blob: 1741d8b9c0e9ee11524dcef279c8ebe2ad48ea13 [file] [log] [blame]
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001/**
2 * \file check_config.h
3 *
4 * \brief Consistency checks for configuration options
Darryl Greena40a1012018-01-05 15:33:17 +00005 */
6/*
Bence Szépkúti1e148272020-08-07 13:07:28 +02007 * Copyright The Mbed TLS Contributors
Dave Rodgman16799db2023-11-02 19:47:20 +00008 * SPDX-License-Identifier: Apache-2.0 OR GPL-2.0-or-later
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02009 */
10
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020011#ifndef MBEDTLS_CHECK_CONFIG_H
12#define MBEDTLS_CHECK_CONFIG_H
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +020013
David Horstmann1b847812022-11-14 15:40:46 +000014/* *INDENT-OFF* */
Manuel Pégourié-Gonnardd14acbc2015-05-29 11:26:37 +020015/*
16 * We assume CHAR_BIT is 8 in many places. In practice, this is true on our
17 * target platforms, so not an issue, but let's just be extra sure.
18 */
19#include <limits.h>
20#if CHAR_BIT != 8
Gilles Peskinee820c0a2023-08-03 17:45:20 +020021#error "Mbed TLS requires a platform with 8-bit chars"
Manuel Pégourié-Gonnardd14acbc2015-05-29 11:26:37 +020022#endif
23
Jerry Yu16f68532022-11-05 10:50:06 +080024#include <stdint.h>
25
Ronald Cron170c1992023-07-06 14:15:21 +020026#if defined(__MINGW32__) || (defined(_MSC_VER) && _MSC_VER <= 1900)
Manuel Pégourié-Gonnard9db28872015-06-26 10:52:01 +020027#if !defined(MBEDTLS_PLATFORM_C)
Manuel Pégourié-Gonnard6c0c8e02015-06-22 10:23:34 +020028#error "MBEDTLS_PLATFORM_C is required on Windows"
29#endif
Manuel Pégourié-Gonnard1463e492024-02-08 12:28:30 +010030/* See auto-enabling SNPRINTF_ALT and VSNPRINTF_ALT
31 * in * config_adjust_legacy_crypto.h */
Ronald Cron170c1992023-07-06 14:15:21 +020032#endif /* _MINGW32__ || (_MSC_VER && (_MSC_VER <= 1900)) */
Manuel Pégourié-Gonnard9db28872015-06-26 10:52:01 +020033
Jaeden Amero197496a2021-06-08 18:31:27 +010034#if defined(TARGET_LIKE_MBED) && defined(MBEDTLS_NET_C)
35#error "The NET module is not available for mbed OS - please use the network functions provided by Mbed OS"
Manuel Pégourié-Gonnard63e7eba2015-07-28 14:17:48 +020036#endif
37
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020038#if defined(MBEDTLS_DEPRECATED_WARNING) && \
Manuel Pégourié-Gonnard757ca002015-03-23 15:24:07 +010039 !defined(__GNUC__) && !defined(__clang__)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020040#error "MBEDTLS_DEPRECATED_WARNING only works with GCC and Clang"
Manuel Pégourié-Gonnardc70581c2015-03-23 13:58:27 +010041#endif
42
Manuel Pégourié-Gonnard60c793b2015-06-18 20:52:58 +020043#if defined(MBEDTLS_HAVE_TIME_DATE) && !defined(MBEDTLS_HAVE_TIME)
44#error "MBEDTLS_HAVE_TIME_DATE without MBEDTLS_HAVE_TIME does not make sense"
45#endif
46
Valerio Settie6f65a92023-09-01 08:50:56 +020047/* Check that each MBEDTLS_ECP_DP_xxx symbol has its PSA_WANT_ECC_xxx counterpart
48 * when PSA crypto is enabled. */
Valerio Setti8600de82023-08-04 09:42:40 +020049#if defined(MBEDTLS_PSA_CRYPTO_CONFIG) || defined(MBEDTLS_PSA_CRYPTO_C)
50
Valerio Settia7a18312023-08-03 17:39:07 +020051#if defined(MBEDTLS_ECP_DP_BP256R1_ENABLED) && !defined(PSA_WANT_ECC_BRAINPOOL_P_R1_256)
52#error "MBEDTLS_ECP_DP_BP256R1_ENABLED defined, but not its PSA counterpart"
53#endif
54
55#if defined(MBEDTLS_ECP_DP_BP384R1_ENABLED) && !defined(PSA_WANT_ECC_BRAINPOOL_P_R1_384)
56#error "MBEDTLS_ECP_DP_BP384R1_ENABLED defined, but not its PSA counterpart"
57#endif
58
59#if defined(MBEDTLS_ECP_DP_BP512R1_ENABLED) && !defined(PSA_WANT_ECC_BRAINPOOL_P_R1_512)
60#error "MBEDTLS_ECP_DP_BP512R1_ENABLED defined, but not its PSA counterpart"
61#endif
62
63#if defined(MBEDTLS_ECP_DP_CURVE25519_ENABLED) && !defined(PSA_WANT_ECC_MONTGOMERY_255)
64#error "MBEDTLS_ECP_DP_CURVE25519_ENABLED defined, but not its PSA counterpart"
65#endif
66
67#if defined(MBEDTLS_ECP_DP_CURVE448_ENABLED) && !defined(PSA_WANT_ECC_MONTGOMERY_448)
68#error "MBEDTLS_ECP_DP_CURVE448_ENABLED defined, but not its PSA counterpart"
69#endif
70
71#if defined(MBEDTLS_ECP_DP_SECP192R1_ENABLED) && !defined(PSA_WANT_ECC_SECP_R1_192)
72#error "MBEDTLS_ECP_DP_SECP192R1_ENABLED defined, but not its PSA counterpart"
73#endif
74
75#if defined(MBEDTLS_ECP_DP_SECP224R1_ENABLED) && !defined(PSA_WANT_ECC_SECP_R1_224)
76#error "MBEDTLS_ECP_DP_SECP224R1_ENABLED defined, but not its PSA counterpart"
77#endif
78
79#if defined(MBEDTLS_ECP_DP_SECP256R1_ENABLED) && !defined(PSA_WANT_ECC_SECP_R1_256)
80#error "MBEDTLS_ECP_DP_SECP256R1_ENABLED defined, but not its PSA counterpart"
81#endif
82
83#if defined(MBEDTLS_ECP_DP_SECP384R1_ENABLED) && !defined(PSA_WANT_ECC_SECP_R1_384)
84#error "MBEDTLS_ECP_DP_SECP384R1_ENABLED defined, but not its PSA counterpart"
85#endif
86
87#if defined(MBEDTLS_ECP_DP_SECP521R1_ENABLED) && !defined(PSA_WANT_ECC_SECP_R1_521)
88#error "MBEDTLS_ECP_DP_SECP521R1_ENABLED defined, but not its PSA counterpart"
89#endif
90
91#if defined(MBEDTLS_ECP_DP_SECP192K1_ENABLED) && !defined(PSA_WANT_ECC_SECP_K1_192)
92#error "MBEDTLS_ECP_DP_SECP192K1_ENABLED defined, but not its PSA counterpart"
93#endif
94
Valerio Setti3b69e3e2023-08-04 06:41:50 +020095/* SECP224K1 is buggy in PSA API so we skip this check */
96#if 0 && defined(MBEDTLS_ECP_DP_SECP224K1_ENABLED) && !defined(PSA_WANT_ECC_SECP_K1_224)
Valerio Settia7a18312023-08-03 17:39:07 +020097#error "MBEDTLS_ECP_DP_SECP224K1_ENABLED defined, but not its PSA counterpart"
98#endif
99
100#if defined(MBEDTLS_ECP_DP_SECP256K1_ENABLED) && !defined(PSA_WANT_ECC_SECP_K1_256)
101#error "MBEDTLS_ECP_DP_SECP256K1_ENABLED defined, but not its PSA counterpart"
102#endif
103
Valerio Setti8600de82023-08-04 09:42:40 +0200104#endif /* MBEDTLS_PSA_CRYPTO_CONFIG || MBEDTLS_PSA_CRYPTO_C */
105
Manuel Pégourié-Gonnard842d3552023-09-28 09:29:43 +0200106/* Limitations on ECC key types acceleration: if we have any of `PUBLIC_KEY`,
107 * `KEY_PAIR_BASIC`, `KEY_PAIR_IMPORT`, `KEY_PAIR_EXPORT` then we must have
108 * all 4 of them.
109 */
110#if defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_PUBLIC_KEY) || \
111 defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_KEY_PAIR_BASIC) || \
112 defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_KEY_PAIR_IMPORT) || \
113 defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_KEY_PAIR_EXPORT)
114#if !defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_PUBLIC_KEY) || \
115 !defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_KEY_PAIR_BASIC) || \
116 !defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_KEY_PAIR_IMPORT) || \
117 !defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_KEY_PAIR_EXPORT)
118#error "Unsupported partial support for ECC key type acceleration, see docs/driver-only-builds.md"
119#endif /* not all of public, basic, import, export */
120#endif /* one of public, basic, import, export */
121
Manuel Pégourié-Gonnard7f22f342023-09-28 09:46:22 +0200122/* Limitations on ECC curves acceleration: partial curve acceleration is only
123 * supported with crypto excluding PK, X.509 or TLS.
124 * Note: no need to check X.509 as it depends on PK. */
125#if defined(MBEDTLS_PSA_ACCEL_ECC_BRAINPOOL_P_R1_256) || \
126 defined(MBEDTLS_PSA_ACCEL_ECC_BRAINPOOL_P_R1_384) || \
127 defined(MBEDTLS_PSA_ACCEL_ECC_BRAINPOOL_P_R1_512) || \
128 defined(MBEDTLS_PSA_ACCEL_ECC_MONTGOMERY_255) || \
129 defined(MBEDTLS_PSA_ACCEL_ECC_MONTGOMERY_448) || \
130 defined(MBEDTLS_PSA_ACCEL_ECC_SECP_K1_192) || \
131 defined(MBEDTLS_PSA_ACCEL_ECC_SECP_K1_224) || \
132 defined(MBEDTLS_PSA_ACCEL_ECC_SECP_K1_256) || \
133 defined(MBEDTLS_PSA_ACCEL_ECC_SECP_R1_192) || \
134 defined(MBEDTLS_PSA_ACCEL_ECC_SECP_R1_224) || \
135 defined(MBEDTLS_PSA_ACCEL_ECC_SECP_R1_256) || \
136 defined(MBEDTLS_PSA_ACCEL_ECC_SECP_R1_384) || \
137 defined(MBEDTLS_PSA_ACCEL_ECC_SECP_R1_521)
138#if defined(MBEDTLS_PSA_ECC_ACCEL_INCOMPLETE_CURVES)
139#if defined(MBEDTLS_PK_C) || \
140 defined(MBEDTLS_SSL_TLS_C)
141#error "Unsupported partial support for ECC curves acceleration, see docs/driver-only-builds.md"
142#endif /* modules beyond what's supported */
143#endif /* not all curves accelerated */
144#endif /* some curve accelerated */
145
Valerio Settifbefe042023-11-13 10:15:43 +0100146#if defined(MBEDTLS_CTR_DRBG_C) && !(defined(MBEDTLS_AES_C) || \
147 (defined(MBEDTLS_PSA_CRYPTO_C) && defined(PSA_WANT_KEY_TYPE_AES) && \
148 defined(PSA_WANT_ALG_ECB_NO_PADDING)))
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200149#error "MBEDTLS_CTR_DRBG_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200150#endif
151
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200152#if defined(MBEDTLS_DHM_C) && !defined(MBEDTLS_BIGNUM_C)
153#error "MBEDTLS_DHM_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200154#endif
155
Brian Murray53e23b62016-09-13 14:00:15 -0700156#if defined(MBEDTLS_CMAC_C) && \
Przemek Stekielea805b42022-05-02 10:30:03 +0200157 ( !defined(MBEDTLS_CIPHER_C ) || ( !defined(MBEDTLS_AES_C) && !defined(MBEDTLS_DES_C) ) )
Brian Murray53e23b62016-09-13 14:00:15 -0700158#error "MBEDTLS_CMAC_C defined, but not all prerequisites"
159#endif
160
Ron Eldor466a57f2018-05-03 16:54:28 +0300161#if defined(MBEDTLS_NIST_KW_C) && \
162 ( !defined(MBEDTLS_AES_C) || !defined(MBEDTLS_CIPHER_C) )
Przemek Stekiela09f8352022-05-12 09:34:28 +0200163#error "MBEDTLS_NIST_KW_C defined, but not all prerequisites"
Ron Eldor466a57f2018-05-03 16:54:28 +0300164#endif
165
Yanray Wangd137da52023-11-08 19:12:23 +0800166#if defined(MBEDTLS_BLOCK_CIPHER_NO_DECRYPT) && defined(MBEDTLS_PSA_CRYPTO_CONFIG)
167#if defined(PSA_WANT_ALG_CBC_NO_PADDING)
168#error "MBEDTLS_BLOCK_CIPHER_NO_DECRYPT and PSA_WANT_ALG_CBC_NO_PADDING cannot be defined simultaneously"
169#endif
170#if defined(PSA_WANT_ALG_CBC_PKCS7)
171#error "MBEDTLS_BLOCK_CIPHER_NO_DECRYPT and PSA_WANT_ALG_CBC_PKCS7 cannot be defined simultaneously"
172#endif
173#if defined(PSA_WANT_ALG_ECB_NO_PADDING)
174#error "MBEDTLS_BLOCK_CIPHER_NO_DECRYPT and PSA_WANT_ALG_ECB_NO_PADDING cannot be defined simultaneously"
175#endif
176#if defined(PSA_WANT_KEY_TYPE_DES)
177#error "MBEDTLS_BLOCK_CIPHER_NO_DECRYPT and PSA_WANT_KEY_TYPE_DES cannot be defined simultaneously"
178#endif
Yanray Wang72d7bb42023-08-30 13:58:15 +0800179#endif
180
Yanray Wangd137da52023-11-08 19:12:23 +0800181#if defined(MBEDTLS_BLOCK_CIPHER_NO_DECRYPT)
182#if defined(MBEDTLS_CIPHER_MODE_CBC)
183#error "MBEDTLS_BLOCK_CIPHER_NO_DECRYPT and MBEDTLS_CIPHER_MODE_CBC cannot be defined simultaneously"
184#endif
185#if defined(MBEDTLS_CIPHER_MODE_XTS)
186#error "MBEDTLS_BLOCK_CIPHER_NO_DECRYPT and MBEDTLS_CIPHER_MODE_XTS cannot be defined simultaneously"
187#endif
188#if defined(MBEDTLS_DES_C)
189#error "MBEDTLS_BLOCK_CIPHER_NO_DECRYPT and MBEDTLS_DES_C cannot be defined simultaneously"
190#endif
191#if defined(MBEDTLS_NIST_KW_C)
192#error "MBEDTLS_BLOCK_CIPHER_NO_DECRYPT and MBEDTLS_NIST_KW_C cannot be defined simultaneously"
193#endif
Yanray Wang956aa002023-11-01 19:15:16 +0800194#endif
195
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200196#if defined(MBEDTLS_ECDH_C) && !defined(MBEDTLS_ECP_C)
197#error "MBEDTLS_ECDH_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200198#endif
199
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200200#if defined(MBEDTLS_ECDSA_C) && \
201 ( !defined(MBEDTLS_ECP_C) || \
Gilles Peskine799e5762018-09-14 17:34:00 +0200202 !( defined(MBEDTLS_ECP_DP_SECP192R1_ENABLED) || \
203 defined(MBEDTLS_ECP_DP_SECP224R1_ENABLED) || \
204 defined(MBEDTLS_ECP_DP_SECP256R1_ENABLED) || \
205 defined(MBEDTLS_ECP_DP_SECP384R1_ENABLED) || \
206 defined(MBEDTLS_ECP_DP_SECP521R1_ENABLED) || \
207 defined(MBEDTLS_ECP_DP_SECP192K1_ENABLED) || \
208 defined(MBEDTLS_ECP_DP_SECP224K1_ENABLED) || \
209 defined(MBEDTLS_ECP_DP_SECP256K1_ENABLED) || \
210 defined(MBEDTLS_ECP_DP_BP256R1_ENABLED) || \
211 defined(MBEDTLS_ECP_DP_BP384R1_ENABLED) || \
212 defined(MBEDTLS_ECP_DP_BP512R1_ENABLED) ) || \
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200213 !defined(MBEDTLS_ASN1_PARSE_C) || \
214 !defined(MBEDTLS_ASN1_WRITE_C) )
215#error "MBEDTLS_ECDSA_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200216#endif
217
Yanray Wang145bb292023-09-25 11:10:25 +0800218#if defined(MBEDTLS_PK_C) && defined(MBEDTLS_USE_PSA_CRYPTO)
219#if defined(MBEDTLS_PK_CAN_ECDSA_SIGN) && !defined(MBEDTLS_ASN1_WRITE_C)
220#error "MBEDTLS_PK_C with MBEDTLS_USE_PSA_CRYPTO needs MBEDTLS_ASN1_WRITE_C for ECDSA signature"
221#endif
222#if defined(MBEDTLS_PK_CAN_ECDSA_VERIFY) && !defined(MBEDTLS_ASN1_PARSE_C)
223#error "MBEDTLS_PK_C with MBEDTLS_USE_PSA_CRYPTO needs MBEDTLS_ASN1_PARSE_C for ECDSA verification"
224#endif
225#endif /* MBEDTLS_PK_C && MBEDTLS_USE_PSA_CRYPTO */
226
Manuel Pégourié-Gonnard61758e62024-02-08 12:03:28 +0100227#if defined(MBEDTLS_ECJPAKE_C) && \
228 (!defined(MBEDTLS_ECP_C) || !defined(MBEDTLS_MD_C))
Manuel Pégourié-Gonnard4d8685b2015-08-05 15:44:42 +0200229#error "MBEDTLS_ECJPAKE_C defined, but not all prerequisites"
230#endif
231
Ron Eldor5ed8c1e2018-11-05 14:04:26 +0200232#if defined(MBEDTLS_ECP_RESTARTABLE) && \
Manuel Pégourié-Gonnardad27b802022-12-05 12:54:11 +0100233 ( defined(MBEDTLS_ECDH_COMPUTE_SHARED_ALT) || \
Ron Eldor5ed8c1e2018-11-05 14:04:26 +0200234 defined(MBEDTLS_ECDH_GEN_PUBLIC_ALT) || \
235 defined(MBEDTLS_ECDSA_SIGN_ALT) || \
236 defined(MBEDTLS_ECDSA_VERIFY_ALT) || \
237 defined(MBEDTLS_ECDSA_GENKEY_ALT) || \
Andrzej Kurekc470b6b2019-01-31 08:20:20 -0500238 defined(MBEDTLS_ECP_INTERNAL_ALT) || \
Ron Eldor5ed8c1e2018-11-05 14:04:26 +0200239 defined(MBEDTLS_ECP_ALT) )
Manuel Pégourié-Gonnardad27b802022-12-05 12:54:11 +0100240#error "MBEDTLS_ECP_RESTARTABLE defined, but it cannot coexist with an alternative ECP implementation"
Ron Eldor5ed8c1e2018-11-05 14:04:26 +0200241#endif
242
Manuel Pégourié-Gonnardad45c4d2022-12-06 13:20:06 +0100243#if defined(MBEDTLS_ECP_RESTARTABLE) && \
244 !defined(MBEDTLS_ECP_C)
245#error "MBEDTLS_ECP_RESTARTABLE defined, but not all prerequisites"
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200246#endif
247
248#if defined(MBEDTLS_ECDSA_DETERMINISTIC) && !defined(MBEDTLS_HMAC_DRBG_C)
249#error "MBEDTLS_ECDSA_DETERMINISTIC defined, but not all prerequisites"
250#endif
251
Manuel Pégourié-Gonnard6d429212023-10-17 10:01:33 +0200252#if defined(MBEDTLS_ECP_LIGHT) && ( !defined(MBEDTLS_BIGNUM_C) || ( \
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200253 !defined(MBEDTLS_ECP_DP_SECP192R1_ENABLED) && \
254 !defined(MBEDTLS_ECP_DP_SECP224R1_ENABLED) && \
255 !defined(MBEDTLS_ECP_DP_SECP256R1_ENABLED) && \
256 !defined(MBEDTLS_ECP_DP_SECP384R1_ENABLED) && \
257 !defined(MBEDTLS_ECP_DP_SECP521R1_ENABLED) && \
258 !defined(MBEDTLS_ECP_DP_BP256R1_ENABLED) && \
259 !defined(MBEDTLS_ECP_DP_BP384R1_ENABLED) && \
260 !defined(MBEDTLS_ECP_DP_BP512R1_ENABLED) && \
261 !defined(MBEDTLS_ECP_DP_SECP192K1_ENABLED) && \
262 !defined(MBEDTLS_ECP_DP_SECP224K1_ENABLED) && \
k-stachowiak5dbe7ca2019-05-31 20:13:58 +0200263 !defined(MBEDTLS_ECP_DP_SECP256K1_ENABLED) && \
264 !defined(MBEDTLS_ECP_DP_CURVE25519_ENABLED) && \
265 !defined(MBEDTLS_ECP_DP_CURVE448_ENABLED) ) )
Manuel Pégourié-Gonnard6d429212023-10-17 10:01:33 +0200266#error "MBEDTLS_ECP_C defined (or a subset enabled), but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200267#endif
268
Andrzej Kurekc470b6b2019-01-31 08:20:20 -0500269#if defined(MBEDTLS_PK_PARSE_C) && !defined(MBEDTLS_ASN1_PARSE_C)
Shaun Case8b0ecbc2021-12-20 21:14:10 -0800270#error "MBEDTLS_PK_PARSE_C defined, but not all prerequisites"
Andrzej Kurekc470b6b2019-01-31 08:20:20 -0500271#endif
272
Manuel Pégourié-Gonnard5cd4b642023-02-02 13:14:59 +0100273#if defined(MBEDTLS_ENTROPY_C) && \
Manuel Pégourié-Gonnard68608b22024-02-08 11:51:39 +0100274 !(defined(MBEDTLS_MD_CAN_SHA512) || defined(MBEDTLS_MD_CAN_SHA256))
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200275#error "MBEDTLS_ENTROPY_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200276#endif
Manuel Pégourié-Gonnard5cd4b642023-02-02 13:14:59 +0100277#if defined(MBEDTLS_ENTROPY_C) && \
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200278 defined(MBEDTLS_CTR_DRBG_ENTROPY_LEN) && (MBEDTLS_CTR_DRBG_ENTROPY_LEN > 64)
279#error "MBEDTLS_CTR_DRBG_ENTROPY_LEN value too high"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200280#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200281#if defined(MBEDTLS_ENTROPY_C) && \
Manuel Pégourié-Gonnard68608b22024-02-08 11:51:39 +0100282 (defined(MBEDTLS_ENTROPY_FORCE_SHA256) || !defined(MBEDTLS_MD_CAN_SHA512)) \
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200283 && defined(MBEDTLS_CTR_DRBG_ENTROPY_LEN) && (MBEDTLS_CTR_DRBG_ENTROPY_LEN > 32)
284#error "MBEDTLS_CTR_DRBG_ENTROPY_LEN value too high"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200285#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200286#if defined(MBEDTLS_ENTROPY_C) && \
Manuel Pégourié-Gonnard68608b22024-02-08 11:51:39 +0100287 defined(MBEDTLS_ENTROPY_FORCE_SHA256) && !defined(MBEDTLS_MD_CAN_SHA256)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200288#error "MBEDTLS_ENTROPY_FORCE_SHA256 defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200289#endif
290
Manuel Pégourié-Gonnard6240def2020-07-10 09:35:54 +0200291#if defined(__has_feature)
292#if __has_feature(memory_sanitizer)
Manuel Pégourié-Gonnarde1f3faf2024-02-08 12:17:20 +0100293#define MBEDTLS_HAS_MEMSAN // #undef at the end of this paragraph
Manuel Pégourié-Gonnard6240def2020-07-10 09:35:54 +0200294#endif
295#endif
296#if defined(MBEDTLS_TEST_CONSTANT_FLOW_MEMSAN) && !defined(MBEDTLS_HAS_MEMSAN)
297#error "MBEDTLS_TEST_CONSTANT_FLOW_MEMSAN requires building with MemorySanitizer"
298#endif
Manuel Pégourié-Gonnarde1f3faf2024-02-08 12:17:20 +0100299#undef MBEDTLS_HAS_MEMSAN // temporary macro defined above
Manuel Pégourié-Gonnard6240def2020-07-10 09:35:54 +0200300
Valerio Settic0f9bbc2023-12-12 11:49:28 +0100301#if defined(MBEDTLS_CCM_C) && \
Valerio Setti1994e722023-12-28 14:01:22 +0100302 !(defined(MBEDTLS_CCM_GCM_CAN_AES) || defined(MBEDTLS_CCM_GCM_CAN_ARIA) || \
303 defined(MBEDTLS_CCM_GCM_CAN_CAMELLIA))
Gilles Peskine19848002021-09-02 10:33:57 +0200304#error "MBEDTLS_CCM_C defined, but not all prerequisites"
305#endif
306
Valerio Settic0f9bbc2023-12-12 11:49:28 +0100307#if defined(MBEDTLS_GCM_C) && \
Valerio Setti1994e722023-12-28 14:01:22 +0100308 !(defined(MBEDTLS_CCM_GCM_CAN_AES) || defined(MBEDTLS_CCM_GCM_CAN_ARIA) || \
309 defined(MBEDTLS_CCM_GCM_CAN_CAMELLIA))
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200310#error "MBEDTLS_GCM_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200311#endif
312
Gilles Peskine19848002021-09-02 10:33:57 +0200313#if defined(MBEDTLS_CHACHAPOLY_C) && !defined(MBEDTLS_CHACHA20_C)
314#error "MBEDTLS_CHACHAPOLY_C defined, but not all prerequisites"
315#endif
316
317#if defined(MBEDTLS_CHACHAPOLY_C) && !defined(MBEDTLS_POLY1305_C)
318#error "MBEDTLS_CHACHAPOLY_C defined, but not all prerequisites"
319#endif
320
Janos Follathc44ab972016-11-18 16:38:23 +0000321#if defined(MBEDTLS_ECP_RANDOMIZE_JAC_ALT) && !defined(MBEDTLS_ECP_INTERNAL_ALT)
Janos Follathb0697532016-08-18 12:38:46 +0100322#error "MBEDTLS_ECP_RANDOMIZE_JAC_ALT defined, but not all prerequisites"
323#endif
324
Janos Follathc44ab972016-11-18 16:38:23 +0000325#if defined(MBEDTLS_ECP_ADD_MIXED_ALT) && !defined(MBEDTLS_ECP_INTERNAL_ALT)
Janos Follathb0697532016-08-18 12:38:46 +0100326#error "MBEDTLS_ECP_ADD_MIXED_ALT defined, but not all prerequisites"
327#endif
328
Janos Follathc44ab972016-11-18 16:38:23 +0000329#if defined(MBEDTLS_ECP_DOUBLE_JAC_ALT) && !defined(MBEDTLS_ECP_INTERNAL_ALT)
Janos Follathb0697532016-08-18 12:38:46 +0100330#error "MBEDTLS_ECP_DOUBLE_JAC_ALT defined, but not all prerequisites"
331#endif
332
Janos Follathc44ab972016-11-18 16:38:23 +0000333#if defined(MBEDTLS_ECP_NORMALIZE_JAC_MANY_ALT) && !defined(MBEDTLS_ECP_INTERNAL_ALT)
Janos Follathb0697532016-08-18 12:38:46 +0100334#error "MBEDTLS_ECP_NORMALIZE_JAC_MANY_ALT defined, but not all prerequisites"
335#endif
336
Janos Follathc44ab972016-11-18 16:38:23 +0000337#if defined(MBEDTLS_ECP_NORMALIZE_JAC_ALT) && !defined(MBEDTLS_ECP_INTERNAL_ALT)
Janos Follathb0697532016-08-18 12:38:46 +0100338#error "MBEDTLS_ECP_NORMALIZE_JAC_ALT defined, but not all prerequisites"
339#endif
340
Janos Follathc44ab972016-11-18 16:38:23 +0000341#if defined(MBEDTLS_ECP_DOUBLE_ADD_MXZ_ALT) && !defined(MBEDTLS_ECP_INTERNAL_ALT)
Janos Follathb0697532016-08-18 12:38:46 +0100342#error "MBEDTLS_ECP_DOUBLE_ADD_MXZ_ALT defined, but not all prerequisites"
343#endif
344
Janos Follathc44ab972016-11-18 16:38:23 +0000345#if defined(MBEDTLS_ECP_RANDOMIZE_MXZ_ALT) && !defined(MBEDTLS_ECP_INTERNAL_ALT)
Janos Follathb0697532016-08-18 12:38:46 +0100346#error "MBEDTLS_ECP_RANDOMIZE_MXZ_ALT defined, but not all prerequisites"
347#endif
348
Janos Follathc44ab972016-11-18 16:38:23 +0000349#if defined(MBEDTLS_ECP_NORMALIZE_MXZ_ALT) && !defined(MBEDTLS_ECP_INTERNAL_ALT)
Janos Follathb0697532016-08-18 12:38:46 +0100350#error "MBEDTLS_ECP_NORMALIZE_MXZ_ALT defined, but not all prerequisites"
351#endif
352
Steven Cooremanb5873132021-01-21 13:59:17 +0100353#if defined(MBEDTLS_ECP_NO_FALLBACK) && !defined(MBEDTLS_ECP_INTERNAL_ALT)
354#error "MBEDTLS_ECP_NO_FALLBACK defined, but no alternative implementation enabled"
355#endif
356
Thomas Fossati656864b2016-07-17 08:51:22 +0100357#if defined(MBEDTLS_HKDF_C) && !defined(MBEDTLS_MD_C)
358#error "MBEDTLS_HKDF_C defined, but not all prerequisites"
359#endif
360
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200361#if defined(MBEDTLS_HMAC_DRBG_C) && !defined(MBEDTLS_MD_C)
362#error "MBEDTLS_HMAC_DRBG_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200363#endif
364
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200365#if defined(MBEDTLS_KEY_EXCHANGE_ECDH_ECDSA_ENABLED) && \
Valerio Settiaa7cbd62023-07-07 17:22:17 +0200366 ( !defined(MBEDTLS_CAN_ECDH) || \
Valerio Settia15078b2023-07-06 14:52:45 +0200367 !defined(MBEDTLS_PK_CAN_ECDSA_SIGN) || \
Gilles Peskine7ab66a62018-09-14 17:47:41 +0200368 !defined(MBEDTLS_X509_CRT_PARSE_C) )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200369#error "MBEDTLS_KEY_EXCHANGE_ECDH_ECDSA_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200370#endif
371
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200372#if defined(MBEDTLS_KEY_EXCHANGE_ECDH_RSA_ENABLED) && \
Valerio Settiaa7cbd62023-07-07 17:22:17 +0200373 ( !defined(MBEDTLS_CAN_ECDH) || !defined(MBEDTLS_RSA_C) || \
Gilles Peskine7ab66a62018-09-14 17:47:41 +0200374 !defined(MBEDTLS_X509_CRT_PARSE_C) )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200375#error "MBEDTLS_KEY_EXCHANGE_ECDH_RSA_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200376#endif
377
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200378#if defined(MBEDTLS_KEY_EXCHANGE_DHE_PSK_ENABLED) && !defined(MBEDTLS_DHM_C)
379#error "MBEDTLS_KEY_EXCHANGE_DHE_PSK_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200380#endif
381
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200382#if defined(MBEDTLS_KEY_EXCHANGE_ECDHE_PSK_ENABLED) && \
Valerio Settiaa7cbd62023-07-07 17:22:17 +0200383 !defined(MBEDTLS_CAN_ECDH)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200384#error "MBEDTLS_KEY_EXCHANGE_ECDHE_PSK_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200385#endif
386
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200387#if defined(MBEDTLS_KEY_EXCHANGE_DHE_RSA_ENABLED) && \
388 ( !defined(MBEDTLS_DHM_C) || !defined(MBEDTLS_RSA_C) || \
389 !defined(MBEDTLS_X509_CRT_PARSE_C) || !defined(MBEDTLS_PKCS1_V15) )
390#error "MBEDTLS_KEY_EXCHANGE_DHE_RSA_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200391#endif
392
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200393#if defined(MBEDTLS_KEY_EXCHANGE_ECDHE_RSA_ENABLED) && \
Valerio Settiaa7cbd62023-07-07 17:22:17 +0200394 ( !defined(MBEDTLS_CAN_ECDH) || !defined(MBEDTLS_RSA_C) || \
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200395 !defined(MBEDTLS_X509_CRT_PARSE_C) || !defined(MBEDTLS_PKCS1_V15) )
396#error "MBEDTLS_KEY_EXCHANGE_ECDHE_RSA_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200397#endif
398
Manuel Pégourié-Gonnard45bcb6a2023-03-10 11:40:48 +0100399#if defined(MBEDTLS_KEY_EXCHANGE_ECDHE_ECDSA_ENABLED) && \
Valerio Settiaa7cbd62023-07-07 17:22:17 +0200400 ( !defined(MBEDTLS_CAN_ECDH) || \
Valerio Settia15078b2023-07-06 14:52:45 +0200401 !defined(MBEDTLS_PK_CAN_ECDSA_SIGN) || \
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200402 !defined(MBEDTLS_X509_CRT_PARSE_C) )
403#error "MBEDTLS_KEY_EXCHANGE_ECDHE_ECDSA_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200404#endif
405
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200406#if defined(MBEDTLS_KEY_EXCHANGE_RSA_PSK_ENABLED) && \
407 ( !defined(MBEDTLS_RSA_C) || !defined(MBEDTLS_X509_CRT_PARSE_C) || \
408 !defined(MBEDTLS_PKCS1_V15) )
409#error "MBEDTLS_KEY_EXCHANGE_RSA_PSK_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200410#endif
411
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200412#if defined(MBEDTLS_KEY_EXCHANGE_RSA_ENABLED) && \
413 ( !defined(MBEDTLS_RSA_C) || !defined(MBEDTLS_X509_CRT_PARSE_C) || \
414 !defined(MBEDTLS_PKCS1_V15) )
415#error "MBEDTLS_KEY_EXCHANGE_RSA_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200416#endif
417
Manuel Pégourié-Gonnarde1f3faf2024-02-08 12:17:20 +0100418#if defined(MBEDTLS_USE_PSA_CRYPTO)
419#if defined(MBEDTLS_KEY_EXCHANGE_ECJPAKE_ENABLED) && \
420 ( !defined(PSA_WANT_ALG_JPAKE) || \
421 !defined(PSA_WANT_KEY_TYPE_ECC_KEY_PAIR_BASIC) || \
422 !defined(PSA_WANT_ECC_SECP_R1_256) )
Manuel Pégourié-Gonnard557535d2015-09-15 17:53:32 +0200423#error "MBEDTLS_KEY_EXCHANGE_ECJPAKE_ENABLED defined, but not all prerequisites"
424#endif
Manuel Pégourié-Gonnarde1f3faf2024-02-08 12:17:20 +0100425#else /* MBEDTLS_USE_PSA_CRYPTO */
426#if defined(MBEDTLS_KEY_EXCHANGE_ECJPAKE_ENABLED) && \
427 ( !defined(MBEDTLS_ECJPAKE_C) || \
428 !defined(MBEDTLS_ECP_DP_SECP256R1_ENABLED) )
429#error "MBEDTLS_KEY_EXCHANGE_ECJPAKE_ENABLED defined, but not all prerequisites"
430#endif
431#endif /* MBEDTLS_USE_PSA_CRYPTO */
Manuel Pégourié-Gonnard557535d2015-09-15 17:53:32 +0200432
Manuel Pégourié-Gonnard41bc8b62023-03-14 23:59:24 +0100433/* Use of EC J-PAKE in TLS requires SHA-256. */
Manuel Pégourié-Gonnard3c16abe2022-09-19 10:44:42 +0200434#if defined(MBEDTLS_KEY_EXCHANGE_ECJPAKE_ENABLED) && \
Manuel Pégourié-Gonnard68608b22024-02-08 11:51:39 +0100435 !defined(MBEDTLS_MD_CAN_SHA256)
Manuel Pégourié-Gonnard3c16abe2022-09-19 10:44:42 +0200436#error "MBEDTLS_KEY_EXCHANGE_ECJPAKE_ENABLED defined, but not all prerequisites"
437#endif
438
Gilles Peskineeccd8882020-03-10 12:19:08 +0100439#if defined(MBEDTLS_KEY_EXCHANGE_WITH_CERT_ENABLED) && \
Manuel Pégourié-Gonnard49f64b42024-02-08 12:00:28 +0100440 !defined(MBEDTLS_SSL_KEEP_PEER_CERTIFICATE) && \
441 !defined(MBEDTLS_MD_CAN_SHA256) && \
442 !defined(MBEDTLS_MD_CAN_SHA512) && \
443 !defined(MBEDTLS_MD_CAN_SHA1)
444#error "!MBEDTLS_SSL_KEEP_PEER_CERTIFICATE requires SHA-512, SHA-256 or SHA-1".
Hanno Beckerfe4ef0c2019-02-26 11:43:09 +0000445#endif
446
Manuel Pégourié-Gonnard7eb3f9a2024-02-08 11:56:54 +0100447#if defined(MBEDTLS_MD_C) && \
448 !defined(MBEDTLS_MD_CAN_MD5) && \
449 !defined(MBEDTLS_MD_CAN_RIPEMD160) && \
450 !defined(MBEDTLS_MD_CAN_SHA1) && \
451 !defined(MBEDTLS_MD_CAN_SHA224) && \
452 !defined(MBEDTLS_MD_CAN_SHA256) && \
453 !defined(MBEDTLS_MD_CAN_SHA384) && \
454 !defined(MBEDTLS_MD_CAN_SHA512) && \
455 !defined(MBEDTLS_MD_CAN_SHA3_224) && \
456 !defined(MBEDTLS_MD_CAN_SHA3_256) && \
457 !defined(MBEDTLS_MD_CAN_SHA3_384) && \
458 !defined(MBEDTLS_MD_CAN_SHA3_512)
459#error "MBEDTLS_MD_C defined, but no hash algorithm"
Manuel Pégourié-Gonnard1f7f7172022-07-18 12:04:05 +0200460#endif
461
Raef Coles8ff6df52021-07-21 12:42:15 +0100462#if defined(MBEDTLS_LMS_C) && \
Raef Coles07b70d92022-10-13 10:46:16 +0100463 ! ( defined(MBEDTLS_PSA_CRYPTO_C) && defined(PSA_WANT_ALG_SHA_256) )
464#error "MBEDTLS_LMS_C requires MBEDTLS_PSA_CRYPTO_C and PSA_WANT_ALG_SHA_256"
Raef Coles8ff6df52021-07-21 12:42:15 +0100465#endif
466
Raef Colesab4f8742022-09-01 12:24:31 +0100467#if defined(MBEDTLS_LMS_PRIVATE) && \
468 ( !defined(MBEDTLS_LMS_C) )
469#error "MBEDTLS_LMS_PRIVATE requires MBEDTLS_LMS_C"
470#endif
471
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200472#if defined(MBEDTLS_MEMORY_BUFFER_ALLOC_C) && \
473 ( !defined(MBEDTLS_PLATFORM_C) || !defined(MBEDTLS_PLATFORM_MEMORY) )
474#error "MBEDTLS_MEMORY_BUFFER_ALLOC_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200475#endif
476
Hanno Beckeraf46c5f2019-02-26 13:50:21 +0000477#if defined(MBEDTLS_MEMORY_BACKTRACE) && !defined(MBEDTLS_MEMORY_BUFFER_ALLOC_C)
Shaun Case8b0ecbc2021-12-20 21:14:10 -0800478#error "MBEDTLS_MEMORY_BACKTRACE defined, but not all prerequisites"
Hanno Beckeraf46c5f2019-02-26 13:50:21 +0000479#endif
480
Hanno Beckerbfaa7182019-06-03 16:31:32 +0100481#if defined(MBEDTLS_MEMORY_DEBUG) && !defined(MBEDTLS_MEMORY_BUFFER_ALLOC_C)
Shaun Case8b0ecbc2021-12-20 21:14:10 -0800482#error "MBEDTLS_MEMORY_DEBUG defined, but not all prerequisites"
Hanno Beckerbfaa7182019-06-03 16:31:32 +0100483#endif
484
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200485#if defined(MBEDTLS_PEM_PARSE_C) && !defined(MBEDTLS_BASE64_C)
486#error "MBEDTLS_PEM_PARSE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200487#endif
488
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200489#if defined(MBEDTLS_PEM_WRITE_C) && !defined(MBEDTLS_BASE64_C)
490#error "MBEDTLS_PEM_WRITE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200491#endif
492
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200493#if defined(MBEDTLS_PK_C) && \
Valerio Setti7c494e72023-07-27 14:58:53 +0200494 !defined(MBEDTLS_RSA_C) && !defined(MBEDTLS_PK_HAVE_ECC_KEYS)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200495#error "MBEDTLS_PK_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard94de3312015-01-28 16:32:36 +0000496#endif
497
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200498#if defined(MBEDTLS_PK_PARSE_C) && !defined(MBEDTLS_PK_C)
499#error "MBEDTLS_PK_PARSE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200500#endif
501
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200502#if defined(MBEDTLS_PK_WRITE_C) && !defined(MBEDTLS_PK_C)
503#error "MBEDTLS_PK_WRITE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200504#endif
505
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200506#if defined(MBEDTLS_PLATFORM_EXIT_ALT) && !defined(MBEDTLS_PLATFORM_C)
507#error "MBEDTLS_PLATFORM_EXIT_ALT defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000508#endif
509
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200510#if defined(MBEDTLS_PLATFORM_EXIT_MACRO) && !defined(MBEDTLS_PLATFORM_C)
511#error "MBEDTLS_PLATFORM_EXIT_MACRO defined, but not all prerequisites"
Rich Evans4cc8a222015-02-03 11:26:31 +0000512#endif
513
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200514#if defined(MBEDTLS_PLATFORM_EXIT_MACRO) &&\
515 ( defined(MBEDTLS_PLATFORM_STD_EXIT) ||\
516 defined(MBEDTLS_PLATFORM_EXIT_ALT) )
517#error "MBEDTLS_PLATFORM_EXIT_MACRO and MBEDTLS_PLATFORM_STD_EXIT/MBEDTLS_PLATFORM_EXIT_ALT cannot be defined simultaneously"
Rich Evans4cc8a222015-02-03 11:26:31 +0000518#endif
519
Gilles Peskine6497b5a2022-06-30 17:01:40 +0200520#if defined(MBEDTLS_PLATFORM_SETBUF_ALT) && !defined(MBEDTLS_PLATFORM_C)
521#error "MBEDTLS_PLATFORM_SETBUF_ALT defined, but not all prerequisites"
522#endif
523
524#if defined(MBEDTLS_PLATFORM_SETBUF_MACRO) && !defined(MBEDTLS_PLATFORM_C)
525#error "MBEDTLS_PLATFORM_SETBUF_MACRO defined, but not all prerequisites"
526#endif
527
528#if defined(MBEDTLS_PLATFORM_SETBUF_MACRO) &&\
529 ( defined(MBEDTLS_PLATFORM_STD_SETBUF) ||\
530 defined(MBEDTLS_PLATFORM_SETBUF_ALT) )
531#error "MBEDTLS_PLATFORM_SETBUF_MACRO and MBEDTLS_PLATFORM_STD_SETBUF/MBEDTLS_PLATFORM_SETBUF_ALT cannot be defined simultaneously"
532#endif
533
Andres Amaya Garcia1e4ec662016-07-20 10:16:25 +0100534#if defined(MBEDTLS_PLATFORM_TIME_ALT) &&\
535 ( !defined(MBEDTLS_PLATFORM_C) ||\
536 !defined(MBEDTLS_HAVE_TIME) )
537#error "MBEDTLS_PLATFORM_TIME_ALT defined, but not all prerequisites"
538#endif
539
540#if defined(MBEDTLS_PLATFORM_TIME_MACRO) &&\
541 ( !defined(MBEDTLS_PLATFORM_C) ||\
542 !defined(MBEDTLS_HAVE_TIME) )
543#error "MBEDTLS_PLATFORM_TIME_MACRO defined, but not all prerequisites"
544#endif
545
Jerry Yueba0ab52022-12-15 17:41:41 +0800546#if defined(MBEDTLS_PLATFORM_MS_TIME_TYPE_MACRO) &&\
Jerry Yu1ae2b2f2023-02-21 15:37:12 +0800547 ( !defined(MBEDTLS_PLATFORM_C) || !defined(MBEDTLS_HAVE_TIME) )
Jerry Yueba0ab52022-12-15 17:41:41 +0800548#error "MBEDTLS_PLATFORM_MS_TIME_TYPE_MACRO defined, but not all prerequisites"
549#endif
550
Jerry Yu38257492022-12-15 17:54:47 +0800551#if defined(MBEDTLS_PLATFORM_MS_TIME_ALT) && \
Jerry Yu1ae2b2f2023-02-21 15:37:12 +0800552 ( !defined(MBEDTLS_PLATFORM_C) || !defined(MBEDTLS_HAVE_TIME) )
Jerry Yu38257492022-12-15 17:54:47 +0800553#error "MBEDTLS_PLATFORM_MS_TIME_ALT defined, but not all prerequisites"
554#endif
555
Andres Amaya Garcia1e4ec662016-07-20 10:16:25 +0100556#if defined(MBEDTLS_PLATFORM_TIME_TYPE_MACRO) &&\
557 ( !defined(MBEDTLS_PLATFORM_C) ||\
558 !defined(MBEDTLS_HAVE_TIME) )
559#error "MBEDTLS_PLATFORM_TIME_TYPE_MACRO defined, but not all prerequisites"
560#endif
561
562#if defined(MBEDTLS_PLATFORM_TIME_MACRO) &&\
563 ( defined(MBEDTLS_PLATFORM_STD_TIME) ||\
564 defined(MBEDTLS_PLATFORM_TIME_ALT) )
565#error "MBEDTLS_PLATFORM_TIME_MACRO and MBEDTLS_PLATFORM_STD_TIME/MBEDTLS_PLATFORM_TIME_ALT cannot be defined simultaneously"
566#endif
567
568#if defined(MBEDTLS_PLATFORM_TIME_TYPE_MACRO) &&\
569 ( defined(MBEDTLS_PLATFORM_STD_TIME) ||\
570 defined(MBEDTLS_PLATFORM_TIME_ALT) )
571#error "MBEDTLS_PLATFORM_TIME_TYPE_MACRO and MBEDTLS_PLATFORM_STD_TIME/MBEDTLS_PLATFORM_TIME_ALT cannot be defined simultaneously"
572#endif
573
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200574#if defined(MBEDTLS_PLATFORM_FPRINTF_ALT) && !defined(MBEDTLS_PLATFORM_C)
575#error "MBEDTLS_PLATFORM_FPRINTF_ALT defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000576#endif
577
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200578#if defined(MBEDTLS_PLATFORM_FPRINTF_MACRO) && !defined(MBEDTLS_PLATFORM_C)
579#error "MBEDTLS_PLATFORM_FPRINTF_MACRO defined, but not all prerequisites"
Rich Evans4cc8a222015-02-03 11:26:31 +0000580#endif
581
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200582#if defined(MBEDTLS_PLATFORM_FPRINTF_MACRO) &&\
583 ( defined(MBEDTLS_PLATFORM_STD_FPRINTF) ||\
584 defined(MBEDTLS_PLATFORM_FPRINTF_ALT) )
585#error "MBEDTLS_PLATFORM_FPRINTF_MACRO and MBEDTLS_PLATFORM_STD_FPRINTF/MBEDTLS_PLATFORM_FPRINTF_ALT cannot be defined simultaneously"
Rich Evans4cc8a222015-02-03 11:26:31 +0000586#endif
587
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200588#if defined(MBEDTLS_PLATFORM_FREE_MACRO) &&\
589 ( !defined(MBEDTLS_PLATFORM_C) || !defined(MBEDTLS_PLATFORM_MEMORY) )
590#error "MBEDTLS_PLATFORM_FREE_MACRO defined, but not all prerequisites"
Rich Evans4cc8a222015-02-03 11:26:31 +0000591#endif
592
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200593#if defined(MBEDTLS_PLATFORM_FREE_MACRO) &&\
594 defined(MBEDTLS_PLATFORM_STD_FREE)
595#error "MBEDTLS_PLATFORM_FREE_MACRO and MBEDTLS_PLATFORM_STD_FREE cannot be defined simultaneously"
Rich Evans4cc8a222015-02-03 11:26:31 +0000596#endif
597
Manuel Pégourié-Gonnarda7f80332015-05-27 20:26:40 +0200598#if defined(MBEDTLS_PLATFORM_FREE_MACRO) && !defined(MBEDTLS_PLATFORM_CALLOC_MACRO)
599#error "MBEDTLS_PLATFORM_CALLOC_MACRO must be defined if MBEDTLS_PLATFORM_FREE_MACRO is"
Rich Evans16f8cd82015-02-06 16:14:34 +0000600#endif
601
Manuel Pégourié-Gonnarda7f80332015-05-27 20:26:40 +0200602#if defined(MBEDTLS_PLATFORM_CALLOC_MACRO) &&\
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200603 ( !defined(MBEDTLS_PLATFORM_C) || !defined(MBEDTLS_PLATFORM_MEMORY) )
Manuel Pégourié-Gonnarda7f80332015-05-27 20:26:40 +0200604#error "MBEDTLS_PLATFORM_CALLOC_MACRO defined, but not all prerequisites"
Rich Evans4cc8a222015-02-03 11:26:31 +0000605#endif
606
Manuel Pégourié-Gonnarda7f80332015-05-27 20:26:40 +0200607#if defined(MBEDTLS_PLATFORM_CALLOC_MACRO) &&\
608 defined(MBEDTLS_PLATFORM_STD_CALLOC)
609#error "MBEDTLS_PLATFORM_CALLOC_MACRO and MBEDTLS_PLATFORM_STD_CALLOC cannot be defined simultaneously"
Rich Evans4cc8a222015-02-03 11:26:31 +0000610#endif
611
Manuel Pégourié-Gonnarda7f80332015-05-27 20:26:40 +0200612#if defined(MBEDTLS_PLATFORM_CALLOC_MACRO) && !defined(MBEDTLS_PLATFORM_FREE_MACRO)
613#error "MBEDTLS_PLATFORM_FREE_MACRO must be defined if MBEDTLS_PLATFORM_CALLOC_MACRO is"
Rich Evans16f8cd82015-02-06 16:14:34 +0000614#endif
615
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200616#if defined(MBEDTLS_PLATFORM_MEMORY) && !defined(MBEDTLS_PLATFORM_C)
617#error "MBEDTLS_PLATFORM_MEMORY defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000618#endif
619
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200620#if defined(MBEDTLS_PLATFORM_PRINTF_ALT) && !defined(MBEDTLS_PLATFORM_C)
621#error "MBEDTLS_PLATFORM_PRINTF_ALT defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000622#endif
623
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200624#if defined(MBEDTLS_PLATFORM_PRINTF_MACRO) && !defined(MBEDTLS_PLATFORM_C)
625#error "MBEDTLS_PLATFORM_PRINTF_MACRO defined, but not all prerequisites"
Rich Evans4cc8a222015-02-03 11:26:31 +0000626#endif
627
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200628#if defined(MBEDTLS_PLATFORM_PRINTF_MACRO) &&\
629 ( defined(MBEDTLS_PLATFORM_STD_PRINTF) ||\
630 defined(MBEDTLS_PLATFORM_PRINTF_ALT) )
631#error "MBEDTLS_PLATFORM_PRINTF_MACRO and MBEDTLS_PLATFORM_STD_PRINTF/MBEDTLS_PLATFORM_PRINTF_ALT cannot be defined simultaneously"
Rich Evans4cc8a222015-02-03 11:26:31 +0000632#endif
633
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200634#if defined(MBEDTLS_PLATFORM_SNPRINTF_ALT) && !defined(MBEDTLS_PLATFORM_C)
635#error "MBEDTLS_PLATFORM_SNPRINTF_ALT defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000636#endif
637
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200638#if defined(MBEDTLS_PLATFORM_SNPRINTF_MACRO) && !defined(MBEDTLS_PLATFORM_C)
639#error "MBEDTLS_PLATFORM_SNPRINTF_MACRO defined, but not all prerequisites"
Rich Evans4cc8a222015-02-03 11:26:31 +0000640#endif
641
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200642#if defined(MBEDTLS_PLATFORM_SNPRINTF_MACRO) &&\
643 ( defined(MBEDTLS_PLATFORM_STD_SNPRINTF) ||\
644 defined(MBEDTLS_PLATFORM_SNPRINTF_ALT) )
645#error "MBEDTLS_PLATFORM_SNPRINTF_MACRO and MBEDTLS_PLATFORM_STD_SNPRINTF/MBEDTLS_PLATFORM_SNPRINTF_ALT cannot be defined simultaneously"
Rich Evans4cc8a222015-02-03 11:26:31 +0000646#endif
647
Gilles Peskineef843f22022-09-18 14:05:23 +0200648#if defined(MBEDTLS_PLATFORM_VSNPRINTF_ALT) && !defined(MBEDTLS_PLATFORM_C)
649#error "MBEDTLS_PLATFORM_VSNPRINTF_ALT defined, but not all prerequisites"
650#endif
651
652#if defined(MBEDTLS_PLATFORM_VSNPRINTF_MACRO) && !defined(MBEDTLS_PLATFORM_C)
653#error "MBEDTLS_PLATFORM_VSNPRINTF_MACRO defined, but not all prerequisites"
654#endif
655
656#if defined(MBEDTLS_PLATFORM_VSNPRINTF_MACRO) &&\
657 ( defined(MBEDTLS_PLATFORM_STD_VSNPRINTF) ||\
658 defined(MBEDTLS_PLATFORM_VSNPRINTF_ALT) )
659#error "MBEDTLS_PLATFORM_VSNPRINTF_MACRO and MBEDTLS_PLATFORM_STD_VSNPRINTF/MBEDTLS_PLATFORM_VSNPRINTF_ALT cannot be defined simultaneously"
660#endif
661
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200662#if defined(MBEDTLS_PLATFORM_STD_MEM_HDR) &&\
663 !defined(MBEDTLS_PLATFORM_NO_STD_FUNCTIONS)
664#error "MBEDTLS_PLATFORM_STD_MEM_HDR defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000665#endif
666
Manuel Pégourié-Gonnarda7f80332015-05-27 20:26:40 +0200667#if defined(MBEDTLS_PLATFORM_STD_CALLOC) && !defined(MBEDTLS_PLATFORM_MEMORY)
668#error "MBEDTLS_PLATFORM_STD_CALLOC defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000669#endif
670
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200671#if defined(MBEDTLS_PLATFORM_STD_FREE) && !defined(MBEDTLS_PLATFORM_MEMORY)
672#error "MBEDTLS_PLATFORM_STD_FREE defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000673#endif
674
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200675#if defined(MBEDTLS_PLATFORM_STD_EXIT) &&\
676 !defined(MBEDTLS_PLATFORM_EXIT_ALT)
677#error "MBEDTLS_PLATFORM_STD_EXIT defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000678#endif
679
Andres Amaya Garcia1e4ec662016-07-20 10:16:25 +0100680#if defined(MBEDTLS_PLATFORM_STD_TIME) &&\
681 ( !defined(MBEDTLS_PLATFORM_TIME_ALT) ||\
682 !defined(MBEDTLS_HAVE_TIME) )
683#error "MBEDTLS_PLATFORM_STD_TIME defined, but not all prerequisites"
684#endif
685
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200686#if defined(MBEDTLS_PLATFORM_STD_FPRINTF) &&\
687 !defined(MBEDTLS_PLATFORM_FPRINTF_ALT)
688#error "MBEDTLS_PLATFORM_STD_FPRINTF defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000689#endif
690
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200691#if defined(MBEDTLS_PLATFORM_STD_PRINTF) &&\
692 !defined(MBEDTLS_PLATFORM_PRINTF_ALT)
693#error "MBEDTLS_PLATFORM_STD_PRINTF defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000694#endif
695
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200696#if defined(MBEDTLS_PLATFORM_STD_SNPRINTF) &&\
697 !defined(MBEDTLS_PLATFORM_SNPRINTF_ALT)
698#error "MBEDTLS_PLATFORM_STD_SNPRINTF defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000699#endif
700
Paul Bakkercf0a9f92016-06-01 11:25:44 +0100701#if defined(MBEDTLS_ENTROPY_NV_SEED) &&\
702 ( !defined(MBEDTLS_PLATFORM_C) || !defined(MBEDTLS_ENTROPY_C) )
703#error "MBEDTLS_ENTROPY_NV_SEED defined, but not all prerequisites"
704#endif
705
706#if defined(MBEDTLS_PLATFORM_NV_SEED_ALT) &&\
707 !defined(MBEDTLS_ENTROPY_NV_SEED)
708#error "MBEDTLS_PLATFORM_NV_SEED_ALT defined, but not all prerequisites"
709#endif
710
711#if defined(MBEDTLS_PLATFORM_STD_NV_SEED_READ) &&\
712 !defined(MBEDTLS_PLATFORM_NV_SEED_ALT)
713#error "MBEDTLS_PLATFORM_STD_NV_SEED_READ defined, but not all prerequisites"
714#endif
715
716#if defined(MBEDTLS_PLATFORM_STD_NV_SEED_WRITE) &&\
717 !defined(MBEDTLS_PLATFORM_NV_SEED_ALT)
718#error "MBEDTLS_PLATFORM_STD_NV_SEED_WRITE defined, but not all prerequisites"
719#endif
720
721#if defined(MBEDTLS_PLATFORM_NV_SEED_READ_MACRO) &&\
722 ( defined(MBEDTLS_PLATFORM_STD_NV_SEED_READ) ||\
723 defined(MBEDTLS_PLATFORM_NV_SEED_ALT) )
724#error "MBEDTLS_PLATFORM_NV_SEED_READ_MACRO and MBEDTLS_PLATFORM_STD_NV_SEED_READ cannot be defined simultaneously"
725#endif
726
727#if defined(MBEDTLS_PLATFORM_NV_SEED_WRITE_MACRO) &&\
728 ( defined(MBEDTLS_PLATFORM_STD_NV_SEED_WRITE) ||\
729 defined(MBEDTLS_PLATFORM_NV_SEED_ALT) )
730#error "MBEDTLS_PLATFORM_NV_SEED_WRITE_MACRO and MBEDTLS_PLATFORM_STD_NV_SEED_WRITE cannot be defined simultaneously"
731#endif
732
Gilles Peskinef08b3f82020-11-13 17:36:48 +0100733#if defined(MBEDTLS_PSA_CRYPTO_C) && \
Gilles Peskine82e57d12020-11-13 21:31:17 +0100734 !( ( ( defined(MBEDTLS_CTR_DRBG_C) || defined(MBEDTLS_HMAC_DRBG_C) ) && \
Gilles Peskinef08b3f82020-11-13 17:36:48 +0100735 defined(MBEDTLS_ENTROPY_C) ) || \
736 defined(MBEDTLS_PSA_CRYPTO_EXTERNAL_RNG) )
737#error "MBEDTLS_PSA_CRYPTO_C defined, but not all prerequisites (missing RNG)"
Jaeden Amero484ee332018-10-25 17:38:05 +0100738#endif
739
Valerio Setti919e3fa2023-11-20 16:30:05 +0100740#if defined(MBEDTLS_PSA_CRYPTO_C) && defined(PSA_HAVE_SOFT_BLOCK_MODE) && \
741 defined(PSA_HAVE_SOFT_BLOCK_CIPHER) && !defined(MBEDTLS_CIPHER_C)
Przemek Stekiela09f8352022-05-12 09:34:28 +0200742#error "MBEDTLS_PSA_CRYPTO_C defined, but not all prerequisites"
Przemek Stekielea805b42022-05-02 10:30:03 +0200743#endif
744
Andrzej Kurekc6905232019-02-05 05:23:41 -0500745#if defined(MBEDTLS_PSA_CRYPTO_SPM) && !defined(MBEDTLS_PSA_CRYPTO_C)
746#error "MBEDTLS_PSA_CRYPTO_SPM defined, but not all prerequisites"
747#endif
748
Gilles Peskinea8ade162019-06-26 11:24:49 +0200749#if defined(MBEDTLS_PSA_CRYPTO_SE_C) && \
750 ! ( defined(MBEDTLS_PSA_CRYPTO_C) && \
751 defined(MBEDTLS_PSA_CRYPTO_STORAGE_C) )
752#error "MBEDTLS_PSA_CRYPTO_SE_C defined, but not all prerequisites"
753#endif
754
Gilles Peskine98473c42022-06-20 18:46:22 +0200755#if defined(MBEDTLS_PSA_CRYPTO_SE_C)
756#if defined(MBEDTLS_DEPRECATED_REMOVED)
757#error "MBEDTLS_PSA_CRYPTO_SE_C is deprecated and will be removed in a future version of Mbed TLS"
758#elif defined(MBEDTLS_DEPRECATED_WARNING)
759#warning "MBEDTLS_PSA_CRYPTO_SE_C is deprecated and will be removed in a future version of Mbed TLS"
760#endif
761#endif /* MBEDTLS_PSA_CRYPTO_SE_C */
762
Andrzej Kurekc6905232019-02-05 05:23:41 -0500763#if defined(MBEDTLS_PSA_CRYPTO_STORAGE_C) && \
Jaeden Amero57f4d9e2019-03-15 16:14:19 +0000764 ! defined(MBEDTLS_PSA_CRYPTO_C)
Andrzej Kurekc6905232019-02-05 05:23:41 -0500765#error "MBEDTLS_PSA_CRYPTO_STORAGE_C defined, but not all prerequisites"
766#endif
767
Jaeden Amero57f4d9e2019-03-15 16:14:19 +0000768#if defined(MBEDTLS_PSA_INJECT_ENTROPY) && \
769 !( defined(MBEDTLS_PSA_CRYPTO_STORAGE_C) && \
770 defined(MBEDTLS_ENTROPY_NV_SEED) )
771#error "MBEDTLS_PSA_INJECT_ENTROPY defined, but not all prerequisites"
Andrzej Kurekc6905232019-02-05 05:23:41 -0500772#endif
773
Jaeden Amero57f4d9e2019-03-15 16:14:19 +0000774#if defined(MBEDTLS_PSA_INJECT_ENTROPY) && \
775 !defined(MBEDTLS_NO_DEFAULT_ENTROPY_SOURCES)
776#error "MBEDTLS_PSA_INJECT_ENTROPY is not compatible with actual entropy sources"
777#endif
778
Gilles Peskine4fc21fd2020-11-13 18:47:18 +0100779#if defined(MBEDTLS_PSA_INJECT_ENTROPY) && \
Gilles Peskine89ffb282020-11-18 15:23:08 +0100780 defined(MBEDTLS_PSA_CRYPTO_EXTERNAL_RNG)
Gilles Peskine4fc21fd2020-11-13 18:47:18 +0100781#error "MBEDTLS_PSA_INJECT_ENTROPY is not compatible with MBEDTLS_PSA_CRYPTO_EXTERNAL_RNG"
782#endif
783
Jaeden Amero57f4d9e2019-03-15 16:14:19 +0000784#if defined(MBEDTLS_PSA_ITS_FILE_C) && \
785 !defined(MBEDTLS_FS_IO)
786#error "MBEDTLS_PSA_ITS_FILE_C defined, but not all prerequisites"
Andrzej Kurekc6905232019-02-05 05:23:41 -0500787#endif
788
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200789#if defined(MBEDTLS_RSA_C) && ( !defined(MBEDTLS_BIGNUM_C) || \
790 !defined(MBEDTLS_OID_C) )
791#error "MBEDTLS_RSA_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200792#endif
793
Paul Bakker4fde40f2016-05-09 15:13:04 +0100794#if defined(MBEDTLS_RSA_C) && ( !defined(MBEDTLS_PKCS1_V21) && \
Paul Bakker37068a72016-05-09 14:36:33 +0100795 !defined(MBEDTLS_PKCS1_V15) )
796#error "MBEDTLS_RSA_C defined, but none of the PKCS1 versions enabled"
797#endif
798
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200799#if defined(MBEDTLS_X509_RSASSA_PSS_SUPPORT) && \
800 ( !defined(MBEDTLS_RSA_C) || !defined(MBEDTLS_PKCS1_V21) )
801#error "MBEDTLS_X509_RSASSA_PSS_SUPPORT defined, but not all prerequisites"
Manuel Pégourié-Gonnard9df5c962014-01-24 14:37:29 +0100802#endif
803
Tom Cosgrove87fbfb52022-03-15 10:51:52 +0000804#if defined(MBEDTLS_SHA512_USE_A64_CRYPTO_IF_PRESENT) && \
805 defined(MBEDTLS_SHA512_USE_A64_CRYPTO_ONLY)
806#error "Must only define one of MBEDTLS_SHA512_USE_A64_CRYPTO_*"
807#endif
808
809#if defined(MBEDTLS_SHA512_USE_A64_CRYPTO_IF_PRESENT) || \
810 defined(MBEDTLS_SHA512_USE_A64_CRYPTO_ONLY)
811#if !defined(MBEDTLS_SHA512_C)
812#error "MBEDTLS_SHA512_USE_A64_CRYPTO_* defined without MBEDTLS_SHA512_C"
813#endif
814#if defined(MBEDTLS_SHA512_ALT) || defined(MBEDTLS_SHA512_PROCESS_ALT)
815#error "MBEDTLS_SHA512_*ALT can't be used with MBEDTLS_SHA512_USE_A64_CRYPTO_*"
816#endif
Tom Cosgrove87fbfb52022-03-15 10:51:52 +0000817
818#endif /* MBEDTLS_SHA512_USE_A64_CRYPTO_IF_PRESENT || MBEDTLS_SHA512_USE_A64_CRYPTO_ONLY */
819
820#if defined(MBEDTLS_SHA512_USE_A64_CRYPTO_ONLY) && !defined(__aarch64__)
821#error "MBEDTLS_SHA512_USE_A64_CRYPTO_ONLY defined on non-Aarch64 system"
822#endif
823
Dave Rodgman5b89c552023-10-10 14:59:02 +0100824#if defined(MBEDTLS_SHA256_USE_ARMV8_A_CRYPTO_IF_PRESENT) && \
825 defined(MBEDTLS_SHA256_USE_ARMV8_A_CRYPTO_ONLY)
826#error "Must only define one of MBEDTLS_SHA256_USE_ARMV8_A_CRYPTO_*"
Tom Cosgrovef3ebd902022-02-20 22:25:31 +0000827#endif
828
Dave Rodgman5b89c552023-10-10 14:59:02 +0100829#if defined(MBEDTLS_SHA256_USE_ARMV8_A_CRYPTO_IF_PRESENT) || \
830 defined(MBEDTLS_SHA256_USE_ARMV8_A_CRYPTO_ONLY)
Tom Cosgrovef3ebd902022-02-20 22:25:31 +0000831#if !defined(MBEDTLS_SHA256_C)
Dave Rodgman5b89c552023-10-10 14:59:02 +0100832#error "MBEDTLS_SHA256_USE_ARMV8_A_CRYPTO_* defined without MBEDTLS_SHA256_C"
Tom Cosgrovef3ebd902022-02-20 22:25:31 +0000833#endif
834#if defined(MBEDTLS_SHA256_ALT) || defined(MBEDTLS_SHA256_PROCESS_ALT)
Dave Rodgman5b89c552023-10-10 14:59:02 +0100835#error "MBEDTLS_SHA256_*ALT can't be used with MBEDTLS_SHA256_USE_ARMV8_A_CRYPTO_*"
Tom Cosgrovef3ebd902022-02-20 22:25:31 +0000836#endif
Jerry Yu35f2b262023-02-15 11:35:55 +0800837
Tom Cosgrovef3ebd902022-02-20 22:25:31 +0000838#endif
839
Dave Rodgman5b89c552023-10-10 14:59:02 +0100840#if defined(MBEDTLS_SHA256_USE_ARMV8_A_CRYPTO_ONLY) && !defined(MBEDTLS_ARCH_IS_ARMV8_A)
841#error "MBEDTLS_SHA256_USE_ARMV8_A_CRYPTO_ONLY defined on non-Armv8-A system"
Tom Cosgrovef3ebd902022-02-20 22:25:31 +0000842#endif
843
Manuel Pégourié-Gonnarda31ddb92023-03-22 00:13:50 +0100844/* TLS 1.3 requires separate HKDF parts from PSA,
845 * and at least one ciphersuite, so at least SHA-256 or SHA-384
846 * from PSA to use with HKDF.
847 *
848 * Note: for dependencies common with TLS 1.2 (running handshake hash),
849 * see MBEDTLS_SSL_TLS_C. */
Ronald Cron6f135e12021-12-08 16:57:54 +0100850#if defined(MBEDTLS_SSL_PROTO_TLS1_3) && \
Manuel Pégourié-Gonnarda31ddb92023-03-22 00:13:50 +0100851 !(defined(MBEDTLS_PSA_CRYPTO_C) && \
852 defined(PSA_WANT_ALG_HKDF_EXTRACT) && \
853 defined(PSA_WANT_ALG_HKDF_EXPAND) && \
854 (defined(PSA_WANT_ALG_SHA_256) || defined(PSA_WANT_ALG_SHA_384)))
Ronald Cron6f135e12021-12-08 16:57:54 +0100855#error "MBEDTLS_SSL_PROTO_TLS1_3 defined, but not all prerequisites"
Hanno Becker6055a172020-06-02 06:20:23 +0100856#endif
857
Ronald Crond8d2ea52022-10-04 15:48:06 +0200858#if defined(MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_EPHEMERAL_ENABLED)
Valerio Settia15078b2023-07-06 14:52:45 +0200859#if !( (defined(PSA_WANT_ALG_ECDH) || defined(PSA_WANT_ALG_FFDH)) && \
860 defined(MBEDTLS_X509_CRT_PARSE_C) && \
861 ( defined(MBEDTLS_PK_CAN_ECDSA_SIGN) || defined(MBEDTLS_PKCS1_V21) ) )
Ronald Crond8d2ea52022-10-04 15:48:06 +0200862#error "MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_EPHEMERAL_ENABLED defined, but not all prerequisites"
863#endif
864#endif
865
866#if defined(MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_PSK_EPHEMERAL_ENABLED)
Przemek Stekielce05f542023-06-15 16:44:08 +0200867#if !( defined(PSA_WANT_ALG_ECDH) || defined(PSA_WANT_ALG_FFDH) )
Ronald Crond8d2ea52022-10-04 15:48:06 +0200868#error "MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_PSK_EPHEMERAL_ENABLED defined, but not all prerequisites"
869#endif
870#endif
871
Tom Cosgroveafb2fe12022-06-29 16:36:12 +0100872/*
873 * The current implementation of TLS 1.3 requires MBEDTLS_SSL_KEEP_PEER_CERTIFICATE.
874 */
875#if defined(MBEDTLS_SSL_PROTO_TLS1_3) && !defined(MBEDTLS_SSL_KEEP_PEER_CERTIFICATE)
876#error "MBEDTLS_SSL_PROTO_TLS1_3 defined without MBEDTLS_SSL_KEEP_PEER_CERTIFICATE"
877#endif
878
TRodziewicz0f82ec62021-05-12 17:49:18 +0200879#if defined(MBEDTLS_SSL_PROTO_TLS1_2) && \
Simon Butcher432e7022019-04-11 18:56:18 +0100880 !(defined(MBEDTLS_KEY_EXCHANGE_RSA_ENABLED) || \
881 defined(MBEDTLS_KEY_EXCHANGE_DHE_RSA_ENABLED) || \
882 defined(MBEDTLS_KEY_EXCHANGE_ECDHE_RSA_ENABLED) || \
883 defined(MBEDTLS_KEY_EXCHANGE_ECDHE_ECDSA_ENABLED) || \
884 defined(MBEDTLS_KEY_EXCHANGE_ECDH_RSA_ENABLED) || \
885 defined(MBEDTLS_KEY_EXCHANGE_ECDH_ECDSA_ENABLED) || \
886 defined(MBEDTLS_KEY_EXCHANGE_PSK_ENABLED) || \
887 defined(MBEDTLS_KEY_EXCHANGE_DHE_PSK_ENABLED) || \
888 defined(MBEDTLS_KEY_EXCHANGE_RSA_PSK_ENABLED) || \
889 defined(MBEDTLS_KEY_EXCHANGE_ECDHE_PSK_ENABLED) || \
890 defined(MBEDTLS_KEY_EXCHANGE_ECJPAKE_ENABLED) )
891#error "One or more versions of the TLS protocol are enabled " \
892 "but no key exchange methods defined with MBEDTLS_KEY_EXCHANGE_xxxx"
893#endif
894
Xiaokang Qian95a07302022-10-25 02:56:00 +0000895#if defined(MBEDTLS_SSL_EARLY_DATA) && \
Xiaokang Qian402bb1e2022-11-10 10:38:17 +0000896 ( !defined(MBEDTLS_SSL_SESSION_TICKETS) || \
897 ( !defined(MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_PSK_ENABLED) && \
898 !defined(MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_PSK_EPHEMERAL_ENABLED) ) )
Xiaokang Qian95a07302022-10-25 02:56:00 +0000899#error "MBEDTLS_SSL_EARLY_DATA defined, but not all prerequisites"
900#endif
901
Jerry Yu16f68532022-11-05 10:50:06 +0800902#if defined(MBEDTLS_SSL_EARLY_DATA) && defined(MBEDTLS_SSL_SRV_C) && \
Tom Cosgrove3b4471e2023-09-14 12:59:50 +0100903 defined(MBEDTLS_SSL_MAX_EARLY_DATA_SIZE) && \
904 ((MBEDTLS_SSL_MAX_EARLY_DATA_SIZE < 0) || \
905 (MBEDTLS_SSL_MAX_EARLY_DATA_SIZE > UINT32_MAX))
906#error "MBEDTLS_SSL_MAX_EARLY_DATA_SIZE must be in the range(0..UINT32_MAX)"
Jerry Yu16f68532022-11-05 10:50:06 +0800907#endif
908
Manuel Pégourié-Gonnard5a8d56d2015-05-13 10:10:00 +0200909#if defined(MBEDTLS_SSL_PROTO_DTLS) && \
Manuel Pégourié-Gonnard5a8d56d2015-05-13 10:10:00 +0200910 !defined(MBEDTLS_SSL_PROTO_TLS1_2)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200911#error "MBEDTLS_SSL_PROTO_DTLS defined, but not all prerequisites"
Manuel Pégourié-Gonnard0b1ff292014-02-06 13:04:16 +0100912#endif
913
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200914#if defined(MBEDTLS_SSL_CLI_C) && !defined(MBEDTLS_SSL_TLS_C)
915#error "MBEDTLS_SSL_CLI_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200916#endif
917
Valerio Settia4bb0fa2023-01-03 15:36:25 +0100918#if defined(MBEDTLS_SSL_ASYNC_PRIVATE) && !defined(MBEDTLS_X509_CRT_PARSE_C)
919#error "MBEDTLS_SSL_ASYNC_PRIVATE defined, but not all prerequisites"
920#endif
921
Valerio Settid531dab2023-10-27 11:49:22 +0200922#if defined(MBEDTLS_SSL_TLS_C) && !(defined(MBEDTLS_CIPHER_C) || \
923 defined(MBEDTLS_USE_PSA_CRYPTO))
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200924#error "MBEDTLS_SSL_TLS_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200925#endif
926
Manuel Pégourié-Gonnarda31ddb92023-03-22 00:13:50 +0100927/* TLS 1.2 and 1.3 require SHA-256 or SHA-384 (running handshake hash) */
928#if defined(MBEDTLS_SSL_TLS_C)
929#if defined(MBEDTLS_USE_PSA_CRYPTO)
930#if !(defined(PSA_WANT_ALG_SHA_256) || defined(PSA_WANT_ALG_SHA_384))
Manuel Pégourié-Gonnard70a1b6d2023-03-24 10:30:40 +0100931#error "MBEDTLS_SSL_TLS_C defined, but not all prerequisites"
Manuel Pégourié-Gonnarda31ddb92023-03-22 00:13:50 +0100932#endif
933#else /* MBEDTLS_USE_PSA_CRYPTO */
934#if !defined(MBEDTLS_MD_C) || \
Manuel Pégourié-Gonnard68608b22024-02-08 11:51:39 +0100935 !(defined(MBEDTLS_MD_CAN_SHA256) || defined(MBEDTLS_MD_CAN_SHA384))
Manuel Pégourié-Gonnard70a1b6d2023-03-24 10:30:40 +0100936#error "MBEDTLS_SSL_TLS_C defined, but not all prerequisites"
Manuel Pégourié-Gonnarda31ddb92023-03-22 00:13:50 +0100937#endif
938#endif /* MBEDTLS_USE_PSA_CRYPTO */
939#endif /* MBEDTLS_SSL_TLS_C */
940
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200941#if defined(MBEDTLS_SSL_SRV_C) && !defined(MBEDTLS_SSL_TLS_C)
942#error "MBEDTLS_SSL_SRV_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200943#endif
944
Jerry Yue0a64122021-12-23 11:06:26 +0800945#if defined(MBEDTLS_SSL_TLS_C) && \
946 !( defined(MBEDTLS_SSL_PROTO_TLS1_2) || defined(MBEDTLS_SSL_PROTO_TLS1_3) )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200947#error "MBEDTLS_SSL_TLS_C defined, but no protocols are active"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200948#endif
949
Manuel Pégourié-Gonnarde057d3b2015-05-20 10:59:43 +0200950#if defined(MBEDTLS_SSL_DTLS_HELLO_VERIFY) && !defined(MBEDTLS_SSL_PROTO_DTLS)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200951#error "MBEDTLS_SSL_DTLS_HELLO_VERIFY defined, but not all prerequisites"
Manuel Pégourié-Gonnard82202f02014-07-23 00:28:58 +0200952#endif
953
Manuel Pégourié-Gonnard62c74bb2015-09-08 17:50:29 +0200954#if defined(MBEDTLS_SSL_DTLS_CLIENT_PORT_REUSE) && \
Manuel Pégourié-Gonnardddfe5d22015-09-09 12:46:16 +0200955 !defined(MBEDTLS_SSL_DTLS_HELLO_VERIFY)
Manuel Pégourié-Gonnard62c74bb2015-09-08 17:50:29 +0200956#error "MBEDTLS_SSL_DTLS_CLIENT_PORT_REUSE defined, but not all prerequisites"
957#endif
958
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200959#if defined(MBEDTLS_SSL_DTLS_ANTI_REPLAY) && \
960 ( !defined(MBEDTLS_SSL_TLS_C) || !defined(MBEDTLS_SSL_PROTO_DTLS) )
961#error "MBEDTLS_SSL_DTLS_ANTI_REPLAY defined, but not all prerequisites"
Manuel Pégourié-Gonnard8464a462014-09-24 14:05:32 +0200962#endif
963
Gilles Peskined3d02902020-03-04 21:35:27 +0100964#if defined(MBEDTLS_SSL_DTLS_CONNECTION_ID) && \
965 ( !defined(MBEDTLS_SSL_TLS_C) || !defined(MBEDTLS_SSL_PROTO_DTLS) )
966#error "MBEDTLS_SSL_DTLS_CONNECTION_ID defined, but not all prerequisites"
967#endif
968
969#if defined(MBEDTLS_SSL_DTLS_CONNECTION_ID) && \
970 defined(MBEDTLS_SSL_CID_IN_LEN_MAX) && \
971 MBEDTLS_SSL_CID_IN_LEN_MAX > 255
972#error "MBEDTLS_SSL_CID_IN_LEN_MAX too large (max 255)"
973#endif
974
975#if defined(MBEDTLS_SSL_DTLS_CONNECTION_ID) && \
976 defined(MBEDTLS_SSL_CID_OUT_LEN_MAX) && \
977 MBEDTLS_SSL_CID_OUT_LEN_MAX > 255
978#error "MBEDTLS_SSL_CID_OUT_LEN_MAX too large (max 255)"
979#endif
980
Hannes Tschofenig88e55662022-11-23 10:14:54 +0100981#if defined(MBEDTLS_SSL_DTLS_CONNECTION_ID_COMPAT) && \
982 !defined(MBEDTLS_SSL_DTLS_CONNECTION_ID)
Tom Cosgrove1797b052022-12-04 17:19:59 +0000983#error "MBEDTLS_SSL_DTLS_CONNECTION_ID_COMPAT defined, but not all prerequisites"
Hannes Tschofenigfd6cca42021-10-12 09:22:33 +0200984#endif
985
Hannes Tschofenigb2e66152022-11-23 10:53:44 +0100986#if defined(MBEDTLS_SSL_DTLS_CONNECTION_ID_COMPAT) && MBEDTLS_SSL_DTLS_CONNECTION_ID_COMPAT != 0
987#if defined(MBEDTLS_DEPRECATED_REMOVED)
988#error "MBEDTLS_SSL_DTLS_CONNECTION_ID_COMPAT is deprecated and will be removed in a future version of Mbed TLS"
989#elif defined(MBEDTLS_DEPRECATED_WARNING)
990#warning "MBEDTLS_SSL_DTLS_CONNECTION_ID_COMPAT is deprecated and will be removed in a future version of Mbed TLS"
991#endif
992#endif /* MBEDTLS_SSL_DTLS_CONNECTION_ID_COMPAT && MBEDTLS_SSL_DTLS_CONNECTION_ID_COMPAT != 0 */
Hannes Tschofenigfd6cca42021-10-12 09:22:33 +0200993
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200994#if defined(MBEDTLS_SSL_ENCRYPT_THEN_MAC) && \
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200995 !defined(MBEDTLS_SSL_PROTO_TLS1_2)
Shaun Case8b0ecbc2021-12-20 21:14:10 -0800996#error "MBEDTLS_SSL_ENCRYPT_THEN_MAC defined, but not all prerequisites"
Manuel Pégourié-Gonnard699cafa2014-10-27 13:57:03 +0100997#endif
998
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200999#if defined(MBEDTLS_SSL_EXTENDED_MASTER_SECRET) && \
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001000 !defined(MBEDTLS_SSL_PROTO_TLS1_2)
Shaun Case8b0ecbc2021-12-20 21:14:10 -08001001#error "MBEDTLS_SSL_EXTENDED_MASTER_SECRET defined, but not all prerequisites"
Manuel Pégourié-Gonnard769c6b62014-10-28 14:13:55 +01001002#endif
1003
Gilles Peskine7d3186d2022-08-12 22:43:18 +02001004#if defined(MBEDTLS_SSL_RENEGOTIATION) && \
1005 !defined(MBEDTLS_SSL_PROTO_TLS1_2)
1006#error "MBEDTLS_SSL_RENEGOTIATION defined, but not all prerequisites"
1007#endif
1008
Przemek Stekiela09f8352022-05-12 09:34:28 +02001009#if defined(MBEDTLS_SSL_TICKET_C) && ( !defined(MBEDTLS_CIPHER_C) && \
1010 !defined(MBEDTLS_USE_PSA_CRYPTO) )
1011#error "MBEDTLS_SSL_TICKET_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001012#endif
1013
Przemek Stekiel52a428b2022-10-10 08:47:13 +02001014#if defined(MBEDTLS_SSL_TICKET_C) && \
Valerio Setti193e3832023-10-13 09:37:24 +02001015 !( defined(MBEDTLS_SSL_HAVE_CCM) || defined(MBEDTLS_SSL_HAVE_GCM) || \
Valerio Settie5707042023-10-11 11:54:42 +02001016 defined(MBEDTLS_SSL_HAVE_CHACHAPOLY) )
Przemek Stekield61a4d32022-10-11 09:40:40 +02001017#error "MBEDTLS_SSL_TICKET_C defined, but not all prerequisites"
Przemek Stekiel52a428b2022-10-10 08:47:13 +02001018#endif
1019
Jerry Yu9750f812022-07-20 11:04:50 +08001020#if defined(MBEDTLS_SSL_TLS1_3_TICKET_NONCE_LENGTH) && \
1021 MBEDTLS_SSL_TLS1_3_TICKET_NONCE_LENGTH >= 256
1022#error "MBEDTLS_SSL_TLS1_3_TICKET_NONCE_LENGTH must be less than 256"
Jerry Yu08aed4d2022-07-20 10:36:12 +08001023#endif
1024
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001025#if defined(MBEDTLS_SSL_SERVER_NAME_INDICATION) && \
1026 !defined(MBEDTLS_X509_CRT_PARSE_C)
1027#error "MBEDTLS_SSL_SERVER_NAME_INDICATION defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001028#endif
1029
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001030#if defined(MBEDTLS_THREADING_PTHREAD)
1031#if !defined(MBEDTLS_THREADING_C) || defined(MBEDTLS_THREADING_IMPL)
1032#error "MBEDTLS_THREADING_PTHREAD defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001033#endif
Manuel Pégourié-Gonnarde1f3faf2024-02-08 12:17:20 +01001034#define MBEDTLS_THREADING_IMPL // undef at the end of this paragraph
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001035#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001036#if defined(MBEDTLS_THREADING_ALT)
1037#if !defined(MBEDTLS_THREADING_C) || defined(MBEDTLS_THREADING_IMPL)
1038#error "MBEDTLS_THREADING_ALT defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001039#endif
Manuel Pégourié-Gonnarde1f3faf2024-02-08 12:17:20 +01001040#define MBEDTLS_THREADING_IMPL // undef at the end of this paragraph
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001041#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001042#if defined(MBEDTLS_THREADING_C) && !defined(MBEDTLS_THREADING_IMPL)
1043#error "MBEDTLS_THREADING_C defined, single threading implementation required"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001044#endif
Manuel Pégourié-Gonnarde1f3faf2024-02-08 12:17:20 +01001045#undef MBEDTLS_THREADING_IMPL // temporary macro defined above
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001046
Manuel Pégourié-Gonnardaeefa492018-10-22 12:14:52 +02001047#if defined(MBEDTLS_USE_PSA_CRYPTO) && !defined(MBEDTLS_PSA_CRYPTO_C)
1048#error "MBEDTLS_USE_PSA_CRYPTO defined, but not all prerequisites"
1049#endif
1050
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001051#if defined(MBEDTLS_VERSION_FEATURES) && !defined(MBEDTLS_VERSION_C)
1052#error "MBEDTLS_VERSION_FEATURES defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001053#endif
1054
Valerio Settic6aeb0d2023-07-27 10:10:28 +02001055#if defined(MBEDTLS_X509_USE_C) && \
1056 (!defined(MBEDTLS_OID_C) || !defined(MBEDTLS_ASN1_PARSE_C) || \
Przemek Stekiel10836a02022-08-19 08:45:34 +02001057 !defined(MBEDTLS_PK_PARSE_C) || \
Przemek Stekiel278b6672022-08-03 09:50:38 +02001058 ( !defined(MBEDTLS_MD_C) && !defined(MBEDTLS_USE_PSA_CRYPTO) ) )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001059#error "MBEDTLS_X509_USE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001060#endif
1061
Valerio Settic6aeb0d2023-07-27 10:10:28 +02001062#if defined(MBEDTLS_X509_CREATE_C) && \
1063 (!defined(MBEDTLS_OID_C) || !defined(MBEDTLS_ASN1_WRITE_C) || \
Przemek Stekiel10836a02022-08-19 08:45:34 +02001064 !defined(MBEDTLS_PK_PARSE_C) || \
Przemek Stekiel278b6672022-08-03 09:50:38 +02001065 ( !defined(MBEDTLS_MD_C) && !defined(MBEDTLS_USE_PSA_CRYPTO) ) )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001066#error "MBEDTLS_X509_CREATE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001067#endif
1068
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001069#if defined(MBEDTLS_X509_CRT_PARSE_C) && ( !defined(MBEDTLS_X509_USE_C) )
1070#error "MBEDTLS_X509_CRT_PARSE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001071#endif
1072
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001073#if defined(MBEDTLS_X509_CRL_PARSE_C) && ( !defined(MBEDTLS_X509_USE_C) )
1074#error "MBEDTLS_X509_CRL_PARSE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001075#endif
1076
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001077#if defined(MBEDTLS_X509_CSR_PARSE_C) && ( !defined(MBEDTLS_X509_USE_C) )
1078#error "MBEDTLS_X509_CSR_PARSE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001079#endif
1080
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001081#if defined(MBEDTLS_X509_CRT_WRITE_C) && ( !defined(MBEDTLS_X509_CREATE_C) )
1082#error "MBEDTLS_X509_CRT_WRITE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001083#endif
1084
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001085#if defined(MBEDTLS_X509_CSR_WRITE_C) && ( !defined(MBEDTLS_X509_CREATE_C) )
1086#error "MBEDTLS_X509_CSR_WRITE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001087#endif
1088
Valerio Settia4bb0fa2023-01-03 15:36:25 +01001089#if defined(MBEDTLS_X509_TRUSTED_CERTIFICATE_CALLBACK) && \
Valerio Setti8e45cdd2023-01-05 09:32:29 +01001090 ( !defined(MBEDTLS_X509_CRT_PARSE_C) )
Valerio Settia4bb0fa2023-01-03 15:36:25 +01001091#error "MBEDTLS_X509_TRUSTED_CERTIFICATE_CALLBACK defined, but not all prerequisites"
1092#endif
1093
Andres Amaya Garciad7fce002017-07-20 11:49:32 +01001094#if defined(MBEDTLS_HAVE_INT32) && defined(MBEDTLS_HAVE_INT64)
1095#error "MBEDTLS_HAVE_INT32 and MBEDTLS_HAVE_INT64 cannot be defined simultaneously"
1096#endif /* MBEDTLS_HAVE_INT32 && MBEDTLS_HAVE_INT64 */
1097
Andres Amaya Garcia93db11a2017-07-20 12:11:19 +01001098#if ( defined(MBEDTLS_HAVE_INT32) || defined(MBEDTLS_HAVE_INT64) ) && \
1099 defined(MBEDTLS_HAVE_ASM)
Andres Amaya Garciab39467d2017-07-20 13:21:15 +01001100#error "MBEDTLS_HAVE_INT32/MBEDTLS_HAVE_INT64 and MBEDTLS_HAVE_ASM cannot be defined simultaneously"
Andres Amaya Garciad7fce002017-07-20 11:49:32 +01001101#endif /* (MBEDTLS_HAVE_INT32 || MBEDTLS_HAVE_INT64) && MBEDTLS_HAVE_ASM */
1102
Ron Eldor3adb9922017-12-21 10:15:08 +02001103#if defined(MBEDTLS_SSL_DTLS_SRTP) && ( !defined(MBEDTLS_SSL_PROTO_DTLS) )
1104#error "MBEDTLS_SSL_DTLS_SRTP defined, but not all prerequisites"
1105#endif
1106
Andrzej Kurek557289b2020-10-21 15:12:39 +02001107#if defined(MBEDTLS_SSL_VARIABLE_BUFFER_LENGTH) && ( !defined(MBEDTLS_SSL_MAX_FRAGMENT_LENGTH) )
1108#error "MBEDTLS_SSL_VARIABLE_BUFFER_LENGTH defined, but not all prerequisites"
1109#endif
1110
Jan Bruckner151f6422023-02-10 12:45:19 +01001111#if defined(MBEDTLS_SSL_RECORD_SIZE_LIMIT) && ( !defined(MBEDTLS_SSL_PROTO_TLS1_3) )
1112#error "MBEDTLS_SSL_RECORD_SIZE_LIMIT defined, but not all prerequisites"
1113#endif
1114
Valerio Settie7bac172023-10-02 16:03:42 +02001115#if defined(MBEDTLS_SSL_CONTEXT_SERIALIZATION) && \
Valerio Setti193e3832023-10-13 09:37:24 +02001116 !( defined(MBEDTLS_SSL_HAVE_CCM) || defined(MBEDTLS_SSL_HAVE_GCM) || \
Valerio Settie5707042023-10-11 11:54:42 +02001117 defined(MBEDTLS_SSL_HAVE_CHACHAPOLY) )
Przemek Stekield582a012022-09-28 07:59:01 +02001118#error "MBEDTLS_SSL_CONTEXT_SERIALIZATION defined, but not all prerequisites"
1119#endif
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001120
1121/* Reject attempts to enable options that have been removed and that could
1122 * cause a build to succeed but with features removed. */
1123
1124#if defined(MBEDTLS_HAVEGE_C) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001125#error "MBEDTLS_HAVEGE_C was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/2599"
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001126#endif
1127
1128#if defined(MBEDTLS_SSL_HW_RECORD_ACCEL) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001129#error "MBEDTLS_SSL_HW_RECORD_ACCEL was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4031"
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001130#endif
1131
1132#if defined(MBEDTLS_SSL_PROTO_SSL3) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001133#error "MBEDTLS_SSL_PROTO_SSL3 (SSL v3.0 support) was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4031"
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001134#endif
1135
1136#if defined(MBEDTLS_SSL_SRV_SUPPORT_SSLV2_CLIENT_HELLO) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001137#error "MBEDTLS_SSL_SRV_SUPPORT_SSLV2_CLIENT_HELLO (SSL v2 ClientHello support) was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4031"
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001138#endif
1139
1140#if defined(MBEDTLS_SSL_TRUNCATED_HMAC_COMPAT) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001141#error "MBEDTLS_SSL_TRUNCATED_HMAC_COMPAT (compatibility with the buggy implementation of truncated HMAC in Mbed TLS up to 2.7) was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4031"
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001142#endif
1143
1144#if defined(MBEDTLS_TLS_DEFAULT_ALLOW_SHA1_IN_CERTIFICATES) //no-check-names
Gilles Peskinecc26e3b2021-04-21 19:01:59 +02001145#error "MBEDTLS_TLS_DEFAULT_ALLOW_SHA1_IN_CERTIFICATES was removed in Mbed TLS 3.0. See the ChangeLog entry if you really need SHA-1-signed certificates."
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001146#endif
1147
1148#if defined(MBEDTLS_ZLIB_SUPPORT) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001149#error "MBEDTLS_ZLIB_SUPPORT was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4031"
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001150#endif
1151
TRodziewiczcc707412021-05-14 15:08:04 +02001152#if defined(MBEDTLS_CHECK_PARAMS) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001153#error "MBEDTLS_CHECK_PARAMS was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4313"
TRodziewiczcc707412021-05-14 15:08:04 +02001154#endif
1155
TRodziewicz4e57f4c2021-05-31 12:58:25 +02001156#if defined(MBEDTLS_SSL_CID_PADDING_GRANULARITY) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001157#error "MBEDTLS_SSL_CID_PADDING_GRANULARITY was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4335"
TRodziewicz4e57f4c2021-05-31 12:58:25 +02001158#endif
1159
1160#if defined(MBEDTLS_SSL_TLS1_3_PADDING_GRANULARITY) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001161#error "MBEDTLS_SSL_TLS1_3_PADDING_GRANULARITY was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4335"
TRodziewicz4e57f4c2021-05-31 12:58:25 +02001162#endif
1163
Thomas Daubney4a7010d2021-06-15 12:54:14 +01001164#if defined(MBEDTLS_SSL_TRUNCATED_HMAC) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001165#error "MBEDTLS_SSL_TRUNCATED_HMAC was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4341"
Thomas Daubney4a7010d2021-06-15 12:54:14 +01001166#endif
1167
Nayna Jainc9deb182020-11-16 19:03:12 +00001168#if defined(MBEDTLS_PKCS7_C) && ( ( !defined(MBEDTLS_ASN1_PARSE_C) ) || \
1169 ( !defined(MBEDTLS_OID_C) ) || ( !defined(MBEDTLS_PK_PARSE_C) ) || \
Valerio Settic6aeb0d2023-07-27 10:10:28 +02001170 ( !defined(MBEDTLS_X509_CRT_PARSE_C) ) || \
1171 ( !defined(MBEDTLS_X509_CRL_PARSE_C) ) || \
Nick Child89e82e12022-11-09 10:36:10 -06001172 ( !defined(MBEDTLS_MD_C) ) )
Nayna Jainc9deb182020-11-16 19:03:12 +00001173#error "MBEDTLS_PKCS7_C is defined, but not all prerequisites"
1174#endif
1175
Manuel Pégourié-Gonnardf78e4de2015-05-29 10:52:14 +02001176/*
1177 * Avoid warning from -pedantic. This is a convenient place for this
1178 * workaround since this is included by every single file before the
Antonin Décimo36e89b52019-01-23 15:24:37 +01001179 * #if defined(MBEDTLS_xxx_C) that results in empty translation units.
Manuel Pégourié-Gonnardf78e4de2015-05-29 10:52:14 +02001180 */
1181typedef int mbedtls_iso_c_forbids_empty_translation_units;
1182
David Horstmann1b847812022-11-14 15:40:46 +00001183/* *INDENT-ON* */
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001184#endif /* MBEDTLS_CHECK_CONFIG_H */