Openwrt/package/libs
Hauke Mehrtens b19622044d mbedtls: Activate deterministic ECDSA
With deterministic ECDSA the value k needed for the ECDSA signature is
not randomly generated any more, but generated from a hash over the
private key and the message to sign. If the value k used in a ECDSA
signature or the relationship between the two values k used in two
different ECDSA signatures over the same content is know to an attacker
he can derive the private key pretty easily. Using deterministic ECDSA
as defined in the RFC6979 removes this problem by deriving the value k
deterministically from the private key and the content which gets
signed.

The resulting signature is still compatible to signatures generated not
deterministic.

This increases the size of the ipk on mips 24Kc by about 2 KByte.
old:
166.240 libmbedtls_2.11.0-1_mips_24kc.ipk
new:
167.811 libmbedtls_2.11.0-1_mips_24kc.ipk

This does not change the ECDSA performance in a measurable way.

Signed-off-by: Daniel Engberg <daniel.engberg.lists@pyret.net>
Signed-off-by: Hauke Mehrtens <hauke@hauke-m.de>
2018-07-07 18:33:53 +02:00
..
argp-standalone
elfutils elfutils: bump to 0.173 2018-07-04 16:18:08 +02:00
gettext
gettext-full
gmp
libbsd
libconfig libconfig: update to version 1.7.2 2018-07-07 18:19:39 +02:00
libevent2
libiconv
libiconv-full
libjson-c libjson-c: fix host-build 2018-06-14 22:53:58 +02:00
libmnl
libnetfilter-conntrack
libnetfilter-cthelper
libnetfilter-cttimeout
libnetfilter-log
libnetfilter-queue
libnfnetlink package/libs/libnfnetlink: Remove dead mirror 2018-06-14 21:48:38 +02:00
libnftnl libnftnl: bump to version 1.1.1 2018-06-18 18:21:20 +02:00
libnl
libnl-tiny
libpcap
libroxml
librpc
libtool
libubox libubox: update to the latest version 2018-07-07 14:53:26 +02:00
libunwind
libusb libusb: Add SourceForge mirror. 2018-05-02 09:18:26 +02:00
libusb-compat
lzo
mbedtls mbedtls: Activate deterministic ECDSA 2018-07-07 18:33:53 +02:00
ncurses
nettle nettle: bump to 3.4 2018-06-01 08:39:59 +02:00
nghttp2 nghttp2: bump to 1.32.0 2018-05-09 11:26:45 +02:00
openssl
popt popt: Add backup site 2018-06-13 12:15:38 +02:00
readline
sysfsutils package sysfsutils: add support for sysfs settings at boot 2018-05-22 20:47:20 +02:00
toolchain
uclibc++
uclient
ustream-ssl mbedtls: Update to 2.11.0 2018-07-07 18:29:14 +02:00
wolfssl wolfssl: change defaults to cover wpa_supplicant needs 2018-05-31 00:38:16 +02:00
zlib