^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1) // SPDX-License-Identifier: GPL-2.0 OR MIT
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 2) /*
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 3) * Copyright (C) 2015-2019 Jason A. Donenfeld <Jason@zx2c4.com>. All Rights Reserved.
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 4) */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 5)
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 6) #include <crypto/curve25519.h>
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 7)
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 8) struct curve25519_test_vector {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 9) u8 private[CURVE25519_KEY_SIZE];
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 10) u8 public[CURVE25519_KEY_SIZE];
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 11) u8 result[CURVE25519_KEY_SIZE];
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 12) bool valid;
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 13) };
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 14) static const struct curve25519_test_vector curve25519_test_vectors[] __initconst = {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 15) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 16) .private = { 0x77, 0x07, 0x6d, 0x0a, 0x73, 0x18, 0xa5, 0x7d,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 17) 0x3c, 0x16, 0xc1, 0x72, 0x51, 0xb2, 0x66, 0x45,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 18) 0xdf, 0x4c, 0x2f, 0x87, 0xeb, 0xc0, 0x99, 0x2a,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 19) 0xb1, 0x77, 0xfb, 0xa5, 0x1d, 0xb9, 0x2c, 0x2a },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 20) .public = { 0xde, 0x9e, 0xdb, 0x7d, 0x7b, 0x7d, 0xc1, 0xb4,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 21) 0xd3, 0x5b, 0x61, 0xc2, 0xec, 0xe4, 0x35, 0x37,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 22) 0x3f, 0x83, 0x43, 0xc8, 0x5b, 0x78, 0x67, 0x4d,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 23) 0xad, 0xfc, 0x7e, 0x14, 0x6f, 0x88, 0x2b, 0x4f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 24) .result = { 0x4a, 0x5d, 0x9d, 0x5b, 0xa4, 0xce, 0x2d, 0xe1,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 25) 0x72, 0x8e, 0x3b, 0xf4, 0x80, 0x35, 0x0f, 0x25,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 26) 0xe0, 0x7e, 0x21, 0xc9, 0x47, 0xd1, 0x9e, 0x33,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 27) 0x76, 0xf0, 0x9b, 0x3c, 0x1e, 0x16, 0x17, 0x42 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 28) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 29) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 30) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 31) .private = { 0x5d, 0xab, 0x08, 0x7e, 0x62, 0x4a, 0x8a, 0x4b,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 32) 0x79, 0xe1, 0x7f, 0x8b, 0x83, 0x80, 0x0e, 0xe6,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 33) 0x6f, 0x3b, 0xb1, 0x29, 0x26, 0x18, 0xb6, 0xfd,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 34) 0x1c, 0x2f, 0x8b, 0x27, 0xff, 0x88, 0xe0, 0xeb },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 35) .public = { 0x85, 0x20, 0xf0, 0x09, 0x89, 0x30, 0xa7, 0x54,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 36) 0x74, 0x8b, 0x7d, 0xdc, 0xb4, 0x3e, 0xf7, 0x5a,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 37) 0x0d, 0xbf, 0x3a, 0x0d, 0x26, 0x38, 0x1a, 0xf4,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 38) 0xeb, 0xa4, 0xa9, 0x8e, 0xaa, 0x9b, 0x4e, 0x6a },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 39) .result = { 0x4a, 0x5d, 0x9d, 0x5b, 0xa4, 0xce, 0x2d, 0xe1,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 40) 0x72, 0x8e, 0x3b, 0xf4, 0x80, 0x35, 0x0f, 0x25,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 41) 0xe0, 0x7e, 0x21, 0xc9, 0x47, 0xd1, 0x9e, 0x33,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 42) 0x76, 0xf0, 0x9b, 0x3c, 0x1e, 0x16, 0x17, 0x42 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 43) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 44) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 45) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 46) .private = { 1 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 47) .public = { 0x25, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 48) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 49) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 50) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 51) .result = { 0x3c, 0x77, 0x77, 0xca, 0xf9, 0x97, 0xb2, 0x64,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 52) 0x41, 0x60, 0x77, 0x66, 0x5b, 0x4e, 0x22, 0x9d,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 53) 0x0b, 0x95, 0x48, 0xdc, 0x0c, 0xd8, 0x19, 0x98,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 54) 0xdd, 0xcd, 0xc5, 0xc8, 0x53, 0x3c, 0x79, 0x7f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 55) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 56) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 57) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 58) .private = { 1 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 59) .public = { 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 60) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 61) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 62) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 63) .result = { 0xb3, 0x2d, 0x13, 0x62, 0xc2, 0x48, 0xd6, 0x2f,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 64) 0xe6, 0x26, 0x19, 0xcf, 0xf0, 0x4d, 0xd4, 0x3d,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 65) 0xb7, 0x3f, 0xfc, 0x1b, 0x63, 0x08, 0xed, 0xe3,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 66) 0x0b, 0x78, 0xd8, 0x73, 0x80, 0xf1, 0xe8, 0x34 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 67) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 68) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 69) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 70) .private = { 0xa5, 0x46, 0xe3, 0x6b, 0xf0, 0x52, 0x7c, 0x9d,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 71) 0x3b, 0x16, 0x15, 0x4b, 0x82, 0x46, 0x5e, 0xdd,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 72) 0x62, 0x14, 0x4c, 0x0a, 0xc1, 0xfc, 0x5a, 0x18,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 73) 0x50, 0x6a, 0x22, 0x44, 0xba, 0x44, 0x9a, 0xc4 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 74) .public = { 0xe6, 0xdb, 0x68, 0x67, 0x58, 0x30, 0x30, 0xdb,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 75) 0x35, 0x94, 0xc1, 0xa4, 0x24, 0xb1, 0x5f, 0x7c,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 76) 0x72, 0x66, 0x24, 0xec, 0x26, 0xb3, 0x35, 0x3b,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 77) 0x10, 0xa9, 0x03, 0xa6, 0xd0, 0xab, 0x1c, 0x4c },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 78) .result = { 0xc3, 0xda, 0x55, 0x37, 0x9d, 0xe9, 0xc6, 0x90,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 79) 0x8e, 0x94, 0xea, 0x4d, 0xf2, 0x8d, 0x08, 0x4f,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 80) 0x32, 0xec, 0xcf, 0x03, 0x49, 0x1c, 0x71, 0xf7,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 81) 0x54, 0xb4, 0x07, 0x55, 0x77, 0xa2, 0x85, 0x52 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 82) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 83) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 84) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 85) .private = { 1, 2, 3, 4 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 86) .public = { 0 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 87) .result = { 0 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 88) .valid = false
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 89) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 90) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 91) .private = { 2, 4, 6, 8 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 92) .public = { 0xe0, 0xeb, 0x7a, 0x7c, 0x3b, 0x41, 0xb8, 0xae,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 93) 0x16, 0x56, 0xe3, 0xfa, 0xf1, 0x9f, 0xc4, 0x6a,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 94) 0xda, 0x09, 0x8d, 0xeb, 0x9c, 0x32, 0xb1, 0xfd,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 95) 0x86, 0x62, 0x05, 0x16, 0x5f, 0x49, 0xb8 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 96) .result = { 0 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 97) .valid = false
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 98) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 99) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 100) .private = { 0xff, 0xff, 0xff, 0xff, 0x0a, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 101) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 102) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 103) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 104) .public = { 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 105) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 106) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 107) 0xff, 0xff, 0xff, 0xff, 0x0a, 0x00, 0xfb, 0x9f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 108) .result = { 0x77, 0x52, 0xb6, 0x18, 0xc1, 0x2d, 0x48, 0xd2,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 109) 0xc6, 0x93, 0x46, 0x83, 0x81, 0x7c, 0xc6, 0x57,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 110) 0xf3, 0x31, 0x03, 0x19, 0x49, 0x48, 0x20, 0x05,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 111) 0x42, 0x2b, 0x4e, 0xae, 0x8d, 0x1d, 0x43, 0x23 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 112) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 113) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 114) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 115) .private = { 0x8e, 0x0a, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 116) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 117) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 118) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 119) .public = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 120) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 121) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 122) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x8e, 0x06 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 123) .result = { 0x5a, 0xdf, 0xaa, 0x25, 0x86, 0x8e, 0x32, 0x3d,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 124) 0xae, 0x49, 0x62, 0xc1, 0x01, 0x5c, 0xb3, 0x12,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 125) 0xe1, 0xc5, 0xc7, 0x9e, 0x95, 0x3f, 0x03, 0x99,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 126) 0xb0, 0xba, 0x16, 0x22, 0xf3, 0xb6, 0xf7, 0x0c },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 127) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 128) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 129) /* wycheproof - normal case */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 130) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 131) .private = { 0x48, 0x52, 0x83, 0x4d, 0x9d, 0x6b, 0x77, 0xda,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 132) 0xde, 0xab, 0xaa, 0xf2, 0xe1, 0x1d, 0xca, 0x66,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 133) 0xd1, 0x9f, 0xe7, 0x49, 0x93, 0xa7, 0xbe, 0xc3,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 134) 0x6c, 0x6e, 0x16, 0xa0, 0x98, 0x3f, 0xea, 0xba },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 135) .public = { 0x9c, 0x64, 0x7d, 0x9a, 0xe5, 0x89, 0xb9, 0xf5,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 136) 0x8f, 0xdc, 0x3c, 0xa4, 0x94, 0x7e, 0xfb, 0xc9,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 137) 0x15, 0xc4, 0xb2, 0xe0, 0x8e, 0x74, 0x4a, 0x0e,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 138) 0xdf, 0x46, 0x9d, 0xac, 0x59, 0xc8, 0xf8, 0x5a },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 139) .result = { 0x87, 0xb7, 0xf2, 0x12, 0xb6, 0x27, 0xf7, 0xa5,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 140) 0x4c, 0xa5, 0xe0, 0xbc, 0xda, 0xdd, 0xd5, 0x38,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 141) 0x9d, 0x9d, 0xe6, 0x15, 0x6c, 0xdb, 0xcf, 0x8e,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 142) 0xbe, 0x14, 0xff, 0xbc, 0xfb, 0x43, 0x65, 0x51 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 143) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 144) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 145) /* wycheproof - public key on twist */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 146) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 147) .private = { 0x58, 0x8c, 0x06, 0x1a, 0x50, 0x80, 0x4a, 0xc4,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 148) 0x88, 0xad, 0x77, 0x4a, 0xc7, 0x16, 0xc3, 0xf5,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 149) 0xba, 0x71, 0x4b, 0x27, 0x12, 0xe0, 0x48, 0x49,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 150) 0x13, 0x79, 0xa5, 0x00, 0x21, 0x19, 0x98, 0xa8 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 151) .public = { 0x63, 0xaa, 0x40, 0xc6, 0xe3, 0x83, 0x46, 0xc5,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 152) 0xca, 0xf2, 0x3a, 0x6d, 0xf0, 0xa5, 0xe6, 0xc8,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 153) 0x08, 0x89, 0xa0, 0x86, 0x47, 0xe5, 0x51, 0xb3,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 154) 0x56, 0x34, 0x49, 0xbe, 0xfc, 0xfc, 0x97, 0x33 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 155) .result = { 0xb1, 0xa7, 0x07, 0x51, 0x94, 0x95, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 156) 0xb2, 0x98, 0xff, 0x94, 0x17, 0x16, 0xb0, 0x6d,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 157) 0xfa, 0xb8, 0x7c, 0xf8, 0xd9, 0x11, 0x23, 0xfe,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 158) 0x2b, 0xe9, 0xa2, 0x33, 0xdd, 0xa2, 0x22, 0x12 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 159) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 160) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 161) /* wycheproof - public key on twist */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 162) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 163) .private = { 0xb0, 0x5b, 0xfd, 0x32, 0xe5, 0x53, 0x25, 0xd9,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 164) 0xfd, 0x64, 0x8c, 0xb3, 0x02, 0x84, 0x80, 0x39,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 165) 0x00, 0x0b, 0x39, 0x0e, 0x44, 0xd5, 0x21, 0xe5,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 166) 0x8a, 0xab, 0x3b, 0x29, 0xa6, 0x96, 0x0b, 0xa8 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 167) .public = { 0x0f, 0x83, 0xc3, 0x6f, 0xde, 0xd9, 0xd3, 0x2f,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 168) 0xad, 0xf4, 0xef, 0xa3, 0xae, 0x93, 0xa9, 0x0b,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 169) 0xb5, 0xcf, 0xa6, 0x68, 0x93, 0xbc, 0x41, 0x2c,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 170) 0x43, 0xfa, 0x72, 0x87, 0xdb, 0xb9, 0x97, 0x79 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 171) .result = { 0x67, 0xdd, 0x4a, 0x6e, 0x16, 0x55, 0x33, 0x53,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 172) 0x4c, 0x0e, 0x3f, 0x17, 0x2e, 0x4a, 0xb8, 0x57,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 173) 0x6b, 0xca, 0x92, 0x3a, 0x5f, 0x07, 0xb2, 0xc0,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 174) 0x69, 0xb4, 0xc3, 0x10, 0xff, 0x2e, 0x93, 0x5b },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 175) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 176) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 177) /* wycheproof - public key on twist */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 178) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 179) .private = { 0x70, 0xe3, 0x4b, 0xcb, 0xe1, 0xf4, 0x7f, 0xbc,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 180) 0x0f, 0xdd, 0xfd, 0x7c, 0x1e, 0x1a, 0xa5, 0x3d,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 181) 0x57, 0xbf, 0xe0, 0xf6, 0x6d, 0x24, 0x30, 0x67,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 182) 0xb4, 0x24, 0xbb, 0x62, 0x10, 0xbe, 0xd1, 0x9c },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 183) .public = { 0x0b, 0x82, 0x11, 0xa2, 0xb6, 0x04, 0x90, 0x97,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 184) 0xf6, 0x87, 0x1c, 0x6c, 0x05, 0x2d, 0x3c, 0x5f,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 185) 0xc1, 0xba, 0x17, 0xda, 0x9e, 0x32, 0xae, 0x45,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 186) 0x84, 0x03, 0xb0, 0x5b, 0xb2, 0x83, 0x09, 0x2a },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 187) .result = { 0x4a, 0x06, 0x38, 0xcf, 0xaa, 0x9e, 0xf1, 0x93,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 188) 0x3b, 0x47, 0xf8, 0x93, 0x92, 0x96, 0xa6, 0xb2,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 189) 0x5b, 0xe5, 0x41, 0xef, 0x7f, 0x70, 0xe8, 0x44,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 190) 0xc0, 0xbc, 0xc0, 0x0b, 0x13, 0x4d, 0xe6, 0x4a },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 191) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 192) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 193) /* wycheproof - public key on twist */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 194) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 195) .private = { 0x68, 0xc1, 0xf3, 0xa6, 0x53, 0xa4, 0xcd, 0xb1,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 196) 0xd3, 0x7b, 0xba, 0x94, 0x73, 0x8f, 0x8b, 0x95,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 197) 0x7a, 0x57, 0xbe, 0xb2, 0x4d, 0x64, 0x6e, 0x99,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 198) 0x4d, 0xc2, 0x9a, 0x27, 0x6a, 0xad, 0x45, 0x8d },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 199) .public = { 0x34, 0x3a, 0xc2, 0x0a, 0x3b, 0x9c, 0x6a, 0x27,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 200) 0xb1, 0x00, 0x81, 0x76, 0x50, 0x9a, 0xd3, 0x07,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 201) 0x35, 0x85, 0x6e, 0xc1, 0xc8, 0xd8, 0xfc, 0xae,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 202) 0x13, 0x91, 0x2d, 0x08, 0xd1, 0x52, 0xf4, 0x6c },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 203) .result = { 0x39, 0x94, 0x91, 0xfc, 0xe8, 0xdf, 0xab, 0x73,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 204) 0xb4, 0xf9, 0xf6, 0x11, 0xde, 0x8e, 0xa0, 0xb2,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 205) 0x7b, 0x28, 0xf8, 0x59, 0x94, 0x25, 0x0b, 0x0f,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 206) 0x47, 0x5d, 0x58, 0x5d, 0x04, 0x2a, 0xc2, 0x07 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 207) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 208) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 209) /* wycheproof - public key on twist */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 210) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 211) .private = { 0xd8, 0x77, 0xb2, 0x6d, 0x06, 0xdf, 0xf9, 0xd9,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 212) 0xf7, 0xfd, 0x4c, 0x5b, 0x37, 0x69, 0xf8, 0xcd,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 213) 0xd5, 0xb3, 0x05, 0x16, 0xa5, 0xab, 0x80, 0x6b,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 214) 0xe3, 0x24, 0xff, 0x3e, 0xb6, 0x9e, 0xa0, 0xb2 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 215) .public = { 0xfa, 0x69, 0x5f, 0xc7, 0xbe, 0x8d, 0x1b, 0xe5,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 216) 0xbf, 0x70, 0x48, 0x98, 0xf3, 0x88, 0xc4, 0x52,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 217) 0xba, 0xfd, 0xd3, 0xb8, 0xea, 0xe8, 0x05, 0xf8,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 218) 0x68, 0x1a, 0x8d, 0x15, 0xc2, 0xd4, 0xe1, 0x42 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 219) .result = { 0x2c, 0x4f, 0xe1, 0x1d, 0x49, 0x0a, 0x53, 0x86,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 220) 0x17, 0x76, 0xb1, 0x3b, 0x43, 0x54, 0xab, 0xd4,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 221) 0xcf, 0x5a, 0x97, 0x69, 0x9d, 0xb6, 0xe6, 0xc6,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 222) 0x8c, 0x16, 0x26, 0xd0, 0x76, 0x62, 0xf7, 0x58 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 223) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 224) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 225) /* wycheproof - public key = 0 */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 226) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 227) .private = { 0x20, 0x74, 0x94, 0x03, 0x8f, 0x2b, 0xb8, 0x11,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 228) 0xd4, 0x78, 0x05, 0xbc, 0xdf, 0x04, 0xa2, 0xac,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 229) 0x58, 0x5a, 0xda, 0x7f, 0x2f, 0x23, 0x38, 0x9b,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 230) 0xfd, 0x46, 0x58, 0xf9, 0xdd, 0xd4, 0xde, 0xbc },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 231) .public = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 232) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 233) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 234) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 235) .result = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 236) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 237) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 238) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 239) .valid = false
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 240) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 241) /* wycheproof - public key = 1 */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 242) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 243) .private = { 0x20, 0x2e, 0x89, 0x72, 0xb6, 0x1c, 0x7e, 0x61,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 244) 0x93, 0x0e, 0xb9, 0x45, 0x0b, 0x50, 0x70, 0xea,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 245) 0xe1, 0xc6, 0x70, 0x47, 0x56, 0x85, 0x54, 0x1f,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 246) 0x04, 0x76, 0x21, 0x7e, 0x48, 0x18, 0xcf, 0xab },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 247) .public = { 0x01, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 248) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 249) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 250) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 251) .result = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 252) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 253) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 254) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 255) .valid = false
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 256) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 257) /* wycheproof - edge case on twist */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 258) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 259) .private = { 0x38, 0xdd, 0xe9, 0xf3, 0xe7, 0xb7, 0x99, 0x04,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 260) 0x5f, 0x9a, 0xc3, 0x79, 0x3d, 0x4a, 0x92, 0x77,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 261) 0xda, 0xde, 0xad, 0xc4, 0x1b, 0xec, 0x02, 0x90,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 262) 0xf8, 0x1f, 0x74, 0x4f, 0x73, 0x77, 0x5f, 0x84 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 263) .public = { 0x02, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 264) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 265) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 266) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 267) .result = { 0x9a, 0x2c, 0xfe, 0x84, 0xff, 0x9c, 0x4a, 0x97,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 268) 0x39, 0x62, 0x5c, 0xae, 0x4a, 0x3b, 0x82, 0xa9,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 269) 0x06, 0x87, 0x7a, 0x44, 0x19, 0x46, 0xf8, 0xd7,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 270) 0xb3, 0xd7, 0x95, 0xfe, 0x8f, 0x5d, 0x16, 0x39 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 271) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 272) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 273) /* wycheproof - edge case on twist */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 274) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 275) .private = { 0x98, 0x57, 0xa9, 0x14, 0xe3, 0xc2, 0x90, 0x36,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 276) 0xfd, 0x9a, 0x44, 0x2b, 0xa5, 0x26, 0xb5, 0xcd,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 277) 0xcd, 0xf2, 0x82, 0x16, 0x15, 0x3e, 0x63, 0x6c,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 278) 0x10, 0x67, 0x7a, 0xca, 0xb6, 0xbd, 0x6a, 0xa5 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 279) .public = { 0x03, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 280) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 281) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 282) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 283) .result = { 0x4d, 0xa4, 0xe0, 0xaa, 0x07, 0x2c, 0x23, 0x2e,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 284) 0xe2, 0xf0, 0xfa, 0x4e, 0x51, 0x9a, 0xe5, 0x0b,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 285) 0x52, 0xc1, 0xed, 0xd0, 0x8a, 0x53, 0x4d, 0x4e,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 286) 0xf3, 0x46, 0xc2, 0xe1, 0x06, 0xd2, 0x1d, 0x60 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 287) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 288) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 289) /* wycheproof - edge case on twist */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 290) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 291) .private = { 0x48, 0xe2, 0x13, 0x0d, 0x72, 0x33, 0x05, 0xed,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 292) 0x05, 0xe6, 0xe5, 0x89, 0x4d, 0x39, 0x8a, 0x5e,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 293) 0x33, 0x36, 0x7a, 0x8c, 0x6a, 0xac, 0x8f, 0xcd,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 294) 0xf0, 0xa8, 0x8e, 0x4b, 0x42, 0x82, 0x0d, 0xb7 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 295) .public = { 0xff, 0xff, 0xff, 0x03, 0x00, 0x00, 0xf8, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 296) 0xff, 0x1f, 0x00, 0x00, 0xc0, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 297) 0x00, 0x00, 0x00, 0xfe, 0xff, 0xff, 0x07, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 298) 0x00, 0xf0, 0xff, 0xff, 0x3f, 0x00, 0x00, 0x00 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 299) .result = { 0x9e, 0xd1, 0x0c, 0x53, 0x74, 0x7f, 0x64, 0x7f,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 300) 0x82, 0xf4, 0x51, 0x25, 0xd3, 0xde, 0x15, 0xa1,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 301) 0xe6, 0xb8, 0x24, 0x49, 0x6a, 0xb4, 0x04, 0x10,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 302) 0xff, 0xcc, 0x3c, 0xfe, 0x95, 0x76, 0x0f, 0x3b },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 303) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 304) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 305) /* wycheproof - edge case on twist */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 306) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 307) .private = { 0x28, 0xf4, 0x10, 0x11, 0x69, 0x18, 0x51, 0xb3,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 308) 0xa6, 0x2b, 0x64, 0x15, 0x53, 0xb3, 0x0d, 0x0d,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 309) 0xfd, 0xdc, 0xb8, 0xff, 0xfc, 0xf5, 0x37, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 310) 0xa7, 0xbe, 0x2f, 0x6a, 0x87, 0x2e, 0x9f, 0xb0 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 311) .public = { 0x00, 0x00, 0x00, 0xfc, 0xff, 0xff, 0x07, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 312) 0x00, 0xe0, 0xff, 0xff, 0x3f, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 313) 0xff, 0xff, 0xff, 0x01, 0x00, 0x00, 0xf8, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 314) 0xff, 0x0f, 0x00, 0x00, 0xc0, 0xff, 0xff, 0x7f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 315) .result = { 0xcf, 0x72, 0xb4, 0xaa, 0x6a, 0xa1, 0xc9, 0xf8,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 316) 0x94, 0xf4, 0x16, 0x5b, 0x86, 0x10, 0x9a, 0xa4,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 317) 0x68, 0x51, 0x76, 0x48, 0xe1, 0xf0, 0xcc, 0x70,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 318) 0xe1, 0xab, 0x08, 0x46, 0x01, 0x76, 0x50, 0x6b },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 319) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 320) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 321) /* wycheproof - edge case on twist */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 322) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 323) .private = { 0x18, 0xa9, 0x3b, 0x64, 0x99, 0xb9, 0xf6, 0xb3,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 324) 0x22, 0x5c, 0xa0, 0x2f, 0xef, 0x41, 0x0e, 0x0a,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 325) 0xde, 0xc2, 0x35, 0x32, 0x32, 0x1d, 0x2d, 0x8e,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 326) 0xf1, 0xa6, 0xd6, 0x02, 0xa8, 0xc6, 0x5b, 0x83 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 327) .public = { 0x00, 0x00, 0x00, 0x00, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 328) 0x00, 0x00, 0x00, 0x00, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 329) 0x00, 0x00, 0x00, 0x00, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 330) 0x00, 0x00, 0x00, 0x00, 0xff, 0xff, 0xff, 0x7f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 331) .result = { 0x5d, 0x50, 0xb6, 0x28, 0x36, 0xbb, 0x69, 0x57,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 332) 0x94, 0x10, 0x38, 0x6c, 0xf7, 0xbb, 0x81, 0x1c,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 333) 0x14, 0xbf, 0x85, 0xb1, 0xc7, 0xb1, 0x7e, 0x59,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 334) 0x24, 0xc7, 0xff, 0xea, 0x91, 0xef, 0x9e, 0x12 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 335) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 336) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 337) /* wycheproof - edge case on twist */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 338) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 339) .private = { 0xc0, 0x1d, 0x13, 0x05, 0xa1, 0x33, 0x8a, 0x1f,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 340) 0xca, 0xc2, 0xba, 0x7e, 0x2e, 0x03, 0x2b, 0x42,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 341) 0x7e, 0x0b, 0x04, 0x90, 0x31, 0x65, 0xac, 0xa9,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 342) 0x57, 0xd8, 0xd0, 0x55, 0x3d, 0x87, 0x17, 0xb0 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 343) .public = { 0xea, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 344) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 345) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 346) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0x7f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 347) .result = { 0x19, 0x23, 0x0e, 0xb1, 0x48, 0xd5, 0xd6, 0x7c,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 348) 0x3c, 0x22, 0xab, 0x1d, 0xae, 0xff, 0x80, 0xa5,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 349) 0x7e, 0xae, 0x42, 0x65, 0xce, 0x28, 0x72, 0x65,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 350) 0x7b, 0x2c, 0x80, 0x99, 0xfc, 0x69, 0x8e, 0x50 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 351) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 352) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 353) /* wycheproof - edge case for public key */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 354) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 355) .private = { 0x38, 0x6f, 0x7f, 0x16, 0xc5, 0x07, 0x31, 0xd6,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 356) 0x4f, 0x82, 0xe6, 0xa1, 0x70, 0xb1, 0x42, 0xa4,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 357) 0xe3, 0x4f, 0x31, 0xfd, 0x77, 0x68, 0xfc, 0xb8,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 358) 0x90, 0x29, 0x25, 0xe7, 0xd1, 0xe2, 0x1a, 0xbe },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 359) .public = { 0x04, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 360) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 361) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 362) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 363) .result = { 0x0f, 0xca, 0xb5, 0xd8, 0x42, 0xa0, 0x78, 0xd7,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 364) 0xa7, 0x1f, 0xc5, 0x9b, 0x57, 0xbf, 0xb4, 0xca,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 365) 0x0b, 0xe6, 0x87, 0x3b, 0x49, 0xdc, 0xdb, 0x9f,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 366) 0x44, 0xe1, 0x4a, 0xe8, 0xfb, 0xdf, 0xa5, 0x42 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 367) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 368) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 369) /* wycheproof - edge case for public key */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 370) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 371) .private = { 0xe0, 0x23, 0xa2, 0x89, 0xbd, 0x5e, 0x90, 0xfa,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 372) 0x28, 0x04, 0xdd, 0xc0, 0x19, 0xa0, 0x5e, 0xf3,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 373) 0xe7, 0x9d, 0x43, 0x4b, 0xb6, 0xea, 0x2f, 0x52,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 374) 0x2e, 0xcb, 0x64, 0x3a, 0x75, 0x29, 0x6e, 0x95 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 375) .public = { 0xff, 0xff, 0xff, 0xff, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 376) 0xff, 0xff, 0xff, 0xff, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 377) 0xff, 0xff, 0xff, 0xff, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 378) 0xff, 0xff, 0xff, 0xff, 0x00, 0x00, 0x00, 0x00 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 379) .result = { 0x54, 0xce, 0x8f, 0x22, 0x75, 0xc0, 0x77, 0xe3,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 380) 0xb1, 0x30, 0x6a, 0x39, 0x39, 0xc5, 0xe0, 0x3e,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 381) 0xef, 0x6b, 0xbb, 0x88, 0x06, 0x05, 0x44, 0x75,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 382) 0x8d, 0x9f, 0xef, 0x59, 0xb0, 0xbc, 0x3e, 0x4f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 383) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 384) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 385) /* wycheproof - edge case for public key */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 386) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 387) .private = { 0x68, 0xf0, 0x10, 0xd6, 0x2e, 0xe8, 0xd9, 0x26,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 388) 0x05, 0x3a, 0x36, 0x1c, 0x3a, 0x75, 0xc6, 0xea,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 389) 0x4e, 0xbd, 0xc8, 0x60, 0x6a, 0xb2, 0x85, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 390) 0x3a, 0x6f, 0x8f, 0x40, 0x76, 0xb0, 0x1e, 0x83 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 391) .public = { 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 392) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 393) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 394) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0x03 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 395) .result = { 0xf1, 0x36, 0x77, 0x5c, 0x5b, 0xeb, 0x0a, 0xf8,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 396) 0x11, 0x0a, 0xf1, 0x0b, 0x20, 0x37, 0x23, 0x32,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 397) 0x04, 0x3c, 0xab, 0x75, 0x24, 0x19, 0x67, 0x87,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 398) 0x75, 0xa2, 0x23, 0xdf, 0x57, 0xc9, 0xd3, 0x0d },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 399) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 400) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 401) /* wycheproof - edge case for public key */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 402) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 403) .private = { 0x58, 0xeb, 0xcb, 0x35, 0xb0, 0xf8, 0x84, 0x5c,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 404) 0xaf, 0x1e, 0xc6, 0x30, 0xf9, 0x65, 0x76, 0xb6,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 405) 0x2c, 0x4b, 0x7b, 0x6c, 0x36, 0xb2, 0x9d, 0xeb,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 406) 0x2c, 0xb0, 0x08, 0x46, 0x51, 0x75, 0x5c, 0x96 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 407) .public = { 0xff, 0xff, 0xff, 0xfb, 0xff, 0xff, 0xfb, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 408) 0xff, 0xdf, 0xff, 0xff, 0xdf, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 409) 0xfe, 0xff, 0xff, 0xfe, 0xff, 0xff, 0xf7, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 410) 0xff, 0xf7, 0xff, 0xff, 0xbf, 0xff, 0xff, 0x3f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 411) .result = { 0xbf, 0x9a, 0xff, 0xd0, 0x6b, 0x84, 0x40, 0x85,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 412) 0x58, 0x64, 0x60, 0x96, 0x2e, 0xf2, 0x14, 0x6f,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 413) 0xf3, 0xd4, 0x53, 0x3d, 0x94, 0x44, 0xaa, 0xb0,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 414) 0x06, 0xeb, 0x88, 0xcc, 0x30, 0x54, 0x40, 0x7d },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 415) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 416) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 417) /* wycheproof - edge case for public key */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 418) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 419) .private = { 0x18, 0x8c, 0x4b, 0xc5, 0xb9, 0xc4, 0x4b, 0x38,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 420) 0xbb, 0x65, 0x8b, 0x9b, 0x2a, 0xe8, 0x2d, 0x5b,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 421) 0x01, 0x01, 0x5e, 0x09, 0x31, 0x84, 0xb1, 0x7c,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 422) 0xb7, 0x86, 0x35, 0x03, 0xa7, 0x83, 0xe1, 0xbb },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 423) .public = { 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 424) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 425) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 426) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0x3f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 427) .result = { 0xd4, 0x80, 0xde, 0x04, 0xf6, 0x99, 0xcb, 0x3b,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 428) 0xe0, 0x68, 0x4a, 0x9c, 0xc2, 0xe3, 0x12, 0x81,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 429) 0xea, 0x0b, 0xc5, 0xa9, 0xdc, 0xc1, 0x57, 0xd3,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 430) 0xd2, 0x01, 0x58, 0xd4, 0x6c, 0xa5, 0x24, 0x6d },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 431) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 432) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 433) /* wycheproof - edge case for public key */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 434) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 435) .private = { 0xe0, 0x6c, 0x11, 0xbb, 0x2e, 0x13, 0xce, 0x3d,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 436) 0xc7, 0x67, 0x3f, 0x67, 0xf5, 0x48, 0x22, 0x42,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 437) 0x90, 0x94, 0x23, 0xa9, 0xae, 0x95, 0xee, 0x98,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 438) 0x6a, 0x98, 0x8d, 0x98, 0xfa, 0xee, 0x23, 0xa2 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 439) .public = { 0xff, 0xff, 0xff, 0xff, 0xfe, 0xff, 0xff, 0x7f,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 440) 0xff, 0xff, 0xff, 0xff, 0xfe, 0xff, 0xff, 0x7f,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 441) 0xff, 0xff, 0xff, 0xff, 0xfe, 0xff, 0xff, 0x7f,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 442) 0xff, 0xff, 0xff, 0xff, 0xfe, 0xff, 0xff, 0x7f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 443) .result = { 0x4c, 0x44, 0x01, 0xcc, 0xe6, 0xb5, 0x1e, 0x4c,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 444) 0xb1, 0x8f, 0x27, 0x90, 0x24, 0x6c, 0x9b, 0xf9,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 445) 0x14, 0xdb, 0x66, 0x77, 0x50, 0xa1, 0xcb, 0x89,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 446) 0x06, 0x90, 0x92, 0xaf, 0x07, 0x29, 0x22, 0x76 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 447) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 448) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 449) /* wycheproof - edge case for public key */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 450) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 451) .private = { 0xc0, 0x65, 0x8c, 0x46, 0xdd, 0xe1, 0x81, 0x29,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 452) 0x29, 0x38, 0x77, 0x53, 0x5b, 0x11, 0x62, 0xb6,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 453) 0xf9, 0xf5, 0x41, 0x4a, 0x23, 0xcf, 0x4d, 0x2c,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 454) 0xbc, 0x14, 0x0a, 0x4d, 0x99, 0xda, 0x2b, 0x8f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 455) .public = { 0xeb, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 456) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 457) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 458) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0x7f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 459) .result = { 0x57, 0x8b, 0xa8, 0xcc, 0x2d, 0xbd, 0xc5, 0x75,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 460) 0xaf, 0xcf, 0x9d, 0xf2, 0xb3, 0xee, 0x61, 0x89,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 461) 0xf5, 0x33, 0x7d, 0x68, 0x54, 0xc7, 0x9b, 0x4c,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 462) 0xe1, 0x65, 0xea, 0x12, 0x29, 0x3b, 0x3a, 0x0f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 463) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 464) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 465) /* wycheproof - public key with low order */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 466) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 467) .private = { 0x10, 0x25, 0x5c, 0x92, 0x30, 0xa9, 0x7a, 0x30,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 468) 0xa4, 0x58, 0xca, 0x28, 0x4a, 0x62, 0x96, 0x69,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 469) 0x29, 0x3a, 0x31, 0x89, 0x0c, 0xda, 0x9d, 0x14,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 470) 0x7f, 0xeb, 0xc7, 0xd1, 0xe2, 0x2d, 0x6b, 0xb1 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 471) .public = { 0xe0, 0xeb, 0x7a, 0x7c, 0x3b, 0x41, 0xb8, 0xae,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 472) 0x16, 0x56, 0xe3, 0xfa, 0xf1, 0x9f, 0xc4, 0x6a,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 473) 0xda, 0x09, 0x8d, 0xeb, 0x9c, 0x32, 0xb1, 0xfd,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 474) 0x86, 0x62, 0x05, 0x16, 0x5f, 0x49, 0xb8, 0x00 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 475) .result = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 476) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 477) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 478) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 479) .valid = false
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 480) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 481) /* wycheproof - public key with low order */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 482) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 483) .private = { 0x78, 0xf1, 0xe8, 0xed, 0xf1, 0x44, 0x81, 0xb3,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 484) 0x89, 0x44, 0x8d, 0xac, 0x8f, 0x59, 0xc7, 0x0b,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 485) 0x03, 0x8e, 0x7c, 0xf9, 0x2e, 0xf2, 0xc7, 0xef,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 486) 0xf5, 0x7a, 0x72, 0x46, 0x6e, 0x11, 0x52, 0x96 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 487) .public = { 0x5f, 0x9c, 0x95, 0xbc, 0xa3, 0x50, 0x8c, 0x24,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 488) 0xb1, 0xd0, 0xb1, 0x55, 0x9c, 0x83, 0xef, 0x5b,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 489) 0x04, 0x44, 0x5c, 0xc4, 0x58, 0x1c, 0x8e, 0x86,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 490) 0xd8, 0x22, 0x4e, 0xdd, 0xd0, 0x9f, 0x11, 0x57 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 491) .result = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 492) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 493) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 494) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 495) .valid = false
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 496) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 497) /* wycheproof - public key with low order */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 498) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 499) .private = { 0xa0, 0xa0, 0x5a, 0x3e, 0x8f, 0x9f, 0x44, 0x20,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 500) 0x4d, 0x5f, 0x80, 0x59, 0xa9, 0x4a, 0xc7, 0xdf,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 501) 0xc3, 0x9a, 0x49, 0xac, 0x01, 0x6d, 0xd7, 0x43,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 502) 0xdb, 0xfa, 0x43, 0xc5, 0xd6, 0x71, 0xfd, 0x88 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 503) .public = { 0xec, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 504) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 505) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 506) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0x7f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 507) .result = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 508) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 509) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 510) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 511) .valid = false
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 512) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 513) /* wycheproof - public key with low order */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 514) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 515) .private = { 0xd0, 0xdb, 0xb3, 0xed, 0x19, 0x06, 0x66, 0x3f,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 516) 0x15, 0x42, 0x0a, 0xf3, 0x1f, 0x4e, 0xaf, 0x65,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 517) 0x09, 0xd9, 0xa9, 0x94, 0x97, 0x23, 0x50, 0x06,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 518) 0x05, 0xad, 0x7c, 0x1c, 0x6e, 0x74, 0x50, 0xa9 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 519) .public = { 0xed, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 520) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 521) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 522) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0x7f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 523) .result = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 524) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 525) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 526) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 527) .valid = false
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 528) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 529) /* wycheproof - public key with low order */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 530) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 531) .private = { 0xc0, 0xb1, 0xd0, 0xeb, 0x22, 0xb2, 0x44, 0xfe,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 532) 0x32, 0x91, 0x14, 0x00, 0x72, 0xcd, 0xd9, 0xd9,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 533) 0x89, 0xb5, 0xf0, 0xec, 0xd9, 0x6c, 0x10, 0x0f,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 534) 0xeb, 0x5b, 0xca, 0x24, 0x1c, 0x1d, 0x9f, 0x8f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 535) .public = { 0xee, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 536) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 537) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 538) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0x7f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 539) .result = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 540) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 541) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 542) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 543) .valid = false
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 544) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 545) /* wycheproof - public key with low order */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 546) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 547) .private = { 0x48, 0x0b, 0xf4, 0x5f, 0x59, 0x49, 0x42, 0xa8,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 548) 0xbc, 0x0f, 0x33, 0x53, 0xc6, 0xe8, 0xb8, 0x85,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 549) 0x3d, 0x77, 0xf3, 0x51, 0xf1, 0xc2, 0xca, 0x6c,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 550) 0x2d, 0x1a, 0xbf, 0x8a, 0x00, 0xb4, 0x22, 0x9c },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 551) .public = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 552) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 553) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 554) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x80 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 555) .result = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 556) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 557) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 558) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 559) .valid = false
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 560) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 561) /* wycheproof - public key with low order */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 562) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 563) .private = { 0x30, 0xf9, 0x93, 0xfc, 0xf8, 0x51, 0x4f, 0xc8,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 564) 0x9b, 0xd8, 0xdb, 0x14, 0xcd, 0x43, 0xba, 0x0d,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 565) 0x4b, 0x25, 0x30, 0xe7, 0x3c, 0x42, 0x76, 0xa0,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 566) 0x5e, 0x1b, 0x14, 0x5d, 0x42, 0x0c, 0xed, 0xb4 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 567) .public = { 0x01, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 568) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 569) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 570) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x80 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 571) .result = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 572) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 573) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 574) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 575) .valid = false
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 576) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 577) /* wycheproof - public key with low order */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 578) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 579) .private = { 0xc0, 0x49, 0x74, 0xb7, 0x58, 0x38, 0x0e, 0x2a,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 580) 0x5b, 0x5d, 0xf6, 0xeb, 0x09, 0xbb, 0x2f, 0x6b,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 581) 0x34, 0x34, 0xf9, 0x82, 0x72, 0x2a, 0x8e, 0x67,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 582) 0x6d, 0x3d, 0xa2, 0x51, 0xd1, 0xb3, 0xde, 0x83 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 583) .public = { 0xe0, 0xeb, 0x7a, 0x7c, 0x3b, 0x41, 0xb8, 0xae,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 584) 0x16, 0x56, 0xe3, 0xfa, 0xf1, 0x9f, 0xc4, 0x6a,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 585) 0xda, 0x09, 0x8d, 0xeb, 0x9c, 0x32, 0xb1, 0xfd,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 586) 0x86, 0x62, 0x05, 0x16, 0x5f, 0x49, 0xb8, 0x80 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 587) .result = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 588) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 589) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 590) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 591) .valid = false
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 592) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 593) /* wycheproof - public key with low order */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 594) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 595) .private = { 0x50, 0x2a, 0x31, 0x37, 0x3d, 0xb3, 0x24, 0x46,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 596) 0x84, 0x2f, 0xe5, 0xad, 0xd3, 0xe0, 0x24, 0x02,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 597) 0x2e, 0xa5, 0x4f, 0x27, 0x41, 0x82, 0xaf, 0xc3,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 598) 0xd9, 0xf1, 0xbb, 0x3d, 0x39, 0x53, 0x4e, 0xb5 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 599) .public = { 0x5f, 0x9c, 0x95, 0xbc, 0xa3, 0x50, 0x8c, 0x24,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 600) 0xb1, 0xd0, 0xb1, 0x55, 0x9c, 0x83, 0xef, 0x5b,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 601) 0x04, 0x44, 0x5c, 0xc4, 0x58, 0x1c, 0x8e, 0x86,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 602) 0xd8, 0x22, 0x4e, 0xdd, 0xd0, 0x9f, 0x11, 0xd7 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 603) .result = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 604) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 605) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 606) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 607) .valid = false
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 608) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 609) /* wycheproof - public key with low order */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 610) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 611) .private = { 0x90, 0xfa, 0x64, 0x17, 0xb0, 0xe3, 0x70, 0x30,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 612) 0xfd, 0x6e, 0x43, 0xef, 0xf2, 0xab, 0xae, 0xf1,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 613) 0x4c, 0x67, 0x93, 0x11, 0x7a, 0x03, 0x9c, 0xf6,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 614) 0x21, 0x31, 0x8b, 0xa9, 0x0f, 0x4e, 0x98, 0xbe },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 615) .public = { 0xec, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 616) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 617) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 618) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 619) .result = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 620) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 621) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 622) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 623) .valid = false
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 624) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 625) /* wycheproof - public key with low order */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 626) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 627) .private = { 0x78, 0xad, 0x3f, 0x26, 0x02, 0x7f, 0x1c, 0x9f,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 628) 0xdd, 0x97, 0x5a, 0x16, 0x13, 0xb9, 0x47, 0x77,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 629) 0x9b, 0xad, 0x2c, 0xf2, 0xb7, 0x41, 0xad, 0xe0,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 630) 0x18, 0x40, 0x88, 0x5a, 0x30, 0xbb, 0x97, 0x9c },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 631) .public = { 0xed, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 632) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 633) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 634) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 635) .result = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 636) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 637) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 638) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 639) .valid = false
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 640) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 641) /* wycheproof - public key with low order */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 642) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 643) .private = { 0x98, 0xe2, 0x3d, 0xe7, 0xb1, 0xe0, 0x92, 0x6e,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 644) 0xd9, 0xc8, 0x7e, 0x7b, 0x14, 0xba, 0xf5, 0x5f,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 645) 0x49, 0x7a, 0x1d, 0x70, 0x96, 0xf9, 0x39, 0x77,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 646) 0x68, 0x0e, 0x44, 0xdc, 0x1c, 0x7b, 0x7b, 0x8b },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 647) .public = { 0xee, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 648) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 649) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 650) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 651) .result = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 652) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 653) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 654) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 655) .valid = false
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 656) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 657) /* wycheproof - public key >= p */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 658) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 659) .private = { 0xf0, 0x1e, 0x48, 0xda, 0xfa, 0xc9, 0xd7, 0xbc,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 660) 0xf5, 0x89, 0xcb, 0xc3, 0x82, 0xc8, 0x78, 0xd1,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 661) 0x8b, 0xda, 0x35, 0x50, 0x58, 0x9f, 0xfb, 0x5d,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 662) 0x50, 0xb5, 0x23, 0xbe, 0xbe, 0x32, 0x9d, 0xae },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 663) .public = { 0xef, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 664) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 665) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 666) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0x7f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 667) .result = { 0xbd, 0x36, 0xa0, 0x79, 0x0e, 0xb8, 0x83, 0x09,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 668) 0x8c, 0x98, 0x8b, 0x21, 0x78, 0x67, 0x73, 0xde,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 669) 0x0b, 0x3a, 0x4d, 0xf1, 0x62, 0x28, 0x2c, 0xf1,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 670) 0x10, 0xde, 0x18, 0xdd, 0x48, 0x4c, 0xe7, 0x4b },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 671) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 672) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 673) /* wycheproof - public key >= p */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 674) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 675) .private = { 0x28, 0x87, 0x96, 0xbc, 0x5a, 0xff, 0x4b, 0x81,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 676) 0xa3, 0x75, 0x01, 0x75, 0x7b, 0xc0, 0x75, 0x3a,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 677) 0x3c, 0x21, 0x96, 0x47, 0x90, 0xd3, 0x86, 0x99,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 678) 0x30, 0x8d, 0xeb, 0xc1, 0x7a, 0x6e, 0xaf, 0x8d },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 679) .public = { 0xf0, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 680) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 681) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 682) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0x7f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 683) .result = { 0xb4, 0xe0, 0xdd, 0x76, 0xda, 0x7b, 0x07, 0x17,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 684) 0x28, 0xb6, 0x1f, 0x85, 0x67, 0x71, 0xaa, 0x35,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 685) 0x6e, 0x57, 0xed, 0xa7, 0x8a, 0x5b, 0x16, 0x55,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 686) 0xcc, 0x38, 0x20, 0xfb, 0x5f, 0x85, 0x4c, 0x5c },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 687) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 688) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 689) /* wycheproof - public key >= p */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 690) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 691) .private = { 0x98, 0xdf, 0x84, 0x5f, 0x66, 0x51, 0xbf, 0x11,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 692) 0x38, 0x22, 0x1f, 0x11, 0x90, 0x41, 0xf7, 0x2b,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 693) 0x6d, 0xbc, 0x3c, 0x4a, 0xce, 0x71, 0x43, 0xd9,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 694) 0x9f, 0xd5, 0x5a, 0xd8, 0x67, 0x48, 0x0d, 0xa8 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 695) .public = { 0xf1, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 696) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 697) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 698) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0x7f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 699) .result = { 0x6f, 0xdf, 0x6c, 0x37, 0x61, 0x1d, 0xbd, 0x53,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 700) 0x04, 0xdc, 0x0f, 0x2e, 0xb7, 0xc9, 0x51, 0x7e,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 701) 0xb3, 0xc5, 0x0e, 0x12, 0xfd, 0x05, 0x0a, 0xc6,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 702) 0xde, 0xc2, 0x70, 0x71, 0xd4, 0xbf, 0xc0, 0x34 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 703) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 704) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 705) /* wycheproof - public key >= p */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 706) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 707) .private = { 0xf0, 0x94, 0x98, 0xe4, 0x6f, 0x02, 0xf8, 0x78,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 708) 0x82, 0x9e, 0x78, 0xb8, 0x03, 0xd3, 0x16, 0xa2,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 709) 0xed, 0x69, 0x5d, 0x04, 0x98, 0xa0, 0x8a, 0xbd,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 710) 0xf8, 0x27, 0x69, 0x30, 0xe2, 0x4e, 0xdc, 0xb0 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 711) .public = { 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 712) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 713) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 714) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0x7f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 715) .result = { 0x4c, 0x8f, 0xc4, 0xb1, 0xc6, 0xab, 0x88, 0xfb,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 716) 0x21, 0xf1, 0x8f, 0x6d, 0x4c, 0x81, 0x02, 0x40,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 717) 0xd4, 0xe9, 0x46, 0x51, 0xba, 0x44, 0xf7, 0xa2,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 718) 0xc8, 0x63, 0xce, 0xc7, 0xdc, 0x56, 0x60, 0x2d },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 719) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 720) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 721) /* wycheproof - public key >= p */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 722) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 723) .private = { 0x18, 0x13, 0xc1, 0x0a, 0x5c, 0x7f, 0x21, 0xf9,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 724) 0x6e, 0x17, 0xf2, 0x88, 0xc0, 0xcc, 0x37, 0x60,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 725) 0x7c, 0x04, 0xc5, 0xf5, 0xae, 0xa2, 0xdb, 0x13,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 726) 0x4f, 0x9e, 0x2f, 0xfc, 0x66, 0xbd, 0x9d, 0xb8 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 727) .public = { 0x02, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 728) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 729) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 730) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x80 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 731) .result = { 0x1c, 0xd0, 0xb2, 0x82, 0x67, 0xdc, 0x54, 0x1c,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 732) 0x64, 0x2d, 0x6d, 0x7d, 0xca, 0x44, 0xa8, 0xb3,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 733) 0x8a, 0x63, 0x73, 0x6e, 0xef, 0x5c, 0x4e, 0x65,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 734) 0x01, 0xff, 0xbb, 0xb1, 0x78, 0x0c, 0x03, 0x3c },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 735) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 736) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 737) /* wycheproof - public key >= p */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 738) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 739) .private = { 0x78, 0x57, 0xfb, 0x80, 0x86, 0x53, 0x64, 0x5a,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 740) 0x0b, 0xeb, 0x13, 0x8a, 0x64, 0xf5, 0xf4, 0xd7,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 741) 0x33, 0xa4, 0x5e, 0xa8, 0x4c, 0x3c, 0xda, 0x11,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 742) 0xa9, 0xc0, 0x6f, 0x7e, 0x71, 0x39, 0x14, 0x9e },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 743) .public = { 0x03, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 744) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 745) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 746) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x80 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 747) .result = { 0x87, 0x55, 0xbe, 0x01, 0xc6, 0x0a, 0x7e, 0x82,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 748) 0x5c, 0xff, 0x3e, 0x0e, 0x78, 0xcb, 0x3a, 0xa4,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 749) 0x33, 0x38, 0x61, 0x51, 0x6a, 0xa5, 0x9b, 0x1c,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 750) 0x51, 0xa8, 0xb2, 0xa5, 0x43, 0xdf, 0xa8, 0x22 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 751) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 752) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 753) /* wycheproof - public key >= p */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 754) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 755) .private = { 0xe0, 0x3a, 0xa8, 0x42, 0xe2, 0xab, 0xc5, 0x6e,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 756) 0x81, 0xe8, 0x7b, 0x8b, 0x9f, 0x41, 0x7b, 0x2a,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 757) 0x1e, 0x59, 0x13, 0xc7, 0x23, 0xee, 0xd2, 0x8d,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 758) 0x75, 0x2f, 0x8d, 0x47, 0xa5, 0x9f, 0x49, 0x8f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 759) .public = { 0x04, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 760) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 761) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 762) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x80 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 763) .result = { 0x54, 0xc9, 0xa1, 0xed, 0x95, 0xe5, 0x46, 0xd2,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 764) 0x78, 0x22, 0xa3, 0x60, 0x93, 0x1d, 0xda, 0x60,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 765) 0xa1, 0xdf, 0x04, 0x9d, 0xa6, 0xf9, 0x04, 0x25,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 766) 0x3c, 0x06, 0x12, 0xbb, 0xdc, 0x08, 0x74, 0x76 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 767) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 768) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 769) /* wycheproof - public key >= p */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 770) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 771) .private = { 0xf8, 0xf7, 0x07, 0xb7, 0x99, 0x9b, 0x18, 0xcb,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 772) 0x0d, 0x6b, 0x96, 0x12, 0x4f, 0x20, 0x45, 0x97,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 773) 0x2c, 0xa2, 0x74, 0xbf, 0xc1, 0x54, 0xad, 0x0c,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 774) 0x87, 0x03, 0x8c, 0x24, 0xc6, 0xd0, 0xd4, 0xb2 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 775) .public = { 0xda, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 776) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 777) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 778) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 779) .result = { 0xcc, 0x1f, 0x40, 0xd7, 0x43, 0xcd, 0xc2, 0x23,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 780) 0x0e, 0x10, 0x43, 0xda, 0xba, 0x8b, 0x75, 0xe8,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 781) 0x10, 0xf1, 0xfb, 0xab, 0x7f, 0x25, 0x52, 0x69,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 782) 0xbd, 0x9e, 0xbb, 0x29, 0xe6, 0xbf, 0x49, 0x4f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 783) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 784) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 785) /* wycheproof - public key >= p */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 786) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 787) .private = { 0xa0, 0x34, 0xf6, 0x84, 0xfa, 0x63, 0x1e, 0x1a,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 788) 0x34, 0x81, 0x18, 0xc1, 0xce, 0x4c, 0x98, 0x23,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 789) 0x1f, 0x2d, 0x9e, 0xec, 0x9b, 0xa5, 0x36, 0x5b,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 790) 0x4a, 0x05, 0xd6, 0x9a, 0x78, 0x5b, 0x07, 0x96 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 791) .public = { 0xdb, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 792) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 793) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 794) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 795) .result = { 0x54, 0x99, 0x8e, 0xe4, 0x3a, 0x5b, 0x00, 0x7b,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 796) 0xf4, 0x99, 0xf0, 0x78, 0xe7, 0x36, 0x52, 0x44,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 797) 0x00, 0xa8, 0xb5, 0xc7, 0xe9, 0xb9, 0xb4, 0x37,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 798) 0x71, 0x74, 0x8c, 0x7c, 0xdf, 0x88, 0x04, 0x12 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 799) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 800) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 801) /* wycheproof - public key >= p */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 802) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 803) .private = { 0x30, 0xb6, 0xc6, 0xa0, 0xf2, 0xff, 0xa6, 0x80,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 804) 0x76, 0x8f, 0x99, 0x2b, 0xa8, 0x9e, 0x15, 0x2d,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 805) 0x5b, 0xc9, 0x89, 0x3d, 0x38, 0xc9, 0x11, 0x9b,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 806) 0xe4, 0xf7, 0x67, 0xbf, 0xab, 0x6e, 0x0c, 0xa5 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 807) .public = { 0xdc, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 808) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 809) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 810) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 811) .result = { 0xea, 0xd9, 0xb3, 0x8e, 0xfd, 0xd7, 0x23, 0x63,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 812) 0x79, 0x34, 0xe5, 0x5a, 0xb7, 0x17, 0xa7, 0xae,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 813) 0x09, 0xeb, 0x86, 0xa2, 0x1d, 0xc3, 0x6a, 0x3f,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 814) 0xee, 0xb8, 0x8b, 0x75, 0x9e, 0x39, 0x1e, 0x09 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 815) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 816) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 817) /* wycheproof - public key >= p */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 818) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 819) .private = { 0x90, 0x1b, 0x9d, 0xcf, 0x88, 0x1e, 0x01, 0xe0,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 820) 0x27, 0x57, 0x50, 0x35, 0xd4, 0x0b, 0x43, 0xbd,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 821) 0xc1, 0xc5, 0x24, 0x2e, 0x03, 0x08, 0x47, 0x49,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 822) 0x5b, 0x0c, 0x72, 0x86, 0x46, 0x9b, 0x65, 0x91 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 823) .public = { 0xea, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 824) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 825) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 826) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 827) .result = { 0x60, 0x2f, 0xf4, 0x07, 0x89, 0xb5, 0x4b, 0x41,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 828) 0x80, 0x59, 0x15, 0xfe, 0x2a, 0x62, 0x21, 0xf0,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 829) 0x7a, 0x50, 0xff, 0xc2, 0xc3, 0xfc, 0x94, 0xcf,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 830) 0x61, 0xf1, 0x3d, 0x79, 0x04, 0xe8, 0x8e, 0x0e },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 831) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 832) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 833) /* wycheproof - public key >= p */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 834) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 835) .private = { 0x80, 0x46, 0x67, 0x7c, 0x28, 0xfd, 0x82, 0xc9,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 836) 0xa1, 0xbd, 0xb7, 0x1a, 0x1a, 0x1a, 0x34, 0xfa,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 837) 0xba, 0x12, 0x25, 0xe2, 0x50, 0x7f, 0xe3, 0xf5,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 838) 0x4d, 0x10, 0xbd, 0x5b, 0x0d, 0x86, 0x5f, 0x8e },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 839) .public = { 0xeb, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 840) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 841) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 842) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 843) .result = { 0xe0, 0x0a, 0xe8, 0xb1, 0x43, 0x47, 0x12, 0x47,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 844) 0xba, 0x24, 0xf1, 0x2c, 0x88, 0x55, 0x36, 0xc3,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 845) 0xcb, 0x98, 0x1b, 0x58, 0xe1, 0xe5, 0x6b, 0x2b,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 846) 0xaf, 0x35, 0xc1, 0x2a, 0xe1, 0xf7, 0x9c, 0x26 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 847) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 848) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 849) /* wycheproof - public key >= p */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 850) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 851) .private = { 0x60, 0x2f, 0x7e, 0x2f, 0x68, 0xa8, 0x46, 0xb8,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 852) 0x2c, 0xc2, 0x69, 0xb1, 0xd4, 0x8e, 0x93, 0x98,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 853) 0x86, 0xae, 0x54, 0xfd, 0x63, 0x6c, 0x1f, 0xe0,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 854) 0x74, 0xd7, 0x10, 0x12, 0x7d, 0x47, 0x24, 0x91 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 855) .public = { 0xef, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 856) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 857) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 858) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 859) .result = { 0x98, 0xcb, 0x9b, 0x50, 0xdd, 0x3f, 0xc2, 0xb0,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 860) 0xd4, 0xf2, 0xd2, 0xbf, 0x7c, 0x5c, 0xfd, 0xd1,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 861) 0x0c, 0x8f, 0xcd, 0x31, 0xfc, 0x40, 0xaf, 0x1a,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 862) 0xd4, 0x4f, 0x47, 0xc1, 0x31, 0x37, 0x63, 0x62 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 863) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 864) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 865) /* wycheproof - public key >= p */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 866) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 867) .private = { 0x60, 0x88, 0x7b, 0x3d, 0xc7, 0x24, 0x43, 0x02,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 868) 0x6e, 0xbe, 0xdb, 0xbb, 0xb7, 0x06, 0x65, 0xf4,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 869) 0x2b, 0x87, 0xad, 0xd1, 0x44, 0x0e, 0x77, 0x68,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 870) 0xfb, 0xd7, 0xe8, 0xe2, 0xce, 0x5f, 0x63, 0x9d },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 871) .public = { 0xf0, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 872) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 873) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 874) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 875) .result = { 0x38, 0xd6, 0x30, 0x4c, 0x4a, 0x7e, 0x6d, 0x9f,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 876) 0x79, 0x59, 0x33, 0x4f, 0xb5, 0x24, 0x5b, 0xd2,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 877) 0xc7, 0x54, 0x52, 0x5d, 0x4c, 0x91, 0xdb, 0x95,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 878) 0x02, 0x06, 0x92, 0x62, 0x34, 0xc1, 0xf6, 0x33 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 879) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 880) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 881) /* wycheproof - public key >= p */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 882) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 883) .private = { 0x78, 0xd3, 0x1d, 0xfa, 0x85, 0x44, 0x97, 0xd7,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 884) 0x2d, 0x8d, 0xef, 0x8a, 0x1b, 0x7f, 0xb0, 0x06,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 885) 0xce, 0xc2, 0xd8, 0xc4, 0x92, 0x46, 0x47, 0xc9,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 886) 0x38, 0x14, 0xae, 0x56, 0xfa, 0xed, 0xa4, 0x95 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 887) .public = { 0xf1, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 888) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 889) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 890) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 891) .result = { 0x78, 0x6c, 0xd5, 0x49, 0x96, 0xf0, 0x14, 0xa5,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 892) 0xa0, 0x31, 0xec, 0x14, 0xdb, 0x81, 0x2e, 0xd0,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 893) 0x83, 0x55, 0x06, 0x1f, 0xdb, 0x5d, 0xe6, 0x80,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 894) 0xa8, 0x00, 0xac, 0x52, 0x1f, 0x31, 0x8e, 0x23 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 895) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 896) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 897) /* wycheproof - public key >= p */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 898) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 899) .private = { 0xc0, 0x4c, 0x5b, 0xae, 0xfa, 0x83, 0x02, 0xdd,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 900) 0xde, 0xd6, 0xa4, 0xbb, 0x95, 0x77, 0x61, 0xb4,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 901) 0xeb, 0x97, 0xae, 0xfa, 0x4f, 0xc3, 0xb8, 0x04,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 902) 0x30, 0x85, 0xf9, 0x6a, 0x56, 0x59, 0xb3, 0xa5 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 903) .public = { 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 904) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 905) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 906) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 907) .result = { 0x29, 0xae, 0x8b, 0xc7, 0x3e, 0x9b, 0x10, 0xa0,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 908) 0x8b, 0x4f, 0x68, 0x1c, 0x43, 0xc3, 0xe0, 0xac,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 909) 0x1a, 0x17, 0x1d, 0x31, 0xb3, 0x8f, 0x1a, 0x48,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 910) 0xef, 0xba, 0x29, 0xae, 0x63, 0x9e, 0xa1, 0x34 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 911) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 912) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 913) /* wycheproof - RFC 7748 */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 914) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 915) .private = { 0xa0, 0x46, 0xe3, 0x6b, 0xf0, 0x52, 0x7c, 0x9d,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 916) 0x3b, 0x16, 0x15, 0x4b, 0x82, 0x46, 0x5e, 0xdd,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 917) 0x62, 0x14, 0x4c, 0x0a, 0xc1, 0xfc, 0x5a, 0x18,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 918) 0x50, 0x6a, 0x22, 0x44, 0xba, 0x44, 0x9a, 0x44 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 919) .public = { 0xe6, 0xdb, 0x68, 0x67, 0x58, 0x30, 0x30, 0xdb,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 920) 0x35, 0x94, 0xc1, 0xa4, 0x24, 0xb1, 0x5f, 0x7c,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 921) 0x72, 0x66, 0x24, 0xec, 0x26, 0xb3, 0x35, 0x3b,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 922) 0x10, 0xa9, 0x03, 0xa6, 0xd0, 0xab, 0x1c, 0x4c },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 923) .result = { 0xc3, 0xda, 0x55, 0x37, 0x9d, 0xe9, 0xc6, 0x90,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 924) 0x8e, 0x94, 0xea, 0x4d, 0xf2, 0x8d, 0x08, 0x4f,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 925) 0x32, 0xec, 0xcf, 0x03, 0x49, 0x1c, 0x71, 0xf7,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 926) 0x54, 0xb4, 0x07, 0x55, 0x77, 0xa2, 0x85, 0x52 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 927) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 928) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 929) /* wycheproof - RFC 7748 */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 930) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 931) .private = { 0x48, 0x66, 0xe9, 0xd4, 0xd1, 0xb4, 0x67, 0x3c,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 932) 0x5a, 0xd2, 0x26, 0x91, 0x95, 0x7d, 0x6a, 0xf5,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 933) 0xc1, 0x1b, 0x64, 0x21, 0xe0, 0xea, 0x01, 0xd4,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 934) 0x2c, 0xa4, 0x16, 0x9e, 0x79, 0x18, 0xba, 0x4d },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 935) .public = { 0xe5, 0x21, 0x0f, 0x12, 0x78, 0x68, 0x11, 0xd3,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 936) 0xf4, 0xb7, 0x95, 0x9d, 0x05, 0x38, 0xae, 0x2c,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 937) 0x31, 0xdb, 0xe7, 0x10, 0x6f, 0xc0, 0x3c, 0x3e,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 938) 0xfc, 0x4c, 0xd5, 0x49, 0xc7, 0x15, 0xa4, 0x13 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 939) .result = { 0x95, 0xcb, 0xde, 0x94, 0x76, 0xe8, 0x90, 0x7d,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 940) 0x7a, 0xad, 0xe4, 0x5c, 0xb4, 0xb8, 0x73, 0xf8,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 941) 0x8b, 0x59, 0x5a, 0x68, 0x79, 0x9f, 0xa1, 0x52,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 942) 0xe6, 0xf8, 0xf7, 0x64, 0x7a, 0xac, 0x79, 0x57 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 943) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 944) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 945) /* wycheproof - edge case for shared secret */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 946) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 947) .private = { 0xa0, 0xa4, 0xf1, 0x30, 0xb9, 0x8a, 0x5b, 0xe4,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 948) 0xb1, 0xce, 0xdb, 0x7c, 0xb8, 0x55, 0x84, 0xa3,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 949) 0x52, 0x0e, 0x14, 0x2d, 0x47, 0x4d, 0xc9, 0xcc,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 950) 0xb9, 0x09, 0xa0, 0x73, 0xa9, 0x76, 0xbf, 0x63 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 951) .public = { 0x0a, 0xb4, 0xe7, 0x63, 0x80, 0xd8, 0x4d, 0xde,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 952) 0x4f, 0x68, 0x33, 0xc5, 0x8f, 0x2a, 0x9f, 0xb8,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 953) 0xf8, 0x3b, 0xb0, 0x16, 0x9b, 0x17, 0x2b, 0xe4,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 954) 0xb6, 0xe0, 0x59, 0x28, 0x87, 0x74, 0x1a, 0x36 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 955) .result = { 0x02, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 956) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 957) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 958) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 959) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 960) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 961) /* wycheproof - edge case for shared secret */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 962) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 963) .private = { 0xa0, 0xa4, 0xf1, 0x30, 0xb9, 0x8a, 0x5b, 0xe4,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 964) 0xb1, 0xce, 0xdb, 0x7c, 0xb8, 0x55, 0x84, 0xa3,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 965) 0x52, 0x0e, 0x14, 0x2d, 0x47, 0x4d, 0xc9, 0xcc,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 966) 0xb9, 0x09, 0xa0, 0x73, 0xa9, 0x76, 0xbf, 0x63 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 967) .public = { 0x89, 0xe1, 0x0d, 0x57, 0x01, 0xb4, 0x33, 0x7d,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 968) 0x2d, 0x03, 0x21, 0x81, 0x53, 0x8b, 0x10, 0x64,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 969) 0xbd, 0x40, 0x84, 0x40, 0x1c, 0xec, 0xa1, 0xfd,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 970) 0x12, 0x66, 0x3a, 0x19, 0x59, 0x38, 0x80, 0x00 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 971) .result = { 0x09, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 972) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 973) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 974) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 975) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 976) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 977) /* wycheproof - edge case for shared secret */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 978) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 979) .private = { 0xa0, 0xa4, 0xf1, 0x30, 0xb9, 0x8a, 0x5b, 0xe4,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 980) 0xb1, 0xce, 0xdb, 0x7c, 0xb8, 0x55, 0x84, 0xa3,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 981) 0x52, 0x0e, 0x14, 0x2d, 0x47, 0x4d, 0xc9, 0xcc,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 982) 0xb9, 0x09, 0xa0, 0x73, 0xa9, 0x76, 0xbf, 0x63 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 983) .public = { 0x2b, 0x55, 0xd3, 0xaa, 0x4a, 0x8f, 0x80, 0xc8,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 984) 0xc0, 0xb2, 0xae, 0x5f, 0x93, 0x3e, 0x85, 0xaf,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 985) 0x49, 0xbe, 0xac, 0x36, 0xc2, 0xfa, 0x73, 0x94,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 986) 0xba, 0xb7, 0x6c, 0x89, 0x33, 0xf8, 0xf8, 0x1d },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 987) .result = { 0x10, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 988) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 989) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 990) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 991) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 992) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 993) /* wycheproof - edge case for shared secret */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 994) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 995) .private = { 0xa0, 0xa4, 0xf1, 0x30, 0xb9, 0x8a, 0x5b, 0xe4,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 996) 0xb1, 0xce, 0xdb, 0x7c, 0xb8, 0x55, 0x84, 0xa3,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 997) 0x52, 0x0e, 0x14, 0x2d, 0x47, 0x4d, 0xc9, 0xcc,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 998) 0xb9, 0x09, 0xa0, 0x73, 0xa9, 0x76, 0xbf, 0x63 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 999) .public = { 0x63, 0xe5, 0xb1, 0xfe, 0x96, 0x01, 0xfe, 0x84,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1000) 0x38, 0x5d, 0x88, 0x66, 0xb0, 0x42, 0x12, 0x62,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1001) 0xf7, 0x8f, 0xbf, 0xa5, 0xaf, 0xf9, 0x58, 0x5e,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1002) 0x62, 0x66, 0x79, 0xb1, 0x85, 0x47, 0xd9, 0x59 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1003) .result = { 0xfe, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1004) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1005) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1006) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0x3f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1007) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1008) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1009) /* wycheproof - edge case for shared secret */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1010) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1011) .private = { 0xa0, 0xa4, 0xf1, 0x30, 0xb9, 0x8a, 0x5b, 0xe4,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1012) 0xb1, 0xce, 0xdb, 0x7c, 0xb8, 0x55, 0x84, 0xa3,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1013) 0x52, 0x0e, 0x14, 0x2d, 0x47, 0x4d, 0xc9, 0xcc,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1014) 0xb9, 0x09, 0xa0, 0x73, 0xa9, 0x76, 0xbf, 0x63 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1015) .public = { 0xe4, 0x28, 0xf3, 0xda, 0xc1, 0x78, 0x09, 0xf8,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1016) 0x27, 0xa5, 0x22, 0xce, 0x32, 0x35, 0x50, 0x58,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1017) 0xd0, 0x73, 0x69, 0x36, 0x4a, 0xa7, 0x89, 0x02,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1018) 0xee, 0x10, 0x13, 0x9b, 0x9f, 0x9d, 0xd6, 0x53 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1019) .result = { 0xfc, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1020) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1021) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1022) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0x3f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1023) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1024) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1025) /* wycheproof - edge case for shared secret */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1026) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1027) .private = { 0xa0, 0xa4, 0xf1, 0x30, 0xb9, 0x8a, 0x5b, 0xe4,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1028) 0xb1, 0xce, 0xdb, 0x7c, 0xb8, 0x55, 0x84, 0xa3,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1029) 0x52, 0x0e, 0x14, 0x2d, 0x47, 0x4d, 0xc9, 0xcc,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1030) 0xb9, 0x09, 0xa0, 0x73, 0xa9, 0x76, 0xbf, 0x63 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1031) .public = { 0xb3, 0xb5, 0x0e, 0x3e, 0xd3, 0xa4, 0x07, 0xb9,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1032) 0x5d, 0xe9, 0x42, 0xef, 0x74, 0x57, 0x5b, 0x5a,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1033) 0xb8, 0xa1, 0x0c, 0x09, 0xee, 0x10, 0x35, 0x44,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1034) 0xd6, 0x0b, 0xdf, 0xed, 0x81, 0x38, 0xab, 0x2b },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1035) .result = { 0xf9, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1036) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1037) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1038) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0x3f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1039) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1040) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1041) /* wycheproof - edge case for shared secret */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1042) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1043) .private = { 0xa0, 0xa4, 0xf1, 0x30, 0xb9, 0x8a, 0x5b, 0xe4,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1044) 0xb1, 0xce, 0xdb, 0x7c, 0xb8, 0x55, 0x84, 0xa3,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1045) 0x52, 0x0e, 0x14, 0x2d, 0x47, 0x4d, 0xc9, 0xcc,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1046) 0xb9, 0x09, 0xa0, 0x73, 0xa9, 0x76, 0xbf, 0x63 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1047) .public = { 0x21, 0x3f, 0xff, 0xe9, 0x3d, 0x5e, 0xa8, 0xcd,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1048) 0x24, 0x2e, 0x46, 0x28, 0x44, 0x02, 0x99, 0x22,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1049) 0xc4, 0x3c, 0x77, 0xc9, 0xe3, 0xe4, 0x2f, 0x56,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1050) 0x2f, 0x48, 0x5d, 0x24, 0xc5, 0x01, 0xa2, 0x0b },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1051) .result = { 0xf3, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1052) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1053) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1054) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0x3f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1055) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1056) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1057) /* wycheproof - edge case for shared secret */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1058) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1059) .private = { 0xa0, 0xa4, 0xf1, 0x30, 0xb9, 0x8a, 0x5b, 0xe4,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1060) 0xb1, 0xce, 0xdb, 0x7c, 0xb8, 0x55, 0x84, 0xa3,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1061) 0x52, 0x0e, 0x14, 0x2d, 0x47, 0x4d, 0xc9, 0xcc,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1062) 0xb9, 0x09, 0xa0, 0x73, 0xa9, 0x76, 0xbf, 0x63 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1063) .public = { 0x91, 0xb2, 0x32, 0xa1, 0x78, 0xb3, 0xcd, 0x53,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1064) 0x09, 0x32, 0x44, 0x1e, 0x61, 0x39, 0x41, 0x8f,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1065) 0x72, 0x17, 0x22, 0x92, 0xf1, 0xda, 0x4c, 0x18,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1066) 0x34, 0xfc, 0x5e, 0xbf, 0xef, 0xb5, 0x1e, 0x3f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1067) .result = { 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1068) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1069) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1070) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0x03 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1071) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1072) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1073) /* wycheproof - edge case for shared secret */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1074) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1075) .private = { 0xa0, 0xa4, 0xf1, 0x30, 0xb9, 0x8a, 0x5b, 0xe4,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1076) 0xb1, 0xce, 0xdb, 0x7c, 0xb8, 0x55, 0x84, 0xa3,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1077) 0x52, 0x0e, 0x14, 0x2d, 0x47, 0x4d, 0xc9, 0xcc,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1078) 0xb9, 0x09, 0xa0, 0x73, 0xa9, 0x76, 0xbf, 0x63 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1079) .public = { 0x04, 0x5c, 0x6e, 0x11, 0xc5, 0xd3, 0x32, 0x55,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1080) 0x6c, 0x78, 0x22, 0xfe, 0x94, 0xeb, 0xf8, 0x9b,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1081) 0x56, 0xa3, 0x87, 0x8d, 0xc2, 0x7c, 0xa0, 0x79,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1082) 0x10, 0x30, 0x58, 0x84, 0x9f, 0xab, 0xcb, 0x4f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1083) .result = { 0xe5, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1084) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1085) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1086) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0x7f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1087) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1088) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1089) /* wycheproof - edge case for shared secret */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1090) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1091) .private = { 0xa0, 0xa4, 0xf1, 0x30, 0xb9, 0x8a, 0x5b, 0xe4,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1092) 0xb1, 0xce, 0xdb, 0x7c, 0xb8, 0x55, 0x84, 0xa3,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1093) 0x52, 0x0e, 0x14, 0x2d, 0x47, 0x4d, 0xc9, 0xcc,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1094) 0xb9, 0x09, 0xa0, 0x73, 0xa9, 0x76, 0xbf, 0x63 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1095) .public = { 0x1c, 0xa2, 0x19, 0x0b, 0x71, 0x16, 0x35, 0x39,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1096) 0x06, 0x3c, 0x35, 0x77, 0x3b, 0xda, 0x0c, 0x9c,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1097) 0x92, 0x8e, 0x91, 0x36, 0xf0, 0x62, 0x0a, 0xeb,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1098) 0x09, 0x3f, 0x09, 0x91, 0x97, 0xb7, 0xf7, 0x4e },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1099) .result = { 0xe3, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1100) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1101) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1102) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0x7f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1103) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1104) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1105) /* wycheproof - edge case for shared secret */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1106) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1107) .private = { 0xa0, 0xa4, 0xf1, 0x30, 0xb9, 0x8a, 0x5b, 0xe4,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1108) 0xb1, 0xce, 0xdb, 0x7c, 0xb8, 0x55, 0x84, 0xa3,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1109) 0x52, 0x0e, 0x14, 0x2d, 0x47, 0x4d, 0xc9, 0xcc,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1110) 0xb9, 0x09, 0xa0, 0x73, 0xa9, 0x76, 0xbf, 0x63 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1111) .public = { 0xf7, 0x6e, 0x90, 0x10, 0xac, 0x33, 0xc5, 0x04,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1112) 0x3b, 0x2d, 0x3b, 0x76, 0xa8, 0x42, 0x17, 0x10,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1113) 0x00, 0xc4, 0x91, 0x62, 0x22, 0xe9, 0xe8, 0x58,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1114) 0x97, 0xa0, 0xae, 0xc7, 0xf6, 0x35, 0x0b, 0x3c },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1115) .result = { 0xdd, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1116) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1117) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1118) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0x7f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1119) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1120) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1121) /* wycheproof - edge case for shared secret */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1122) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1123) .private = { 0xa0, 0xa4, 0xf1, 0x30, 0xb9, 0x8a, 0x5b, 0xe4,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1124) 0xb1, 0xce, 0xdb, 0x7c, 0xb8, 0x55, 0x84, 0xa3,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1125) 0x52, 0x0e, 0x14, 0x2d, 0x47, 0x4d, 0xc9, 0xcc,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1126) 0xb9, 0x09, 0xa0, 0x73, 0xa9, 0x76, 0xbf, 0x63 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1127) .public = { 0xbb, 0x72, 0x68, 0x8d, 0x8f, 0x8a, 0xa7, 0xa3,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1128) 0x9c, 0xd6, 0x06, 0x0c, 0xd5, 0xc8, 0x09, 0x3c,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1129) 0xde, 0xc6, 0xfe, 0x34, 0x19, 0x37, 0xc3, 0x88,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1130) 0x6a, 0x99, 0x34, 0x6c, 0xd0, 0x7f, 0xaa, 0x55 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1131) .result = { 0xdb, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1132) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1133) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1134) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0x7f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1135) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1136) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1137) /* wycheproof - edge case for shared secret */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1138) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1139) .private = { 0xa0, 0xa4, 0xf1, 0x30, 0xb9, 0x8a, 0x5b, 0xe4,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1140) 0xb1, 0xce, 0xdb, 0x7c, 0xb8, 0x55, 0x84, 0xa3,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1141) 0x52, 0x0e, 0x14, 0x2d, 0x47, 0x4d, 0xc9, 0xcc,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1142) 0xb9, 0x09, 0xa0, 0x73, 0xa9, 0x76, 0xbf, 0x63 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1143) .public = { 0x88, 0xfd, 0xde, 0xa1, 0x93, 0x39, 0x1c, 0x6a,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1144) 0x59, 0x33, 0xef, 0x9b, 0x71, 0x90, 0x15, 0x49,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1145) 0x44, 0x72, 0x05, 0xaa, 0xe9, 0xda, 0x92, 0x8a,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1146) 0x6b, 0x91, 0xa3, 0x52, 0xba, 0x10, 0xf4, 0x1f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1147) .result = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1148) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1149) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1150) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x02 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1151) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1152) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1153) /* wycheproof - edge case for shared secret */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1154) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1155) .private = { 0xa0, 0xa4, 0xf1, 0x30, 0xb9, 0x8a, 0x5b, 0xe4,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1156) 0xb1, 0xce, 0xdb, 0x7c, 0xb8, 0x55, 0x84, 0xa3,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1157) 0x52, 0x0e, 0x14, 0x2d, 0x47, 0x4d, 0xc9, 0xcc,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1158) 0xb9, 0x09, 0xa0, 0x73, 0xa9, 0x76, 0xbf, 0x63 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1159) .public = { 0x30, 0x3b, 0x39, 0x2f, 0x15, 0x31, 0x16, 0xca,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1160) 0xd9, 0xcc, 0x68, 0x2a, 0x00, 0xcc, 0xc4, 0x4c,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1161) 0x95, 0xff, 0x0d, 0x3b, 0xbe, 0x56, 0x8b, 0xeb,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1162) 0x6c, 0x4e, 0x73, 0x9b, 0xaf, 0xdc, 0x2c, 0x68 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1163) .result = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1164) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1165) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1166) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x80, 0x00 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1167) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1168) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1169) /* wycheproof - checking for overflow */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1170) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1171) .private = { 0xc8, 0x17, 0x24, 0x70, 0x40, 0x00, 0xb2, 0x6d,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1172) 0x31, 0x70, 0x3c, 0xc9, 0x7e, 0x3a, 0x37, 0x8d,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1173) 0x56, 0xfa, 0xd8, 0x21, 0x93, 0x61, 0xc8, 0x8c,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1174) 0xca, 0x8b, 0xd7, 0xc5, 0x71, 0x9b, 0x12, 0xb2 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1175) .public = { 0xfd, 0x30, 0x0a, 0xeb, 0x40, 0xe1, 0xfa, 0x58,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1176) 0x25, 0x18, 0x41, 0x2b, 0x49, 0xb2, 0x08, 0xa7,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1177) 0x84, 0x2b, 0x1e, 0x1f, 0x05, 0x6a, 0x04, 0x01,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1178) 0x78, 0xea, 0x41, 0x41, 0x53, 0x4f, 0x65, 0x2d },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1179) .result = { 0xb7, 0x34, 0x10, 0x5d, 0xc2, 0x57, 0x58, 0x5d,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1180) 0x73, 0xb5, 0x66, 0xcc, 0xb7, 0x6f, 0x06, 0x27,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1181) 0x95, 0xcc, 0xbe, 0xc8, 0x91, 0x28, 0xe5, 0x2b,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1182) 0x02, 0xf3, 0xe5, 0x96, 0x39, 0xf1, 0x3c, 0x46 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1183) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1184) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1185) /* wycheproof - checking for overflow */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1186) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1187) .private = { 0xc8, 0x17, 0x24, 0x70, 0x40, 0x00, 0xb2, 0x6d,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1188) 0x31, 0x70, 0x3c, 0xc9, 0x7e, 0x3a, 0x37, 0x8d,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1189) 0x56, 0xfa, 0xd8, 0x21, 0x93, 0x61, 0xc8, 0x8c,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1190) 0xca, 0x8b, 0xd7, 0xc5, 0x71, 0x9b, 0x12, 0xb2 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1191) .public = { 0xc8, 0xef, 0x79, 0xb5, 0x14, 0xd7, 0x68, 0x26,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1192) 0x77, 0xbc, 0x79, 0x31, 0xe0, 0x6e, 0xe5, 0xc2,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1193) 0x7c, 0x9b, 0x39, 0x2b, 0x4a, 0xe9, 0x48, 0x44,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1194) 0x73, 0xf5, 0x54, 0xe6, 0x67, 0x8e, 0xcc, 0x2e },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1195) .result = { 0x64, 0x7a, 0x46, 0xb6, 0xfc, 0x3f, 0x40, 0xd6,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1196) 0x21, 0x41, 0xee, 0x3c, 0xee, 0x70, 0x6b, 0x4d,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1197) 0x7a, 0x92, 0x71, 0x59, 0x3a, 0x7b, 0x14, 0x3e,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1198) 0x8e, 0x2e, 0x22, 0x79, 0x88, 0x3e, 0x45, 0x50 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1199) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1200) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1201) /* wycheproof - checking for overflow */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1202) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1203) .private = { 0xc8, 0x17, 0x24, 0x70, 0x40, 0x00, 0xb2, 0x6d,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1204) 0x31, 0x70, 0x3c, 0xc9, 0x7e, 0x3a, 0x37, 0x8d,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1205) 0x56, 0xfa, 0xd8, 0x21, 0x93, 0x61, 0xc8, 0x8c,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1206) 0xca, 0x8b, 0xd7, 0xc5, 0x71, 0x9b, 0x12, 0xb2 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1207) .public = { 0x64, 0xae, 0xac, 0x25, 0x04, 0x14, 0x48, 0x61,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1208) 0x53, 0x2b, 0x7b, 0xbc, 0xb6, 0xc8, 0x7d, 0x67,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1209) 0xdd, 0x4c, 0x1f, 0x07, 0xeb, 0xc2, 0xe0, 0x6e,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1210) 0xff, 0xb9, 0x5a, 0xec, 0xc6, 0x17, 0x0b, 0x2c },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1211) .result = { 0x4f, 0xf0, 0x3d, 0x5f, 0xb4, 0x3c, 0xd8, 0x65,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1212) 0x7a, 0x3c, 0xf3, 0x7c, 0x13, 0x8c, 0xad, 0xce,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1213) 0xcc, 0xe5, 0x09, 0xe4, 0xeb, 0xa0, 0x89, 0xd0,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1214) 0xef, 0x40, 0xb4, 0xe4, 0xfb, 0x94, 0x61, 0x55 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1215) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1216) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1217) /* wycheproof - checking for overflow */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1218) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1219) .private = { 0xc8, 0x17, 0x24, 0x70, 0x40, 0x00, 0xb2, 0x6d,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1220) 0x31, 0x70, 0x3c, 0xc9, 0x7e, 0x3a, 0x37, 0x8d,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1221) 0x56, 0xfa, 0xd8, 0x21, 0x93, 0x61, 0xc8, 0x8c,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1222) 0xca, 0x8b, 0xd7, 0xc5, 0x71, 0x9b, 0x12, 0xb2 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1223) .public = { 0xbf, 0x68, 0xe3, 0x5e, 0x9b, 0xdb, 0x7e, 0xee,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1224) 0x1b, 0x50, 0x57, 0x02, 0x21, 0x86, 0x0f, 0x5d,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1225) 0xcd, 0xad, 0x8a, 0xcb, 0xab, 0x03, 0x1b, 0x14,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1226) 0x97, 0x4c, 0xc4, 0x90, 0x13, 0xc4, 0x98, 0x31 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1227) .result = { 0x21, 0xce, 0xe5, 0x2e, 0xfd, 0xbc, 0x81, 0x2e,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1228) 0x1d, 0x02, 0x1a, 0x4a, 0xf1, 0xe1, 0xd8, 0xbc,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1229) 0x4d, 0xb3, 0xc4, 0x00, 0xe4, 0xd2, 0xa2, 0xc5,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1230) 0x6a, 0x39, 0x26, 0xdb, 0x4d, 0x99, 0xc6, 0x5b },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1231) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1232) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1233) /* wycheproof - checking for overflow */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1234) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1235) .private = { 0xc8, 0x17, 0x24, 0x70, 0x40, 0x00, 0xb2, 0x6d,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1236) 0x31, 0x70, 0x3c, 0xc9, 0x7e, 0x3a, 0x37, 0x8d,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1237) 0x56, 0xfa, 0xd8, 0x21, 0x93, 0x61, 0xc8, 0x8c,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1238) 0xca, 0x8b, 0xd7, 0xc5, 0x71, 0x9b, 0x12, 0xb2 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1239) .public = { 0x53, 0x47, 0xc4, 0x91, 0x33, 0x1a, 0x64, 0xb4,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1240) 0x3d, 0xdc, 0x68, 0x30, 0x34, 0xe6, 0x77, 0xf5,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1241) 0x3d, 0xc3, 0x2b, 0x52, 0xa5, 0x2a, 0x57, 0x7c,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1242) 0x15, 0xa8, 0x3b, 0xf2, 0x98, 0xe9, 0x9f, 0x19 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1243) .result = { 0x18, 0xcb, 0x89, 0xe4, 0xe2, 0x0c, 0x0c, 0x2b,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1244) 0xd3, 0x24, 0x30, 0x52, 0x45, 0x26, 0x6c, 0x93,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1245) 0x27, 0x69, 0x0b, 0xbe, 0x79, 0xac, 0xb8, 0x8f,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1246) 0x5b, 0x8f, 0xb3, 0xf7, 0x4e, 0xca, 0x3e, 0x52 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1247) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1248) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1249) /* wycheproof - private key == -1 (mod order) */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1250) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1251) .private = { 0xa0, 0x23, 0xcd, 0xd0, 0x83, 0xef, 0x5b, 0xb8,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1252) 0x2f, 0x10, 0xd6, 0x2e, 0x59, 0xe1, 0x5a, 0x68,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1253) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1254) 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x50 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1255) .public = { 0x25, 0x8e, 0x04, 0x52, 0x3b, 0x8d, 0x25, 0x3e,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1256) 0xe6, 0x57, 0x19, 0xfc, 0x69, 0x06, 0xc6, 0x57,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1257) 0x19, 0x2d, 0x80, 0x71, 0x7e, 0xdc, 0x82, 0x8f,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1258) 0xa0, 0xaf, 0x21, 0x68, 0x6e, 0x2f, 0xaa, 0x75 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1259) .result = { 0x25, 0x8e, 0x04, 0x52, 0x3b, 0x8d, 0x25, 0x3e,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1260) 0xe6, 0x57, 0x19, 0xfc, 0x69, 0x06, 0xc6, 0x57,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1261) 0x19, 0x2d, 0x80, 0x71, 0x7e, 0xdc, 0x82, 0x8f,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1262) 0xa0, 0xaf, 0x21, 0x68, 0x6e, 0x2f, 0xaa, 0x75 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1263) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1264) },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1265) /* wycheproof - private key == 1 (mod order) on twist */
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1266) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1267) .private = { 0x58, 0x08, 0x3d, 0xd2, 0x61, 0xad, 0x91, 0xef,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1268) 0xf9, 0x52, 0x32, 0x2e, 0xc8, 0x24, 0xc6, 0x82,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1269) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1270) 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, 0x5f },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1271) .public = { 0x2e, 0xae, 0x5e, 0xc3, 0xdd, 0x49, 0x4e, 0x9f,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1272) 0x2d, 0x37, 0xd2, 0x58, 0xf8, 0x73, 0xa8, 0xe6,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1273) 0xe9, 0xd0, 0xdb, 0xd1, 0xe3, 0x83, 0xef, 0x64,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1274) 0xd9, 0x8b, 0xb9, 0x1b, 0x3e, 0x0b, 0xe0, 0x35 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1275) .result = { 0x2e, 0xae, 0x5e, 0xc3, 0xdd, 0x49, 0x4e, 0x9f,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1276) 0x2d, 0x37, 0xd2, 0x58, 0xf8, 0x73, 0xa8, 0xe6,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1277) 0xe9, 0xd0, 0xdb, 0xd1, 0xe3, 0x83, 0xef, 0x64,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1278) 0xd9, 0x8b, 0xb9, 0x1b, 0x3e, 0x0b, 0xe0, 0x35 },
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1279) .valid = true
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1280) }
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1281) };
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1282)
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1283) bool __init curve25519_selftest(void)
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1284) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1285) bool success = true, ret, ret2;
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1286) size_t i = 0, j;
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1287) u8 in[CURVE25519_KEY_SIZE];
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1288) u8 out[CURVE25519_KEY_SIZE], out2[CURVE25519_KEY_SIZE],
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1289) out3[CURVE25519_KEY_SIZE];
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1290)
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1291) for (i = 0; i < ARRAY_SIZE(curve25519_test_vectors); ++i) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1292) memset(out, 0, CURVE25519_KEY_SIZE);
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1293) ret = curve25519(out, curve25519_test_vectors[i].private,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1294) curve25519_test_vectors[i].public);
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1295) if (ret != curve25519_test_vectors[i].valid ||
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1296) memcmp(out, curve25519_test_vectors[i].result,
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1297) CURVE25519_KEY_SIZE)) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1298) pr_err("curve25519 self-test %zu: FAIL\n", i + 1);
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1299) success = false;
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1300) }
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1301) }
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1302)
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1303) for (i = 0; i < 5; ++i) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1304) get_random_bytes(in, sizeof(in));
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1305) ret = curve25519_generate_public(out, in);
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1306) ret2 = curve25519(out2, in, (u8[CURVE25519_KEY_SIZE]){ 9 });
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1307) curve25519_generic(out3, in, (u8[CURVE25519_KEY_SIZE]){ 9 });
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1308) if (ret != ret2 ||
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1309) memcmp(out, out2, CURVE25519_KEY_SIZE) ||
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1310) memcmp(out, out3, CURVE25519_KEY_SIZE)) {
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1311) pr_err("curve25519 basepoint self-test %zu: FAIL: input - 0x",
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1312) i + 1);
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1313) for (j = CURVE25519_KEY_SIZE; j-- > 0;)
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1314) printk(KERN_CONT "%02x", in[j]);
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1315) printk(KERN_CONT "\n");
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1316) success = false;
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1317) }
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1318) }
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1319)
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1320) return success;
^8f3ce5b39 (kx 2023-10-28 12:00:06 +0300 1321) }