd255ccfSMarko Kovacevic 
1266cd255ccfSMarko Kovacevic 		return ret;
1267cd255ccfSMarko Kovacevic 	}
1268cd255ccfSMarko Kovacevic 
1269952e10cdSFan Zhang 	ret = get_writeback_data(&val);
1270952e10cdSFan Zhang 	if (ret < 0)
1271952e10cdSFan Zhang 		return ret;
1272cd255ccfSMarko Kovacevic 
1273cd255ccfSMarko Kovacevic 	switch (info.file_type) {
1274cd255ccfSMarko Kovacevic 	case FIPS_TYPE_REQ:
1275cd255ccfSMarko Kovacevic 	case FIPS_TYPE_RSP:
127689be27e3SBrandon Lo 	case FIPS_TYPE_JSON:
1277cd255ccfSMarko Kovacevic 		if (info.parse_writeback == NULL)
1278cd255ccfSMarko Kovacevic 			return -EPERM;
1279cd255ccfSMarko Kovacevic 		ret = info.parse_writeback(&val);
1280cd255ccfSMarko Kovacevic 		if (ret < 0)
1281cd255ccfSMarko Kovacevic 			return ret;
1282cd255ccfSMarko Kovacevic 		break;
1283cd255ccfSMarko Kovacevic 	case FIPS_TYPE_FAX:
1284cd255ccfSMarko Kovacevic 		if (info.kat_check == NULL)
1285cd255ccfSMarko Kovacevic 			return -EPERM;
1286cd255ccfSMarko Kovacevic 		ret = info.kat_check(&val);
1287cd255ccfSMarko Kovacevic 		if (ret < 0)
1288cd255ccfSMarko Kovacevic 			return ret;
1289cd255ccfSMarko Kovacevic 		break;
1290f556293fSBrandon Lo 	default:
1291f556293fSBrandon Lo 		break;
1292cd255ccfSMarko Kovacevic 	}
1293cd255ccfSMarko Kovacevic 
129489be27e3SBrandon Lo 	if (info.file_type != FIPS_TYPE_JSON)
1295cd255ccfSMarko Kovacevic 		fprintf(info.fp_wr, "\n");
1296952e10cdSFan Zhang 	free(val.val);
1297cd255ccfSMarko Kovacevic 
1298cd255ccfSMarko Kovacevic 	return 0;
1299cd255ccfSMarko Kovacevic }
1300cd255ccfSMarko Kovacevic 
1301cd255ccfSMarko Kovacevic static int
1302527cbf3dSMarko Kovacevic fips_mct_tdes_test(void)
1303527cbf3dSMarko Kovacevic {
1304527cbf3dSMarko Kovacevic #define TDES_BLOCK_SIZE		8
1305527cbf3dSMarko Kovacevic #define TDES_EXTERN_ITER	400
1306527cbf3dSMarko Kovacevic #define TDES_INTERN_ITER	10000
1307952e10cdSFan Zhang 	struct fips_val val = {NULL, 0}, val_key;
13089252e81aSMarko Kovacevic 	uint8_t prev_out[TDES_BLOCK_SIZE] = {0};
13099252e81aSMarko Kovacevic 	uint8_t prev_prev_out[TDES_BLOCK_SIZE] = {0};
13109252e81aSMarko Kovacevic 	uint8_t prev_in[TDES_BLOCK_SIZE] = {0};
1311527cbf3dSMarko Kovacevic 	uint32_t i, j, k;
1312527cbf3dSMarko Kovacevic 	int ret;
1313ae65004fSMichael Shamis 	int test_mode = info.interim_info.tdes_data.test_mode;
1314527cbf3dSMarko Kovacevic 
1315527cbf3dSMarko Kovacevic 	for (i = 0; i < TDES_EXTERN_ITER; i++) {
131679365018SArchana Muniganti 		if ((i == 0) && (info.version == 21.4f)) {
13172b84d2bdSArchana Muniganti 			if (!(strstr(info.vec[0], "COUNT")))
13182b84d2bdSArchana Muniganti 				fprintf(info.fp_wr, "%s%u\n", "COUNT = ", 0);
131979365018SArchana Muniganti 		}
132079365018SArchana Muniganti 
132179365018SArchana Muniganti 		if (i != 0)
1322527cbf3dSMarko Kovacevic 			update_info_vec(i);
1323527cbf3dSMarko Kovacevic 
1324527cbf3dSMarko Kovacevic 		fips_test_write_one_case();
1325527cbf3dSMarko Kovacevic 
1326527cbf3dSMarko Kovacevic 		for (j = 0; j < TDES_INTERN_ITER; j++) {
1327527cbf3dSMarko Kovacevic 			ret = fips_run_test();
1328527cbf3dSMarko Kovacevic 			if (ret < 0) {
1329527cbf3dSMarko Kovacevic 				if (ret == -EPERM) {
133089be27e3SBrandon Lo 					if (info.file_type == FIPS_TYPE_JSON)
133189be27e3SBrandon Lo 						return ret;
133289be27e3SBrandon Lo 
1333527cbf3dSMarko Kovacevic 					fprintf(info.fp_wr, "Bypass\n");
1334527cbf3dSMarko Kovacevic 					return 0;
1335527cbf3dSMarko Kovacevic 				}
1336527cbf3dSMarko Kovacevic 				return ret;
1337527cbf3dSMarko Kovacevic 			}
1338527cbf3dSMarko Kovacevic 
1339952e10cdSFan Zhang 			ret = get_writeback_data(&val);
1340952e10cdSFan Zhang 			if (ret < 0)
1341952e10cdSFan Zhang 				return ret;
1342527cbf3dSMarko Kovacevic 
1343527cbf3dSMarko Kovacevic 			if (info.op == FIPS_TEST_DEC_AUTH_VERIF)
1344527cbf3dSMarko Kovacevic 				memcpy(prev_in, vec.ct.val, TDES_BLOCK_SIZE);
1345527cbf3dSMarko Kovacevic 
1346527cbf3dSMarko Kovacevic 			if (j == 0) {
1347527cbf3dSMarko Kovacevic 				memcpy(prev_out, val.val, TDES_BLOCK_SIZE);
1348527cbf3dSMarko Kovacevic 
1349527cbf3dSMarko Kovacevic 				if (info.op == FIPS_TEST_ENC_AUTH_GEN) {
1350ae65004fSMichael Shamis 					if (test_mode == TDES_MODE_ECB) {
1351ae65004fSMichael Shamis 						memcpy(vec.pt.val, val.val,
1352ae65004fSMichael Shamis 							   TDES_BLOCK_SIZE);
1353ae65004fSMichael Shamis 					} else {
1354527cbf3dSMarko Kovacevic 						memcpy(vec.pt.val, vec.iv.val,
1355527cbf3dSMarko Kovacevic 							   TDES_BLOCK_SIZE);
1356527cbf3dSMarko Kovacevic 						memcpy(vec.iv.val, val.val,
1357527cbf3dSMarko Kovacevic 							   TDES_BLOCK_SIZE);
1358ae65004fSMichael Shamis 					}
1359ae65004fSMichael Shamis 
1360ae65004fSMichael Shamis 				} else {
1361ae65004fSMichael Shamis 					if (test_mode == TDES_MODE_ECB) {
1362ae65004fSMichael Shamis 						memcpy(vec.ct.val, val.val,
1363ae65004fSMichael Shamis 							   TDES_BLOCK_SIZE);
1364527cbf3dSMarko Kovacevic 					} else {
1365527cbf3dSMarko Kovacevic 						memcpy(vec.iv.val, vec.ct.val,
1366527cbf3dSMarko Kovacevic 							   TDES_BLOCK_SIZE);
1367527cbf3dSMarko Kovacevic 						memcpy(vec.ct.val, val.val,
1368527cbf3dSMarko Kovacevic 							   TDES_BLOCK_SIZE);
1369527cbf3dSMarko Kovacevic 					}
1370ae65004fSMichael Shamis 				}
1371527cbf3dSMarko Kovacevic 				continue;
1372527cbf3dSMarko Kovacevic 			}
1373527cbf3dSMarko Kovacevic 
1374527cbf3dSMarko Kovacevic 			if (info.op == FIPS_TEST_ENC_AUTH_GEN) {
1375ae65004fSMichael Shamis 				if (test_mode == TDES_MODE_ECB) {
1376ae65004fSMichael Shamis 					memcpy(vec.pt.val, val.val,
1377ae65004fSMichael Shamis 						   TDES_BLOCK_SIZE);
1378527cbf3dSMarko Kovacevic 				} else {
1379ae65004fSMichael Shamis 					memcpy(vec.iv.val, val.val,
1380ae65004fSMichael Shamis 						   TDES_BLOCK_SIZE);
1381ae65004fSMichael Shamis 					memcpy(vec.pt.val, prev_out,
1382ae65004fSMichael Shamis 						   TDES_BLOCK_SIZE);
1383ae65004fSMichael Shamis 				}
1384ae65004fSMichael Shamis 			} else {
1385ae65004fSMichael Shamis 				if (test_mode == TDES_MODE_ECB) {
1386ae65004fSMichael Shamis 					memcpy(vec.ct.val, val.val,
1387ae65004fSMichael Shamis 						   TDES_BLOCK_SIZE);
1388ae65004fSMichael Shamis 				} else {
1389ae65004fSMichael Shamis 					memcpy(vec.iv.val, vec.ct.val,
1390ae65004fSMichael Shamis 						   TDES_BLOCK_SIZE);
1391ae65004fSMichael Shamis 					memcpy(vec.ct.val, val.val,
1392ae65004fSMichael Shamis 						   TDES_BLOCK_SIZE);
1393ae65004fSMichael Shamis 				}
1394527cbf3dSMarko Kovacevic 			}
1395527cbf3dSMarko Kovacevic 
1396527cbf3dSMarko Kovacevic 			if (j == TDES_INTERN_ITER - 1)
1397527cbf3dSMarko Kovacevic 				continue;
1398527cbf3dSMarko Kovacevic 
1399527cbf3dSMarko Kovacevic 			memcpy(prev_out, val.val, TDES_BLOCK_SIZE);
1400527cbf3dSMarko Kovacevic 
1401527cbf3dSMarko Kovacevic 			if (j == TDES_INTERN_ITER - 3)
1402527cbf3dSMarko Kovacevic 				memcpy(prev_prev_out, val.val, TDES_BLOCK_SIZE);
1403527cbf3dSMarko Kovacevic 		}
1404527cbf3dSMarko Kovacevic 
1405527cbf3dSMarko Kovacevic 		info.parse_writeback(&val);
1406527cbf3dSMarko Kovacevic 		fprintf(info.fp_wr, "\n");
1407527cbf3dSMarko Kovacevic 
1408527cbf3dSMarko Kovacevic 		if (i == TDES_EXTERN_ITER - 1)
1409527cbf3dSMarko Kovacevic 			continue;
1410527cbf3dSMarko Kovacevic 
1411527cbf3dSMarko Kovacevic 		/** update key */
1412527cbf3dSMarko Kovacevic 		memcpy(&val_key, &vec.cipher_auth.key, sizeof(val_key));
1413527cbf3dSMarko Kovacevic 
1414527cbf3dSMarko Kovacevic 		if (info.interim_info.tdes_data.nb_keys == 0) {
1415527cbf3dSMarko Kovacevic 			if (memcmp(val_key.val, val_key.val + 8, 8) == 0)
1416527cbf3dSMarko Kovacevic 				info.interim_info.tdes_data.nb_keys = 1;
1417527cbf3dSMarko Kovacevic 			else if (memcmp(val_key.val, val_key.val + 16, 8) == 0)
1418527cbf3dSMarko Kovacevic 				info.interim_info.tdes_data.nb_keys = 2;
1419527cbf3dSMarko Kovacevic 			else
1420527cbf3dSMarko Kovacevic 				info.interim_info.tdes_data.nb_keys = 3;
1421527cbf3dSMarko Kovacevic 
1422527cbf3dSMarko Kovacevic 		}
1423527cbf3dSMarko Kovacevic 
1424527cbf3dSMarko Kovacevic 		for (k = 0; k < TDES_BLOCK_SIZE; k++) {
1425527cbf3dSMarko Kovacevic 
1426527cbf3dSMarko Kovacevic 			switch (info.interim_info.tdes_data.nb_keys) {
1427527cbf3dSMarko Kovacevic 			case 3:
1428527cbf3dSMarko Kovacevic 				val_key.val[k] ^= val.val[k];
1429527cbf3dSMarko Kovacevic 				val_key.val[k + 8] ^= prev_out[k];
1430527cbf3dSMarko Kovacevic 				val_key.val[k + 16] ^= prev_prev_out[k];
1431527cbf3dSMarko Kovacevic 				break;
1432527cbf3dSMarko Kovacevic 			case 2:
1433527cbf3dSMarko Kovacevic 				val_key.val[k] ^= val.val[k];
1434527cbf3dSMarko Kovacevic 				val_key.val[k + 8] ^= prev_out[k];
1435527cbf3dSMarko Kovacevic 				val_key.val[k + 16] ^= val.val[k];
1436527cbf3dSMarko Kovacevic 				break;
1437527cbf3dSMarko Kovacevic 			default: /* case 1 */
1438527cbf3dSMarko Kovacevic 				val_key.val[k] ^= val.val[k];
1439527cbf3dSMarko Kovacevic 				val_key.val[k + 8] ^= val.val[k];
1440527cbf3dSMarko Kovacevic 				val_key.val[k + 16] ^= val.val[k];
1441527cbf3dSMarko Kovacevic 				break;
1442527cbf3dSMarko Kovacevic 			}
1443527cbf3dSMarko Kovacevic 
1444527cbf3dSMarko Kovacevic 		}
1445527cbf3dSMarko Kovacevic 
1446527cbf3dSMarko Kovacevic 		for (k = 0; k < 24; k++)
1447527cbf3dSMarko Kovacevic 			val_key.val[k] = (__builtin_popcount(val_key.val[k]) &
1448527cbf3dSMarko Kovacevic 					0x1) ?
1449527cbf3dSMarko Kovacevic 					val_key.val[k] : (val_key.val[k] ^ 0x1);
1450527cbf3dSMarko Kovacevic 
1451527cbf3dSMarko Kovacevic 		if (info.op == FIPS_TEST_ENC_AUTH_GEN) {
1452ae65004fSMichael Shamis 			if (test_mode == TDES_MODE_ECB) {
1453ae65004fSMichael Shamis 				memcpy(vec.pt.val, val.val, TDES_BLOCK_SIZE);
1454ae65004fSMichael Shamis 			} else {
1455527cbf3dSMarko Kovacevic 				memcpy(vec.iv.val, val.val, TDES_BLOCK_SIZE);
1456527cbf3dSMarko Kovacevic 				memcpy(vec.pt.val, prev_out, TDES_BLOCK_SIZE);
1457ae65004fSMichael Shamis 			}
1458ae65004fSMichael Shamis 		} else {
1459ae65004fSMichael Shamis 			if (test_mode == TDES_MODE_ECB) {
1460ae65004fSMichael Shamis 				memcpy(vec.ct.val, val.val, TDES_BLOCK_SIZE);
1461527cbf3dSMarko Kovacevic 			} else {
1462527cbf3dSMarko Kovacevic 				memcpy(vec.iv.val, prev_out, TDES_BLOCK_SIZE);
1463527cbf3dSMarko Kovacevic 				memcpy(vec.ct.val, val.val, TDES_BLOCK_SIZE);
1464527cbf3dSMarko Kovacevic 			}
1465527cbf3dSMarko Kovacevic 		}
1466ae65004fSMichael Shamis 	}
1467527cbf3dSMarko Kovacevic 
1468952e10cdSFan Zhang 	free(val.val);
1469952e10cdSFan Zhang 
1470527cbf3dSMarko Kovacevic 	return 0;
1471527cbf3dSMarko Kovacevic }
1472527cbf3dSMarko Kovacevic 
1473527cbf3dSMarko Kovacevic static int
1474d3190431SMichael Shamis fips_mct_aes_ecb_test(void)
1475d3190431SMichael Shamis {
1476d3190431SMichael Shamis #define AES_BLOCK_SIZE	16
1477d3190431SMichael Shamis #define AES_EXTERN_ITER	100
1478d3190431SMichael Shamis #define AES_INTERN_ITER	1000
1479952e10cdSFan Zhang 	struct fips_val val = {NULL, 0}, val_key;
1480d3190431SMichael Shamis 	uint8_t prev_out[AES_BLOCK_SIZE] = {0};
1481d3190431SMichael Shamis 	uint32_t i, j, k;
1482d3190431SMichael Shamis 	int ret;
1483d3190431SMichael Shamis 
1484d3190431SMichael Shamis 	for (i = 0; i < AES_EXTERN_ITER; i++) {
1485d3190431SMichael Shamis 		if (i != 0)
1486d3190431SMichael Shamis 			update_info_vec(i);
1487d3190431SMichael Shamis 
1488d3190431SMichael Shamis 		fips_test_write_one_case();
1489d3190431SMichael Shamis 
1490d3190431SMichael Shamis 		for (j = 0; j < AES_INTERN_ITER; j++) {
1491d3190431SMichael Shamis 			ret = fips_run_test();
1492d3190431SMichael Shamis 			if (ret < 0) {
1493d3190431SMichael Shamis 				if (ret == -EPERM) {
149489be27e3SBrandon Lo 					if (info.file_type == FIPS_TYPE_JSON)
149589be27e3SBrandon Lo 						return ret;
149689be27e3SBrandon Lo 
1497d3190431SMichael Shamis 					fprintf(info.fp_wr, "Bypass\n");
1498d3190431SMichael Shamis 					return 0;
1499d3190431SMichael Shamis 				}
1500d3190431SMichael Shamis 
1501d3190431SMichael Shamis 				return ret;
1502d3190431SMichael Shamis 			}
1503d3190431SMichael Shamis 
1504952e10cdSFan Zhang 			ret = get_writeback_data(&val);
1505952e10cdSFan Zhang 			if (ret < 0)
1506952e10cdSFan Zhang 				return ret;
1507d3190431SMichael Shamis 
1508d3190431SMichael Shamis 			if (info.op == FIPS_TEST_ENC_AUTH_GEN)
1509d3190431SMichael Shamis 				memcpy(vec.pt.val, val.val, AES_BLOCK_SIZE);
1510d3190431SMichael Shamis 			else
1511d3190431SMichael Shamis 				memcpy(vec.ct.val, val.val, AES_BLOCK_SIZE);
1512d3190431SMichael Shamis 
1513d3190431SMichael Shamis 			if (j == AES_INTERN_ITER - 1)
1514d3190431SMichael Shamis 				continue;
1515d3190431SMichael Shamis 
1516d3190431SMichael Shamis 			memcpy(prev_out, val.val, AES_BLOCK_SIZE);
1517d3190431SMichael Shamis 		}
1518d3190431SMichael Shamis 
1519d3190431SMichael Shamis 		info.parse_writeback(&val);
1520d3190431SMichael Shamis 		fprintf(info.fp_wr, "\n");
1521d3190431SMichael Shamis 
1522d3190431SMichael Shamis 		if (i == AES_EXTERN_ITER - 1)
1523d3190431SMichael Shamis 			continue;
1524d3190431SMichael Shamis 
1525d3190431SMichael Shamis 		/** update key */
1526d3190431SMichael Shamis 		memcpy(&val_key, &vec.cipher_auth.key, sizeof(val_key));
1527d3190431SMichael Shamis 		for (k = 0; k < vec.cipher_auth.key.len; k++) {
1528d3190431SMichael Shamis 			switch (vec.cipher_auth.key.len) {
1529d3190431SMichael Shamis 			case 16:
1530d3190431SMichael Shamis 				val_key.val[k] ^= val.val[k];
1531d3190431SMichael Shamis 				break;
1532d3190431SMichael Shamis 			case 24:
1533d3190431SMichael Shamis 				if (k < 8)
1534d3190431SMichael Shamis 					val_key.val[k] ^= prev_out[k + 8];
1535d3190431SMichael Shamis 				else
1536d3190431SMichael Shamis 					val_key.val[k] ^= val.val[k - 8];
1537d3190431SMichael Shamis 				break;
1538d3190431SMichael Shamis 			case 32:
1539d3190431SMichael Shamis 				if (k < 16)
1540d3190431SMichael Shamis 					val_key.val[k] ^= prev_out[k];
1541d3190431SMichael Shamis 				else
1542d3190431SMichael Shamis 					val_key.val[k] ^= val.val[k - 16];
1543d3190431SMichael Shamis 				break;
1544d3190431SMichael Shamis 			default:
1545d3190431SMichael Shamis 				return -1;
1546d3190431SMichael Shamis 			}
1547d3190431SMichael Shamis 		}
1548d3190431SMichael Shamis 	}
1549d3190431SMichael Shamis 
1550952e10cdSFan Zhang 	free(val.val);
1551952e10cdSFan Zhang 
1552d3190431SMichael Shamis 	return 0;
1553d3190431SMichael Shamis }
1554d3190431SMichael Shamis static int
1555cd255ccfSMarko Kovacevic fips_mct_aes_test(void)
1556cd255ccfSMarko Kovacevic {
1557cd255ccfSMarko Kovacevic #define AES_BLOCK_SIZE	16
1558cd255ccfSMarko Kovacevic #define AES_EXTERN_ITER	100
1559cd255ccfSMarko Kovacevic #define AES_INTERN_ITER	1000
15608b8546aaSGowrishankar Muthukrishnan 	struct fips_val val[3] = {{NULL, 0},}, val_key,  pt, ct, iv;
1561cd255ccfSMarko Kovacevic 	uint8_t prev_out[AES_BLOCK_SIZE] = {0};
1562cd255ccfSMarko Kovacevic 	uint8_t prev_in[AES_BLOCK_SIZE] = {0};
1563cd255ccfSMarko Kovacevic 	uint32_t i, j, k;
1564cd255ccfSMarko Kovacevic 	int ret;
1565cd255ccfSMarko Kovacevic 
1566d3190431SMichael Shamis 	if (info.interim_info.aes_data.cipher_algo == RTE_CRYPTO_CIPHER_AES_ECB)
1567d3190431SMichael Shamis 		return fips_mct_aes_ecb_test();
1568d3190431SMichael Shamis 
15698b8546aaSGowrishankar Muthukrishnan 	memset(&pt, 0, sizeof(struct fips_val));
15708b8546aaSGowrishankar Muthukrishnan 	memset(&ct, 0, sizeof(struct fips_val));
15718b8546aaSGowrishankar Muthukrishnan 	memset(&iv, 0, sizeof(struct fips_val));
1572cd255ccfSMarko Kovacevic 	for (i = 0; i < AES_EXTERN_ITER; i++) {
15738b8546aaSGowrishankar Muthukrishnan 		if (info.file_type != FIPS_TYPE_JSON) {
1574cd255ccfSMarko Kovacevic 			if (i != 0)
1575cd255ccfSMarko Kovacevic 				update_info_vec(i);
1576cd255ccfSMarko Kovacevic 
1577cd255ccfSMarko Kovacevic 			fips_test_write_one_case();
15788b8546aaSGowrishankar Muthukrishnan 		}
1579cd255ccfSMarko Kovacevic 
1580cd255ccfSMarko Kovacevic 		for (j = 0; j < AES_INTERN_ITER; j++) {
1581cd255ccfSMarko Kovacevic 			ret = fips_run_test();
1582cd255ccfSMarko Kovacevic 			if (ret < 0) {
1583cd255ccfSMarko Kovacevic 				if (ret == -EPERM) {
158489be27e3SBrandon Lo 					if (info.file_type == FIPS_TYPE_JSON)
158589be27e3SBrandon Lo 						return ret;
158689be27e3SBrandon Lo 
1587cd255ccfSMarko Kovacevic 					fprintf(info.fp_wr, "Bypass\n");
1588cd255ccfSMarko Kovacevic 					return 0;
1589cd255ccfSMarko Kovacevic 				}
1590cd255ccfSMarko Kovacevic 
1591cd255ccfSMarko Kovacevic 				return ret;
1592cd255ccfSMarko Kovacevic 			}
1593cd255ccfSMarko Kovacevic 
15948b8546aaSGowrishankar Muthukrishnan 			ret = get_writeback_data(&val[0]);
1595afda6b01SCiara Power 			if (ret < 0)
1596afda6b01SCiara Power 				return ret;
1597cd255ccfSMarko Kovacevic 
1598cd255ccfSMarko Kovacevic 			if (info.op == FIPS_TEST_DEC_AUTH_VERIF)
1599cd255ccfSMarko Kovacevic 				memcpy(prev_in, vec.ct.val, AES_BLOCK_SIZE);
1600cd255ccfSMarko Kovacevic 
1601cd255ccfSMarko Kovacevic 			if (j == 0) {
16028b8546aaSGowrishankar Muthukrishnan 				memcpy(prev_out, val[0].val, AES_BLOCK_SIZE);
16038b8546aaSGowrishankar Muthukrishnan 				pt.len = vec.pt.len;
16048b8546aaSGowrishankar Muthukrishnan 				pt.val = calloc(1, pt.len);
16058b8546aaSGowrishankar Muthukrishnan 				memcpy(pt.val, vec.pt.val, pt.len);
16068b8546aaSGowrishankar Muthukrishnan 
16078b8546aaSGowrishankar Muthukrishnan 				ct.len = vec.ct.len;
16088b8546aaSGowrishankar Muthukrishnan 				ct.val = calloc(1, ct.len);
16098b8546aaSGowrishankar Muthukrishnan 				memcpy(ct.val, vec.ct.val, ct.len);
16108b8546aaSGowrishankar Muthukrishnan 
16118b8546aaSGowrishankar Muthukrishnan 				iv.len = vec.iv.len;
16128b8546aaSGowrishankar Muthukrishnan 				iv.val = calloc(1, iv.len);
16138b8546aaSGowrishankar Muthukrishnan 				memcpy(iv.val, vec.iv.val, iv.len);
1614cd255ccfSMarko Kovacevic 
1615cd255ccfSMarko Kovacevic 				if (info.op == FIPS_TEST_ENC_AUTH_GEN) {
16168b8546aaSGowrishankar Muthukrishnan 					memcpy(vec.pt.val, vec.iv.val, AES_BLOCK_SIZE);
16178b8546aaSGowrishankar Muthukrishnan 					memcpy(vec.iv.val, val[0].val, AES_BLOCK_SIZE);
16188b8546aaSGowrishankar Muthukrishnan 					val[1].val = pt.val;
16198b8546aaSGowrishankar Muthukrishnan 					val[1].len = pt.len;
16208b8546aaSGowrishankar Muthukrishnan 					val[2].val = iv.val;
16218b8546aaSGowrishankar Muthukrishnan 					val[2].len = iv.len;
1622cd255ccfSMarko Kovacevic 				} else {
16238b8546aaSGowrishankar Muthukrishnan 					memcpy(vec.ct.val, vec.iv.val, AES_BLOCK_SIZE);
16248b8546aaSGowrishankar Muthukrishnan 					memcpy(vec.iv.val, prev_in, AES_BLOCK_SIZE);
16258b8546aaSGowrishankar Muthukrishnan 					val[1].val = ct.val;
16268b8546aaSGowrishankar Muthukrishnan 					val[1].len = ct.len;
16278b8546aaSGowrishankar Muthukrishnan 					val[2].val = iv.val;
16288b8546aaSGowrishankar Muthukrishnan 					val[2].len = iv.len;
1629cd255ccfSMarko Kovacevic 				}
1630cd255ccfSMarko Kovacevic 				continue;
1631cd255ccfSMarko Kovacevic 			}
1632cd255ccfSMarko Kovacevic 
1633cd255ccfSMarko Kovacevic 			if (info.op == FIPS_TEST_ENC_AUTH_GEN) {
16348b8546aaSGowrishankar Muthukrishnan 				memcpy(vec.iv.val, val[0].val, AES_BLOCK_SIZE);
1635cd255ccfSMarko Kovacevic 				memcpy(vec.pt.val, prev_out, AES_BLOCK_SIZE);
1636cd255ccfSMarko Kovacevic 			} else {
1637cd255ccfSMarko Kovacevic 				memcpy(vec.iv.val, prev_in, AES_BLOCK_SIZE);
1638cd255ccfSMarko Kovacevic 				memcpy(vec.ct.val, prev_out, AES_BLOCK_SIZE);
1639cd255ccfSMarko Kovacevic 			}
1640cd255ccfSMarko Kovacevic 
1641cd255ccfSMarko Kovacevic 			if (j == AES_INTERN_ITER - 1)
1642cd255ccfSMarko Kovacevic 				continue;
1643cd255ccfSMarko Kovacevic 
16448b8546aaSGowrishankar Muthukrishnan 			memcpy(prev_out, val[0].val, AES_BLOCK_SIZE);
1645cd255ccfSMarko Kovacevic 		}
1646cd255ccfSMarko Kovacevic 
16478b8546aaSGowrishankar Muthukrishnan 		info.parse_writeback(val);
16488b8546aaSGowrishankar Muthukrishnan 		if (info.file_type != FIPS_TYPE_JSON)
1649cd255ccfSMarko Kovacevic 			fprintf(info.fp_wr, "\n");
1650cd255ccfSMarko Kovacevic 
16518b8546aaSGowrishankar Muthukrishnan 		if (i == AES_EXTERN_ITER - 1) {
16528b8546aaSGowrishankar Muthukrishnan 			free(pt.val);
16538b8546aaSGowrishankar Muthukrishnan 			free(ct.val);
16548b8546aaSGowrishankar Muthukrishnan 			free(iv.val);
1655cd255ccfSMarko Kovacevic 			continue;
16568b8546aaSGowrishankar Muthukrishnan 		}
1657cd255ccfSMarko Kovacevic 
1658cd255ccfSMarko Kovacevic 		/** update key */
1659cd255ccfSMarko Kovacevic 		memcpy(&val_key, &vec.cipher_auth.key, sizeof(val_key));
1660cd255ccfSMarko Kovacevic 		for (k = 0; k < vec.cipher_auth.key.len; k++) {
1661cd255ccfSMarko Kovacevic 			switch (vec.cipher_auth.key.len) {
1662cd255ccfSMarko Kovacevic 			case 16:
16638b8546aaSGowrishankar Muthukrishnan 				val_key.val[k] ^= val[0].val[k];
1664cd255ccfSMarko Kovacevic 				break;
1665cd255ccfSMarko Kovacevic 			case 24:
1666cd255ccfSMarko Kovacevic 				if (k < 8)
1667cd255ccfSMarko Kovacevic 					val_key.val[k] ^= prev_out[k + 8];
1668cd255ccfSMarko Kovacevic 				else
16698b8546aaSGowrishankar Muthukrishnan 					val_key.val[k] ^= val[0].val[k - 8];
1670cd255ccfSMarko Kovacevic 				break;
1671cd255ccfSMarko Kovacevic 			case 32:
1672cd255ccfSMarko Kovacevic 				if (k < 16)
1673cd255ccfSMarko Kovacevic 					val_key.val[k] ^= prev_out[k];
1674cd255ccfSMarko Kovacevic 				else
16758b8546aaSGowrishankar Muthukrishnan 					val_key.val[k] ^= val[0].val[k - 16];
1676cd255ccfSMarko Kovacevic 				break;
1677cd255ccfSMarko Kovacevic 			default:
1678cd255ccfSMarko Kovacevic 				return -1;
1679cd255ccfSMarko Kovacevic 			}
1680cd255ccfSMarko Kovacevic 		}
1681cd255ccfSMarko Kovacevic 
1682cd255ccfSMarko Kovacevic 		if (info.op == FIPS_TEST_DEC_AUTH_VERIF)
16838b8546aaSGowrishankar Muthukrishnan 			memcpy(vec.iv.val, val[0].val, AES_BLOCK_SIZE);
1684cd255ccfSMarko Kovacevic 	}
1685cd255ccfSMarko Kovacevic 
16868b8546aaSGowrishankar Muthukrishnan 	free(val[0].val);
1687952e10cdSFan Zhang 
1688cd255ccfSMarko Kovacevic 	return 0;
1689cd255ccfSMarko Kovacevic }
1690cd255ccfSMarko Kovacevic 
1691cd255ccfSMarko Kovacevic static int
1692f4797baeSDamian Nowak fips_mct_sha_test(void)
1693f4797baeSDamian Nowak {
1694f4797baeSDamian Nowak #define SHA_EXTERN_ITER	100
1695f4797baeSDamian Nowak #define SHA_INTERN_ITER	1000
1696f4797baeSDamian Nowak #define SHA_MD_BLOCK	3
1697d5c24714SGowrishankar Muthukrishnan 	/* val[0] is op result and other value is for parse_writeback callback */
1698d5c24714SGowrishankar Muthukrishnan 	struct fips_val val[2] = {{NULL, 0},};
1699d5c24714SGowrishankar Muthukrishnan 	struct fips_val  md[SHA_MD_BLOCK], msg;
1700f4797baeSDamian Nowak 	char temp[MAX_DIGEST_SIZE*2];
1701f4797baeSDamian Nowak 	int ret;
1702f4797baeSDamian Nowak 	uint32_t i, j;
1703f4797baeSDamian Nowak 
1704d5c24714SGowrishankar Muthukrishnan 	msg.len = SHA_MD_BLOCK * vec.cipher_auth.digest.len;
1705d5c24714SGowrishankar Muthukrishnan 	msg.val = calloc(1, msg.len);
1706d5c24714SGowrishankar Muthukrishnan 	memcpy(vec.cipher_auth.digest.val, vec.pt.val, vec.cipher_auth.digest.len);
1707f4797baeSDamian Nowak 	for (i = 0; i < SHA_MD_BLOCK; i++)
1708f4797baeSDamian Nowak 		md[i].val = rte_malloc(NULL, (MAX_DIGEST_SIZE*2), 0);
1709f4797baeSDamian Nowak 
1710f4797baeSDamian Nowak 	rte_free(vec.pt.val);
1711f4797baeSDamian Nowak 	vec.pt.val = rte_malloc(NULL, (MAX_DIGEST_SIZE*SHA_MD_BLOCK), 0);
1712f4797baeSDamian Nowak 
1713d5c24714SGowrishankar Muthukrishnan 	if (info.file_type != FIPS_TYPE_JSON) {
1714f4797baeSDamian Nowak 		fips_test_write_one_case();
1715f4797baeSDamian Nowak 		fprintf(info.fp_wr, "\n");
1716d5c24714SGowrishankar Muthukrishnan 	}
1717f4797baeSDamian Nowak 
1718f4797baeSDamian Nowak 	for (j = 0; j < SHA_EXTERN_ITER; j++) {
1719f4797baeSDamian Nowak 
1720f4797baeSDamian Nowak 		memcpy(md[0].val, vec.cipher_auth.digest.val,
1721f4797baeSDamian Nowak 			vec.cipher_auth.digest.len);
1722f4797baeSDamian Nowak 		md[0].len = vec.cipher_auth.digest.len;
1723f4797baeSDamian Nowak 		memcpy(md[1].val, vec.cipher_auth.digest.val,
1724f4797baeSDamian Nowak 			vec.cipher_auth.digest.len);
1725f4797baeSDamian Nowak 		md[1].len = vec.cipher_auth.digest.len;
1726f4797baeSDamian Nowak 		memcpy(md[2].val, vec.cipher_auth.digest.val,
1727f4797baeSDamian Nowak 			vec.cipher_auth.digest.len);
1728f4797baeSDamian Nowak 		md[2].len = vec.cipher_auth.digest.len;
1729f4797baeSDamian Nowak 
1730d5c24714SGowrishankar Muthukrishnan 		for (i = 0; i < SHA_MD_BLOCK; i++)
1731d5c24714SGowrishankar Muthukrishnan 			memcpy(&msg.val[i * md[i].len], md[i].val, md[i].len);
1732d5c24714SGowrishankar Muthukrishnan 
1733f4797baeSDamian Nowak 		for (i = 0; i < (SHA_INTERN_ITER); i++) {
1734f4797baeSDamian Nowak 
1735f4797baeSDamian Nowak 			memcpy(vec.pt.val, md[0].val,
1736f4797baeSDamian Nowak 				(size_t)md[0].len);
1737f4797baeSDamian Nowak 			memcpy((vec.pt.val + md[0].len), md[1].val,
1738f4797baeSDamian Nowak 				(size_t)md[1].len);
1739f4797baeSDamian Nowak 			memcpy((vec.pt.val + md[0].len + md[1].len),
1740f4797baeSDamian Nowak 				md[2].val,
1741f4797baeSDamian Nowak 				(size_t)md[2].len);
1742f4797baeSDamian Nowak 			vec.pt.len = md[0].len + md[1].len + md[2].len;
1743f4797baeSDamian Nowak 
1744f4797baeSDamian Nowak 			ret = fips_run_test();
1745f4797baeSDamian Nowak 			if (ret < 0) {
17468a40ff39SArchana Muniganti 				if (ret == -EPERM || ret == -ENOTSUP) {
174789be27e3SBrandon Lo 					if (info.file_type == FIPS_TYPE_JSON)
174889be27e3SBrandon Lo 						return ret;
174989be27e3SBrandon Lo 
1750f4797baeSDamian Nowak 					fprintf(info.fp_wr, "Bypass\n\n");
1751f4797baeSDamian Nowak 					return 0;
1752f4797baeSDamian Nowak 				}
1753f4797baeSDamian Nowak 				return ret;
1754f4797baeSDamian Nowak 			}
1755f4797baeSDamian Nowak 
1756d5c24714SGowrishankar Muthukrishnan 			ret = get_writeback_data(&val[0]);
1757afda6b01SCiara Power 			if (ret < 0)
1758afda6b01SCiara Power 				return ret;
1759f4797baeSDamian Nowak 
1760f4797baeSDamian Nowak 			memcpy(md[0].val, md[1].val, md[1].len);
1761f4797baeSDamian Nowak 			md[0].len = md[1].len;
1762f4797baeSDamian Nowak 			memcpy(md[1].val, md[2].val, md[2].len);
1763f4797baeSDamian Nowak 			md[1].len = md[2].len;
1764f4797baeSDamian Nowak 
1765d5c24714SGowrishankar Muthukrishnan 			memcpy(md[2].val, (val[0].val + vec.pt.len),
1766f4797baeSDamian Nowak 				vec.cipher_auth.digest.len);
1767f4797baeSDamian Nowak 			md[2].len = vec.cipher_auth.digest.len;
1768f4797baeSDamian Nowak 		}
1769f4797baeSDamian Nowak 
1770f4797baeSDamian Nowak 		memcpy(vec.cipher_auth.digest.val, md[2].val, md[2].len);
1771f4797baeSDamian Nowak 		vec.cipher_auth.digest.len = md[2].len;
1772f4797baeSDamian Nowak 
1773d5c24714SGowrishankar Muthukrishnan 		if (info.file_type != FIPS_TYPE_JSON) {
1774f4797baeSDamian Nowak 			fprintf(info.fp_wr, "COUNT = %u\n", j);
1775f4797baeSDamian Nowak 			writeback_hex_str("", temp, &vec.cipher_auth.digest);
1776f4797baeSDamian Nowak 			fprintf(info.fp_wr, "MD = %s\n\n", temp);
1777f4797baeSDamian Nowak 		}
1778d5c24714SGowrishankar Muthukrishnan 		val[1].val = msg.val;
1779d5c24714SGowrishankar Muthukrishnan 		val[1].len = msg.len;
1780d5c24714SGowrishankar Muthukrishnan 		info.parse_writeback(val);
1781d5c24714SGowrishankar Muthukrishnan 	}
1782f4797baeSDamian Nowak 
1783f4797baeSDamian Nowak 	for (i = 0; i < (SHA_MD_BLOCK); i++)
1784f4797baeSDamian Nowak 		rte_free(md[i].val);
1785f4797baeSDamian Nowak 
1786f4797baeSDamian Nowak 	rte_free(vec.pt.val);
1787f4797baeSDamian Nowak 
1788d5c24714SGowrishankar Muthukrishnan 	free(val[0].val);
1789d5c24714SGowrishankar Muthukrishnan 	free(msg.val);
1790952e10cdSFan Zhang 
1791f4797baeSDamian Nowak 	return 0;
1792f4797baeSDamian Nowak }
1793f4797baeSDamian Nowak 
1794f4797baeSDamian Nowak 
1795f4797baeSDamian Nowak static int
1796cd255ccfSMarko Kovacevic init_test_ops(void)
1797cd255ccfSMarko Kovacevic {
1798cd255ccfSMarko Kovacevic 	switch (info.algo) {
179975777166SGowrishankar Muthukrishnan 	case FIPS_TEST_ALGO_AES_CBC:
1800cd255ccfSMarko Kovacevic 	case FIPS_TEST_ALGO_AES:
1801cd255ccfSMarko Kovacevic 		test_ops.prepare_op = prepare_cipher_op;
1802cd255ccfSMarko Kovacevic 		test_ops.prepare_xform  = prepare_aes_xform;
1803cd255ccfSMarko Kovacevic 		if (info.interim_info.aes_data.test_type == AESAVS_TYPE_MCT)
1804cd255ccfSMarko Kovacevic 			test_ops.test = fips_mct_aes_test;
1805cd255ccfSMarko Kovacevic 		else
1806cd255ccfSMarko Kovacevic 			test_ops.test = fips_generic_test;
1807cd255ccfSMarko Kovacevic 		break;
1808f64adb67SMarko Kovacevic 	case FIPS_TEST_ALGO_HMAC:
1809f64adb67SMarko Kovacevic 		test_ops.prepare_op = prepare_auth_op;
1810f64adb67SMarko Kovacevic 		test_ops.prepare_xform = prepare_hmac_xform;
1811f64adb67SMarko Kovacevic 		test_ops.test = fips_generic_test;
1812f64adb67SMarko Kovacevic 		break;
1813527cbf3dSMarko Kovacevic 	case FIPS_TEST_ALGO_TDES:
1814527cbf3dSMarko Kovacevic 		test_ops.prepare_op = prepare_cipher_op;
1815527cbf3dSMarko Kovacevic 		test_ops.prepare_xform  = prepare_tdes_xform;
1816527cbf3dSMarko Kovacevic 		if (info.interim_info.tdes_data.test_type == TDES_MCT)
1817527cbf3dSMarko Kovacevic 			test_ops.test = fips_mct_tdes_test;
1818527cbf3dSMarko Kovacevic 		else
1819527cbf3dSMarko Kovacevic 			test_ops.test = fips_generic_test;
1820527cbf3dSMarko Kovacevic 		break;
18214aaad299SMarko Kovacevic 	case FIPS_TEST_ALGO_AES_GCM:
18224aaad299SMarko Kovacevic 		test_ops.prepare_op = prepare_aead_op;
18234aaad299SMarko Kovacevic 		test_ops.prepare_xform = prepare_gcm_xform;
18244aaad299SMarko Kovacevic 		test_ops.test = fips_generic_test;
18254aaad299SMarko Kovacevic 		break;
1826ac026f46SMarko Kovacevic 	case FIPS_TEST_ALGO_AES_CMAC:
1827ac026f46SMarko Kovacevic 		test_ops.prepare_op = prepare_auth_op;
1828ac026f46SMarko Kovacevic 		test_ops.prepare_xform = prepare_cmac_xform;
1829ac026f46SMarko Kovacevic 		test_ops.test = fips_generic_test;
1830ac026f46SMarko Kovacevic 		break;
1831305921f4SMarko Kovacevic 	case FIPS_TEST_ALGO_AES_CCM:
1832305921f4SMarko Kovacevic 		test_ops.prepare_op = prepare_aead_op;
1833305921f4SMarko Kovacevic 		test_ops.prepare_xform = prepare_ccm_xform;
1834305921f4SMarko Kovacevic 		test_ops.test = fips_generic_test;
1835305921f4SMarko Kovacevic 		break;
1836f4797baeSDamian Nowak 	case FIPS_TEST_ALGO_SHA:
1837f4797baeSDamian Nowak 		test_ops.prepare_op = prepare_auth_op;
1838f4797baeSDamian Nowak 		test_ops.prepare_xform = prepare_sha_xform;
1839f4797baeSDamian Nowak 		if (info.interim_info.sha_data.test_type == SHA_MCT)
1840f4797baeSDamian Nowak 			test_ops.test = fips_mct_sha_test;
1841f4797baeSDamian Nowak 		else
1842f4797baeSDamian Nowak 			test_ops.test = fips_generic_test;
1843f4797baeSDamian Nowak 		break;
1844d5a9ea55SSucharitha Sarananaga 	case FIPS_TEST_ALGO_AES_XTS:
1845d5a9ea55SSucharitha Sarananaga 		test_ops.prepare_op = prepare_cipher_op;
1846d5a9ea55SSucharitha Sarananaga 		test_ops.prepare_xform = prepare_xts_xform;
1847d5a9ea55SSucharitha Sarananaga 		test_ops.test = fips_generic_test;
1848d5a9ea55SSucharitha Sarananaga 		break;
1849cd255ccfSMarko Kovacevic 	default:
1850efe3a8dbSMichael Shamis 		if (strstr(info.file_name, "TECB") ||
1851efe3a8dbSMichael Shamis 				strstr(info.file_name, "TCBC")) {
1852efe3a8dbSMichael Shamis 			info.algo = FIPS_TEST_ALGO_TDES;
1853efe3a8dbSMichael Shamis 			test_ops.prepare_op = prepare_cipher_op;
1854efe3a8dbSMichael Shamis 			test_ops.prepare_xform	= prepare_tdes_xform;
1855efe3a8dbSMichael Shamis 			if (info.interim_info.tdes_data.test_type == TDES_MCT)
1856efe3a8dbSMichael Shamis 				test_ops.test = fips_mct_tdes_test;
1857efe3a8dbSMichael Shamis 			else
1858efe3a8dbSMichael Shamis 				test_ops.test = fips_generic_test;
1859efe3a8dbSMichael Shamis 			break;
1860efe3a8dbSMichael Shamis 		}
1861cd255ccfSMarko Kovacevic 		return -1;
1862cd255ccfSMarko Kovacevic 	}
1863cd255ccfSMarko Kovacevic 
1864cd255ccfSMarko Kovacevic 	return 0;
1865cd255ccfSMarko Kovacevic }
1866cd255ccfSMarko Kovacevic 
18673d0fad56SMarko Kovacevic static void
18683d0fad56SMarko Kovacevic print_test_block(void)
18693d0fad56SMarko Kovacevic {
18703d0fad56SMarko Kovacevic 	uint32_t i;
18713d0fad56SMarko Kovacevic 
18723d0fad56SMarko Kovacevic 	for (i = 0; i < info.nb_vec_lines; i++)
18733d0fad56SMarko Kovacevic 		printf("%s\n", info.vec[i]);
18743d0fad56SMarko Kovacevic 
18753d0fad56SMarko Kovacevic 	printf("\n");
18763d0fad56SMarko Kovacevic }
18773d0fad56SMarko Kovacevic 
18783d0fad56SMarko Kovacevic static int
18793d0fad56SMarko Kovacevic fips_test_one_file(void)
18803d0fad56SMarko Kovacevic {
18813d0fad56SMarko Kovacevic 	int fetch_ret = 0, ret;
18823d0fad56SMarko Kovacevic 
1883cd255ccfSMarko Kovacevic 	ret = init_test_ops();
1884cd255ccfSMarko Kovacevic 	if (ret < 0) {
1885cd255ccfSMarko Kovacevic 		RTE_LOG(ERR, USER1, "Error %i: Init test op\n", ret);
1886cd255ccfSMarko Kovacevic 		return ret;
1887cd255ccfSMarko Kovacevic 	}
1888cd255ccfSMarko Kovacevic 
1889cd255ccfSMarko Kovacevic 	while (ret >= 0 && fetch_ret == 0) {
18903d0fad56SMarko Kovacevic 		fetch_ret = fips_test_fetch_one_block();
18913d0fad56SMarko Kovacevic 		if (fetch_ret < 0) {
18923d0fad56SMarko Kovacevic 			RTE_LOG(ERR, USER1, "Error %i: Fetch block\n",
18933d0fad56SMarko Kovacevic 					fetch_ret);
18943d0fad56SMarko Kovacevic 			ret = fetch_ret;
18953d0fad56SMarko Kovacevic 			goto error_one_case;
18963d0fad56SMarko Kovacevic 		}
18973d0fad56SMarko Kovacevic 
18983d0fad56SMarko Kovacevic 		if (info.nb_vec_lines == 0) {
18993d0fad56SMarko Kovacevic 			if (fetch_ret == -EOF)
19003d0fad56SMarko Kovacevic 				break;
19013d0fad56SMarko Kovacevic 
19023d0fad56SMarko Kovacevic 			fprintf(info.fp_wr, "\n");
19033d0fad56SMarko Kovacevic 			continue;
19043d0fad56SMarko Kovacevic 		}
19053d0fad56SMarko Kovacevic 
19063d0fad56SMarko Kovacevic 		ret = fips_test_parse_one_case();
19073d0fad56SMarko Kovacevic 		switch (ret) {
19083d0fad56SMarko Kovacevic 		case 0:
1909cd255ccfSMarko Kovacevic 			ret = test_ops.test();
19103d0fad56SMarko Kovacevic 			if (ret == 0)
19113d0fad56SMarko Kovacevic 				break;
19123d0fad56SMarko Kovacevic 			RTE_LOG(ERR, USER1, "Error %i: test block\n",
19133d0fad56SMarko Kovacevic 					ret);
19143d0fad56SMarko Kovacevic 			goto error_one_case;
19153d0fad56SMarko Kovacevic 		case 1:
19163d0fad56SMarko Kovacevic 			break;
19173d0fad56SMarko Kovacevic 		default:
19183d0fad56SMarko Kovacevic 			RTE_LOG(ERR, USER1, "Error %i: Parse block\n",
19193d0fad56SMarko Kovacevic 					ret);
19203d0fad56SMarko Kovacevic 			goto error_one_case;
19213d0fad56SMarko Kovacevic 		}
19223d0fad56SMarko Kovacevic 
19233d0fad56SMarko Kovacevic 		continue;
19243d0fad56SMarko Kovacevic error_one_case:
19253d0fad56SMarko Kovacevic 		print_test_block();
19263d0fad56SMarko Kovacevic 	}
19273d0fad56SMarko Kovacevic 
19283d0fad56SMarko Kovacevic 	fips_test_clear();
19293d0fad56SMarko Kovacevic 
193015bb59a5SCiara Power 	if (env.digest) {
1931952e10cdSFan Zhang 		rte_free(env.digest);
193215bb59a5SCiara Power 		env.digest = NULL;
193315bb59a5SCiara Power 	}
1934952e10cdSFan Zhang 	rte_pktmbuf_free(env.mbuf);
1935cd255ccfSMarko Kovacevic 
1936952e10cdSFan Zhang 	return ret;
19373d0fad56SMarko Kovacevic }
193889be27e3SBrandon Lo 
19398d70a194SDavid Marchand #ifdef USE_JANSSON
194089be27e3SBrandon Lo static int
194189be27e3SBrandon Lo fips_test_json_init_writeback(void)
194289be27e3SBrandon Lo {
194389be27e3SBrandon Lo 	json_t *session_info, *session_write;
194489be27e3SBrandon Lo 	session_info = json_array_get(json_info.json_root, 0);
194589be27e3SBrandon Lo 	session_write = json_object();
194689be27e3SBrandon Lo 	json_info.json_write_root = json_array();
194789be27e3SBrandon Lo 
194889be27e3SBrandon Lo 	json_object_set(session_write, "jwt",
194989be27e3SBrandon Lo 		json_object_get(session_info, "jwt"));
195089be27e3SBrandon Lo 	json_object_set(session_write, "url",
195189be27e3SBrandon Lo 		json_object_get(session_info, "url"));
195289be27e3SBrandon Lo 	json_object_set(session_write, "isSample",
195389be27e3SBrandon Lo 		json_object_get(session_info, "isSample"));
195489be27e3SBrandon Lo 
195589be27e3SBrandon Lo 	json_info.is_sample = json_boolean_value(
195689be27e3SBrandon Lo 		json_object_get(session_info, "isSample"));
195789be27e3SBrandon Lo 
195889be27e3SBrandon Lo 	json_array_append_new(json_info.json_write_root, session_write);
195989be27e3SBrandon Lo 	return 0;
196089be27e3SBrandon Lo }
196189be27e3SBrandon Lo 
196289be27e3SBrandon Lo static int
196389be27e3SBrandon Lo fips_test_one_test_case(void)
196489be27e3SBrandon Lo {
196589be27e3SBrandon Lo 	int ret;
196689be27e3SBrandon Lo 
196789be27e3SBrandon Lo 	ret = fips_test_parse_one_json_case();
196889be27e3SBrandon Lo 
196989be27e3SBrandon Lo 	switch (ret) {
197089be27e3SBrandon Lo 	case 0:
197189be27e3SBrandon Lo 		ret = test_ops.test();
197289be27e3SBrandon Lo 		if ((ret == 0) || (ret == -EPERM || ret == -ENOTSUP))
197389be27e3SBrandon Lo 			break;
197489be27e3SBrandon Lo 		RTE_LOG(ERR, USER1, "Error %i: test block\n",
197589be27e3SBrandon Lo 				ret);
197689be27e3SBrandon Lo 		break;
197789be27e3SBrandon Lo 	default:
197889be27e3SBrandon Lo 		RTE_LOG(ERR, USER1, "Error %i: Parse block\n",
197989be27e3SBrandon Lo 				ret);
198089be27e3SBrandon Lo 	}
198189be27e3SBrandon Lo 	return ret;
198289be27e3SBrandon Lo }
198389be27e3SBrandon Lo 
198489be27e3SBrandon Lo static int
198589be27e3SBrandon Lo fips_test_one_test_group(void)
198689be27e3SBrandon Lo {
198789be27e3SBrandon Lo 	int ret;
198889be27e3SBrandon Lo 	json_t *tests, *write_tests;
198989be27e3SBrandon Lo 	size_t test_idx, tests_size;
199089be27e3SBrandon Lo 
199189be27e3SBrandon Lo 	write_tests = json_array();
199289be27e3SBrandon Lo 	json_info.json_write_group = json_object();
199389be27e3SBrandon Lo 	json_object_set(json_info.json_write_group, "tgId",
199489be27e3SBrandon Lo 		json_object_get(json_info.json_test_group, "tgId"));
199589be27e3SBrandon Lo 	json_object_set_new(json_info.json_write_group, "tests", write_tests);
199689be27e3SBrandon Lo 
199789be27e3SBrandon Lo 	switch (info.algo) {
199889be27e3SBrandon Lo 	case FIPS_TEST_ALGO_AES_GCM:
1999b09aac2dSBrandon Lo 		ret = parse_test_gcm_json_init();
200089be27e3SBrandon Lo 		break;
2001443c93d8SBrandon Lo 	case FIPS_TEST_ALGO_HMAC:
2002443c93d8SBrandon Lo 		ret = parse_test_hmac_json_init();
2003443c93d8SBrandon Lo 		break;
200407da56a6SBrandon Lo 	case FIPS_TEST_ALGO_AES_CMAC:
200507da56a6SBrandon Lo 		ret = parse_test_cmac_json_init();
200607da56a6SBrandon Lo 		break;
2007f8e431edSGowrishankar Muthukrishnan 	case FIPS_TEST_ALGO_AES_XTS:
2008f8e431edSGowrishankar Muthukrishnan 		ret = parse_test_xts_json_init();
2009f8e431edSGowrishankar Muthukrishnan 		break;
2010f8e431edSGowrishankar Muthukrishnan 	case FIPS_TEST_ALGO_AES_CBC:
20118b8546aaSGowrishankar Muthukrishnan 	case FIPS_TEST_ALGO_AES:
20128b8546aaSGowrishankar Muthukrishnan 		ret = parse_test_aes_json_init();
20138b8546aaSGowrishankar Muthukrishnan 		break;
2014d5c24714SGowrishankar Muthukrishnan 	case FIPS_TEST_ALGO_SHA:
2015d5c24714SGowrishankar Muthukrishnan 		ret = parse_test_sha_json_init();
2016d5c24714SGowrishankar Muthukrishnan 		break;
201789be27e3SBrandon Lo 	default:
201889be27e3SBrandon Lo 		return -EINVAL;
201989be27e3SBrandon Lo 	}
2020b09aac2dSBrandon Lo 
202189be27e3SBrandon Lo 	if (ret < 0)
202289be27e3SBrandon Lo 		return ret;
202389be27e3SBrandon Lo 
202489be27e3SBrandon Lo 	ret = fips_test_parse_one_json_group();
202589be27e3SBrandon Lo 	if (ret < 0)
202689be27e3SBrandon Lo 		return ret;
202789be27e3SBrandon Lo 
202889be27e3SBrandon Lo 	ret = init_test_ops();
202989be27e3SBrandon Lo 	if (ret < 0)
203089be27e3SBrandon Lo 		return ret;
203189be27e3SBrandon Lo 
203289be27e3SBrandon Lo 	tests = json_object_get(json_info.json_test_group, "tests");
203389be27e3SBrandon Lo 	tests_size = json_array_size(tests);
203489be27e3SBrandon Lo 	for (test_idx = 0; test_idx < tests_size; test_idx++) {
203589be27e3SBrandon Lo 		json_info.json_test_case = json_array_get(tests, test_idx);
203689be27e3SBrandon Lo 		if (fips_test_one_test_case() == 0)
203789be27e3SBrandon Lo 			json_array_append_new(write_tests, json_info.json_write_case);
203889be27e3SBrandon Lo 	}
203989be27e3SBrandon Lo 
204089be27e3SBrandon Lo 	return 0;
204189be27e3SBrandon Lo }
204289be27e3SBrandon Lo 
204389be27e3SBrandon Lo static int
204489be27e3SBrandon Lo fips_test_one_vector_set(void)
204589be27e3SBrandon Lo {
204689be27e3SBrandon Lo 	int ret;
204789be27e3SBrandon Lo 	json_t *test_groups, *write_groups, *write_version, *write_set;
204889be27e3SBrandon Lo 	size_t group_idx, num_groups;
204989be27e3SBrandon Lo 
205089be27e3SBrandon Lo 	test_groups = json_object_get(json_info.json_vector_set, "testGroups");
205189be27e3SBrandon Lo 	num_groups = json_array_size(test_groups);
205289be27e3SBrandon Lo 
205389be27e3SBrandon Lo 	json_info.json_write_set = json_array();
205489be27e3SBrandon Lo 	write_version = json_object();
205589be27e3SBrandon Lo 	json_object_set_new(write_version, "acvVersion", json_string(ACVVERSION));
205689be27e3SBrandon Lo 	json_array_append_new(json_info.json_write_set, write_version);
205789be27e3SBrandon Lo 
205889be27e3SBrandon Lo 	write_set = json_object();
205989be27e3SBrandon Lo 	json_array_append(json_info.json_write_set, write_set);
206089be27e3SBrandon Lo 	write_groups = json_array();
206189be27e3SBrandon Lo 
206289be27e3SBrandon Lo 	json_object_set(write_set, "vsId",
206389be27e3SBrandon Lo 		json_object_get(json_info.json_vector_set, "vsId"));
206489be27e3SBrandon Lo 	json_object_set(write_set, "algorithm",
206589be27e3SBrandon Lo 		json_object_get(json_info.json_vector_set, "algorithm"));
206689be27e3SBrandon Lo 	json_object_set(write_set, "revision",
206789be27e3SBrandon Lo 		json_object_get(json_info.json_vector_set, "revision"));
206889be27e3SBrandon Lo 	json_object_set_new(write_set, "isSample",
206989be27e3SBrandon Lo 		json_boolean(json_info.is_sample));
207089be27e3SBrandon Lo 	json_object_set_new(write_set, "testGroups", write_groups);
207189be27e3SBrandon Lo 
207289be27e3SBrandon Lo 	ret = fips_test_parse_one_json_vector_set();
207389be27e3SBrandon Lo 	if (ret < 0) {
207489be27e3SBrandon Lo 		RTE_LOG(ERR, USER1, "Error: Unsupported or invalid vector set algorithm: %s\n",
207589be27e3SBrandon Lo 			json_string_value(json_object_get(json_info.json_vector_set, "algorithm")));
207689be27e3SBrandon Lo 		return ret;
207789be27e3SBrandon Lo 	}
207889be27e3SBrandon Lo 
207989be27e3SBrandon Lo 	for (group_idx = 0; group_idx < num_groups; group_idx++) {
208089be27e3SBrandon Lo 		json_info.json_test_group = json_array_get(test_groups, group_idx);
208189be27e3SBrandon Lo 		ret = fips_test_one_test_group();
208289be27e3SBrandon Lo 		json_array_append_new(write_groups, json_info.json_write_group);
208389be27e3SBrandon Lo 	}
208489be27e3SBrandon Lo 
208589be27e3SBrandon Lo 	return 0;
208689be27e3SBrandon Lo }
208789be27e3SBrandon Lo 
208889be27e3SBrandon Lo static int
208989be27e3SBrandon Lo fips_test_one_json_file(void)
209089be27e3SBrandon Lo {
209189be27e3SBrandon Lo 	size_t vector_set_idx, root_size;
209289be27e3SBrandon Lo 
209389be27e3SBrandon Lo 	root_size = json_array_size(json_info.json_root);
209489be27e3SBrandon Lo 	fips_test_json_init_writeback();
209589be27e3SBrandon Lo 
209689be27e3SBrandon Lo 	for (vector_set_idx = 1; vector_set_idx < root_size; vector_set_idx++) {
209789be27e3SBrandon Lo 		/* Vector set index starts at 1, the 0th index contains test session
209889be27e3SBrandon Lo 		 * information.
209989be27e3SBrandon Lo 		 */
210089be27e3SBrandon Lo 		json_info.json_vector_set = json_array_get(json_info.json_root, vector_set_idx);
210189be27e3SBrandon Lo 		fips_test_one_vector_set();
210289be27e3SBrandon Lo 		json_array_append_new(json_info.json_write_root, json_info.json_write_set);
2103d5c24714SGowrishankar Muthukrishnan 		json_incref(json_info.json_write_set);
210489be27e3SBrandon Lo 	}
210589be27e3SBrandon Lo 
210689be27e3SBrandon Lo 	json_dumpf(json_info.json_write_root, info.fp_wr, JSON_INDENT(4));
210789be27e3SBrandon Lo 	json_decref(json_info.json_write_root);
210889be27e3SBrandon Lo 
210989be27e3SBrandon Lo 	return 0;
211089be27e3SBrandon Lo }
21118d70a194SDavid Marchand #endif /* USE_JANSSON */
2112