Page MenuHomePhabricator

Cryptocell Key Sizes
Closed, ResolvedPublic

Description

We are just reviewing our cryptocell support in TF-A and noticed this:

include/drivers/arm/cryptocell/secureboot_gen_defs.h:

RSA_PSS_2048           = 0x01,			/*!< RSA PSS 2048 after hash SHA 256 */

drivers/auth/cryptocell/cryptocell_crypto.c:

	/* Verify the signature */
     	error = CCSbVerifySignature((uintptr_t)PLAT_CRYPTOCELL_BASE,
     			(uint32_t *)data_ptr, &pk, &signature,
     			data_len, RSA_PSS_2048);
     	if (error != CC_OK)
     		return CRYPTO_ERR_SIGNATURE;
CryptoCell API Code removed at ARM support's request 

(but basically the cryptocell version 2 release only supports 3072 keys and encodes parameter 6 of CCSbVerifySignature as 1 for 3072 keys)

So from this, we are calling into code which is dealing with 3072 bit keys according to the comments and constant names, but TF-A Uses 2048 bit keys ??

Cheers,

Neil

Event Timeline

neil-jones-work updated the task description. (Show Details)

Hi Neil
The Cryptocell variant supported by TF-A is CC-712 which only has support for RSA 2048.

CryptoCell API Code removed at ARM support's request
(but basically the cryptocell version 2 release only supports 3072 keys and encodes parameter 6 of CCSbVerifySignature as 1 for 3072 keys)

I am not sure where this comments are in the source code. Could you let me know where did you get the above comments ?
There is a new variant, CC-713, which has RSA 3K support but it is not yet integrated with TF-A.

Best Regards
Soby Mathew

ARM Support have asked me not to post any Cryptocell code publicly.

If you send me your email I will send you the details.

Please email me at soby.mathew@arm.com

Cryptocell key sizes are different. You have different key sizes and i have different, Here we need to move on because all these are different and if you just not share it with a perfect essayhave project then move and start to find something else.

The TF-A now has support for RSA-3K in Cryptocell variant.
https://review.trustedfirmware.org/#/c/TF-A/trusted-firmware-a/+/2263/

The CC SBROM code is not part of TF-A and not OpenSource. Hence it cannot be discussed in an open forum.

soby-mathew closed this task as Resolved.Jan 14 2020, 11:52 AM
soby-mathew claimed this task.

Closing the issue as the RSA Key size support has now been merged.

Whether the call girl is outcall or in call you can still hire them with just a phone call. You just need to send the picture of the beauty that you want and book them with us along with all credentials that are required to complete the process. Malviya Nagar Call Girls It is easy to book your girl through phone calls and even email as well.

I appreciate your answer. I can solve this issue thanks for your steps and beneficial information. Maybe, you join online games. I like many kinds of games in here.

As a night rider, I am well-mannered and professional too. If you want to enjoy the dancing moves and my maintained figure, then the best way is to hire my Independent Escorts in Delhi. There are many clubs in Delhi and nothing can be better than entering a club with a sizzling and hot girl.

Every client wants to book a night queen for their night and day services. The purpose of booking an elegant and sensuous call girl in Delhi is to get the finest services. Delhi Escort Service women are more likely to bring more romantic and adult enjoyments. Their services are designed to make a man happy. No sex worker can match the capability of our ladies in delivering sensual services. Enjoy a lot of bliss and ecstatic moments with our ladies.

We are not promoting our services, but you should be aware of the things that are responsible for your happiness and sadness as well. We provide a desirable Delhi Escorts Service Girl for you for the satisfaction of your soul.

When a Call Girl in Mumbai is attracted to a man she admires, he flirts with her that he wants to have sex with her. She feels emotional at the thought that she is aroused by his body and wants to penetrate him.

You’ve come to the right place if you are looking for a high-profile Goa. We have the finest of the best. Our independent Call Girls in Goa have curvy bodies and are eager to please their customers.Escorts is always there to ensure the safety and privacy of our customers.

We are a premier escort service provider in Delhi. Clients come to us for many good reasons. We can easily provide a dream partner to clients. The irresistible Delhi Escort Girls play their roles in entertaining customers perfectly. As a result, you can expect total satisfaction in the session. Even our Delhi escort services are designed to deliver unforgettable moments to customers.

Intimacy with seasoned Nainital Call Girls Service takes your entertainment to a new level. As these girls are experts in the art and science of erotica they know well to please clients of varied tastes and preferences. People can choose curvy or Busty Nainital call girls, tall or petite, young or mature, blonde or brunette from the comfort of their homes.

A large number of the Call Girl Greater Kailash is full time models and they don’t engage in any work.More often than not, they stay at their own homes and keep a full-time life too. These full time models appreciate going and are enthusiastic to investigate various nations.Call Girls Greater Kailash, the calling of an escort has ended up being rewarding from one side of the planet to the other and these equivalent escorts are additionally generously compensated.

Watermelon Game Unblocked extends its virtual arms to friends worldwide, promising a multicultural gaming experience that knows no limits.