From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from mail05.groups.io (mail05.groups.io [45.79.224.7]) by spool.mail.gandi.net (Postfix) with ESMTPS id CC9F1780091 for ; Thu, 16 May 2024 01:54:32 +0000 (UTC) DKIM-Signature: a=rsa-sha256; bh=5fYf6PeHE1PGyoVre1zky5Vn1I+1aXpjI+wsZb3/BM0=; c=relaxed/simple; d=groups.io; h=From:To:Cc:Subject:Date:Message-ID:In-Reply-To:References:MIME-Version:Precedence:List-Subscribe:List-Help:Sender:List-Id:Mailing-List:Delivered-To:Resent-Date:Resent-From:Reply-To:List-Unsubscribe-Post:List-Unsubscribe:Content-Transfer-Encoding; s=20240206; t=1715824471; v=1; b=D+BkjFDPgHEJ83FfY9yolb89g929KBEPTyF28cTxahQblP2Jnpr4ciJFedNT0SOOnT1EzFjV OM3kk9Ugi+tUZIRKNmgIrN7gkWvZK5/kUPZFJpths6gTQsMSDGSxVjlxDh0R+w708UvWFcKxMxB Jpqshw799/VZFksOVLAoU6jg8pXWz40cvYBCBeQSgfYdhgXjL5wgvv9wsFHA03MQBMpGqhpsNRp QxggJNxw/s/CcK6of2i9CrEJSAxM2Asa0Y8FxQ0SN24BNPIFd2phB5DGwS21KxF1CGFkgp1Ckg3 Zg2EA+OhttLJ/Cck+4FyBFDCcK+qK8ctPJteORpxtlQCg== X-Received: by 127.0.0.2 with SMTP id hulOYY7687511x6CU7oQrrKX; Wed, 15 May 2024 18:54:31 -0700 X-Received: from mgamail.intel.com (mgamail.intel.com [192.198.163.7]) by mx.groups.io with SMTP id smtpd.web10.3186.1715824470496261045 for ; Wed, 15 May 2024 18:54:30 -0700 X-CSE-ConnectionGUID: 6AyIdIqqRTiHFWdazA/Nnw== X-CSE-MsgGUID: cj1oFPoST7mGAPF+IA1H6w== X-IronPort-AV: E=McAfee;i="6600,9927,11074"; a="37288643" X-IronPort-AV: E=Sophos;i="6.08,163,1712646000"; d="scan'208";a="37288643" X-Received: from fmviesa009.fm.intel.com ([10.60.135.149]) by fmvoesa101.fm.intel.com with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 15 May 2024 18:54:30 -0700 X-CSE-ConnectionGUID: PNcY1JsFS+6Zlkxz8m9BUA== X-CSE-MsgGUID: Hs/oppboTV+X2A+dMvxsSA== X-ExtLoop1: 1 X-IronPort-AV: E=Sophos;i="6.08,163,1712646000"; d="scan'208";a="31275002" X-Received: from unknown (HELO qingyush-mobl.ccr.corp.intel.com) ([10.238.12.131]) by fmviesa009.fm.intel.com with ESMTP; 15 May 2024 18:54:28 -0700 From: "Qingyu" To: devel@edk2.groups.io Cc: Jiewen Yao , Yi Li Subject: [edk2-devel] [PATCH 1/1] CryptoPkg: Add support for aes128-sha256 and aes256-sha256 cipher Date: Thu, 16 May 2024 09:54:25 +0800 Message-ID: In-Reply-To: References: MIME-Version: 1.0 Precedence: Bulk List-Subscribe: List-Help: Sender: devel@edk2.groups.io List-Id: Mailing-List: list devel@edk2.groups.io; contact devel+owner@edk2.groups.io Resent-Date: Wed, 15 May 2024 18:54:30 -0700 Resent-From: qingyu.shang@intel.com Reply-To: devel@edk2.groups.io,qingyu.shang@intel.com List-Unsubscribe-Post: List-Unsubscribe=One-Click List-Unsubscribe: X-Gm-Message-State: abi04P7ulA28iJHyFpfP5YRPx7686176AA= Content-Transfer-Encoding: 8bit X-GND-Status: LEGIT Authentication-Results: spool.mail.gandi.net; dkim=pass header.d=groups.io header.s=20240206 header.b=D+BkjFDP; dmarc=fail reason="SPF not aligned (relaxed), DKIM not aligned (relaxed)" header.from=intel.com (policy=none); spf=pass (spool.mail.gandi.net: domain of bounce@groups.io designates 45.79.224.7 as permitted sender) smtp.mailfrom=bounce@groups.io REF: https://bugzilla.tianocore.org/show_bug.cgi?id=4739 AES256-SHA256 is a Tls1.2 suite we need to support, add it to deflt_ciphers in OpensslStub. Signed-off-by: Shang Qingyu Cc: Jiewen Yao Cc: Yi Li --- CryptoPkg/Library/OpensslLib/OpensslStub/uefiprov.c | 11 +++++++++++ 1 file changed, 11 insertions(+) diff --git a/CryptoPkg/Library/OpensslLib/OpensslStub/uefiprov.c b/CryptoPkg/Library/OpensslLib/OpensslStub/uefiprov.c index 40ab7e937c69..f2af6a49d85e 100644 --- a/CryptoPkg/Library/OpensslLib/OpensslStub/uefiprov.c +++ b/CryptoPkg/Library/OpensslLib/OpensslStub/uefiprov.c @@ -141,6 +141,17 @@ static const OSSL_ALGORITHM_CAPABLE deflt_ciphers[] = { ALG(PROV_NAMES_AES_192_GCM, ossl_aes192gcm_functions), ALG(PROV_NAMES_AES_128_GCM, ossl_aes128gcm_functions), + ALGC ( + PROV_NAMES_AES_128_CBC_HMAC_SHA256, + ossl_aes128cbc_hmac_sha256_functions, + ossl_cipher_capable_aes_cbc_hmac_sha256 + ), + ALGC ( + PROV_NAMES_AES_256_CBC_HMAC_SHA256, + ossl_aes256cbc_hmac_sha256_functions, + ossl_cipher_capable_aes_cbc_hmac_sha256 + ), + { { NULL, NULL, NULL }, NULL } }; static OSSL_ALGORITHM exported_ciphers[OSSL_NELEM(deflt_ciphers)]; -- 2.44.0.windows.1 -=-=-=-=-=-=-=-=-=-=-=- Groups.io Links: You receive all messages sent to this group. View/Reply Online (#118941): https://edk2.groups.io/g/devel/message/118941 Mute This Topic: https://groups.io/mt/106127156/7686176 Group Owner: devel+owner@edk2.groups.io Unsubscribe: https://edk2.groups.io/g/devel/unsub [rebecca@openfw.io] -=-=-=-=-=-=-=-=-=-=-=-