mbedtls/configs
Gilles Peskine 83f7108f3d Small DTLS 1.2 config: timing is a default entropy source
Since MBEDTLS_TIMING_C is enabled, mbedtls_entropy_init() adds the weak
source MBEDTLS_ENTROPY_MAX_SOURCES(). With mbedtls_platform_entropy_poll(),
this makes two sources. The unit tests need room for a third source.

Signed-off-by: Gilles Peskine <Gilles.Peskine@arm.com>
2022-04-12 21:26:36 +02:00
..
config-ccm-psk-dtls1_2.h Small DTLS 1.2 config: timing is a default entropy source 2022-04-12 21:26:36 +02:00
config-ccm-psk-tls1_2.h Minimal TLS configuration: documentation improvements 2022-04-12 21:26:36 +02:00
config-mini-tls1_1.h Fix config-mini-tls1_1 PK_WRITE requirement when USA_PSA_CRYPTO is used 2022-01-31 09:51:44 -05:00
config-no-entropy.h
config-suite-b.h Add a check for MBEDTLS_PK_WRITE_C with USE_PSA_CRYPTO to check-config.h 2022-01-27 11:00:24 -05:00
config-symmetric-only.h
config-thread.h
README.txt

This directory contains example configuration files.

The examples are generally focused on a particular usage case (eg, support for
a restricted number of ciphersuites) and aim at minimizing resource usage for
this target. They can be used as a basis for custom configurations.

These files are complete replacements for the default config.h. To use one of
them, you can pick one of the following methods:

1. Replace the default file include/mbedtls/config.h with the chosen one.
   (Depending on your compiler, you may need to adjust the line with
   #include "mbedtls/check_config.h" then.)

2. Define MBEDTLS_CONFIG_FILE and adjust the include path accordingly.
   For example, using make:

    CFLAGS="-I$PWD/configs -DMBEDTLS_CONFIG_FILE='<foo.h>'" make

   Or, using cmake:

    find . -iname '*cmake*' -not -name CMakeLists.txt -exec rm -rf {} +
    CFLAGS="-I$PWD/configs -DMBEDTLS_CONFIG_FILE='<foo.h>'" cmake .
    make

Note that the second method also works if you want to keep your custom
configuration file outside the mbed TLS tree.