blob: 510e1a5d6030b3d62b87e42a1ea4049dd84710ef [file] [log] [blame]
Bence Szépkúti5ab73032021-05-27 11:25:03 +02001/**
Ronald Cron135f2ae2023-02-08 12:25:38 +01002 * \file mbedtls/build_info.h
Bence Szépkúti5ab73032021-05-27 11:25:03 +02003 *
4 * \brief Build-time configuration info
5 *
6 * Include this file if you need to depend on the
Bence Szépkútie55a8212021-06-28 15:15:56 +01007 * configuration options defined in mbedtls_config.h or MBEDTLS_CONFIG_FILE
Bence Szépkúti5ab73032021-05-27 11:25:03 +02008 */
Gilles Peskine449bd832023-01-11 14:50:10 +01009/*
10 * Copyright The Mbed TLS Contributors
11 * SPDX-License-Identifier: Apache-2.0
12 *
13 * Licensed under the Apache License, Version 2.0 (the "License"); you may
14 * not use this file except in compliance with the License.
15 * You may obtain a copy of the License at
16 *
17 * http://www.apache.org/licenses/LICENSE-2.0
18 *
19 * Unless required by applicable law or agreed to in writing, software
20 * distributed under the License is distributed on an "AS IS" BASIS, WITHOUT
21 * WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
22 * See the License for the specific language governing permissions and
23 * limitations under the License.
24 */
Bence Szépkúti5ab73032021-05-27 11:25:03 +020025
26#ifndef MBEDTLS_BUILD_INFO_H
27#define MBEDTLS_BUILD_INFO_H
28
Bence Szépkúti04982f72021-06-21 14:40:51 +020029/*
30 * This set of compile-time defines can be used to determine the version number
Bence Szépkúti1b2a8832021-06-28 10:26:11 +010031 * of the Mbed TLS library used. Run-time variables for the same can be found in
Bence Szépkúti04982f72021-06-21 14:40:51 +020032 * version.h
33 */
34
35/**
36 * The version number x.y.z is split into three parts.
37 * Major, Minor, Patchlevel
38 */
Dave Rodgman1bc9e932021-07-01 09:20:13 +010039#define MBEDTLS_VERSION_MAJOR 3
Paul Elliottdb67e992023-03-23 10:57:39 +000040#define MBEDTLS_VERSION_MINOR 4
Gilles Peskine550d1472023-08-02 12:50:23 +020041#define MBEDTLS_VERSION_PATCH 1
Bence Szépkúti04982f72021-06-21 14:40:51 +020042
43/**
44 * The single version number has the following structure:
45 * MMNNPP00
46 * Major version | Minor version | Patch version
47 */
Gilles Peskine550d1472023-08-02 12:50:23 +020048#define MBEDTLS_VERSION_NUMBER 0x03040100
49#define MBEDTLS_VERSION_STRING "3.4.1"
50#define MBEDTLS_VERSION_STRING_FULL "mbed TLS 3.4.1"
Bence Szépkúti04982f72021-06-21 14:40:51 +020051
Bence Szépkútic5c9eb42021-05-27 23:31:30 +020052#if defined(_MSC_VER) && !defined(_CRT_SECURE_NO_DEPRECATE)
53#define _CRT_SECURE_NO_DEPRECATE 1
54#endif
55
Gilles Peskine6157fee2022-11-23 16:13:13 +010056/* Define `inline` on some non-C99-compliant compilers. */
Gilles Peskine449bd832023-01-11 14:50:10 +010057#if (defined(__ARMCC_VERSION) || defined(_MSC_VER)) && \
Gilles Peskine6157fee2022-11-23 16:13:13 +010058 !defined(inline) && !defined(__cplusplus)
59#define inline __inline
60#endif
61
Gilles Peskinea458d482023-05-17 23:13:06 +020062/* X.509, TLS and non-PSA crypto configuration */
Bence Szépkúti5ab73032021-05-27 11:25:03 +020063#if !defined(MBEDTLS_CONFIG_FILE)
Bence Szépkútibb0cfeb2021-05-28 09:42:25 +020064#include "mbedtls/mbedtls_config.h"
Bence Szépkúti5ab73032021-05-27 11:25:03 +020065#else
66#include MBEDTLS_CONFIG_FILE
67#endif
68
Bence Szépkúti1cafe5c2021-06-22 09:30:08 +020069#if defined(MBEDTLS_CONFIG_VERSION) && ( \
70 MBEDTLS_CONFIG_VERSION < 0x03000000 || \
Gilles Peskine449bd832023-01-11 14:50:10 +010071 MBEDTLS_CONFIG_VERSION > MBEDTLS_VERSION_NUMBER)
Bence Szépkútib2e23de2021-06-21 15:53:07 +020072#error "Invalid config version, defined value of MBEDTLS_CONFIG_VERSION is unsupported"
Bence Szépkútiba7248a2021-05-31 16:53:56 +020073#endif
74
Bence Szépkútic5c9eb42021-05-27 23:31:30 +020075/* Target and application specific configurations
76 *
77 * Allow user to override any previous default.
78 *
79 */
80#if defined(MBEDTLS_USER_CONFIG_FILE)
81#include MBEDTLS_USER_CONFIG_FILE
82#endif
83
Gilles Peskinea458d482023-05-17 23:13:06 +020084/* PSA crypto configuration */
85#if defined(MBEDTLS_PSA_CRYPTO_CONFIG)
86#if defined(MBEDTLS_PSA_CRYPTO_CONFIG_FILE)
87#include MBEDTLS_PSA_CRYPTO_CONFIG_FILE
88#else
89#include "psa/crypto_config.h"
90#endif
Gilles Peskinea458d482023-05-17 23:13:06 +020091#if defined(MBEDTLS_PSA_CRYPTO_USER_CONFIG_FILE)
92#include MBEDTLS_PSA_CRYPTO_USER_CONFIG_FILE
93#endif
Gilles Peskine7b7ecf52023-05-17 23:15:31 +020094#endif /* defined(MBEDTLS_PSA_CRYPTO_CONFIG) */
Gilles Peskinea458d482023-05-17 23:13:06 +020095
Yanray Wang1ed226f2023-05-05 11:31:11 +080096/* Auto-enable MBEDTLS_CTR_DRBG_USE_128_BIT_KEY if
97 * MBEDTLS_AES_ONLY_128_BIT_KEY_LENGTH and MBEDTLS_CTR_DRBG_C defined
98 * to ensure a 128-bit key size in CTR_DRBG.
99 */
100#if defined(MBEDTLS_AES_ONLY_128_BIT_KEY_LENGTH) && defined(MBEDTLS_CTR_DRBG_C)
101#define MBEDTLS_CTR_DRBG_USE_128_BIT_KEY
102#endif
103
Manuel Pégourié-Gonnard49e67f82023-03-16 11:39:20 +0100104/* Auto-enable MBEDTLS_MD_C if needed by a module that didn't require it
105 * in a previous release, to ensure backwards compatibility.
106 */
107#if defined(MBEDTLS_PKCS5_C)
108#define MBEDTLS_MD_C
109#endif
110
Yanray Wang419a55e2023-05-17 18:22:00 +0800111/* PSA crypto specific configuration options
112 * - If config_psa.h reads a configuration option in preprocessor directive,
Yanray Wang37db3322023-05-22 16:50:35 +0800113 * this symbol should be set before its inclusion. (e.g. MBEDTLS_MD_C)
Yanray Wang419a55e2023-05-17 18:22:00 +0800114 * - If config_psa.h writes a configuration option in conditional directive,
115 * this symbol should be consulted after its inclusion.
116 * (e.g. MBEDTLS_MD_LIGHT)
117 */
Yanray Wang63976732023-05-17 12:41:25 +0800118#if defined(MBEDTLS_PSA_CRYPTO_CONFIG) /* PSA_WANT_xxx influences MBEDTLS_xxx */ || \
119 defined(MBEDTLS_PSA_CRYPTO_C) /* MBEDTLS_xxx influences PSA_WANT_xxx */
120#include "mbedtls/config_psa.h"
121#endif
122
Gilles Peskine9d6a63b2023-09-04 17:49:07 +0200123#include "mbedtls/config_adjust_legacy_crypto.h"
Valerio Setti7c494e72023-07-27 14:58:53 +0200124
Manuel Pégourié-Gonnard5a51d0d2023-03-22 13:04:08 +0100125/* The following blocks make it easier to disable all of TLS,
126 * or of TLS 1.2 or 1.3 or DTLS, without having to manually disable all
Manuel Pégourié-Gonnard70a1b6d2023-03-24 10:30:40 +0100127 * key exchanges, options and extensions related to them. */
Manuel Pégourié-Gonnard5a51d0d2023-03-22 13:04:08 +0100128
129#if !defined(MBEDTLS_SSL_TLS_C)
130#undef MBEDTLS_SSL_CLI_C
131#undef MBEDTLS_SSL_SRV_C
132#undef MBEDTLS_SSL_PROTO_TLS1_3
133#undef MBEDTLS_SSL_PROTO_TLS1_2
134#undef MBEDTLS_SSL_PROTO_DTLS
135#endif
136
137#if !defined(MBEDTLS_SSL_PROTO_DTLS)
138#undef MBEDTLS_SSL_DTLS_ANTI_REPLAY
139#undef MBEDTLS_SSL_DTLS_CONNECTION_ID
140#undef MBEDTLS_SSL_DTLS_CONNECTION_ID_COMPAT
141#undef MBEDTLS_SSL_DTLS_HELLO_VERIFY
142#undef MBEDTLS_SSL_DTLS_SRTP
143#undef MBEDTLS_SSL_DTLS_CLIENT_PORT_REUSE
144#endif
145
Ronald Cron571f1ff2022-10-04 09:33:27 +0200146#if !defined(MBEDTLS_SSL_PROTO_TLS1_2)
Manuel Pégourié-Gonnard5a51d0d2023-03-22 13:04:08 +0100147#undef MBEDTLS_SSL_ENCRYPT_THEN_MAC
148#undef MBEDTLS_SSL_EXTENDED_MASTER_SECRET
149#undef MBEDTLS_SSL_RENEGOTIATION
Ronald Cron571f1ff2022-10-04 09:33:27 +0200150#undef MBEDTLS_KEY_EXCHANGE_RSA_ENABLED
151#undef MBEDTLS_KEY_EXCHANGE_DHE_RSA_ENABLED
152#undef MBEDTLS_KEY_EXCHANGE_ECDHE_RSA_ENABLED
153#undef MBEDTLS_KEY_EXCHANGE_ECDHE_ECDSA_ENABLED
154#undef MBEDTLS_KEY_EXCHANGE_PSK_ENABLED
155#undef MBEDTLS_KEY_EXCHANGE_DHE_PSK_ENABLED
156#undef MBEDTLS_KEY_EXCHANGE_RSA_PSK_ENABLED
157#undef MBEDTLS_KEY_EXCHANGE_ECDHE_PSK_ENABLED
158#undef MBEDTLS_KEY_EXCHANGE_ECDH_RSA_ENABLED
159#undef MBEDTLS_KEY_EXCHANGE_ECDH_ECDSA_ENABLED
160#undef MBEDTLS_KEY_EXCHANGE_ECJPAKE_ENABLED
161#endif
162
Ronald Crond8d2ea52022-10-04 15:48:06 +0200163#if !defined(MBEDTLS_SSL_PROTO_TLS1_3)
164#undef MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_PSK_ENABLED
165#undef MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_EPHEMERAL_ENABLED
166#undef MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_PSK_EPHEMERAL_ENABLED
Xiaokang Qian4ef4c892022-10-25 13:39:16 +0000167#undef MBEDTLS_SSL_EARLY_DATA
Ronald Crond8d2ea52022-10-04 15:48:06 +0200168#endif
169
Przemek Stekiel98d79332023-06-26 12:44:33 +0200170#if defined(MBEDTLS_SSL_PROTO_TLS1_2) && \
171 (defined(MBEDTLS_ECDH_C) || defined(MBEDTLS_ECDSA_C) || \
172 defined(MBEDTLS_KEY_EXCHANGE_ECJPAKE_ENABLED))
173#define MBEDTLS_SSL_TLS1_2_SOME_ECC
Ronald Crond8d2ea52022-10-04 15:48:06 +0200174#endif
175
Przemek Stekiela06787a2022-09-02 14:41:44 +0200176/* Make sure all configuration symbols are set before including check_config.h,
177 * even the ones that are calculated programmatically. */
Bence Szépkútic5c9eb42021-05-27 23:31:30 +0200178#include "mbedtls/check_config.h"
179
Bence Szépkúti5ab73032021-05-27 11:25:03 +0200180#endif /* MBEDTLS_BUILD_INFO_H */