blob: d011c383b8bccb13aeb0080c468bbeb326a52957 [file] [log] [blame]
John Durkop6e33dbe2020-09-17 21:15:13 -07001/**
2 * \file mbedtls/config_psa.h
3 * \brief PSA crypto configuration options (set of defines)
4 *
John Durkop34818822020-10-12 21:36:22 -07005 * This set of compile-time options takes settings defined in
6 * include/mbedtls/config.h and include/psa/crypto_config.h and uses
7 * those definitions to define symbols used in the library code.
8 *
9 * Users and integrators should not edit this file, please edit
10 * include/mbedtls/config.h for MBETLS_XXX settings or
11 * include/psa/crypto_config.h for PSA_WANT_XXX settings.
John Durkop6e33dbe2020-09-17 21:15:13 -070012 */
13/*
14 * Copyright The Mbed TLS Contributors
15 * SPDX-License-Identifier: Apache-2.0
16 *
17 * Licensed under the Apache License, Version 2.0 (the "License"); you may
18 * not use this file except in compliance with the License.
19 * You may obtain a copy of the License at
20 *
21 * http://www.apache.org/licenses/LICENSE-2.0
22 *
23 * Unless required by applicable law or agreed to in writing, software
24 * distributed under the License is distributed on an "AS IS" BASIS, WITHOUT
25 * WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
26 * See the License for the specific language governing permissions and
27 * limitations under the License.
28 */
29
30#ifndef MBEDTLS_CONFIG_PSA_H
31#define MBEDTLS_CONFIG_PSA_H
32
John Durkop714e3a12020-09-29 22:07:04 -070033#if defined(MBEDTLS_PSA_CRYPTO_CONFIG)
John Durkop6e33dbe2020-09-17 21:15:13 -070034#include "psa/crypto_config.h"
John Durkop76228ac2020-09-29 22:33:49 -070035#endif /* defined(MBEDTLS_PSA_CRYPTO_CONFIG) */
John Durkop6e33dbe2020-09-17 21:15:13 -070036
37#ifdef __cplusplus
38extern "C" {
39#endif
40
John Durkop2dfaf9c2020-09-24 04:30:10 -070041#if defined(MBEDTLS_PSA_CRYPTO_CONFIG)
John Durkopd8959392020-09-20 23:09:17 -070042
John Durkopd62b6782020-11-30 21:06:05 -080043#if defined(PSA_WANT_ALG_DETERMINISTIC_ECDSA)
44#if !defined(MBEDTLS_PSA_ACCEL_ALG_DETERMINISTIC_ECDSA)
45#define MBEDTLS_PSA_BUILTIN_ALG_DETERMINISTIC_ECDSA 1
46#define MBEDTLS_ECDSA_DETERMINISTIC
47#define MBEDTLS_ECDSA_C
48#define MBEDTLS_HMAC_DRBG_C
49#define MBEDTLS_MD_C
50#endif /* !MBEDTLS_PSA_ACCEL_ALG_DETERMINISTIC_ECDSA */
51#endif /* PSA_WANT_ALG_DETERMINISTIC_ECDSA */
52
53#if defined(PSA_WANT_ALG_ECDH)
54#if !defined(MBEDTLS_PSA_ACCEL_ALG_ECDH)
55#define MBEDTLS_PSA_BUILTIN_ALG_ECDH 1
56#define MBEDTLS_ECDH_C
57#define MBEDTLS_ECP_C
58#define MBEDTLS_BIGNUM_C
59#endif /* !MBEDTLS_PSA_ACCEL_ALG_ECDH */
60#endif /* PSA_WANT_ALG_ECDH */
61
62#if defined(PSA_WANT_ALG_ECDSA)
63#if !defined(MBEDTLS_PSA_ACCEL_ALG_ECDSA)
64#define MBEDTLS_PSA_BUILTIN_ALG_ECDSA 1
65#define MBEDTLS_ECDSA_C
66#endif /* !MBEDTLS_PSA_ACCEL_ALG_ECDSA */
67#endif /* PSA_WANT_ALG_ECDSA */
68
69#if defined(PSA_WANT_ALG_HKDF)
70#if !defined(MBEDTLS_PSA_ACCEL_ALG_HKDF)
71#define MBEDTLS_PSA_BUILTIN_ALG_HMAC 1
72#define MBEDTLS_PSA_BUILTIN_ALG_HKDF 1
73#endif /* !MBEDTLS_PSA_ACCEL_ALG_HKDF */
74#endif /* PSA_WANT_ALG_HKDF */
75
76#if defined(PSA_WANT_ALG_HMAC)
77#if !defined(MBEDTLS_PSA_ACCEL_ALG_HMAC)
78#define MBEDTLS_PSA_BUILTIN_ALG_HMAC 1
79#endif /* !MBEDTLS_PSA_ACCEL_ALG_HMAC */
80#endif /* PSA_WANT_ALG_HMAC */
81
Gilles Peskine2cecfba2020-11-25 00:07:04 +010082#if defined(PSA_WANT_ALG_MD2) && !defined(MBEDTLS_PSA_ACCEL_ALG_MD2)
83#define MBEDTLS_PSA_BUILTIN_ALG_MD2 1
84#define MBEDTLS_MD2_C
85#endif
86
87#if defined(PSA_WANT_ALG_MD4) && !defined(MBEDTLS_PSA_ACCEL_ALG_MD4)
88#define MBEDTLS_PSA_BUILTIN_ALG_MD4 1
89#define MBEDTLS_MD4_C
90#endif
91
92#if defined(PSA_WANT_ALG_MD5) && !defined(MBEDTLS_PSA_ACCEL_ALG_MD5)
93#define MBEDTLS_PSA_BUILTIN_ALG_MD5 1
94#define MBEDTLS_MD5_C
95#endif
96
97#if defined(PSA_WANT_ALG_RIPEMD160) && !defined(MBEDTLS_PSA_ACCEL_ALG_RIPEMD160)
98#define MBEDTLS_PSA_BUILTIN_ALG_RIPEMD160 1
99#define MBEDTLS_RIPEMD160_C
100#endif
101
John Durkopd62b6782020-11-30 21:06:05 -0800102#if defined(PSA_WANT_ALG_RSA_OAEP)
103#if !defined(MBEDTLS_PSA_ACCEL_ALG_RSA_OAEP)
104#define MBEDTLS_PSA_BUILTIN_ALG_RSA_OAEP 1
105#define MBEDTLS_RSA_C
106#define MBEDTLS_BIGNUM_C
107#define MBEDTLS_OID_C
108#define MBEDTLS_PKCS1_V21
109#define MBEDTLS_MD_C
110#endif /* !MBEDTLS_PSA_ACCEL_ALG_RSA_OAEP */
111#endif /* PSA_WANT_ALG_RSA_OAEP */
112
113#if defined(PSA_WANT_ALG_RSA_PKCS1V15_CRYPT)
114#if !defined(MBEDTLS_PSA_ACCEL_ALG_RSA_PKCS1V15_CRYPT)
115#define MBEDTLS_PSA_BUILTIN_ALG_RSA_PKCS1V15_CRYPT 1
116#define MBEDTLS_RSA_C
117#define MBEDTLS_BIGNUM_C
118#define MBEDTLS_OID_C
119#define MBEDTLS_PKCS1_V15
120#endif /* !MBEDTLS_PSA_ACCEL_ALG_RSA_PKCS1V15_CRYPT */
121#endif /* PSA_WANT_ALG_RSA_PKCS1V15_CRYPT */
122
123#if defined(PSA_WANT_ALG_RSA_PKCS1V15_SIGN)
124#if !defined(MBEDTLS_PSA_ACCEL_ALG_RSA_PKCS1V15_SIGN)
125#define MBEDTLS_PSA_BUILTIN_ALG_RSA_PKCS1V15_SIGN 1
126#define MBEDTLS_RSA_C
127#define MBEDTLS_BIGNUM_C
128#define MBEDTLS_OID_C
129#define MBEDTLS_PKCS1_V15
130#define MBEDTLS_MD_C
131#endif /* !MBEDTLS_PSA_ACCEL_ALG_RSA_PKCS1V15_SIGN */
132#endif /* PSA_WANT_ALG_RSA_PKCS1V15_SIGN */
133
134#if defined(PSA_WANT_ALG_RSA_PSS)
135#if !defined(MBEDTLS_PSA_ACCEL_ALG_RSA_PSS)
136#define MBEDTLS_PSA_BUILTIN_ALG_RSA_PSS 1
137#define MBEDTLS_RSA_C
138#define MBEDTLS_BIGNUM_C
139#define MBEDTLS_OID_C
140#define MBEDTLS_PKCS1_V21
141#define MBEDTLS_MD_C
142#endif /* !MBEDTLS_PSA_ACCEL_ALG_RSA_PSS */
143#endif /* PSA_WANT_ALG_RSA_PSS */
144
Gilles Peskine2cecfba2020-11-25 00:07:04 +0100145#if defined(PSA_WANT_ALG_SHA_1) && !defined(MBEDTLS_PSA_ACCEL_ALG_SHA_1)
146#define MBEDTLS_PSA_BUILTIN_ALG_SHA_1 1
147#define MBEDTLS_SHA1_C
148#endif
149
150#if defined(PSA_WANT_ALG_SHA_224) && !defined(MBEDTLS_PSA_ACCEL_ALG_SHA_224)
151#define MBEDTLS_PSA_BUILTIN_ALG_SHA_224 1
152#define MBEDTLS_SHA256_C
153#endif
154
155#if defined(PSA_WANT_ALG_SHA_256) && !defined(MBEDTLS_PSA_ACCEL_ALG_SHA_256)
156#define MBEDTLS_PSA_BUILTIN_ALG_SHA_256 1
157#define MBEDTLS_SHA256_C
158#endif
159
160#if defined(PSA_WANT_ALG_SHA_384) && !defined(MBEDTLS_PSA_ACCEL_ALG_SHA_384)
161#define MBEDTLS_PSA_BUILTIN_ALG_SHA_384 1
162#define MBEDTLS_SHA512_C
163#endif
164
165#if defined(PSA_WANT_ALG_SHA_512) && !defined(MBEDTLS_PSA_ACCEL_ALG_SHA_512)
166#define MBEDTLS_PSA_BUILTIN_ALG_SHA_512 1
167#define MBEDTLS_SHA512_C
168#endif
169
John Durkop07cc04a2020-11-16 22:08:34 -0800170#if defined(PSA_WANT_ALG_TLS12_PRF)
171#if !defined(MBEDTLS_PSA_ACCEL_ALG_TLS12_PRF)
John Durkopd62b6782020-11-30 21:06:05 -0800172#define MBEDTLS_PSA_BUILTIN_ALG_TLS12_PRF 1
John Durkop07cc04a2020-11-16 22:08:34 -0800173#endif /* !MBEDTLS_PSA_ACCEL_ALG_TLS12_PRF */
174#endif /* PSA_WANT_ALG_TLS12_PRF */
175
176#if defined(PSA_WANT_ALG_TLS12_PSK_TO_MS)
177#if !defined(MBEDTLS_PSA_ACCEL_ALG_TLS12_PSK_TO_MS)
John Durkopd62b6782020-11-30 21:06:05 -0800178#define MBEDTLS_PSA_BUILTIN_ALG_TLS12_PSK_TO_MS 1
John Durkop07cc04a2020-11-16 22:08:34 -0800179#endif /* !MBEDTLS_PSA_ACCEL_ALG_TLS12_PSK_TO_MS */
180#endif /* PSA_WANT_ALG_TLS12_PSK_TO_MS */
181
182#if defined(PSA_WANT_KEY_TYPE_ECC_KEY_PAIR)
183#if !defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_KEY_PAIR)
John Durkopd62b6782020-11-30 21:06:05 -0800184#define MBEDTLS_PSA_BUILTIN_KEY_TYPE_ECC_KEY_PAIR 1
John Durkop07cc04a2020-11-16 22:08:34 -0800185#define MBEDTLS_ECP_C
186#define MBEDTLS_BIGNUM_C
187#endif /* !MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_KEY_PAIR */
188#endif /* PSA_WANT_KEY_TYPE_ECC_KEY_PAIR */
189
190#if defined(PSA_WANT_KEY_TYPE_ECC_PUBLIC_KEY)
191#if !defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_PUBLIC_KEY)
John Durkopd62b6782020-11-30 21:06:05 -0800192#define MBEDTLS_PSA_BUILTIN_KEY_TYPE_ECC_PUBLIC_KEY 1
John Durkop07cc04a2020-11-16 22:08:34 -0800193#define MBEDTLS_ECP_C
194#define MBEDTLS_BIGNUM_C
195#endif /* !MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_PUBLIC_KEY */
196#endif /* PSA_WANT_KEY_TYPE_ECC_PUBLIC_KEY */
197
John Durkop9814fa22020-11-04 12:28:15 -0800198#if defined(PSA_WANT_KEY_TYPE_RSA_KEY_PAIR)
John Durkop0e005192020-10-31 22:06:54 -0700199#if !defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_RSA_KEY_PAIR)
John Durkopd62b6782020-11-30 21:06:05 -0800200#define MBEDTLS_PSA_BUILTIN_KEY_TYPE_RSA_KEY_PAIR 1
John Durkop0e005192020-10-31 22:06:54 -0700201#define MBEDTLS_RSA_C
202#define MBEDTLS_BIGNUM_C
203#define MBEDTLS_OID_C
204#define MBEDTLS_GENPRIME
John Durkop07cc04a2020-11-16 22:08:34 -0800205#define MBEDTLS_PK_PARSE_C
206#define MBEDTLS_PK_WRITE_C
207#define MBEDTLS_PK_C
John Durkop0e005192020-10-31 22:06:54 -0700208#endif /* !MBEDTLS_PSA_ACCEL_KEY_TYPE_RSA_KEY_PAIR */
John Durkop9814fa22020-11-04 12:28:15 -0800209#endif /* PSA_WANT_KEY_TYPE_RSA_KEY_PAIR */
210
211#if defined(PSA_WANT_KEY_TYPE_RSA_PUBLIC_KEY)
John Durkop0e005192020-10-31 22:06:54 -0700212#if !defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_RSA_PUBLIC_KEY)
John Durkopd62b6782020-11-30 21:06:05 -0800213#define MBEDTLS_PSA_BUILTIN_KEY_TYPE_RSA_PUBLIC_KEY 1
John Durkop0e005192020-10-31 22:06:54 -0700214#define MBEDTLS_RSA_C
215#define MBEDTLS_BIGNUM_C
216#define MBEDTLS_OID_C
John Durkop07cc04a2020-11-16 22:08:34 -0800217#define MBEDTLS_PK_PARSE_C
218#define MBEDTLS_PK_WRITE_C
219#define MBEDTLS_PK_C
John Durkop0e005192020-10-31 22:06:54 -0700220#endif /* !MBEDTLS_PSA_ACCEL_KEY_TYPE_RSA_PUBLIC_KEY */
John Durkop9814fa22020-11-04 12:28:15 -0800221#endif /* PSA_WANT_KEY_TYPE_RSA_PUBLIC_KEY */
John Durkopd0321952020-10-29 21:37:36 -0700222
David Brown94933082021-01-05 12:03:25 -0700223#if defined(PSA_WANT_KEY_TYPE_AES)
224#if !defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_AES)
225#define MBEDTLS_AES_C
226#endif /* !MBEDTLS_PSA_ACCEL_KEY_TYPE_AES */
227#endif /* PSA_WANT_KEY_TYPE_AES */
228
John Durkop714e3a12020-09-29 22:07:04 -0700229#else /* MBEDTLS_PSA_CRYPTO_CONFIG */
230
231/*
232 * Ensure PSA_WANT_* defines are setup properly if MBEDTLS_PSA_CRYPTO_CONFIG
233 * is not defined
234 */
Gilles Peskine2cecfba2020-11-25 00:07:04 +0100235
John Durkopd62b6782020-11-30 21:06:05 -0800236#if defined(MBEDTLS_ECDH_C)
237#define MBEDTLS_PSA_BUILTIN_ALG_ECDH 1
238#define PSA_WANT_ALG_ECDH 1
239#endif /* MBEDTLS_ECDH_C */
240
241#if defined(MBEDTLS_ECDSA_C)
242#define MBEDTLS_PSA_BUILTIN_ALG_ECDSA 1
243#define PSA_WANT_ALG_ECDSA 1
244
245// Only add in DETERMINISTIC support if ECDSA is also enabled
246#if defined(MBEDTLS_ECDSA_DETERMINISTIC)
247#define MBEDTLS_PSA_BUILTIN_ALG_DETERMINISTIC_ECDSA 1
248#define PSA_WANT_ALG_DETERMINISTIC_ECDSA 1
249#endif /* MBEDTLS_ECDSA_DETERMINISTIC */
250
251#endif /* MBEDTLS_ECDSA_C */
252
253#if defined(MBEDTLS_ECP_C)
254#define MBEDTLS_PSA_BUILTIN_KEY_TYPE_ECC_KEY_PAIR 1
255#define PSA_WANT_KEY_TYPE_ECC_KEY_PAIR 1
256#define MBEDTLS_PSA_BUILTIN_KEY_TYPE_ECC_PUBLIC_KEY 1
257#define PSA_WANT_KEY_TYPE_ECC_PUBLIC_KEY 1
258#endif /* MBEDTLS_ECP_C */
259
260#if defined(MBEDTLS_HKDF_C)
261#define MBEDTLS_PSA_BUILTIN_ALG_HMAC 1
262#define PSA_WANT_ALG_HMAC 1
263#define MBEDTLS_PSA_BUILTIN_ALG_HKDF 1
264#define PSA_WANT_ALG_HKDF 1
265#endif /* MBEDTLS_HKDF_C */
266
267#if defined(MBEDTLS_MD_C)
268#define MBEDTLS_PSA_BUILTIN_ALG_HMAC 1
269#define PSA_WANT_ALG_HMAC 1
Gilles Peskine47a89332021-01-12 00:00:15 +0100270#define PSA_WANT_KEY_TYPE_HMAC
John Durkopd62b6782020-11-30 21:06:05 -0800271#define MBEDTLS_PSA_BUILTIN_ALG_TLS12_PRF 1
272#define PSA_WANT_ALG_TLS12_PRF 1
273#define MBEDTLS_PSA_BUILTIN_ALG_TLS12_PSK_TO_MS 1
274#define PSA_WANT_ALG_TLS12_PSK_TO_MS 1
275#endif /* MBEDTLS_MD_C */
276
Gilles Peskine2cecfba2020-11-25 00:07:04 +0100277#if defined(MBEDTLS_MD2_C)
278#define MBEDTLS_PSA_BUILTIN_ALG_MD2 1
279#define PSA_WANT_ALG_MD2 1
280#endif
281
282#if defined(MBEDTLS_MD4_C)
283#define MBEDTLS_PSA_BUILTIN_ALG_MD4 1
284#define PSA_WANT_ALG_MD4 1
285#endif
286
287#if defined(MBEDTLS_MD5_C)
288#define MBEDTLS_PSA_BUILTIN_ALG_MD5 1
289#define PSA_WANT_ALG_MD5 1
290#endif
291
292#if defined(MBEDTLS_RIPEMD160_C)
293#define MBEDTLS_PSA_BUILTIN_ALG_RIPEMD160 1
294#define PSA_WANT_ALG_RIPEMD160 1
295#endif
296
John Durkopd62b6782020-11-30 21:06:05 -0800297#if defined(MBEDTLS_RSA_C)
298#if defined(MBEDTLS_PKCS1_V15)
299#define MBEDTLS_PSA_BUILTIN_ALG_RSA_PKCS1V15_CRYPT 1
300#define PSA_WANT_ALG_RSA_PKCS1V15_CRYPT 1
301#define MBEDTLS_PSA_BUILTIN_ALG_RSA_PKCS1V15_SIGN 1
302#define PSA_WANT_ALG_RSA_PKCS1V15_SIGN 1
303#endif /* MBEDTLSS_PKCS1_V15 */
304#if defined(MBEDTLS_PKCS1_V21)
305#define MBEDTLS_PSA_BUILTIN_ALG_RSA_OAEP 1
306#define PSA_WANT_ALG_RSA_OAEP 1
307#define MBEDTLS_PSA_BUILTIN_ALG_RSA_PSS 1
308#define PSA_WANT_ALG_RSA_PSS 1
309#endif /* MBEDTLS_PKCS1_V21 */
310#define MBEDTLS_PSA_BUILTIN_KEY_TYPE_RSA_KEY_PAIR 1
311#define PSA_WANT_KEY_TYPE_RSA_KEY_PAIR 1
312#define MBEDTLS_PSA_BUILTIN_KEY_TYPE_RSA_PUBLIC_KEY 1
313#define PSA_WANT_KEY_TYPE_RSA_PUBLIC_KEY 1
314#endif /* MBEDTLS_RSA_C */
315
Gilles Peskine2cecfba2020-11-25 00:07:04 +0100316#if defined(MBEDTLS_SHA1_C)
317#define MBEDTLS_PSA_BUILTIN_ALG_SHA_1 1
318#define PSA_WANT_ALG_SHA_1 1
319#endif
320
321#if defined(MBEDTLS_SHA256_C)
322#define MBEDTLS_PSA_BUILTIN_ALG_SHA_224 1
323#define MBEDTLS_PSA_BUILTIN_ALG_SHA_256 1
Gilles Peskineb65db072021-01-12 00:00:53 +0100324#define PSA_WANT_ALG_SHA_224 1
Gilles Peskine2cecfba2020-11-25 00:07:04 +0100325#define PSA_WANT_ALG_SHA_256 1
326#endif
327
328#if defined(MBEDTLS_SHA512_C)
329#if !defined(MBEDTLS_SHA512_NO_SHA384)
330#define MBEDTLS_PSA_BUILTIN_ALG_SHA_384 1
331#define PSA_WANT_ALG_SHA_384 1
332#endif
333#define MBEDTLS_PSA_BUILTIN_ALG_SHA_512 1
334#define PSA_WANT_ALG_SHA_512 1
335#endif
336
David Brown94933082021-01-05 12:03:25 -0700337#if defined(MBEDTLS_AES_C)
338#define PSA_WANT_KEY_TYPE_AES 1
339#endif
340
John Durkop2dfaf9c2020-09-24 04:30:10 -0700341#endif /* MBEDTLS_PSA_CRYPTO_CONFIG */
John Durkopd8959392020-09-20 23:09:17 -0700342
John Durkop6e33dbe2020-09-17 21:15:13 -0700343#ifdef __cplusplus
344}
345#endif
346
347#endif /* MBEDTLS_CONFIG_PSA_H */