Linux kernel mirror (for testing) git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git
kernel os linux

x509: Add OIDs for FIPS 202 SHA-3 hash and signatures

Add OID for FIPS 202 SHA-3 family of hash functions, RSA & ECDSA
signatures using those. Limit to 256 or larger sizes, for
interoperability reasons. 224 is too weak for any practical uses.

Signed-off-by: Dimitri John Ledkov <dimitri.ledkov@canonical.com>
Signed-off-by: Herbert Xu <herbert@gondor.apana.org.au>

authored by

Dimitri John Ledkov and committed by
Herbert Xu
2ee7c1bc 2f1f34c1

+11
+11
include/linux/oid_registry.h
··· 129 129 OID_TPMImportableKey, /* 2.23.133.10.1.4 */ 130 130 OID_TPMSealedData, /* 2.23.133.10.1.5 */ 131 131 132 + /* CSOR FIPS-202 SHA-3 */ 133 + OID_sha3_256, /* 2.16.840.1.101.3.4.2.8 */ 134 + OID_sha3_384, /* 2.16.840.1.101.3.4.2.9 */ 135 + OID_sha3_512, /* 2.16.840.1.101.3.4.2.10 */ 136 + OID_id_ecdsa_with_sha3_256, /* 2.16.840.1.101.3.4.3.10 */ 137 + OID_id_ecdsa_with_sha3_384, /* 2.16.840.1.101.3.4.3.11 */ 138 + OID_id_ecdsa_with_sha3_512, /* 2.16.840.1.101.3.4.3.12 */ 139 + OID_id_rsassa_pkcs1_v1_5_with_sha3_256, /* 2.16.840.1.101.3.4.3.14 */ 140 + OID_id_rsassa_pkcs1_v1_5_with_sha3_384, /* 2.16.840.1.101.3.4.3.15 */ 141 + OID_id_rsassa_pkcs1_v1_5_with_sha3_512, /* 2.16.840.1.101.3.4.3.16 */ 142 + 132 143 OID__NR 133 144 }; 134 145