blob: d36db4a9ecb7d2d7736c4328b8daceb737d8fc17 [file] [log] [blame]
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001/**
2 * \file check_config.h
3 *
4 * \brief Consistency checks for configuration options
Darryl Greena40a1012018-01-05 15:33:17 +00005 */
6/*
Bence Szépkúti1e148272020-08-07 13:07:28 +02007 * Copyright The Mbed TLS Contributors
Manuel Pégourié-Gonnard37ff1402015-09-04 14:21:07 +02008 * SPDX-License-Identifier: Apache-2.0
9 *
10 * Licensed under the Apache License, Version 2.0 (the "License"); you may
11 * not use this file except in compliance with the License.
12 * You may obtain a copy of the License at
13 *
14 * http://www.apache.org/licenses/LICENSE-2.0
15 *
16 * Unless required by applicable law or agreed to in writing, software
17 * distributed under the License is distributed on an "AS IS" BASIS, WITHOUT
18 * WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
19 * See the License for the specific language governing permissions and
20 * limitations under the License.
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +020021 */
22
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020023#ifndef MBEDTLS_CHECK_CONFIG_H
24#define MBEDTLS_CHECK_CONFIG_H
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +020025
Manuel Pégourié-Gonnardd14acbc2015-05-29 11:26:37 +020026/*
27 * We assume CHAR_BIT is 8 in many places. In practice, this is true on our
28 * target platforms, so not an issue, but let's just be extra sure.
29 */
30#include <limits.h>
31#if CHAR_BIT != 8
32#error "mbed TLS requires a platform with 8-bit chars"
33#endif
34
Manuel Pégourié-Gonnard9db28872015-06-26 10:52:01 +020035#if defined(_WIN32)
36#if !defined(MBEDTLS_PLATFORM_C)
Manuel Pégourié-Gonnard6c0c8e02015-06-22 10:23:34 +020037#error "MBEDTLS_PLATFORM_C is required on Windows"
38#endif
39
Bence Szépkútibb0cfeb2021-05-28 09:42:25 +020040/* Fix the config here. Not convenient to put an #ifdef _WIN32 in mbedtls_config.h as
Gilles Peskine5d46f6a2019-07-27 23:52:53 +020041 * it would confuse config.py. */
Manuel Pégourié-Gonnard9db28872015-06-26 10:52:01 +020042#if !defined(MBEDTLS_PLATFORM_SNPRINTF_ALT) && \
43 !defined(MBEDTLS_PLATFORM_SNPRINTF_MACRO)
44#define MBEDTLS_PLATFORM_SNPRINTF_ALT
45#endif
k-stachowiak6b5ef482019-01-07 16:53:29 +010046
47#if !defined(MBEDTLS_PLATFORM_VSNPRINTF_ALT) && \
48 !defined(MBEDTLS_PLATFORM_VSNPRINTF_MACRO)
49#define MBEDTLS_PLATFORM_VSNPRINTF_ALT
50#endif
Manuel Pégourié-Gonnard9db28872015-06-26 10:52:01 +020051#endif /* _WIN32 */
52
Jaeden Amero197496a2021-06-08 18:31:27 +010053#if defined(TARGET_LIKE_MBED) && defined(MBEDTLS_NET_C)
54#error "The NET module is not available for mbed OS - please use the network functions provided by Mbed OS"
Manuel Pégourié-Gonnard63e7eba2015-07-28 14:17:48 +020055#endif
56
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020057#if defined(MBEDTLS_DEPRECATED_WARNING) && \
Manuel Pégourié-Gonnard757ca002015-03-23 15:24:07 +010058 !defined(__GNUC__) && !defined(__clang__)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020059#error "MBEDTLS_DEPRECATED_WARNING only works with GCC and Clang"
Manuel Pégourié-Gonnardc70581c2015-03-23 13:58:27 +010060#endif
61
Manuel Pégourié-Gonnard60c793b2015-06-18 20:52:58 +020062#if defined(MBEDTLS_HAVE_TIME_DATE) && !defined(MBEDTLS_HAVE_TIME)
63#error "MBEDTLS_HAVE_TIME_DATE without MBEDTLS_HAVE_TIME does not make sense"
64#endif
65
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020066#if defined(MBEDTLS_AESNI_C) && !defined(MBEDTLS_HAVE_ASM)
67#error "MBEDTLS_AESNI_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +020068#endif
69
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020070#if defined(MBEDTLS_CTR_DRBG_C) && !defined(MBEDTLS_AES_C)
71#error "MBEDTLS_CTR_DRBG_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +020072#endif
73
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020074#if defined(MBEDTLS_DHM_C) && !defined(MBEDTLS_BIGNUM_C)
75#error "MBEDTLS_DHM_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +020076#endif
77
Brian Murray53e23b62016-09-13 14:00:15 -070078#if defined(MBEDTLS_CMAC_C) && \
Przemek Stekielea805b42022-05-02 10:30:03 +020079 ( !defined(MBEDTLS_CIPHER_C ) || ( !defined(MBEDTLS_AES_C) && !defined(MBEDTLS_DES_C) ) )
Brian Murray53e23b62016-09-13 14:00:15 -070080#error "MBEDTLS_CMAC_C defined, but not all prerequisites"
81#endif
82
Ron Eldor466a57f2018-05-03 16:54:28 +030083#if defined(MBEDTLS_NIST_KW_C) && \
84 ( !defined(MBEDTLS_AES_C) || !defined(MBEDTLS_CIPHER_C) )
Przemek Stekiela09f8352022-05-12 09:34:28 +020085#error "MBEDTLS_NIST_KW_C defined, but not all prerequisites"
Ron Eldor466a57f2018-05-03 16:54:28 +030086#endif
87
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020088#if defined(MBEDTLS_ECDH_C) && !defined(MBEDTLS_ECP_C)
89#error "MBEDTLS_ECDH_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +020090#endif
91
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020092#if defined(MBEDTLS_ECDSA_C) && \
93 ( !defined(MBEDTLS_ECP_C) || \
Gilles Peskine799e5762018-09-14 17:34:00 +020094 !( defined(MBEDTLS_ECP_DP_SECP192R1_ENABLED) || \
95 defined(MBEDTLS_ECP_DP_SECP224R1_ENABLED) || \
96 defined(MBEDTLS_ECP_DP_SECP256R1_ENABLED) || \
97 defined(MBEDTLS_ECP_DP_SECP384R1_ENABLED) || \
98 defined(MBEDTLS_ECP_DP_SECP521R1_ENABLED) || \
99 defined(MBEDTLS_ECP_DP_SECP192K1_ENABLED) || \
100 defined(MBEDTLS_ECP_DP_SECP224K1_ENABLED) || \
101 defined(MBEDTLS_ECP_DP_SECP256K1_ENABLED) || \
102 defined(MBEDTLS_ECP_DP_BP256R1_ENABLED) || \
103 defined(MBEDTLS_ECP_DP_BP384R1_ENABLED) || \
104 defined(MBEDTLS_ECP_DP_BP512R1_ENABLED) ) || \
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200105 !defined(MBEDTLS_ASN1_PARSE_C) || \
106 !defined(MBEDTLS_ASN1_WRITE_C) )
107#error "MBEDTLS_ECDSA_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200108#endif
109
Manuel Pégourié-Gonnard4d8685b2015-08-05 15:44:42 +0200110#if defined(MBEDTLS_ECJPAKE_C) && \
Neil Armstrongecaba1c2022-08-11 10:47:08 +0200111 ( !defined(MBEDTLS_ECP_C) || \
112 !( defined(MBEDTLS_MD_C) || defined(MBEDTLS_PSA_CRYPTO_C) ) )
Manuel Pégourié-Gonnard4d8685b2015-08-05 15:44:42 +0200113#error "MBEDTLS_ECJPAKE_C defined, but not all prerequisites"
114#endif
115
Ron Eldor5ed8c1e2018-11-05 14:04:26 +0200116#if defined(MBEDTLS_ECP_RESTARTABLE) && \
Hanno Becker85fd9132019-02-22 12:50:35 +0000117 ( defined(MBEDTLS_USE_PSA_CRYPTO) || \
Hanno Becker1ce51e42019-02-22 10:25:47 +0000118 defined(MBEDTLS_ECDH_COMPUTE_SHARED_ALT) || \
Ron Eldor5ed8c1e2018-11-05 14:04:26 +0200119 defined(MBEDTLS_ECDH_GEN_PUBLIC_ALT) || \
120 defined(MBEDTLS_ECDSA_SIGN_ALT) || \
121 defined(MBEDTLS_ECDSA_VERIFY_ALT) || \
122 defined(MBEDTLS_ECDSA_GENKEY_ALT) || \
Andrzej Kurekc470b6b2019-01-31 08:20:20 -0500123 defined(MBEDTLS_ECP_INTERNAL_ALT) || \
Ron Eldor5ed8c1e2018-11-05 14:04:26 +0200124 defined(MBEDTLS_ECP_ALT) )
Hanno Becker1ce51e42019-02-22 10:25:47 +0000125#error "MBEDTLS_ECP_RESTARTABLE defined, but it cannot coexist with an alternative or PSA-based ECP implementation"
Ron Eldor5ed8c1e2018-11-05 14:04:26 +0200126#endif
127
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200128#if defined(MBEDTLS_ECDSA_DETERMINISTIC) && !defined(MBEDTLS_HMAC_DRBG_C)
129#error "MBEDTLS_ECDSA_DETERMINISTIC defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200130#endif
131
k-stachowiak5dbe7ca2019-05-31 20:13:58 +0200132#if defined(MBEDTLS_ECP_C) && ( !defined(MBEDTLS_BIGNUM_C) || ( \
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200133 !defined(MBEDTLS_ECP_DP_SECP192R1_ENABLED) && \
134 !defined(MBEDTLS_ECP_DP_SECP224R1_ENABLED) && \
135 !defined(MBEDTLS_ECP_DP_SECP256R1_ENABLED) && \
136 !defined(MBEDTLS_ECP_DP_SECP384R1_ENABLED) && \
137 !defined(MBEDTLS_ECP_DP_SECP521R1_ENABLED) && \
138 !defined(MBEDTLS_ECP_DP_BP256R1_ENABLED) && \
139 !defined(MBEDTLS_ECP_DP_BP384R1_ENABLED) && \
140 !defined(MBEDTLS_ECP_DP_BP512R1_ENABLED) && \
141 !defined(MBEDTLS_ECP_DP_SECP192K1_ENABLED) && \
142 !defined(MBEDTLS_ECP_DP_SECP224K1_ENABLED) && \
k-stachowiak5dbe7ca2019-05-31 20:13:58 +0200143 !defined(MBEDTLS_ECP_DP_SECP256K1_ENABLED) && \
144 !defined(MBEDTLS_ECP_DP_CURVE25519_ENABLED) && \
145 !defined(MBEDTLS_ECP_DP_CURVE448_ENABLED) ) )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200146#error "MBEDTLS_ECP_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200147#endif
148
Andrzej Kurekc470b6b2019-01-31 08:20:20 -0500149#if defined(MBEDTLS_PK_PARSE_C) && !defined(MBEDTLS_ASN1_PARSE_C)
Shaun Case8b0ecbc2021-12-20 21:14:10 -0800150#error "MBEDTLS_PK_PARSE_C defined, but not all prerequisites"
Andrzej Kurekc470b6b2019-01-31 08:20:20 -0500151#endif
152
Przemek Stekielea805b42022-05-02 10:30:03 +0200153#if defined(MBEDTLS_PKCS12_C) && !defined(MBEDTLS_CIPHER_C)
bootstrap-prime6dbbf442022-05-17 19:30:44 -0400154#error "MBEDTLS_PKCS12_C defined, but not all prerequisites"
Przemek Stekielea805b42022-05-02 10:30:03 +0200155#endif
156
Andrzej Kurek345a92b2022-08-31 15:00:31 -0400157#if defined(MBEDTLS_PKCS5_C) && \
158 ( !( defined(MBEDTLS_MD_C) || defined(MBEDTLS_PSA_CRYPTO_C) ) || \
159 !defined(MBEDTLS_CIPHER_C) )
bootstrap-prime6dbbf442022-05-17 19:30:44 -0400160#error "MBEDTLS_PKCS5_C defined, but not all prerequisites"
Sebastian Bøe24e88012022-01-19 12:04:35 +0100161#endif
162
Andrzej Kurek7bd12c52022-08-24 10:47:10 -0400163#if defined(MBEDTLS_PKCS12_C) && \
164 !( defined(MBEDTLS_MD_C) || defined(MBEDTLS_PSA_CRYPTO_C) )
bootstrap-prime6dbbf442022-05-17 19:30:44 -0400165#error "MBEDTLS_PKCS12_C defined, but not all prerequisites"
Przemek Stekielbc3cfed2022-04-27 14:19:19 +0200166#endif
167
Manuel Pégourié-Gonnard077ba842022-07-27 10:42:31 +0200168#if defined(MBEDTLS_PKCS1_V21) && \
169 !( defined(MBEDTLS_MD_C) || defined(MBEDTLS_PSA_CRYPTO_C) )
bootstrap-prime6dbbf442022-05-17 19:30:44 -0400170#error "MBEDTLS_PKCS1_V21 defined, but not all prerequisites"
Przemek Stekielbc3cfed2022-04-27 14:19:19 +0200171#endif
172
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200173#if defined(MBEDTLS_ENTROPY_C) && (!defined(MBEDTLS_SHA512_C) && \
174 !defined(MBEDTLS_SHA256_C))
175#error "MBEDTLS_ENTROPY_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200176#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200177#if defined(MBEDTLS_ENTROPY_C) && defined(MBEDTLS_SHA512_C) && \
178 defined(MBEDTLS_CTR_DRBG_ENTROPY_LEN) && (MBEDTLS_CTR_DRBG_ENTROPY_LEN > 64)
179#error "MBEDTLS_CTR_DRBG_ENTROPY_LEN value too high"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200180#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200181#if defined(MBEDTLS_ENTROPY_C) && \
182 ( !defined(MBEDTLS_SHA512_C) || defined(MBEDTLS_ENTROPY_FORCE_SHA256) ) \
183 && defined(MBEDTLS_CTR_DRBG_ENTROPY_LEN) && (MBEDTLS_CTR_DRBG_ENTROPY_LEN > 32)
184#error "MBEDTLS_CTR_DRBG_ENTROPY_LEN value too high"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200185#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200186#if defined(MBEDTLS_ENTROPY_C) && \
187 defined(MBEDTLS_ENTROPY_FORCE_SHA256) && !defined(MBEDTLS_SHA256_C)
188#error "MBEDTLS_ENTROPY_FORCE_SHA256 defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200189#endif
190
Manuel Pégourié-Gonnard6240def2020-07-10 09:35:54 +0200191#if defined(__has_feature)
192#if __has_feature(memory_sanitizer)
193#define MBEDTLS_HAS_MEMSAN
194#endif
195#endif
196#if defined(MBEDTLS_TEST_CONSTANT_FLOW_MEMSAN) && !defined(MBEDTLS_HAS_MEMSAN)
197#error "MBEDTLS_TEST_CONSTANT_FLOW_MEMSAN requires building with MemorySanitizer"
198#endif
199#undef MBEDTLS_HAS_MEMSAN
200
Gilles Peskine19848002021-09-02 10:33:57 +0200201#if defined(MBEDTLS_CCM_C) && ( \
Gilles Peskine104f6de2021-09-09 20:39:47 +0200202 !defined(MBEDTLS_AES_C) && !defined(MBEDTLS_CAMELLIA_C) && !defined(MBEDTLS_ARIA_C) )
Gilles Peskine19848002021-09-02 10:33:57 +0200203#error "MBEDTLS_CCM_C defined, but not all prerequisites"
204#endif
205
206#if defined(MBEDTLS_CCM_C) && !defined(MBEDTLS_CIPHER_C)
Przemek Stekiela09f8352022-05-12 09:34:28 +0200207#error "MBEDTLS_CCM_C defined, but not all prerequisites"
Gilles Peskine19848002021-09-02 10:33:57 +0200208#endif
209
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200210#if defined(MBEDTLS_GCM_C) && ( \
Gilles Peskine104f6de2021-09-09 20:39:47 +0200211 !defined(MBEDTLS_AES_C) && !defined(MBEDTLS_CAMELLIA_C) && !defined(MBEDTLS_ARIA_C) )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200212#error "MBEDTLS_GCM_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200213#endif
214
Gilles Peskine19848002021-09-02 10:33:57 +0200215#if defined(MBEDTLS_GCM_C) && !defined(MBEDTLS_CIPHER_C)
Przemek Stekiela09f8352022-05-12 09:34:28 +0200216#error "MBEDTLS_GCM_C defined, but not all prerequisites"
Gilles Peskine19848002021-09-02 10:33:57 +0200217#endif
218
219#if defined(MBEDTLS_CHACHAPOLY_C) && !defined(MBEDTLS_CHACHA20_C)
220#error "MBEDTLS_CHACHAPOLY_C defined, but not all prerequisites"
221#endif
222
223#if defined(MBEDTLS_CHACHAPOLY_C) && !defined(MBEDTLS_POLY1305_C)
224#error "MBEDTLS_CHACHAPOLY_C defined, but not all prerequisites"
225#endif
226
Janos Follathc44ab972016-11-18 16:38:23 +0000227#if defined(MBEDTLS_ECP_RANDOMIZE_JAC_ALT) && !defined(MBEDTLS_ECP_INTERNAL_ALT)
Janos Follathb0697532016-08-18 12:38:46 +0100228#error "MBEDTLS_ECP_RANDOMIZE_JAC_ALT defined, but not all prerequisites"
229#endif
230
Janos Follathc44ab972016-11-18 16:38:23 +0000231#if defined(MBEDTLS_ECP_ADD_MIXED_ALT) && !defined(MBEDTLS_ECP_INTERNAL_ALT)
Janos Follathb0697532016-08-18 12:38:46 +0100232#error "MBEDTLS_ECP_ADD_MIXED_ALT defined, but not all prerequisites"
233#endif
234
Janos Follathc44ab972016-11-18 16:38:23 +0000235#if defined(MBEDTLS_ECP_DOUBLE_JAC_ALT) && !defined(MBEDTLS_ECP_INTERNAL_ALT)
Janos Follathb0697532016-08-18 12:38:46 +0100236#error "MBEDTLS_ECP_DOUBLE_JAC_ALT defined, but not all prerequisites"
237#endif
238
Janos Follathc44ab972016-11-18 16:38:23 +0000239#if defined(MBEDTLS_ECP_NORMALIZE_JAC_MANY_ALT) && !defined(MBEDTLS_ECP_INTERNAL_ALT)
Janos Follathb0697532016-08-18 12:38:46 +0100240#error "MBEDTLS_ECP_NORMALIZE_JAC_MANY_ALT defined, but not all prerequisites"
241#endif
242
Janos Follathc44ab972016-11-18 16:38:23 +0000243#if defined(MBEDTLS_ECP_NORMALIZE_JAC_ALT) && !defined(MBEDTLS_ECP_INTERNAL_ALT)
Janos Follathb0697532016-08-18 12:38:46 +0100244#error "MBEDTLS_ECP_NORMALIZE_JAC_ALT defined, but not all prerequisites"
245#endif
246
Janos Follathc44ab972016-11-18 16:38:23 +0000247#if defined(MBEDTLS_ECP_DOUBLE_ADD_MXZ_ALT) && !defined(MBEDTLS_ECP_INTERNAL_ALT)
Janos Follathb0697532016-08-18 12:38:46 +0100248#error "MBEDTLS_ECP_DOUBLE_ADD_MXZ_ALT defined, but not all prerequisites"
249#endif
250
Janos Follathc44ab972016-11-18 16:38:23 +0000251#if defined(MBEDTLS_ECP_RANDOMIZE_MXZ_ALT) && !defined(MBEDTLS_ECP_INTERNAL_ALT)
Janos Follathb0697532016-08-18 12:38:46 +0100252#error "MBEDTLS_ECP_RANDOMIZE_MXZ_ALT defined, but not all prerequisites"
253#endif
254
Janos Follathc44ab972016-11-18 16:38:23 +0000255#if defined(MBEDTLS_ECP_NORMALIZE_MXZ_ALT) && !defined(MBEDTLS_ECP_INTERNAL_ALT)
Janos Follathb0697532016-08-18 12:38:46 +0100256#error "MBEDTLS_ECP_NORMALIZE_MXZ_ALT defined, but not all prerequisites"
257#endif
258
Steven Cooremanb5873132021-01-21 13:59:17 +0100259#if defined(MBEDTLS_ECP_NO_FALLBACK) && !defined(MBEDTLS_ECP_INTERNAL_ALT)
260#error "MBEDTLS_ECP_NO_FALLBACK defined, but no alternative implementation enabled"
261#endif
262
Przemek Stekiel9408b702022-09-06 07:44:12 +0200263#if defined(MBEDTLS_HKDF_C) && !defined(MBEDTLS_MD_C)
Thomas Fossati656864b2016-07-17 08:51:22 +0100264#error "MBEDTLS_HKDF_C defined, but not all prerequisites"
265#endif
266
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200267#if defined(MBEDTLS_HMAC_DRBG_C) && !defined(MBEDTLS_MD_C)
268#error "MBEDTLS_HMAC_DRBG_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200269#endif
270
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200271#if defined(MBEDTLS_KEY_EXCHANGE_ECDH_ECDSA_ENABLED) && \
Gilles Peskine7ab66a62018-09-14 17:47:41 +0200272 ( !defined(MBEDTLS_ECDH_C) || !defined(MBEDTLS_ECDSA_C) || \
273 !defined(MBEDTLS_X509_CRT_PARSE_C) )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200274#error "MBEDTLS_KEY_EXCHANGE_ECDH_ECDSA_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200275#endif
276
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200277#if defined(MBEDTLS_KEY_EXCHANGE_ECDH_RSA_ENABLED) && \
Gilles Peskine7ab66a62018-09-14 17:47:41 +0200278 ( !defined(MBEDTLS_ECDH_C) || !defined(MBEDTLS_RSA_C) || \
279 !defined(MBEDTLS_X509_CRT_PARSE_C) )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200280#error "MBEDTLS_KEY_EXCHANGE_ECDH_RSA_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200281#endif
282
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200283#if defined(MBEDTLS_KEY_EXCHANGE_DHE_PSK_ENABLED) && !defined(MBEDTLS_DHM_C)
284#error "MBEDTLS_KEY_EXCHANGE_DHE_PSK_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200285#endif
286
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200287#if defined(MBEDTLS_KEY_EXCHANGE_ECDHE_PSK_ENABLED) && \
288 !defined(MBEDTLS_ECDH_C)
289#error "MBEDTLS_KEY_EXCHANGE_ECDHE_PSK_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200290#endif
291
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200292#if defined(MBEDTLS_KEY_EXCHANGE_DHE_RSA_ENABLED) && \
293 ( !defined(MBEDTLS_DHM_C) || !defined(MBEDTLS_RSA_C) || \
294 !defined(MBEDTLS_X509_CRT_PARSE_C) || !defined(MBEDTLS_PKCS1_V15) )
295#error "MBEDTLS_KEY_EXCHANGE_DHE_RSA_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200296#endif
297
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200298#if defined(MBEDTLS_KEY_EXCHANGE_ECDHE_RSA_ENABLED) && \
299 ( !defined(MBEDTLS_ECDH_C) || !defined(MBEDTLS_RSA_C) || \
300 !defined(MBEDTLS_X509_CRT_PARSE_C) || !defined(MBEDTLS_PKCS1_V15) )
301#error "MBEDTLS_KEY_EXCHANGE_ECDHE_RSA_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200302#endif
303
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200304#if defined(MBEDTLS_KEY_EXCHANGE_ECDHE_ECDSA_ENABLED) && \
305 ( !defined(MBEDTLS_ECDH_C) || !defined(MBEDTLS_ECDSA_C) || \
306 !defined(MBEDTLS_X509_CRT_PARSE_C) )
307#error "MBEDTLS_KEY_EXCHANGE_ECDHE_ECDSA_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200308#endif
309
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200310#if defined(MBEDTLS_KEY_EXCHANGE_RSA_PSK_ENABLED) && \
311 ( !defined(MBEDTLS_RSA_C) || !defined(MBEDTLS_X509_CRT_PARSE_C) || \
312 !defined(MBEDTLS_PKCS1_V15) )
313#error "MBEDTLS_KEY_EXCHANGE_RSA_PSK_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200314#endif
315
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200316#if defined(MBEDTLS_KEY_EXCHANGE_RSA_ENABLED) && \
317 ( !defined(MBEDTLS_RSA_C) || !defined(MBEDTLS_X509_CRT_PARSE_C) || \
318 !defined(MBEDTLS_PKCS1_V15) )
319#error "MBEDTLS_KEY_EXCHANGE_RSA_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200320#endif
321
Manuel Pégourié-Gonnard557535d2015-09-15 17:53:32 +0200322#if defined(MBEDTLS_KEY_EXCHANGE_ECJPAKE_ENABLED) && \
Manuel Pégourié-Gonnard3c16abe2022-09-19 10:44:42 +0200323 ( !defined(MBEDTLS_ECJPAKE_C) || \
Manuel Pégourié-Gonnard557535d2015-09-15 17:53:32 +0200324 !defined(MBEDTLS_ECP_DP_SECP256R1_ENABLED) )
325#error "MBEDTLS_KEY_EXCHANGE_ECJPAKE_ENABLED defined, but not all prerequisites"
326#endif
327
Manuel Pégourié-Gonnard3c16abe2022-09-19 10:44:42 +0200328/* Use of EC J-PAKE in TLS requires SHA-256.
Manuel Pégourié-Gonnardb4e28aa2022-09-19 11:55:00 +0200329 * This will be taken from MD if it is present, or from PSA if MD is absent.
Manuel Pégourié-Gonnard3c16abe2022-09-19 10:44:42 +0200330 * Note: ECJPAKE_C depends on MD_C || PSA_CRYPTO_C. */
331#if defined(MBEDTLS_KEY_EXCHANGE_ECJPAKE_ENABLED) && \
332 !( defined(MBEDTLS_MD_C) && defined(MBEDTLS_SHA256_C) ) && \
333 !( !defined(MBEDTLS_MD_C) && defined(PSA_WANT_ALG_SHA_256) )
334#error "MBEDTLS_KEY_EXCHANGE_ECJPAKE_ENABLED defined, but not all prerequisites"
335#endif
336
Gilles Peskineeccd8882020-03-10 12:19:08 +0100337#if defined(MBEDTLS_KEY_EXCHANGE_WITH_CERT_ENABLED) && \
Hanno Beckerfe4ef0c2019-02-26 11:43:09 +0000338 !defined(MBEDTLS_SSL_KEEP_PEER_CERTIFICATE) && \
339 ( !defined(MBEDTLS_SHA256_C) && \
340 !defined(MBEDTLS_SHA512_C) && \
341 !defined(MBEDTLS_SHA1_C) )
342#error "!MBEDTLS_SSL_KEEP_PEER_CERTIFICATE requires MBEDTLS_SHA512_C, MBEDTLS_SHA256_C or MBEDTLS_SHA1_C"
343#endif
344
Manuel Pégourié-Gonnard1f7f7172022-07-18 12:04:05 +0200345#if defined(MBEDTLS_MD_C) && !( \
346 defined(MBEDTLS_MD5_C) || \
347 defined(MBEDTLS_RIPEMD160_C) || \
348 defined(MBEDTLS_SHA1_C) || \
349 defined(MBEDTLS_SHA224_C) || \
350 defined(MBEDTLS_SHA256_C) || \
351 defined(MBEDTLS_SHA384_C) || \
352 defined(MBEDTLS_SHA512_C) )
353#error "MBEDTLS_MD_C defined, but not all prerequisites"
354#endif
355
Raef Coles8ff6df52021-07-21 12:42:15 +0100356#if defined(MBEDTLS_LMS_C) && \
Raef Coles07b70d92022-10-13 10:46:16 +0100357 ! ( defined(MBEDTLS_PSA_CRYPTO_C) && defined(PSA_WANT_ALG_SHA_256) )
358#error "MBEDTLS_LMS_C requires MBEDTLS_PSA_CRYPTO_C and PSA_WANT_ALG_SHA_256"
Raef Coles8ff6df52021-07-21 12:42:15 +0100359#endif
360
Raef Colesab4f8742022-09-01 12:24:31 +0100361#if defined(MBEDTLS_LMS_PRIVATE) && \
362 ( !defined(MBEDTLS_LMS_C) )
363#error "MBEDTLS_LMS_PRIVATE requires MBEDTLS_LMS_C"
364#endif
365
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200366#if defined(MBEDTLS_MEMORY_BUFFER_ALLOC_C) && \
367 ( !defined(MBEDTLS_PLATFORM_C) || !defined(MBEDTLS_PLATFORM_MEMORY) )
368#error "MBEDTLS_MEMORY_BUFFER_ALLOC_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200369#endif
370
Hanno Beckeraf46c5f2019-02-26 13:50:21 +0000371#if defined(MBEDTLS_MEMORY_BACKTRACE) && !defined(MBEDTLS_MEMORY_BUFFER_ALLOC_C)
Shaun Case8b0ecbc2021-12-20 21:14:10 -0800372#error "MBEDTLS_MEMORY_BACKTRACE defined, but not all prerequisites"
Hanno Beckeraf46c5f2019-02-26 13:50:21 +0000373#endif
374
Hanno Beckerbfaa7182019-06-03 16:31:32 +0100375#if defined(MBEDTLS_MEMORY_DEBUG) && !defined(MBEDTLS_MEMORY_BUFFER_ALLOC_C)
Shaun Case8b0ecbc2021-12-20 21:14:10 -0800376#error "MBEDTLS_MEMORY_DEBUG defined, but not all prerequisites"
Hanno Beckerbfaa7182019-06-03 16:31:32 +0100377#endif
378
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200379#if defined(MBEDTLS_PADLOCK_C) && !defined(MBEDTLS_HAVE_ASM)
380#error "MBEDTLS_PADLOCK_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200381#endif
382
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200383#if defined(MBEDTLS_PEM_PARSE_C) && !defined(MBEDTLS_BASE64_C)
384#error "MBEDTLS_PEM_PARSE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200385#endif
386
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200387#if defined(MBEDTLS_PEM_WRITE_C) && !defined(MBEDTLS_BASE64_C)
388#error "MBEDTLS_PEM_WRITE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200389#endif
390
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200391#if defined(MBEDTLS_PK_C) && \
Manuel Pégourié-Gonnardb86279f2022-07-05 12:11:05 +0200392 !defined(MBEDTLS_RSA_C) && !defined(MBEDTLS_ECP_C)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200393#error "MBEDTLS_PK_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard94de3312015-01-28 16:32:36 +0000394#endif
395
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200396#if defined(MBEDTLS_PK_PARSE_C) && !defined(MBEDTLS_PK_C)
397#error "MBEDTLS_PK_PARSE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200398#endif
399
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200400#if defined(MBEDTLS_PK_WRITE_C) && !defined(MBEDTLS_PK_C)
401#error "MBEDTLS_PK_WRITE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200402#endif
403
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200404#if defined(MBEDTLS_PLATFORM_EXIT_ALT) && !defined(MBEDTLS_PLATFORM_C)
405#error "MBEDTLS_PLATFORM_EXIT_ALT defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000406#endif
407
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200408#if defined(MBEDTLS_PLATFORM_EXIT_MACRO) && !defined(MBEDTLS_PLATFORM_C)
409#error "MBEDTLS_PLATFORM_EXIT_MACRO defined, but not all prerequisites"
Rich Evans4cc8a222015-02-03 11:26:31 +0000410#endif
411
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200412#if defined(MBEDTLS_PLATFORM_EXIT_MACRO) &&\
413 ( defined(MBEDTLS_PLATFORM_STD_EXIT) ||\
414 defined(MBEDTLS_PLATFORM_EXIT_ALT) )
415#error "MBEDTLS_PLATFORM_EXIT_MACRO and MBEDTLS_PLATFORM_STD_EXIT/MBEDTLS_PLATFORM_EXIT_ALT cannot be defined simultaneously"
Rich Evans4cc8a222015-02-03 11:26:31 +0000416#endif
417
Gilles Peskine6497b5a2022-06-30 17:01:40 +0200418#if defined(MBEDTLS_PLATFORM_SETBUF_ALT) && !defined(MBEDTLS_PLATFORM_C)
419#error "MBEDTLS_PLATFORM_SETBUF_ALT defined, but not all prerequisites"
420#endif
421
422#if defined(MBEDTLS_PLATFORM_SETBUF_MACRO) && !defined(MBEDTLS_PLATFORM_C)
423#error "MBEDTLS_PLATFORM_SETBUF_MACRO defined, but not all prerequisites"
424#endif
425
426#if defined(MBEDTLS_PLATFORM_SETBUF_MACRO) &&\
427 ( defined(MBEDTLS_PLATFORM_STD_SETBUF) ||\
428 defined(MBEDTLS_PLATFORM_SETBUF_ALT) )
429#error "MBEDTLS_PLATFORM_SETBUF_MACRO and MBEDTLS_PLATFORM_STD_SETBUF/MBEDTLS_PLATFORM_SETBUF_ALT cannot be defined simultaneously"
430#endif
431
Andres Amaya Garcia1e4ec662016-07-20 10:16:25 +0100432#if defined(MBEDTLS_PLATFORM_TIME_ALT) &&\
433 ( !defined(MBEDTLS_PLATFORM_C) ||\
434 !defined(MBEDTLS_HAVE_TIME) )
435#error "MBEDTLS_PLATFORM_TIME_ALT defined, but not all prerequisites"
436#endif
437
438#if defined(MBEDTLS_PLATFORM_TIME_MACRO) &&\
439 ( !defined(MBEDTLS_PLATFORM_C) ||\
440 !defined(MBEDTLS_HAVE_TIME) )
441#error "MBEDTLS_PLATFORM_TIME_MACRO defined, but not all prerequisites"
442#endif
443
444#if defined(MBEDTLS_PLATFORM_TIME_TYPE_MACRO) &&\
445 ( !defined(MBEDTLS_PLATFORM_C) ||\
446 !defined(MBEDTLS_HAVE_TIME) )
447#error "MBEDTLS_PLATFORM_TIME_TYPE_MACRO defined, but not all prerequisites"
448#endif
449
450#if defined(MBEDTLS_PLATFORM_TIME_MACRO) &&\
451 ( defined(MBEDTLS_PLATFORM_STD_TIME) ||\
452 defined(MBEDTLS_PLATFORM_TIME_ALT) )
453#error "MBEDTLS_PLATFORM_TIME_MACRO and MBEDTLS_PLATFORM_STD_TIME/MBEDTLS_PLATFORM_TIME_ALT cannot be defined simultaneously"
454#endif
455
456#if defined(MBEDTLS_PLATFORM_TIME_TYPE_MACRO) &&\
457 ( defined(MBEDTLS_PLATFORM_STD_TIME) ||\
458 defined(MBEDTLS_PLATFORM_TIME_ALT) )
459#error "MBEDTLS_PLATFORM_TIME_TYPE_MACRO and MBEDTLS_PLATFORM_STD_TIME/MBEDTLS_PLATFORM_TIME_ALT cannot be defined simultaneously"
460#endif
461
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200462#if defined(MBEDTLS_PLATFORM_FPRINTF_ALT) && !defined(MBEDTLS_PLATFORM_C)
463#error "MBEDTLS_PLATFORM_FPRINTF_ALT defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000464#endif
465
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200466#if defined(MBEDTLS_PLATFORM_FPRINTF_MACRO) && !defined(MBEDTLS_PLATFORM_C)
467#error "MBEDTLS_PLATFORM_FPRINTF_MACRO defined, but not all prerequisites"
Rich Evans4cc8a222015-02-03 11:26:31 +0000468#endif
469
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200470#if defined(MBEDTLS_PLATFORM_FPRINTF_MACRO) &&\
471 ( defined(MBEDTLS_PLATFORM_STD_FPRINTF) ||\
472 defined(MBEDTLS_PLATFORM_FPRINTF_ALT) )
473#error "MBEDTLS_PLATFORM_FPRINTF_MACRO and MBEDTLS_PLATFORM_STD_FPRINTF/MBEDTLS_PLATFORM_FPRINTF_ALT cannot be defined simultaneously"
Rich Evans4cc8a222015-02-03 11:26:31 +0000474#endif
475
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200476#if defined(MBEDTLS_PLATFORM_FREE_MACRO) &&\
477 ( !defined(MBEDTLS_PLATFORM_C) || !defined(MBEDTLS_PLATFORM_MEMORY) )
478#error "MBEDTLS_PLATFORM_FREE_MACRO defined, but not all prerequisites"
Rich Evans4cc8a222015-02-03 11:26:31 +0000479#endif
480
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200481#if defined(MBEDTLS_PLATFORM_FREE_MACRO) &&\
482 defined(MBEDTLS_PLATFORM_STD_FREE)
483#error "MBEDTLS_PLATFORM_FREE_MACRO and MBEDTLS_PLATFORM_STD_FREE cannot be defined simultaneously"
Rich Evans4cc8a222015-02-03 11:26:31 +0000484#endif
485
Manuel Pégourié-Gonnarda7f80332015-05-27 20:26:40 +0200486#if defined(MBEDTLS_PLATFORM_FREE_MACRO) && !defined(MBEDTLS_PLATFORM_CALLOC_MACRO)
487#error "MBEDTLS_PLATFORM_CALLOC_MACRO must be defined if MBEDTLS_PLATFORM_FREE_MACRO is"
Rich Evans16f8cd82015-02-06 16:14:34 +0000488#endif
489
Manuel Pégourié-Gonnarda7f80332015-05-27 20:26:40 +0200490#if defined(MBEDTLS_PLATFORM_CALLOC_MACRO) &&\
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200491 ( !defined(MBEDTLS_PLATFORM_C) || !defined(MBEDTLS_PLATFORM_MEMORY) )
Manuel Pégourié-Gonnarda7f80332015-05-27 20:26:40 +0200492#error "MBEDTLS_PLATFORM_CALLOC_MACRO defined, but not all prerequisites"
Rich Evans4cc8a222015-02-03 11:26:31 +0000493#endif
494
Manuel Pégourié-Gonnarda7f80332015-05-27 20:26:40 +0200495#if defined(MBEDTLS_PLATFORM_CALLOC_MACRO) &&\
496 defined(MBEDTLS_PLATFORM_STD_CALLOC)
497#error "MBEDTLS_PLATFORM_CALLOC_MACRO and MBEDTLS_PLATFORM_STD_CALLOC cannot be defined simultaneously"
Rich Evans4cc8a222015-02-03 11:26:31 +0000498#endif
499
Manuel Pégourié-Gonnarda7f80332015-05-27 20:26:40 +0200500#if defined(MBEDTLS_PLATFORM_CALLOC_MACRO) && !defined(MBEDTLS_PLATFORM_FREE_MACRO)
501#error "MBEDTLS_PLATFORM_FREE_MACRO must be defined if MBEDTLS_PLATFORM_CALLOC_MACRO is"
Rich Evans16f8cd82015-02-06 16:14:34 +0000502#endif
503
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200504#if defined(MBEDTLS_PLATFORM_MEMORY) && !defined(MBEDTLS_PLATFORM_C)
505#error "MBEDTLS_PLATFORM_MEMORY defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000506#endif
507
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200508#if defined(MBEDTLS_PLATFORM_PRINTF_ALT) && !defined(MBEDTLS_PLATFORM_C)
509#error "MBEDTLS_PLATFORM_PRINTF_ALT defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000510#endif
511
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200512#if defined(MBEDTLS_PLATFORM_PRINTF_MACRO) && !defined(MBEDTLS_PLATFORM_C)
513#error "MBEDTLS_PLATFORM_PRINTF_MACRO defined, but not all prerequisites"
Rich Evans4cc8a222015-02-03 11:26:31 +0000514#endif
515
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200516#if defined(MBEDTLS_PLATFORM_PRINTF_MACRO) &&\
517 ( defined(MBEDTLS_PLATFORM_STD_PRINTF) ||\
518 defined(MBEDTLS_PLATFORM_PRINTF_ALT) )
519#error "MBEDTLS_PLATFORM_PRINTF_MACRO and MBEDTLS_PLATFORM_STD_PRINTF/MBEDTLS_PLATFORM_PRINTF_ALT cannot be defined simultaneously"
Rich Evans4cc8a222015-02-03 11:26:31 +0000520#endif
521
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200522#if defined(MBEDTLS_PLATFORM_SNPRINTF_ALT) && !defined(MBEDTLS_PLATFORM_C)
523#error "MBEDTLS_PLATFORM_SNPRINTF_ALT defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000524#endif
525
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200526#if defined(MBEDTLS_PLATFORM_SNPRINTF_MACRO) && !defined(MBEDTLS_PLATFORM_C)
527#error "MBEDTLS_PLATFORM_SNPRINTF_MACRO defined, but not all prerequisites"
Rich Evans4cc8a222015-02-03 11:26:31 +0000528#endif
529
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200530#if defined(MBEDTLS_PLATFORM_SNPRINTF_MACRO) &&\
531 ( defined(MBEDTLS_PLATFORM_STD_SNPRINTF) ||\
532 defined(MBEDTLS_PLATFORM_SNPRINTF_ALT) )
533#error "MBEDTLS_PLATFORM_SNPRINTF_MACRO and MBEDTLS_PLATFORM_STD_SNPRINTF/MBEDTLS_PLATFORM_SNPRINTF_ALT cannot be defined simultaneously"
Rich Evans4cc8a222015-02-03 11:26:31 +0000534#endif
535
Gilles Peskineef843f22022-09-18 14:05:23 +0200536#if defined(MBEDTLS_PLATFORM_VSNPRINTF_ALT) && !defined(MBEDTLS_PLATFORM_C)
537#error "MBEDTLS_PLATFORM_VSNPRINTF_ALT defined, but not all prerequisites"
538#endif
539
540#if defined(MBEDTLS_PLATFORM_VSNPRINTF_MACRO) && !defined(MBEDTLS_PLATFORM_C)
541#error "MBEDTLS_PLATFORM_VSNPRINTF_MACRO defined, but not all prerequisites"
542#endif
543
544#if defined(MBEDTLS_PLATFORM_VSNPRINTF_MACRO) &&\
545 ( defined(MBEDTLS_PLATFORM_STD_VSNPRINTF) ||\
546 defined(MBEDTLS_PLATFORM_VSNPRINTF_ALT) )
547#error "MBEDTLS_PLATFORM_VSNPRINTF_MACRO and MBEDTLS_PLATFORM_STD_VSNPRINTF/MBEDTLS_PLATFORM_VSNPRINTF_ALT cannot be defined simultaneously"
548#endif
549
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200550#if defined(MBEDTLS_PLATFORM_STD_MEM_HDR) &&\
551 !defined(MBEDTLS_PLATFORM_NO_STD_FUNCTIONS)
552#error "MBEDTLS_PLATFORM_STD_MEM_HDR defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000553#endif
554
Manuel Pégourié-Gonnarda7f80332015-05-27 20:26:40 +0200555#if defined(MBEDTLS_PLATFORM_STD_CALLOC) && !defined(MBEDTLS_PLATFORM_MEMORY)
556#error "MBEDTLS_PLATFORM_STD_CALLOC defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000557#endif
558
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200559#if defined(MBEDTLS_PLATFORM_STD_FREE) && !defined(MBEDTLS_PLATFORM_MEMORY)
560#error "MBEDTLS_PLATFORM_STD_FREE defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000561#endif
562
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200563#if defined(MBEDTLS_PLATFORM_STD_EXIT) &&\
564 !defined(MBEDTLS_PLATFORM_EXIT_ALT)
565#error "MBEDTLS_PLATFORM_STD_EXIT defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000566#endif
567
Andres Amaya Garcia1e4ec662016-07-20 10:16:25 +0100568#if defined(MBEDTLS_PLATFORM_STD_TIME) &&\
569 ( !defined(MBEDTLS_PLATFORM_TIME_ALT) ||\
570 !defined(MBEDTLS_HAVE_TIME) )
571#error "MBEDTLS_PLATFORM_STD_TIME defined, but not all prerequisites"
572#endif
573
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200574#if defined(MBEDTLS_PLATFORM_STD_FPRINTF) &&\
575 !defined(MBEDTLS_PLATFORM_FPRINTF_ALT)
576#error "MBEDTLS_PLATFORM_STD_FPRINTF defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000577#endif
578
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200579#if defined(MBEDTLS_PLATFORM_STD_PRINTF) &&\
580 !defined(MBEDTLS_PLATFORM_PRINTF_ALT)
581#error "MBEDTLS_PLATFORM_STD_PRINTF defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000582#endif
583
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200584#if defined(MBEDTLS_PLATFORM_STD_SNPRINTF) &&\
585 !defined(MBEDTLS_PLATFORM_SNPRINTF_ALT)
586#error "MBEDTLS_PLATFORM_STD_SNPRINTF defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000587#endif
588
Paul Bakkercf0a9f92016-06-01 11:25:44 +0100589#if defined(MBEDTLS_ENTROPY_NV_SEED) &&\
590 ( !defined(MBEDTLS_PLATFORM_C) || !defined(MBEDTLS_ENTROPY_C) )
591#error "MBEDTLS_ENTROPY_NV_SEED defined, but not all prerequisites"
592#endif
593
594#if defined(MBEDTLS_PLATFORM_NV_SEED_ALT) &&\
595 !defined(MBEDTLS_ENTROPY_NV_SEED)
596#error "MBEDTLS_PLATFORM_NV_SEED_ALT defined, but not all prerequisites"
597#endif
598
599#if defined(MBEDTLS_PLATFORM_STD_NV_SEED_READ) &&\
600 !defined(MBEDTLS_PLATFORM_NV_SEED_ALT)
601#error "MBEDTLS_PLATFORM_STD_NV_SEED_READ defined, but not all prerequisites"
602#endif
603
604#if defined(MBEDTLS_PLATFORM_STD_NV_SEED_WRITE) &&\
605 !defined(MBEDTLS_PLATFORM_NV_SEED_ALT)
606#error "MBEDTLS_PLATFORM_STD_NV_SEED_WRITE defined, but not all prerequisites"
607#endif
608
609#if defined(MBEDTLS_PLATFORM_NV_SEED_READ_MACRO) &&\
610 ( defined(MBEDTLS_PLATFORM_STD_NV_SEED_READ) ||\
611 defined(MBEDTLS_PLATFORM_NV_SEED_ALT) )
612#error "MBEDTLS_PLATFORM_NV_SEED_READ_MACRO and MBEDTLS_PLATFORM_STD_NV_SEED_READ cannot be defined simultaneously"
613#endif
614
615#if defined(MBEDTLS_PLATFORM_NV_SEED_WRITE_MACRO) &&\
616 ( defined(MBEDTLS_PLATFORM_STD_NV_SEED_WRITE) ||\
617 defined(MBEDTLS_PLATFORM_NV_SEED_ALT) )
618#error "MBEDTLS_PLATFORM_NV_SEED_WRITE_MACRO and MBEDTLS_PLATFORM_STD_NV_SEED_WRITE cannot be defined simultaneously"
619#endif
620
Gilles Peskinef08b3f82020-11-13 17:36:48 +0100621#if defined(MBEDTLS_PSA_CRYPTO_C) && \
Gilles Peskine82e57d12020-11-13 21:31:17 +0100622 !( ( ( defined(MBEDTLS_CTR_DRBG_C) || defined(MBEDTLS_HMAC_DRBG_C) ) && \
Gilles Peskinef08b3f82020-11-13 17:36:48 +0100623 defined(MBEDTLS_ENTROPY_C) ) || \
624 defined(MBEDTLS_PSA_CRYPTO_EXTERNAL_RNG) )
625#error "MBEDTLS_PSA_CRYPTO_C defined, but not all prerequisites (missing RNG)"
Jaeden Amero484ee332018-10-25 17:38:05 +0100626#endif
627
Przemek Stekielea805b42022-05-02 10:30:03 +0200628#if defined(MBEDTLS_PSA_CRYPTO_C) && !defined(MBEDTLS_CIPHER_C )
Przemek Stekiela09f8352022-05-12 09:34:28 +0200629#error "MBEDTLS_PSA_CRYPTO_C defined, but not all prerequisites"
Przemek Stekielea805b42022-05-02 10:30:03 +0200630#endif
631
Andrzej Kurekc6905232019-02-05 05:23:41 -0500632#if defined(MBEDTLS_PSA_CRYPTO_SPM) && !defined(MBEDTLS_PSA_CRYPTO_C)
633#error "MBEDTLS_PSA_CRYPTO_SPM defined, but not all prerequisites"
634#endif
635
Gilles Peskinea8ade162019-06-26 11:24:49 +0200636#if defined(MBEDTLS_PSA_CRYPTO_SE_C) && \
637 ! ( defined(MBEDTLS_PSA_CRYPTO_C) && \
638 defined(MBEDTLS_PSA_CRYPTO_STORAGE_C) )
639#error "MBEDTLS_PSA_CRYPTO_SE_C defined, but not all prerequisites"
640#endif
641
Gilles Peskine98473c42022-06-20 18:46:22 +0200642#if defined(MBEDTLS_PSA_CRYPTO_SE_C)
643#if defined(MBEDTLS_DEPRECATED_REMOVED)
644#error "MBEDTLS_PSA_CRYPTO_SE_C is deprecated and will be removed in a future version of Mbed TLS"
645#elif defined(MBEDTLS_DEPRECATED_WARNING)
646#warning "MBEDTLS_PSA_CRYPTO_SE_C is deprecated and will be removed in a future version of Mbed TLS"
647#endif
648#endif /* MBEDTLS_PSA_CRYPTO_SE_C */
649
Andrzej Kurekc6905232019-02-05 05:23:41 -0500650#if defined(MBEDTLS_PSA_CRYPTO_STORAGE_C) && \
Jaeden Amero57f4d9e2019-03-15 16:14:19 +0000651 ! defined(MBEDTLS_PSA_CRYPTO_C)
Andrzej Kurekc6905232019-02-05 05:23:41 -0500652#error "MBEDTLS_PSA_CRYPTO_STORAGE_C defined, but not all prerequisites"
653#endif
654
Jaeden Amero57f4d9e2019-03-15 16:14:19 +0000655#if defined(MBEDTLS_PSA_INJECT_ENTROPY) && \
656 !( defined(MBEDTLS_PSA_CRYPTO_STORAGE_C) && \
657 defined(MBEDTLS_ENTROPY_NV_SEED) )
658#error "MBEDTLS_PSA_INJECT_ENTROPY defined, but not all prerequisites"
Andrzej Kurekc6905232019-02-05 05:23:41 -0500659#endif
660
Jaeden Amero57f4d9e2019-03-15 16:14:19 +0000661#if defined(MBEDTLS_PSA_INJECT_ENTROPY) && \
662 !defined(MBEDTLS_NO_DEFAULT_ENTROPY_SOURCES)
663#error "MBEDTLS_PSA_INJECT_ENTROPY is not compatible with actual entropy sources"
664#endif
665
Gilles Peskine4fc21fd2020-11-13 18:47:18 +0100666#if defined(MBEDTLS_PSA_INJECT_ENTROPY) && \
Gilles Peskine89ffb282020-11-18 15:23:08 +0100667 defined(MBEDTLS_PSA_CRYPTO_EXTERNAL_RNG)
Gilles Peskine4fc21fd2020-11-13 18:47:18 +0100668#error "MBEDTLS_PSA_INJECT_ENTROPY is not compatible with MBEDTLS_PSA_CRYPTO_EXTERNAL_RNG"
669#endif
670
Jaeden Amero57f4d9e2019-03-15 16:14:19 +0000671#if defined(MBEDTLS_PSA_ITS_FILE_C) && \
672 !defined(MBEDTLS_FS_IO)
673#error "MBEDTLS_PSA_ITS_FILE_C defined, but not all prerequisites"
Andrzej Kurekc6905232019-02-05 05:23:41 -0500674#endif
675
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200676#if defined(MBEDTLS_RSA_C) && ( !defined(MBEDTLS_BIGNUM_C) || \
677 !defined(MBEDTLS_OID_C) )
678#error "MBEDTLS_RSA_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200679#endif
680
Paul Bakker4fde40f2016-05-09 15:13:04 +0100681#if defined(MBEDTLS_RSA_C) && ( !defined(MBEDTLS_PKCS1_V21) && \
Paul Bakker37068a72016-05-09 14:36:33 +0100682 !defined(MBEDTLS_PKCS1_V15) )
683#error "MBEDTLS_RSA_C defined, but none of the PKCS1 versions enabled"
684#endif
685
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200686#if defined(MBEDTLS_X509_RSASSA_PSS_SUPPORT) && \
687 ( !defined(MBEDTLS_RSA_C) || !defined(MBEDTLS_PKCS1_V21) )
688#error "MBEDTLS_X509_RSASSA_PSS_SUPPORT defined, but not all prerequisites"
Manuel Pégourié-Gonnard9df5c962014-01-24 14:37:29 +0100689#endif
690
Mateusz Starzyk3352a532021-04-06 14:28:22 +0200691#if defined(MBEDTLS_SHA384_C) && !defined(MBEDTLS_SHA512_C)
692#error "MBEDTLS_SHA384_C defined without MBEDTLS_SHA512_C"
Manuel Pégourié-Gonnard1e6fb012020-01-07 11:00:34 +0100693#endif
694
Tom Cosgrove87fbfb52022-03-15 10:51:52 +0000695#if defined(MBEDTLS_SHA512_USE_A64_CRYPTO_IF_PRESENT) && \
696 defined(MBEDTLS_SHA512_USE_A64_CRYPTO_ONLY)
697#error "Must only define one of MBEDTLS_SHA512_USE_A64_CRYPTO_*"
698#endif
699
700#if defined(MBEDTLS_SHA512_USE_A64_CRYPTO_IF_PRESENT) || \
701 defined(MBEDTLS_SHA512_USE_A64_CRYPTO_ONLY)
702#if !defined(MBEDTLS_SHA512_C)
703#error "MBEDTLS_SHA512_USE_A64_CRYPTO_* defined without MBEDTLS_SHA512_C"
704#endif
705#if defined(MBEDTLS_SHA512_ALT) || defined(MBEDTLS_SHA512_PROCESS_ALT)
706#error "MBEDTLS_SHA512_*ALT can't be used with MBEDTLS_SHA512_USE_A64_CRYPTO_*"
707#endif
708/*
709 * Best performance comes from most recent compilers, with intrinsics and -O3.
710 * Must compile with -march=armv8.2-a+sha3, but we can't detect armv8.2-a, and
711 * can't always detect __ARM_FEATURE_SHA512 (notably clang 7-12).
712 *
713 * GCC < 8 won't work at all (lacks the sha512 instructions)
714 * GCC >= 8 uses intrinsics, sets __ARM_FEATURE_SHA512
715 *
716 * Clang < 7 won't work at all (lacks the sha512 instructions)
717 * Clang 7-12 don't have intrinsics (but we work around that with inline
718 * assembler) or __ARM_FEATURE_SHA512
719 * Clang == 13.0.0 same as clang 12 (only seen on macOS)
720 * Clang >= 13.0.1 has __ARM_FEATURE_SHA512 and intrinsics
721 */
722#if defined(__aarch64__) && !defined(__ARM_FEATURE_SHA512)
723 /* Test Clang first, as it defines __GNUC__ */
724# if defined(__clang__)
725# if __clang_major__ < 7
726# error "A more recent Clang is required for MBEDTLS_SHA512_USE_A64_CRYPTO_*"
727# elif __clang_major__ < 13 || \
728 (__clang_major__ == 13 && __clang_minor__ == 0 && __clang_patchlevel__ == 0)
729 /* We implement the intrinsics with inline assembler, so don't error */
730# else
731# error "Must use minimum -march=armv8.2-a+sha3 for MBEDTLS_SHA512_USE_A64_CRYPTO_*"
732# endif
733# elif defined(__GNUC__)
734# if __GNUC__ < 8
735# error "A more recent GCC is required for MBEDTLS_SHA512_USE_A64_CRYPTO_*"
736# else
737# error "Must use minimum -march=armv8.2-a+sha3 for MBEDTLS_SHA512_USE_A64_CRYPTO_*"
738# endif
739# else
740# error "Only GCC and Clang supported for MBEDTLS_SHA512_USE_A64_CRYPTO_*"
741# endif
742#endif
743
744#endif /* MBEDTLS_SHA512_USE_A64_CRYPTO_IF_PRESENT || MBEDTLS_SHA512_USE_A64_CRYPTO_ONLY */
745
746#if defined(MBEDTLS_SHA512_USE_A64_CRYPTO_ONLY) && !defined(__aarch64__)
747#error "MBEDTLS_SHA512_USE_A64_CRYPTO_ONLY defined on non-Aarch64 system"
748#endif
749
Mateusz Starzyke3c48b42021-04-19 16:46:28 +0200750#if defined(MBEDTLS_SHA224_C) && !defined(MBEDTLS_SHA256_C)
751#error "MBEDTLS_SHA224_C defined without MBEDTLS_SHA256_C"
752#endif
753
754#if defined(MBEDTLS_SHA256_C) && !defined(MBEDTLS_SHA224_C)
755#error "MBEDTLS_SHA256_C defined without MBEDTLS_SHA224_C"
756#endif
757
Tom Cosgrovef3ebd902022-02-20 22:25:31 +0000758#if defined(MBEDTLS_SHA256_USE_A64_CRYPTO_IF_PRESENT) && \
759 defined(MBEDTLS_SHA256_USE_A64_CRYPTO_ONLY)
760#error "Must only define one of MBEDTLS_SHA256_USE_A64_CRYPTO_*"
761#endif
762
763#if defined(MBEDTLS_SHA256_USE_A64_CRYPTO_IF_PRESENT) || \
764 defined(MBEDTLS_SHA256_USE_A64_CRYPTO_ONLY)
765#if !defined(MBEDTLS_SHA256_C)
766#error "MBEDTLS_SHA256_USE_A64_CRYPTO_* defined without MBEDTLS_SHA256_C"
767#endif
768#if defined(MBEDTLS_SHA256_ALT) || defined(MBEDTLS_SHA256_PROCESS_ALT)
769#error "MBEDTLS_SHA256_*ALT can't be used with MBEDTLS_SHA256_USE_A64_CRYPTO_*"
770#endif
771#if defined(__aarch64__) && !defined(__ARM_FEATURE_CRYPTO)
772#error "Must use minimum -march=armv8-a+crypto for MBEDTLS_SHA256_USE_A64_CRYPTO_*"
773#endif
774#endif
775
Tom Cosgroveb9987fc2022-02-21 12:26:11 +0000776#if defined(MBEDTLS_SHA256_USE_A64_CRYPTO_ONLY) && \
777 !defined(__aarch64__) && !defined(_M_ARM64)
Tom Cosgrovef3ebd902022-02-20 22:25:31 +0000778#error "MBEDTLS_SHA256_USE_A64_CRYPTO_ONLY defined on non-Aarch64 system"
779#endif
780
Andrzej Kurekcccb0442022-08-19 03:42:11 -0400781#if defined(MBEDTLS_SSL_PROTO_TLS1_2) && !defined(MBEDTLS_USE_PSA_CRYPTO) && \
782 !( defined(MBEDTLS_SHA1_C) || defined(MBEDTLS_SHA256_C) || defined(MBEDTLS_SHA512_C) )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200783#error "MBEDTLS_SSL_PROTO_TLS1_2 defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200784#endif
785
Przemek Stekiel8a2f2b02022-09-06 08:07:43 +0200786/* TLS 1.3 requires separate HKDF parts from PSA */
787#if defined(MBEDTLS_SSL_PROTO_TLS1_3) && \
788 !( defined(MBEDTLS_PSA_CRYPTO_C) && defined(PSA_WANT_ALG_HKDF_EXTRACT) && defined(PSA_WANT_ALG_HKDF_EXPAND) )
789#error "MBEDTLS_SSL_PROTO_TLS1_3 defined, but not all prerequisites"
790#endif
791
792/* TLS 1.3 requires at least one ciphersuite, so at least SHA-256 or SHA-384 */
Przemek Stekielce0aa582022-09-12 13:24:25 +0200793#if defined(MBEDTLS_SSL_PROTO_TLS1_3)
794/* We always need at least one of the hashes via PSA (for use with HKDF) */
795#if !( defined(PSA_WANT_ALG_SHA_256) || defined(PSA_WANT_ALG_SHA_384) )
Ronald Cron6f135e12021-12-08 16:57:54 +0100796#error "MBEDTLS_SSL_PROTO_TLS1_3 defined, but not all prerequisites"
Przemek Stekielce0aa582022-09-12 13:24:25 +0200797#endif /* !(PSA_WANT_ALG_SHA_256 || PSA_WANT_ALG_SHA_384) */
798#if !defined(MBEDTLS_USE_PSA_CRYPTO)
799/* When USE_PSA_CRYPTO is not defined, we also need SHA-256 or SHA-384 via the
800 * legacy interface, including via the MD layer, for the parts of the code
801 * that are shared with TLS 1.2 (running handshake hash). */
802#if !defined(MBEDTLS_MD_C) || \
803 !( defined(MBEDTLS_SHA256_C) || defined(MBEDTLS_SHA384_C) )
804#error "MBEDTLS_SSL_PROTO_TLS1_3 defined, but not all prerequisites"
805#endif /* !MBEDTLS_MD_C || !(MBEDTLS_SHA256_C || MBEDTLS_SHA384_C) */
806#endif /* !MBEDTLS_USE_PSA_CRYPTO */
807#endif /* MBEDTLS_SSL_PROTO_TLS1_3 */
Hanno Becker6055a172020-06-02 06:20:23 +0100808
Ronald Crond8d2ea52022-10-04 15:48:06 +0200809#if defined(MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_EPHEMERAL_ENABLED)
810#if !( defined(MBEDTLS_ECDH_C) && defined(MBEDTLS_X509_CRT_PARSE_C) && \
811 ( defined(MBEDTLS_ECDSA_C) || defined(MBEDTLS_PKCS1_V21) ) )
812#error "MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_EPHEMERAL_ENABLED defined, but not all prerequisites"
813#endif
814#endif
815
816#if defined(MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_PSK_EPHEMERAL_ENABLED)
817#if !( defined(MBEDTLS_ECDH_C) )
818#error "MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_PSK_EPHEMERAL_ENABLED defined, but not all prerequisites"
819#endif
820#endif
821
Tom Cosgroveafb2fe12022-06-29 16:36:12 +0100822/*
823 * The current implementation of TLS 1.3 requires MBEDTLS_SSL_KEEP_PEER_CERTIFICATE.
824 */
825#if defined(MBEDTLS_SSL_PROTO_TLS1_3) && !defined(MBEDTLS_SSL_KEEP_PEER_CERTIFICATE)
826#error "MBEDTLS_SSL_PROTO_TLS1_3 defined without MBEDTLS_SSL_KEEP_PEER_CERTIFICATE"
827#endif
828
TRodziewicz0f82ec62021-05-12 17:49:18 +0200829#if defined(MBEDTLS_SSL_PROTO_TLS1_2) && \
Simon Butcher432e7022019-04-11 18:56:18 +0100830 !(defined(MBEDTLS_KEY_EXCHANGE_RSA_ENABLED) || \
831 defined(MBEDTLS_KEY_EXCHANGE_DHE_RSA_ENABLED) || \
832 defined(MBEDTLS_KEY_EXCHANGE_ECDHE_RSA_ENABLED) || \
833 defined(MBEDTLS_KEY_EXCHANGE_ECDHE_ECDSA_ENABLED) || \
834 defined(MBEDTLS_KEY_EXCHANGE_ECDH_RSA_ENABLED) || \
835 defined(MBEDTLS_KEY_EXCHANGE_ECDH_ECDSA_ENABLED) || \
836 defined(MBEDTLS_KEY_EXCHANGE_PSK_ENABLED) || \
837 defined(MBEDTLS_KEY_EXCHANGE_DHE_PSK_ENABLED) || \
838 defined(MBEDTLS_KEY_EXCHANGE_RSA_PSK_ENABLED) || \
839 defined(MBEDTLS_KEY_EXCHANGE_ECDHE_PSK_ENABLED) || \
840 defined(MBEDTLS_KEY_EXCHANGE_ECJPAKE_ENABLED) )
841#error "One or more versions of the TLS protocol are enabled " \
842 "but no key exchange methods defined with MBEDTLS_KEY_EXCHANGE_xxxx"
843#endif
844
Xiaokang Qian95a07302022-10-25 02:56:00 +0000845/* Early data requires PSK related mode defined */
846#if defined(MBEDTLS_SSL_EARLY_DATA) && \
847 ( !defined(MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_PSK_ENABLED) && \
848 !defined(MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_PSK_EPHEMERAL_ENABLED))
849#error "MBEDTLS_SSL_EARLY_DATA defined, but not all prerequisites"
850#endif
851
Manuel Pégourié-Gonnard5a8d56d2015-05-13 10:10:00 +0200852#if defined(MBEDTLS_SSL_PROTO_DTLS) && \
Manuel Pégourié-Gonnard5a8d56d2015-05-13 10:10:00 +0200853 !defined(MBEDTLS_SSL_PROTO_TLS1_2)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200854#error "MBEDTLS_SSL_PROTO_DTLS defined, but not all prerequisites"
Manuel Pégourié-Gonnard0b1ff292014-02-06 13:04:16 +0100855#endif
856
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200857#if defined(MBEDTLS_SSL_CLI_C) && !defined(MBEDTLS_SSL_TLS_C)
858#error "MBEDTLS_SSL_CLI_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200859#endif
860
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200861#if defined(MBEDTLS_SSL_TLS_C) && ( !defined(MBEDTLS_CIPHER_C) || \
Andrzej Kurek7e16ce32022-08-17 16:19:39 -0400862 ( !defined(MBEDTLS_MD_C) && !defined(MBEDTLS_USE_PSA_CRYPTO) ) )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200863#error "MBEDTLS_SSL_TLS_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200864#endif
865
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200866#if defined(MBEDTLS_SSL_SRV_C) && !defined(MBEDTLS_SSL_TLS_C)
867#error "MBEDTLS_SSL_SRV_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200868#endif
869
Jerry Yue0a64122021-12-23 11:06:26 +0800870#if defined(MBEDTLS_SSL_TLS_C) && \
871 !( defined(MBEDTLS_SSL_PROTO_TLS1_2) || defined(MBEDTLS_SSL_PROTO_TLS1_3) )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200872#error "MBEDTLS_SSL_TLS_C defined, but no protocols are active"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200873#endif
874
Manuel Pégourié-Gonnarde057d3b2015-05-20 10:59:43 +0200875#if defined(MBEDTLS_SSL_DTLS_HELLO_VERIFY) && !defined(MBEDTLS_SSL_PROTO_DTLS)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200876#error "MBEDTLS_SSL_DTLS_HELLO_VERIFY defined, but not all prerequisites"
Manuel Pégourié-Gonnard82202f02014-07-23 00:28:58 +0200877#endif
878
Manuel Pégourié-Gonnard62c74bb2015-09-08 17:50:29 +0200879#if defined(MBEDTLS_SSL_DTLS_CLIENT_PORT_REUSE) && \
Manuel Pégourié-Gonnardddfe5d22015-09-09 12:46:16 +0200880 !defined(MBEDTLS_SSL_DTLS_HELLO_VERIFY)
Manuel Pégourié-Gonnard62c74bb2015-09-08 17:50:29 +0200881#error "MBEDTLS_SSL_DTLS_CLIENT_PORT_REUSE defined, but not all prerequisites"
882#endif
883
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200884#if defined(MBEDTLS_SSL_DTLS_ANTI_REPLAY) && \
885 ( !defined(MBEDTLS_SSL_TLS_C) || !defined(MBEDTLS_SSL_PROTO_DTLS) )
886#error "MBEDTLS_SSL_DTLS_ANTI_REPLAY defined, but not all prerequisites"
Manuel Pégourié-Gonnard8464a462014-09-24 14:05:32 +0200887#endif
888
Gilles Peskined3d02902020-03-04 21:35:27 +0100889#if defined(MBEDTLS_SSL_DTLS_CONNECTION_ID) && \
890 ( !defined(MBEDTLS_SSL_TLS_C) || !defined(MBEDTLS_SSL_PROTO_DTLS) )
891#error "MBEDTLS_SSL_DTLS_CONNECTION_ID defined, but not all prerequisites"
892#endif
893
894#if defined(MBEDTLS_SSL_DTLS_CONNECTION_ID) && \
895 defined(MBEDTLS_SSL_CID_IN_LEN_MAX) && \
896 MBEDTLS_SSL_CID_IN_LEN_MAX > 255
897#error "MBEDTLS_SSL_CID_IN_LEN_MAX too large (max 255)"
898#endif
899
900#if defined(MBEDTLS_SSL_DTLS_CONNECTION_ID) && \
901 defined(MBEDTLS_SSL_CID_OUT_LEN_MAX) && \
902 MBEDTLS_SSL_CID_OUT_LEN_MAX > 255
903#error "MBEDTLS_SSL_CID_OUT_LEN_MAX too large (max 255)"
904#endif
905
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200906#if defined(MBEDTLS_SSL_ENCRYPT_THEN_MAC) && \
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200907 !defined(MBEDTLS_SSL_PROTO_TLS1_2)
Shaun Case8b0ecbc2021-12-20 21:14:10 -0800908#error "MBEDTLS_SSL_ENCRYPT_THEN_MAC defined, but not all prerequisites"
Manuel Pégourié-Gonnard699cafa2014-10-27 13:57:03 +0100909#endif
910
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200911#if defined(MBEDTLS_SSL_EXTENDED_MASTER_SECRET) && \
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200912 !defined(MBEDTLS_SSL_PROTO_TLS1_2)
Shaun Case8b0ecbc2021-12-20 21:14:10 -0800913#error "MBEDTLS_SSL_EXTENDED_MASTER_SECRET defined, but not all prerequisites"
Manuel Pégourié-Gonnard769c6b62014-10-28 14:13:55 +0100914#endif
915
Przemek Stekiela09f8352022-05-12 09:34:28 +0200916#if defined(MBEDTLS_SSL_TICKET_C) && ( !defined(MBEDTLS_CIPHER_C) && \
917 !defined(MBEDTLS_USE_PSA_CRYPTO) )
918#error "MBEDTLS_SSL_TICKET_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200919#endif
920
Przemek Stekiel52a428b2022-10-10 08:47:13 +0200921#if defined(MBEDTLS_SSL_TICKET_C) && \
922 !( defined(MBEDTLS_GCM_C) || defined(MBEDTLS_CCM_C) || defined(MBEDTLS_CHACHAPOLY_C) )
Przemek Stekield61a4d32022-10-11 09:40:40 +0200923#error "MBEDTLS_SSL_TICKET_C defined, but not all prerequisites"
Przemek Stekiel52a428b2022-10-10 08:47:13 +0200924#endif
925
Jerry Yu9750f812022-07-20 11:04:50 +0800926#if defined(MBEDTLS_SSL_TLS1_3_TICKET_NONCE_LENGTH) && \
927 MBEDTLS_SSL_TLS1_3_TICKET_NONCE_LENGTH >= 256
928#error "MBEDTLS_SSL_TLS1_3_TICKET_NONCE_LENGTH must be less than 256"
Jerry Yu08aed4d2022-07-20 10:36:12 +0800929#endif
930
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200931#if defined(MBEDTLS_SSL_SERVER_NAME_INDICATION) && \
932 !defined(MBEDTLS_X509_CRT_PARSE_C)
933#error "MBEDTLS_SSL_SERVER_NAME_INDICATION defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200934#endif
935
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200936#if defined(MBEDTLS_THREADING_PTHREAD)
937#if !defined(MBEDTLS_THREADING_C) || defined(MBEDTLS_THREADING_IMPL)
938#error "MBEDTLS_THREADING_PTHREAD defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200939#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200940#define MBEDTLS_THREADING_IMPL
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200941#endif
942
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200943#if defined(MBEDTLS_THREADING_ALT)
944#if !defined(MBEDTLS_THREADING_C) || defined(MBEDTLS_THREADING_IMPL)
945#error "MBEDTLS_THREADING_ALT defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200946#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200947#define MBEDTLS_THREADING_IMPL
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200948#endif
949
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200950#if defined(MBEDTLS_THREADING_C) && !defined(MBEDTLS_THREADING_IMPL)
951#error "MBEDTLS_THREADING_C defined, single threading implementation required"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200952#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200953#undef MBEDTLS_THREADING_IMPL
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200954
Manuel Pégourié-Gonnardaeefa492018-10-22 12:14:52 +0200955#if defined(MBEDTLS_USE_PSA_CRYPTO) && !defined(MBEDTLS_PSA_CRYPTO_C)
956#error "MBEDTLS_USE_PSA_CRYPTO defined, but not all prerequisites"
957#endif
958
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200959#if defined(MBEDTLS_VERSION_FEATURES) && !defined(MBEDTLS_VERSION_C)
960#error "MBEDTLS_VERSION_FEATURES defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200961#endif
962
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200963#if defined(MBEDTLS_X509_USE_C) && ( !defined(MBEDTLS_BIGNUM_C) || \
Przemek Stekiel10836a02022-08-19 08:45:34 +0200964 !defined(MBEDTLS_OID_C) || !defined(MBEDTLS_ASN1_PARSE_C) || \
965 !defined(MBEDTLS_PK_PARSE_C) || \
Przemek Stekiel278b6672022-08-03 09:50:38 +0200966 ( !defined(MBEDTLS_MD_C) && !defined(MBEDTLS_USE_PSA_CRYPTO) ) )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200967#error "MBEDTLS_X509_USE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200968#endif
969
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200970#if defined(MBEDTLS_X509_CREATE_C) && ( !defined(MBEDTLS_BIGNUM_C) || \
971 !defined(MBEDTLS_OID_C) || !defined(MBEDTLS_ASN1_WRITE_C) || \
Przemek Stekiel10836a02022-08-19 08:45:34 +0200972 !defined(MBEDTLS_PK_PARSE_C) || \
Przemek Stekiel278b6672022-08-03 09:50:38 +0200973 ( !defined(MBEDTLS_MD_C) && !defined(MBEDTLS_USE_PSA_CRYPTO) ) )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200974#error "MBEDTLS_X509_CREATE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200975#endif
976
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200977#if defined(MBEDTLS_X509_CRT_PARSE_C) && ( !defined(MBEDTLS_X509_USE_C) )
978#error "MBEDTLS_X509_CRT_PARSE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200979#endif
980
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200981#if defined(MBEDTLS_X509_CRL_PARSE_C) && ( !defined(MBEDTLS_X509_USE_C) )
982#error "MBEDTLS_X509_CRL_PARSE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200983#endif
984
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200985#if defined(MBEDTLS_X509_CSR_PARSE_C) && ( !defined(MBEDTLS_X509_USE_C) )
986#error "MBEDTLS_X509_CSR_PARSE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200987#endif
988
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200989#if defined(MBEDTLS_X509_CRT_WRITE_C) && ( !defined(MBEDTLS_X509_CREATE_C) )
990#error "MBEDTLS_X509_CRT_WRITE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200991#endif
992
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200993#if defined(MBEDTLS_X509_CSR_WRITE_C) && ( !defined(MBEDTLS_X509_CREATE_C) )
994#error "MBEDTLS_X509_CSR_WRITE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200995#endif
996
Andres Amaya Garciad7fce002017-07-20 11:49:32 +0100997#if defined(MBEDTLS_HAVE_INT32) && defined(MBEDTLS_HAVE_INT64)
998#error "MBEDTLS_HAVE_INT32 and MBEDTLS_HAVE_INT64 cannot be defined simultaneously"
999#endif /* MBEDTLS_HAVE_INT32 && MBEDTLS_HAVE_INT64 */
1000
Andres Amaya Garcia93db11a2017-07-20 12:11:19 +01001001#if ( defined(MBEDTLS_HAVE_INT32) || defined(MBEDTLS_HAVE_INT64) ) && \
1002 defined(MBEDTLS_HAVE_ASM)
Andres Amaya Garciab39467d2017-07-20 13:21:15 +01001003#error "MBEDTLS_HAVE_INT32/MBEDTLS_HAVE_INT64 and MBEDTLS_HAVE_ASM cannot be defined simultaneously"
Andres Amaya Garciad7fce002017-07-20 11:49:32 +01001004#endif /* (MBEDTLS_HAVE_INT32 || MBEDTLS_HAVE_INT64) && MBEDTLS_HAVE_ASM */
1005
Ron Eldor3adb9922017-12-21 10:15:08 +02001006#if defined(MBEDTLS_SSL_DTLS_SRTP) && ( !defined(MBEDTLS_SSL_PROTO_DTLS) )
1007#error "MBEDTLS_SSL_DTLS_SRTP defined, but not all prerequisites"
1008#endif
1009
Andrzej Kurek557289b2020-10-21 15:12:39 +02001010#if defined(MBEDTLS_SSL_VARIABLE_BUFFER_LENGTH) && ( !defined(MBEDTLS_SSL_MAX_FRAGMENT_LENGTH) )
1011#error "MBEDTLS_SSL_VARIABLE_BUFFER_LENGTH defined, but not all prerequisites"
1012#endif
1013
Przemek Stekiele31ba832022-09-28 09:44:58 +02001014#if defined(MBEDTLS_SSL_CONTEXT_SERIALIZATION) && !( defined(MBEDTLS_GCM_C) || defined(MBEDTLS_CCM_C) || defined(MBEDTLS_CHACHAPOLY_C) )
Przemek Stekield582a012022-09-28 07:59:01 +02001015#error "MBEDTLS_SSL_CONTEXT_SERIALIZATION defined, but not all prerequisites"
1016#endif
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001017
1018/* Reject attempts to enable options that have been removed and that could
1019 * cause a build to succeed but with features removed. */
1020
1021#if defined(MBEDTLS_HAVEGE_C) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001022#error "MBEDTLS_HAVEGE_C was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/2599"
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001023#endif
1024
1025#if defined(MBEDTLS_SSL_HW_RECORD_ACCEL) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001026#error "MBEDTLS_SSL_HW_RECORD_ACCEL was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4031"
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001027#endif
1028
1029#if defined(MBEDTLS_SSL_PROTO_SSL3) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001030#error "MBEDTLS_SSL_PROTO_SSL3 (SSL v3.0 support) was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4031"
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001031#endif
1032
1033#if defined(MBEDTLS_SSL_SRV_SUPPORT_SSLV2_CLIENT_HELLO) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001034#error "MBEDTLS_SSL_SRV_SUPPORT_SSLV2_CLIENT_HELLO (SSL v2 ClientHello support) was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4031"
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001035#endif
1036
1037#if defined(MBEDTLS_SSL_TRUNCATED_HMAC_COMPAT) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001038#error "MBEDTLS_SSL_TRUNCATED_HMAC_COMPAT (compatibility with the buggy implementation of truncated HMAC in Mbed TLS up to 2.7) was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4031"
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001039#endif
1040
1041#if defined(MBEDTLS_TLS_DEFAULT_ALLOW_SHA1_IN_CERTIFICATES) //no-check-names
Gilles Peskinecc26e3b2021-04-21 19:01:59 +02001042#error "MBEDTLS_TLS_DEFAULT_ALLOW_SHA1_IN_CERTIFICATES was removed in Mbed TLS 3.0. See the ChangeLog entry if you really need SHA-1-signed certificates."
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001043#endif
1044
1045#if defined(MBEDTLS_ZLIB_SUPPORT) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001046#error "MBEDTLS_ZLIB_SUPPORT was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4031"
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001047#endif
1048
TRodziewiczcc707412021-05-14 15:08:04 +02001049#if defined(MBEDTLS_CHECK_PARAMS) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001050#error "MBEDTLS_CHECK_PARAMS was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4313"
TRodziewiczcc707412021-05-14 15:08:04 +02001051#endif
1052
TRodziewicz4e57f4c2021-05-31 12:58:25 +02001053#if defined(MBEDTLS_SSL_CID_PADDING_GRANULARITY) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001054#error "MBEDTLS_SSL_CID_PADDING_GRANULARITY was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4335"
TRodziewicz4e57f4c2021-05-31 12:58:25 +02001055#endif
1056
1057#if defined(MBEDTLS_SSL_TLS1_3_PADDING_GRANULARITY) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001058#error "MBEDTLS_SSL_TLS1_3_PADDING_GRANULARITY was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4335"
TRodziewicz4e57f4c2021-05-31 12:58:25 +02001059#endif
1060
Thomas Daubney4a7010d2021-06-15 12:54:14 +01001061#if defined(MBEDTLS_SSL_TRUNCATED_HMAC) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001062#error "MBEDTLS_SSL_TRUNCATED_HMAC was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4341"
Thomas Daubney4a7010d2021-06-15 12:54:14 +01001063#endif
1064
Manuel Pégourié-Gonnardf78e4de2015-05-29 10:52:14 +02001065/*
1066 * Avoid warning from -pedantic. This is a convenient place for this
1067 * workaround since this is included by every single file before the
Antonin Décimo36e89b52019-01-23 15:24:37 +01001068 * #if defined(MBEDTLS_xxx_C) that results in empty translation units.
Manuel Pégourié-Gonnardf78e4de2015-05-29 10:52:14 +02001069 */
1070typedef int mbedtls_iso_c_forbids_empty_translation_units;
1071
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001072#endif /* MBEDTLS_CHECK_CONFIG_H */