1
0
mirror of https://github.com/trezor/trezor-firmware.git synced 2025-01-04 20:40:55 +00:00
trezor-firmware/tests/device_tests/test_firmware_hash.py

49 lines
1.5 KiB
Python
Raw Normal View History

from hashlib import blake2s
import pytest
from trezorlib import firmware, models
from trezorlib.debuglink import TrezorClientDebugLink as Client
# size of FIRMWARE_AREA, see core/embed/models/model_*_layout.c
FIRMWARE_LENGTHS = {
models.T1B1: 7 * 128 * 1024 + 64 * 1024,
models.T2T1: 13 * 128 * 1024,
models.T2B1: 13 * 128 * 1024,
models.T3T1: 208 * 8 * 1024,
}
def test_firmware_hash_emu(client: Client) -> None:
if client.features.fw_vendor != "EMULATOR":
pytest.skip("Only for emulator")
data = b"\xff" * FIRMWARE_LENGTHS[client.model]
expected_hash = blake2s(data).digest()
hash = firmware.get_hash(client, None)
assert hash == expected_hash
challenge = b"Hello Trezor"
expected_hash = blake2s(data, key=challenge).digest()
hash = firmware.get_hash(client, challenge)
assert hash == expected_hash
def test_firmware_hash_hw(client: Client) -> None:
if client.features.fw_vendor == "EMULATOR":
pytest.skip("Only for hardware")
# TODO get firmware image from outside the environment, check for actual result
challenge = b"Hello Trezor"
empty_data = b"\xff" * FIRMWARE_LENGTHS[client.model]
empty_hash = blake2s(empty_data).digest()
empty_hash_challenge = blake2s(empty_data, key=challenge).digest()
hash = firmware.get_hash(client, None)
assert hash != empty_hash
hash2 = firmware.get_hash(client, challenge)
assert hash != hash2
assert hash2 != empty_hash_challenge