Both HMAC_DRBG using SHA-1 and HMAC_DRBG using SHA-256 are Approved algorithms in ANS X9.82 for our chosen security strength of 128 bits. However, general recommendations (see e.g. NIST SP800-57) are to use a larger hash function in preference to SHA-1. Since SHA-256 is required anyway for TLSv1.2 support, there is no code size penalty for switching HMAC_DRBG to also use SHA-256. Signed-off-by: Michael Brown <mcb30@ipxe.org>tags/v1.20.1
|
|
||
10 |
|
10 |
|
11 |
|
11 |
|
12 |
|
12 |
|
13 |
|
|
|
|
13 |
|
|
14 |
|
14 |
|
15 |
|
15 |
|
16 |
|
|
|
|
16 |
|
|
17 |
|
17 |
|
18 |
|
|
|
|
18 |
|
|
19 |
|
19 |
|
20 |
|
|
|
|
20 |
|
|
21 |
|
21 |
|
22 |
|
22 |
|
23 |
|
23 |
|
|
|
||
25 |
|
25 |
|
26 |
|
26 |
|
27 |
|
27 |
|
28 |
|
|
|
29 |
|
|
|
|
28 |
|
|
30 |
|
29 |
|
31 |
|
|
|
|
30 |
|
|
32 |
|
31 |
|
33 |
|
32 |
|
34 |
|
33 |
|