Anton Matkin
34b3bb3a3f
Updated the framework pointer
...
Signed-off-by: Anton Matkin <anton.matkin@arm.com >
2025-08-29 07:18:06 +02:00
Anton Matkin
4e091786ca
Moved the MbedTLS config adjust headers to a private subdirectory
...
Signed-off-by: Anton Matkin <anton.matkin@arm.com >
2025-08-29 07:05:40 +02:00
Anton Matkin
7a65ce6737
Unfortunately, we had two files named oid.h - one in the main repo, and one in the tf-psa-crypto repo, and these files included the mbedtls one, so I restored the header include
...
Signed-off-by: Anton Matkin <anton.matkin@arm.com >
2025-08-29 07:05:40 +02:00
Anton Matkin
5fe229da40
Update framework submodule git link:
...
Signed-off-by: Anton Matkin <anton.matkin@arm.com >
2025-08-29 07:05:40 +02:00
Anton Matkin
bc48725b64
Include fixups (headers moves to private directory)
...
Signed-off-by: Anton Matkin <anton.matkin@arm.com >
2025-08-29 07:05:37 +02:00
Felix Conway
6361e54b22
Add each whole unified error code to the migration guide
...
Signed-off-by: Felix Conway <felix.conway@arm.com >
2025-08-28 17:39:10 +01:00
Felix Conway
a01ddf65b7
Revert unification for some error codes
...
Signed-off-by: Felix Conway <felix.conway@arm.com >
2025-08-28 17:39:10 +01:00
Felix Conway
07eb02889e
Remove a redundant error test case and improve another
...
Signed-off-by: Felix Conway <felix.conway@arm.com >
2025-08-28 17:38:13 +01:00
David Horstmann
6ff9c89648
Merge pull request #10361 from bensze01/runtime-version-interface
...
Simplify runtime version info string methods
2025-08-27 14:59:15 +00:00
Bence Szépkúti
89e0c53d0f
Merge pull request #10374 from amtkarm1/private-headers-update-pointer
...
Update crypto pointer
2025-08-27 14:23:26 +00:00
David Horstmann
b907dbc4d3
Remove other cases of explicit crypto config file
...
Remove unnecessary passing of the crypto config filename either with the
'-f' or '-c' switch, throughout all of the all.sh component files.
Signed-off-by: David Horstmann <david.horstmann@arm.com >
2025-08-27 15:19:40 +01:00
Felix Conway
a15729d38e
Fix libtestdriver1 rewrite in include/mbedtls/private
...
Signed-off-by: Felix Conway <felix.conway@arm.com >
2025-08-27 13:33:02 +01:00
Anton Matkin
c50ce1b02b
Update crypto submodule link
...
Signed-off-by: Anton Matkin <anton.matkin@arm.com >
2025-08-27 14:23:59 +02:00
David Horstmann
40573bade8
Merge pull request #10239 from ronald-cron-arm/mbedtls-build-info-last
...
Improve detection of CMake library installation problems
2025-08-27 10:22:53 +00:00
David Horstmann
7cbeedc607
Remove uses of the -c $CRYPTO_CONFIG_H idiom
...
This is no longer needed as config.py knows where the crypto config file
is these days.
Signed-off-by: David Horstmann <david.horstmann@arm.com >
2025-08-26 17:27:49 +01:00
David Horstmann
22e810fedc
Merge pull request #10353 from minosgalanakis/feature/introduce_crypto_rng_hash_cleanup
...
Cleanup: Introduce MBEDTLS_PSA_CRYPTO_RNG_HASH (4/4)
2025-08-26 10:27:17 +00:00
Manuel Pégourié-Gonnard
2bd0cfd272
Merge pull request #10331 from amtkarm1/task-remove-programs-pkey
...
Removed the programs/pkey directory
2025-08-26 09:27:00 +00:00
Ronald Cron
a0b1c8c7fb
build: Remove CTR_DRBG 128 bits key warnings
...
Signed-off-by: Ronald Cron <ronald.cron@arm.com >
2025-08-26 09:33:33 +02:00
Ronald Cron
aad5f1bedd
tests: Prepare to switch to SHA-256 as the default CTR_DRBG hash
...
Ensure that when we switch from SHA-512 to SHA-256
as the default CTR_DRBG hash, we still properly
test CTR_DRBG with SHA-512.
Signed-off-by: Ronald Cron <ronald.cron@arm.com >
2025-08-25 15:35:42 +02:00
Ronald Cron
8fc000ec2c
ssl-opt.sh: Fix MBEDTLS_ENTROPY_C dependency adjustment
...
Signed-off-by: Ronald Cron <ronald.cron@arm.com >
2025-08-25 15:19:59 +02:00
Minos Galanakis
1eda7487ae
Updated tf-psa-crypto pointer
...
Signed-off-by: Minos Galanakis <minos.galanakis@arm.com >
Signed-off-by: Ronald Cron <ronald.cron@arm.com >
2025-08-25 15:17:31 +02:00
Minos Galanakis
a1e867981b
ssl-opt.sh: Adjust dependency to MBEDTLS_PSA_CRYPTO_C
...
Signed-off-by: Minos Galanakis <minos.galanakis@arm.com >
2025-08-21 15:57:00 +01:00
Minos Galanakis
906950d8dc
config/depends.py: Removed legacy options.
...
Signed-off-by: Minos Galanakis <minos.galanakis@arm.com >
2025-08-21 15:57:00 +01:00
Minos Galanakis
5dbc24a255
components-configuration-crypto: Removed legacy options.
...
Removed setters for `MBEDTLS_CTR_DRBG_USE_128_BIT_KEY`
and `MBEDTLS_ENTROPY_FORCE_SHA256`
Signed-off-by: Minos Galanakis <minos.galanakis@arm.com >
2025-08-21 15:56:59 +01:00
David Horstmann
f476d1576b
Merge pull request #10362 from bjwtaylor/mbedtls_x509write_crt_set_serial_raw
...
Add const to serial argument in mbedtls_x509write_crt_set_serial_raw
2025-08-21 10:54:07 +00:00
Ronald Cron
0387ca6755
Merge pull request #10320 from minosgalanakis/feature/introduce_crypto_rng_hash
...
crypto_config: Introduce MBEDTLS_PSA_CRYPTO_RNG_HASH (2/4)
2025-08-21 07:49:52 +00:00
Ben Taylor
32e100a573
Renamed and corrected ChangeLog
...
Signed-off-by: Ben Taylor <ben.taylor@linaro.org >
2025-08-21 08:00:07 +01:00
Felix Conway
1cf9a1590b
Remove programs from gitignore and documentation
...
Signed-off-by: Felix Conway <felix.conway@arm.com >
2025-08-20 11:02:18 +01:00
Felix Conway
3962284de6
Update & fix changelog
...
Signed-off-by: Felix Conway <felix.conway@arm.com >
2025-08-20 11:00:01 +01:00
Anton Matkin
5b49f31956
Adjusted the Makefile in the programs directory - removed the pkey programs
...
Signed-off-by: Anton Matkin <anton.matkin@arm.com >
2025-08-20 10:51:38 +01:00
Anton Matkin
87ae4e6a14
Added a changelog entry for the removal
...
Signed-off-by: Anton Matkin <anton.matkin@arm.com >
2025-08-20 10:51:38 +01:00
Felix Conway
ed7058730a
Removed the directory with the programs, and its inclusion in the parent directory CMakeLists.txt file
...
Signed-off-by: Felix Conway <felix.conway@arm.com >
2025-08-20 10:51:23 +01:00
David Horstmann
3492807e0b
Remove component uses of MBEDTLS_ECDSA_DETERMINISTIC
...
Remove all references to MBEDTLS_ECDSA_DETERMINISTIC from
components-configuration-crypto.sh. Replace them with
PSA_WANT_ALG_DETERMINISTIC_ECDSA.
This is safe because:
* MBEDTLS_ECDSA_DETERMINISTIC is only ever unset in components in order
to avoid errors from disabling its dependency MBEDTLS_HMAC_DRBG_C.
* MBEDTLS_ECDSA_DETERMINISTIC is only ever defined in
config_adjust_legacy_from_psa.h, and only if
PSA_WANT_ALG_DETERMINISTIC_ECDSA is defined.
Therefore PSA_WANT_ALG_DETERMINISTIC_ECDSA's dependencies are a superset
of MBEDTLS_ECDSA_DETERMINISTIC's dependencies and must include
MBEDTLS_HMAC_DRBG_C, so disabling PSA_WANT_ALG_DETERMINISTIC_ECDSA is a
sufficient substitute for disabling MBEDTLS_ECDSA_DETERMINISTIC.
Signed-off-by: David Horstmann <david.horstmann@arm.com >
2025-08-20 10:26:11 +01:00
David Horstmann
7ec90c254f
Merge pull request #10365 from davidhorstmann-arm/clarify-file-generation-cc
...
Clarify use of `CC` and friends for file generation
2025-08-20 09:07:38 +00:00
Minos Galanakis
f3486e198b
components-configuration-crypto.sh: Added setters for MBEDTLS_PSA_CRYPTO_RNG_HASH
...
Signed-off-by: Minos Galanakis <minos.galanakis@arm.com >
2025-08-20 00:04:35 +01:00
David Horstmann
24e3388cf3
Clarify use of CC and friends for file generation
...
Add more detail around how generation of configuration-independent files
chooses a C compiler. Mention that setting HOSTCC or CC is recommended
where there are multiple toolchains.
Mention that the fallback location is the cc executable, which may help
users troubleshooting when the file generation picks up the wrong
toolchain (as in Mbed-TLS/mbedtls#10360 ).
Signed-off-by: David Horstmann <david.horstmann@arm.com >
2025-08-19 16:56:25 +01:00
Felix Conway
1a1ff64f42
Remove tf-psa-crypto/include/mbedtls/private from Doxygen
...
Signed-off-by: Felix Conway <felix.conway@arm.com >
2025-08-19 11:11:58 +01:00
Felix Conway
e984d35590
Fix ssl tests expecting old X509 error output
...
Signed-off-by: Felix Conway <felix.conway@arm.com >
2025-08-19 10:23:46 +01:00
Ben Taylor
f8b4aa135b
Add ChangeLog
...
Signed-off-by: Ben Taylor <ben.taylor@linaro.org >
2025-08-19 07:52:48 +01:00
Felix Conway
f5b48c3d9c
Add Changelog and documentation
...
Signed-off-by: Felix Conway <felix.conway@arm.com >
2025-08-18 14:52:41 +01:00
Felix Conway
37ede2c3b4
Unify generic errors to PSA errors
...
Signed-off-by: Felix Conway <felix.conway@arm.com >
2025-08-18 14:46:39 +01:00
Ben Taylor
3f523748e0
Add const to serial argument in mbedtls_x509write_crt_set_serial_raw
...
Signed-off-by: Ben Taylor <ben.taylor@linaro.org >
2025-08-18 13:47:50 +01:00
Bence Szépkúti
0e5fe877cc
Update PSASim tests to new call signature
...
Signed-off-by: Bence Szépkúti <bence.szepkuti@arm.com >
2025-08-18 14:38:01 +02:00
Bence Szépkúti
783d8adb15
Update CMake linkage tests to new call signature
...
Signed-off-by: Bence Szépkúti <bence.szepkuti@arm.com >
2025-08-18 14:31:34 +02:00
Felix Conway
8616ee762d
Change values for error tests
...
Previously these tests used values that will become PSA aliases,
and so the tests will fail once they're changed.
Signed-off-by: Felix Conway <felix.conway@arm.com >
2025-08-18 11:32:58 +01:00
Bence Szépkúti
b2ba9fa68b
Simplify runtime version info string methods
...
Return a const char* instead of taking a char* as an argument.
This aligns us with the interface used in TF PSA Crypto.
Signed-off-by: Bence Szépkúti <bence.szepkuti@arm.com >
2025-08-18 11:39:45 +02:00
minosgalanakis
265e98da45
Merge pull request #10355 from valeriosetti/issue10283-fix-test-coverage
...
tests: configuration-crypto: enable p192 curves in test_psa_crypto_without_heap
2025-08-15 11:22:06 +00:00
Bence Szépkúti
e96491c193
Merge pull request #10049 from amtkarm1/iss9321
...
Move the PAKE hash algorithm parameter into the alg id
2025-08-13 10:14:05 +00:00
Valerio Setti
a785eea41f
tests: configuration-crypto: enable p192 curves in test_psa_crypto_without_heap
...
Enable p192[k|r]1 curves which are disabled by default in tf-psa-crypto.
This is required to get the proper test coverage otherwise there are
tests in 'test_suite_psa_crypto_op_fail' that would never be executed.
Signed-off-by: Valerio Setti <valerio.setti@nordicsemi.no >
2025-08-13 10:57:46 +02:00
Manuel Pégourié-Gonnard
eca92dcdeb
Update tf-psa-crypto to current development
...
Signed-off-by: Manuel Pégourié-Gonnard <manuel.pegourie-gonnard@arm.com >
2025-08-13 09:50:12 +02:00