• Soby Mathew's avatar
    cert_tool: Support for legacy RSA PKCS#1 v1.5 · a8eb286a
    Soby Mathew authored
    
    
    This patch enables choice of RSA version at run time to be used for
    generating signatures by the cert_tool. The RSA PSS as defined in
    PKCS#1 v2.1 becomes the default version and this patch enables to specify
    the RSA PKCS#1 v1.5 algorithm to `cert_create` through the command line
    -a option. Also, the build option `KEY_ALG` can be used to pass this
    option from the build system. Please note that RSA PSS is mandated
    by Trusted Board Boot requirements (TBBR) and legacy RSA support is
    being added for compatibility reasons.
    
    Fixes ARM-Software/tf-issues#499
    Change-Id: Ifaa3f2f7c9b43f3d7b3effe2cde76bf6745a5d73
    Co-Authored-By: default avatarEleanor Bonnici <Eleanor.bonnici@arm.com>
    Signed-off-by: default avatarSoby Mathew <soby.mathew@arm.com>
    a8eb286a
cert.h 1.8 KB