Skip to content

Crypto API 1.4 & PQC Extension : Review of Release Candidates #316

@athoelke

Description

@athoelke

PDFs for review:

IHI0086-PSA_Certified_Crypto_API-1.4.0-rc1.pdf
AES0119-PSA_Certified_Crypto_API-1.4_PQC_Extension.0-rc1.pdf

Changes in version Crypto API 1.4.0:

  • Registration of existing key material within the implementation.
  • Querying a key's capabilities.
  • Extendable-output functions (XOF).
  • Key wrapping using key-wrapping algorithms.
  • Context parameters in signature algorithms, for EdDSA, ML-DSA and SLH-DSA.
  • The WPA3-SAE PAKE for 802.11.
  • The Ascon family of light-weight algorithms.
  • Relaxed the permitted-key policy requirements for ECDSA verification, to be consistent with ML-DSA and SLH-DSA.
  • Clarified the use of hash algorithms with PSA_ALG_HMAC.

Finalized the Crypto API 1.4 PQC Extension (Final):

  • Finalized the key format specification for SLH-DSA, ML-KEM, and ML-DSA keys.

See the related issues and pull requests in the Crypto API 1.4 Milestone, the Crypto 1.4 PQC Extension (Final), or the Change History appendices in the attached PDFs.

Please provide feedback about anything that is unclear, confusing, missing, or incorrect; so we can finalize the document for publication.

Metadata

Metadata

Assignees

Labels

Crypto APIIssue or PR related to the Cryptography APIRelease CandidateA specification Release Candidate for review

Type

No fields configured for Task.

Projects

Status
Done

Relationships

None yet

Development

No branches or pull requests

Issue actions