blob: a710208505f6bf9f021dc748d55ac9fa83c92e65 [file] [log] [blame]
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +02001/**
2 * \file check_config.h
3 *
4 * \brief Consistency checks for configuration options
Gilles Peskine975e74c2024-04-26 14:18:10 +02005 *
6 * This is an internal header. Do not include it directly.
7 *
8 * This header is included automatically by all public Mbed TLS headers
9 * (via mbedtls/build_info.h). Do not include it directly in a configuration
10 * file such as mbedtls/mbedtls_config.h or #MBEDTLS_USER_CONFIG_FILE!
11 * It would run at the wrong time due to missing derived symbols.
Darryl Greena40a1012018-01-05 15:33:17 +000012 */
13/*
Bence Szépkúti1e148272020-08-07 13:07:28 +020014 * Copyright The Mbed TLS Contributors
Dave Rodgman16799db2023-11-02 19:47:20 +000015 * SPDX-License-Identifier: Apache-2.0 OR GPL-2.0-or-later
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +020016 */
17
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020018#ifndef MBEDTLS_CHECK_CONFIG_H
19#define MBEDTLS_CHECK_CONFIG_H
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +020020
David Horstmann1b847812022-11-14 15:40:46 +000021/* *INDENT-OFF* */
Gilles Peskine690fb5e2024-05-16 14:54:04 +020022
23#if !defined(MBEDTLS_CONFIG_IS_FINALIZED)
24#warning "Do not include mbedtls/check_config.h manually! " \
25 "This may cause spurious errors. " \
26 "It is included automatically at the right point since Mbed TLS 3.0."
27#endif /* !MBEDTLS_CONFIG_IS_FINALIZED */
28
Manuel Pégourié-Gonnardd14acbc2015-05-29 11:26:37 +020029/*
30 * We assume CHAR_BIT is 8 in many places. In practice, this is true on our
31 * target platforms, so not an issue, but let's just be extra sure.
32 */
33#include <limits.h>
34#if CHAR_BIT != 8
Gilles Peskinee820c0a2023-08-03 17:45:20 +020035#error "Mbed TLS requires a platform with 8-bit chars"
Manuel Pégourié-Gonnardd14acbc2015-05-29 11:26:37 +020036#endif
37
Jerry Yu16f68532022-11-05 10:50:06 +080038#include <stdint.h>
39
Ronald Cron170c1992023-07-06 14:15:21 +020040#if defined(__MINGW32__) || (defined(_MSC_VER) && _MSC_VER <= 1900)
Manuel Pégourié-Gonnard9db28872015-06-26 10:52:01 +020041#if !defined(MBEDTLS_PLATFORM_C)
Manuel Pégourié-Gonnard6c0c8e02015-06-22 10:23:34 +020042#error "MBEDTLS_PLATFORM_C is required on Windows"
43#endif
Manuel Pégourié-Gonnard1463e492024-02-08 12:28:30 +010044/* See auto-enabling SNPRINTF_ALT and VSNPRINTF_ALT
45 * in * config_adjust_legacy_crypto.h */
Ronald Cron170c1992023-07-06 14:15:21 +020046#endif /* _MINGW32__ || (_MSC_VER && (_MSC_VER <= 1900)) */
Manuel Pégourié-Gonnard9db28872015-06-26 10:52:01 +020047
Jaeden Amero197496a2021-06-08 18:31:27 +010048#if defined(TARGET_LIKE_MBED) && defined(MBEDTLS_NET_C)
49#error "The NET module is not available for mbed OS - please use the network functions provided by Mbed OS"
Manuel Pégourié-Gonnard63e7eba2015-07-28 14:17:48 +020050#endif
51
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020052#if defined(MBEDTLS_DEPRECATED_WARNING) && \
Manuel Pégourié-Gonnard757ca002015-03-23 15:24:07 +010053 !defined(__GNUC__) && !defined(__clang__)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020054#error "MBEDTLS_DEPRECATED_WARNING only works with GCC and Clang"
Manuel Pégourié-Gonnardc70581c2015-03-23 13:58:27 +010055#endif
56
Manuel Pégourié-Gonnard60c793b2015-06-18 20:52:58 +020057#if defined(MBEDTLS_HAVE_TIME_DATE) && !defined(MBEDTLS_HAVE_TIME)
58#error "MBEDTLS_HAVE_TIME_DATE without MBEDTLS_HAVE_TIME does not make sense"
59#endif
60
Manuel Pégourié-Gonnard842d3552023-09-28 09:29:43 +020061/* Limitations on ECC key types acceleration: if we have any of `PUBLIC_KEY`,
62 * `KEY_PAIR_BASIC`, `KEY_PAIR_IMPORT`, `KEY_PAIR_EXPORT` then we must have
63 * all 4 of them.
64 */
65#if defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_PUBLIC_KEY) || \
66 defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_KEY_PAIR_BASIC) || \
67 defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_KEY_PAIR_IMPORT) || \
68 defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_KEY_PAIR_EXPORT)
69#if !defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_PUBLIC_KEY) || \
70 !defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_KEY_PAIR_BASIC) || \
71 !defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_KEY_PAIR_IMPORT) || \
72 !defined(MBEDTLS_PSA_ACCEL_KEY_TYPE_ECC_KEY_PAIR_EXPORT)
73#error "Unsupported partial support for ECC key type acceleration, see docs/driver-only-builds.md"
74#endif /* not all of public, basic, import, export */
75#endif /* one of public, basic, import, export */
76
Manuel Pégourié-Gonnard7f22f342023-09-28 09:46:22 +020077/* Limitations on ECC curves acceleration: partial curve acceleration is only
78 * supported with crypto excluding PK, X.509 or TLS.
79 * Note: no need to check X.509 as it depends on PK. */
80#if defined(MBEDTLS_PSA_ACCEL_ECC_BRAINPOOL_P_R1_256) || \
81 defined(MBEDTLS_PSA_ACCEL_ECC_BRAINPOOL_P_R1_384) || \
82 defined(MBEDTLS_PSA_ACCEL_ECC_BRAINPOOL_P_R1_512) || \
83 defined(MBEDTLS_PSA_ACCEL_ECC_MONTGOMERY_255) || \
84 defined(MBEDTLS_PSA_ACCEL_ECC_MONTGOMERY_448) || \
85 defined(MBEDTLS_PSA_ACCEL_ECC_SECP_K1_192) || \
86 defined(MBEDTLS_PSA_ACCEL_ECC_SECP_K1_224) || \
87 defined(MBEDTLS_PSA_ACCEL_ECC_SECP_K1_256) || \
88 defined(MBEDTLS_PSA_ACCEL_ECC_SECP_R1_192) || \
89 defined(MBEDTLS_PSA_ACCEL_ECC_SECP_R1_224) || \
90 defined(MBEDTLS_PSA_ACCEL_ECC_SECP_R1_256) || \
91 defined(MBEDTLS_PSA_ACCEL_ECC_SECP_R1_384) || \
92 defined(MBEDTLS_PSA_ACCEL_ECC_SECP_R1_521)
93#if defined(MBEDTLS_PSA_ECC_ACCEL_INCOMPLETE_CURVES)
94#if defined(MBEDTLS_PK_C) || \
95 defined(MBEDTLS_SSL_TLS_C)
96#error "Unsupported partial support for ECC curves acceleration, see docs/driver-only-builds.md"
97#endif /* modules beyond what's supported */
98#endif /* not all curves accelerated */
99#endif /* some curve accelerated */
100
Valerio Settifbefe042023-11-13 10:15:43 +0100101#if defined(MBEDTLS_CTR_DRBG_C) && !(defined(MBEDTLS_AES_C) || \
Antonio de Angelis7889fe72024-02-07 13:01:33 +0000102 (defined(MBEDTLS_PSA_CRYPTO_CLIENT) && defined(PSA_WANT_KEY_TYPE_AES) && \
Valerio Settifbefe042023-11-13 10:15:43 +0100103 defined(PSA_WANT_ALG_ECB_NO_PADDING)))
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200104#error "MBEDTLS_CTR_DRBG_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200105#endif
106
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200107#if defined(MBEDTLS_DHM_C) && !defined(MBEDTLS_BIGNUM_C)
108#error "MBEDTLS_DHM_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200109#endif
110
Brian Murray53e23b62016-09-13 14:00:15 -0700111#if defined(MBEDTLS_CMAC_C) && \
Przemek Stekielea805b42022-05-02 10:30:03 +0200112 ( !defined(MBEDTLS_CIPHER_C ) || ( !defined(MBEDTLS_AES_C) && !defined(MBEDTLS_DES_C) ) )
Brian Murray53e23b62016-09-13 14:00:15 -0700113#error "MBEDTLS_CMAC_C defined, but not all prerequisites"
114#endif
115
Ron Eldor466a57f2018-05-03 16:54:28 +0300116#if defined(MBEDTLS_NIST_KW_C) && \
117 ( !defined(MBEDTLS_AES_C) || !defined(MBEDTLS_CIPHER_C) )
Przemek Stekiela09f8352022-05-12 09:34:28 +0200118#error "MBEDTLS_NIST_KW_C defined, but not all prerequisites"
Ron Eldor466a57f2018-05-03 16:54:28 +0300119#endif
120
Yanray Wangd137da52023-11-08 19:12:23 +0800121#if defined(MBEDTLS_BLOCK_CIPHER_NO_DECRYPT) && defined(MBEDTLS_PSA_CRYPTO_CONFIG)
122#if defined(PSA_WANT_ALG_CBC_NO_PADDING)
123#error "MBEDTLS_BLOCK_CIPHER_NO_DECRYPT and PSA_WANT_ALG_CBC_NO_PADDING cannot be defined simultaneously"
124#endif
125#if defined(PSA_WANT_ALG_CBC_PKCS7)
126#error "MBEDTLS_BLOCK_CIPHER_NO_DECRYPT and PSA_WANT_ALG_CBC_PKCS7 cannot be defined simultaneously"
127#endif
128#if defined(PSA_WANT_ALG_ECB_NO_PADDING)
129#error "MBEDTLS_BLOCK_CIPHER_NO_DECRYPT and PSA_WANT_ALG_ECB_NO_PADDING cannot be defined simultaneously"
130#endif
131#if defined(PSA_WANT_KEY_TYPE_DES)
132#error "MBEDTLS_BLOCK_CIPHER_NO_DECRYPT and PSA_WANT_KEY_TYPE_DES cannot be defined simultaneously"
133#endif
Yanray Wang72d7bb42023-08-30 13:58:15 +0800134#endif
135
Yanray Wangd137da52023-11-08 19:12:23 +0800136#if defined(MBEDTLS_BLOCK_CIPHER_NO_DECRYPT)
137#if defined(MBEDTLS_CIPHER_MODE_CBC)
138#error "MBEDTLS_BLOCK_CIPHER_NO_DECRYPT and MBEDTLS_CIPHER_MODE_CBC cannot be defined simultaneously"
139#endif
140#if defined(MBEDTLS_CIPHER_MODE_XTS)
141#error "MBEDTLS_BLOCK_CIPHER_NO_DECRYPT and MBEDTLS_CIPHER_MODE_XTS cannot be defined simultaneously"
142#endif
143#if defined(MBEDTLS_DES_C)
144#error "MBEDTLS_BLOCK_CIPHER_NO_DECRYPT and MBEDTLS_DES_C cannot be defined simultaneously"
145#endif
146#if defined(MBEDTLS_NIST_KW_C)
147#error "MBEDTLS_BLOCK_CIPHER_NO_DECRYPT and MBEDTLS_NIST_KW_C cannot be defined simultaneously"
148#endif
Yanray Wang956aa002023-11-01 19:15:16 +0800149#endif
150
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200151#if defined(MBEDTLS_ECDH_C) && !defined(MBEDTLS_ECP_C)
152#error "MBEDTLS_ECDH_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200153#endif
154
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200155#if defined(MBEDTLS_ECDSA_C) && \
156 ( !defined(MBEDTLS_ECP_C) || \
Gilles Peskine799e5762018-09-14 17:34:00 +0200157 !( defined(MBEDTLS_ECP_DP_SECP192R1_ENABLED) || \
158 defined(MBEDTLS_ECP_DP_SECP224R1_ENABLED) || \
159 defined(MBEDTLS_ECP_DP_SECP256R1_ENABLED) || \
160 defined(MBEDTLS_ECP_DP_SECP384R1_ENABLED) || \
161 defined(MBEDTLS_ECP_DP_SECP521R1_ENABLED) || \
162 defined(MBEDTLS_ECP_DP_SECP192K1_ENABLED) || \
163 defined(MBEDTLS_ECP_DP_SECP224K1_ENABLED) || \
164 defined(MBEDTLS_ECP_DP_SECP256K1_ENABLED) || \
165 defined(MBEDTLS_ECP_DP_BP256R1_ENABLED) || \
166 defined(MBEDTLS_ECP_DP_BP384R1_ENABLED) || \
167 defined(MBEDTLS_ECP_DP_BP512R1_ENABLED) ) || \
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200168 !defined(MBEDTLS_ASN1_PARSE_C) || \
169 !defined(MBEDTLS_ASN1_WRITE_C) )
170#error "MBEDTLS_ECDSA_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200171#endif
172
Yanray Wang145bb292023-09-25 11:10:25 +0800173#if defined(MBEDTLS_PK_C) && defined(MBEDTLS_USE_PSA_CRYPTO)
Elena Uziunaite9c647642024-09-06 10:49:05 +0100174#if defined(PSA_HAVE_ALG_ECDSA_SIGN) && !defined(MBEDTLS_ASN1_WRITE_C)
Yanray Wang145bb292023-09-25 11:10:25 +0800175#error "MBEDTLS_PK_C with MBEDTLS_USE_PSA_CRYPTO needs MBEDTLS_ASN1_WRITE_C for ECDSA signature"
176#endif
Elena Uziunaite9c647642024-09-06 10:49:05 +0100177#if defined(PSA_HAVE_ALG_ECDSA_VERIFY) && !defined(MBEDTLS_ASN1_PARSE_C)
Yanray Wang145bb292023-09-25 11:10:25 +0800178#error "MBEDTLS_PK_C with MBEDTLS_USE_PSA_CRYPTO needs MBEDTLS_ASN1_PARSE_C for ECDSA verification"
179#endif
180#endif /* MBEDTLS_PK_C && MBEDTLS_USE_PSA_CRYPTO */
181
Manuel Pégourié-Gonnard61758e62024-02-08 12:03:28 +0100182#if defined(MBEDTLS_ECJPAKE_C) && \
Manuel Pégourié-Gonnardac60afc2024-02-08 18:45:56 +0100183 !defined(MBEDTLS_ECP_C)
Manuel Pégourié-Gonnard4d8685b2015-08-05 15:44:42 +0200184#error "MBEDTLS_ECJPAKE_C defined, but not all prerequisites"
185#endif
186
Manuel Pégourié-Gonnardad45c4d2022-12-06 13:20:06 +0100187#if defined(MBEDTLS_ECP_RESTARTABLE) && \
188 !defined(MBEDTLS_ECP_C)
189#error "MBEDTLS_ECP_RESTARTABLE defined, but not all prerequisites"
Ron Eldor5ed8c1e2018-11-05 14:04:26 +0200190#endif
191
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200192#if defined(MBEDTLS_ECDSA_DETERMINISTIC) && !defined(MBEDTLS_HMAC_DRBG_C)
193#error "MBEDTLS_ECDSA_DETERMINISTIC defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200194#endif
195
Manuel Pégourié-Gonnard6d429212023-10-17 10:01:33 +0200196#if defined(MBEDTLS_ECP_LIGHT) && ( !defined(MBEDTLS_BIGNUM_C) || ( \
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200197 !defined(MBEDTLS_ECP_DP_SECP192R1_ENABLED) && \
198 !defined(MBEDTLS_ECP_DP_SECP224R1_ENABLED) && \
199 !defined(MBEDTLS_ECP_DP_SECP256R1_ENABLED) && \
200 !defined(MBEDTLS_ECP_DP_SECP384R1_ENABLED) && \
201 !defined(MBEDTLS_ECP_DP_SECP521R1_ENABLED) && \
202 !defined(MBEDTLS_ECP_DP_BP256R1_ENABLED) && \
203 !defined(MBEDTLS_ECP_DP_BP384R1_ENABLED) && \
204 !defined(MBEDTLS_ECP_DP_BP512R1_ENABLED) && \
205 !defined(MBEDTLS_ECP_DP_SECP192K1_ENABLED) && \
206 !defined(MBEDTLS_ECP_DP_SECP224K1_ENABLED) && \
k-stachowiak5dbe7ca2019-05-31 20:13:58 +0200207 !defined(MBEDTLS_ECP_DP_SECP256K1_ENABLED) && \
208 !defined(MBEDTLS_ECP_DP_CURVE25519_ENABLED) && \
209 !defined(MBEDTLS_ECP_DP_CURVE448_ENABLED) ) )
Manuel Pégourié-Gonnard6d429212023-10-17 10:01:33 +0200210#error "MBEDTLS_ECP_C defined (or a subset enabled), but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200211#endif
212
Manuel Pégourié-Gonnard5cd4b642023-02-02 13:14:59 +0100213#if defined(MBEDTLS_ENTROPY_C) && \
Elena Uziunaite05fe6e42024-09-03 16:52:28 +0100214 !(defined(PSA_WANT_ALG_SHA_512) || defined(PSA_WANT_ALG_SHA_256))
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200215#error "MBEDTLS_ENTROPY_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200216#endif
Manuel Pégourié-Gonnard5cd4b642023-02-02 13:14:59 +0100217#if defined(MBEDTLS_ENTROPY_C) && \
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200218 defined(MBEDTLS_CTR_DRBG_ENTROPY_LEN) && (MBEDTLS_CTR_DRBG_ENTROPY_LEN > 64)
219#error "MBEDTLS_CTR_DRBG_ENTROPY_LEN value too high"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200220#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200221#if defined(MBEDTLS_ENTROPY_C) && \
Elena Uziunaite05fe6e42024-09-03 16:52:28 +0100222 (defined(MBEDTLS_ENTROPY_FORCE_SHA256) || !defined(PSA_WANT_ALG_SHA_512)) \
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200223 && defined(MBEDTLS_CTR_DRBG_ENTROPY_LEN) && (MBEDTLS_CTR_DRBG_ENTROPY_LEN > 32)
224#error "MBEDTLS_CTR_DRBG_ENTROPY_LEN value too high"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200225#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200226#if defined(MBEDTLS_ENTROPY_C) && \
Elena Uziunaitec0d69432024-08-20 14:53:19 +0100227 defined(MBEDTLS_ENTROPY_FORCE_SHA256) && !defined(PSA_WANT_ALG_SHA_256)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200228#error "MBEDTLS_ENTROPY_FORCE_SHA256 defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200229#endif
230
Manuel Pégourié-Gonnard6240def2020-07-10 09:35:54 +0200231#if defined(__has_feature)
232#if __has_feature(memory_sanitizer)
Manuel Pégourié-Gonnarde1f3faf2024-02-08 12:17:20 +0100233#define MBEDTLS_HAS_MEMSAN // #undef at the end of this paragraph
Manuel Pégourié-Gonnard6240def2020-07-10 09:35:54 +0200234#endif
235#endif
236#if defined(MBEDTLS_TEST_CONSTANT_FLOW_MEMSAN) && !defined(MBEDTLS_HAS_MEMSAN)
237#error "MBEDTLS_TEST_CONSTANT_FLOW_MEMSAN requires building with MemorySanitizer"
238#endif
Elena Uziunaite969e9e12024-07-01 16:55:19 +0100239#if defined(MBEDTLS_HAS_MEMSAN) && defined(MBEDTLS_HAVE_ASM)
Elena Uziunaite3e814112024-07-18 14:40:43 +0300240#error "MemorySanitizer does not support assembly implementation"
Elena Uziunaite969e9e12024-07-01 16:55:19 +0100241#endif
Manuel Pégourié-Gonnarde1f3faf2024-02-08 12:17:20 +0100242#undef MBEDTLS_HAS_MEMSAN // temporary macro defined above
Manuel Pégourié-Gonnard6240def2020-07-10 09:35:54 +0200243
Valerio Settic0f9bbc2023-12-12 11:49:28 +0100244#if defined(MBEDTLS_CCM_C) && \
Valerio Setti1994e722023-12-28 14:01:22 +0100245 !(defined(MBEDTLS_CCM_GCM_CAN_AES) || defined(MBEDTLS_CCM_GCM_CAN_ARIA) || \
246 defined(MBEDTLS_CCM_GCM_CAN_CAMELLIA))
Gilles Peskine19848002021-09-02 10:33:57 +0200247#error "MBEDTLS_CCM_C defined, but not all prerequisites"
248#endif
249
Valerio Settic0f9bbc2023-12-12 11:49:28 +0100250#if defined(MBEDTLS_GCM_C) && \
Valerio Setti1994e722023-12-28 14:01:22 +0100251 !(defined(MBEDTLS_CCM_GCM_CAN_AES) || defined(MBEDTLS_CCM_GCM_CAN_ARIA) || \
252 defined(MBEDTLS_CCM_GCM_CAN_CAMELLIA))
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200253#error "MBEDTLS_GCM_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200254#endif
255
Gilles Peskine19848002021-09-02 10:33:57 +0200256#if defined(MBEDTLS_CHACHAPOLY_C) && !defined(MBEDTLS_CHACHA20_C)
257#error "MBEDTLS_CHACHAPOLY_C defined, but not all prerequisites"
258#endif
259
260#if defined(MBEDTLS_CHACHAPOLY_C) && !defined(MBEDTLS_POLY1305_C)
261#error "MBEDTLS_CHACHAPOLY_C defined, but not all prerequisites"
262#endif
263
Thomas Fossati656864b2016-07-17 08:51:22 +0100264#if defined(MBEDTLS_HKDF_C) && !defined(MBEDTLS_MD_C)
265#error "MBEDTLS_HKDF_C defined, but not all prerequisites"
266#endif
267
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200268#if defined(MBEDTLS_HMAC_DRBG_C) && !defined(MBEDTLS_MD_C)
269#error "MBEDTLS_HMAC_DRBG_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200270#endif
271
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200272#if defined(MBEDTLS_KEY_EXCHANGE_ECDH_ECDSA_ENABLED) && \
Valerio Settiaa7cbd62023-07-07 17:22:17 +0200273 ( !defined(MBEDTLS_CAN_ECDH) || \
Elena Uziunaite9c647642024-09-06 10:49:05 +0100274 !defined(PSA_HAVE_ALG_ECDSA_SIGN) || \
Gilles Peskine7ab66a62018-09-14 17:47:41 +0200275 !defined(MBEDTLS_X509_CRT_PARSE_C) )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200276#error "MBEDTLS_KEY_EXCHANGE_ECDH_ECDSA_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200277#endif
278
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200279#if defined(MBEDTLS_KEY_EXCHANGE_ECDH_RSA_ENABLED) && \
Valerio Settiaa7cbd62023-07-07 17:22:17 +0200280 ( !defined(MBEDTLS_CAN_ECDH) || !defined(MBEDTLS_RSA_C) || \
Gilles Peskine7ab66a62018-09-14 17:47:41 +0200281 !defined(MBEDTLS_X509_CRT_PARSE_C) )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200282#error "MBEDTLS_KEY_EXCHANGE_ECDH_RSA_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200283#endif
284
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200285#if defined(MBEDTLS_KEY_EXCHANGE_DHE_PSK_ENABLED) && !defined(MBEDTLS_DHM_C)
286#error "MBEDTLS_KEY_EXCHANGE_DHE_PSK_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200287#endif
288
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200289#if defined(MBEDTLS_KEY_EXCHANGE_ECDHE_PSK_ENABLED) && \
Valerio Settiaa7cbd62023-07-07 17:22:17 +0200290 !defined(MBEDTLS_CAN_ECDH)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200291#error "MBEDTLS_KEY_EXCHANGE_ECDHE_PSK_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200292#endif
293
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200294#if defined(MBEDTLS_KEY_EXCHANGE_DHE_RSA_ENABLED) && \
295 ( !defined(MBEDTLS_DHM_C) || !defined(MBEDTLS_RSA_C) || \
296 !defined(MBEDTLS_X509_CRT_PARSE_C) || !defined(MBEDTLS_PKCS1_V15) )
297#error "MBEDTLS_KEY_EXCHANGE_DHE_RSA_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200298#endif
299
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200300#if defined(MBEDTLS_KEY_EXCHANGE_ECDHE_RSA_ENABLED) && \
Valerio Settiaa7cbd62023-07-07 17:22:17 +0200301 ( !defined(MBEDTLS_CAN_ECDH) || !defined(MBEDTLS_RSA_C) || \
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200302 !defined(MBEDTLS_X509_CRT_PARSE_C) || !defined(MBEDTLS_PKCS1_V15) )
303#error "MBEDTLS_KEY_EXCHANGE_ECDHE_RSA_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200304#endif
305
Manuel Pégourié-Gonnard45bcb6a2023-03-10 11:40:48 +0100306#if defined(MBEDTLS_KEY_EXCHANGE_ECDHE_ECDSA_ENABLED) && \
Valerio Settiaa7cbd62023-07-07 17:22:17 +0200307 ( !defined(MBEDTLS_CAN_ECDH) || \
Elena Uziunaite9c647642024-09-06 10:49:05 +0100308 !defined(PSA_HAVE_ALG_ECDSA_SIGN) || \
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200309 !defined(MBEDTLS_X509_CRT_PARSE_C) )
310#error "MBEDTLS_KEY_EXCHANGE_ECDHE_ECDSA_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200311#endif
312
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200313#if defined(MBEDTLS_KEY_EXCHANGE_RSA_PSK_ENABLED) && \
314 ( !defined(MBEDTLS_RSA_C) || !defined(MBEDTLS_X509_CRT_PARSE_C) || \
315 !defined(MBEDTLS_PKCS1_V15) )
316#error "MBEDTLS_KEY_EXCHANGE_RSA_PSK_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200317#endif
318
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200319#if defined(MBEDTLS_KEY_EXCHANGE_RSA_ENABLED) && \
320 ( !defined(MBEDTLS_RSA_C) || !defined(MBEDTLS_X509_CRT_PARSE_C) || \
321 !defined(MBEDTLS_PKCS1_V15) )
322#error "MBEDTLS_KEY_EXCHANGE_RSA_ENABLED defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200323#endif
324
Manuel Pégourié-Gonnarde1f3faf2024-02-08 12:17:20 +0100325#if defined(MBEDTLS_USE_PSA_CRYPTO)
326#if defined(MBEDTLS_KEY_EXCHANGE_ECJPAKE_ENABLED) && \
327 ( !defined(PSA_WANT_ALG_JPAKE) || \
328 !defined(PSA_WANT_KEY_TYPE_ECC_KEY_PAIR_BASIC) || \
329 !defined(PSA_WANT_ECC_SECP_R1_256) )
Manuel Pégourié-Gonnard557535d2015-09-15 17:53:32 +0200330#error "MBEDTLS_KEY_EXCHANGE_ECJPAKE_ENABLED defined, but not all prerequisites"
331#endif
Manuel Pégourié-Gonnarde1f3faf2024-02-08 12:17:20 +0100332#else /* MBEDTLS_USE_PSA_CRYPTO */
333#if defined(MBEDTLS_KEY_EXCHANGE_ECJPAKE_ENABLED) && \
334 ( !defined(MBEDTLS_ECJPAKE_C) || \
335 !defined(MBEDTLS_ECP_DP_SECP256R1_ENABLED) )
336#error "MBEDTLS_KEY_EXCHANGE_ECJPAKE_ENABLED defined, but not all prerequisites"
337#endif
338#endif /* MBEDTLS_USE_PSA_CRYPTO */
Manuel Pégourié-Gonnard557535d2015-09-15 17:53:32 +0200339
Manuel Pégourié-Gonnard41bc8b62023-03-14 23:59:24 +0100340/* Use of EC J-PAKE in TLS requires SHA-256. */
Manuel Pégourié-Gonnard3c16abe2022-09-19 10:44:42 +0200341#if defined(MBEDTLS_KEY_EXCHANGE_ECJPAKE_ENABLED) && \
Elena Uziunaitec0d69432024-08-20 14:53:19 +0100342 !defined(PSA_WANT_ALG_SHA_256)
Manuel Pégourié-Gonnard3c16abe2022-09-19 10:44:42 +0200343#error "MBEDTLS_KEY_EXCHANGE_ECJPAKE_ENABLED defined, but not all prerequisites"
344#endif
345
Gilles Peskineeccd8882020-03-10 12:19:08 +0100346#if defined(MBEDTLS_KEY_EXCHANGE_WITH_CERT_ENABLED) && \
Manuel Pégourié-Gonnard49f64b42024-02-08 12:00:28 +0100347 !defined(MBEDTLS_SSL_KEEP_PEER_CERTIFICATE) && \
Elena Uziunaitec0d69432024-08-20 14:53:19 +0100348 !defined(PSA_WANT_ALG_SHA_256) && \
Elena Uziunaite05fe6e42024-09-03 16:52:28 +0100349 !defined(PSA_WANT_ALG_SHA_512) && \
Elena Uziunaite9fc5be02024-09-04 18:12:59 +0100350 !defined(PSA_WANT_ALG_SHA_1)
Manuel Pégourié-Gonnard49f64b42024-02-08 12:00:28 +0100351#error "!MBEDTLS_SSL_KEEP_PEER_CERTIFICATE requires SHA-512, SHA-256 or SHA-1".
Hanno Beckerfe4ef0c2019-02-26 11:43:09 +0000352#endif
353
Manuel Pégourié-Gonnard7eb3f9a2024-02-08 11:56:54 +0100354#if defined(MBEDTLS_MD_C) && \
Elena Uziunaitec0d69432024-08-20 14:53:19 +0100355 !defined(PSA_WANT_ALG_MD5) && \
356 !defined(PSA_WANT_ALG_RIPEMD160) && \
Elena Uziunaite9fc5be02024-09-04 18:12:59 +0100357 !defined(PSA_WANT_ALG_SHA_1) && \
Elena Uziunaitec0d69432024-08-20 14:53:19 +0100358 !defined(PSA_WANT_ALG_SHA_224) && \
359 !defined(PSA_WANT_ALG_SHA_256) && \
360 !defined(PSA_WANT_ALG_SHA_384) && \
Elena Uziunaite05fe6e42024-09-03 16:52:28 +0100361 !defined(PSA_WANT_ALG_SHA_512) && \
Elena Uziunaitec0d69432024-08-20 14:53:19 +0100362 !defined(PSA_WANT_ALG_SHA3_224) && \
363 !defined(PSA_WANT_ALG_SHA3_256) && \
364 !defined(PSA_WANT_ALG_SHA3_384) && \
365 !defined(PSA_WANT_ALG_SHA3_512)
Manuel Pégourié-Gonnard7eb3f9a2024-02-08 11:56:54 +0100366#error "MBEDTLS_MD_C defined, but no hash algorithm"
Manuel Pégourié-Gonnard1f7f7172022-07-18 12:04:05 +0200367#endif
368
Raef Coles8ff6df52021-07-21 12:42:15 +0100369#if defined(MBEDTLS_LMS_C) && \
Antonio de Angelis7889fe72024-02-07 13:01:33 +0000370 ! ( defined(MBEDTLS_PSA_CRYPTO_CLIENT) && defined(PSA_WANT_ALG_SHA_256) )
Raef Coles07b70d92022-10-13 10:46:16 +0100371#error "MBEDTLS_LMS_C requires MBEDTLS_PSA_CRYPTO_C and PSA_WANT_ALG_SHA_256"
Raef Coles8ff6df52021-07-21 12:42:15 +0100372#endif
373
Raef Colesab4f8742022-09-01 12:24:31 +0100374#if defined(MBEDTLS_LMS_PRIVATE) && \
375 ( !defined(MBEDTLS_LMS_C) )
376#error "MBEDTLS_LMS_PRIVATE requires MBEDTLS_LMS_C"
377#endif
378
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200379#if defined(MBEDTLS_MEMORY_BUFFER_ALLOC_C) && \
380 ( !defined(MBEDTLS_PLATFORM_C) || !defined(MBEDTLS_PLATFORM_MEMORY) )
381#error "MBEDTLS_MEMORY_BUFFER_ALLOC_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200382#endif
383
Hanno Beckeraf46c5f2019-02-26 13:50:21 +0000384#if defined(MBEDTLS_MEMORY_BACKTRACE) && !defined(MBEDTLS_MEMORY_BUFFER_ALLOC_C)
Shaun Case8b0ecbc2021-12-20 21:14:10 -0800385#error "MBEDTLS_MEMORY_BACKTRACE defined, but not all prerequisites"
Hanno Beckeraf46c5f2019-02-26 13:50:21 +0000386#endif
387
Hanno Beckerbfaa7182019-06-03 16:31:32 +0100388#if defined(MBEDTLS_MEMORY_DEBUG) && !defined(MBEDTLS_MEMORY_BUFFER_ALLOC_C)
Shaun Case8b0ecbc2021-12-20 21:14:10 -0800389#error "MBEDTLS_MEMORY_DEBUG defined, but not all prerequisites"
Hanno Beckerbfaa7182019-06-03 16:31:32 +0100390#endif
391
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200392#if defined(MBEDTLS_PEM_PARSE_C) && !defined(MBEDTLS_BASE64_C)
393#error "MBEDTLS_PEM_PARSE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200394#endif
395
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200396#if defined(MBEDTLS_PEM_WRITE_C) && !defined(MBEDTLS_BASE64_C)
397#error "MBEDTLS_PEM_WRITE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200398#endif
399
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200400#if defined(MBEDTLS_PK_C) && \
Elena Uziunaitec0d69432024-08-20 14:53:19 +0100401 !defined(MBEDTLS_RSA_C) && !defined(PSA_WANT_KEY_TYPE_ECC_PUBLIC_KEY)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200402#error "MBEDTLS_PK_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard94de3312015-01-28 16:32:36 +0000403#endif
404
Yanray Wang5b118d42023-12-05 10:31:54 +0800405#if defined(MBEDTLS_PK_PARSE_C) && \
Yanray Wang072a0682023-12-05 10:53:04 +0800406 (!defined(MBEDTLS_ASN1_PARSE_C) || \
407 !defined(MBEDTLS_OID_C) || \
408 !defined(MBEDTLS_PK_C))
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200409#error "MBEDTLS_PK_PARSE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200410#endif
411
Yanray Wang5b118d42023-12-05 10:31:54 +0800412#if defined(MBEDTLS_PK_WRITE_C) && \
Yanray Wanga8f8eb12023-12-05 11:00:33 +0800413 (!defined(MBEDTLS_ASN1_WRITE_C) || \
414 !defined(MBEDTLS_OID_C) || \
415 !defined(MBEDTLS_PK_C))
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200416#error "MBEDTLS_PK_WRITE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200417#endif
418
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200419#if defined(MBEDTLS_PLATFORM_EXIT_ALT) && !defined(MBEDTLS_PLATFORM_C)
420#error "MBEDTLS_PLATFORM_EXIT_ALT defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000421#endif
422
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200423#if defined(MBEDTLS_PLATFORM_EXIT_MACRO) && !defined(MBEDTLS_PLATFORM_C)
424#error "MBEDTLS_PLATFORM_EXIT_MACRO defined, but not all prerequisites"
Rich Evans4cc8a222015-02-03 11:26:31 +0000425#endif
426
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200427#if defined(MBEDTLS_PLATFORM_EXIT_MACRO) &&\
428 ( defined(MBEDTLS_PLATFORM_STD_EXIT) ||\
429 defined(MBEDTLS_PLATFORM_EXIT_ALT) )
430#error "MBEDTLS_PLATFORM_EXIT_MACRO and MBEDTLS_PLATFORM_STD_EXIT/MBEDTLS_PLATFORM_EXIT_ALT cannot be defined simultaneously"
Rich Evans4cc8a222015-02-03 11:26:31 +0000431#endif
432
Gilles Peskine6497b5a2022-06-30 17:01:40 +0200433#if defined(MBEDTLS_PLATFORM_SETBUF_ALT) && !defined(MBEDTLS_PLATFORM_C)
434#error "MBEDTLS_PLATFORM_SETBUF_ALT defined, but not all prerequisites"
435#endif
436
437#if defined(MBEDTLS_PLATFORM_SETBUF_MACRO) && !defined(MBEDTLS_PLATFORM_C)
438#error "MBEDTLS_PLATFORM_SETBUF_MACRO defined, but not all prerequisites"
439#endif
440
441#if defined(MBEDTLS_PLATFORM_SETBUF_MACRO) &&\
442 ( defined(MBEDTLS_PLATFORM_STD_SETBUF) ||\
443 defined(MBEDTLS_PLATFORM_SETBUF_ALT) )
444#error "MBEDTLS_PLATFORM_SETBUF_MACRO and MBEDTLS_PLATFORM_STD_SETBUF/MBEDTLS_PLATFORM_SETBUF_ALT cannot be defined simultaneously"
445#endif
446
Andres Amaya Garcia1e4ec662016-07-20 10:16:25 +0100447#if defined(MBEDTLS_PLATFORM_TIME_ALT) &&\
448 ( !defined(MBEDTLS_PLATFORM_C) ||\
449 !defined(MBEDTLS_HAVE_TIME) )
450#error "MBEDTLS_PLATFORM_TIME_ALT defined, but not all prerequisites"
451#endif
452
453#if defined(MBEDTLS_PLATFORM_TIME_MACRO) &&\
454 ( !defined(MBEDTLS_PLATFORM_C) ||\
455 !defined(MBEDTLS_HAVE_TIME) )
456#error "MBEDTLS_PLATFORM_TIME_MACRO defined, but not all prerequisites"
457#endif
458
Jerry Yueba0ab52022-12-15 17:41:41 +0800459#if defined(MBEDTLS_PLATFORM_MS_TIME_TYPE_MACRO) &&\
Jerry Yu1ae2b2f2023-02-21 15:37:12 +0800460 ( !defined(MBEDTLS_PLATFORM_C) || !defined(MBEDTLS_HAVE_TIME) )
Jerry Yueba0ab52022-12-15 17:41:41 +0800461#error "MBEDTLS_PLATFORM_MS_TIME_TYPE_MACRO defined, but not all prerequisites"
462#endif
463
Jerry Yu38257492022-12-15 17:54:47 +0800464#if defined(MBEDTLS_PLATFORM_MS_TIME_ALT) && \
Jerry Yu1ae2b2f2023-02-21 15:37:12 +0800465 ( !defined(MBEDTLS_PLATFORM_C) || !defined(MBEDTLS_HAVE_TIME) )
Jerry Yu38257492022-12-15 17:54:47 +0800466#error "MBEDTLS_PLATFORM_MS_TIME_ALT defined, but not all prerequisites"
467#endif
468
Andres Amaya Garcia1e4ec662016-07-20 10:16:25 +0100469#if defined(MBEDTLS_PLATFORM_TIME_TYPE_MACRO) &&\
470 ( !defined(MBEDTLS_PLATFORM_C) ||\
471 !defined(MBEDTLS_HAVE_TIME) )
472#error "MBEDTLS_PLATFORM_TIME_TYPE_MACRO defined, but not all prerequisites"
473#endif
474
475#if defined(MBEDTLS_PLATFORM_TIME_MACRO) &&\
476 ( defined(MBEDTLS_PLATFORM_STD_TIME) ||\
477 defined(MBEDTLS_PLATFORM_TIME_ALT) )
478#error "MBEDTLS_PLATFORM_TIME_MACRO and MBEDTLS_PLATFORM_STD_TIME/MBEDTLS_PLATFORM_TIME_ALT cannot be defined simultaneously"
479#endif
480
481#if defined(MBEDTLS_PLATFORM_TIME_TYPE_MACRO) &&\
482 ( defined(MBEDTLS_PLATFORM_STD_TIME) ||\
483 defined(MBEDTLS_PLATFORM_TIME_ALT) )
484#error "MBEDTLS_PLATFORM_TIME_TYPE_MACRO and MBEDTLS_PLATFORM_STD_TIME/MBEDTLS_PLATFORM_TIME_ALT cannot be defined simultaneously"
485#endif
486
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200487#if defined(MBEDTLS_PLATFORM_FPRINTF_ALT) && !defined(MBEDTLS_PLATFORM_C)
488#error "MBEDTLS_PLATFORM_FPRINTF_ALT defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000489#endif
490
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200491#if defined(MBEDTLS_PLATFORM_FPRINTF_MACRO) && !defined(MBEDTLS_PLATFORM_C)
492#error "MBEDTLS_PLATFORM_FPRINTF_MACRO defined, but not all prerequisites"
Rich Evans4cc8a222015-02-03 11:26:31 +0000493#endif
494
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200495#if defined(MBEDTLS_PLATFORM_FPRINTF_MACRO) &&\
496 ( defined(MBEDTLS_PLATFORM_STD_FPRINTF) ||\
497 defined(MBEDTLS_PLATFORM_FPRINTF_ALT) )
498#error "MBEDTLS_PLATFORM_FPRINTF_MACRO and MBEDTLS_PLATFORM_STD_FPRINTF/MBEDTLS_PLATFORM_FPRINTF_ALT cannot be defined simultaneously"
Rich Evans4cc8a222015-02-03 11:26:31 +0000499#endif
500
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200501#if defined(MBEDTLS_PLATFORM_FREE_MACRO) &&\
502 ( !defined(MBEDTLS_PLATFORM_C) || !defined(MBEDTLS_PLATFORM_MEMORY) )
503#error "MBEDTLS_PLATFORM_FREE_MACRO defined, but not all prerequisites"
Rich Evans4cc8a222015-02-03 11:26:31 +0000504#endif
505
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200506#if defined(MBEDTLS_PLATFORM_FREE_MACRO) &&\
507 defined(MBEDTLS_PLATFORM_STD_FREE)
508#error "MBEDTLS_PLATFORM_FREE_MACRO and MBEDTLS_PLATFORM_STD_FREE cannot be defined simultaneously"
Rich Evans4cc8a222015-02-03 11:26:31 +0000509#endif
510
Manuel Pégourié-Gonnarda7f80332015-05-27 20:26:40 +0200511#if defined(MBEDTLS_PLATFORM_FREE_MACRO) && !defined(MBEDTLS_PLATFORM_CALLOC_MACRO)
512#error "MBEDTLS_PLATFORM_CALLOC_MACRO must be defined if MBEDTLS_PLATFORM_FREE_MACRO is"
Rich Evans16f8cd82015-02-06 16:14:34 +0000513#endif
514
Manuel Pégourié-Gonnarda7f80332015-05-27 20:26:40 +0200515#if defined(MBEDTLS_PLATFORM_CALLOC_MACRO) &&\
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200516 ( !defined(MBEDTLS_PLATFORM_C) || !defined(MBEDTLS_PLATFORM_MEMORY) )
Manuel Pégourié-Gonnarda7f80332015-05-27 20:26:40 +0200517#error "MBEDTLS_PLATFORM_CALLOC_MACRO defined, but not all prerequisites"
Rich Evans4cc8a222015-02-03 11:26:31 +0000518#endif
519
Manuel Pégourié-Gonnarda7f80332015-05-27 20:26:40 +0200520#if defined(MBEDTLS_PLATFORM_CALLOC_MACRO) &&\
521 defined(MBEDTLS_PLATFORM_STD_CALLOC)
522#error "MBEDTLS_PLATFORM_CALLOC_MACRO and MBEDTLS_PLATFORM_STD_CALLOC cannot be defined simultaneously"
Rich Evans4cc8a222015-02-03 11:26:31 +0000523#endif
524
Manuel Pégourié-Gonnarda7f80332015-05-27 20:26:40 +0200525#if defined(MBEDTLS_PLATFORM_CALLOC_MACRO) && !defined(MBEDTLS_PLATFORM_FREE_MACRO)
526#error "MBEDTLS_PLATFORM_FREE_MACRO must be defined if MBEDTLS_PLATFORM_CALLOC_MACRO is"
Rich Evans16f8cd82015-02-06 16:14:34 +0000527#endif
528
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200529#if defined(MBEDTLS_PLATFORM_MEMORY) && !defined(MBEDTLS_PLATFORM_C)
530#error "MBEDTLS_PLATFORM_MEMORY defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000531#endif
532
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200533#if defined(MBEDTLS_PLATFORM_PRINTF_ALT) && !defined(MBEDTLS_PLATFORM_C)
534#error "MBEDTLS_PLATFORM_PRINTF_ALT defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000535#endif
536
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200537#if defined(MBEDTLS_PLATFORM_PRINTF_MACRO) && !defined(MBEDTLS_PLATFORM_C)
538#error "MBEDTLS_PLATFORM_PRINTF_MACRO defined, but not all prerequisites"
Rich Evans4cc8a222015-02-03 11:26:31 +0000539#endif
540
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200541#if defined(MBEDTLS_PLATFORM_PRINTF_MACRO) &&\
542 ( defined(MBEDTLS_PLATFORM_STD_PRINTF) ||\
543 defined(MBEDTLS_PLATFORM_PRINTF_ALT) )
544#error "MBEDTLS_PLATFORM_PRINTF_MACRO and MBEDTLS_PLATFORM_STD_PRINTF/MBEDTLS_PLATFORM_PRINTF_ALT cannot be defined simultaneously"
Rich Evans4cc8a222015-02-03 11:26:31 +0000545#endif
546
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200547#if defined(MBEDTLS_PLATFORM_SNPRINTF_ALT) && !defined(MBEDTLS_PLATFORM_C)
548#error "MBEDTLS_PLATFORM_SNPRINTF_ALT defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000549#endif
550
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200551#if defined(MBEDTLS_PLATFORM_SNPRINTF_MACRO) && !defined(MBEDTLS_PLATFORM_C)
552#error "MBEDTLS_PLATFORM_SNPRINTF_MACRO defined, but not all prerequisites"
Rich Evans4cc8a222015-02-03 11:26:31 +0000553#endif
554
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200555#if defined(MBEDTLS_PLATFORM_SNPRINTF_MACRO) &&\
556 ( defined(MBEDTLS_PLATFORM_STD_SNPRINTF) ||\
557 defined(MBEDTLS_PLATFORM_SNPRINTF_ALT) )
558#error "MBEDTLS_PLATFORM_SNPRINTF_MACRO and MBEDTLS_PLATFORM_STD_SNPRINTF/MBEDTLS_PLATFORM_SNPRINTF_ALT cannot be defined simultaneously"
Rich Evans4cc8a222015-02-03 11:26:31 +0000559#endif
560
Gilles Peskineef843f22022-09-18 14:05:23 +0200561#if defined(MBEDTLS_PLATFORM_VSNPRINTF_ALT) && !defined(MBEDTLS_PLATFORM_C)
562#error "MBEDTLS_PLATFORM_VSNPRINTF_ALT defined, but not all prerequisites"
563#endif
564
565#if defined(MBEDTLS_PLATFORM_VSNPRINTF_MACRO) && !defined(MBEDTLS_PLATFORM_C)
566#error "MBEDTLS_PLATFORM_VSNPRINTF_MACRO defined, but not all prerequisites"
567#endif
568
569#if defined(MBEDTLS_PLATFORM_VSNPRINTF_MACRO) &&\
570 ( defined(MBEDTLS_PLATFORM_STD_VSNPRINTF) ||\
571 defined(MBEDTLS_PLATFORM_VSNPRINTF_ALT) )
572#error "MBEDTLS_PLATFORM_VSNPRINTF_MACRO and MBEDTLS_PLATFORM_STD_VSNPRINTF/MBEDTLS_PLATFORM_VSNPRINTF_ALT cannot be defined simultaneously"
573#endif
574
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200575#if defined(MBEDTLS_PLATFORM_STD_MEM_HDR) &&\
576 !defined(MBEDTLS_PLATFORM_NO_STD_FUNCTIONS)
577#error "MBEDTLS_PLATFORM_STD_MEM_HDR defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000578#endif
579
Manuel Pégourié-Gonnarda7f80332015-05-27 20:26:40 +0200580#if defined(MBEDTLS_PLATFORM_STD_CALLOC) && !defined(MBEDTLS_PLATFORM_MEMORY)
581#error "MBEDTLS_PLATFORM_STD_CALLOC defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000582#endif
583
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200584#if defined(MBEDTLS_PLATFORM_STD_FREE) && !defined(MBEDTLS_PLATFORM_MEMORY)
585#error "MBEDTLS_PLATFORM_STD_FREE defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000586#endif
587
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200588#if defined(MBEDTLS_PLATFORM_STD_EXIT) &&\
589 !defined(MBEDTLS_PLATFORM_EXIT_ALT)
590#error "MBEDTLS_PLATFORM_STD_EXIT defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000591#endif
592
Andres Amaya Garcia1e4ec662016-07-20 10:16:25 +0100593#if defined(MBEDTLS_PLATFORM_STD_TIME) &&\
594 ( !defined(MBEDTLS_PLATFORM_TIME_ALT) ||\
595 !defined(MBEDTLS_HAVE_TIME) )
596#error "MBEDTLS_PLATFORM_STD_TIME defined, but not all prerequisites"
597#endif
598
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200599#if defined(MBEDTLS_PLATFORM_STD_FPRINTF) &&\
600 !defined(MBEDTLS_PLATFORM_FPRINTF_ALT)
601#error "MBEDTLS_PLATFORM_STD_FPRINTF defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000602#endif
603
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200604#if defined(MBEDTLS_PLATFORM_STD_PRINTF) &&\
605 !defined(MBEDTLS_PLATFORM_PRINTF_ALT)
606#error "MBEDTLS_PLATFORM_STD_PRINTF defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000607#endif
608
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200609#if defined(MBEDTLS_PLATFORM_STD_SNPRINTF) &&\
610 !defined(MBEDTLS_PLATFORM_SNPRINTF_ALT)
611#error "MBEDTLS_PLATFORM_STD_SNPRINTF defined, but not all prerequisites"
Rich Evansc0b6da32015-02-03 10:58:06 +0000612#endif
613
Paul Bakkercf0a9f92016-06-01 11:25:44 +0100614#if defined(MBEDTLS_ENTROPY_NV_SEED) &&\
615 ( !defined(MBEDTLS_PLATFORM_C) || !defined(MBEDTLS_ENTROPY_C) )
616#error "MBEDTLS_ENTROPY_NV_SEED defined, but not all prerequisites"
617#endif
618
619#if defined(MBEDTLS_PLATFORM_NV_SEED_ALT) &&\
620 !defined(MBEDTLS_ENTROPY_NV_SEED)
621#error "MBEDTLS_PLATFORM_NV_SEED_ALT defined, but not all prerequisites"
622#endif
623
624#if defined(MBEDTLS_PLATFORM_STD_NV_SEED_READ) &&\
625 !defined(MBEDTLS_PLATFORM_NV_SEED_ALT)
626#error "MBEDTLS_PLATFORM_STD_NV_SEED_READ defined, but not all prerequisites"
627#endif
628
629#if defined(MBEDTLS_PLATFORM_STD_NV_SEED_WRITE) &&\
630 !defined(MBEDTLS_PLATFORM_NV_SEED_ALT)
631#error "MBEDTLS_PLATFORM_STD_NV_SEED_WRITE defined, but not all prerequisites"
632#endif
633
634#if defined(MBEDTLS_PLATFORM_NV_SEED_READ_MACRO) &&\
635 ( defined(MBEDTLS_PLATFORM_STD_NV_SEED_READ) ||\
636 defined(MBEDTLS_PLATFORM_NV_SEED_ALT) )
637#error "MBEDTLS_PLATFORM_NV_SEED_READ_MACRO and MBEDTLS_PLATFORM_STD_NV_SEED_READ cannot be defined simultaneously"
638#endif
639
640#if defined(MBEDTLS_PLATFORM_NV_SEED_WRITE_MACRO) &&\
641 ( defined(MBEDTLS_PLATFORM_STD_NV_SEED_WRITE) ||\
642 defined(MBEDTLS_PLATFORM_NV_SEED_ALT) )
643#error "MBEDTLS_PLATFORM_NV_SEED_WRITE_MACRO and MBEDTLS_PLATFORM_STD_NV_SEED_WRITE cannot be defined simultaneously"
644#endif
645
Gilles Peskinef08b3f82020-11-13 17:36:48 +0100646#if defined(MBEDTLS_PSA_CRYPTO_C) && \
Gilles Peskine82e57d12020-11-13 21:31:17 +0100647 !( ( ( defined(MBEDTLS_CTR_DRBG_C) || defined(MBEDTLS_HMAC_DRBG_C) ) && \
Gilles Peskinef08b3f82020-11-13 17:36:48 +0100648 defined(MBEDTLS_ENTROPY_C) ) || \
649 defined(MBEDTLS_PSA_CRYPTO_EXTERNAL_RNG) )
650#error "MBEDTLS_PSA_CRYPTO_C defined, but not all prerequisites (missing RNG)"
Jaeden Amero484ee332018-10-25 17:38:05 +0100651#endif
652
Valerio Setti919e3fa2023-11-20 16:30:05 +0100653#if defined(MBEDTLS_PSA_CRYPTO_C) && defined(PSA_HAVE_SOFT_BLOCK_MODE) && \
654 defined(PSA_HAVE_SOFT_BLOCK_CIPHER) && !defined(MBEDTLS_CIPHER_C)
Przemek Stekiela09f8352022-05-12 09:34:28 +0200655#error "MBEDTLS_PSA_CRYPTO_C defined, but not all prerequisites"
Przemek Stekielea805b42022-05-02 10:30:03 +0200656#endif
657
Andrzej Kurekc6905232019-02-05 05:23:41 -0500658#if defined(MBEDTLS_PSA_CRYPTO_SPM) && !defined(MBEDTLS_PSA_CRYPTO_C)
659#error "MBEDTLS_PSA_CRYPTO_SPM defined, but not all prerequisites"
660#endif
661
Gilles Peskinea8ade162019-06-26 11:24:49 +0200662#if defined(MBEDTLS_PSA_CRYPTO_SE_C) && \
663 ! ( defined(MBEDTLS_PSA_CRYPTO_C) && \
664 defined(MBEDTLS_PSA_CRYPTO_STORAGE_C) )
665#error "MBEDTLS_PSA_CRYPTO_SE_C defined, but not all prerequisites"
666#endif
667
Gilles Peskine98473c42022-06-20 18:46:22 +0200668#if defined(MBEDTLS_PSA_CRYPTO_SE_C)
669#if defined(MBEDTLS_DEPRECATED_REMOVED)
670#error "MBEDTLS_PSA_CRYPTO_SE_C is deprecated and will be removed in a future version of Mbed TLS"
671#elif defined(MBEDTLS_DEPRECATED_WARNING)
672#warning "MBEDTLS_PSA_CRYPTO_SE_C is deprecated and will be removed in a future version of Mbed TLS"
673#endif
674#endif /* MBEDTLS_PSA_CRYPTO_SE_C */
675
Andrzej Kurekc6905232019-02-05 05:23:41 -0500676#if defined(MBEDTLS_PSA_CRYPTO_STORAGE_C) && \
Jaeden Amero57f4d9e2019-03-15 16:14:19 +0000677 ! defined(MBEDTLS_PSA_CRYPTO_C)
Andrzej Kurekc6905232019-02-05 05:23:41 -0500678#error "MBEDTLS_PSA_CRYPTO_STORAGE_C defined, but not all prerequisites"
679#endif
680
Jaeden Amero57f4d9e2019-03-15 16:14:19 +0000681#if defined(MBEDTLS_PSA_INJECT_ENTROPY) && \
682 !( defined(MBEDTLS_PSA_CRYPTO_STORAGE_C) && \
683 defined(MBEDTLS_ENTROPY_NV_SEED) )
684#error "MBEDTLS_PSA_INJECT_ENTROPY defined, but not all prerequisites"
Andrzej Kurekc6905232019-02-05 05:23:41 -0500685#endif
686
Jaeden Amero57f4d9e2019-03-15 16:14:19 +0000687#if defined(MBEDTLS_PSA_INJECT_ENTROPY) && \
688 !defined(MBEDTLS_NO_DEFAULT_ENTROPY_SOURCES)
689#error "MBEDTLS_PSA_INJECT_ENTROPY is not compatible with actual entropy sources"
690#endif
691
Gilles Peskine4fc21fd2020-11-13 18:47:18 +0100692#if defined(MBEDTLS_PSA_INJECT_ENTROPY) && \
Gilles Peskine89ffb282020-11-18 15:23:08 +0100693 defined(MBEDTLS_PSA_CRYPTO_EXTERNAL_RNG)
Gilles Peskine4fc21fd2020-11-13 18:47:18 +0100694#error "MBEDTLS_PSA_INJECT_ENTROPY is not compatible with MBEDTLS_PSA_CRYPTO_EXTERNAL_RNG"
695#endif
696
Valerio Settia006b8f2024-08-16 13:32:58 +0200697#if defined(MBEDTLS_PSA_KEY_STORE_DYNAMIC) && \
698 defined(MBEDTLS_PSA_STATIC_KEY_SLOTS)
699#error "MBEDTLS_PSA_KEY_STORE_DYNAMIC and MBEDTLS_PSA_STATIC_KEY_SLOTS cannot be defined simultaneously"
700#endif
701
Jaeden Amero57f4d9e2019-03-15 16:14:19 +0000702#if defined(MBEDTLS_PSA_ITS_FILE_C) && \
703 !defined(MBEDTLS_FS_IO)
704#error "MBEDTLS_PSA_ITS_FILE_C defined, but not all prerequisites"
Andrzej Kurekc6905232019-02-05 05:23:41 -0500705#endif
706
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200707#if defined(MBEDTLS_RSA_C) && ( !defined(MBEDTLS_BIGNUM_C) || \
708 !defined(MBEDTLS_OID_C) )
709#error "MBEDTLS_RSA_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200710#endif
711
Paul Bakker4fde40f2016-05-09 15:13:04 +0100712#if defined(MBEDTLS_RSA_C) && ( !defined(MBEDTLS_PKCS1_V21) && \
Paul Bakker37068a72016-05-09 14:36:33 +0100713 !defined(MBEDTLS_PKCS1_V15) )
714#error "MBEDTLS_RSA_C defined, but none of the PKCS1 versions enabled"
715#endif
716
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200717#if defined(MBEDTLS_X509_RSASSA_PSS_SUPPORT) && \
718 ( !defined(MBEDTLS_RSA_C) || !defined(MBEDTLS_PKCS1_V21) )
719#error "MBEDTLS_X509_RSASSA_PSS_SUPPORT defined, but not all prerequisites"
Manuel Pégourié-Gonnard9df5c962014-01-24 14:37:29 +0100720#endif
721
Tom Cosgrove87fbfb52022-03-15 10:51:52 +0000722#if defined(MBEDTLS_SHA512_USE_A64_CRYPTO_IF_PRESENT) && \
723 defined(MBEDTLS_SHA512_USE_A64_CRYPTO_ONLY)
724#error "Must only define one of MBEDTLS_SHA512_USE_A64_CRYPTO_*"
725#endif
726
727#if defined(MBEDTLS_SHA512_USE_A64_CRYPTO_IF_PRESENT) || \
728 defined(MBEDTLS_SHA512_USE_A64_CRYPTO_ONLY)
729#if !defined(MBEDTLS_SHA512_C)
730#error "MBEDTLS_SHA512_USE_A64_CRYPTO_* defined without MBEDTLS_SHA512_C"
731#endif
Tom Cosgrove87fbfb52022-03-15 10:51:52 +0000732
733#endif /* MBEDTLS_SHA512_USE_A64_CRYPTO_IF_PRESENT || MBEDTLS_SHA512_USE_A64_CRYPTO_ONLY */
734
735#if defined(MBEDTLS_SHA512_USE_A64_CRYPTO_ONLY) && !defined(__aarch64__)
736#error "MBEDTLS_SHA512_USE_A64_CRYPTO_ONLY defined on non-Aarch64 system"
737#endif
738
Dave Rodgman5b89c552023-10-10 14:59:02 +0100739#if defined(MBEDTLS_SHA256_USE_ARMV8_A_CRYPTO_IF_PRESENT) && \
740 defined(MBEDTLS_SHA256_USE_ARMV8_A_CRYPTO_ONLY)
741#error "Must only define one of MBEDTLS_SHA256_USE_ARMV8_A_CRYPTO_*"
Tom Cosgrovef3ebd902022-02-20 22:25:31 +0000742#endif
743
Dave Rodgman5b89c552023-10-10 14:59:02 +0100744#if defined(MBEDTLS_SHA256_USE_ARMV8_A_CRYPTO_IF_PRESENT) || \
745 defined(MBEDTLS_SHA256_USE_ARMV8_A_CRYPTO_ONLY)
Tom Cosgrovef3ebd902022-02-20 22:25:31 +0000746#if !defined(MBEDTLS_SHA256_C)
Dave Rodgman5b89c552023-10-10 14:59:02 +0100747#error "MBEDTLS_SHA256_USE_ARMV8_A_CRYPTO_* defined without MBEDTLS_SHA256_C"
Tom Cosgrovef3ebd902022-02-20 22:25:31 +0000748#endif
Jerry Yu35f2b262023-02-15 11:35:55 +0800749
Tom Cosgrovef3ebd902022-02-20 22:25:31 +0000750#endif
751
Dave Rodgman5b89c552023-10-10 14:59:02 +0100752#if defined(MBEDTLS_SHA256_USE_ARMV8_A_CRYPTO_ONLY) && !defined(MBEDTLS_ARCH_IS_ARMV8_A)
753#error "MBEDTLS_SHA256_USE_ARMV8_A_CRYPTO_ONLY defined on non-Armv8-A system"
Tom Cosgrovef3ebd902022-02-20 22:25:31 +0000754#endif
755
Manuel Pégourié-Gonnarda31ddb92023-03-22 00:13:50 +0100756/* TLS 1.3 requires separate HKDF parts from PSA,
757 * and at least one ciphersuite, so at least SHA-256 or SHA-384
758 * from PSA to use with HKDF.
759 *
760 * Note: for dependencies common with TLS 1.2 (running handshake hash),
761 * see MBEDTLS_SSL_TLS_C. */
Ronald Cron6f135e12021-12-08 16:57:54 +0100762#if defined(MBEDTLS_SSL_PROTO_TLS1_3) && \
Antonio de Angelis7889fe72024-02-07 13:01:33 +0000763 !(defined(MBEDTLS_PSA_CRYPTO_CLIENT) && \
Manuel Pégourié-Gonnarda31ddb92023-03-22 00:13:50 +0100764 defined(PSA_WANT_ALG_HKDF_EXTRACT) && \
765 defined(PSA_WANT_ALG_HKDF_EXPAND) && \
766 (defined(PSA_WANT_ALG_SHA_256) || defined(PSA_WANT_ALG_SHA_384)))
Ronald Cron6f135e12021-12-08 16:57:54 +0100767#error "MBEDTLS_SSL_PROTO_TLS1_3 defined, but not all prerequisites"
Hanno Becker6055a172020-06-02 06:20:23 +0100768#endif
769
Ronald Crond8d2ea52022-10-04 15:48:06 +0200770#if defined(MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_EPHEMERAL_ENABLED)
Valerio Settia15078b2023-07-06 14:52:45 +0200771#if !( (defined(PSA_WANT_ALG_ECDH) || defined(PSA_WANT_ALG_FFDH)) && \
772 defined(MBEDTLS_X509_CRT_PARSE_C) && \
Elena Uziunaite9c647642024-09-06 10:49:05 +0100773 ( defined(PSA_HAVE_ALG_ECDSA_SIGN) || defined(MBEDTLS_PKCS1_V21) ) )
Ronald Crond8d2ea52022-10-04 15:48:06 +0200774#error "MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_EPHEMERAL_ENABLED defined, but not all prerequisites"
775#endif
776#endif
777
778#if defined(MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_PSK_EPHEMERAL_ENABLED)
Przemek Stekielce05f542023-06-15 16:44:08 +0200779#if !( defined(PSA_WANT_ALG_ECDH) || defined(PSA_WANT_ALG_FFDH) )
Ronald Crond8d2ea52022-10-04 15:48:06 +0200780#error "MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_PSK_EPHEMERAL_ENABLED defined, but not all prerequisites"
781#endif
782#endif
783
Tom Cosgroveafb2fe12022-06-29 16:36:12 +0100784/*
785 * The current implementation of TLS 1.3 requires MBEDTLS_SSL_KEEP_PEER_CERTIFICATE.
786 */
787#if defined(MBEDTLS_SSL_PROTO_TLS1_3) && !defined(MBEDTLS_SSL_KEEP_PEER_CERTIFICATE)
788#error "MBEDTLS_SSL_PROTO_TLS1_3 defined without MBEDTLS_SSL_KEEP_PEER_CERTIFICATE"
789#endif
790
TRodziewicz0f82ec62021-05-12 17:49:18 +0200791#if defined(MBEDTLS_SSL_PROTO_TLS1_2) && \
Simon Butcher432e7022019-04-11 18:56:18 +0100792 !(defined(MBEDTLS_KEY_EXCHANGE_RSA_ENABLED) || \
793 defined(MBEDTLS_KEY_EXCHANGE_DHE_RSA_ENABLED) || \
794 defined(MBEDTLS_KEY_EXCHANGE_ECDHE_RSA_ENABLED) || \
795 defined(MBEDTLS_KEY_EXCHANGE_ECDHE_ECDSA_ENABLED) || \
796 defined(MBEDTLS_KEY_EXCHANGE_ECDH_RSA_ENABLED) || \
797 defined(MBEDTLS_KEY_EXCHANGE_ECDH_ECDSA_ENABLED) || \
798 defined(MBEDTLS_KEY_EXCHANGE_PSK_ENABLED) || \
799 defined(MBEDTLS_KEY_EXCHANGE_DHE_PSK_ENABLED) || \
800 defined(MBEDTLS_KEY_EXCHANGE_RSA_PSK_ENABLED) || \
801 defined(MBEDTLS_KEY_EXCHANGE_ECDHE_PSK_ENABLED) || \
802 defined(MBEDTLS_KEY_EXCHANGE_ECJPAKE_ENABLED) )
803#error "One or more versions of the TLS protocol are enabled " \
804 "but no key exchange methods defined with MBEDTLS_KEY_EXCHANGE_xxxx"
805#endif
806
Xiaokang Qian95a07302022-10-25 02:56:00 +0000807#if defined(MBEDTLS_SSL_EARLY_DATA) && \
Xiaokang Qian402bb1e2022-11-10 10:38:17 +0000808 ( !defined(MBEDTLS_SSL_SESSION_TICKETS) || \
809 ( !defined(MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_PSK_ENABLED) && \
810 !defined(MBEDTLS_SSL_TLS1_3_KEY_EXCHANGE_MODE_PSK_EPHEMERAL_ENABLED) ) )
Xiaokang Qian95a07302022-10-25 02:56:00 +0000811#error "MBEDTLS_SSL_EARLY_DATA defined, but not all prerequisites"
812#endif
813
Jerry Yu16f68532022-11-05 10:50:06 +0800814#if defined(MBEDTLS_SSL_EARLY_DATA) && defined(MBEDTLS_SSL_SRV_C) && \
Tom Cosgrove3b4471e2023-09-14 12:59:50 +0100815 defined(MBEDTLS_SSL_MAX_EARLY_DATA_SIZE) && \
816 ((MBEDTLS_SSL_MAX_EARLY_DATA_SIZE < 0) || \
817 (MBEDTLS_SSL_MAX_EARLY_DATA_SIZE > UINT32_MAX))
818#error "MBEDTLS_SSL_MAX_EARLY_DATA_SIZE must be in the range(0..UINT32_MAX)"
Jerry Yu16f68532022-11-05 10:50:06 +0800819#endif
820
Manuel Pégourié-Gonnard5a8d56d2015-05-13 10:10:00 +0200821#if defined(MBEDTLS_SSL_PROTO_DTLS) && \
Manuel Pégourié-Gonnard5a8d56d2015-05-13 10:10:00 +0200822 !defined(MBEDTLS_SSL_PROTO_TLS1_2)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200823#error "MBEDTLS_SSL_PROTO_DTLS defined, but not all prerequisites"
Manuel Pégourié-Gonnard0b1ff292014-02-06 13:04:16 +0100824#endif
825
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200826#if defined(MBEDTLS_SSL_CLI_C) && !defined(MBEDTLS_SSL_TLS_C)
827#error "MBEDTLS_SSL_CLI_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200828#endif
829
Valerio Settia4bb0fa2023-01-03 15:36:25 +0100830#if defined(MBEDTLS_SSL_ASYNC_PRIVATE) && !defined(MBEDTLS_X509_CRT_PARSE_C)
831#error "MBEDTLS_SSL_ASYNC_PRIVATE defined, but not all prerequisites"
832#endif
833
Valerio Settid531dab2023-10-27 11:49:22 +0200834#if defined(MBEDTLS_SSL_TLS_C) && !(defined(MBEDTLS_CIPHER_C) || \
835 defined(MBEDTLS_USE_PSA_CRYPTO))
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200836#error "MBEDTLS_SSL_TLS_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200837#endif
838
Manuel Pégourié-Gonnarda31ddb92023-03-22 00:13:50 +0100839/* TLS 1.2 and 1.3 require SHA-256 or SHA-384 (running handshake hash) */
Elena Uziunaitefeb105c2024-09-05 13:08:59 +0100840#if defined(MBEDTLS_SSL_TLS_C) && \
Elena Uziunaitec0d69432024-08-20 14:53:19 +0100841 !(defined(PSA_WANT_ALG_SHA_256) || defined(PSA_WANT_ALG_SHA_384))
Manuel Pégourié-Gonnard70a1b6d2023-03-24 10:30:40 +0100842#error "MBEDTLS_SSL_TLS_C defined, but not all prerequisites"
Manuel Pégourié-Gonnarda31ddb92023-03-22 00:13:50 +0100843#endif
Manuel Pégourié-Gonnarda31ddb92023-03-22 00:13:50 +0100844
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200845#if defined(MBEDTLS_SSL_SRV_C) && !defined(MBEDTLS_SSL_TLS_C)
846#error "MBEDTLS_SSL_SRV_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200847#endif
848
Jerry Yue0a64122021-12-23 11:06:26 +0800849#if defined(MBEDTLS_SSL_TLS_C) && \
850 !( defined(MBEDTLS_SSL_PROTO_TLS1_2) || defined(MBEDTLS_SSL_PROTO_TLS1_3) )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200851#error "MBEDTLS_SSL_TLS_C defined, but no protocols are active"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200852#endif
853
Manuel Pégourié-Gonnarde057d3b2015-05-20 10:59:43 +0200854#if defined(MBEDTLS_SSL_DTLS_HELLO_VERIFY) && !defined(MBEDTLS_SSL_PROTO_DTLS)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200855#error "MBEDTLS_SSL_DTLS_HELLO_VERIFY defined, but not all prerequisites"
Manuel Pégourié-Gonnard82202f02014-07-23 00:28:58 +0200856#endif
857
Manuel Pégourié-Gonnard62c74bb2015-09-08 17:50:29 +0200858#if defined(MBEDTLS_SSL_DTLS_CLIENT_PORT_REUSE) && \
Manuel Pégourié-Gonnardddfe5d22015-09-09 12:46:16 +0200859 !defined(MBEDTLS_SSL_DTLS_HELLO_VERIFY)
Manuel Pégourié-Gonnard62c74bb2015-09-08 17:50:29 +0200860#error "MBEDTLS_SSL_DTLS_CLIENT_PORT_REUSE defined, but not all prerequisites"
861#endif
862
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200863#if defined(MBEDTLS_SSL_DTLS_ANTI_REPLAY) && \
864 ( !defined(MBEDTLS_SSL_TLS_C) || !defined(MBEDTLS_SSL_PROTO_DTLS) )
865#error "MBEDTLS_SSL_DTLS_ANTI_REPLAY defined, but not all prerequisites"
Manuel Pégourié-Gonnard8464a462014-09-24 14:05:32 +0200866#endif
867
Gilles Peskined3d02902020-03-04 21:35:27 +0100868#if defined(MBEDTLS_SSL_DTLS_CONNECTION_ID) && \
869 ( !defined(MBEDTLS_SSL_TLS_C) || !defined(MBEDTLS_SSL_PROTO_DTLS) )
870#error "MBEDTLS_SSL_DTLS_CONNECTION_ID defined, but not all prerequisites"
871#endif
872
873#if defined(MBEDTLS_SSL_DTLS_CONNECTION_ID) && \
874 defined(MBEDTLS_SSL_CID_IN_LEN_MAX) && \
875 MBEDTLS_SSL_CID_IN_LEN_MAX > 255
876#error "MBEDTLS_SSL_CID_IN_LEN_MAX too large (max 255)"
877#endif
878
879#if defined(MBEDTLS_SSL_DTLS_CONNECTION_ID) && \
880 defined(MBEDTLS_SSL_CID_OUT_LEN_MAX) && \
881 MBEDTLS_SSL_CID_OUT_LEN_MAX > 255
882#error "MBEDTLS_SSL_CID_OUT_LEN_MAX too large (max 255)"
883#endif
884
Hannes Tschofenig88e55662022-11-23 10:14:54 +0100885#if defined(MBEDTLS_SSL_DTLS_CONNECTION_ID_COMPAT) && \
886 !defined(MBEDTLS_SSL_DTLS_CONNECTION_ID)
Tom Cosgrove1797b052022-12-04 17:19:59 +0000887#error "MBEDTLS_SSL_DTLS_CONNECTION_ID_COMPAT defined, but not all prerequisites"
Hannes Tschofenigfd6cca42021-10-12 09:22:33 +0200888#endif
889
Hannes Tschofenigb2e66152022-11-23 10:53:44 +0100890#if defined(MBEDTLS_SSL_DTLS_CONNECTION_ID_COMPAT) && MBEDTLS_SSL_DTLS_CONNECTION_ID_COMPAT != 0
891#if defined(MBEDTLS_DEPRECATED_REMOVED)
892#error "MBEDTLS_SSL_DTLS_CONNECTION_ID_COMPAT is deprecated and will be removed in a future version of Mbed TLS"
893#elif defined(MBEDTLS_DEPRECATED_WARNING)
894#warning "MBEDTLS_SSL_DTLS_CONNECTION_ID_COMPAT is deprecated and will be removed in a future version of Mbed TLS"
895#endif
896#endif /* MBEDTLS_SSL_DTLS_CONNECTION_ID_COMPAT && MBEDTLS_SSL_DTLS_CONNECTION_ID_COMPAT != 0 */
Hannes Tschofenigfd6cca42021-10-12 09:22:33 +0200897
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200898#if defined(MBEDTLS_SSL_ENCRYPT_THEN_MAC) && \
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200899 !defined(MBEDTLS_SSL_PROTO_TLS1_2)
Shaun Case8b0ecbc2021-12-20 21:14:10 -0800900#error "MBEDTLS_SSL_ENCRYPT_THEN_MAC defined, but not all prerequisites"
Manuel Pégourié-Gonnard699cafa2014-10-27 13:57:03 +0100901#endif
902
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200903#if defined(MBEDTLS_SSL_EXTENDED_MASTER_SECRET) && \
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200904 !defined(MBEDTLS_SSL_PROTO_TLS1_2)
Shaun Case8b0ecbc2021-12-20 21:14:10 -0800905#error "MBEDTLS_SSL_EXTENDED_MASTER_SECRET defined, but not all prerequisites"
Manuel Pégourié-Gonnard769c6b62014-10-28 14:13:55 +0100906#endif
907
Gilles Peskine7d3186d2022-08-12 22:43:18 +0200908#if defined(MBEDTLS_SSL_RENEGOTIATION) && \
909 !defined(MBEDTLS_SSL_PROTO_TLS1_2)
910#error "MBEDTLS_SSL_RENEGOTIATION defined, but not all prerequisites"
911#endif
912
Przemek Stekiela09f8352022-05-12 09:34:28 +0200913#if defined(MBEDTLS_SSL_TICKET_C) && ( !defined(MBEDTLS_CIPHER_C) && \
914 !defined(MBEDTLS_USE_PSA_CRYPTO) )
915#error "MBEDTLS_SSL_TICKET_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200916#endif
917
Przemek Stekiel52a428b2022-10-10 08:47:13 +0200918#if defined(MBEDTLS_SSL_TICKET_C) && \
Elena Uziunaitec0d69432024-08-20 14:53:19 +0100919 !( defined(PSA_WANT_ALG_CCM) || defined(PSA_WANT_ALG_GCM) || \
920 defined(PSA_WANT_ALG_CHACHA20_POLY1305) )
Przemek Stekield61a4d32022-10-11 09:40:40 +0200921#error "MBEDTLS_SSL_TICKET_C defined, but not all prerequisites"
Przemek Stekiel52a428b2022-10-10 08:47:13 +0200922#endif
923
Jerry Yu9750f812022-07-20 11:04:50 +0800924#if defined(MBEDTLS_SSL_TLS1_3_TICKET_NONCE_LENGTH) && \
925 MBEDTLS_SSL_TLS1_3_TICKET_NONCE_LENGTH >= 256
926#error "MBEDTLS_SSL_TLS1_3_TICKET_NONCE_LENGTH must be less than 256"
Jerry Yu08aed4d2022-07-20 10:36:12 +0800927#endif
928
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200929#if defined(MBEDTLS_SSL_SERVER_NAME_INDICATION) && \
930 !defined(MBEDTLS_X509_CRT_PARSE_C)
931#error "MBEDTLS_SSL_SERVER_NAME_INDICATION defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200932#endif
933
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200934#if defined(MBEDTLS_THREADING_PTHREAD)
935#if !defined(MBEDTLS_THREADING_C) || defined(MBEDTLS_THREADING_IMPL)
936#error "MBEDTLS_THREADING_PTHREAD defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200937#endif
Manuel Pégourié-Gonnarde1f3faf2024-02-08 12:17:20 +0100938#define MBEDTLS_THREADING_IMPL // undef at the end of this paragraph
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200939#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200940#if defined(MBEDTLS_THREADING_ALT)
941#if !defined(MBEDTLS_THREADING_C) || defined(MBEDTLS_THREADING_IMPL)
942#error "MBEDTLS_THREADING_ALT defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200943#endif
Manuel Pégourié-Gonnarde1f3faf2024-02-08 12:17:20 +0100944#define MBEDTLS_THREADING_IMPL // undef at the end of this paragraph
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200945#endif
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200946#if defined(MBEDTLS_THREADING_C) && !defined(MBEDTLS_THREADING_IMPL)
947#error "MBEDTLS_THREADING_C defined, single threading implementation required"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200948#endif
Manuel Pégourié-Gonnarde1f3faf2024-02-08 12:17:20 +0100949#undef MBEDTLS_THREADING_IMPL // temporary macro defined above
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200950
Antonio de Angelis7889fe72024-02-07 13:01:33 +0000951#if defined(MBEDTLS_USE_PSA_CRYPTO) && !defined(MBEDTLS_PSA_CRYPTO_CLIENT)
Manuel Pégourié-Gonnardaeefa492018-10-22 12:14:52 +0200952#error "MBEDTLS_USE_PSA_CRYPTO defined, but not all prerequisites"
953#endif
954
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200955#if defined(MBEDTLS_VERSION_FEATURES) && !defined(MBEDTLS_VERSION_C)
956#error "MBEDTLS_VERSION_FEATURES defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200957#endif
958
Valerio Settic6aeb0d2023-07-27 10:10:28 +0200959#if defined(MBEDTLS_X509_USE_C) && \
960 (!defined(MBEDTLS_OID_C) || !defined(MBEDTLS_ASN1_PARSE_C) || \
Przemek Stekiel10836a02022-08-19 08:45:34 +0200961 !defined(MBEDTLS_PK_PARSE_C) || \
Przemek Stekiel278b6672022-08-03 09:50:38 +0200962 ( !defined(MBEDTLS_MD_C) && !defined(MBEDTLS_USE_PSA_CRYPTO) ) )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200963#error "MBEDTLS_X509_USE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200964#endif
965
Valerio Settic6aeb0d2023-07-27 10:10:28 +0200966#if defined(MBEDTLS_X509_CREATE_C) && \
967 (!defined(MBEDTLS_OID_C) || !defined(MBEDTLS_ASN1_WRITE_C) || \
Przemek Stekiel10836a02022-08-19 08:45:34 +0200968 !defined(MBEDTLS_PK_PARSE_C) || \
Przemek Stekiel278b6672022-08-03 09:50:38 +0200969 ( !defined(MBEDTLS_MD_C) && !defined(MBEDTLS_USE_PSA_CRYPTO) ) )
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200970#error "MBEDTLS_X509_CREATE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200971#endif
972
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200973#if defined(MBEDTLS_X509_CRT_PARSE_C) && ( !defined(MBEDTLS_X509_USE_C) )
974#error "MBEDTLS_X509_CRT_PARSE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200975#endif
976
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200977#if defined(MBEDTLS_X509_CRL_PARSE_C) && ( !defined(MBEDTLS_X509_USE_C) )
978#error "MBEDTLS_X509_CRL_PARSE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200979#endif
980
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200981#if defined(MBEDTLS_X509_CSR_PARSE_C) && ( !defined(MBEDTLS_X509_USE_C) )
982#error "MBEDTLS_X509_CSR_PARSE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200983#endif
984
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200985#if defined(MBEDTLS_X509_CRT_WRITE_C) && ( !defined(MBEDTLS_X509_CREATE_C) )
986#error "MBEDTLS_X509_CRT_WRITE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200987#endif
988
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200989#if defined(MBEDTLS_X509_CSR_WRITE_C) && ( !defined(MBEDTLS_X509_CREATE_C) )
990#error "MBEDTLS_X509_CSR_WRITE_C defined, but not all prerequisites"
Manuel Pégourié-Gonnard14d55952014-04-30 12:35:08 +0200991#endif
992
Valerio Settia4bb0fa2023-01-03 15:36:25 +0100993#if defined(MBEDTLS_X509_TRUSTED_CERTIFICATE_CALLBACK) && \
Valerio Setti8e45cdd2023-01-05 09:32:29 +0100994 ( !defined(MBEDTLS_X509_CRT_PARSE_C) )
Valerio Settia4bb0fa2023-01-03 15:36:25 +0100995#error "MBEDTLS_X509_TRUSTED_CERTIFICATE_CALLBACK defined, but not all prerequisites"
996#endif
997
Andres Amaya Garciad7fce002017-07-20 11:49:32 +0100998#if defined(MBEDTLS_HAVE_INT32) && defined(MBEDTLS_HAVE_INT64)
999#error "MBEDTLS_HAVE_INT32 and MBEDTLS_HAVE_INT64 cannot be defined simultaneously"
1000#endif /* MBEDTLS_HAVE_INT32 && MBEDTLS_HAVE_INT64 */
1001
Andres Amaya Garcia93db11a2017-07-20 12:11:19 +01001002#if ( defined(MBEDTLS_HAVE_INT32) || defined(MBEDTLS_HAVE_INT64) ) && \
1003 defined(MBEDTLS_HAVE_ASM)
Andres Amaya Garciab39467d2017-07-20 13:21:15 +01001004#error "MBEDTLS_HAVE_INT32/MBEDTLS_HAVE_INT64 and MBEDTLS_HAVE_ASM cannot be defined simultaneously"
Andres Amaya Garciad7fce002017-07-20 11:49:32 +01001005#endif /* (MBEDTLS_HAVE_INT32 || MBEDTLS_HAVE_INT64) && MBEDTLS_HAVE_ASM */
1006
Ron Eldor3adb9922017-12-21 10:15:08 +02001007#if defined(MBEDTLS_SSL_DTLS_SRTP) && ( !defined(MBEDTLS_SSL_PROTO_DTLS) )
1008#error "MBEDTLS_SSL_DTLS_SRTP defined, but not all prerequisites"
1009#endif
1010
Andrzej Kurek557289b2020-10-21 15:12:39 +02001011#if defined(MBEDTLS_SSL_VARIABLE_BUFFER_LENGTH) && ( !defined(MBEDTLS_SSL_MAX_FRAGMENT_LENGTH) )
1012#error "MBEDTLS_SSL_VARIABLE_BUFFER_LENGTH defined, but not all prerequisites"
1013#endif
1014
Jan Bruckner151f6422023-02-10 12:45:19 +01001015#if defined(MBEDTLS_SSL_RECORD_SIZE_LIMIT) && ( !defined(MBEDTLS_SSL_PROTO_TLS1_3) )
1016#error "MBEDTLS_SSL_RECORD_SIZE_LIMIT defined, but not all prerequisites"
1017#endif
1018
Valerio Settie7bac172023-10-02 16:03:42 +02001019#if defined(MBEDTLS_SSL_CONTEXT_SERIALIZATION) && \
Elena Uziunaitec0d69432024-08-20 14:53:19 +01001020 !( defined(PSA_WANT_ALG_CCM) || defined(PSA_WANT_ALG_GCM) || \
1021 defined(PSA_WANT_ALG_CHACHA20_POLY1305) )
Przemek Stekield582a012022-09-28 07:59:01 +02001022#error "MBEDTLS_SSL_CONTEXT_SERIALIZATION defined, but not all prerequisites"
1023#endif
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001024
1025/* Reject attempts to enable options that have been removed and that could
1026 * cause a build to succeed but with features removed. */
1027
1028#if defined(MBEDTLS_HAVEGE_C) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001029#error "MBEDTLS_HAVEGE_C was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/2599"
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001030#endif
1031
1032#if defined(MBEDTLS_SSL_HW_RECORD_ACCEL) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001033#error "MBEDTLS_SSL_HW_RECORD_ACCEL was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4031"
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001034#endif
1035
1036#if defined(MBEDTLS_SSL_PROTO_SSL3) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001037#error "MBEDTLS_SSL_PROTO_SSL3 (SSL v3.0 support) was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4031"
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001038#endif
1039
1040#if defined(MBEDTLS_SSL_SRV_SUPPORT_SSLV2_CLIENT_HELLO) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001041#error "MBEDTLS_SSL_SRV_SUPPORT_SSLV2_CLIENT_HELLO (SSL v2 ClientHello support) was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4031"
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001042#endif
1043
1044#if defined(MBEDTLS_SSL_TRUNCATED_HMAC_COMPAT) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001045#error "MBEDTLS_SSL_TRUNCATED_HMAC_COMPAT (compatibility with the buggy implementation of truncated HMAC in Mbed TLS up to 2.7) was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4031"
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001046#endif
1047
1048#if defined(MBEDTLS_TLS_DEFAULT_ALLOW_SHA1_IN_CERTIFICATES) //no-check-names
Gilles Peskinecc26e3b2021-04-21 19:01:59 +02001049#error "MBEDTLS_TLS_DEFAULT_ALLOW_SHA1_IN_CERTIFICATES was removed in Mbed TLS 3.0. See the ChangeLog entry if you really need SHA-1-signed certificates."
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001050#endif
1051
1052#if defined(MBEDTLS_ZLIB_SUPPORT) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001053#error "MBEDTLS_ZLIB_SUPPORT was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4031"
Gilles Peskinefa4e4b82021-04-21 18:45:41 +02001054#endif
1055
TRodziewiczcc707412021-05-14 15:08:04 +02001056#if defined(MBEDTLS_CHECK_PARAMS) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001057#error "MBEDTLS_CHECK_PARAMS was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4313"
TRodziewiczcc707412021-05-14 15:08:04 +02001058#endif
1059
TRodziewicz4e57f4c2021-05-31 12:58:25 +02001060#if defined(MBEDTLS_SSL_CID_PADDING_GRANULARITY) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001061#error "MBEDTLS_SSL_CID_PADDING_GRANULARITY was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4335"
TRodziewicz4e57f4c2021-05-31 12:58:25 +02001062#endif
1063
1064#if defined(MBEDTLS_SSL_TLS1_3_PADDING_GRANULARITY) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001065#error "MBEDTLS_SSL_TLS1_3_PADDING_GRANULARITY was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4335"
TRodziewicz4e57f4c2021-05-31 12:58:25 +02001066#endif
1067
Thomas Daubney4a7010d2021-06-15 12:54:14 +01001068#if defined(MBEDTLS_SSL_TRUNCATED_HMAC) //no-check-names
Dave Rodgman017a1992022-03-31 14:07:01 +01001069#error "MBEDTLS_SSL_TRUNCATED_HMAC was removed in Mbed TLS 3.0. See https://github.com/Mbed-TLS/mbedtls/issues/4341"
Thomas Daubney4a7010d2021-06-15 12:54:14 +01001070#endif
1071
Nayna Jainc9deb182020-11-16 19:03:12 +00001072#if defined(MBEDTLS_PKCS7_C) && ( ( !defined(MBEDTLS_ASN1_PARSE_C) ) || \
1073 ( !defined(MBEDTLS_OID_C) ) || ( !defined(MBEDTLS_PK_PARSE_C) ) || \
Valerio Settic6aeb0d2023-07-27 10:10:28 +02001074 ( !defined(MBEDTLS_X509_CRT_PARSE_C) ) || \
1075 ( !defined(MBEDTLS_X509_CRL_PARSE_C) ) || \
Nick Child89e82e12022-11-09 10:36:10 -06001076 ( !defined(MBEDTLS_MD_C) ) )
Nayna Jainc9deb182020-11-16 19:03:12 +00001077#error "MBEDTLS_PKCS7_C is defined, but not all prerequisites"
1078#endif
1079
Manuel Pégourié-Gonnardf78e4de2015-05-29 10:52:14 +02001080/*
1081 * Avoid warning from -pedantic. This is a convenient place for this
1082 * workaround since this is included by every single file before the
Antonin Décimo36e89b52019-01-23 15:24:37 +01001083 * #if defined(MBEDTLS_xxx_C) that results in empty translation units.
Manuel Pégourié-Gonnardf78e4de2015-05-29 10:52:14 +02001084 */
1085typedef int mbedtls_iso_c_forbids_empty_translation_units;
1086
David Horstmann1b847812022-11-14 15:40:46 +00001087/* *INDENT-ON* */
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001088#endif /* MBEDTLS_CHECK_CONFIG_H */