The main problem of MBEDTLS_PSA_CRYPTO_LEGACY_RNG is that it brings in some legacy modules (entropy + ctr_drbg/hmac_drbg) which means extra ROM/RAM footprint. MBEDTLS_PSA_CRYPTO_EXTERNAL_RNG instead simply calls to the CSPRNG which makes it definitely smaller. Signed-off-by: Valerio Setti <vsetti@baylibre.com>
10 lines
322 B
Text
10 lines
322 B
Text
CONFIG_MBEDTLS=y
|
|
CONFIG_MBEDTLS_PSA_CRYPTO_C=y
|
|
CONFIG_MBEDTLS_PSA_P256M_DRIVER_ENABLED=y
|
|
|
|
CONFIG_PSA_WANT_KEY_TYPE_ECC_KEY_PAIR_EXPORT=y
|
|
CONFIG_PSA_WANT_KEY_TYPE_ECC_KEY_PAIR_GENERATE=y
|
|
CONFIG_PSA_WANT_KEY_TYPE_ECC_KEY_PAIR_DERIVE=y
|
|
CONFIG_PSA_WANT_ECC_SECP_R1_256=y
|
|
CONFIG_PSA_WANT_ALG_ECDH=y
|
|
CONFIG_PSA_WANT_ALG_ECDSA=y
|