Re: [PATCH] crypto: ecc - Add NIST P224 curve parameters
Thomas Huth <[email protected]> Wed, 29 Jul 2026 18:43:26 +0200
| Newsgroups | org.kernel.vger.linux-crypto,org.kernel.vger.linux-kernel |
|---|---|
| Message-ID | <[email protected]> |
On 29/07/2026 17.51, Paul Louvel wrote: > Add the parameters for the NIST P224 curve and define a new curve ID for > it. Make the curve available in ecc_get_curve(). May I ask: Who's going to consume this? Thomas > Signed-off-by: Paul Louvel <[email protected]> > --- > crypto/ecc.c | 2 ++ > crypto/ecc_curve_defs.h | 27 +++++++++++++++++++++++++++ > include/crypto/ecdh.h | 7 ++++--- > 3 files changed, 33 insertions(+), 3 deletions(-) > > diff --git a/crypto/ecc.c b/crypto/ecc.c > index 6eb4d97a5f0d..6aa007420ab4 100644 > --- a/crypto/ecc.c > +++ b/crypto/ecc.c > @@ -56,6 +56,8 @@ const struct ecc_curve *ecc_get_curve(unsigned int curve_id) > /* In FIPS mode only allow P256 and higher */ > case ECC_CURVE_NIST_P192: > return fips_enabled ? NULL : &nist_p192; > + case ECC_CURVE_NIST_P224: > + return &nist_p224; > case ECC_CURVE_NIST_P256: > return &nist_p256; > case ECC_CURVE_NIST_P384: > diff --git a/crypto/ecc_curve_defs.h b/crypto/ecc_curve_defs.h > index 0ecade7d02f5..c67b73f2cd5a 100644 > --- a/crypto/ecc_curve_defs.h > +++ b/crypto/ecc_curve_defs.h > @@ -29,6 +29,33 @@ static struct ecc_curve nist_p192 = { > .b = nist_p192_b > }; > > +/* NIST P-224: a = p - 3 */ > +static u64 nist_p224_g_x[] = { 0x115c1d21ull, 0x56c21122343280d6ull, > + 0x321390b94a03c1d3ull, 0xb70e0cbd6bb4bf7full }; > +static u64 nist_p224_g_y[] = { 0x85007e34ull, 0x5a07476444d58199ull, > + 0x4c22dfe6cd4375a0ull, 0xbd376388b5f723fbull }; > +static u64 nist_p224_p[] = { 0x00000001ull, 0x0000000000000000ull, > + 0xffffffffffffffffull, 0xffffffffffffffffull }; > +static u64 nist_p224_n[] = { 0x5c5c2a3dull, 0xe0b8f03e13dd2945ull, > + 0xffffffffffff16a2ull, 0xffffffffffffffffull }; > +static u64 nist_p224_a[] = { 0xfffffffeull, 0xffffffffffffffffull, > + 0xfffffffffffffffeull, 0xffffffffffffffffull }; > +static u64 nist_p224_b[] = { 0x2355ffb4ull, 0xd7bfd8ba270b3943ull, > + 0xf54132565044b0b7ull, 0xb4050a850c04b3abull }; > +static struct ecc_curve nist_p224 = { > + .name = "nist_224", > + .nbits = 224, > + .g = { > + .x = nist_p224_g_x, > + .y = nist_p224_g_y, > + .ndigits = 4, > + }, > + .p = nist_p224_p, > + .n = nist_p224_n, > + .a = nist_p224_a, > + .b = nist_p224_b > +}; > + > /* NIST P-256: a = p - 3 */ > static u64 nist_p256_g_x[] = { 0xF4A13945D898C296ull, 0x77037D812DEB33A0ull, > 0xF8BCE6E563A440F2ull, 0x6B17D1F2E12C4247ull }; > diff --git a/include/crypto/ecdh.h b/include/crypto/ecdh.h > index 9784ecdd2fb4..07e0d3058f5f 100644 > --- a/include/crypto/ecdh.h > +++ b/include/crypto/ecdh.h > @@ -24,9 +24,10 @@ > > /* Curves IDs */ > #define ECC_CURVE_NIST_P192 0x0001 > -#define ECC_CURVE_NIST_P256 0x0002 > -#define ECC_CURVE_NIST_P384 0x0003 > -#define ECC_CURVE_NIST_P521 0x0004 > +#define ECC_CURVE_NIST_P224 0x0002 > +#define ECC_CURVE_NIST_P256 0x0003 > +#define ECC_CURVE_NIST_P384 0x0004 > +#define ECC_CURVE_NIST_P521 0x0005 > > /** > * struct ecdh - define an ECDH private key > > --- > base-commit: f5098b6bae761e346ebcd9da7f95622c04733cff > change-id: 20260729-add-nist-p224-curve-8612b49d6ba2 > > Best regards, > -- > Paul Louvel, Bootlin > Embedded Linux and Kernel engineering > https://bootlin.com > >