16 #ifndef PSA_CRYPTO_EXTRA_H
17 #define PSA_CRYPTO_EXTRA_H
28 #define PSA_CRYPTO_ITS_RANDOM_SEED_UID 0xFFFFFF52
31 #if !defined(MBEDTLS_PSA_KEY_SLOT_COUNT)
32 #define MBEDTLS_PSA_KEY_SLOT_COUNT 32
38 #if !defined(MBEDTLS_PSA_STATIC_KEY_SLOT_BUFFER_SIZE)
40 #define MBEDTLS_PSA_STATIC_KEY_SLOT_BUFFER_SIZE 1
42 #if PSA_EXPORT_ASYMMETRIC_KEY_MAX_SIZE > MBEDTLS_PSA_STATIC_KEY_SLOT_BUFFER_SIZE
43 #undef MBEDTLS_PSA_STATIC_KEY_SLOT_BUFFER_SIZE
44 #define MBEDTLS_PSA_STATIC_KEY_SLOT_BUFFER_SIZE PSA_EXPORT_ASYMMETRIC_KEY_MAX_SIZE
48 #if PSA_CIPHER_MAX_KEY_LENGTH > MBEDTLS_PSA_STATIC_KEY_SLOT_BUFFER_SIZE
49 #undef MBEDTLS_PSA_STATIC_KEY_SLOT_BUFFER_SIZE
50 #define MBEDTLS_PSA_STATIC_KEY_SLOT_BUFFER_SIZE PSA_CIPHER_MAX_KEY_LENGTH
55 #if defined(PSA_WANT_ALG_HMAC)
56 #if PSA_HASH_MAX_SIZE > MBEDTLS_PSA_STATIC_KEY_SLOT_BUFFER_SIZE
57 #undef MBEDTLS_PSA_STATIC_KEY_SLOT_BUFFER_SIZE
58 #define MBEDTLS_PSA_STATIC_KEY_SLOT_BUFFER_SIZE PSA_HASH_MAX_SIZE
91 attributes->MBEDTLS_PRIVATE(policy).MBEDTLS_PRIVATE(alg2) = alg2;
103 return attributes->MBEDTLS_PRIVATE(policy).MBEDTLS_PRIVATE(alg2);
106 #if defined(MBEDTLS_PSA_CRYPTO_SE_C)
157 static inline void psa_set_key_slot_number(
161 attributes->MBEDTLS_PRIVATE(has_slot_number) = 1;
162 attributes->MBEDTLS_PRIVATE(slot_number) = slot_number;
171 static inline void psa_clear_key_slot_number(
174 attributes->MBEDTLS_PRIVATE(has_slot_number) = 0;
366 #define PSA_KEY_TYPE_DSA_PUBLIC_KEY ((psa_key_type_t) 0x4002)
384 #define PSA_KEY_TYPE_DSA_KEY_PAIR ((psa_key_type_t) 0x7002)
387 #define PSA_KEY_TYPE_IS_DSA(type) \
388 (PSA_KEY_TYPE_PUBLIC_KEY_OF_KEY_PAIR(type) == PSA_KEY_TYPE_DSA_PUBLIC_KEY)
390 #define PSA_ALG_DSA_BASE ((psa_algorithm_t) 0x06000400)
405 #define PSA_ALG_DSA(hash_alg) \
406 (PSA_ALG_DSA_BASE | ((hash_alg) & PSA_ALG_HASH_MASK))
407 #define PSA_ALG_DETERMINISTIC_DSA_BASE ((psa_algorithm_t) 0x06000500)
408 #define PSA_ALG_DSA_DETERMINISTIC_FLAG PSA_ALG_ECDSA_DETERMINISTIC_FLAG
423 #define PSA_ALG_DETERMINISTIC_DSA(hash_alg) \
424 (PSA_ALG_DETERMINISTIC_DSA_BASE | ((hash_alg) & PSA_ALG_HASH_MASK))
425 #define PSA_ALG_IS_DSA(alg) \
426 (((alg) & ~PSA_ALG_HASH_MASK & ~PSA_ALG_DSA_DETERMINISTIC_FLAG) == \
428 #define PSA_ALG_DSA_IS_DETERMINISTIC(alg) \
429 (((alg) & PSA_ALG_DSA_DETERMINISTIC_FLAG) != 0)
430 #define PSA_ALG_IS_DETERMINISTIC_DSA(alg) \
431 (PSA_ALG_IS_DSA(alg) && PSA_ALG_DSA_IS_DETERMINISTIC(alg))
432 #define PSA_ALG_IS_RANDOMIZED_DSA(alg) \
433 (PSA_ALG_IS_DSA(alg) && !PSA_ALG_DSA_IS_DETERMINISTIC(alg))
438 #undef PSA_ALG_IS_VENDOR_HASH_AND_SIGN
439 #define PSA_ALG_IS_VENDOR_HASH_AND_SIGN(alg) \
449 #define PSA_PAKE_OPERATION_STAGE_SETUP 0
450 #define PSA_PAKE_OPERATION_STAGE_COLLECT_INPUTS 1
451 #define PSA_PAKE_OPERATION_STAGE_COMPUTATION 2
460 #if defined(MBEDTLS_PSA_CRYPTO_EXTERNAL_RNG)
501 mbedtls_psa_external_random_context_t *context,
502 uint8_t *output,
size_t output_size,
size_t *output_length);
671 #define MBEDTLS_PSA_KEY_ID_BUILTIN_MIN ((psa_key_id_t) 0x7fff0000)
678 #define MBEDTLS_PSA_KEY_ID_BUILTIN_MAX ((psa_key_id_t) 0x7fffefff)
686 #if defined(MBEDTLS_PSA_CRYPTO_BUILTIN_KEYS)
696 static inline int psa_key_id_is_builtin(
psa_key_id_t key_id)
749 psa_drv_slot_number_t *slot_number);
803 #define PSA_ALG_CATEGORY_PAKE ((psa_algorithm_t) 0x0a000000)
814 #define PSA_ALG_IS_PAKE(alg) \
815 (((alg) & PSA_ALG_CATEGORY_MASK) == PSA_ALG_CATEGORY_PAKE)
943 #define PSA_ALG_JPAKE ((psa_algorithm_t) 0x0a000100)
1002 #define PSA_PAKE_ROLE_NONE ((psa_pake_role_t) 0x00)
1011 #define PSA_PAKE_ROLE_FIRST ((psa_pake_role_t) 0x01)
1020 #define PSA_PAKE_ROLE_SECOND ((psa_pake_role_t) 0x02)
1026 #define PSA_PAKE_ROLE_CLIENT ((psa_pake_role_t) 0x11)
1032 #define PSA_PAKE_ROLE_SERVER ((psa_pake_role_t) 0x12)
1052 #define PSA_PAKE_PRIMITIVE_TYPE_ECC ((psa_pake_primitive_type_t) 0x01)
1072 #define PSA_PAKE_PRIMITIVE_TYPE_DH ((psa_pake_primitive_type_t) 0x02)
1093 #define PSA_PAKE_PRIMITIVE(pake_type, pake_family, pake_bits) \
1094 ((pake_bits & 0xFFFF) != pake_bits) ? 0 : \
1095 ((psa_pake_primitive_t) (((pake_type) << 24 | \
1096 (pake_family) << 16) | (pake_bits)))
1110 #define PSA_PAKE_STEP_KEY_SHARE ((psa_pake_step_t) 0x01)
1127 #define PSA_PAKE_STEP_ZK_PUBLIC ((psa_pake_step_t) 0x02)
1148 #define PSA_PAKE_STEP_ZK_PROOF ((psa_pake_step_t) 0x03)
1172 #define PSA_PAKE_OUTPUT_SIZE(alg, primitive, output_step) \
1173 (alg == PSA_ALG_JPAKE && \
1174 primitive == PSA_PAKE_PRIMITIVE(PSA_PAKE_PRIMITIVE_TYPE_ECC, \
1175 PSA_ECC_FAMILY_SECP_R1, 256) ? \
1177 output_step == PSA_PAKE_STEP_KEY_SHARE ? 65 : \
1178 output_step == PSA_PAKE_STEP_ZK_PUBLIC ? 65 : \
1202 #define PSA_PAKE_INPUT_SIZE(alg, primitive, input_step) \
1203 (alg == PSA_ALG_JPAKE && \
1204 primitive == PSA_PAKE_PRIMITIVE(PSA_PAKE_PRIMITIVE_TYPE_ECC, \
1205 PSA_ECC_FAMILY_SECP_R1, 256) ? \
1207 input_step == PSA_PAKE_STEP_KEY_SHARE ? 65 : \
1208 input_step == PSA_PAKE_STEP_ZK_PUBLIC ? 65 : \
1223 #define PSA_PAKE_OUTPUT_MAX_SIZE 65
1235 #define PSA_PAKE_INPUT_MAX_SIZE 65
1240 #define PSA_PAKE_CIPHER_SUITE_INIT { PSA_ALG_NONE, 0, 0, 0, PSA_ALG_NONE }
1245 #if defined(MBEDTLS_PSA_CRYPTO_CLIENT) && !defined(MBEDTLS_PSA_CRYPTO_C)
1246 #define PSA_PAKE_OPERATION_INIT { 0 }
1248 #define PSA_PAKE_OPERATION_INIT { 0, PSA_ALG_NONE, 0, PSA_PAKE_OPERATION_STAGE_SETUP, \
1311 #define PSA_JPAKE_EXPECTED_INPUTS(round) ((round) == PSA_JPAKE_FINISHED ? 0 : \
1312 ((round) == PSA_JPAKE_FIRST ? 2 : 1))
1313 #define PSA_JPAKE_EXPECTED_OUTPUTS(round) ((round) == PSA_JPAKE_FINISHED ? 0 : \
1314 ((round) == PSA_JPAKE_FIRST ? 2 : 1))
1317 #if defined(MBEDTLS_PSA_CRYPTO_CLIENT) && !defined(MBEDTLS_PSA_CRYPTO_C)
1318 mbedtls_psa_client_handle_t handle;
1337 #if defined(PSA_WANT_ALG_JPAKE)
1413 psa_pake_primitive_t primitive);
1515 size_t *password_len);
1531 uint8_t *buffer,
size_t buffer_size,
size_t *buffer_length);
1577 uint8_t *user_id,
size_t user_id_size,
size_t *user_id_len);
1595 uint8_t *peer_id,
size_t peer_id_size,
size_t *peer_id_length);
1774 const uint8_t *user_id,
1775 size_t user_id_len);
1820 const uint8_t *peer_id,
1821 size_t peer_id_len);
1862 psa_pake_role_t role);
1920 psa_pake_step_t step,
1923 size_t *output_length);
1975 psa_pake_step_t step,
1976 const uint8_t *input,
1977 size_t input_length);
2089 cipher_suite->
bits);
2094 psa_pake_primitive_t primitive)
2098 cipher_suite->
bits = (uint16_t) (0xFFFF & primitive);
2104 return cipher_suite->
family;
2110 return cipher_suite->
bits;
2116 return cipher_suite->
hash;
2123 cipher_suite->
hash = 0;
2125 cipher_suite->
hash = hash;
uint32_t psa_pake_primitive_t
Encoding of the primitive associated with the PAKE.
static void psa_pake_cs_set_hash(psa_pake_cipher_suite_t *cipher_suite, psa_algorithm_t hash)
static psa_pake_cipher_suite_t psa_pake_cipher_suite_init(void)
psa_status_t psa_pake_output(psa_pake_operation_t *operation, psa_pake_step_t step, uint8_t *output, size_t output_size, size_t *output_length)
psa_status_t psa_pake_set_role(psa_pake_operation_t *operation, psa_pake_role_t role)
psa_status_t psa_pake_abort(psa_pake_operation_t *operation)
PSA cryptography module: Backward compatibility aliases.
static void psa_set_key_enrollment_algorithm(psa_key_attributes_t *attributes, psa_algorithm_t alg2)
Declare the enrollment algorithm for a key.
#define MBEDTLS_PSA_KEY_ID_BUILTIN_MIN
static psa_algorithm_t psa_pake_cs_get_algorithm(const psa_pake_cipher_suite_t *cipher_suite)
psa_pake_primitive_type_t type
psa_status_t psa_random_set_prediction_resistance(unsigned enabled)
PSA cryptography module: type aliases.
#define MBEDTLS_PRIVATE(member)
static uint16_t psa_pake_cs_get_bits(const psa_pake_cipher_suite_t *cipher_suite)
psa_status_t psa_pake_get_implicit_key(psa_pake_operation_t *operation, psa_key_derivation_operation_t *output)
psa_status_t psa_crypto_driver_pake_get_user(const psa_crypto_driver_pake_inputs_t *inputs, uint8_t *user_id, size_t user_id_size, size_t *user_id_len)
static psa_algorithm_t psa_pake_cs_get_hash(const psa_pake_cipher_suite_t *cipher_suite)
psa_status_t psa_crypto_driver_pake_get_peer_len(const psa_crypto_driver_pake_inputs_t *inputs, size_t *peer_len)
static void psa_pake_cs_set_primitive(psa_pake_cipher_suite_t *cipher_suite, psa_pake_primitive_t primitive)
psa_status_t psa_random_reseed(const uint8_t *perso, size_t perso_size)
uint8_t psa_pake_family_t
Encoding of the family of the primitive associated with the PAKE.
psa_status_t psa_random_deplete(void)
uint64_t psa_drv_slot_number_t
uint64_t psa_key_slot_number_t
static psa_algorithm_t psa_get_key_enrollment_algorithm(const psa_key_attributes_t *attributes)
psa_status_t psa_crypto_driver_pake_get_password_len(const psa_crypto_driver_pake_inputs_t *inputs, size_t *password_len)
uint32_t psa_algorithm_t
Encoding of a cryptographic algorithm.
static psa_pake_family_t psa_pake_cs_get_family(const psa_pake_cipher_suite_t *cipher_suite)
Macro wrapper for struct's members.
#define PSA_ALG_IS_HASH(alg)
uint8_t psa_pake_primitive_type_t
psa_status_t psa_pake_set_password_key(psa_pake_operation_t *operation, mbedtls_svc_key_id_t password)
uint16_t psa_key_type_t
Encoding of a key type.
psa_status_t psa_crypto_driver_pake_get_password(const psa_crypto_driver_pake_inputs_t *inputs, uint8_t *buffer, size_t buffer_size, size_t *buffer_length)
psa_status_t psa_pake_set_user(psa_pake_operation_t *operation, const uint8_t *user_id, size_t user_id_len)
#define PSA_PAKE_PRIMITIVE(pake_type, pake_family, pake_bits)
static void psa_pake_cs_set_algorithm(psa_pake_cipher_suite_t *cipher_suite, psa_algorithm_t algorithm)
int psa_can_do_hash(psa_algorithm_t hash_alg)
#define MBEDTLS_PSA_KEY_ID_BUILTIN_MAX
int psa_can_do_cipher(psa_key_type_t key_type, psa_algorithm_t cipher_alg)
psa_key_id_t mbedtls_svc_key_id_t
#define PSA_ALG_IS_PAKE(alg)
static psa_pake_primitive_t psa_pake_cs_get_primitive(const psa_pake_cipher_suite_t *cipher_suite)
static psa_pake_operation_t psa_pake_operation_init(void)
psa_status_t psa_pake_input(psa_pake_operation_t *operation, psa_pake_step_t step, const uint8_t *input, size_t input_length)
psa_status_t psa_crypto_driver_pake_get_user_len(const psa_crypto_driver_pake_inputs_t *inputs, size_t *user_len)
uint8_t psa_pake_role_t
Encoding of the application role of PAKE.
psa_status_t psa_crypto_driver_pake_get_cipher_suite(const psa_crypto_driver_pake_inputs_t *inputs, psa_pake_cipher_suite_t *cipher_suite)
uint32_t psa_key_lifetime_t
psa_status_t psa_pake_set_peer(psa_pake_operation_t *operation, const uint8_t *peer_id, size_t peer_id_len)
psa_status_t psa_pake_setup(psa_pake_operation_t *operation, const psa_pake_cipher_suite_t *cipher_suite)
int32_t psa_status_t
Function return status.
psa_algorithm_t algorithm
psa_status_t psa_crypto_driver_pake_get_peer(const psa_crypto_driver_pake_inputs_t *inputs, uint8_t *peer_id, size_t peer_id_size, size_t *peer_id_length)
Statistics about resource consumption related to the PSA keystore.