test/crypto: add UDP-encapsulated IPsec cases
[dpdk.git] / app / test / test_cryptodev_security_ipsec.h
1 /* SPDX-License-Identifier: BSD-3-Clause
2  * Copyright(C) 2021 Marvell.
3  */
4
5 #ifndef _TEST_CRYPTODEV_SECURITY_IPSEC_H_
6 #define _TEST_CRYPTODEV_SECURITY_IPSEC_H_
7
8 #include <rte_cryptodev.h>
9 #include <rte_security.h>
10
11 #define IPSEC_TEST_PACKETS_MAX 32
12
13 struct ipsec_test_data {
14         struct {
15                 uint8_t data[32];
16         } key;
17
18         struct {
19                 uint8_t data[1024];
20                 unsigned int len;
21         } input_text;
22
23         struct {
24                 uint8_t data[1024];
25                 unsigned int len;
26         } output_text;
27
28         struct {
29                 uint8_t data[4];
30                 unsigned int len;
31         } salt;
32
33         struct {
34                 uint8_t data[16];
35         } iv;
36
37         struct rte_security_ipsec_xform ipsec_xform;
38
39         bool aead;
40
41         union {
42                 struct {
43                         struct rte_crypto_sym_xform cipher;
44                         struct rte_crypto_sym_xform auth;
45                 } chain;
46                 struct rte_crypto_sym_xform aead;
47         } xform;
48 };
49
50 struct ipsec_test_flags {
51         bool display_alg;
52         bool icv_corrupt;
53         bool iv_gen;
54         bool udp_encap;
55 };
56
57 struct crypto_param {
58         enum rte_crypto_sym_xform_type type;
59         union {
60                 enum rte_crypto_cipher_algorithm cipher;
61                 enum rte_crypto_auth_algorithm auth;
62                 enum rte_crypto_aead_algorithm aead;
63         } alg;
64         uint16_t key_length;
65 };
66
67 static const struct crypto_param aead_list[] = {
68         {
69                 .type = RTE_CRYPTO_SYM_XFORM_AEAD,
70                 .alg.aead =  RTE_CRYPTO_AEAD_AES_GCM,
71                 .key_length = 16,
72         },
73         {
74                 .type = RTE_CRYPTO_SYM_XFORM_AEAD,
75                 .alg.aead = RTE_CRYPTO_AEAD_AES_GCM,
76                 .key_length = 24,
77         },
78         {
79                 .type = RTE_CRYPTO_SYM_XFORM_AEAD,
80                 .alg.aead = RTE_CRYPTO_AEAD_AES_GCM,
81                 .key_length = 32
82         },
83 };
84
85 int test_ipsec_sec_caps_verify(struct rte_security_ipsec_xform *ipsec_xform,
86                                const struct rte_security_capability *sec_cap,
87                                bool silent);
88
89 int test_ipsec_crypto_caps_aead_verify(
90                 const struct rte_security_capability *sec_cap,
91                 struct rte_crypto_sym_xform *aead);
92
93 void test_ipsec_td_in_from_out(const struct ipsec_test_data *td_out,
94                                struct ipsec_test_data *td_in);
95
96 void test_ipsec_td_prepare(const struct crypto_param *param1,
97                            const struct crypto_param *param2,
98                            const struct ipsec_test_flags *flags,
99                            struct ipsec_test_data *td_array,
100                            int nb_td);
101
102 void test_ipsec_td_update(struct ipsec_test_data td_inb[],
103                           const struct ipsec_test_data td_outb[],
104                           int nb_td,
105                           const struct ipsec_test_flags *flags);
106
107 void test_ipsec_display_alg(const struct crypto_param *param1,
108                             const struct crypto_param *param2);
109
110 int test_ipsec_post_process(struct rte_mbuf *m,
111                             const struct ipsec_test_data *td,
112                             struct ipsec_test_data *res_d, bool silent,
113                             const struct ipsec_test_flags *flags);
114
115 int test_ipsec_status_check(struct rte_crypto_op *op,
116                             const struct ipsec_test_flags *flags,
117                             enum rte_security_ipsec_sa_direction dir);
118
119 #endif