blob: 7272400e57e76c1ac0ef33b7d79d09fa913fdbcc [file] [log] [blame]
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001/**
2 * \file check_config.h
3 *
4 * \brief Consistency checks for configuration options
Darryl Greena40a1012018-01-05 15:33:17 +00005 */
6/*
Bence Szépkúti1e148272020-08-07 13:07:28 +02007 * Copyright The Mbed TLS Contributors
Dave Rodgman16799db2023-11-02 19:47:20 +00008 * SPDX-License-Identifier: Apache-2.0 OR GPL-2.0-or-later
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02009 */
10
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020011#ifndef MBEDTLS_CHECK_CONFIG_H
12#define MBEDTLS_CHECK_CONFIG_H
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +020013
David Horstmann1b847812022-11-14 15:40:46 +000014/* *INDENT-OFF* */
Manuel Pégourié-Gonnardd14acbc2015-05-29 11:26:37 +020015/*
16 * We assume CHAR_BIT is 8 in many places. In practice, this is true on our
17 * target platforms, so not an issue, but let's just be extra sure.
18 */
19#include <limits.h>
20#if CHAR_BIT != 8
Gilles Peskinee820c0a2023-08-03 17:45:20 +020021#error "Mbed TLS requires a platform with 8-bit chars"
Manuel Pégourié-Gonnardd14acbc2015-05-29 11:26:37 +020022#endif
23
Jerry Yu16f68532022-11-05 10:50:06 +080024#include <stdint.h>
25
Ronald Cron170c1992023-07-06 14:15:21 +020026#if defined(__MINGW32__) || (defined(_MSC_VER) && _MSC_VER <= 1900)
Manuel Pégourié-Gonnard9db28872015-06-26 10:52:01 +020027#if !defined(MBEDTLS_PLATFORM_C)
Manuel Pégourié-Gonnard6c0c8e02015-06-22 10:23:34 +020028#error "MBEDTLS_PLATFORM_C is required on Windows"
29#endif
30
Bence Szépkútibb0cfeb2021-05-28 09:42:25 +020031/* Fix the config here. Not convenient to put an #ifdef _WIN32 in mbedtls_config.h as
Gilles Peskine5d46f6a2019-07-27 23:52:53 +020032 * it would confuse config.py. */
Manuel Pégourié-Gonnard9db28872015-06-26 10:52:01 +020033#if !defined(MBEDTLS_PLATFORM_SNPRINTF_ALT) && \
34 !defined(MBEDTLS_PLATFORM_SNPRINTF_MACRO)
35#define MBEDTLS_PLATFORM_SNPRINTF_ALT
36#endif
k-stachowiak6b5ef482019-01-07 16:53:29 +010037
38#if !defined(MBEDTLS_PLATFORM_VSNPRINTF_ALT) && \
39 !defined(MBEDTLS_PLATFORM_VSNPRINTF_MACRO)
40#define MBEDTLS_PLATFORM_VSNPRINTF_ALT
41#endif
Ronald Cron170c1992023-07-06 14:15:21 +020042#endif /* _MINGW32__ || (_MSC_VER && (_MSC_VER <= 1900)) */
Manuel Pégourié-Gonnard9db28872015-06-26 10:52:01 +020043
Jaeden Amero197496a2021-06-08 18:31:27 +010044#if defined(TARGET_LIKE_MBED) && defined(MBEDTLS_NET_C)
45#error "The NET module is not available for mbed OS - please use the network functions provided by Mbed OS"
Manuel Pégourié-Gonnard63e7eba2015-07-28 14:17:48 +020046#endif
47
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020048#if defined(MBEDTLS_DEPRECATED_WARNING) && \
Manuel Pégourié-Gonnard757ca002015-03-23 15:24:07 +010049 !defined(__GNUC__) && !defined(__clang__)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020050#error "MBEDTLS_DEPRECATED_WARNING only works with GCC and Clang"
Manuel Pégourié-Gonnardc70581c2015-03-23 13:58:27 +010051#endif
52
Manuel Pégourié-Gonnard60c793b2015-06-18 20:52:58 +020053#if defined(MBEDTLS_HAVE_TIME_DATE) && !defined(MBEDTLS_HAVE_TIME)
54#error "MBEDTLS_HAVE_TIME_DATE without MBEDTLS_HAVE_TIME does not make sense"
55#endif
56
Valerio Settie6f65a92023-09-01 08:50:56 +020057/* Check that each MBEDTLS_ECP_DP_xxx symbol has its PSA_WANT_ECC_xxx counterpart
58 * when PSA crypto is enabled. */
Valerio Setti8600de82023-08-04 09:42:40 +020059#if defined(MBEDTLS_PSA_CRYPTO_CONFIG) || defined(MBEDTLS_PSA_CRYPTO_C)
60
Valerio Settia7a18312023-08-03 17:39:07 +020061#if defined(MBEDTLS_ECP_DP_BP256R1_ENABLED) && !defined(PSA_WANT_ECC_BRAINPOOL_P_R1_256)
62#error "MBEDTLS_ECP_DP_BP256R1_ENABLED defined, but not its PSA counterpart"
63#endif
64
65#if defined(MBEDTLS_ECP_DP_BP384R1_ENABLED) && !defined(PSA_WANT_ECC_BRAINPOOL_P_R1_384)
66#error "MBEDTLS_ECP_DP_BP384R1_ENABLED defined, but not its PSA counterpart"
67#endif
68
69#if defined(MBEDTLS_ECP_DP_BP512R1_ENABLED) && !defined(PSA_WANT_ECC_BRAINPOOL_P_R1_512)
70#error "MBEDTLS_ECP_DP_BP512R1_ENABLED defined, but not its PSA counterpart"
71#endif
72
73#if defined(MBEDTLS_ECP_DP_CURVE25519_ENABLED) && !defined(PSA_WANT_ECC_MONTGOMERY_255)
74#error "MBEDTLS_ECP_DP_CURVE25519_ENABLED defined, but not its PSA counterpart"
75#endif
76
77#if defined(MBEDTLS_ECP_DP_CURVE448_ENABLED) && !defined(PSA_WANT_ECC_MONTGOMERY_448)
78#error "MBEDTLS_ECP_DP_CURVE448_ENABLED defined, but not its PSA counterpart"
79#endif
80
81#if defined(MBEDTLS_ECP_DP_SECP192R1_ENABLED) && !defined(PSA_WANT_ECC_SECP_R1_192)
82#error "MBEDTLS_ECP_DP_SECP192R1_ENABLED defined, but not its PSA counterpart"
83#endif
84
85#if defined(MBEDTLS_ECP_DP_SECP224R1_ENABLED) && !defined(PSA_WANT_ECC_SECP_R1_224)
86#error "MBEDTLS_ECP_DP_SECP224R1_ENABLED defined, but not its PSA counterpart"
87#endif
88
89#if defined(MBEDTLS_ECP_DP_SECP256R1_ENABLED) && !defined(PSA_WANT_ECC_SECP_R1_256)
90#error "MBEDTLS_ECP_DP_SECP256R1_ENABLED defined, but not its PSA counterpart"
91#endif
92
93#if defined(MBEDTLS_ECP_DP_SECP384R1_ENABLED) && !defined(PSA_WANT_ECC_SECP_R1_384)
94#error "MBEDTLS_ECP_DP_SECP384R1_ENABLED defined, but not its PSA counterpart"
95#endif
96
97#if defined(MBEDTLS_ECP_DP_SECP521R1_ENABLED) && !defined(PSA_WANT_ECC_SECP_R1_521)
98#error "MBEDTLS_ECP_DP_SECP521R1_ENABLED defined, but not its PSA counterpart"
99#endif
100
101#if defined(MBEDTLS_ECP_DP_SECP192K1_ENABLED) && !defined(PSA_WANT_ECC_SECP_K1_192)
102#error "MBEDTLS_ECP_DP_SECP192K1_ENABLED defined, but not its PSA counterpart"
103#endif
104
Valerio Setti3b69e3e2023-08-04 06:41:50 +0200105/* SECP224K1 is buggy in PSA API so we skip this check */
106#if 0 && defined(MBEDTLS_ECP_DP_SECP224K1_ENABLED) && !defined(PSA_WANT_ECC_SECP_K1_224)
Valerio Settia7a18312023-08-03 17:39:07 +0200107#error "MBEDTLS_ECP_DP_SECP224K1_ENABLED defined, but not its PSA counterpart"
108#endif
109
110#if defined(MBEDTLS_ECP_DP_SECP256K1_ENABLED) && !defined(PSA_WANT_ECC_SECP_K1_256)
111#error "MBEDTLS_ECP_DP_SECP256K1_ENABLED defined, but not its PSA counterpart"
112#endif
113
Valerio Setti8600de82023-08-04 09:42:40 +0200114#endif /* MBEDTLS_PSA_CRYPTO_CONFIG || MBEDTLS_PSA_CRYPTO_C */
115
Manuel Pégourié-Gonnard842d3552023-09-28 09:29:43 +0200116/* Limitations on ECC key types acceleration: if we have any of `PUBLIC_KEY`,
117 * `KEY_PAIR_BASIC`, `KEY_PAIR_IMPORT`, `KEY_PAIR_EXPORT` then we must have
118 * all 4 of them.
119 */
120#if defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_PUBLIC_KEY) || \
121 defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_KEY_PAIR_BASIC) || \
122 defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_KEY_PAIR_IMPORT) || \
123 defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_KEY_PAIR_EXPORT)
124#if !defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_PUBLIC_KEY) || \
125 !defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_KEY_PAIR_BASIC) || \
126 !defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_KEY_PAIR_IMPORT) || \
127 !defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_KEY_PAIR_EXPORT)
128#error "Unsupported partial support for ECC key type acceleration, see docs/driver-only-builds.md"
129#endif /* not all of public, basic, import, export */
130#endif /* one of public, basic, import, export */
131
Manuel Pégourié-Gonnard7f22f342023-09-28 09:46:22 +0200132/* Limitations on ECC curves acceleration: partial curve acceleration is only
133 * supported with crypto excluding PK, X.509 or TLS.
134 * Note: no need to check X.509 as it depends on PK. */
135#if defined(MBEDTLS_PSA_ACCEL_ECC_BRAINPOOL_P_R1_256) || \
136 defined(MBEDTLS_PSA_ACCEL_ECC_BRAINPOOL_P_R1_384) || \
137 defined(MBEDTLS_PSA_ACCEL_ECC_BRAINPOOL_P_R1_512) || \
138 defined(MBEDTLS_PSA_ACCEL_ECC_MONTGOMERY_255) || \
139 defined(MBEDTLS_PSA_ACCEL_ECC_MONTGOMERY_448) || \
140 defined(MBEDTLS_PSA_ACCEL_ECC_SECP_K1_192) || \
141 defined(MBEDTLS_PSA_ACCEL_ECC_SECP_K1_224) || \
142 defined(MBEDTLS_PSA_ACCEL_ECC_SECP_K1_256) || \
143 defined(MBEDTLS_PSA_ACCEL_ECC_SECP_R1_192) || \
144 defined(MBEDTLS_PSA_ACCEL_ECC_SECP_R1_224) || \
145 defined(MBEDTLS_PSA_ACCEL_ECC_SECP_R1_256) || \
146 defined(MBEDTLS_PSA_ACCEL_ECC_SECP_R1_384) || \
147 defined(MBEDTLS_PSA_ACCEL_ECC_SECP_R1_521)
148#if defined(MBEDTLS_PSA_ECC_ACCEL_INCOMPLETE_CURVES)
149#if defined(MBEDTLS_PK_C) || \
150 defined(MBEDTLS_SSL_TLS_C)
151#error "Unsupported partial support for ECC curves acceleration, see docs/driver-only-builds.md"
152#endif /* modules beyond what's supported */
153#endif /* not all curves accelerated */
154#endif /* some curve accelerated */
155
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200156#if defined(MBEDTLS_CTR_DRBG_C) && !defined(MBEDTLS_AES_C)
157#error "MBEDTLS_CTR_DRBG_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200158#endif
159
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200160#if defined(MBEDTLS_DHM_C) && !defined(MBEDTLS_BIGNUM_C)
161#error "MBEDTLS_DHM_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200162#endif
163
Brian Murray53e23b62016-09-13 14:00:15 -0700164#if defined(MBEDTLS_CMAC_C) && \
Przemek Stekielea805b42022-05-02 10:30:03 +0200165 ( !defined(MBEDTLS_CIPHER_C ) || ( !defined(MBEDTLS_AES_C) && !defined(MBEDTLS_DES_C) ) )
Brian Murray53e23b62016-09-13 14:00:15 -0700166#error "MBEDTLS_CMAC_C defined, but not all prerequisites"
167#endif
168
Ron Eldor466a57f2018-05-03 16:54:28 +0300169#if defined(MBEDTLS_NIST_KW_C) && \
170 ( !defined(MBEDTLS_AES_C) || !defined(MBEDTLS_CIPHER_C) )
Przemek Stekiela09f8352022-05-12 09:34:28 +0200171#error "MBEDTLS_NIST_KW_C defined, but not all prerequisites"
Ron Eldor466a57f2018-05-03 16:54:28 +0300172#endif
173
Yanray Wangd137da52023-11-08 19:12:23 +0800174#if defined(MBEDTLS_BLOCK_CIPHER_NO_DECRYPT) && defined(MBEDTLS_PSA_CRYPTO_CONFIG)
175#if defined(PSA_WANT_ALG_CBC_NO_PADDING)
176#error "MBEDTLS_BLOCK_CIPHER_NO_DECRYPT and PSA_WANT_ALG_CBC_NO_PADDING cannot be defined simultaneously"
177#endif
178#if defined(PSA_WANT_ALG_CBC_PKCS7)
179#error "MBEDTLS_BLOCK_CIPHER_NO_DECRYPT and PSA_WANT_ALG_CBC_PKCS7 cannot be defined simultaneously"
180#endif
181#if defined(PSA_WANT_ALG_ECB_NO_PADDING)
182#error "MBEDTLS_BLOCK_CIPHER_NO_DECRYPT and PSA_WANT_ALG_ECB_NO_PADDING cannot be defined simultaneously"
183#endif
184#if defined(PSA_WANT_KEY_TYPE_DES)
185#error "MBEDTLS_BLOCK_CIPHER_NO_DECRYPT and PSA_WANT_KEY_TYPE_DES cannot be defined simultaneously"
186#endif
Yanray Wang72d7bb42023-08-30 13:58:15 +0800187#endif
188
Yanray Wangd137da52023-11-08 19:12:23 +0800189#if defined(MBEDTLS_BLOCK_CIPHER_NO_DECRYPT)
190#if defined(MBEDTLS_CIPHER_MODE_CBC)
191#error "MBEDTLS_BLOCK_CIPHER_NO_DECRYPT and MBEDTLS_CIPHER_MODE_CBC cannot be defined simultaneously"
192#endif
193#if defined(MBEDTLS_CIPHER_MODE_XTS)
194#error "MBEDTLS_BLOCK_CIPHER_NO_DECRYPT and MBEDTLS_CIPHER_MODE_XTS cannot be defined simultaneously"
195#endif
196#if defined(MBEDTLS_DES_C)
197#error "MBEDTLS_BLOCK_CIPHER_NO_DECRYPT and MBEDTLS_DES_C cannot be defined simultaneously"
198#endif
199#if defined(MBEDTLS_NIST_KW_C)
200#error "MBEDTLS_BLOCK_CIPHER_NO_DECRYPT and MBEDTLS_NIST_KW_C cannot be defined simultaneously"
201#endif
Yanray Wang956aa002023-11-01 19:15:16 +0800202#endif
203
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200204#if defined(MBEDTLS_ECDH_C) && !defined(MBEDTLS_ECP_C)
205#error "MBEDTLS_ECDH_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200206#endif
207
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200208#if defined(MBEDTLS_ECDSA_C) && \
209 ( !defined(MBEDTLS_ECP_C) || \
Gilles Peskine799e5762018-09-14 17:34:00 +0200210 !( defined(MBEDTLS_ECP_DP_SECP192R1_ENABLED) || \
211 defined(MBEDTLS_ECP_DP_SECP224R1_ENABLED) || \
212 defined(MBEDTLS_ECP_DP_SECP256R1_ENABLED) || \
213 defined(MBEDTLS_ECP_DP_SECP384R1_ENABLED) || \
214 defined(MBEDTLS_ECP_DP_SECP521R1_ENABLED) || \
215 defined(MBEDTLS_ECP_DP_SECP192K1_ENABLED) || \
216 defined(MBEDTLS_ECP_DP_SECP224K1_ENABLED) || \
217 defined(MBEDTLS_ECP_DP_SECP256K1_ENABLED) || \
218 defined(MBEDTLS_ECP_DP_BP256R1_ENABLED) || \
219 defined(MBEDTLS_ECP_DP_BP384R1_ENABLED) || \
220 defined(MBEDTLS_ECP_DP_BP512R1_ENABLED) ) || \
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200221 !defined(MBEDTLS_ASN1_PARSE_C) || \
222 !defined(MBEDTLS_ASN1_WRITE_C) )
223#error "MBEDTLS_ECDSA_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200224#endif
225
Yanray Wang145bb292023-09-25 11:10:25 +0800226#if defined(MBEDTLS_PK_C) && defined(MBEDTLS_USE_PSA_CRYPTO)
227#if defined(MBEDTLS_PK_CAN_ECDSA_SIGN) && !defined(MBEDTLS_ASN1_WRITE_C)
228#error "MBEDTLS_PK_C with MBEDTLS_USE_PSA_CRYPTO needs MBEDTLS_ASN1_WRITE_C for ECDSA signature"
229#endif
230#if defined(MBEDTLS_PK_CAN_ECDSA_VERIFY) && !defined(MBEDTLS_ASN1_PARSE_C)
231#error "MBEDTLS_PK_C with MBEDTLS_USE_PSA_CRYPTO needs MBEDTLS_ASN1_PARSE_C for ECDSA verification"
232#endif
233#endif /* MBEDTLS_PK_C && MBEDTLS_USE_PSA_CRYPTO */
234
Manuel Pégourié-Gonnard4d8685b2015-08-05 15:44:42 +0200235#if defined(MBEDTLS_ECJPAKE_C) && \
Neil Armstrongecaba1c2022-08-11 10:47:08 +0200236 ( !defined(MBEDTLS_ECP_C) || \
237 !( defined(MBEDTLS_MD_C) || defined(MBEDTLS_PSA_CRYPTO_C) ) )
Manuel Pégourié-Gonnard4d8685b2015-08-05 15:44:42 +0200238#error "MBEDTLS_ECJPAKE_C defined, but not all prerequisites"
239#endif
240
Ron Eldor5ed8c1e2018-11-05 14:04:26 +0200241#if defined(MBEDTLS_ECP_RESTARTABLE) && \
Manuel Pégourié-Gonnardad27b802022-12-05 12:54:11 +0100242 ( defined(MBEDTLS_ECDH_COMPUTE_SHARED_ALT) || \
Ron Eldor5ed8c1e2018-11-05 14:04:26 +0200243 defined(MBEDTLS_ECDH_GEN_PUBLIC_ALT) || \
244 defined(MBEDTLS_ECDSA_SIGN_ALT) || \
245 defined(MBEDTLS_ECDSA_VERIFY_ALT) || \
246 defined(MBEDTLS_ECDSA_GENKEY_ALT) || \
Andrzej Kurekc470b6b2019-01-31 08:20:20 -0500247 defined(MBEDTLS_ECP_INTERNAL_ALT) || \
Ron Eldor5ed8c1e2018-11-05 14:04:26 +0200248 defined(MBEDTLS_ECP_ALT) )
Manuel Pégourié-Gonnardad27b802022-12-05 12:54:11 +0100249#error "MBEDTLS_ECP_RESTARTABLE defined, but it cannot coexist with an alternative ECP implementation"
Ron Eldor5ed8c1e2018-11-05 14:04:26 +0200250#endif
251
Manuel Pégourié-Gonnardad45c4d2022-12-06 13:20:06 +0100252#if defined(MBEDTLS_ECP_RESTARTABLE) && \
253 !defined(MBEDTLS_ECP_C)
254#error "MBEDTLS_ECP_RESTARTABLE defined, but not all prerequisites"
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200255#endif
256
257#if defined(MBEDTLS_ECDSA_DETERMINISTIC) && !defined(MBEDTLS_HMAC_DRBG_C)
258#error "MBEDTLS_ECDSA_DETERMINISTIC defined, but not all prerequisites"
259#endif
260
Manuel Pégourié-Gonnard6d429212023-10-17 10:01:33 +0200261#if defined(MBEDTLS_ECP_LIGHT) && ( !defined(MBEDTLS_BIGNUM_C) || ( \
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200262 !defined(MBEDTLS_ECP_DP_SECP192R1_ENABLED) && \
263 !defined(MBEDTLS_ECP_DP_SECP224R1_ENABLED) && \
264 !defined(MBEDTLS_ECP_DP_SECP256R1_ENABLED) && \
265 !defined(MBEDTLS_ECP_DP_SECP384R1_ENABLED) && \
266 !defined(MBEDTLS_ECP_DP_SECP521R1_ENABLED) && \
267 !defined(MBEDTLS_ECP_DP_BP256R1_ENABLED) && \
268 !defined(MBEDTLS_ECP_DP_BP384R1_ENABLED) && \
269 !defined(MBEDTLS_ECP_DP_BP512R1_ENABLED) && \
270 !defined(MBEDTLS_ECP_DP_SECP192K1_ENABLED) && \
271 !defined(MBEDTLS_ECP_DP_SECP224K1_ENABLED) && \
k-stachowiak5dbe7ca2019-05-31 20:13:58 +0200272 !defined(MBEDTLS_ECP_DP_SECP256K1_ENABLED) && \
273 !defined(MBEDTLS_ECP_DP_CURVE25519_ENABLED) && \
274 !defined(MBEDTLS_ECP_DP_CURVE448_ENABLED) ) )
Manuel Pégourié-Gonnard6d429212023-10-17 10:01:33 +0200275#error "MBEDTLS_ECP_C defined (or a subset enabled), but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200276#endif
277
Andrzej Kurekc470b6b2019-01-31 08:20:20 -0500278#if defined(MBEDTLS_PK_PARSE_C) && !defined(MBEDTLS_ASN1_PARSE_C)
Shaun Case8b0ecbc2021-12-20 21:14:10 -0800279#error "MBEDTLS_PK_PARSE_C defined, but not all prerequisites"
Andrzej Kurekc470b6b2019-01-31 08:20:20 -0500280#endif
281
Przemek Stekielea805b42022-05-02 10:30:03 +0200282#if defined(MBEDTLS_PKCS12_C) && !defined(MBEDTLS_CIPHER_C)
bootstrap-prime6dbbf442022-05-17 19:30:44 -0400283#error "MBEDTLS_PKCS12_C defined, but not all prerequisites"
Przemek Stekielea805b42022-05-02 10:30:03 +0200284#endif
285
Andrzej Kurek345a92b2022-08-31 15:00:31 -0400286#if defined(MBEDTLS_PKCS5_C) && \
Manuel Pégourié-Gonnard49e67f82023-03-16 11:39:20 +0100287 !defined(MBEDTLS_CIPHER_C)
bootstrap-prime6dbbf442022-05-17 19:30:44 -0400288#error "MBEDTLS_PKCS5_C defined, but not all prerequisites"
Sebastian Bøe24e88012022-01-19 12:04:35 +0100289#endif
290
Manuel Pégourié-Gonnardbb21c5a2023-03-21 23:53:57 +0100291/* Helpers for hash dependencies, will be undefined at the end of the file */
292/* Do SHA-256, 384, 512 to cover Entropy and TLS. */
293#if defined(MBEDTLS_SHA256_C) || \
294 (defined(MBEDTLS_PSA_CRYPTO_C) && defined(PSA_WANT_ALG_SHA_256))
295#define MBEDTLS_MD_HAVE_SHA256
296#endif
297#if defined(MBEDTLS_SHA384_C) || \
298 (defined(MBEDTLS_PSA_CRYPTO_C) && defined(PSA_WANT_ALG_SHA_384))
299#define MBEDTLS_MD_HAVE_SHA384
300#endif
301#if defined(MBEDTLS_SHA512_C) || \
302 (defined(MBEDTLS_PSA_CRYPTO_C) && defined(PSA_WANT_ALG_SHA_512))
303#define MBEDTLS_MD_HAVE_SHA512
304#endif
305
Manuel Pégourié-Gonnard5cd4b642023-02-02 13:14:59 +0100306#if defined(MBEDTLS_ENTROPY_C) && \
Manuel Pégourié-Gonnardbb21c5a2023-03-21 23:53:57 +0100307 !(defined(MBEDTLS_MD_HAVE_SHA512) || defined(MBEDTLS_MD_HAVE_SHA256))
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200308#error "MBEDTLS_ENTROPY_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200309#endif
Manuel Pégourié-Gonnard5cd4b642023-02-02 13:14:59 +0100310#if defined(MBEDTLS_ENTROPY_C) && \
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200311 defined(MBEDTLS_CTR_DRBG_ENTROPY_LEN) && (MBEDTLS_CTR_DRBG_ENTROPY_LEN > 64)
312#error "MBEDTLS_CTR_DRBG_ENTROPY_LEN value too high"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200313#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200314#if defined(MBEDTLS_ENTROPY_C) && \
Manuel Pégourié-Gonnardbb21c5a2023-03-21 23:53:57 +0100315 (defined(MBEDTLS_ENTROPY_FORCE_SHA256) || !defined(MBEDTLS_MD_HAVE_SHA512)) \
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200316 && defined(MBEDTLS_CTR_DRBG_ENTROPY_LEN) && (MBEDTLS_CTR_DRBG_ENTROPY_LEN > 32)
317#error "MBEDTLS_CTR_DRBG_ENTROPY_LEN value too high"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200318#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200319#if defined(MBEDTLS_ENTROPY_C) && \
Manuel Pégourié-Gonnardbb21c5a2023-03-21 23:53:57 +0100320 defined(MBEDTLS_ENTROPY_FORCE_SHA256) && !defined(MBEDTLS_MD_HAVE_SHA256)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200321#error "MBEDTLS_ENTROPY_FORCE_SHA256 defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200322#endif
323
Manuel Pégourié-Gonnard6240def2020-07-10 09:35:54 +0200324#if defined(__has_feature)
325#if __has_feature(memory_sanitizer)
326#define MBEDTLS_HAS_MEMSAN
327#endif
328#endif
329#if defined(MBEDTLS_TEST_CONSTANT_FLOW_MEMSAN) && !defined(MBEDTLS_HAS_MEMSAN)
330#error "MBEDTLS_TEST_CONSTANT_FLOW_MEMSAN requires building with MemorySanitizer"
331#endif
332#undef MBEDTLS_HAS_MEMSAN
333
Gilles Peskine19848002021-09-02 10:33:57 +0200334#if defined(MBEDTLS_CCM_C) && ( \
Gilles Peskine104f6de2021-09-09 20:39:47 +0200335 !defined(MBEDTLS_AES_C) && !defined(MBEDTLS_CAMELLIA_C) && !defined(MBEDTLS_ARIA_C) )
Gilles Peskine19848002021-09-02 10:33:57 +0200336#error "MBEDTLS_CCM_C defined, but not all prerequisites"
337#endif
338
339#if defined(MBEDTLS_CCM_C) && !defined(MBEDTLS_CIPHER_C)
Przemek Stekiela09f8352022-05-12 09:34:28 +0200340#error "MBEDTLS_CCM_C defined, but not all prerequisites"
Gilles Peskine19848002021-09-02 10:33:57 +0200341#endif
342
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200343#if defined(MBEDTLS_GCM_C) && ( \
Gilles Peskine104f6de2021-09-09 20:39:47 +0200344 !defined(MBEDTLS_AES_C) && !defined(MBEDTLS_CAMELLIA_C) && !defined(MBEDTLS_ARIA_C) )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200345#error "MBEDTLS_GCM_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200346#endif
347
Gilles Peskine19848002021-09-02 10:33:57 +0200348#if defined(MBEDTLS_GCM_C) && !defined(MBEDTLS_CIPHER_C)
Przemek Stekiela09f8352022-05-12 09:34:28 +0200349#error "MBEDTLS_GCM_C defined, but not all prerequisites"
Gilles Peskine19848002021-09-02 10:33:57 +0200350#endif
351
352#if defined(MBEDTLS_CHACHAPOLY_C) && !defined(MBEDTLS_CHACHA20_C)
353#error "MBEDTLS_CHACHAPOLY_C defined, but not all prerequisites"
354#endif
355
356#if defined(MBEDTLS_CHACHAPOLY_C) && !defined(MBEDTLS_POLY1305_C)
357#error "MBEDTLS_CHACHAPOLY_C defined, but not all prerequisites"
358#endif
359
Janos Follathc44ab972016-11-18 16:38:23 +0000360#if defined(MBEDTLS_ECP_RANDOMIZE_JAC_ALT) && !defined(MBEDTLS_ECP_INTERNAL_ALT)
Janos Follathb0697532016-08-18 12:38:46 +0100361#error "MBEDTLS_ECP_RANDOMIZE_JAC_ALT defined, but not all prerequisites"
362#endif
363
Janos Follathc44ab972016-11-18 16:38:23 +0000364#if defined(MBEDTLS_ECP_ADD_MIXED_ALT) && !defined(MBEDTLS_ECP_INTERNAL_ALT)
Janos Follathb0697532016-08-18 12:38:46 +0100365#error "MBEDTLS_ECP_ADD_MIXED_ALT defined, but not all prerequisites"
366#endif
367
Janos Follathc44ab972016-11-18 16:38:23 +0000368#if defined(MBEDTLS_ECP_DOUBLE_JAC_ALT) && !defined(MBEDTLS_ECP_INTERNAL_ALT)
Janos Follathb0697532016-08-18 12:38:46 +0100369#error "MBEDTLS_ECP_DOUBLE_JAC_ALT defined, but not all prerequisites"
370#endif
371
Janos Follathc44ab972016-11-18 16:38:23 +0000372#if defined(MBEDTLS_ECP_NORMALIZE_JAC_MANY_ALT) && !defined(MBEDTLS_ECP_INTERNAL_ALT)
Janos Follathb0697532016-08-18 12:38:46 +0100373#error "MBEDTLS_ECP_NORMALIZE_JAC_MANY_ALT defined, but not all prerequisites"
374#endif
375
Janos Follathc44ab972016-11-18 16:38:23 +0000376#if defined(MBEDTLS_ECP_NORMALIZE_JAC_ALT) && !defined(MBEDTLS_ECP_INTERNAL_ALT)
Janos Follathb0697532016-08-18 12:38:46 +0100377#error "MBEDTLS_ECP_NORMALIZE_JAC_ALT defined, but not all prerequisites"
378#endif
379
Janos Follathc44ab972016-11-18 16:38:23 +0000380#if defined(MBEDTLS_ECP_DOUBLE_ADD_MXZ_ALT) && !defined(MBEDTLS_ECP_INTERNAL_ALT)
Janos Follathb0697532016-08-18 12:38:46 +0100381#error "MBEDTLS_ECP_DOUBLE_ADD_MXZ_ALT defined, but not all prerequisites"
382#endif
383
Janos Follathc44ab972016-11-18 16:38:23 +0000384#if defined(MBEDTLS_ECP_RANDOMIZE_MXZ_ALT) && !defined(MBEDTLS_ECP_INTERNAL_ALT)
Janos Follathb0697532016-08-18 12:38:46 +0100385#error "MBEDTLS_ECP_RANDOMIZE_MXZ_ALT defined, but not all prerequisites"
386#endif
387
Janos Follathc44ab972016-11-18 16:38:23 +0000388#if defined(MBEDTLS_ECP_NORMALIZE_MXZ_ALT) && !defined(MBEDTLS_ECP_INTERNAL_ALT)
Janos Follathb0697532016-08-18 12:38:46 +0100389#error "MBEDTLS_ECP_NORMALIZE_MXZ_ALT defined, but not all prerequisites"
390#endif
391
Steven Cooremanb5873132021-01-21 13:59:17 +0100392#if defined(MBEDTLS_ECP_NO_FALLBACK) && !defined(MBEDTLS_ECP_INTERNAL_ALT)
393#error "MBEDTLS_ECP_NO_FALLBACK defined, but no alternative implementation enabled"
394#endif
395
Thomas Fossati656864b2016-07-17 08:51:22 +0100396#if defined(MBEDTLS_HKDF_C) && !defined(MBEDTLS_MD_C)
397#error "MBEDTLS_HKDF_C defined, but not all prerequisites"
398#endif
399
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200400#if defined(MBEDTLS_HMAC_DRBG_C) && !defined(MBEDTLS_MD_C)
401#error "MBEDTLS_HMAC_DRBG_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200402#endif
403
Valerio Setti82b484e2023-03-16 08:21:44 +0100404/* Helper for JPAKE dependencies, will be undefined at the end of the file */
405#if defined(MBEDTLS_USE_PSA_CRYPTO)
Valerio Setti27c501a2023-06-27 16:58:52 +0200406#if defined(PSA_WANT_ALG_JPAKE) && defined(PSA_WANT_KEY_TYPE_ECC_KEY_PAIR_BASIC)
Valerio Setti82b484e2023-03-16 08:21:44 +0100407#define MBEDTLS_PK_HAVE_JPAKE
408#endif
409#else /* MBEDTLS_USE_PSA_CRYPTO */
410#if defined(MBEDTLS_ECJPAKE_C)
411#define MBEDTLS_PK_HAVE_JPAKE
412#endif
413#endif /* MBEDTLS_USE_PSA_CRYPTO */
414
Valerio Settiee9fa462023-03-27 11:28:49 +0200415/* Helper for curve SECP256R1 */
416#if defined(MBEDTLS_USE_PSA_CRYPTO)
417#if defined(PSA_WANT_ECC_SECP_R1_256)
418#define MBEDTLS_PK_HAVE_CURVE_SECP256R1
419#endif
420#else /* MBEDTLS_USE_PSA_CRYPTO */
421#if defined(MBEDTLS_ECP_DP_SECP256R1_ENABLED)
422#define MBEDTLS_PK_HAVE_CURVE_SECP256R1
423#endif
424#endif /* MBEDTLS_USE_PSA_CRYPTO */
425
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200426#if defined(MBEDTLS_KEY_EXCHANGE_ECDH_ECDSA_ENABLED) && \
Valerio Settiaa7cbd62023-07-07 17:22:17 +0200427 ( !defined(MBEDTLS_CAN_ECDH) || \
Valerio Settia15078b2023-07-06 14:52:45 +0200428 !defined(MBEDTLS_PK_CAN_ECDSA_SIGN) || \
Gilles Peskine7ab66a62018-09-14 17:47:41 +0200429 !defined(MBEDTLS_X509_CRT_PARSE_C) )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200430#error "MBEDTLS_KEY_EXCHANGE_ECDH_ECDSA_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200431#endif
432
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200433#if defined(MBEDTLS_KEY_EXCHANGE_ECDH_RSA_ENABLED) && \
Valerio Settiaa7cbd62023-07-07 17:22:17 +0200434 ( !defined(MBEDTLS_CAN_ECDH) || !defined(MBEDTLS_RSA_C) || \
Gilles Peskine7ab66a62018-09-14 17:47:41 +0200435 !defined(MBEDTLS_X509_CRT_PARSE_C) )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200436#error "MBEDTLS_KEY_EXCHANGE_ECDH_RSA_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200437#endif
438
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200439#if defined(MBEDTLS_KEY_EXCHANGE_DHE_PSK_ENABLED) && !defined(MBEDTLS_DHM_C)
440#error "MBEDTLS_KEY_EXCHANGE_DHE_PSK_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200441#endif
442
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200443#if defined(MBEDTLS_KEY_EXCHANGE_ECDHE_PSK_ENABLED) && \
Valerio Settiaa7cbd62023-07-07 17:22:17 +0200444 !defined(MBEDTLS_CAN_ECDH)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200445#error "MBEDTLS_KEY_EXCHANGE_ECDHE_PSK_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200446#endif
447
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200448#if defined(MBEDTLS_KEY_EXCHANGE_DHE_RSA_ENABLED) && \
449 ( !defined(MBEDTLS_DHM_C) || !defined(MBEDTLS_RSA_C) || \
450 !defined(MBEDTLS_X509_CRT_PARSE_C) || !defined(MBEDTLS_PKCS1_V15) )
451#error "MBEDTLS_KEY_EXCHANGE_DHE_RSA_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200452#endif
453
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200454#if defined(MBEDTLS_KEY_EXCHANGE_ECDHE_RSA_ENABLED) && \
Valerio Settiaa7cbd62023-07-07 17:22:17 +0200455 ( !defined(MBEDTLS_CAN_ECDH) || !defined(MBEDTLS_RSA_C) || \
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200456 !defined(MBEDTLS_X509_CRT_PARSE_C) || !defined(MBEDTLS_PKCS1_V15) )
457#error "MBEDTLS_KEY_EXCHANGE_ECDHE_RSA_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200458#endif
459
Manuel Pégourié-Gonnard45bcb6a2023-03-10 11:40:48 +0100460#if defined(MBEDTLS_KEY_EXCHANGE_ECDHE_ECDSA_ENABLED) && \
Valerio Settiaa7cbd62023-07-07 17:22:17 +0200461 ( !defined(MBEDTLS_CAN_ECDH) || \
Valerio Settia15078b2023-07-06 14:52:45 +0200462 !defined(MBEDTLS_PK_CAN_ECDSA_SIGN) || \
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200463 !defined(MBEDTLS_X509_CRT_PARSE_C) )
464#error "MBEDTLS_KEY_EXCHANGE_ECDHE_ECDSA_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200465#endif
466
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200467#if defined(MBEDTLS_KEY_EXCHANGE_RSA_PSK_ENABLED) && \
468 ( !defined(MBEDTLS_RSA_C) || !defined(MBEDTLS_X509_CRT_PARSE_C) || \
469 !defined(MBEDTLS_PKCS1_V15) )
470#error "MBEDTLS_KEY_EXCHANGE_RSA_PSK_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200471#endif
472
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200473#if defined(MBEDTLS_KEY_EXCHANGE_RSA_ENABLED) && \
474 ( !defined(MBEDTLS_RSA_C) || !defined(MBEDTLS_X509_CRT_PARSE_C) || \
475 !defined(MBEDTLS_PKCS1_V15) )
476#error "MBEDTLS_KEY_EXCHANGE_RSA_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200477#endif
478
Manuel Pégourié-Gonnard557535d2015-09-15 17:53:32 +0200479#if defined(MBEDTLS_KEY_EXCHANGE_ECJPAKE_ENABLED) && \
Valerio Settiee9fa462023-03-27 11:28:49 +0200480 ( !defined(MBEDTLS_PK_HAVE_JPAKE) || \
481 !defined(MBEDTLS_PK_HAVE_CURVE_SECP256R1) )
Manuel Pégourié-Gonnard557535d2015-09-15 17:53:32 +0200482#error "MBEDTLS_KEY_EXCHANGE_ECJPAKE_ENABLED defined, but not all prerequisites"
483#endif
484
Manuel Pégourié-Gonnard41bc8b62023-03-14 23:59:24 +0100485/* Use of EC J-PAKE in TLS requires SHA-256. */
Manuel Pégourié-Gonnard3c16abe2022-09-19 10:44:42 +0200486#if defined(MBEDTLS_KEY_EXCHANGE_ECJPAKE_ENABLED) && \
Manuel Pégourié-Gonnardbb21c5a2023-03-21 23:53:57 +0100487 !defined(MBEDTLS_MD_HAVE_SHA256)
Manuel Pégourié-Gonnard3c16abe2022-09-19 10:44:42 +0200488#error "MBEDTLS_KEY_EXCHANGE_ECJPAKE_ENABLED defined, but not all prerequisites"
489#endif
490
Gilles Peskineeccd8882020-03-10 12:19:08 +0100491#if defined(MBEDTLS_KEY_EXCHANGE_WITH_CERT_ENABLED) && \
Hanno Beckerfe4ef0c2019-02-26 11:43:09 +0000492 !defined(MBEDTLS_SSL_KEEP_PEER_CERTIFICATE) && \
493 ( !defined(MBEDTLS_SHA256_C) && \
494 !defined(MBEDTLS_SHA512_C) && \
495 !defined(MBEDTLS_SHA1_C) )
496#error "!MBEDTLS_SSL_KEEP_PEER_CERTIFICATE requires MBEDTLS_SHA512_C, MBEDTLS_SHA256_C or MBEDTLS_SHA1_C"
497#endif
498
Manuel Pégourié-Gonnard1f7f7172022-07-18 12:04:05 +0200499#if defined(MBEDTLS_MD_C) && !( \
500 defined(MBEDTLS_MD5_C) || \
501 defined(MBEDTLS_RIPEMD160_C) || \
502 defined(MBEDTLS_SHA1_C) || \
503 defined(MBEDTLS_SHA224_C) || \
504 defined(MBEDTLS_SHA256_C) || \
505 defined(MBEDTLS_SHA384_C) || \
Manuel Pégourié-Gonnard534d64d2023-03-14 17:43:06 +0100506 defined(MBEDTLS_SHA512_C) || \
507 (defined(MBEDTLS_PSA_CRYPTO_C) && \
508 (defined(PSA_WANT_ALG_MD5) || \
509 defined(PSA_WANT_ALG_RIPEMD160) || \
510 defined(PSA_WANT_ALG_SHA_1) || \
511 defined(PSA_WANT_ALG_SHA_224) || \
512 defined(PSA_WANT_ALG_SHA_256) || \
513 defined(PSA_WANT_ALG_SHA_384) || \
514 defined(PSA_WANT_ALG_SHA_512))))
Manuel Pégourié-Gonnard1f7f7172022-07-18 12:04:05 +0200515#error "MBEDTLS_MD_C defined, but not all prerequisites"
516#endif
517
Raef Coles8ff6df52021-07-21 12:42:15 +0100518#if defined(MBEDTLS_LMS_C) && \
Raef Coles07b70d92022-10-13 10:46:16 +0100519 ! ( defined(MBEDTLS_PSA_CRYPTO_C) && defined(PSA_WANT_ALG_SHA_256) )
520#error "MBEDTLS_LMS_C requires MBEDTLS_PSA_CRYPTO_C and PSA_WANT_ALG_SHA_256"
Raef Coles8ff6df52021-07-21 12:42:15 +0100521#endif
522
Raef Colesab4f8742022-09-01 12:24:31 +0100523#if defined(MBEDTLS_LMS_PRIVATE) && \
524 ( !defined(MBEDTLS_LMS_C) )
525#error "MBEDTLS_LMS_PRIVATE requires MBEDTLS_LMS_C"
526#endif
527
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200528#if defined(MBEDTLS_MEMORY_BUFFER_ALLOC_C) && \
529 ( !defined(MBEDTLS_PLATFORM_C) || !defined(MBEDTLS_PLATFORM_MEMORY) )
530#error "MBEDTLS_MEMORY_BUFFER_ALLOC_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200531#endif
532
Hanno Beckeraf46c5f2019-02-26 13:50:21 +0000533#if defined(MBEDTLS_MEMORY_BACKTRACE) && !defined(MBEDTLS_MEMORY_BUFFER_ALLOC_C)
Shaun Case8b0ecbc2021-12-20 21:14:10 -0800534#error "MBEDTLS_MEMORY_BACKTRACE defined, but not all prerequisites"
Hanno Beckeraf46c5f2019-02-26 13:50:21 +0000535#endif
536
Hanno Beckerbfaa7182019-06-03 16:31:32 +0100537#if defined(MBEDTLS_MEMORY_DEBUG) && !defined(MBEDTLS_MEMORY_BUFFER_ALLOC_C)
Shaun Case8b0ecbc2021-12-20 21:14:10 -0800538#error "MBEDTLS_MEMORY_DEBUG defined, but not all prerequisites"
Hanno Beckerbfaa7182019-06-03 16:31:32 +0100539#endif
540
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200541#if defined(MBEDTLS_PEM_PARSE_C) && !defined(MBEDTLS_BASE64_C)
542#error "MBEDTLS_PEM_PARSE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200543#endif
544
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200545#if defined(MBEDTLS_PEM_WRITE_C) && !defined(MBEDTLS_BASE64_C)
546#error "MBEDTLS_PEM_WRITE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200547#endif
548
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200549#if defined(MBEDTLS_PK_C) && \
Valerio Setti7c494e72023-07-27 14:58:53 +0200550 !defined(MBEDTLS_RSA_C) && !defined(MBEDTLS_PK_HAVE_ECC_KEYS)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200551#error "MBEDTLS_PK_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard94de3312015-01-28 16:32:36 +0000552#endif
553
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200554#if defined(MBEDTLS_PK_PARSE_C) && !defined(MBEDTLS_PK_C)
555#error "MBEDTLS_PK_PARSE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200556#endif
557
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200558#if defined(MBEDTLS_PK_WRITE_C) && !defined(MBEDTLS_PK_C)
559#error "MBEDTLS_PK_WRITE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200560#endif
561
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200562#if defined(MBEDTLS_PLATFORM_EXIT_ALT) && !defined(MBEDTLS_PLATFORM_C)
563#error "MBEDTLS_PLATFORM_EXIT_ALT defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000564#endif
565
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200566#if defined(MBEDTLS_PLATFORM_EXIT_MACRO) && !defined(MBEDTLS_PLATFORM_C)
567#error "MBEDTLS_PLATFORM_EXIT_MACRO defined, but not all prerequisites"
Rich Evans4cc8a222015-02-03 11:26:31 +0000568#endif
569
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200570#if defined(MBEDTLS_PLATFORM_EXIT_MACRO) &&\
571 ( defined(MBEDTLS_PLATFORM_STD_EXIT) ||\
572 defined(MBEDTLS_PLATFORM_EXIT_ALT) )
573#error "MBEDTLS_PLATFORM_EXIT_MACRO and MBEDTLS_PLATFORM_STD_EXIT/MBEDTLS_PLATFORM_EXIT_ALT cannot be defined simultaneously"
Rich Evans4cc8a222015-02-03 11:26:31 +0000574#endif
575
Gilles Peskine6497b5a2022-06-30 17:01:40 +0200576#if defined(MBEDTLS_PLATFORM_SETBUF_ALT) && !defined(MBEDTLS_PLATFORM_C)
577#error "MBEDTLS_PLATFORM_SETBUF_ALT defined, but not all prerequisites"
578#endif
579
580#if defined(MBEDTLS_PLATFORM_SETBUF_MACRO) && !defined(MBEDTLS_PLATFORM_C)
581#error "MBEDTLS_PLATFORM_SETBUF_MACRO defined, but not all prerequisites"
582#endif
583
584#if defined(MBEDTLS_PLATFORM_SETBUF_MACRO) &&\
585 ( defined(MBEDTLS_PLATFORM_STD_SETBUF) ||\
586 defined(MBEDTLS_PLATFORM_SETBUF_ALT) )
587#error "MBEDTLS_PLATFORM_SETBUF_MACRO and MBEDTLS_PLATFORM_STD_SETBUF/MBEDTLS_PLATFORM_SETBUF_ALT cannot be defined simultaneously"
588#endif
589
Andres Amaya Garcia1e4ec662016-07-20 10:16:25 +0100590#if defined(MBEDTLS_PLATFORM_TIME_ALT) &&\
591 ( !defined(MBEDTLS_PLATFORM_C) ||\
592 !defined(MBEDTLS_HAVE_TIME) )
593#error "MBEDTLS_PLATFORM_TIME_ALT defined, but not all prerequisites"
594#endif
595
596#if defined(MBEDTLS_PLATFORM_TIME_MACRO) &&\
597 ( !defined(MBEDTLS_PLATFORM_C) ||\
598 !defined(MBEDTLS_HAVE_TIME) )
599#error "MBEDTLS_PLATFORM_TIME_MACRO defined, but not all prerequisites"
600#endif
601
Jerry Yueba0ab52022-12-15 17:41:41 +0800602#if defined(MBEDTLS_PLATFORM_MS_TIME_TYPE_MACRO) &&\
Jerry Yu1ae2b2f2023-02-21 15:37:12 +0800603 ( !defined(MBEDTLS_PLATFORM_C) || !defined(MBEDTLS_HAVE_TIME) )
Jerry Yueba0ab52022-12-15 17:41:41 +0800604#error "MBEDTLS_PLATFORM_MS_TIME_TYPE_MACRO defined, but not all prerequisites"
605#endif
606
Jerry Yu38257492022-12-15 17:54:47 +0800607#if defined(MBEDTLS_PLATFORM_MS_TIME_ALT) && \
Jerry Yu1ae2b2f2023-02-21 15:37:12 +0800608 ( !defined(MBEDTLS_PLATFORM_C) || !defined(MBEDTLS_HAVE_TIME) )
Jerry Yu38257492022-12-15 17:54:47 +0800609#error "MBEDTLS_PLATFORM_MS_TIME_ALT defined, but not all prerequisites"
610#endif
611
Andres Amaya Garcia1e4ec662016-07-20 10:16:25 +0100612#if defined(MBEDTLS_PLATFORM_TIME_TYPE_MACRO) &&\
613 ( !defined(MBEDTLS_PLATFORM_C) ||\
614 !defined(MBEDTLS_HAVE_TIME) )
615#error "MBEDTLS_PLATFORM_TIME_TYPE_MACRO defined, but not all prerequisites"
616#endif
617
618#if defined(MBEDTLS_PLATFORM_TIME_MACRO) &&\
619 ( defined(MBEDTLS_PLATFORM_STD_TIME) ||\
620 defined(MBEDTLS_PLATFORM_TIME_ALT) )
621#error "MBEDTLS_PLATFORM_TIME_MACRO and MBEDTLS_PLATFORM_STD_TIME/MBEDTLS_PLATFORM_TIME_ALT cannot be defined simultaneously"
622#endif
623
624#if defined(MBEDTLS_PLATFORM_TIME_TYPE_MACRO) &&\
625 ( defined(MBEDTLS_PLATFORM_STD_TIME) ||\
626 defined(MBEDTLS_PLATFORM_TIME_ALT) )
627#error "MBEDTLS_PLATFORM_TIME_TYPE_MACRO and MBEDTLS_PLATFORM_STD_TIME/MBEDTLS_PLATFORM_TIME_ALT cannot be defined simultaneously"
628#endif
629
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200630#if defined(MBEDTLS_PLATFORM_FPRINTF_ALT) && !defined(MBEDTLS_PLATFORM_C)
631#error "MBEDTLS_PLATFORM_FPRINTF_ALT defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000632#endif
633
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200634#if defined(MBEDTLS_PLATFORM_FPRINTF_MACRO) && !defined(MBEDTLS_PLATFORM_C)
635#error "MBEDTLS_PLATFORM_FPRINTF_MACRO defined, but not all prerequisites"
Rich Evans4cc8a222015-02-03 11:26:31 +0000636#endif
637
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200638#if defined(MBEDTLS_PLATFORM_FPRINTF_MACRO) &&\
639 ( defined(MBEDTLS_PLATFORM_STD_FPRINTF) ||\
640 defined(MBEDTLS_PLATFORM_FPRINTF_ALT) )
641#error "MBEDTLS_PLATFORM_FPRINTF_MACRO and MBEDTLS_PLATFORM_STD_FPRINTF/MBEDTLS_PLATFORM_FPRINTF_ALT cannot be defined simultaneously"
Rich Evans4cc8a222015-02-03 11:26:31 +0000642#endif
643
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200644#if defined(MBEDTLS_PLATFORM_FREE_MACRO) &&\
645 ( !defined(MBEDTLS_PLATFORM_C) || !defined(MBEDTLS_PLATFORM_MEMORY) )
646#error "MBEDTLS_PLATFORM_FREE_MACRO defined, but not all prerequisites"
Rich Evans4cc8a222015-02-03 11:26:31 +0000647#endif
648
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200649#if defined(MBEDTLS_PLATFORM_FREE_MACRO) &&\
650 defined(MBEDTLS_PLATFORM_STD_FREE)
651#error "MBEDTLS_PLATFORM_FREE_MACRO and MBEDTLS_PLATFORM_STD_FREE cannot be defined simultaneously"
Rich Evans4cc8a222015-02-03 11:26:31 +0000652#endif
653
Manuel Pégourié-Gonnarda7f80332015-05-27 20:26:40 +0200654#if defined(MBEDTLS_PLATFORM_FREE_MACRO) && !defined(MBEDTLS_PLATFORM_CALLOC_MACRO)
655#error "MBEDTLS_PLATFORM_CALLOC_MACRO must be defined if MBEDTLS_PLATFORM_FREE_MACRO is"
Rich Evans16f8cd82015-02-06 16:14:34 +0000656#endif
657
Manuel Pégourié-Gonnarda7f80332015-05-27 20:26:40 +0200658#if defined(MBEDTLS_PLATFORM_CALLOC_MACRO) &&\
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200659 ( !defined(MBEDTLS_PLATFORM_C) || !defined(MBEDTLS_PLATFORM_MEMORY) )
Manuel Pégourié-Gonnarda7f80332015-05-27 20:26:40 +0200660#error "MBEDTLS_PLATFORM_CALLOC_MACRO defined, but not all prerequisites"
Rich Evans4cc8a222015-02-03 11:26:31 +0000661#endif
662
Manuel Pégourié-Gonnarda7f80332015-05-27 20:26:40 +0200663#if defined(MBEDTLS_PLATFORM_CALLOC_MACRO) &&\
664 defined(MBEDTLS_PLATFORM_STD_CALLOC)
665#error "MBEDTLS_PLATFORM_CALLOC_MACRO and MBEDTLS_PLATFORM_STD_CALLOC cannot be defined simultaneously"
Rich Evans4cc8a222015-02-03 11:26:31 +0000666#endif
667
Manuel Pégourié-Gonnarda7f80332015-05-27 20:26:40 +0200668#if defined(MBEDTLS_PLATFORM_CALLOC_MACRO) && !defined(MBEDTLS_PLATFORM_FREE_MACRO)
669#error "MBEDTLS_PLATFORM_FREE_MACRO must be defined if MBEDTLS_PLATFORM_CALLOC_MACRO is"
Rich Evans16f8cd82015-02-06 16:14:34 +0000670#endif
671
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200672#if defined(MBEDTLS_PLATFORM_MEMORY) && !defined(MBEDTLS_PLATFORM_C)
673#error "MBEDTLS_PLATFORM_MEMORY defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000674#endif
675
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200676#if defined(MBEDTLS_PLATFORM_PRINTF_ALT) && !defined(MBEDTLS_PLATFORM_C)
677#error "MBEDTLS_PLATFORM_PRINTF_ALT defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000678#endif
679
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200680#if defined(MBEDTLS_PLATFORM_PRINTF_MACRO) && !defined(MBEDTLS_PLATFORM_C)
681#error "MBEDTLS_PLATFORM_PRINTF_MACRO defined, but not all prerequisites"
Rich Evans4cc8a222015-02-03 11:26:31 +0000682#endif
683
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200684#if defined(MBEDTLS_PLATFORM_PRINTF_MACRO) &&\
685 ( defined(MBEDTLS_PLATFORM_STD_PRINTF) ||\
686 defined(MBEDTLS_PLATFORM_PRINTF_ALT) )
687#error "MBEDTLS_PLATFORM_PRINTF_MACRO and MBEDTLS_PLATFORM_STD_PRINTF/MBEDTLS_PLATFORM_PRINTF_ALT cannot be defined simultaneously"
Rich Evans4cc8a222015-02-03 11:26:31 +0000688#endif
689
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200690#if defined(MBEDTLS_PLATFORM_SNPRINTF_ALT) && !defined(MBEDTLS_PLATFORM_C)
691#error "MBEDTLS_PLATFORM_SNPRINTF_ALT defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000692#endif
693
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200694#if defined(MBEDTLS_PLATFORM_SNPRINTF_MACRO) && !defined(MBEDTLS_PLATFORM_C)
695#error "MBEDTLS_PLATFORM_SNPRINTF_MACRO defined, but not all prerequisites"
Rich Evans4cc8a222015-02-03 11:26:31 +0000696#endif
697
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200698#if defined(MBEDTLS_PLATFORM_SNPRINTF_MACRO) &&\
699 ( defined(MBEDTLS_PLATFORM_STD_SNPRINTF) ||\
700 defined(MBEDTLS_PLATFORM_SNPRINTF_ALT) )
701#error "MBEDTLS_PLATFORM_SNPRINTF_MACRO and MBEDTLS_PLATFORM_STD_SNPRINTF/MBEDTLS_PLATFORM_SNPRINTF_ALT cannot be defined simultaneously"
Rich Evans4cc8a222015-02-03 11:26:31 +0000702#endif
703
Gilles Peskineef843f22022-09-18 14:05:23 +0200704#if defined(MBEDTLS_PLATFORM_VSNPRINTF_ALT) && !defined(MBEDTLS_PLATFORM_C)
705#error "MBEDTLS_PLATFORM_VSNPRINTF_ALT defined, but not all prerequisites"
706#endif
707
708#if defined(MBEDTLS_PLATFORM_VSNPRINTF_MACRO) && !defined(MBEDTLS_PLATFORM_C)
709#error "MBEDTLS_PLATFORM_VSNPRINTF_MACRO defined, but not all prerequisites"
710#endif
711
712#if defined(MBEDTLS_PLATFORM_VSNPRINTF_MACRO) &&\
713 ( defined(MBEDTLS_PLATFORM_STD_VSNPRINTF) ||\
714 defined(MBEDTLS_PLATFORM_VSNPRINTF_ALT) )
715#error "MBEDTLS_PLATFORM_VSNPRINTF_MACRO and MBEDTLS_PLATFORM_STD_VSNPRINTF/MBEDTLS_PLATFORM_VSNPRINTF_ALT cannot be defined simultaneously"
716#endif
717
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200718#if defined(MBEDTLS_PLATFORM_STD_MEM_HDR) &&\
719 !defined(MBEDTLS_PLATFORM_NO_STD_FUNCTIONS)
720#error "MBEDTLS_PLATFORM_STD_MEM_HDR defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000721#endif
722
Manuel Pégourié-Gonnarda7f80332015-05-27 20:26:40 +0200723#if defined(MBEDTLS_PLATFORM_STD_CALLOC) && !defined(MBEDTLS_PLATFORM_MEMORY)
724#error "MBEDTLS_PLATFORM_STD_CALLOC defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000725#endif
726
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200727#if defined(MBEDTLS_PLATFORM_STD_FREE) && !defined(MBEDTLS_PLATFORM_MEMORY)
728#error "MBEDTLS_PLATFORM_STD_FREE defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000729#endif
730
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200731#if defined(MBEDTLS_PLATFORM_STD_EXIT) &&\
732 !defined(MBEDTLS_PLATFORM_EXIT_ALT)
733#error "MBEDTLS_PLATFORM_STD_EXIT defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000734#endif
735
Andres Amaya Garcia1e4ec662016-07-20 10:16:25 +0100736#if defined(MBEDTLS_PLATFORM_STD_TIME) &&\
737 ( !defined(MBEDTLS_PLATFORM_TIME_ALT) ||\
738 !defined(MBEDTLS_HAVE_TIME) )
739#error "MBEDTLS_PLATFORM_STD_TIME defined, but not all prerequisites"
740#endif
741
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200742#if defined(MBEDTLS_PLATFORM_STD_FPRINTF) &&\
743 !defined(MBEDTLS_PLATFORM_FPRINTF_ALT)
744#error "MBEDTLS_PLATFORM_STD_FPRINTF defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000745#endif
746
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200747#if defined(MBEDTLS_PLATFORM_STD_PRINTF) &&\
748 !defined(MBEDTLS_PLATFORM_PRINTF_ALT)
749#error "MBEDTLS_PLATFORM_STD_PRINTF defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000750#endif
751
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200752#if defined(MBEDTLS_PLATFORM_STD_SNPRINTF) &&\
753 !defined(MBEDTLS_PLATFORM_SNPRINTF_ALT)
754#error "MBEDTLS_PLATFORM_STD_SNPRINTF defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000755#endif
756
Paul Bakkercf0a9f92016-06-01 11:25:44 +0100757#if defined(MBEDTLS_ENTROPY_NV_SEED) &&\
758 ( !defined(MBEDTLS_PLATFORM_C) || !defined(MBEDTLS_ENTROPY_C) )
759#error "MBEDTLS_ENTROPY_NV_SEED defined, but not all prerequisites"
760#endif
761
762#if defined(MBEDTLS_PLATFORM_NV_SEED_ALT) &&\
763 !defined(MBEDTLS_ENTROPY_NV_SEED)
764#error "MBEDTLS_PLATFORM_NV_SEED_ALT defined, but not all prerequisites"
765#endif
766
767#if defined(MBEDTLS_PLATFORM_STD_NV_SEED_READ) &&\
768 !defined(MBEDTLS_PLATFORM_NV_SEED_ALT)
769#error "MBEDTLS_PLATFORM_STD_NV_SEED_READ defined, but not all prerequisites"
770#endif
771
772#if defined(MBEDTLS_PLATFORM_STD_NV_SEED_WRITE) &&\
773 !defined(MBEDTLS_PLATFORM_NV_SEED_ALT)
774#error "MBEDTLS_PLATFORM_STD_NV_SEED_WRITE defined, but not all prerequisites"
775#endif
776
777#if defined(MBEDTLS_PLATFORM_NV_SEED_READ_MACRO) &&\
778 ( defined(MBEDTLS_PLATFORM_STD_NV_SEED_READ) ||\
779 defined(MBEDTLS_PLATFORM_NV_SEED_ALT) )
780#error "MBEDTLS_PLATFORM_NV_SEED_READ_MACRO and MBEDTLS_PLATFORM_STD_NV_SEED_READ cannot be defined simultaneously"
781#endif
782
783#if defined(MBEDTLS_PLATFORM_NV_SEED_WRITE_MACRO) &&\
784 ( defined(MBEDTLS_PLATFORM_STD_NV_SEED_WRITE) ||\
785 defined(MBEDTLS_PLATFORM_NV_SEED_ALT) )
786#error "MBEDTLS_PLATFORM_NV_SEED_WRITE_MACRO and MBEDTLS_PLATFORM_STD_NV_SEED_WRITE cannot be defined simultaneously"
787#endif
788
Gilles Peskinef08b3f82020-11-13 17:36:48 +0100789#if defined(MBEDTLS_PSA_CRYPTO_C) && \
Gilles Peskine82e57d12020-11-13 21:31:17 +0100790 !( ( ( defined(MBEDTLS_CTR_DRBG_C) || defined(MBEDTLS_HMAC_DRBG_C) ) && \
Gilles Peskinef08b3f82020-11-13 17:36:48 +0100791 defined(MBEDTLS_ENTROPY_C) ) || \
792 defined(MBEDTLS_PSA_CRYPTO_EXTERNAL_RNG) )
793#error "MBEDTLS_PSA_CRYPTO_C defined, but not all prerequisites (missing RNG)"
Jaeden Amero484ee332018-10-25 17:38:05 +0100794#endif
795
Valerio Settic1d50b62023-08-25 09:20:00 +0200796#if defined(MBEDTLS_PSA_CRYPTO_C) && \
797 (defined(PSA_HAVE_SOFT_BLOCK_CIPHER) || defined(PSA_HAVE_SOFT_BLOCK_AEAD)) && \
798 !defined(MBEDTLS_CIPHER_C)
Przemek Stekiela09f8352022-05-12 09:34:28 +0200799#error "MBEDTLS_PSA_CRYPTO_C defined, but not all prerequisites"
Przemek Stekielea805b42022-05-02 10:30:03 +0200800#endif
801
Andrzej Kurekc6905232019-02-05 05:23:41 -0500802#if defined(MBEDTLS_PSA_CRYPTO_SPM) && !defined(MBEDTLS_PSA_CRYPTO_C)
803#error "MBEDTLS_PSA_CRYPTO_SPM defined, but not all prerequisites"
804#endif
805
Gilles Peskinea8ade162019-06-26 11:24:49 +0200806#if defined(MBEDTLS_PSA_CRYPTO_SE_C) && \
807 ! ( defined(MBEDTLS_PSA_CRYPTO_C) && \
808 defined(MBEDTLS_PSA_CRYPTO_STORAGE_C) )
809#error "MBEDTLS_PSA_CRYPTO_SE_C defined, but not all prerequisites"
810#endif
811
Gilles Peskine98473c42022-06-20 18:46:22 +0200812#if defined(MBEDTLS_PSA_CRYPTO_SE_C)
813#if defined(MBEDTLS_DEPRECATED_REMOVED)
814#error "MBEDTLS_PSA_CRYPTO_SE_C is deprecated and will be removed in a future version of Mbed TLS"
815#elif defined(MBEDTLS_DEPRECATED_WARNING)
816#warning "MBEDTLS_PSA_CRYPTO_SE_C is deprecated and will be removed in a future version of Mbed TLS"
817#endif
818#endif /* MBEDTLS_PSA_CRYPTO_SE_C */
819
Andrzej Kurekc6905232019-02-05 05:23:41 -0500820#if defined(MBEDTLS_PSA_CRYPTO_STORAGE_C) && \
Jaeden Amero57f4d9e2019-03-15 16:14:19 +0000821 ! defined(MBEDTLS_PSA_CRYPTO_C)
Andrzej Kurekc6905232019-02-05 05:23:41 -0500822#error "MBEDTLS_PSA_CRYPTO_STORAGE_C defined, but not all prerequisites"
823#endif
824
Jaeden Amero57f4d9e2019-03-15 16:14:19 +0000825#if defined(MBEDTLS_PSA_INJECT_ENTROPY) && \
826 !( defined(MBEDTLS_PSA_CRYPTO_STORAGE_C) && \
827 defined(MBEDTLS_ENTROPY_NV_SEED) )
828#error "MBEDTLS_PSA_INJECT_ENTROPY defined, but not all prerequisites"
Andrzej Kurekc6905232019-02-05 05:23:41 -0500829#endif
830
Jaeden Amero57f4d9e2019-03-15 16:14:19 +0000831#if defined(MBEDTLS_PSA_INJECT_ENTROPY) && \
832 !defined(MBEDTLS_NO_DEFAULT_ENTROPY_SOURCES)
833#error "MBEDTLS_PSA_INJECT_ENTROPY is not compatible with actual entropy sources"
834#endif
835
Gilles Peskine4fc21fd2020-11-13 18:47:18 +0100836#if defined(MBEDTLS_PSA_INJECT_ENTROPY) && \
Gilles Peskine89ffb282020-11-18 15:23:08 +0100837 defined(MBEDTLS_PSA_CRYPTO_EXTERNAL_RNG)
Gilles Peskine4fc21fd2020-11-13 18:47:18 +0100838#error "MBEDTLS_PSA_INJECT_ENTROPY is not compatible with MBEDTLS_PSA_CRYPTO_EXTERNAL_RNG"
839#endif
840
Jaeden Amero57f4d9e2019-03-15 16:14:19 +0000841#if defined(MBEDTLS_PSA_ITS_FILE_C) && \
842 !defined(MBEDTLS_FS_IO)
843#error "MBEDTLS_PSA_ITS_FILE_C defined, but not all prerequisites"
Andrzej Kurekc6905232019-02-05 05:23:41 -0500844#endif
845
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200846#if defined(MBEDTLS_RSA_C) && ( !defined(MBEDTLS_BIGNUM_C) || \
847 !defined(MBEDTLS_OID_C) )
848#error "MBEDTLS_RSA_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200849#endif
850
Paul Bakker4fde40f2016-05-09 15:13:04 +0100851#if defined(MBEDTLS_RSA_C) && ( !defined(MBEDTLS_PKCS1_V21) && \
Paul Bakker37068a72016-05-09 14:36:33 +0100852 !defined(MBEDTLS_PKCS1_V15) )
853#error "MBEDTLS_RSA_C defined, but none of the PKCS1 versions enabled"
854#endif
855
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200856#if defined(MBEDTLS_X509_RSASSA_PSS_SUPPORT) && \
857 ( !defined(MBEDTLS_RSA_C) || !defined(MBEDTLS_PKCS1_V21) )
858#error "MBEDTLS_X509_RSASSA_PSS_SUPPORT defined, but not all prerequisites"
Manuel Pégourié-Gonnard9df5c962014-01-24 14:37:29 +0100859#endif
860
Tom Cosgrove87fbfb52022-03-15 10:51:52 +0000861#if defined(MBEDTLS_SHA512_USE_A64_CRYPTO_IF_PRESENT) && \
862 defined(MBEDTLS_SHA512_USE_A64_CRYPTO_ONLY)
863#error "Must only define one of MBEDTLS_SHA512_USE_A64_CRYPTO_*"
864#endif
865
866#if defined(MBEDTLS_SHA512_USE_A64_CRYPTO_IF_PRESENT) || \
867 defined(MBEDTLS_SHA512_USE_A64_CRYPTO_ONLY)
868#if !defined(MBEDTLS_SHA512_C)
869#error "MBEDTLS_SHA512_USE_A64_CRYPTO_* defined without MBEDTLS_SHA512_C"
870#endif
871#if defined(MBEDTLS_SHA512_ALT) || defined(MBEDTLS_SHA512_PROCESS_ALT)
872#error "MBEDTLS_SHA512_*ALT can't be used with MBEDTLS_SHA512_USE_A64_CRYPTO_*"
873#endif
Tom Cosgrove87fbfb52022-03-15 10:51:52 +0000874
875#endif /* MBEDTLS_SHA512_USE_A64_CRYPTO_IF_PRESENT || MBEDTLS_SHA512_USE_A64_CRYPTO_ONLY */
876
877#if defined(MBEDTLS_SHA512_USE_A64_CRYPTO_ONLY) && !defined(__aarch64__)
878#error "MBEDTLS_SHA512_USE_A64_CRYPTO_ONLY defined on non-Aarch64 system"
879#endif
880
Dave Rodgman5b89c552023-10-10 14:59:02 +0100881#if defined(MBEDTLS_SHA256_USE_ARMV8_A_CRYPTO_IF_PRESENT) && \
882 defined(MBEDTLS_SHA256_USE_ARMV8_A_CRYPTO_ONLY)
883#error "Must only define one of MBEDTLS_SHA256_USE_ARMV8_A_CRYPTO_*"
Tom Cosgrovef3ebd902022-02-20 22:25:31 +0000884#endif
885
Dave Rodgman5b89c552023-10-10 14:59:02 +0100886#if defined(MBEDTLS_SHA256_USE_ARMV8_A_CRYPTO_IF_PRESENT) || \
887 defined(MBEDTLS_SHA256_USE_ARMV8_A_CRYPTO_ONLY)
Tom Cosgrovef3ebd902022-02-20 22:25:31 +0000888#if !defined(MBEDTLS_SHA256_C)
Dave Rodgman5b89c552023-10-10 14:59:02 +0100889#error "MBEDTLS_SHA256_USE_ARMV8_A_CRYPTO_* defined without MBEDTLS_SHA256_C"
Tom Cosgrovef3ebd902022-02-20 22:25:31 +0000890#endif
891#if defined(MBEDTLS_SHA256_ALT) || defined(MBEDTLS_SHA256_PROCESS_ALT)
Dave Rodgman5b89c552023-10-10 14:59:02 +0100892#error "MBEDTLS_SHA256_*ALT can't be used with MBEDTLS_SHA256_USE_ARMV8_A_CRYPTO_*"
Tom Cosgrovef3ebd902022-02-20 22:25:31 +0000893#endif
Jerry Yu35f2b262023-02-15 11:35:55 +0800894
Tom Cosgrovef3ebd902022-02-20 22:25:31 +0000895#endif
896
Dave Rodgman5b89c552023-10-10 14:59:02 +0100897#if defined(MBEDTLS_SHA256_USE_ARMV8_A_CRYPTO_ONLY) && !defined(MBEDTLS_ARCH_IS_ARMV8_A)
898#error "MBEDTLS_SHA256_USE_ARMV8_A_CRYPTO_ONLY defined on non-Armv8-A system"
Tom Cosgrovef3ebd902022-02-20 22:25:31 +0000899#endif
900
Manuel Pégourié-Gonnarda31ddb92023-03-22 00:13:50 +0100901/* TLS 1.3 requires separate HKDF parts from PSA,
902 * and at least one ciphersuite, so at least SHA-256 or SHA-384
903 * from PSA to use with HKDF.
904 *
905 * Note: for dependencies common with TLS 1.2 (running handshake hash),
906 * see MBEDTLS_SSL_TLS_C. */
Ronald Cron6f135e12021-12-08 16:57:54 +0100907#if defined(MBEDTLS_SSL_PROTO_TLS1_3) && \
Manuel Pégourié-Gonnarda31ddb92023-03-22 00:13:50 +0100908 !(defined(MBEDTLS_PSA_CRYPTO_C) && \
909 defined(PSA_WANT_ALG_HKDF_EXTRACT) && \
910 defined(PSA_WANT_ALG_HKDF_EXPAND) && \
911 (defined(PSA_WANT_ALG_SHA_256) || defined(PSA_WANT_ALG_SHA_384)))
Ronald Cron6f135e12021-12-08 16:57:54 +0100912#error "MBEDTLS_SSL_PROTO_TLS1_3 defined, but not all prerequisites"
Hanno Becker6055a172020-06-02 06:20:23 +0100913#endif
914
Ronald Crond8d2ea52022-10-04 15:48:06 +0200915#if defined(MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_EPHEMERAL_ENABLED)
Valerio Settia15078b2023-07-06 14:52:45 +0200916#if !( (defined(PSA_WANT_ALG_ECDH) || defined(PSA_WANT_ALG_FFDH)) && \
917 defined(MBEDTLS_X509_CRT_PARSE_C) && \
918 ( defined(MBEDTLS_PK_CAN_ECDSA_SIGN) || defined(MBEDTLS_PKCS1_V21) ) )
Ronald Crond8d2ea52022-10-04 15:48:06 +0200919#error "MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_EPHEMERAL_ENABLED defined, but not all prerequisites"
920#endif
921#endif
922
923#if defined(MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_PSK_EPHEMERAL_ENABLED)
Przemek Stekielce05f542023-06-15 16:44:08 +0200924#if !( defined(PSA_WANT_ALG_ECDH) || defined(PSA_WANT_ALG_FFDH) )
Ronald Crond8d2ea52022-10-04 15:48:06 +0200925#error "MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_PSK_EPHEMERAL_ENABLED defined, but not all prerequisites"
926#endif
927#endif
928
Tom Cosgroveafb2fe12022-06-29 16:36:12 +0100929/*
930 * The current implementation of TLS 1.3 requires MBEDTLS_SSL_KEEP_PEER_CERTIFICATE.
931 */
932#if defined(MBEDTLS_SSL_PROTO_TLS1_3) && !defined(MBEDTLS_SSL_KEEP_PEER_CERTIFICATE)
933#error "MBEDTLS_SSL_PROTO_TLS1_3 defined without MBEDTLS_SSL_KEEP_PEER_CERTIFICATE"
934#endif
935
TRodziewicz0f82ec62021-05-12 17:49:18 +0200936#if defined(MBEDTLS_SSL_PROTO_TLS1_2) && \
Simon Butcher432e7022019-04-11 18:56:18 +0100937 !(defined(MBEDTLS_KEY_EXCHANGE_RSA_ENABLED) || \
938 defined(MBEDTLS_KEY_EXCHANGE_DHE_RSA_ENABLED) || \
939 defined(MBEDTLS_KEY_EXCHANGE_ECDHE_RSA_ENABLED) || \
940 defined(MBEDTLS_KEY_EXCHANGE_ECDHE_ECDSA_ENABLED) || \
941 defined(MBEDTLS_KEY_EXCHANGE_ECDH_RSA_ENABLED) || \
942 defined(MBEDTLS_KEY_EXCHANGE_ECDH_ECDSA_ENABLED) || \
943 defined(MBEDTLS_KEY_EXCHANGE_PSK_ENABLED) || \
944 defined(MBEDTLS_KEY_EXCHANGE_DHE_PSK_ENABLED) || \
945 defined(MBEDTLS_KEY_EXCHANGE_RSA_PSK_ENABLED) || \
946 defined(MBEDTLS_KEY_EXCHANGE_ECDHE_PSK_ENABLED) || \
947 defined(MBEDTLS_KEY_EXCHANGE_ECJPAKE_ENABLED) )
948#error "One or more versions of the TLS protocol are enabled " \
949 "but no key exchange methods defined with MBEDTLS_KEY_EXCHANGE_xxxx"
950#endif
951
Xiaokang Qian95a07302022-10-25 02:56:00 +0000952#if defined(MBEDTLS_SSL_EARLY_DATA) && \
Xiaokang Qian402bb1e2022-11-10 10:38:17 +0000953 ( !defined(MBEDTLS_SSL_SESSION_TICKETS) || \
954 ( !defined(MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_PSK_ENABLED) && \
955 !defined(MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_PSK_EPHEMERAL_ENABLED) ) )
Xiaokang Qian95a07302022-10-25 02:56:00 +0000956#error "MBEDTLS_SSL_EARLY_DATA defined, but not all prerequisites"
957#endif
958
Jerry Yu16f68532022-11-05 10:50:06 +0800959#if defined(MBEDTLS_SSL_EARLY_DATA) && defined(MBEDTLS_SSL_SRV_C) && \
Tom Cosgrove3b4471e2023-09-14 12:59:50 +0100960 defined(MBEDTLS_SSL_MAX_EARLY_DATA_SIZE) && \
961 ((MBEDTLS_SSL_MAX_EARLY_DATA_SIZE < 0) || \
962 (MBEDTLS_SSL_MAX_EARLY_DATA_SIZE > UINT32_MAX))
963#error "MBEDTLS_SSL_MAX_EARLY_DATA_SIZE must be in the range(0..UINT32_MAX)"
Jerry Yu16f68532022-11-05 10:50:06 +0800964#endif
965
Manuel Pégourié-Gonnard5a8d56d2015-05-13 10:10:00 +0200966#if defined(MBEDTLS_SSL_PROTO_DTLS) && \
Manuel Pégourié-Gonnard5a8d56d2015-05-13 10:10:00 +0200967 !defined(MBEDTLS_SSL_PROTO_TLS1_2)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200968#error "MBEDTLS_SSL_PROTO_DTLS defined, but not all prerequisites"
Manuel Pégourié-Gonnard0b1ff292014-02-06 13:04:16 +0100969#endif
970
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200971#if defined(MBEDTLS_SSL_CLI_C) && !defined(MBEDTLS_SSL_TLS_C)
972#error "MBEDTLS_SSL_CLI_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200973#endif
974
Valerio Settia4bb0fa2023-01-03 15:36:25 +0100975#if defined(MBEDTLS_SSL_ASYNC_PRIVATE) && !defined(MBEDTLS_X509_CRT_PARSE_C)
976#error "MBEDTLS_SSL_ASYNC_PRIVATE defined, but not all prerequisites"
977#endif
978
Valerio Settid531dab2023-10-27 11:49:22 +0200979#if defined(MBEDTLS_SSL_TLS_C) && !(defined(MBEDTLS_CIPHER_C) || \
980 defined(MBEDTLS_USE_PSA_CRYPTO))
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200981#error "MBEDTLS_SSL_TLS_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200982#endif
983
Manuel Pégourié-Gonnarda31ddb92023-03-22 00:13:50 +0100984/* TLS 1.2 and 1.3 require SHA-256 or SHA-384 (running handshake hash) */
985#if defined(MBEDTLS_SSL_TLS_C)
986#if defined(MBEDTLS_USE_PSA_CRYPTO)
987#if !(defined(PSA_WANT_ALG_SHA_256) || defined(PSA_WANT_ALG_SHA_384))
Manuel Pégourié-Gonnard70a1b6d2023-03-24 10:30:40 +0100988#error "MBEDTLS_SSL_TLS_C defined, but not all prerequisites"
Manuel Pégourié-Gonnarda31ddb92023-03-22 00:13:50 +0100989#endif
990#else /* MBEDTLS_USE_PSA_CRYPTO */
991#if !defined(MBEDTLS_MD_C) || \
992 !(defined(MBEDTLS_MD_HAVE_SHA256) || defined(MBEDTLS_MD_HAVE_SHA384))
Manuel Pégourié-Gonnard70a1b6d2023-03-24 10:30:40 +0100993#error "MBEDTLS_SSL_TLS_C defined, but not all prerequisites"
Manuel Pégourié-Gonnarda31ddb92023-03-22 00:13:50 +0100994#endif
995#endif /* MBEDTLS_USE_PSA_CRYPTO */
996#endif /* MBEDTLS_SSL_TLS_C */
997
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200998#if defined(MBEDTLS_SSL_SRV_C) && !defined(MBEDTLS_SSL_TLS_C)
999#error "MBEDTLS_SSL_SRV_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001000#endif
1001
Jerry Yue0a64122021-12-23 11:06:26 +08001002#if defined(MBEDTLS_SSL_TLS_C) && \
1003 !( defined(MBEDTLS_SSL_PROTO_TLS1_2) || defined(MBEDTLS_SSL_PROTO_TLS1_3) )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001004#error "MBEDTLS_SSL_TLS_C defined, but no protocols are active"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001005#endif
1006
Manuel Pégourié-Gonnarde057d3b2015-05-20 10:59:43 +02001007#if defined(MBEDTLS_SSL_DTLS_HELLO_VERIFY) && !defined(MBEDTLS_SSL_PROTO_DTLS)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001008#error "MBEDTLS_SSL_DTLS_HELLO_VERIFY defined, but not all prerequisites"
Manuel Pégourié-Gonnard82202f02014-07-23 00:28:58 +02001009#endif
1010
Manuel Pégourié-Gonnard62c74bb2015-09-08 17:50:29 +02001011#if defined(MBEDTLS_SSL_DTLS_CLIENT_PORT_REUSE) && \
Manuel Pégourié-Gonnardddfe5d22015-09-09 12:46:16 +02001012 !defined(MBEDTLS_SSL_DTLS_HELLO_VERIFY)
Manuel Pégourié-Gonnard62c74bb2015-09-08 17:50:29 +02001013#error "MBEDTLS_SSL_DTLS_CLIENT_PORT_REUSE defined, but not all prerequisites"
1014#endif
1015
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001016#if defined(MBEDTLS_SSL_DTLS_ANTI_REPLAY) && \
1017 ( !defined(MBEDTLS_SSL_TLS_C) || !defined(MBEDTLS_SSL_PROTO_DTLS) )
1018#error "MBEDTLS_SSL_DTLS_ANTI_REPLAY defined, but not all prerequisites"
Manuel Pégourié-Gonnard8464a462014-09-24 14:05:32 +02001019#endif
1020
Gilles Peskined3d02902020-03-04 21:35:27 +01001021#if defined(MBEDTLS_SSL_DTLS_CONNECTION_ID) && \
1022 ( !defined(MBEDTLS_SSL_TLS_C) || !defined(MBEDTLS_SSL_PROTO_DTLS) )
1023#error "MBEDTLS_SSL_DTLS_CONNECTION_ID defined, but not all prerequisites"
1024#endif
1025
1026#if defined(MBEDTLS_SSL_DTLS_CONNECTION_ID) && \
1027 defined(MBEDTLS_SSL_CID_IN_LEN_MAX) && \
1028 MBEDTLS_SSL_CID_IN_LEN_MAX > 255
1029#error "MBEDTLS_SSL_CID_IN_LEN_MAX too large (max 255)"
1030#endif
1031
1032#if defined(MBEDTLS_SSL_DTLS_CONNECTION_ID) && \
1033 defined(MBEDTLS_SSL_CID_OUT_LEN_MAX) && \
1034 MBEDTLS_SSL_CID_OUT_LEN_MAX > 255
1035#error "MBEDTLS_SSL_CID_OUT_LEN_MAX too large (max 255)"
1036#endif
1037
Hannes Tschofenig88e55662022-11-23 10:14:54 +01001038#if defined(MBEDTLS_SSL_DTLS_CONNECTION_ID_COMPAT) && \
1039 !defined(MBEDTLS_SSL_DTLS_CONNECTION_ID)
Tom Cosgrove1797b052022-12-04 17:19:59 +00001040#error "MBEDTLS_SSL_DTLS_CONNECTION_ID_COMPAT defined, but not all prerequisites"
Hannes Tschofenigfd6cca42021-10-12 09:22:33 +02001041#endif
1042
Hannes Tschofenigb2e66152022-11-23 10:53:44 +01001043#if defined(MBEDTLS_SSL_DTLS_CONNECTION_ID_COMPAT) && MBEDTLS_SSL_DTLS_CONNECTION_ID_COMPAT != 0
1044#if defined(MBEDTLS_DEPRECATED_REMOVED)
1045#error "MBEDTLS_SSL_DTLS_CONNECTION_ID_COMPAT is deprecated and will be removed in a future version of Mbed TLS"
1046#elif defined(MBEDTLS_DEPRECATED_WARNING)
1047#warning "MBEDTLS_SSL_DTLS_CONNECTION_ID_COMPAT is deprecated and will be removed in a future version of Mbed TLS"
1048#endif
1049#endif /* MBEDTLS_SSL_DTLS_CONNECTION_ID_COMPAT && MBEDTLS_SSL_DTLS_CONNECTION_ID_COMPAT != 0 */
Hannes Tschofenigfd6cca42021-10-12 09:22:33 +02001050
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001051#if defined(MBEDTLS_SSL_ENCRYPT_THEN_MAC) && \
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001052 !defined(MBEDTLS_SSL_PROTO_TLS1_2)
Shaun Case8b0ecbc2021-12-20 21:14:10 -08001053#error "MBEDTLS_SSL_ENCRYPT_THEN_MAC defined, but not all prerequisites"
Manuel Pégourié-Gonnard699cafa2014-10-27 13:57:03 +01001054#endif
1055
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001056#if defined(MBEDTLS_SSL_EXTENDED_MASTER_SECRET) && \
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001057 !defined(MBEDTLS_SSL_PROTO_TLS1_2)
Shaun Case8b0ecbc2021-12-20 21:14:10 -08001058#error "MBEDTLS_SSL_EXTENDED_MASTER_SECRET defined, but not all prerequisites"
Manuel Pégourié-Gonnard769c6b62014-10-28 14:13:55 +01001059#endif
1060
Gilles Peskine7d3186d2022-08-12 22:43:18 +02001061#if defined(MBEDTLS_SSL_RENEGOTIATION) && \
1062 !defined(MBEDTLS_SSL_PROTO_TLS1_2)
1063#error "MBEDTLS_SSL_RENEGOTIATION defined, but not all prerequisites"
1064#endif
1065
Przemek Stekiela09f8352022-05-12 09:34:28 +02001066#if defined(MBEDTLS_SSL_TICKET_C) && ( !defined(MBEDTLS_CIPHER_C) && \
1067 !defined(MBEDTLS_USE_PSA_CRYPTO) )
1068#error "MBEDTLS_SSL_TICKET_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001069#endif
1070
Przemek Stekiel52a428b2022-10-10 08:47:13 +02001071#if defined(MBEDTLS_SSL_TICKET_C) && \
Valerio Setti193e3832023-10-13 09:37:24 +02001072 !( defined(MBEDTLS_SSL_HAVE_CCM) || defined(MBEDTLS_SSL_HAVE_GCM) || \
Valerio Settie5707042023-10-11 11:54:42 +02001073 defined(MBEDTLS_SSL_HAVE_CHACHAPOLY) )
Przemek Stekield61a4d32022-10-11 09:40:40 +02001074#error "MBEDTLS_SSL_TICKET_C defined, but not all prerequisites"
Przemek Stekiel52a428b2022-10-10 08:47:13 +02001075#endif
1076
Jerry Yu9750f812022-07-20 11:04:50 +08001077#if defined(MBEDTLS_SSL_TLS1_3_TICKET_NONCE_LENGTH) && \
1078 MBEDTLS_SSL_TLS1_3_TICKET_NONCE_LENGTH >= 256
1079#error "MBEDTLS_SSL_TLS1_3_TICKET_NONCE_LENGTH must be less than 256"
Jerry Yu08aed4d2022-07-20 10:36:12 +08001080#endif
1081
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001082#if defined(MBEDTLS_SSL_SERVER_NAME_INDICATION) && \
1083 !defined(MBEDTLS_X509_CRT_PARSE_C)
1084#error "MBEDTLS_SSL_SERVER_NAME_INDICATION defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001085#endif
1086
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001087#if defined(MBEDTLS_THREADING_PTHREAD)
1088#if !defined(MBEDTLS_THREADING_C) || defined(MBEDTLS_THREADING_IMPL)
1089#error "MBEDTLS_THREADING_PTHREAD defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001090#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001091#define MBEDTLS_THREADING_IMPL
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001092#endif
1093
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001094#if defined(MBEDTLS_THREADING_ALT)
1095#if !defined(MBEDTLS_THREADING_C) || defined(MBEDTLS_THREADING_IMPL)
1096#error "MBEDTLS_THREADING_ALT defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001097#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001098#define MBEDTLS_THREADING_IMPL
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001099#endif
1100
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001101#if defined(MBEDTLS_THREADING_C) && !defined(MBEDTLS_THREADING_IMPL)
1102#error "MBEDTLS_THREADING_C defined, single threading implementation required"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001103#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001104#undef MBEDTLS_THREADING_IMPL
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001105
Manuel Pégourié-Gonnardaeefa492018-10-22 12:14:52 +02001106#if defined(MBEDTLS_USE_PSA_CRYPTO) && !defined(MBEDTLS_PSA_CRYPTO_C)
1107#error "MBEDTLS_USE_PSA_CRYPTO defined, but not all prerequisites"
1108#endif
1109
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001110#if defined(MBEDTLS_VERSION_FEATURES) && !defined(MBEDTLS_VERSION_C)
1111#error "MBEDTLS_VERSION_FEATURES defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001112#endif
1113
Valerio Settic6aeb0d2023-07-27 10:10:28 +02001114#if defined(MBEDTLS_X509_USE_C) && \
1115 (!defined(MBEDTLS_OID_C) || !defined(MBEDTLS_ASN1_PARSE_C) || \
Przemek Stekiel10836a02022-08-19 08:45:34 +02001116 !defined(MBEDTLS_PK_PARSE_C) || \
Przemek Stekiel278b6672022-08-03 09:50:38 +02001117 ( !defined(MBEDTLS_MD_C) && !defined(MBEDTLS_USE_PSA_CRYPTO) ) )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001118#error "MBEDTLS_X509_USE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001119#endif
1120
Valerio Settic6aeb0d2023-07-27 10:10:28 +02001121#if defined(MBEDTLS_X509_CREATE_C) && \
1122 (!defined(MBEDTLS_OID_C) || !defined(MBEDTLS_ASN1_WRITE_C) || \
Przemek Stekiel10836a02022-08-19 08:45:34 +02001123 !defined(MBEDTLS_PK_PARSE_C) || \
Przemek Stekiel278b6672022-08-03 09:50:38 +02001124 ( !defined(MBEDTLS_MD_C) && !defined(MBEDTLS_USE_PSA_CRYPTO) ) )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001125#error "MBEDTLS_X509_CREATE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001126#endif
1127
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001128#if defined(MBEDTLS_X509_CRT_PARSE_C) && ( !defined(MBEDTLS_X509_USE_C) )
1129#error "MBEDTLS_X509_CRT_PARSE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001130#endif
1131
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001132#if defined(MBEDTLS_X509_CRL_PARSE_C) && ( !defined(MBEDTLS_X509_USE_C) )
1133#error "MBEDTLS_X509_CRL_PARSE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001134#endif
1135
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001136#if defined(MBEDTLS_X509_CSR_PARSE_C) && ( !defined(MBEDTLS_X509_USE_C) )
1137#error "MBEDTLS_X509_CSR_PARSE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001138#endif
1139
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001140#if defined(MBEDTLS_X509_CRT_WRITE_C) && ( !defined(MBEDTLS_X509_CREATE_C) )
1141#error "MBEDTLS_X509_CRT_WRITE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001142#endif
1143
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001144#if defined(MBEDTLS_X509_CSR_WRITE_C) && ( !defined(MBEDTLS_X509_CREATE_C) )
1145#error "MBEDTLS_X509_CSR_WRITE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001146#endif
1147
Valerio Settia4bb0fa2023-01-03 15:36:25 +01001148#if defined(MBEDTLS_X509_TRUSTED_CERTIFICATE_CALLBACK) && \
Valerio Setti8e45cdd2023-01-05 09:32:29 +01001149 ( !defined(MBEDTLS_X509_CRT_PARSE_C) )
Valerio Settia4bb0fa2023-01-03 15:36:25 +01001150#error "MBEDTLS_X509_TRUSTED_CERTIFICATE_CALLBACK defined, but not all prerequisites"
1151#endif
1152
Andres Amaya Garciad7fce002017-07-20 11:49:32 +01001153#if defined(MBEDTLS_HAVE_INT32) && defined(MBEDTLS_HAVE_INT64)
1154#error "MBEDTLS_HAVE_INT32 and MBEDTLS_HAVE_INT64 cannot be defined simultaneously"
1155#endif /* MBEDTLS_HAVE_INT32 && MBEDTLS_HAVE_INT64 */
1156
Andres Amaya Garcia93db11a2017-07-20 12:11:19 +01001157#if ( defined(MBEDTLS_HAVE_INT32) || defined(MBEDTLS_HAVE_INT64) ) && \
1158 defined(MBEDTLS_HAVE_ASM)
Andres Amaya Garciab39467d2017-07-20 13:21:15 +01001159#error "MBEDTLS_HAVE_INT32/MBEDTLS_HAVE_INT64 and MBEDTLS_HAVE_ASM cannot be defined simultaneously"
Andres Amaya Garciad7fce002017-07-20 11:49:32 +01001160#endif /* (MBEDTLS_HAVE_INT32 || MBEDTLS_HAVE_INT64) && MBEDTLS_HAVE_ASM */
1161
Ron Eldor3adb9922017-12-21 10:15:08 +02001162#if defined(MBEDTLS_SSL_DTLS_SRTP) && ( !defined(MBEDTLS_SSL_PROTO_DTLS) )
1163#error "MBEDTLS_SSL_DTLS_SRTP defined, but not all prerequisites"
1164#endif
1165
Andrzej Kurek557289b2020-10-21 15:12:39 +02001166#if defined(MBEDTLS_SSL_VARIABLE_BUFFER_LENGTH) && ( !defined(MBEDTLS_SSL_MAX_FRAGMENT_LENGTH) )
1167#error "MBEDTLS_SSL_VARIABLE_BUFFER_LENGTH defined, but not all prerequisites"
1168#endif
1169
Jan Bruckner151f6422023-02-10 12:45:19 +01001170#if defined(MBEDTLS_SSL_RECORD_SIZE_LIMIT) && ( !defined(MBEDTLS_SSL_PROTO_TLS1_3) )
1171#error "MBEDTLS_SSL_RECORD_SIZE_LIMIT defined, but not all prerequisites"
1172#endif
1173
Valerio Settie7bac172023-10-02 16:03:42 +02001174#if defined(MBEDTLS_SSL_CONTEXT_SERIALIZATION) && \
Valerio Setti193e3832023-10-13 09:37:24 +02001175 !( defined(MBEDTLS_SSL_HAVE_CCM) || defined(MBEDTLS_SSL_HAVE_GCM) || \
Valerio Settie5707042023-10-11 11:54:42 +02001176 defined(MBEDTLS_SSL_HAVE_CHACHAPOLY) )
Przemek Stekield582a012022-09-28 07:59:01 +02001177#error "MBEDTLS_SSL_CONTEXT_SERIALIZATION defined, but not all prerequisites"
1178#endif
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001179
1180/* Reject attempts to enable options that have been removed and that could
1181 * cause a build to succeed but with features removed. */
1182
1183#if defined(MBEDTLS_HAVEGE_C) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001184#error "MBEDTLS_HAVEGE_C was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/2599"
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001185#endif
1186
1187#if defined(MBEDTLS_SSL_HW_RECORD_ACCEL) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001188#error "MBEDTLS_SSL_HW_RECORD_ACCEL was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4031"
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001189#endif
1190
1191#if defined(MBEDTLS_SSL_PROTO_SSL3) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001192#error "MBEDTLS_SSL_PROTO_SSL3 (SSL v3.0 support) was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4031"
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001193#endif
1194
1195#if defined(MBEDTLS_SSL_SRV_SUPPORT_SSLV2_CLIENT_HELLO) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001196#error "MBEDTLS_SSL_SRV_SUPPORT_SSLV2_CLIENT_HELLO (SSL v2 ClientHello support) was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4031"
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001197#endif
1198
1199#if defined(MBEDTLS_SSL_TRUNCATED_HMAC_COMPAT) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001200#error "MBEDTLS_SSL_TRUNCATED_HMAC_COMPAT (compatibility with the buggy implementation of truncated HMAC in Mbed TLS up to 2.7) was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4031"
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001201#endif
1202
1203#if defined(MBEDTLS_TLS_DEFAULT_ALLOW_SHA1_IN_CERTIFICATES) //no-check-names
Gilles Peskinecc26e3b2021-04-21 19:01:59 +02001204#error "MBEDTLS_TLS_DEFAULT_ALLOW_SHA1_IN_CERTIFICATES was removed in Mbed TLS 3.0. See the ChangeLog entry if you really need SHA-1-signed certificates."
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001205#endif
1206
1207#if defined(MBEDTLS_ZLIB_SUPPORT) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001208#error "MBEDTLS_ZLIB_SUPPORT was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4031"
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001209#endif
1210
TRodziewiczcc707412021-05-14 15:08:04 +02001211#if defined(MBEDTLS_CHECK_PARAMS) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001212#error "MBEDTLS_CHECK_PARAMS was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4313"
TRodziewiczcc707412021-05-14 15:08:04 +02001213#endif
1214
TRodziewicz4e57f4c2021-05-31 12:58:25 +02001215#if defined(MBEDTLS_SSL_CID_PADDING_GRANULARITY) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001216#error "MBEDTLS_SSL_CID_PADDING_GRANULARITY was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4335"
TRodziewicz4e57f4c2021-05-31 12:58:25 +02001217#endif
1218
1219#if defined(MBEDTLS_SSL_TLS1_3_PADDING_GRANULARITY) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001220#error "MBEDTLS_SSL_TLS1_3_PADDING_GRANULARITY was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4335"
TRodziewicz4e57f4c2021-05-31 12:58:25 +02001221#endif
1222
Thomas Daubney4a7010d2021-06-15 12:54:14 +01001223#if defined(MBEDTLS_SSL_TRUNCATED_HMAC) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001224#error "MBEDTLS_SSL_TRUNCATED_HMAC was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4341"
Thomas Daubney4a7010d2021-06-15 12:54:14 +01001225#endif
1226
Nayna Jainc9deb182020-11-16 19:03:12 +00001227#if defined(MBEDTLS_PKCS7_C) && ( ( !defined(MBEDTLS_ASN1_PARSE_C) ) || \
1228 ( !defined(MBEDTLS_OID_C) ) || ( !defined(MBEDTLS_PK_PARSE_C) ) || \
Valerio Settic6aeb0d2023-07-27 10:10:28 +02001229 ( !defined(MBEDTLS_X509_CRT_PARSE_C) ) || \
1230 ( !defined(MBEDTLS_X509_CRL_PARSE_C) ) || \
Nick Child89e82e12022-11-09 10:36:10 -06001231 ( !defined(MBEDTLS_MD_C) ) )
Nayna Jainc9deb182020-11-16 19:03:12 +00001232#error "MBEDTLS_PKCS7_C is defined, but not all prerequisites"
1233#endif
1234
Manuel Pégourié-Gonnard45bcb6a2023-03-10 11:40:48 +01001235/* Undefine helper symbols */
Valerio Setti82b484e2023-03-16 08:21:44 +01001236#undef MBEDTLS_PK_HAVE_JPAKE
Manuel Pégourié-Gonnardbb21c5a2023-03-21 23:53:57 +01001237#undef MBEDTLS_MD_HAVE_SHA256
1238#undef MBEDTLS_MD_HAVE_SHA384
1239#undef MBEDTLS_MD_HAVE_SHA512
Valerio Settiee9fa462023-03-27 11:28:49 +02001240#undef MBEDTLS_PK_HAVE_CURVE_SECP256R1
Manuel Pégourié-Gonnard45bcb6a2023-03-10 11:40:48 +01001241
Manuel Pégourié-Gonnardf78e4de2015-05-29 10:52:14 +02001242/*
1243 * Avoid warning from -pedantic. This is a convenient place for this
1244 * workaround since this is included by every single file before the
Antonin Décimo36e89b52019-01-23 15:24:37 +01001245 * #if defined(MBEDTLS_xxx_C) that results in empty translation units.
Manuel Pégourié-Gonnardf78e4de2015-05-29 10:52:14 +02001246 */
1247typedef int mbedtls_iso_c_forbids_empty_translation_units;
1248
David Horstmann1b847812022-11-14 15:40:46 +00001249/* *INDENT-ON* */
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001250#endif /* MBEDTLS_CHECK_CONFIG_H */