26 #ifndef MBEDTLS_PSA_UTIL_H
27 #define MBEDTLS_PSA_UTIL_H
29 #if !defined(MBEDTLS_CONFIG_FILE)
32 #include MBEDTLS_CONFIG_FILE
35 #if defined(MBEDTLS_USE_PSA_CRYPTO)
125 #if defined(MBEDTLS_MD2_C)
129 #if defined(MBEDTLS_MD4_C)
133 #if defined(MBEDTLS_MD5_C)
137 #if defined(MBEDTLS_SHA1_C)
141 #if defined(MBEDTLS_SHA256_C)
147 #if defined(MBEDTLS_SHA512_C)
153 #if defined(MBEDTLS_RIPEMD160_C)
166 static inline int mbedtls_psa_get_ecc_oid_from_id(
168 char const **oid,
size_t *oid_len )
175 #if defined(MBEDTLS_ECP_DP_SECP192R1_ENABLED)
181 #if defined(MBEDTLS_ECP_DP_SECP224R1_ENABLED)
187 #if defined(MBEDTLS_ECP_DP_SECP256R1_ENABLED)
193 #if defined(MBEDTLS_ECP_DP_SECP384R1_ENABLED)
199 #if defined(MBEDTLS_ECP_DP_SECP521R1_ENABLED)
210 #if defined(MBEDTLS_ECP_DP_SECP192K1_ENABLED)
216 #if defined(MBEDTLS_ECP_DP_SECP224K1_ENABLED)
222 #if defined(MBEDTLS_ECP_DP_SECP256K1_ENABLED)
233 #if defined(MBEDTLS_ECP_DP_BP256R1_ENABLED)
239 #if defined(MBEDTLS_ECP_DP_BP384R1_ENABLED)
245 #if defined(MBEDTLS_ECP_DP_BP512R1_ENABLED)
259 #define MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH 1
261 #if defined(MBEDTLS_ECP_DP_SECP192R1_ENABLED)
262 #if MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH < ( 2 * ( ( 192 + 7 ) / 8 ) + 1 )
263 #undef MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH
264 #define MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH ( 2 * ( ( 192 + 7 ) / 8 ) + 1 )
268 #if defined(MBEDTLS_ECP_DP_SECP224R1_ENABLED)
269 #if MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH < ( 2 * ( ( 224 + 7 ) / 8 ) + 1 )
270 #undef MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH
271 #define MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH ( 2 * ( ( 224 + 7 ) / 8 ) + 1 )
275 #if defined(MBEDTLS_ECP_DP_SECP256R1_ENABLED)
276 #if MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH < ( 2 * ( ( 256 + 7 ) / 8 ) + 1 )
277 #undef MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH
278 #define MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH ( 2 * ( ( 256 + 7 ) / 8 ) + 1 )
282 #if defined(MBEDTLS_ECP_DP_SECP384R1_ENABLED)
283 #if MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH < ( 2 * ( ( 384 + 7 ) / 8 ) + 1 )
284 #undef MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH
285 #define MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH ( 2 * ( ( 384 + 7 ) / 8 ) + 1 )
289 #if defined(MBEDTLS_ECP_DP_SECP521R1_ENABLED)
290 #if MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH < ( 2 * ( ( 521 + 7 ) / 8 ) + 1 )
291 #undef MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH
292 #define MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH ( 2 * ( ( 521 + 7 ) / 8 ) + 1 )
296 #if defined(MBEDTLS_ECP_DP_SECP192K1_ENABLED)
297 #if MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH < ( 2 * ( ( 192 + 7 ) / 8 ) + 1 )
298 #undef MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH
299 #define MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH ( 2 * ( ( 192 + 7 ) / 8 ) + 1 )
303 #if defined(MBEDTLS_ECP_DP_SECP224K1_ENABLED)
304 #if MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH < ( 2 * ( ( 224 + 7 ) / 8 ) + 1 )
305 #undef MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH
306 #define MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH ( 2 * ( ( 224 + 7 ) / 8 ) + 1 )
310 #if defined(MBEDTLS_ECP_DP_SECP256K1_ENABLED)
311 #if MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH < ( 2 * ( ( 256 + 7 ) / 8 ) + 1 )
312 #undef MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH
313 #define MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH ( 2 * ( ( 256 + 7 ) / 8 ) + 1 )
317 #if defined(MBEDTLS_ECP_DP_BP256R1_ENABLED)
318 #if MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH < ( 2 * ( ( 256 + 7 ) / 8 ) + 1 )
319 #undef MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH
320 #define MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH ( 2 * ( ( 256 + 7 ) / 8 ) + 1 )
324 #if defined(MBEDTLS_ECP_DP_BP384R1_ENABLED)
325 #if MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH < ( 2 * ( ( 384 + 7 ) / 8 ) + 1 )
326 #undef MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH
327 #define MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH ( 2 * ( ( 384 + 7 ) / 8 ) + 1 )
331 #if defined(MBEDTLS_ECP_DP_BP512R1_ENABLED)
332 #if MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH < ( 2 * ( ( 512 + 7 ) / 8 ) + 1 )
333 #undef MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH
334 #define MBEDTLS_PSA_MAX_EC_PUBKEY_LENGTH ( 2 * ( ( 512 + 7 ) / 8 ) + 1 )
341 static inline int mbedtls_psa_err_translate_pk(
psa_status_t status )
372 #if defined(MBEDTLS_ECP_C)
374 uint16_t tls_ecc_grp_reg_id,
size_t *bits )
378 if( curve_info == NULL )
395 static inline int mbedtls_psa_tls_psa_ec_to_ecpoint(
unsigned char *src,
410 static inline int mbedtls_psa_tls_ecpoint_to_psa_ec(
unsigned char const *src,
416 if( srclen > dstlen )
419 memcpy( dst, src, srclen );
430 #if defined(MBEDTLS_PSA_CRYPTO_C)
438 typedef int mbedtls_f_rng_t(
void *p_rng,
unsigned char *output,
size_t output_size );
440 #if defined(MBEDTLS_PSA_CRYPTO_EXTERNAL_RNG)
478 unsigned char *output,
479 size_t output_size );
491 #define MBEDTLS_PSA_RANDOM_STATE NULL
495 #if defined(MBEDTLS_CTR_DRBG_C)
499 #elif defined(MBEDTLS_HMAC_DRBG_C)
506 #define MBEDTLS_PSA_RANDOM_STATE mbedtls_psa_random_state
mbedtls_cipher_type_t
Supported {cipher type, cipher mode} pairs.
@ MBEDTLS_CIPHER_AES_128_ECB
@ MBEDTLS_CIPHER_AES_128_CBC
@ MBEDTLS_CIPHER_AES_192_GCM
@ MBEDTLS_CIPHER_AES_256_ECB
@ MBEDTLS_CIPHER_AES_192_CCM
@ MBEDTLS_CIPHER_AES_256_GCM
@ MBEDTLS_CIPHER_AES_256_CCM
@ MBEDTLS_CIPHER_AES_128_GCM
@ MBEDTLS_CIPHER_AES_192_CBC
@ MBEDTLS_CIPHER_AES_128_CCM
@ MBEDTLS_CIPHER_AES_256_CBC
@ MBEDTLS_CIPHER_AES_192_ECB
Configuration options (set of defines)
Platform Security Architecture cryptography module.
This file contains definitions and functions for the CTR_DRBG pseudorandom generator.
int mbedtls_ctr_drbg_random(void *p_rng, unsigned char *output, size_t output_len)
This function uses CTR_DRBG to generate random data.
This file provides an API for Elliptic Curves over GF(P) (ECP).
#define MBEDTLS_ERR_ECP_BUFFER_TOO_SMALL
#define MBEDTLS_ERR_ECP_RANDOM_FAILED
const mbedtls_ecp_curve_info * mbedtls_ecp_curve_info_from_tls_id(uint16_t tls_id)
This function retrieves curve information from a TLS NamedCurve value.
#define MBEDTLS_OID_SIZE(x)
#define PSA_KEY_TYPE_ECC_KEY_PAIR(curve)
#define PSA_ECC_FAMILY_SECP_R1
#define PSA_ECC_FAMILY_SECP_K1
uint16_t psa_key_type_t
Encoding of a key type.
#define PSA_ALG_RIPEMD160
#define PSA_ALG_ECB_NO_PADDING
#define PSA_ALG_AEAD_WITH_SHORTENED_TAG(aead_alg, tag_length)
#define PSA_ECC_FAMILY_BRAINPOOL_P_R1
uint32_t psa_algorithm_t
Encoding of a cryptographic algorithm.
#define PSA_ALG_CBC_NO_PADDING
int32_t psa_status_t
Function return status.
#define PSA_ERROR_HARDWARE_FAILURE
#define PSA_ERROR_CORRUPTION_DETECTED
#define PSA_ERROR_NOT_SUPPORTED
#define PSA_ERROR_INSUFFICIENT_ENTROPY
#define PSA_ERROR_COMMUNICATION_FAILURE
#define PSA_ERROR_INSUFFICIENT_MEMORY
#define PSA_ERROR_BAD_STATE
#define PSA_KEY_USAGE_ENCRYPT
uint32_t psa_key_usage_t
Encoding of permitted usage on a key.
#define PSA_KEY_USAGE_DECRYPT
static psa_ecc_family_t mbedtls_ecc_group_to_psa(mbedtls_ecp_group_id grpid, size_t *bits)
The HMAC_DRBG pseudorandom generator.
int mbedtls_hmac_drbg_random(void *p_rng, unsigned char *output, size_t out_len)
This function uses HMAC_DRBG to generate random data.
This file contains the generic message-digest wrapper.
mbedtls_md_type_t
Supported message digests.
Object Identifier (OID) database.
#define MBEDTLS_OID_EC_GRP_SECP521R1
#define MBEDTLS_OID_EC_GRP_SECP224R1
#define MBEDTLS_OID_EC_GRP_SECP256K1
#define MBEDTLS_OID_EC_GRP_SECP384R1
#define MBEDTLS_OID_EC_GRP_SECP192K1
#define MBEDTLS_OID_EC_GRP_BP384R1
#define MBEDTLS_OID_EC_GRP_SECP224K1
#define MBEDTLS_OID_EC_GRP_BP512R1
#define MBEDTLS_OID_EC_GRP_SECP256R1
#define MBEDTLS_OID_EC_GRP_SECP192R1
#define MBEDTLS_OID_EC_GRP_BP256R1
Public Key abstraction layer.
#define MBEDTLS_ERR_PK_HW_ACCEL_FAILED
#define MBEDTLS_ERR_PK_BAD_INPUT_DATA
#define MBEDTLS_ERR_PK_ALLOC_FAILED
#define MBEDTLS_ERR_PK_FEATURE_UNAVAILABLE
mbedtls_ctr_drbg_context mbedtls_psa_drbg_context_t
static mbedtls_f_rng_t *const mbedtls_psa_get_random
mbedtls_psa_drbg_context_t *const mbedtls_psa_random_state
int mbedtls_f_rng_t(void *p_rng, unsigned char *output, size_t output_size)
The CTR_DRBG context structure.
mbedtls_ecp_group_id grp_id