mirror of
https://github.com/saymrwulf/fips205-slhdsa-verified.git
synced 2026-09-04 20:03:44 +00:00
56 lines
2.4 KiB
Bash
56 lines
2.4 KiB
Bash
|
|
#!/usr/bin/env bash
|
|||
|
|
# Adversarial self-test of the check.sh gates (the R3-5 tradition: an audit
|
|||
|
|
# that cannot fail is theater). Two attacks, both MUST make check.sh fail:
|
|||
|
|
#
|
|||
|
|
# 1. DEAD FILE — a stray Proofs/*.lean not in the manifest.
|
|||
|
|
# 2. SMUGGLED AXIOM — a certificate whose cone contains an axiom outside
|
|||
|
|
# {kernel-3} ∪ {the five SHA-2 oracles}.
|
|||
|
|
#
|
|||
|
|
# Green here means: the gates genuinely reject both. Self-cleaning.
|
|||
|
|
set -euo pipefail
|
|||
|
|
HERE="$(cd "$(dirname "$0")" && pwd)"
|
|||
|
|
cd "$HERE"
|
|||
|
|
|
|||
|
|
cleanup() { rm -f Proofs/Stray.lean Proofs/Stray.olean Proofs/EvilSpec.lean \
|
|||
|
|
Proofs/EvilSpec.olean check-evil-tmp.sh; }
|
|||
|
|
trap cleanup EXIT
|
|||
|
|
|
|||
|
|
echo "check-selftest: attacking the gates"
|
|||
|
|
echo "===================================="
|
|||
|
|
|
|||
|
|
# ── Attack 1: dead file ─────────────────────────────────────────────────────
|
|||
|
|
echo "-- stray" > Proofs/Stray.lean
|
|||
|
|
if ./check.sh > /tmp/selftest-dead.out 2>&1; then
|
|||
|
|
echo "✗ ATTACK 1 SUCCEEDED: check.sh stayed green with a dead file"; exit 1
|
|||
|
|
fi
|
|||
|
|
grep -q "DEAD FILE" /tmp/selftest-dead.out \
|
|||
|
|
|| { echo "✗ ATTACK 1: failed, but not via the dead-file gate"; exit 1; }
|
|||
|
|
rm -f Proofs/Stray.lean Proofs/Stray.olean
|
|||
|
|
echo "✓ attack 1 rejected (dead-file gate works)"
|
|||
|
|
|
|||
|
|
# ── Attack 2: smuggled axiom ────────────────────────────────────────────────
|
|||
|
|
cat > Proofs/EvilSpec.lean <<'EOF'
|
|||
|
|
import Proofs.ChainSpec
|
|||
|
|
axiom evil_ax : True
|
|||
|
|
theorem evil_thm : True := evil_ax
|
|||
|
|
EOF
|
|||
|
|
python3 - <<'PY'
|
|||
|
|
s = open("check.sh").read()
|
|||
|
|
s = s.replace('PROOFS=(\n "ChainSpec"\n)', 'PROOFS=(\n "ChainSpec"\n "EvilSpec"\n)')
|
|||
|
|
s = s.replace('CERTS=(\n "fips205.chain_free_loop_eq"\n)',
|
|||
|
|
'CERTS=(\n "fips205.chain_free_loop_eq"\n "evil_thm"\n)')
|
|||
|
|
s = s.replace('{ echo "import Proofs.ChainSpec"',
|
|||
|
|
'{ echo "import Proofs.ChainSpec"; echo "import Proofs.EvilSpec"')
|
|||
|
|
open("check-evil-tmp.sh","w").write(s)
|
|||
|
|
PY
|
|||
|
|
chmod +x check-evil-tmp.sh
|
|||
|
|
if ./check-evil-tmp.sh > /tmp/selftest-evil.out 2>&1; then
|
|||
|
|
echo "✗ ATTACK 2 SUCCEEDED: audit passed a smuggled axiom"; exit 1
|
|||
|
|
fi
|
|||
|
|
grep -q "DISALLOWED" /tmp/selftest-evil.out \
|
|||
|
|
|| { echo "✗ ATTACK 2: failed, but not via the axiom gate"; exit 1; }
|
|||
|
|
echo "✓ attack 2 rejected (axiom gate works)"
|
|||
|
|
|
|||
|
|
echo
|
|||
|
|
echo "SELFTEST GREEN: both gates genuinely reject their attacks."
|