diff options
author | AKASHI Takahiro | 2020-02-21 15:12:58 +0900 |
---|---|---|
committer | Tom Rini | 2020-03-12 08:20:39 -0400 |
commit | e0d310b098b1e3dd2ad4e0e4efbbb81b90ae4bc7 (patch) | |
tree | 3dde95fd0f55216aa7d094a1c057f5984f03f392 /lib/rsa/Kconfig | |
parent | a8fc3df8b96fb968e72d5f2f10d07322f81adc8a (diff) |
lib: rsa: generate additional parameters for public key
In the current implementation of FIT_SIGNATURE, five parameters for
a RSA public key are required while only two of them are essential.
(See rsa-mod-exp.h and uImage.FIT/signature.txt)
This is a result of considering relatively limited computer power
and resources on embedded systems, while such a assumption may not
be quite practical for other use cases.
In this patch, added is a function, rsa_gen_key_prop(), which will
generate additional parameters for other uses, in particular
UEFI secure boot, on the fly.
Note: the current code uses some "big number" routines from BearSSL
for the calculation.
Signed-off-by: AKASHI Takahiro <takahiro.akashi@linaro.org>
Diffstat (limited to 'lib/rsa/Kconfig')
-rw-r--r-- | lib/rsa/Kconfig | 3 |
1 files changed, 3 insertions, 0 deletions
diff --git a/lib/rsa/Kconfig b/lib/rsa/Kconfig index 89697219db2..a90d67e5a87 100644 --- a/lib/rsa/Kconfig +++ b/lib/rsa/Kconfig @@ -31,6 +31,9 @@ config RSA_VERIFY config RSA_VERIFY_WITH_PKEY bool "Execute RSA verification without key parameters from FDT" select RSA_VERIFY + select ASYMMETRIC_KEY_TYPE + select ASYMMETRIC_PUBLIC_KEY_SUBTYPE + select RSA_PUBLIC_KEY_PARSER help The standard RSA-signature verification code (FIT_SIGNATURE) uses pre-calculated key properties, that are stored in fdt blob, in |