blob: 6469e9f43939302af4d8e66656d24dde1e0bf13b [file] [log] [blame]
John Durkopb6f7afc2020-11-12 11:36:06 -08001/**
2 * \file check_crypto_config.h
3 *
4 * \brief Consistency checks for PSA configuration options
5 */
6/*
7 * Copyright The Mbed TLS Contributors
Dave Rodgman16799db2023-11-02 19:47:20 +00008 * SPDX-License-Identifier: Apache-2.0 OR GPL-2.0-or-later
John Durkopb6f7afc2020-11-12 11:36:06 -08009 */
10
11/*
12 * It is recommended to include this file from your crypto_config.h
13 * in order to catch dependency issues early.
14 */
15
16#ifndef MBEDTLS_CHECK_CRYPTO_CONFIG_H
17#define MBEDTLS_CHECK_CRYPTO_CONFIG_H
18
Ronald Cron3d471812021-03-18 13:40:31 +010019#if defined(PSA_WANT_ALG_CCM) && \
Gilles Peskine449bd832023-01-11 14:50:10 +010020 !(defined(PSA_WANT_KEY_TYPE_AES) || \
21 defined(PSA_WANT_KEY_TYPE_CAMELLIA))
Ronald Cron3d471812021-03-18 13:40:31 +010022#error "PSA_WANT_ALG_CCM defined, but not all prerequisites"
23#endif
24
25#if defined(PSA_WANT_ALG_CMAC) && \
Gilles Peskine449bd832023-01-11 14:50:10 +010026 !(defined(PSA_WANT_KEY_TYPE_AES) || \
27 defined(PSA_WANT_KEY_TYPE_CAMELLIA) || \
28 defined(PSA_WANT_KEY_TYPE_DES))
Ronald Cron3d471812021-03-18 13:40:31 +010029#error "PSA_WANT_ALG_CMAC defined, but not all prerequisites"
30#endif
31
John Durkopb6f7afc2020-11-12 11:36:06 -080032#if defined(PSA_WANT_ALG_DETERMINISTIC_ECDSA) && \
Valerio Setti27c501a2023-06-27 16:58:52 +020033 !(defined(PSA_WANT_KEY_TYPE_ECC_KEY_PAIR_BASIC) || \
Gilles Peskine449bd832023-01-11 14:50:10 +010034 defined(PSA_WANT_KEY_TYPE_ECC_PUBLIC_KEY))
John Durkopb6f7afc2020-11-12 11:36:06 -080035#error "PSA_WANT_ALG_DETERMINISTIC_ECDSA defined, but not all prerequisites"
36#endif
37
38#if defined(PSA_WANT_ALG_ECDSA) && \
Valerio Setti27c501a2023-06-27 16:58:52 +020039 !(defined(PSA_WANT_KEY_TYPE_ECC_KEY_PAIR_BASIC) || \
Gilles Peskine449bd832023-01-11 14:50:10 +010040 defined(PSA_WANT_KEY_TYPE_ECC_PUBLIC_KEY))
John Durkopb6f7afc2020-11-12 11:36:06 -080041#error "PSA_WANT_ALG_ECDSA defined, but not all prerequisites"
42#endif
43
Ronald Cron3d471812021-03-18 13:40:31 +010044#if defined(PSA_WANT_ALG_GCM) && \
Gilles Peskine449bd832023-01-11 14:50:10 +010045 !(defined(PSA_WANT_KEY_TYPE_AES) || \
46 defined(PSA_WANT_KEY_TYPE_CAMELLIA))
Ronald Cron3d471812021-03-18 13:40:31 +010047#error "PSA_WANT_ALG_GCM defined, but not all prerequisites"
48#endif
49
John Durkopb6f7afc2020-11-12 11:36:06 -080050#if defined(PSA_WANT_ALG_RSA_PKCS1V15_CRYPT) && \
Valerio Settif6d4dfb2023-07-10 10:55:12 +020051 !(defined(PSA_WANT_KEY_TYPE_RSA_KEY_PAIR_BASIC) || \
Gilles Peskine449bd832023-01-11 14:50:10 +010052 defined(PSA_WANT_KEY_TYPE_RSA_PUBLIC_KEY))
John Durkopb6f7afc2020-11-12 11:36:06 -080053#error "PSA_WANT_ALG_RSA_PKCS1V15_CRYPT defined, but not all prerequisites"
54#endif
55
56#if defined(PSA_WANT_ALG_RSA_PKCS1V15_SIGN) && \
Valerio Settif6d4dfb2023-07-10 10:55:12 +020057 !(defined(PSA_WANT_KEY_TYPE_RSA_KEY_PAIR_BASIC) || \
Gilles Peskine449bd832023-01-11 14:50:10 +010058 defined(PSA_WANT_KEY_TYPE_RSA_PUBLIC_KEY))
John Durkopb6f7afc2020-11-12 11:36:06 -080059#error "PSA_WANT_ALG_RSA_PKCS1V15_SIGN defined, but not all prerequisites"
60#endif
61
62#if defined(PSA_WANT_ALG_RSA_OAEP) && \
Valerio Settif6d4dfb2023-07-10 10:55:12 +020063 !(defined(PSA_WANT_KEY_TYPE_RSA_KEY_PAIR_BASIC) || \
Gilles Peskine449bd832023-01-11 14:50:10 +010064 defined(PSA_WANT_KEY_TYPE_RSA_PUBLIC_KEY))
John Durkopb6f7afc2020-11-12 11:36:06 -080065#error "PSA_WANT_ALG_RSA_OAEP defined, but not all prerequisites"
66#endif
67
68#if defined(PSA_WANT_ALG_RSA_PSS) && \
Valerio Settif6d4dfb2023-07-10 10:55:12 +020069 !(defined(PSA_WANT_KEY_TYPE_RSA_KEY_PAIR_BASIC) || \
Gilles Peskine449bd832023-01-11 14:50:10 +010070 defined(PSA_WANT_KEY_TYPE_RSA_PUBLIC_KEY))
John Durkopb6f7afc2020-11-12 11:36:06 -080071#error "PSA_WANT_ALG_RSA_PSS defined, but not all prerequisites"
72#endif
73
Valerio Setti01cc88a2023-06-15 11:53:08 +020074#if (defined(PSA_WANT_KEY_TYPE_ECC_KEY_PAIR_BASIC) || \
Valerio Settib0d9aae2023-06-09 11:58:29 +020075 defined(PSA_WANT_KEY_TYPE_ECC_KEY_PAIR_IMPORT) || \
76 defined(PSA_WANT_KEY_TYPE_ECC_KEY_PAIR_EXPORT) || \
77 defined(PSA_WANT_KEY_TYPE_ECC_KEY_PAIR_GENERATE) || \
78 defined(PSA_WANT_KEY_TYPE_ECC_KEY_PAIR_DERIVE)) && \
John Durkop07cc04a2020-11-16 22:08:34 -080079 !defined(PSA_WANT_KEY_TYPE_ECC_PUBLIC_KEY)
Valerio Settib0d9aae2023-06-09 11:58:29 +020080#error "PSA_WANT_KEY_TYPE_ECC_KEY_PAIR_xxx defined, but not all prerequisites"
81#endif
82
Valerio Setti01cc88a2023-06-15 11:53:08 +020083#if (defined(PSA_WANT_KEY_TYPE_RSA_KEY_PAIR_BASIC) || \
Valerio Settib0d9aae2023-06-09 11:58:29 +020084 defined(PSA_WANT_KEY_TYPE_RSA_KEY_PAIR_IMPORT) || \
85 defined(PSA_WANT_KEY_TYPE_RSA_KEY_PAIR_EXPORT) || \
86 defined(PSA_WANT_KEY_TYPE_RSA_KEY_PAIR_GENERATE)) && \
87 !defined(PSA_WANT_KEY_TYPE_RSA_PUBLIC_KEY)
88#error "PSA_WANT_KEY_TYPE_RSA_KEY_PAIR_xxx defined, but not all prerequisites"
89#endif
90
Valerio Setti01cc88a2023-06-15 11:53:08 +020091#if (defined(PSA_WANT_KEY_TYPE_DH_KEY_PAIR_BASIC) || \
Valerio Settib0d9aae2023-06-09 11:58:29 +020092 defined(PSA_WANT_KEY_TYPE_DH_KEY_PAIR_IMPORT) || \
93 defined(PSA_WANT_KEY_TYPE_DH_KEY_PAIR_EXPORT) || \
94 defined(PSA_WANT_KEY_TYPE_DH_KEY_PAIR_GENERATE)) && \
95 !defined(PSA_WANT_KEY_TYPE_DH_PUBLIC_KEY)
96#error "PSA_WANT_KEY_TYPE_DH_KEY_PAIR_xxx defined, but not all prerequisites"
97#endif
98
99#if defined(PSA_WANT_KEY_TYPE_ECC_KEY_PAIR)
100#if defined(MBEDTLS_DEPRECATED_REMOVED)
101#error "PSA_WANT_KEY_TYPE_ECC_KEY_PAIR is deprecated and will be removed in a \
102 future version of Mbed TLS. Please switch to new PSA_WANT_KEY_TYPE_ECC_KEY_PAIR_xxx \
103 symbols, where xxx can be: USE, IMPORT, EXPORT, GENERATE, DERIVE"
104#elif defined(MBEDTLS_DEPRECATED_WARNING)
105#warning "PSA_WANT_KEY_TYPE_ECC_KEY_PAIR is deprecated and will be removed in a \
106 future version of Mbed TLS. Please switch to new PSA_WANT_KEY_TYPE_ECC_KEY_PAIR_xxx \
107 symbols, where xxx can be: USE, IMPORT, EXPORT, GENERATE, DERIVE"
108#endif /* MBEDTLS_DEPRECATED_WARNING */
109#endif /* PSA_WANT_KEY_TYPE_ECC_KEY_PAIR */
110
111#if defined(PSA_WANT_KEY_TYPE_RSA_KEY_PAIR)
112#if defined(MBEDTLS_DEPRECATED_REMOVED)
113#error "PSA_WANT_KEY_TYPE_RSA_KEY_PAIR is deprecated and will be removed in a \
114 future version of Mbed TLS. Please switch to new PSA_WANT_KEY_TYPE_RSA_KEY_PAIR_xxx \
115 symbols, where xxx can be: USE, IMPORT, EXPORT, GENERATE, DERIVE"
116#elif defined(MBEDTLS_DEPRECATED_WARNING)
117#warning "PSA_WANT_KEY_TYPE_RSA_KEY_PAIR is deprecated and will be removed in a \
118 future version of Mbed TLS. Please switch to new PSA_WANT_KEY_TYPE_RSA_KEY_PAIR_xxx \
119 symbols, where xxx can be: USE, IMPORT, EXPORT, GENERATE, DERIVE"
120#endif /* MBEDTLS_DEPRECATED_WARNING */
121#endif /* PSA_WANT_KEY_TYPE_RSA_KEY_PAIR */
122
123#if defined(PSA_WANT_KEY_TYPE_RSA_KEY_PAIR_DERIVE)
124#error "PSA_WANT_KEY_TYPE_RSA_KEY_PAIR_DERIVE defined, but feature is not supported"
125#endif
126
127#if defined(PSA_WANT_KEY_TYPE_DH_KEY_PAIR_DERIVE)
128#error "PSA_WANT_KEY_TYPE_DH_KEY_PAIR_DERIVE defined, but feature is not supported"
John Durkop07cc04a2020-11-16 22:08:34 -0800129#endif
130
Andrzej Kurekcccb0442022-08-19 03:42:11 -0400131#if defined(MBEDTLS_SSL_PROTO_TLS1_2) && defined(MBEDTLS_USE_PSA_CRYPTO) && \
Gilles Peskine449bd832023-01-11 14:50:10 +0100132 !(defined(PSA_WANT_ALG_SHA_1) || defined(PSA_WANT_ALG_SHA_256) || defined(PSA_WANT_ALG_SHA_512))
Andrzej Kurek7e16ce32022-08-17 16:19:39 -0400133#error "MBEDTLS_SSL_PROTO_TLS1_2 defined, but not all prerequisites"
134#endif
135
Andrzej Kurekd60907b2022-09-14 10:02:30 -0400136#if defined(PSA_WANT_ALG_TLS12_ECJPAKE_TO_PMS) && \
137 !defined(PSA_WANT_ALG_SHA_256)
138#error "PSA_WANT_ALG_TLS12_ECJPAKE_TO_PMS defined, but not all prerequisites"
139#endif
140
John Durkopb6f7afc2020-11-12 11:36:06 -0800141#endif /* MBEDTLS_CHECK_CRYPTO_CONFIG_H */