28 #ifndef PSA_CRYPTO_EXTRA_H
29 #define PSA_CRYPTO_EXTRA_H
41 #define PSA_CRYPTO_ITS_RANDOM_SEED_UID 0xFFFFFF52
44 #if !defined(MBEDTLS_PSA_KEY_SLOT_COUNT)
45 #define MBEDTLS_PSA_KEY_SLOT_COUNT 32
90 #if defined(MBEDTLS_PSA_CRYPTO_SE_C)
141 static inline void psa_set_key_slot_number(
146 attributes->slot_number = slot_number;
155 static inline void psa_clear_key_slot_number(
338 #define PSA_KEY_TYPE_DSA_PUBLIC_KEY ((psa_key_type_t) 0x4002)
356 #define PSA_KEY_TYPE_DSA_KEY_PAIR ((psa_key_type_t) 0x7002)
359 #define PSA_KEY_TYPE_IS_DSA(type) \
360 (PSA_KEY_TYPE_PUBLIC_KEY_OF_KEY_PAIR(type) == PSA_KEY_TYPE_DSA_PUBLIC_KEY)
362 #define PSA_ALG_DSA_BASE ((psa_algorithm_t) 0x06000400)
377 #define PSA_ALG_DSA(hash_alg) \
378 (PSA_ALG_DSA_BASE | ((hash_alg) & PSA_ALG_HASH_MASK))
379 #define PSA_ALG_DETERMINISTIC_DSA_BASE ((psa_algorithm_t) 0x06000500)
380 #define PSA_ALG_DSA_DETERMINISTIC_FLAG PSA_ALG_ECDSA_DETERMINISTIC_FLAG
395 #define PSA_ALG_DETERMINISTIC_DSA(hash_alg) \
396 (PSA_ALG_DETERMINISTIC_DSA_BASE | ((hash_alg) & PSA_ALG_HASH_MASK))
397 #define PSA_ALG_IS_DSA(alg) \
398 (((alg) & ~PSA_ALG_HASH_MASK & ~PSA_ALG_DSA_DETERMINISTIC_FLAG) == \
400 #define PSA_ALG_DSA_IS_DETERMINISTIC(alg) \
401 (((alg) & PSA_ALG_DSA_DETERMINISTIC_FLAG) != 0)
402 #define PSA_ALG_IS_DETERMINISTIC_DSA(alg) \
403 (PSA_ALG_IS_DSA(alg) && PSA_ALG_DSA_IS_DETERMINISTIC(alg))
404 #define PSA_ALG_IS_RANDOMIZED_DSA(alg) \
405 (PSA_ALG_IS_DSA(alg) && !PSA_ALG_DSA_IS_DETERMINISTIC(alg))
410 #undef PSA_ALG_IS_VENDOR_HASH_AND_SIGN
411 #define PSA_ALG_IS_VENDOR_HASH_AND_SIGN(alg) \
426 #define PSA_DH_FAMILY_CUSTOM ((psa_dh_family_t) 0x7e)
527 size_t *data_length);
554 #define PSA_KEY_DOMAIN_PARAMETERS_SIZE(key_type, key_bits) \
555 (PSA_KEY_TYPE_IS_RSA(key_type) ? sizeof(int) : \
556 PSA_KEY_TYPE_IS_DH(key_type) ? PSA_DH_KEY_DOMAIN_PARAMETERS_SIZE(key_bits) : \
557 PSA_KEY_TYPE_IS_DSA(key_type) ? PSA_DSA_KEY_DOMAIN_PARAMETERS_SIZE(key_bits) : \
559 #define PSA_DH_KEY_DOMAIN_PARAMETERS_SIZE(key_bits) \
560 (4 + (PSA_BITS_TO_BYTES(key_bits) + 5) * 3 )
561 #define PSA_DSA_KEY_DOMAIN_PARAMETERS_SIZE(key_bits) \
562 (4 + (PSA_BITS_TO_BYTES(key_bits) + 5) * 2 + 34 )
570 #if defined(MBEDTLS_ECP_C)
665 #if defined(MBEDTLS_PSA_CRYPTO_EXTERNAL_RNG)
706 mbedtls_psa_external_random_context_t *context,
707 uint8_t *output,
size_t output_size,
size_t *output_length);
727 #define MBEDTLS_PSA_KEY_ID_BUILTIN_MIN ((psa_key_id_t) 0x7fff0000)
734 #define MBEDTLS_PSA_KEY_ID_BUILTIN_MAX ((psa_key_id_t) 0x7fffefff)
742 #if defined(MBEDTLS_PSA_CRYPTO_BUILTIN_KEYS)
752 static inline int psa_key_id_is_builtin(
psa_key_id_t key_id)
805 psa_drv_slot_number_t *slot_number);
static psa_ecc_family_t mbedtls_ecc_group_to_psa(mbedtls_ecp_group_id grpid, size_t *bits)
#define PSA_ECC_FAMILY_MONTGOMERY
PSA cryptography module: Backward compatibility aliases.
static void psa_set_key_enrollment_algorithm(psa_key_attributes_t *attributes, psa_algorithm_t alg2)
Declare the enrollment algorithm for a key.
#define MBEDTLS_PSA_KEY_ID_BUILTIN_MIN
This file provides an API for Elliptic Curves over GF(P) (ECP).
psa_key_attributes_flag_t flags
PSA cryptography module: type aliases.
psa_core_key_attributes_t core
uint64_t psa_drv_slot_number_t
#define MBEDTLS_PSA_KA_FLAG_HAS_SLOT_NUMBER
psa_status_t psa_set_key_domain_parameters(psa_key_attributes_t *attributes, psa_key_type_t type, const uint8_t *data, size_t data_length)
Set domain parameters for a key.
#define PSA_ECC_FAMILY_BRAINPOOL_P_R1
uint64_t psa_key_slot_number_t
mbedtls_ecp_group_id mbedtls_ecc_group_of_psa(psa_ecc_family_t curve, size_t bits, int bits_is_sloppy)
static psa_algorithm_t psa_get_key_enrollment_algorithm(const psa_key_attributes_t *attributes)
uint32_t psa_algorithm_t
Encoding of a cryptographic algorithm.
#define PSA_ECC_FAMILY_SECP_R1
uint16_t psa_key_type_t
Encoding of a key type.
psa_key_id_t max_open_internal_key_id
#define MBEDTLS_PSA_KEY_ID_BUILTIN_MAX
psa_key_id_t mbedtls_svc_key_id_t
psa_status_t psa_get_key_domain_parameters(const psa_key_attributes_t *attributes, uint8_t *data, size_t data_size, size_t *data_length)
Get domain parameters for a key.
#define PSA_ECC_FAMILY_SECP_K1
uint32_t psa_key_lifetime_t
psa_key_id_t max_open_external_key_id
int32_t psa_status_t
Function return status.
Statistics about resource consumption related to the PSA keystore.