Both HMAC_DRBG using SHA-1 and HMAC_DRBG using SHA-256 are Approved algorithms in ANS X9.82 for our chosen security strength of 128 bits. However, general recommendations (see e.g. NIST SP800-57) are to use a larger hash function in preference to SHA-1. Since SHA-256 is required anyway for TLSv1.2 support, there is no code size penalty for switching HMAC_DRBG to also use SHA-256. Signed-off-by: Michael Brown <mcb30@ipxe.org>tags/v1.20.1
|
|
||
| 10 |
|
10 |
|
| 11 |
|
11 |
|
| 12 |
|
12 |
|
| 13 |
|
|
|
|
13 |
|
|
| 14 |
|
14 |
|
| 15 |
|
15 |
|
| 16 |
|
|
|
|
16 |
|
|
| 17 |
|
17 |
|
| 18 |
|
|
|
|
18 |
|
|
| 19 |
|
19 |
|
| 20 |
|
|
|
|
20 |
|
|
| 21 |
|
21 |
|
| 22 |
|
22 |
|
| 23 |
|
23 |
|
|
|
||
| 25 |
|
25 |
|
| 26 |
|
26 |
|
| 27 |
|
27 |
|
| 28 |
|
|
|
| 29 |
|
|
|
|
28 |
|
|
| 30 |
|
29 |
|
| 31 |
|
|
|
|
30 |
|
|
| 32 |
|
31 |
|
| 33 |
|
32 |
|
| 34 |
|
33 |
|