mirror of
https://github.com/cuberite/polarssl.git
synced 2025-10-04 19:16:58 -04:00

The PSA crypto code needs mbedtls_pk_write_key_der() and mbedtls_pk_write_pubkey() when using RSA without drivers. We were already forcing MBEDTLS_PK_WRITE_C when MBEDTLS_USE_PSA_CRYPTO is enabled. Do so also when MBEDTLS_PSA_CRYPTO_C is enabled as well as MBEDTLS_RSA_C, even without MBEDTLS_USE_PSA_CRYPTO. Fixes #6408. Signed-off-by: Gilles Peskine <Gilles.Peskine@arm.com>
106 lines
3.3 KiB
C
106 lines
3.3 KiB
C
/**
|
|
* \file build_info.h
|
|
*
|
|
* \brief Build-time configuration info
|
|
*
|
|
* Include this file if you need to depend on the
|
|
* configuration options defined in mbedtls_config.h or MBEDTLS_CONFIG_FILE
|
|
*/
|
|
/*
|
|
* Copyright The Mbed TLS Contributors
|
|
* SPDX-License-Identifier: Apache-2.0
|
|
*
|
|
* Licensed under the Apache License, Version 2.0 (the "License"); you may
|
|
* not use this file except in compliance with the License.
|
|
* You may obtain a copy of the License at
|
|
*
|
|
* http://www.apache.org/licenses/LICENSE-2.0
|
|
*
|
|
* Unless required by applicable law or agreed to in writing, software
|
|
* distributed under the License is distributed on an "AS IS" BASIS, WITHOUT
|
|
* WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
* See the License for the specific language governing permissions and
|
|
* limitations under the License.
|
|
*/
|
|
|
|
#ifndef MBEDTLS_BUILD_INFO_H
|
|
#define MBEDTLS_BUILD_INFO_H
|
|
|
|
/*
|
|
* This set of compile-time defines can be used to determine the version number
|
|
* of the Mbed TLS library used. Run-time variables for the same can be found in
|
|
* version.h
|
|
*/
|
|
|
|
/**
|
|
* The version number x.y.z is split into three parts.
|
|
* Major, Minor, Patchlevel
|
|
*/
|
|
#define MBEDTLS_VERSION_MAJOR 3
|
|
#define MBEDTLS_VERSION_MINOR 2
|
|
#define MBEDTLS_VERSION_PATCH 1
|
|
|
|
/**
|
|
* The single version number has the following structure:
|
|
* MMNNPP00
|
|
* Major version | Minor version | Patch version
|
|
*/
|
|
#define MBEDTLS_VERSION_NUMBER 0x03020100
|
|
#define MBEDTLS_VERSION_STRING "3.2.1"
|
|
#define MBEDTLS_VERSION_STRING_FULL "mbed TLS 3.2.1"
|
|
|
|
#if defined(_MSC_VER) && !defined(_CRT_SECURE_NO_DEPRECATE)
|
|
#define _CRT_SECURE_NO_DEPRECATE 1
|
|
#endif
|
|
|
|
#if !defined(MBEDTLS_CONFIG_FILE)
|
|
#include "mbedtls/mbedtls_config.h"
|
|
#else
|
|
#include MBEDTLS_CONFIG_FILE
|
|
#endif
|
|
|
|
#if defined(MBEDTLS_CONFIG_VERSION) && ( \
|
|
MBEDTLS_CONFIG_VERSION < 0x03000000 || \
|
|
MBEDTLS_CONFIG_VERSION > MBEDTLS_VERSION_NUMBER )
|
|
#error "Invalid config version, defined value of MBEDTLS_CONFIG_VERSION is unsupported"
|
|
#endif
|
|
|
|
/* Target and application specific configurations
|
|
*
|
|
* Allow user to override any previous default.
|
|
*
|
|
*/
|
|
#if defined(MBEDTLS_USER_CONFIG_FILE)
|
|
#include MBEDTLS_USER_CONFIG_FILE
|
|
#endif
|
|
|
|
/* The PK wrappers need pk_write functions to format RSA key objects
|
|
* when they are dispatching to the PSA API. This happens under USE_PSA_CRYPTO,
|
|
* and also even without USE_PSA_CRYPTO for mbedtls_pk_sign_ext().
|
|
* PSA crypto also needs pk_write to export RSA keys (otherwise the build
|
|
* goes through but psa_export_key() and psa_export_public_key() fail on
|
|
* RSA keys).
|
|
*/
|
|
#if defined(MBEDTLS_PSA_CRYPTO_C) && defined(MBEDTLS_RSA_C)
|
|
#define MBEDTLS_PK_C
|
|
#define MBEDTLS_PK_WRITE_C
|
|
#endif
|
|
|
|
/* Under MBEDTLS_USE_PSA_CRYPTO, the pk module needs pk_write functions
|
|
* to pass ECC keys to PSA. */
|
|
#if defined(MBEDTLS_PK_C) && \
|
|
defined(MBEDTLS_USE_PSA_CRYPTO) && defined(MBEDTLS_ECP_C)
|
|
#define MBEDTLS_PK_WRITE_C
|
|
#endif
|
|
|
|
/* Make sure all configuration symbols are set before including check_config.h,
|
|
* even the ones that are calculated programmatically. */
|
|
#if defined(MBEDTLS_PSA_CRYPTO_CONFIG) /* PSA_WANT_xxx influences MBEDTLS_xxx */ || \
|
|
defined(MBEDTLS_PSA_CRYPTO_C) /* MBEDTLS_xxx influences PSA_WANT_xxx */
|
|
#include "mbedtls/config_psa.h"
|
|
#endif
|
|
|
|
#include "mbedtls/check_config.h"
|
|
|
|
#endif /* MBEDTLS_BUILD_INFO_H */
|