27#ifndef PSA_CRYPTO_VALUES_H
28#define PSA_CRYPTO_VALUES_H
56#define PSA_SUCCESS ((psa_status_t)0)
63#define PSA_ERROR_GENERIC_ERROR ((psa_status_t)-132)
72#define PSA_ERROR_NOT_SUPPORTED ((psa_status_t)-134)
85#define PSA_ERROR_NOT_PERMITTED ((psa_status_t)-133)
97#define PSA_ERROR_BUFFER_TOO_SMALL ((psa_status_t)-138)
103#define PSA_ERROR_ALREADY_EXISTS ((psa_status_t)-139)
109#define PSA_ERROR_DOES_NOT_EXIST ((psa_status_t)-140)
125#define PSA_ERROR_BAD_STATE ((psa_status_t)-137)
136#define PSA_ERROR_INVALID_ARGUMENT ((psa_status_t)-135)
142#define PSA_ERROR_INSUFFICIENT_MEMORY ((psa_status_t)-141)
151#define PSA_ERROR_INSUFFICIENT_STORAGE ((psa_status_t)-142)
168#define PSA_ERROR_COMMUNICATION_FAILURE ((psa_status_t)-145)
193#define PSA_ERROR_STORAGE_FAILURE ((psa_status_t)-146)
199#define PSA_ERROR_HARDWARE_FAILURE ((psa_status_t)-147)
230#define PSA_ERROR_CORRUPTION_DETECTED ((psa_status_t)-151)
249#define PSA_ERROR_INSUFFICIENT_ENTROPY ((psa_status_t)-148)
259#define PSA_ERROR_INVALID_SIGNATURE ((psa_status_t)-149)
275#define PSA_ERROR_INVALID_PADDING ((psa_status_t)-150)
279#define PSA_ERROR_INSUFFICIENT_DATA ((psa_status_t)-143)
283#define PSA_ERROR_INVALID_HANDLE ((psa_status_t)-136)
307#define PSA_ERROR_DATA_CORRUPT ((psa_status_t)-152)
323#define PSA_ERROR_DATA_INVALID ((psa_status_t)-153)
343#define PSA_KEY_TYPE_NONE ((psa_key_type_t) 0x0000)
352#define PSA_KEY_TYPE_VENDOR_FLAG ((psa_key_type_t) 0x8000)
354#define PSA_KEY_TYPE_CATEGORY_MASK ((psa_key_type_t) 0x7000)
355#define PSA_KEY_TYPE_CATEGORY_RAW ((psa_key_type_t) 0x1000)
356#define PSA_KEY_TYPE_CATEGORY_SYMMETRIC ((psa_key_type_t) 0x2000)
357#define PSA_KEY_TYPE_CATEGORY_PUBLIC_KEY ((psa_key_type_t) 0x4000)
358#define PSA_KEY_TYPE_CATEGORY_KEY_PAIR ((psa_key_type_t) 0x7000)
360#define PSA_KEY_TYPE_CATEGORY_FLAG_PAIR ((psa_key_type_t) 0x3000)
366#define PSA_KEY_TYPE_IS_VENDOR_DEFINED(type) \
367 (((type) & PSA_KEY_TYPE_VENDOR_FLAG) != 0)
373#define PSA_KEY_TYPE_IS_UNSTRUCTURED(type) \
374 (((type) & PSA_KEY_TYPE_CATEGORY_MASK) == PSA_KEY_TYPE_CATEGORY_RAW || \
375 ((type) & PSA_KEY_TYPE_CATEGORY_MASK) == PSA_KEY_TYPE_CATEGORY_SYMMETRIC)
378#define PSA_KEY_TYPE_IS_ASYMMETRIC(type) \
379 (((type) & PSA_KEY_TYPE_CATEGORY_MASK \
380 & ~PSA_KEY_TYPE_CATEGORY_FLAG_PAIR) == \
381 PSA_KEY_TYPE_CATEGORY_PUBLIC_KEY)
383#define PSA_KEY_TYPE_IS_PUBLIC_KEY(type) \
384 (((type) & PSA_KEY_TYPE_CATEGORY_MASK) == PSA_KEY_TYPE_CATEGORY_PUBLIC_KEY)
387#define PSA_KEY_TYPE_IS_KEY_PAIR(type) \
388 (((type) & PSA_KEY_TYPE_CATEGORY_MASK) == PSA_KEY_TYPE_CATEGORY_KEY_PAIR)
399#define PSA_KEY_TYPE_KEY_PAIR_OF_PUBLIC_KEY(type) \
400 ((type) | PSA_KEY_TYPE_CATEGORY_FLAG_PAIR)
411#define PSA_KEY_TYPE_PUBLIC_KEY_OF_KEY_PAIR(type) \
412 ((type) & ~PSA_KEY_TYPE_CATEGORY_FLAG_PAIR)
418#define PSA_KEY_TYPE_RAW_DATA ((psa_key_type_t) 0x1001)
428#define PSA_KEY_TYPE_HMAC ((psa_key_type_t) 0x1100)
435#define PSA_KEY_TYPE_DERIVE ((psa_key_type_t) 0x1200)
442#define PSA_KEY_TYPE_AES ((psa_key_type_t) 0x2400)
446#define PSA_KEY_TYPE_ARIA ((psa_key_type_t) 0x2406)
457#define PSA_KEY_TYPE_DES ((psa_key_type_t) 0x2301)
461#define PSA_KEY_TYPE_CAMELLIA ((psa_key_type_t) 0x2403)
467#define PSA_KEY_TYPE_ARC4 ((psa_key_type_t) 0x2002)
476#define PSA_KEY_TYPE_CHACHA20 ((psa_key_type_t) 0x2004)
482#define PSA_KEY_TYPE_RSA_PUBLIC_KEY ((psa_key_type_t) 0x4001)
487#define PSA_KEY_TYPE_RSA_KEY_PAIR ((psa_key_type_t) 0x7001)
489#define PSA_KEY_TYPE_IS_RSA(type) \
490 (PSA_KEY_TYPE_PUBLIC_KEY_OF_KEY_PAIR(type) == PSA_KEY_TYPE_RSA_PUBLIC_KEY)
492#define PSA_KEY_TYPE_ECC_PUBLIC_KEY_BASE ((psa_key_type_t) 0x4100)
493#define PSA_KEY_TYPE_ECC_KEY_PAIR_BASE ((psa_key_type_t) 0x7100)
494#define PSA_KEY_TYPE_ECC_CURVE_MASK ((psa_key_type_t) 0x00ff)
504#define PSA_KEY_TYPE_ECC_KEY_PAIR(curve) \
505 (PSA_KEY_TYPE_ECC_KEY_PAIR_BASE | (curve))
515#define PSA_KEY_TYPE_ECC_PUBLIC_KEY(curve) \
516 (PSA_KEY_TYPE_ECC_PUBLIC_KEY_BASE | (curve))
519#define PSA_KEY_TYPE_IS_ECC(type) \
520 ((PSA_KEY_TYPE_PUBLIC_KEY_OF_KEY_PAIR(type) & \
521 ~PSA_KEY_TYPE_ECC_CURVE_MASK) == PSA_KEY_TYPE_ECC_PUBLIC_KEY_BASE)
523#define PSA_KEY_TYPE_IS_ECC_KEY_PAIR(type) \
524 (((type) & ~PSA_KEY_TYPE_ECC_CURVE_MASK) == \
525 PSA_KEY_TYPE_ECC_KEY_PAIR_BASE)
527#define PSA_KEY_TYPE_IS_ECC_PUBLIC_KEY(type) \
528 (((type) & ~PSA_KEY_TYPE_ECC_CURVE_MASK) == \
529 PSA_KEY_TYPE_ECC_PUBLIC_KEY_BASE)
532#define PSA_KEY_TYPE_ECC_GET_FAMILY(type) \
533 ((psa_ecc_family_t) (PSA_KEY_TYPE_IS_ECC(type) ? \
534 ((type) & PSA_KEY_TYPE_ECC_CURVE_MASK) : \
545#define PSA_ECC_FAMILY_SECP_K1 ((psa_ecc_family_t) 0x17)
555#define PSA_ECC_FAMILY_SECP_R1 ((psa_ecc_family_t) 0x12)
557#define PSA_ECC_FAMILY_SECP_R2 ((psa_ecc_family_t) 0x1b)
567#define PSA_ECC_FAMILY_SECT_K1 ((psa_ecc_family_t) 0x27)
577#define PSA_ECC_FAMILY_SECT_R1 ((psa_ecc_family_t) 0x22)
587#define PSA_ECC_FAMILY_SECT_R2 ((psa_ecc_family_t) 0x2b)
596#define PSA_ECC_FAMILY_BRAINPOOL_P_R1 ((psa_ecc_family_t) 0x30)
608#define PSA_ECC_FAMILY_MONTGOMERY ((psa_ecc_family_t) 0x41)
624#define PSA_ECC_FAMILY_TWISTED_EDWARDS ((psa_ecc_family_t) 0x42)
626#define PSA_KEY_TYPE_DH_PUBLIC_KEY_BASE ((psa_key_type_t) 0x4200)
627#define PSA_KEY_TYPE_DH_KEY_PAIR_BASE ((psa_key_type_t) 0x7200)
628#define PSA_KEY_TYPE_DH_GROUP_MASK ((psa_key_type_t) 0x00ff)
634#define PSA_KEY_TYPE_DH_KEY_PAIR(group) \
635 (PSA_KEY_TYPE_DH_KEY_PAIR_BASE | (group))
641#define PSA_KEY_TYPE_DH_PUBLIC_KEY(group) \
642 (PSA_KEY_TYPE_DH_PUBLIC_KEY_BASE | (group))
645#define PSA_KEY_TYPE_IS_DH(type) \
646 ((PSA_KEY_TYPE_PUBLIC_KEY_OF_KEY_PAIR(type) & \
647 ~PSA_KEY_TYPE_DH_GROUP_MASK) == PSA_KEY_TYPE_DH_PUBLIC_KEY_BASE)
649#define PSA_KEY_TYPE_IS_DH_KEY_PAIR(type) \
650 (((type) & ~PSA_KEY_TYPE_DH_GROUP_MASK) == \
651 PSA_KEY_TYPE_DH_KEY_PAIR_BASE)
653#define PSA_KEY_TYPE_IS_DH_PUBLIC_KEY(type) \
654 (((type) & ~PSA_KEY_TYPE_DH_GROUP_MASK) == \
655 PSA_KEY_TYPE_DH_PUBLIC_KEY_BASE)
658#define PSA_KEY_TYPE_DH_GET_FAMILY(type) \
659 ((psa_dh_family_t) (PSA_KEY_TYPE_IS_DH(type) ? \
660 ((type) & PSA_KEY_TYPE_DH_GROUP_MASK) : \
669#define PSA_DH_FAMILY_RFC7919 ((psa_dh_family_t) 0x03)
671#define PSA_GET_KEY_TYPE_BLOCK_SIZE_EXPONENT(type) \
691#define PSA_BLOCK_CIPHER_BLOCK_LENGTH(type) \
692 (((type) & PSA_KEY_TYPE_CATEGORY_MASK) == PSA_KEY_TYPE_CATEGORY_SYMMETRIC ? \
693 1u << PSA_GET_KEY_TYPE_BLOCK_SIZE_EXPONENT(type) : \
708#define PSA_ALG_VENDOR_FLAG ((psa_algorithm_t) 0x80000000)
710#define PSA_ALG_CATEGORY_MASK ((psa_algorithm_t) 0x7f000000)
711#define PSA_ALG_CATEGORY_HASH ((psa_algorithm_t) 0x02000000)
712#define PSA_ALG_CATEGORY_MAC ((psa_algorithm_t) 0x03000000)
713#define PSA_ALG_CATEGORY_CIPHER ((psa_algorithm_t) 0x04000000)
714#define PSA_ALG_CATEGORY_AEAD ((psa_algorithm_t) 0x05000000)
715#define PSA_ALG_CATEGORY_SIGN ((psa_algorithm_t) 0x06000000)
716#define PSA_ALG_CATEGORY_ASYMMETRIC_ENCRYPTION ((psa_algorithm_t) 0x07000000)
717#define PSA_ALG_CATEGORY_KEY_DERIVATION ((psa_algorithm_t) 0x08000000)
718#define PSA_ALG_CATEGORY_KEY_AGREEMENT ((psa_algorithm_t) 0x09000000)
724#define PSA_ALG_IS_VENDOR_DEFINED(alg) \
725 (((alg) & PSA_ALG_VENDOR_FLAG) != 0)
735#define PSA_ALG_IS_HASH(alg) \
736 (((alg) & PSA_ALG_CATEGORY_MASK) == PSA_ALG_CATEGORY_HASH)
746#define PSA_ALG_IS_MAC(alg) \
747 (((alg) & PSA_ALG_CATEGORY_MASK) == PSA_ALG_CATEGORY_MAC)
757#define PSA_ALG_IS_CIPHER(alg) \
758 (((alg) & PSA_ALG_CATEGORY_MASK) == PSA_ALG_CATEGORY_CIPHER)
769#define PSA_ALG_IS_AEAD(alg) \
770 (((alg) & PSA_ALG_CATEGORY_MASK) == PSA_ALG_CATEGORY_AEAD)
781#define PSA_ALG_IS_SIGN(alg) \
782 (((alg) & PSA_ALG_CATEGORY_MASK) == PSA_ALG_CATEGORY_SIGN)
793#define PSA_ALG_IS_ASYMMETRIC_ENCRYPTION(alg) \
794 (((alg) & PSA_ALG_CATEGORY_MASK) == PSA_ALG_CATEGORY_ASYMMETRIC_ENCRYPTION)
804#define PSA_ALG_IS_KEY_AGREEMENT(alg) \
805 (((alg) & PSA_ALG_CATEGORY_MASK) == PSA_ALG_CATEGORY_KEY_AGREEMENT)
815#define PSA_ALG_IS_KEY_DERIVATION(alg) \
816 (((alg) & PSA_ALG_CATEGORY_MASK) == PSA_ALG_CATEGORY_KEY_DERIVATION)
820#define PSA_ALG_NONE ((psa_algorithm_t)0)
823#define PSA_ALG_HASH_MASK ((psa_algorithm_t) 0x000000ff)
825#define PSA_ALG_MD2 ((psa_algorithm_t) 0x02000001)
827#define PSA_ALG_MD4 ((psa_algorithm_t) 0x02000002)
829#define PSA_ALG_MD5 ((psa_algorithm_t) 0x02000003)
831#define PSA_ALG_RIPEMD160 ((psa_algorithm_t) 0x02000004)
833#define PSA_ALG_SHA_1 ((psa_algorithm_t) 0x02000005)
835#define PSA_ALG_SHA_224 ((psa_algorithm_t) 0x02000008)
837#define PSA_ALG_SHA_256 ((psa_algorithm_t) 0x02000009)
839#define PSA_ALG_SHA_384 ((psa_algorithm_t) 0x0200000a)
841#define PSA_ALG_SHA_512 ((psa_algorithm_t) 0x0200000b)
843#define PSA_ALG_SHA_512_224 ((psa_algorithm_t) 0x0200000c)
845#define PSA_ALG_SHA_512_256 ((psa_algorithm_t) 0x0200000d)
847#define PSA_ALG_SHA3_224 ((psa_algorithm_t) 0x02000010)
849#define PSA_ALG_SHA3_256 ((psa_algorithm_t) 0x02000011)
851#define PSA_ALG_SHA3_384 ((psa_algorithm_t) 0x02000012)
853#define PSA_ALG_SHA3_512 ((psa_algorithm_t) 0x02000013)
860#define PSA_ALG_SHAKE256_512 ((psa_algorithm_t) 0x02000015)
895#define PSA_ALG_ANY_HASH ((psa_algorithm_t) 0x020000ff)
897#define PSA_ALG_MAC_SUBCATEGORY_MASK ((psa_algorithm_t) 0x00c00000)
898#define PSA_ALG_HMAC_BASE ((psa_algorithm_t) 0x03800000)
910#define PSA_ALG_HMAC(hash_alg) \
911 (PSA_ALG_HMAC_BASE | ((hash_alg) & PSA_ALG_HASH_MASK))
913#define PSA_ALG_HMAC_GET_HASH(hmac_alg) \
914 (PSA_ALG_CATEGORY_HASH | ((hmac_alg) & PSA_ALG_HASH_MASK))
926#define PSA_ALG_IS_HMAC(alg) \
927 (((alg) & (PSA_ALG_CATEGORY_MASK | PSA_ALG_MAC_SUBCATEGORY_MASK)) == \
937#define PSA_ALG_MAC_TRUNCATION_MASK ((psa_algorithm_t) 0x003f0000)
938#define PSA_MAC_TRUNCATION_OFFSET 16
946#define PSA_ALG_MAC_AT_LEAST_THIS_LENGTH_FLAG ((psa_algorithm_t) 0x00008000)
981#define PSA_ALG_TRUNCATED_MAC(mac_alg, mac_length) \
982 (((mac_alg) & ~(PSA_ALG_MAC_TRUNCATION_MASK | \
983 PSA_ALG_MAC_AT_LEAST_THIS_LENGTH_FLAG)) | \
984 ((mac_length) << PSA_MAC_TRUNCATION_OFFSET & PSA_ALG_MAC_TRUNCATION_MASK))
998#define PSA_ALG_FULL_LENGTH_MAC(mac_alg) \
999 ((mac_alg) & ~(PSA_ALG_MAC_TRUNCATION_MASK | \
1000 PSA_ALG_MAC_AT_LEAST_THIS_LENGTH_FLAG))
1013#define PSA_MAC_TRUNCATED_LENGTH(mac_alg) \
1014 (((mac_alg) & PSA_ALG_MAC_TRUNCATION_MASK) >> PSA_MAC_TRUNCATION_OFFSET)
1040#define PSA_ALG_AT_LEAST_THIS_LENGTH_MAC(mac_alg, min_mac_length) \
1041 (PSA_ALG_TRUNCATED_MAC(mac_alg, min_mac_length) | \
1042 PSA_ALG_MAC_AT_LEAST_THIS_LENGTH_FLAG)
1044#define PSA_ALG_CIPHER_MAC_BASE ((psa_algorithm_t) 0x03c00000)
1050#define PSA_ALG_CBC_MAC ((psa_algorithm_t) 0x03c00100)
1052#define PSA_ALG_CMAC ((psa_algorithm_t) 0x03c00200)
1062#define PSA_ALG_IS_BLOCK_CIPHER_MAC(alg) \
1063 (((alg) & (PSA_ALG_CATEGORY_MASK | PSA_ALG_MAC_SUBCATEGORY_MASK)) == \
1064 PSA_ALG_CIPHER_MAC_BASE)
1066#define PSA_ALG_CIPHER_STREAM_FLAG ((psa_algorithm_t) 0x00800000)
1067#define PSA_ALG_CIPHER_FROM_BLOCK_FLAG ((psa_algorithm_t) 0x00400000)
1081#define PSA_ALG_IS_STREAM_CIPHER(alg) \
1082 (((alg) & (PSA_ALG_CATEGORY_MASK | PSA_ALG_CIPHER_STREAM_FLAG)) == \
1083 (PSA_ALG_CATEGORY_CIPHER | PSA_ALG_CIPHER_STREAM_FLAG))
1091#define PSA_ALG_STREAM_CIPHER ((psa_algorithm_t) 0x04800100)
1100#define PSA_ALG_CTR ((psa_algorithm_t) 0x04c01000)
1106#define PSA_ALG_CFB ((psa_algorithm_t) 0x04c01100)
1112#define PSA_ALG_OFB ((psa_algorithm_t) 0x04c01200)
1120#define PSA_ALG_XTS ((psa_algorithm_t) 0x0440ff00)
1140#define PSA_ALG_ECB_NO_PADDING ((psa_algorithm_t) 0x04404400)
1149#define PSA_ALG_CBC_NO_PADDING ((psa_algorithm_t) 0x04404000)
1157#define PSA_ALG_CBC_PKCS7 ((psa_algorithm_t) 0x04404100)
1159#define PSA_ALG_AEAD_FROM_BLOCK_FLAG ((psa_algorithm_t) 0x00400000)
1170#define PSA_ALG_IS_AEAD_ON_BLOCK_CIPHER(alg) \
1171 (((alg) & (PSA_ALG_CATEGORY_MASK | PSA_ALG_AEAD_FROM_BLOCK_FLAG)) == \
1172 (PSA_ALG_CATEGORY_AEAD | PSA_ALG_AEAD_FROM_BLOCK_FLAG))
1178#define PSA_ALG_CCM ((psa_algorithm_t) 0x05500100)
1184#define PSA_ALG_GCM ((psa_algorithm_t) 0x05500200)
1195#define PSA_ALG_CHACHA20_POLY1305 ((psa_algorithm_t) 0x05100500)
1201#define PSA_ALG_AEAD_TAG_LENGTH_MASK ((psa_algorithm_t) 0x003f0000)
1202#define PSA_AEAD_TAG_LENGTH_OFFSET 16
1210#define PSA_ALG_AEAD_AT_LEAST_THIS_LENGTH_FLAG ((psa_algorithm_t) 0x00008000)
1230#define PSA_ALG_AEAD_WITH_SHORTENED_TAG(aead_alg, tag_length) \
1231 (((aead_alg) & ~(PSA_ALG_AEAD_TAG_LENGTH_MASK | \
1232 PSA_ALG_AEAD_AT_LEAST_THIS_LENGTH_FLAG)) | \
1233 ((tag_length) << PSA_AEAD_TAG_LENGTH_OFFSET & \
1234 PSA_ALG_AEAD_TAG_LENGTH_MASK))
1246#define PSA_ALG_AEAD_GET_TAG_LENGTH(aead_alg) \
1247 (((aead_alg) & PSA_ALG_AEAD_TAG_LENGTH_MASK) >> \
1248 PSA_AEAD_TAG_LENGTH_OFFSET)
1258#define PSA_ALG_AEAD_WITH_DEFAULT_LENGTH_TAG(aead_alg) \
1260 PSA_ALG_AEAD_WITH_DEFAULT_LENGTH_TAG_CASE(aead_alg, PSA_ALG_CCM) \
1261 PSA_ALG_AEAD_WITH_DEFAULT_LENGTH_TAG_CASE(aead_alg, PSA_ALG_GCM) \
1262 PSA_ALG_AEAD_WITH_DEFAULT_LENGTH_TAG_CASE(aead_alg, PSA_ALG_CHACHA20_POLY1305) \
1264#define PSA_ALG_AEAD_WITH_DEFAULT_LENGTH_TAG_CASE(aead_alg, ref) \
1265 PSA_ALG_AEAD_WITH_SHORTENED_TAG(aead_alg, 0) == \
1266 PSA_ALG_AEAD_WITH_SHORTENED_TAG(ref, 0) ? \
1293#define PSA_ALG_AEAD_WITH_AT_LEAST_THIS_LENGTH_TAG(aead_alg, min_tag_length) \
1294 (PSA_ALG_AEAD_WITH_SHORTENED_TAG(aead_alg, min_tag_length) | \
1295 PSA_ALG_AEAD_AT_LEAST_THIS_LENGTH_FLAG)
1297#define PSA_ALG_RSA_PKCS1V15_SIGN_BASE ((psa_algorithm_t) 0x06000200)
1313#define PSA_ALG_RSA_PKCS1V15_SIGN(hash_alg) \
1314 (PSA_ALG_RSA_PKCS1V15_SIGN_BASE | ((hash_alg) & PSA_ALG_HASH_MASK))
1321#define PSA_ALG_RSA_PKCS1V15_SIGN_RAW PSA_ALG_RSA_PKCS1V15_SIGN_BASE
1322#define PSA_ALG_IS_RSA_PKCS1V15_SIGN(alg) \
1323 (((alg) & ~PSA_ALG_HASH_MASK) == PSA_ALG_RSA_PKCS1V15_SIGN_BASE)
1325#define PSA_ALG_RSA_PSS_BASE ((psa_algorithm_t) 0x06000300)
1326#define PSA_ALG_RSA_PSS_ANY_SALT_BASE ((psa_algorithm_t) 0x06001300)
1347#define PSA_ALG_RSA_PSS(hash_alg) \
1348 (PSA_ALG_RSA_PSS_BASE | ((hash_alg) & PSA_ALG_HASH_MASK))
1365#define PSA_ALG_RSA_PSS_ANY_SALT(hash_alg) \
1366 (PSA_ALG_RSA_PSS_ANY_SALT_BASE | ((hash_alg) & PSA_ALG_HASH_MASK))
1379#define PSA_ALG_IS_RSA_PSS_STANDARD_SALT(alg) \
1380 (((alg) & ~PSA_ALG_HASH_MASK) == PSA_ALG_RSA_PSS_BASE)
1393#define PSA_ALG_IS_RSA_PSS_ANY_SALT(alg) \
1394 (((alg) & ~PSA_ALG_HASH_MASK) == PSA_ALG_RSA_PSS_ANY_SALT_BASE)
1411#define PSA_ALG_IS_RSA_PSS(alg) \
1412 (PSA_ALG_IS_RSA_PSS_STANDARD_SALT(alg) || \
1413 PSA_ALG_IS_RSA_PSS_ANY_SALT(alg))
1415#define PSA_ALG_ECDSA_BASE ((psa_algorithm_t) 0x06000600)
1436#define PSA_ALG_ECDSA(hash_alg) \
1437 (PSA_ALG_ECDSA_BASE | ((hash_alg) & PSA_ALG_HASH_MASK))
1447#define PSA_ALG_ECDSA_ANY PSA_ALG_ECDSA_BASE
1448#define PSA_ALG_DETERMINISTIC_ECDSA_BASE ((psa_algorithm_t) 0x06000700)
1471#define PSA_ALG_DETERMINISTIC_ECDSA(hash_alg) \
1472 (PSA_ALG_DETERMINISTIC_ECDSA_BASE | ((hash_alg) & PSA_ALG_HASH_MASK))
1473#define PSA_ALG_ECDSA_DETERMINISTIC_FLAG ((psa_algorithm_t) 0x00000100)
1474#define PSA_ALG_IS_ECDSA(alg) \
1475 (((alg) & ~PSA_ALG_HASH_MASK & ~PSA_ALG_ECDSA_DETERMINISTIC_FLAG) == \
1477#define PSA_ALG_ECDSA_IS_DETERMINISTIC(alg) \
1478 (((alg) & PSA_ALG_ECDSA_DETERMINISTIC_FLAG) != 0)
1479#define PSA_ALG_IS_DETERMINISTIC_ECDSA(alg) \
1480 (PSA_ALG_IS_ECDSA(alg) && PSA_ALG_ECDSA_IS_DETERMINISTIC(alg))
1481#define PSA_ALG_IS_RANDOMIZED_ECDSA(alg) \
1482 (PSA_ALG_IS_ECDSA(alg) && !PSA_ALG_ECDSA_IS_DETERMINISTIC(alg))
1512#define PSA_ALG_PURE_EDDSA ((psa_algorithm_t) 0x06000800)
1514#define PSA_ALG_HASH_EDDSA_BASE ((psa_algorithm_t) 0x06000900)
1515#define PSA_ALG_IS_HASH_EDDSA(alg) \
1516 (((alg) & ~PSA_ALG_HASH_MASK) == PSA_ALG_HASH_EDDSA_BASE)
1539#define PSA_ALG_ED25519PH \
1540 (PSA_ALG_HASH_EDDSA_BASE | (PSA_ALG_SHA_512 & PSA_ALG_HASH_MASK))
1564#define PSA_ALG_ED448PH \
1565 (PSA_ALG_HASH_EDDSA_BASE | (PSA_ALG_SHAKE256_512 & PSA_ALG_HASH_MASK))
1570#define PSA_ALG_IS_VENDOR_HASH_AND_SIGN(alg) 0
1589#define PSA_ALG_IS_SIGN_HASH(alg) \
1590 (PSA_ALG_IS_RSA_PSS(alg) || PSA_ALG_IS_RSA_PKCS1V15_SIGN(alg) || \
1591 PSA_ALG_IS_ECDSA(alg) || PSA_ALG_IS_HASH_EDDSA(alg) || \
1592 PSA_ALG_IS_VENDOR_HASH_AND_SIGN(alg))
1605#define PSA_ALG_IS_SIGN_MESSAGE(alg) \
1606 (PSA_ALG_IS_SIGN_HASH(alg) || (alg) == PSA_ALG_PURE_EDDSA)
1634#define PSA_ALG_IS_HASH_AND_SIGN(alg) \
1635 (PSA_ALG_IS_SIGN_HASH(alg) && \
1636 ((alg) & PSA_ALG_HASH_MASK) != 0)
1656#define PSA_ALG_SIGN_GET_HASH(alg) \
1657 (PSA_ALG_IS_HASH_AND_SIGN(alg) ? \
1658 ((alg) & PSA_ALG_HASH_MASK) | PSA_ALG_CATEGORY_HASH : \
1663#define PSA_ALG_RSA_PKCS1V15_CRYPT ((psa_algorithm_t) 0x07000200)
1665#define PSA_ALG_RSA_OAEP_BASE ((psa_algorithm_t) 0x07000300)
1680#define PSA_ALG_RSA_OAEP(hash_alg) \
1681 (PSA_ALG_RSA_OAEP_BASE | ((hash_alg) & PSA_ALG_HASH_MASK))
1682#define PSA_ALG_IS_RSA_OAEP(alg) \
1683 (((alg) & ~PSA_ALG_HASH_MASK) == PSA_ALG_RSA_OAEP_BASE)
1684#define PSA_ALG_RSA_OAEP_GET_HASH(alg) \
1685 (PSA_ALG_IS_RSA_OAEP(alg) ? \
1686 ((alg) & PSA_ALG_HASH_MASK) | PSA_ALG_CATEGORY_HASH : \
1689#define PSA_ALG_HKDF_BASE ((psa_algorithm_t) 0x08000100)
1710#define PSA_ALG_HKDF(hash_alg) \
1711 (PSA_ALG_HKDF_BASE | ((hash_alg) & PSA_ALG_HASH_MASK))
1723#define PSA_ALG_IS_HKDF(alg) \
1724 (((alg) & ~PSA_ALG_HASH_MASK) == PSA_ALG_HKDF_BASE)
1725#define PSA_ALG_HKDF_GET_HASH(hkdf_alg) \
1726 (PSA_ALG_CATEGORY_HASH | ((hkdf_alg) & PSA_ALG_HASH_MASK))
1728#define PSA_ALG_TLS12_PRF_BASE ((psa_algorithm_t) 0x08000200)
1755#define PSA_ALG_TLS12_PRF(hash_alg) \
1756 (PSA_ALG_TLS12_PRF_BASE | ((hash_alg) & PSA_ALG_HASH_MASK))
1766#define PSA_ALG_IS_TLS12_PRF(alg) \
1767 (((alg) & ~PSA_ALG_HASH_MASK) == PSA_ALG_TLS12_PRF_BASE)
1768#define PSA_ALG_TLS12_PRF_GET_HASH(hkdf_alg) \
1769 (PSA_ALG_CATEGORY_HASH | ((hkdf_alg) & PSA_ALG_HASH_MASK))
1771#define PSA_ALG_TLS12_PSK_TO_MS_BASE ((psa_algorithm_t) 0x08000300)
1801#define PSA_ALG_TLS12_PSK_TO_MS(hash_alg) \
1802 (PSA_ALG_TLS12_PSK_TO_MS_BASE | ((hash_alg) & PSA_ALG_HASH_MASK))
1812#define PSA_ALG_IS_TLS12_PSK_TO_MS(alg) \
1813 (((alg) & ~PSA_ALG_HASH_MASK) == PSA_ALG_TLS12_PSK_TO_MS_BASE)
1814#define PSA_ALG_TLS12_PSK_TO_MS_GET_HASH(hkdf_alg) \
1815 (PSA_ALG_CATEGORY_HASH | ((hkdf_alg) & PSA_ALG_HASH_MASK))
1817#define PSA_ALG_KEY_DERIVATION_MASK ((psa_algorithm_t) 0xfe00ffff)
1818#define PSA_ALG_KEY_AGREEMENT_MASK ((psa_algorithm_t) 0xffff0000)
1834#define PSA_ALG_KEY_AGREEMENT(ka_alg, kdf_alg) \
1835 ((ka_alg) | (kdf_alg))
1837#define PSA_ALG_KEY_AGREEMENT_GET_KDF(alg) \
1838 (((alg) & PSA_ALG_KEY_DERIVATION_MASK) | PSA_ALG_CATEGORY_KEY_DERIVATION)
1840#define PSA_ALG_KEY_AGREEMENT_GET_BASE(alg) \
1841 (((alg) & PSA_ALG_KEY_AGREEMENT_MASK) | PSA_ALG_CATEGORY_KEY_AGREEMENT)
1857#define PSA_ALG_IS_RAW_KEY_AGREEMENT(alg) \
1858 (PSA_ALG_IS_KEY_AGREEMENT(alg) && \
1859 PSA_ALG_KEY_AGREEMENT_GET_KDF(alg) == PSA_ALG_CATEGORY_KEY_DERIVATION)
1861#define PSA_ALG_IS_KEY_DERIVATION_OR_AGREEMENT(alg) \
1862 ((PSA_ALG_IS_KEY_DERIVATION(alg) || PSA_ALG_IS_KEY_AGREEMENT(alg)))
1871#define PSA_ALG_FFDH ((psa_algorithm_t) 0x09010000)
1885#define PSA_ALG_IS_FFDH(alg) \
1886 (PSA_ALG_KEY_AGREEMENT_GET_BASE(alg) == PSA_ALG_FFDH)
1913#define PSA_ALG_ECDH ((psa_algorithm_t) 0x09020000)
1929#define PSA_ALG_IS_ECDH(alg) \
1930 (PSA_ALG_KEY_AGREEMENT_GET_BASE(alg) == PSA_ALG_ECDH)
1945#define PSA_ALG_IS_WILDCARD(alg) \
1946 (PSA_ALG_IS_HASH_AND_SIGN(alg) ? \
1947 PSA_ALG_SIGN_GET_HASH(alg) == PSA_ALG_ANY_HASH : \
1948 PSA_ALG_IS_MAC(alg) ? \
1949 (alg & PSA_ALG_MAC_AT_LEAST_THIS_LENGTH_FLAG) != 0 : \
1950 PSA_ALG_IS_AEAD(alg) ? \
1951 (alg & PSA_ALG_AEAD_AT_LEAST_THIS_LENGTH_FLAG) != 0 : \
1952 (alg) == PSA_ALG_ANY_HASH)
1976#define PSA_KEY_LIFETIME_VOLATILE ((psa_key_lifetime_t) 0x00000000)
1990#define PSA_KEY_LIFETIME_PERSISTENT ((psa_key_lifetime_t) 0x00000001)
1996#define PSA_KEY_PERSISTENCE_VOLATILE ((psa_key_persistence_t) 0x00)
2002#define PSA_KEY_PERSISTENCE_DEFAULT ((psa_key_persistence_t) 0x01)
2008#define PSA_KEY_PERSISTENCE_READ_ONLY ((psa_key_persistence_t) 0xff)
2010#define PSA_KEY_LIFETIME_GET_PERSISTENCE(lifetime) \
2011 ((psa_key_persistence_t) ((lifetime) & 0x000000ff))
2013#define PSA_KEY_LIFETIME_GET_LOCATION(lifetime) \
2014 ((psa_key_location_t) ((lifetime) >> 8))
2032#define PSA_KEY_LIFETIME_IS_VOLATILE(lifetime) \
2033 (PSA_KEY_LIFETIME_GET_PERSISTENCE(lifetime) == \
2034 PSA_KEY_PERSISTENCE_VOLATILE)
2053#define PSA_KEY_LIFETIME_IS_READ_ONLY(lifetime) \
2054 (PSA_KEY_LIFETIME_GET_PERSISTENCE(lifetime) == \
2055 PSA_KEY_PERSISTENCE_READ_ONLY)
2066#define PSA_KEY_LIFETIME_FROM_PERSISTENCE_AND_LOCATION(persistence, location) \
2067 ((location) << 8 | (persistence))
2076#define PSA_KEY_LOCATION_LOCAL_STORAGE ((psa_key_location_t) 0x000000)
2078#define PSA_KEY_LOCATION_VENDOR_FLAG ((psa_key_location_t) 0x800000)
2088#define PSA_KEY_ID_NULL ((psa_key_id_t)0)
2092#define PSA_KEY_ID_USER_MIN ((psa_key_id_t) 0x00000001)
2095#define PSA_KEY_ID_USER_MAX ((psa_key_id_t) 0x3fffffff)
2098#define PSA_KEY_ID_VENDOR_MIN ((psa_key_id_t) 0x40000000)
2101#define PSA_KEY_ID_VENDOR_MAX ((psa_key_id_t) 0x7fffffff)
2104#if !defined(MBEDTLS_PSA_CRYPTO_KEY_ID_ENCODES_OWNER)
2106#define MBEDTLS_SVC_KEY_ID_INIT ((psa_key_id_t) 0)
2107#define MBEDTLS_SVC_KEY_ID_GET_KEY_ID(id) (id)
2108#define MBEDTLS_SVC_KEY_ID_GET_OWNER_ID(id) (0)
2149#define MBEDTLS_SVC_KEY_ID_INIT ((mbedtls_svc_key_id_t){ 0, 0 })
2150#define MBEDTLS_SVC_KEY_ID_GET_KEY_ID(id) ((id).key_id)
2151#define MBEDTLS_SVC_KEY_ID_GET_OWNER_ID(id) ((id).owner)
2162 .owner = owner_id };
2175 return (id1.key_id == id2.key_id) &&
2176 mbedtls_key_owner_id_equal(id1.owner, id2.owner);
2187 return key.key_id == 0;
2214#define PSA_KEY_USAGE_EXPORT ((psa_key_usage_t) 0x00000001)
2230#define PSA_KEY_USAGE_COPY ((psa_key_usage_t) 0x00000002)
2241#define PSA_KEY_USAGE_ENCRYPT ((psa_key_usage_t) 0x00000100)
2252#define PSA_KEY_USAGE_DECRYPT ((psa_key_usage_t) 0x00000200)
2262#define PSA_KEY_USAGE_SIGN_MESSAGE ((psa_key_usage_t) 0x00000400)
2272#define PSA_KEY_USAGE_VERIFY_MESSAGE ((psa_key_usage_t) 0x00000800)
2282#define PSA_KEY_USAGE_SIGN_HASH ((psa_key_usage_t) 0x00001000)
2292#define PSA_KEY_USAGE_VERIFY_HASH ((psa_key_usage_t) 0x00002000)
2296#define PSA_KEY_USAGE_DERIVE ((psa_key_usage_t) 0x00004000)
2319#define PSA_KEY_DERIVATION_INPUT_SECRET ((psa_key_derivation_step_t) 0x0101)
2326#define PSA_KEY_DERIVATION_INPUT_LABEL ((psa_key_derivation_step_t) 0x0201)
2333#define PSA_KEY_DERIVATION_INPUT_SALT ((psa_key_derivation_step_t) 0x0202)
2340#define PSA_KEY_DERIVATION_INPUT_INFO ((psa_key_derivation_step_t) 0x0203)
2347#define PSA_KEY_DERIVATION_INPUT_SEED ((psa_key_derivation_step_t) 0x0204)
2368#define MBEDTLS_PSA_ALG_AEAD_EQUAL(aead_alg_1, aead_alg_2) \
2369 (!(((aead_alg_1) ^ (aead_alg_2)) & \
2370 ~(PSA_ALG_AEAD_TAG_LENGTH_MASK | PSA_ALG_AEAD_AT_LEAST_THIS_LENGTH_FLAG)))
static mbedtls_svc_key_id_t mbedtls_svc_key_id_make(unsigned int unused, psa_key_id_t key_id)
static int mbedtls_svc_key_id_is_null(mbedtls_svc_key_id_t key)
psa_key_id_t mbedtls_svc_key_id_t
static int mbedtls_svc_key_id_equal(mbedtls_svc_key_id_t id1, mbedtls_svc_key_id_t id2)