OpenSSL: Add support for Brainpool Elliptic Curves
This allows the IKE groups 27-30 (RFC 6932) to be used with OpenSSL 1.0.2 and newer. For now, these get enabled for SAE as configurable groups (sae_groups parameter), but the new groups are not enabled by default. Signed-off-by: Jouni Malinen <j@w1.fi>
This commit is contained in:
parent
4584b66eae
commit
c4a13b424b
1 changed files with 20 additions and 0 deletions
|
@ -1138,6 +1138,26 @@ struct crypto_ec * crypto_ec_init(int group)
|
||||||
case 26:
|
case 26:
|
||||||
nid = NID_secp224r1;
|
nid = NID_secp224r1;
|
||||||
break;
|
break;
|
||||||
|
#ifdef NID_brainpoolP224r1
|
||||||
|
case 27:
|
||||||
|
nid = NID_brainpoolP224r1;
|
||||||
|
break;
|
||||||
|
#endif /* NID_brainpoolP224r1 */
|
||||||
|
#ifdef NID_brainpoolP256r1
|
||||||
|
case 28:
|
||||||
|
nid = NID_brainpoolP256r1;
|
||||||
|
break;
|
||||||
|
#endif /* NID_brainpoolP256r1 */
|
||||||
|
#ifdef NID_brainpoolP384r1
|
||||||
|
case 29:
|
||||||
|
nid = NID_brainpoolP384r1;
|
||||||
|
break;
|
||||||
|
#endif /* NID_brainpoolP384r1 */
|
||||||
|
#ifdef NID_brainpoolP512r1
|
||||||
|
case 30:
|
||||||
|
nid = NID_brainpoolP512r1;
|
||||||
|
break;
|
||||||
|
#endif /* NID_brainpoolP512r1 */
|
||||||
default:
|
default:
|
||||||
return NULL;
|
return NULL;
|
||||||
}
|
}
|
||||||
|
|
Loading…
Reference in a new issue