serai/crypto/ff-group-tests
Luke Parker 93f7afec8b
3.5.2 Add more tests to ff-group-tests
The audit recommends checking failure cases for from_bytes,
from_bytes_unechecked, and from_repr. This isn't feasible.

from_bytes is allowed to have non-canonical values. [0xff; 32] may accordingly
be a valid point for non-SEC1-encoded curves.

from_bytes_unchecked doesn't have a defined failure mode, and by name,
unchecked, shouldn't necessarily fail. The audit acknowledges the tests should
test for whatever result is 'appropriate', yet any result which isn't a failure
on a valid element is appropriate.

from_repr must be canonical, yet for a binary field of 2^n where n % 8 == 0, a
[0xff; n / 8] repr would be valid.
2023-02-24 06:03:56 -05:00
..
src 3.5.2 Add more tests to ff-group-tests 2023-02-24 06:03:56 -05:00
Cargo.toml 3.5.2 Add more tests to ff-group-tests 2023-02-24 06:03:56 -05:00
LICENSE Add a dedicated crate for testing ff/group implementors 2022-12-24 15:09:09 -05:00
README.md Add a dedicated crate for testing ff/group implementors 2022-12-24 15:09:09 -05:00

FF/Group Tests

A series of sanity checks for implementors of the ff/group APIs. Implementors are assumed to be of a non-trivial size. These tests do not attempt to check if constant time implementations are used.