blob: a4b4f913f2d5900ad7de21694ccf33bddd7b1b84 [file] [log] [blame]
John Durkop6e33dbe2020-09-17 21:15:13 -07001/**
2 * \file mbedtls/config_psa.h
3 * \brief PSA crypto configuration options (set of defines)
4 *
John Durkop34818822020-10-12 21:36:22 -07005 * This set of compile-time options takes settings defined in
6 * include/mbedtls/config.h and include/psa/crypto_config.h and uses
7 * those definitions to define symbols used in the library code.
8 *
9 * Users and integrators should not edit this file, please edit
10 * include/mbedtls/config.h for MBETLS_XXX settings or
11 * include/psa/crypto_config.h for PSA_WANT_XXX settings.
John Durkop6e33dbe2020-09-17 21:15:13 -070012 */
13/*
14 * Copyright The Mbed TLS Contributors
15 * SPDX-License-Identifier: Apache-2.0
16 *
17 * Licensed under the Apache License, Version 2.0 (the "License"); you may
18 * not use this file except in compliance with the License.
19 * You may obtain a copy of the License at
20 *
21 * http://www.apache.org/licenses/LICENSE-2.0
22 *
23 * Unless required by applicable law or agreed to in writing, software
24 * distributed under the License is distributed on an "AS IS" BASIS, WITHOUT
25 * WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
26 * See the License for the specific language governing permissions and
27 * limitations under the License.
28 */
29
30#ifndef MBEDTLS_CONFIG_PSA_H
31#define MBEDTLS_CONFIG_PSA_H
32
John Durkop714e3a12020-09-29 22:07:04 -070033#if defined(MBEDTLS_PSA_CRYPTO_CONFIG)
John Durkop6e33dbe2020-09-17 21:15:13 -070034#include "psa/crypto_config.h"
John Durkop76228ac2020-09-29 22:33:49 -070035#endif /* defined(MBEDTLS_PSA_CRYPTO_CONFIG) */
John Durkop6e33dbe2020-09-17 21:15:13 -070036
37#ifdef __cplusplus
38extern "C" {
39#endif
40
John Durkop2dfaf9c2020-09-24 04:30:10 -070041#if defined(MBEDTLS_PSA_CRYPTO_CONFIG)
John Durkopd8959392020-09-20 23:09:17 -070042
John Durkopd62b6782020-11-30 21:06:05 -080043#if defined(PSA_WANT_ALG_DETERMINISTIC_ECDSA)
44#if !defined(MBEDTLS_PSA_ACCEL_ALG_DETERMINISTIC_ECDSA)
45#define MBEDTLS_PSA_BUILTIN_ALG_DETERMINISTIC_ECDSA 1
46#define MBEDTLS_ECDSA_DETERMINISTIC
47#define MBEDTLS_ECDSA_C
48#define MBEDTLS_HMAC_DRBG_C
49#define MBEDTLS_MD_C
50#endif /* !MBEDTLS_PSA_ACCEL_ALG_DETERMINISTIC_ECDSA */
51#endif /* PSA_WANT_ALG_DETERMINISTIC_ECDSA */
52
53#if defined(PSA_WANT_ALG_ECDH)
54#if !defined(MBEDTLS_PSA_ACCEL_ALG_ECDH)
55#define MBEDTLS_PSA_BUILTIN_ALG_ECDH 1
56#define MBEDTLS_ECDH_C
57#define MBEDTLS_ECP_C
58#define MBEDTLS_BIGNUM_C
59#endif /* !MBEDTLS_PSA_ACCEL_ALG_ECDH */
60#endif /* PSA_WANT_ALG_ECDH */
61
62#if defined(PSA_WANT_ALG_ECDSA)
63#if !defined(MBEDTLS_PSA_ACCEL_ALG_ECDSA)
64#define MBEDTLS_PSA_BUILTIN_ALG_ECDSA 1
65#define MBEDTLS_ECDSA_C
66#endif /* !MBEDTLS_PSA_ACCEL_ALG_ECDSA */
67#endif /* PSA_WANT_ALG_ECDSA */
68
69#if defined(PSA_WANT_ALG_HKDF)
70#if !defined(MBEDTLS_PSA_ACCEL_ALG_HKDF)
71#define MBEDTLS_PSA_BUILTIN_ALG_HMAC 1
72#define MBEDTLS_PSA_BUILTIN_ALG_HKDF 1
73#endif /* !MBEDTLS_PSA_ACCEL_ALG_HKDF */
74#endif /* PSA_WANT_ALG_HKDF */
75
76#if defined(PSA_WANT_ALG_HMAC)
77#if !defined(MBEDTLS_PSA_ACCEL_ALG_HMAC)
78#define MBEDTLS_PSA_BUILTIN_ALG_HMAC 1
79#endif /* !MBEDTLS_PSA_ACCEL_ALG_HMAC */
80#endif /* PSA_WANT_ALG_HMAC */
81
Gilles Peskine2cecfba2020-11-25 00:07:04 +010082#if defined(PSA_WANT_ALG_MD2) && !defined(MBEDTLS_PSA_ACCEL_ALG_MD2)
83#define MBEDTLS_PSA_BUILTIN_ALG_MD2 1
84#define MBEDTLS_MD2_C
85#endif
86
87#if defined(PSA_WANT_ALG_MD4) && !defined(MBEDTLS_PSA_ACCEL_ALG_MD4)
88#define MBEDTLS_PSA_BUILTIN_ALG_MD4 1
89#define MBEDTLS_MD4_C
90#endif
91
92#if defined(PSA_WANT_ALG_MD5) && !defined(MBEDTLS_PSA_ACCEL_ALG_MD5)
93#define MBEDTLS_PSA_BUILTIN_ALG_MD5 1
94#define MBEDTLS_MD5_C
95#endif
96
97#if defined(PSA_WANT_ALG_RIPEMD160) && !defined(MBEDTLS_PSA_ACCEL_ALG_RIPEMD160)
98#define MBEDTLS_PSA_BUILTIN_ALG_RIPEMD160 1
99#define MBEDTLS_RIPEMD160_C
100#endif
101
John Durkopd62b6782020-11-30 21:06:05 -0800102#if defined(PSA_WANT_ALG_RSA_OAEP)
103#if !defined(MBEDTLS_PSA_ACCEL_ALG_RSA_OAEP)
104#define MBEDTLS_PSA_BUILTIN_ALG_RSA_OAEP 1
105#define MBEDTLS_RSA_C
106#define MBEDTLS_BIGNUM_C
107#define MBEDTLS_OID_C
108#define MBEDTLS_PKCS1_V21
109#define MBEDTLS_MD_C
110#endif /* !MBEDTLS_PSA_ACCEL_ALG_RSA_OAEP */
111#endif /* PSA_WANT_ALG_RSA_OAEP */
112
113#if defined(PSA_WANT_ALG_RSA_PKCS1V15_CRYPT)
114#if !defined(MBEDTLS_PSA_ACCEL_ALG_RSA_PKCS1V15_CRYPT)
115#define MBEDTLS_PSA_BUILTIN_ALG_RSA_PKCS1V15_CRYPT 1
116#define MBEDTLS_RSA_C
117#define MBEDTLS_BIGNUM_C
118#define MBEDTLS_OID_C
119#define MBEDTLS_PKCS1_V15
120#endif /* !MBEDTLS_PSA_ACCEL_ALG_RSA_PKCS1V15_CRYPT */
121#endif /* PSA_WANT_ALG_RSA_PKCS1V15_CRYPT */
122
123#if defined(PSA_WANT_ALG_RSA_PKCS1V15_SIGN)
124#if !defined(MBEDTLS_PSA_ACCEL_ALG_RSA_PKCS1V15_SIGN)
125#define MBEDTLS_PSA_BUILTIN_ALG_RSA_PKCS1V15_SIGN 1
126#define MBEDTLS_RSA_C
127#define MBEDTLS_BIGNUM_C
128#define MBEDTLS_OID_C
129#define MBEDTLS_PKCS1_V15
130#define MBEDTLS_MD_C
131#endif /* !MBEDTLS_PSA_ACCEL_ALG_RSA_PKCS1V15_SIGN */
132#endif /* PSA_WANT_ALG_RSA_PKCS1V15_SIGN */
133
134#if defined(PSA_WANT_ALG_RSA_PSS)
135#if !defined(MBEDTLS_PSA_ACCEL_ALG_RSA_PSS)
136#define MBEDTLS_PSA_BUILTIN_ALG_RSA_PSS 1
137#define MBEDTLS_RSA_C
138#define MBEDTLS_BIGNUM_C
139#define MBEDTLS_OID_C
140#define MBEDTLS_PKCS1_V21
141#define MBEDTLS_MD_C
142#endif /* !MBEDTLS_PSA_ACCEL_ALG_RSA_PSS */
143#endif /* PSA_WANT_ALG_RSA_PSS */
144
Gilles Peskine2cecfba2020-11-25 00:07:04 +0100145#if defined(PSA_WANT_ALG_SHA_1) && !defined(MBEDTLS_PSA_ACCEL_ALG_SHA_1)
146#define MBEDTLS_PSA_BUILTIN_ALG_SHA_1 1
147#define MBEDTLS_SHA1_C
148#endif
149
150#if defined(PSA_WANT_ALG_SHA_224) && !defined(MBEDTLS_PSA_ACCEL_ALG_SHA_224)
151#define MBEDTLS_PSA_BUILTIN_ALG_SHA_224 1
152#define MBEDTLS_SHA256_C
153#endif
154
155#if defined(PSA_WANT_ALG_SHA_256) && !defined(MBEDTLS_PSA_ACCEL_ALG_SHA_256)
156#define MBEDTLS_PSA_BUILTIN_ALG_SHA_256 1
157#define MBEDTLS_SHA256_C
158#endif
159
160#if defined(PSA_WANT_ALG_SHA_384) && !defined(MBEDTLS_PSA_ACCEL_ALG_SHA_384)
161#define MBEDTLS_PSA_BUILTIN_ALG_SHA_384 1
162#define MBEDTLS_SHA512_C
163#endif
164
165#if defined(PSA_WANT_ALG_SHA_512) && !defined(MBEDTLS_PSA_ACCEL_ALG_SHA_512)
166#define MBEDTLS_PSA_BUILTIN_ALG_SHA_512 1
167#define MBEDTLS_SHA512_C
168#endif
169
John Durkop07cc04a2020-11-16 22:08:34 -0800170#if defined(PSA_WANT_ALG_TLS12_PRF)
171#if !defined(MBEDTLS_PSA_ACCEL_ALG_TLS12_PRF)
John Durkopd62b6782020-11-30 21:06:05 -0800172#define MBEDTLS_PSA_BUILTIN_ALG_TLS12_PRF 1
John Durkop07cc04a2020-11-16 22:08:34 -0800173#endif /* !MBEDTLS_PSA_ACCEL_ALG_TLS12_PRF */
174#endif /* PSA_WANT_ALG_TLS12_PRF */
175
176#if defined(PSA_WANT_ALG_TLS12_PSK_TO_MS)
177#if !defined(MBEDTLS_PSA_ACCEL_ALG_TLS12_PSK_TO_MS)
John Durkopd62b6782020-11-30 21:06:05 -0800178#define MBEDTLS_PSA_BUILTIN_ALG_TLS12_PSK_TO_MS 1
John Durkop07cc04a2020-11-16 22:08:34 -0800179#endif /* !MBEDTLS_PSA_ACCEL_ALG_TLS12_PSK_TO_MS */
180#endif /* PSA_WANT_ALG_TLS12_PSK_TO_MS */
181
182#if defined(PSA_WANT_KEY_TYPE_ECC_KEY_PAIR)
183#if !defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_KEY_PAIR)
John Durkopd62b6782020-11-30 21:06:05 -0800184#define MBEDTLS_PSA_BUILTIN_KEY_TYPE_ECC_KEY_PAIR 1
John Durkop07cc04a2020-11-16 22:08:34 -0800185#define MBEDTLS_ECP_C
186#define MBEDTLS_BIGNUM_C
187#endif /* !MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_KEY_PAIR */
188#endif /* PSA_WANT_KEY_TYPE_ECC_KEY_PAIR */
189
190#if defined(PSA_WANT_KEY_TYPE_ECC_PUBLIC_KEY)
191#if !defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_PUBLIC_KEY)
John Durkopd62b6782020-11-30 21:06:05 -0800192#define MBEDTLS_PSA_BUILTIN_KEY_TYPE_ECC_PUBLIC_KEY 1
John Durkop07cc04a2020-11-16 22:08:34 -0800193#define MBEDTLS_ECP_C
194#define MBEDTLS_BIGNUM_C
195#endif /* !MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_PUBLIC_KEY */
196#endif /* PSA_WANT_KEY_TYPE_ECC_PUBLIC_KEY */
197
John Durkop9814fa22020-11-04 12:28:15 -0800198#if defined(PSA_WANT_KEY_TYPE_RSA_KEY_PAIR)
John Durkop0e005192020-10-31 22:06:54 -0700199#if !defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_RSA_KEY_PAIR)
John Durkopd62b6782020-11-30 21:06:05 -0800200#define MBEDTLS_PSA_BUILTIN_KEY_TYPE_RSA_KEY_PAIR 1
John Durkop0e005192020-10-31 22:06:54 -0700201#define MBEDTLS_RSA_C
202#define MBEDTLS_BIGNUM_C
203#define MBEDTLS_OID_C
204#define MBEDTLS_GENPRIME
John Durkop07cc04a2020-11-16 22:08:34 -0800205#define MBEDTLS_PK_PARSE_C
206#define MBEDTLS_PK_WRITE_C
207#define MBEDTLS_PK_C
John Durkop0e005192020-10-31 22:06:54 -0700208#endif /* !MBEDTLS_PSA_ACCEL_KEY_TYPE_RSA_KEY_PAIR */
John Durkop9814fa22020-11-04 12:28:15 -0800209#endif /* PSA_WANT_KEY_TYPE_RSA_KEY_PAIR */
210
211#if defined(PSA_WANT_KEY_TYPE_RSA_PUBLIC_KEY)
John Durkop0e005192020-10-31 22:06:54 -0700212#if !defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_RSA_PUBLIC_KEY)
John Durkopd62b6782020-11-30 21:06:05 -0800213#define MBEDTLS_PSA_BUILTIN_KEY_TYPE_RSA_PUBLIC_KEY 1
John Durkop0e005192020-10-31 22:06:54 -0700214#define MBEDTLS_RSA_C
215#define MBEDTLS_BIGNUM_C
216#define MBEDTLS_OID_C
John Durkop07cc04a2020-11-16 22:08:34 -0800217#define MBEDTLS_PK_PARSE_C
218#define MBEDTLS_PK_WRITE_C
219#define MBEDTLS_PK_C
John Durkop0e005192020-10-31 22:06:54 -0700220#endif /* !MBEDTLS_PSA_ACCEL_KEY_TYPE_RSA_PUBLIC_KEY */
John Durkop9814fa22020-11-04 12:28:15 -0800221#endif /* PSA_WANT_KEY_TYPE_RSA_PUBLIC_KEY */
John Durkopd0321952020-10-29 21:37:36 -0700222
David Brown94933082021-01-05 12:03:25 -0700223#if defined(PSA_WANT_KEY_TYPE_AES)
224#if !defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_AES)
225#define MBEDTLS_AES_C
226#endif /* !MBEDTLS_PSA_ACCEL_KEY_TYPE_AES */
227#endif /* PSA_WANT_KEY_TYPE_AES */
228
David Brownec258cf2021-01-05 12:03:25 -0700229#if defined(PSA_WANT_KEY_TYPE_ARC4)
230#if !defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_ARC4)
231#define MBEDTLS_ARC4_C
232#endif /*!MBEDTLS_PSA_ACCEL_KEY_TYPE_ARC4 */
233#endif /* PSA_WANT_KEY_TYPE_ARC4 */
234
David Brown686e6e82021-01-05 12:03:25 -0700235#if defined(PSA_WANT_KEY_TYPE_CAMELLIA)
236#if !defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_CAMELLIA)
237#define MBEDTLS_CAMELLIA_C
238#endif /*!MBEDTLS_PSA_ACCEL_KEY_TYPE_CAMELLIA */
239#endif /* PSA_WANT_KEY_TYPE_CAMELLIA */
240
John Durkop714e3a12020-09-29 22:07:04 -0700241#else /* MBEDTLS_PSA_CRYPTO_CONFIG */
242
243/*
244 * Ensure PSA_WANT_* defines are setup properly if MBEDTLS_PSA_CRYPTO_CONFIG
245 * is not defined
246 */
Gilles Peskine2cecfba2020-11-25 00:07:04 +0100247
John Durkopd62b6782020-11-30 21:06:05 -0800248#if defined(MBEDTLS_ECDH_C)
249#define MBEDTLS_PSA_BUILTIN_ALG_ECDH 1
250#define PSA_WANT_ALG_ECDH 1
251#endif /* MBEDTLS_ECDH_C */
252
253#if defined(MBEDTLS_ECDSA_C)
254#define MBEDTLS_PSA_BUILTIN_ALG_ECDSA 1
255#define PSA_WANT_ALG_ECDSA 1
256
257// Only add in DETERMINISTIC support if ECDSA is also enabled
258#if defined(MBEDTLS_ECDSA_DETERMINISTIC)
259#define MBEDTLS_PSA_BUILTIN_ALG_DETERMINISTIC_ECDSA 1
260#define PSA_WANT_ALG_DETERMINISTIC_ECDSA 1
261#endif /* MBEDTLS_ECDSA_DETERMINISTIC */
262
263#endif /* MBEDTLS_ECDSA_C */
264
265#if defined(MBEDTLS_ECP_C)
266#define MBEDTLS_PSA_BUILTIN_KEY_TYPE_ECC_KEY_PAIR 1
267#define PSA_WANT_KEY_TYPE_ECC_KEY_PAIR 1
268#define MBEDTLS_PSA_BUILTIN_KEY_TYPE_ECC_PUBLIC_KEY 1
269#define PSA_WANT_KEY_TYPE_ECC_PUBLIC_KEY 1
270#endif /* MBEDTLS_ECP_C */
271
272#if defined(MBEDTLS_HKDF_C)
273#define MBEDTLS_PSA_BUILTIN_ALG_HMAC 1
274#define PSA_WANT_ALG_HMAC 1
275#define MBEDTLS_PSA_BUILTIN_ALG_HKDF 1
276#define PSA_WANT_ALG_HKDF 1
277#endif /* MBEDTLS_HKDF_C */
278
279#if defined(MBEDTLS_MD_C)
280#define MBEDTLS_PSA_BUILTIN_ALG_HMAC 1
281#define PSA_WANT_ALG_HMAC 1
Gilles Peskine47a89332021-01-12 00:00:15 +0100282#define PSA_WANT_KEY_TYPE_HMAC
John Durkopd62b6782020-11-30 21:06:05 -0800283#define MBEDTLS_PSA_BUILTIN_ALG_TLS12_PRF 1
284#define PSA_WANT_ALG_TLS12_PRF 1
285#define MBEDTLS_PSA_BUILTIN_ALG_TLS12_PSK_TO_MS 1
286#define PSA_WANT_ALG_TLS12_PSK_TO_MS 1
287#endif /* MBEDTLS_MD_C */
288
Gilles Peskine2cecfba2020-11-25 00:07:04 +0100289#if defined(MBEDTLS_MD2_C)
290#define MBEDTLS_PSA_BUILTIN_ALG_MD2 1
291#define PSA_WANT_ALG_MD2 1
292#endif
293
294#if defined(MBEDTLS_MD4_C)
295#define MBEDTLS_PSA_BUILTIN_ALG_MD4 1
296#define PSA_WANT_ALG_MD4 1
297#endif
298
299#if defined(MBEDTLS_MD5_C)
300#define MBEDTLS_PSA_BUILTIN_ALG_MD5 1
301#define PSA_WANT_ALG_MD5 1
302#endif
303
304#if defined(MBEDTLS_RIPEMD160_C)
305#define MBEDTLS_PSA_BUILTIN_ALG_RIPEMD160 1
306#define PSA_WANT_ALG_RIPEMD160 1
307#endif
308
John Durkopd62b6782020-11-30 21:06:05 -0800309#if defined(MBEDTLS_RSA_C)
310#if defined(MBEDTLS_PKCS1_V15)
311#define MBEDTLS_PSA_BUILTIN_ALG_RSA_PKCS1V15_CRYPT 1
312#define PSA_WANT_ALG_RSA_PKCS1V15_CRYPT 1
313#define MBEDTLS_PSA_BUILTIN_ALG_RSA_PKCS1V15_SIGN 1
314#define PSA_WANT_ALG_RSA_PKCS1V15_SIGN 1
315#endif /* MBEDTLSS_PKCS1_V15 */
316#if defined(MBEDTLS_PKCS1_V21)
317#define MBEDTLS_PSA_BUILTIN_ALG_RSA_OAEP 1
318#define PSA_WANT_ALG_RSA_OAEP 1
319#define MBEDTLS_PSA_BUILTIN_ALG_RSA_PSS 1
320#define PSA_WANT_ALG_RSA_PSS 1
321#endif /* MBEDTLS_PKCS1_V21 */
322#define MBEDTLS_PSA_BUILTIN_KEY_TYPE_RSA_KEY_PAIR 1
323#define PSA_WANT_KEY_TYPE_RSA_KEY_PAIR 1
324#define MBEDTLS_PSA_BUILTIN_KEY_TYPE_RSA_PUBLIC_KEY 1
325#define PSA_WANT_KEY_TYPE_RSA_PUBLIC_KEY 1
326#endif /* MBEDTLS_RSA_C */
327
Gilles Peskine2cecfba2020-11-25 00:07:04 +0100328#if defined(MBEDTLS_SHA1_C)
329#define MBEDTLS_PSA_BUILTIN_ALG_SHA_1 1
330#define PSA_WANT_ALG_SHA_1 1
331#endif
332
333#if defined(MBEDTLS_SHA256_C)
334#define MBEDTLS_PSA_BUILTIN_ALG_SHA_224 1
335#define MBEDTLS_PSA_BUILTIN_ALG_SHA_256 1
Gilles Peskineb65db072021-01-12 00:00:53 +0100336#define PSA_WANT_ALG_SHA_224 1
Gilles Peskine2cecfba2020-11-25 00:07:04 +0100337#define PSA_WANT_ALG_SHA_256 1
338#endif
339
340#if defined(MBEDTLS_SHA512_C)
341#if !defined(MBEDTLS_SHA512_NO_SHA384)
342#define MBEDTLS_PSA_BUILTIN_ALG_SHA_384 1
343#define PSA_WANT_ALG_SHA_384 1
344#endif
345#define MBEDTLS_PSA_BUILTIN_ALG_SHA_512 1
346#define PSA_WANT_ALG_SHA_512 1
347#endif
348
David Brown94933082021-01-05 12:03:25 -0700349#if defined(MBEDTLS_AES_C)
350#define PSA_WANT_KEY_TYPE_AES 1
351#endif
352
David Brownec258cf2021-01-05 12:03:25 -0700353#if defined(MBEDTLS_ARC4_C)
354#define PSA_WANT_KEY_TYPE_ARC4 1
355#endif
356
David Brown686e6e82021-01-05 12:03:25 -0700357#if defined(MBEDTLS_CAMELLIA_C)
358#define PSA_WANT_KEY_TYPE_CAMELLIA 1
359#endif
360
John Durkop2dfaf9c2020-09-24 04:30:10 -0700361#endif /* MBEDTLS_PSA_CRYPTO_CONFIG */
John Durkopd8959392020-09-20 23:09:17 -0700362
John Durkop6e33dbe2020-09-17 21:15:13 -0700363#ifdef __cplusplus
364}
365#endif
366
367#endif /* MBEDTLS_CONFIG_PSA_H */