{"id":2198151,"url":"http://patchwork.ozlabs.org/api/1.0/patches/2198151/?format=json","project":{"id":18,"url":"http://patchwork.ozlabs.org/api/1.0/projects/18/?format=json","name":"U-Boot","link_name":"uboot","list_id":"u-boot.lists.denx.de","list_email":"u-boot@lists.denx.de","web_url":null,"scm_url":null,"webscm_url":null},"msgid":"<20260219132552.1499698-2-philippe.reynes@softathome.com>","date":"2026-02-19T13:25:44","name":"[RFC,v2,1/9] mbedtls: enable support of ecc","commit_ref":null,"pull_url":null,"state":"superseded","archived":false,"hash":"e9d0db1a8c1f7cdd7fc1a94443cbe33aab970b9f","submitter":{"id":74351,"url":"http://patchwork.ozlabs.org/api/1.0/people/74351/?format=json","name":"Philippe Reynes","email":"philippe.reynes@softathome.com"},"delegate":{"id":161313,"url":"http://patchwork.ozlabs.org/api/1.0/users/161313/?format=json","username":"raymo200915","first_name":"Raymond","last_name":"Mao","email":"raymondmaoca@gmail.com"},"mbox":"http://patchwork.ozlabs.org/project/uboot/patch/20260219132552.1499698-2-philippe.reynes@softathome.com/mbox/","series":[{"id":492675,"url":"http://patchwork.ozlabs.org/api/1.0/series/492675/?format=json","date":"2026-02-19T13:25:49","name":"add software ecdsa support","version":2,"mbox":"http://patchwork.ozlabs.org/series/492675/mbox/"}],"check":"pending","checks":"http://patchwork.ozlabs.org/api/patches/2198151/checks/","tags":{},"headers":{"Return-Path":"<u-boot-bounces@lists.denx.de>","X-Original-To":"incoming@patchwork.ozlabs.org","Delivered-To":"patchwork-incoming@legolas.ozlabs.org","Authentication-Results":["legolas.ozlabs.org;\n\tdkim=pass (2048-bit key;\n unprotected) header.d=softathome1.onmicrosoft.com header.i=@softathome1.onmicrosoft.com\n header.a=rsa-sha256 header.s=selector1-softathome1-onmicrosoft-com\n header.b=O/51g8Sq;\n\tdkim-atps=neutral","legolas.ozlabs.org;\n spf=pass (sender SPF authorized) smtp.mailfrom=lists.denx.de\n (client-ip=85.214.62.61; helo=phobos.denx.de;\n envelope-from=u-boot-bounces@lists.denx.de; receiver=patchwork.ozlabs.org)","phobos.denx.de;\n dmarc=none (p=none dis=none) header.from=softathome.com","phobos.denx.de;\n spf=pass smtp.mailfrom=u-boot-bounces@lists.denx.de","phobos.denx.de;\n\tdkim=pass (2048-bit key;\n unprotected) header.d=softathome1.onmicrosoft.com header.i=@softathome1.onmicrosoft.com\n header.b=\"O/51g8Sq\";\n\tdkim-atps=neutral","phobos.denx.de; dmarc=none (p=none dis=none)\n header.from=softathome.com","phobos.denx.de;\n spf=pass smtp.mailfrom=philippe.reynes@softathome.com"],"Received":["from phobos.denx.de (phobos.denx.de [85.214.62.61])\n\t(using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits)\n\t key-exchange x25519)\n\t(No client certificate requested)\n\tby legolas.ozlabs.org (Postfix) with ESMTPS id 4fGvLV0YQlz1xpY\n\tfor <incoming@patchwork.ozlabs.org>; Fri, 20 Feb 2026 00:27:14 +1100 (AEDT)","from h2850616.stratoserver.net (localhost [IPv6:::1])\n\tby phobos.denx.de (Postfix) with ESMTP id 7C23C83E96;\n\tThu, 19 Feb 2026 14:26:20 +0100 (CET)","by phobos.denx.de (Postfix, from userid 109)\n id 5D1BD83CD3; Thu, 19 Feb 2026 14:26:18 +0100 (CET)","from PA5P264CU001.outbound.protection.outlook.com\n (mail-francecentralazlp170100000.outbound.protection.outlook.com\n [IPv6:2a01:111:f403:c20a::])\n (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits))\n (No client certificate requested)\n by phobos.denx.de (Postfix) with ESMTPS id CFA8C83DEA\n for <u-boot@lists.denx.de>; Thu, 19 Feb 2026 14:26:15 +0100 (CET)","from PA7P264CA0479.FRAP264.PROD.OUTLOOK.COM (2603:10a6:102:3dc::20)\n by PAZP264MB2720.FRAP264.PROD.OUTLOOK.COM (2603:10a6:102:1f7::22)\n with Microsoft SMTP Server (version=TLS1_2,\n cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.9632.15; Thu, 19 Feb\n 2026 13:26:09 +0000","from PA3PEPF000089B8.FRAP264.PROD.OUTLOOK.COM\n (2603:10a6:102:3dc:cafe::92) by PA7P264CA0479.outlook.office365.com\n (2603:10a6:102:3dc::20) with Microsoft SMTP Server (version=TLS1_3,\n cipher=TLS_AES_256_GCM_SHA384) id 15.20.9632.15 via Frontend Transport; Thu,\n 19 Feb 2026 13:26:09 +0000","from proxy.softathome.com (149.6.166.170) by\n PA3PEPF000089B8.mail.protection.outlook.com (10.167.242.20) with Microsoft\n SMTP Server (version=TLS1_3, cipher=TLS_AES_256_GCM_SHA384) id 15.20.9632.12\n via Frontend Transport; Thu, 19 Feb 2026 13:26:09 +0000","from sah1lpt726.home (unknown [192.168.72.32])\n by proxy.softathome.com (Postfix) with ESMTPSA id A033020159;\n Thu, 19 Feb 2026 14:26:09 +0100 (CET)"],"X-Spam-Checker-Version":"SpamAssassin 3.4.2 (2018-09-13) on phobos.denx.de","X-Spam-Level":"","X-Spam-Status":"No, score=-1.9 required=5.0 tests=BAYES_00,DKIM_SIGNED,\n DKIM_VALID,RCVD_IN_DNSWL_BLOCKED,SPF_HELO_PASS,SPF_PASS autolearn=ham\n autolearn_force=no version=3.4.2","ARC-Seal":"i=1; a=rsa-sha256; s=arcselector10001; d=microsoft.com; cv=none;\n b=yNzNGILJERcDUrAXSgPMWvJ7u1ccbhn9MWt6jELAUCA5IiUJtmceis1BcQ/MwgaJwt8Ak7v1y0N3R6rITrEG0l8oGsSs9StBz3Gv5Ff9DtZpu8e5U1pdfmOW+aiTvOxaB7Y9WnpaUlDCD7ddr3Yo75xfyB5Wu2AEiRFahloqUgiqfN7ajWP1nn4Er4mUyKPQEMkZvAEfwqoooed6ggInWLM0iyAiiJoCc9+aslSLrnxnPoqA45c4PfWSPVJwlUrGBUSFkW9mwjTy+9x37DsLilEY/YhkSEgOPTcxuxgkTc4vVF7hL7MOwpu4I2k2NLX5LiwwetzjA16XSTh9br7q8A==","ARC-Message-Signature":"i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com;\n s=arcselector10001;\n h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1;\n bh=4z3giD8NjH69kFh01k2Gbfl0i6/58ytVSLuYWqHiiOo=;\n b=B8MC0pLTw2wWrbUKkMHRtfRkBgvXrsAku14RcqjXCTHTviKEEviVeFzoD3HnujhHe9GgSuXXRjdiFEkjSvz7vONBrosAUo1X80OWnS3R30JptnYEbq0bAsvoi7BQCmtAsBqYLEHi7NFyDIueNksdPCwcsxw9MZ6TORE4EzEwDv7WSGFOaiXLrYtv+B1KQtU2nxbyXW4rV4bxhmH1kMsHWzoX3+2N2vEsykQtKRUmLskMyVUSnEJAtbpkTVP+stAXlB6DpB3RWiU1LH/1PKSGPBAdv8rAJKSz4fgDerpQGOG9EK9c2Bk5JFXT+D38rStGWD6MCzKIsAIVeXdQziHEcQ==","ARC-Authentication-Results":"i=1; mx.microsoft.com 1; spf=pass (sender ip is\n 149.6.166.170) smtp.rcpttodomain=gmail.com smtp.mailfrom=softathome.com;\n dmarc=bestguesspass action=none header.from=softathome.com; dkim=none\n (message not signed); arc=none (0)","DKIM-Signature":"v=1; a=rsa-sha256; c=relaxed/relaxed;\n d=softathome1.onmicrosoft.com; s=selector1-softathome1-onmicrosoft-com;\n h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck;\n bh=4z3giD8NjH69kFh01k2Gbfl0i6/58ytVSLuYWqHiiOo=;\n b=O/51g8SqHCD81gJAesMp72agX2Nn0sXUCdve1mX4+JHxxkYM3nt9nh9JEEqsg5DZ1j4MI8MPV432nYu+EfHATVlBdEYIRtnalcdNuczELVc+hknY2Pp6/L3BfMv5lPkEzlhBUtZNui1ajmXIqVRkEHOIvULbaeOKmwFhelX8Rh93PHVYhWRY1wPE3v+/majXQHGs7pg8eAu6nCKHmeDf7vmyt4zNrmZsr6YBFwslc69ZuYxLbD9RYFUQ0q7KtSwxu5qFQmTT+AdhGRp3mmp4Mys7P46WbDXQ/aF4PI7yGm2E5WcWjcc8fbf6cc77piXWQ4fHZus2c9n7WNZpUS9jOQ==","X-MS-Exchange-Authentication-Results":"spf=pass (sender IP is 149.6.166.170)\n smtp.mailfrom=softathome.com; dkim=none (message not signed)\n header.d=none;dmarc=bestguesspass action=none header.from=softathome.com;","Received-SPF":"Pass (protection.outlook.com: domain of softathome.com\n designates 149.6.166.170 as permitted sender)\n receiver=protection.outlook.com; client-ip=149.6.166.170;\n helo=proxy.softathome.com; pr=C","From":"Philippe Reynes <philippe.reynes@softathome.com>","To":"marko.makela@iki.fi, jonny.green@keytechinc.com, raymondmaoca@gmail.com,\n trini@konsulko.com","Cc":"u-boot@lists.denx.de,\n\tPhilippe Reynes <philippe.reynes@softathome.com>","Subject":"[RFC PATCH v2 1/9] mbedtls: enable support of ecc","Date":"Thu, 19 Feb 2026 14:25:44 +0100","Message-ID":"<20260219132552.1499698-2-philippe.reynes@softathome.com>","X-Mailer":"git-send-email 2.43.0","In-Reply-To":"<20260219132552.1499698-1-philippe.reynes@softathome.com>","References":"<20260219132552.1499698-1-philippe.reynes@softathome.com>","MIME-Version":"1.0","Content-Transfer-Encoding":"8bit","X-EOPAttributedMessage":"0","X-MS-PublicTrafficType":"Email","X-MS-TrafficTypeDiagnostic":"PA3PEPF000089B8:EE_|PAZP264MB2720:EE_","Content-Type":"text/plain","X-MS-Office365-Filtering-Correlation-Id":"9e35bf6e-2cbe-4f50-1075-08de6fba71da","X-MS-Exchange-SenderADCheck":"1","X-MS-Exchange-AntiSpam-Relay":"0","X-Microsoft-Antispam":"BCL:0;\n ARA:13230040|82310400026|376014|36860700013|1800799024;","X-Microsoft-Antispam-Message-Info":"\n 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","X-Forefront-Antispam-Report":"CIP:149.6.166.170; CTRY:FR; LANG:en; SCL:1; SRV:;\n IPV:CAL; SFV:NSPM; H:proxy.softathome.com; PTR:InfoDomainNonexistent;\n CAT:NONE;\n SFS:(13230040)(82310400026)(376014)(36860700013)(1800799024); DIR:OUT;\n SFP:1101;","X-MS-Exchange-AntiSpam-MessageData-ChunkCount":"1","X-MS-Exchange-AntiSpam-MessageData-0":"\n k5Rr/HazHqe+94BgiefR+L3fb3Z/DlYMg8bq7rTo645yrjixq2IEWOfM2ESZnQ8nQmuwqirPPzUioPbAXa9xBZxveTje0q/vm2LF0E2YmfXrLgA3EEGHnJhKBiEVriR5xl65BNALhtMjTATAyk9EXlZuVA7od0yuX5ZZoUETZ01z4cHMrHTUwA1QQjbtXVxtOGhc8irTWcbIrM53MHZgicDcm2m63cTk+LtGaEKfdYcT7o+Wbrq0yYK6n2grwFWgniTIjmDbT+FY0BNWlHWNxF5fZuixMwbtMCjXlIAQxb5utAE0ZsjUZP7KoCZCeE85ZF17YqwcVZw/kOYE5u7b9DupOrH//sHq0rPONTRf1J9ecLRt1Snw6Z6PY90LLbkXB8fj1gzeulRvTvY0c/BkYmWlMEkxR6XobHNhouS+Aw0rP4tF37Vo4f+Vl1v3Jigu","X-OriginatorOrg":"softathome.com","X-MS-Exchange-CrossTenant-OriginalArrivalTime":"19 Feb 2026 13:26:09.7822 (UTC)","X-MS-Exchange-CrossTenant-Network-Message-Id":"\n 9e35bf6e-2cbe-4f50-1075-08de6fba71da","X-MS-Exchange-CrossTenant-Id":"aa10e044-e405-4c10-8353-36b4d0cce511","X-MS-Exchange-CrossTenant-OriginalAttributedTenantConnectingIp":"\n TenantId=aa10e044-e405-4c10-8353-36b4d0cce511; Ip=[149.6.166.170];\n Helo=[proxy.softathome.com]","X-MS-Exchange-CrossTenant-AuthSource":"PA3PEPF000089B8.FRAP264.PROD.OUTLOOK.COM","X-MS-Exchange-CrossTenant-AuthAs":"Anonymous","X-MS-Exchange-CrossTenant-FromEntityHeader":"HybridOnPrem","X-MS-Exchange-Transport-CrossTenantHeadersStamped":"PAZP264MB2720","X-BeenThere":"u-boot@lists.denx.de","X-Mailman-Version":"2.1.39","Precedence":"list","List-Id":"U-Boot discussion <u-boot.lists.denx.de>","List-Unsubscribe":"<https://lists.denx.de/options/u-boot>,\n <mailto:u-boot-request@lists.denx.de?subject=unsubscribe>","List-Archive":"<https://lists.denx.de/pipermail/u-boot/>","List-Post":"<mailto:u-boot@lists.denx.de>","List-Help":"<mailto:u-boot-request@lists.denx.de?subject=help>","List-Subscribe":"<https://lists.denx.de/listinfo/u-boot>,\n <mailto:u-boot-request@lists.denx.de?subject=subscribe>","Errors-To":"u-boot-bounces@lists.denx.de","Sender":"\"U-Boot\" <u-boot-bounces@lists.denx.de>","X-Virus-Scanned":"clamav-milter 0.103.8 at phobos.denx.de","X-Virus-Status":"Clean"},"content":"Enables the support of ecc in mbedtls.\n\nSigned-off-by: Philippe Reynes <philippe.reynes@softathome.com>\n---\nv2:\n- move ecdsa to MBEDTLS_LIB_X509\n- enhance depencendies\n\n configs/amd_versal2_virt_defconfig       |  1 +\n configs/qemu_arm64_lwip_defconfig        |  1 +\n configs/starfive_visionfive2_defconfig   |  1 +\n configs/xilinx_versal_net_virt_defconfig |  1 +\n configs/xilinx_versal_virt_defconfig     |  1 +\n configs/xilinx_zynqmp_kria_defconfig     |  1 +\n configs/xilinx_zynqmp_virt_defconfig     |  1 +\n lib/mbedtls/Kconfig                      | 16 ++++++++++++++++\n lib/mbedtls/Makefile                     | 16 +++++++++-------\n lib/mbedtls/mbedtls_def_config.h         | 18 ++++++++++++++++++\n 10 files changed, 50 insertions(+), 7 deletions(-)","diff":"diff --git a/configs/amd_versal2_virt_defconfig b/configs/amd_versal2_virt_defconfig\nindex 0344089030c..702bf28405d 100644\n--- a/configs/amd_versal2_virt_defconfig\n+++ b/configs/amd_versal2_virt_defconfig\n@@ -164,6 +164,7 @@ CONFIG_VIRTIO_MMIO=y\n CONFIG_VIRTIO_NET=y\n CONFIG_VIRTIO_BLK=y\n CONFIG_MBEDTLS_LIB=y\n+CONFIG_ECDSA=y\n CONFIG_TPM=y\n # CONFIG_OPTEE_LIB is not set\n CONFIG_TOOLS_MKFWUMDATA=y\ndiff --git a/configs/qemu_arm64_lwip_defconfig b/configs/qemu_arm64_lwip_defconfig\nindex a974970c3d3..ab6302b67eb 100644\n--- a/configs/qemu_arm64_lwip_defconfig\n+++ b/configs/qemu_arm64_lwip_defconfig\n@@ -11,3 +11,4 @@ CONFIG_CMD_WGET=y\n CONFIG_EFI_HTTP_BOOT=y\n CONFIG_WGET_HTTPS=y\n CONFIG_WGET_CACERT=y\n+CONFIG_ECDSA=y\ndiff --git a/configs/starfive_visionfive2_defconfig b/configs/starfive_visionfive2_defconfig\nindex a754134a313..508bd465704 100644\n--- a/configs/starfive_visionfive2_defconfig\n+++ b/configs/starfive_visionfive2_defconfig\n@@ -156,3 +156,4 @@ CONFIG_USB_GADGET=y\n CONFIG_WDT=y\n CONFIG_WDT_STARFIVE=y\n CONFIG_MBEDTLS_LIB=y\n+CONFIG_ECDSA=y\ndiff --git a/configs/xilinx_versal_net_virt_defconfig b/configs/xilinx_versal_net_virt_defconfig\nindex 323b5606566..8b760beab03 100644\n--- a/configs/xilinx_versal_net_virt_defconfig\n+++ b/configs/xilinx_versal_net_virt_defconfig\n@@ -154,4 +154,5 @@ CONFIG_VIRTIO_MMIO=y\n CONFIG_VIRTIO_NET=y\n CONFIG_VIRTIO_BLK=y\n CONFIG_MBEDTLS_LIB=y\n+CONFIG_ECDSA=y\n CONFIG_TPM=y\ndiff --git a/configs/xilinx_versal_virt_defconfig b/configs/xilinx_versal_virt_defconfig\nindex 652121e27a0..6dd8620cf51 100644\n--- a/configs/xilinx_versal_virt_defconfig\n+++ b/configs/xilinx_versal_virt_defconfig\n@@ -168,5 +168,6 @@ CONFIG_VIRTIO_MMIO=y\n CONFIG_VIRTIO_NET=y\n CONFIG_VIRTIO_BLK=y\n CONFIG_MBEDTLS_LIB=y\n+CONFIG_ECDSA=y\n CONFIG_TPM=y\n CONFIG_TOOLS_MKFWUMDATA=y\ndiff --git a/configs/xilinx_zynqmp_kria_defconfig b/configs/xilinx_zynqmp_kria_defconfig\nindex 8ad05e37189..d23452e96d0 100644\n--- a/configs/xilinx_zynqmp_kria_defconfig\n+++ b/configs/xilinx_zynqmp_kria_defconfig\n@@ -219,6 +219,7 @@ CONFIG_VIRTIO_BLK=y\n CONFIG_BINMAN_DTB=\"./arch/arm/dts/zynqmp-binman-som.dtb\"\n CONFIG_PANIC_HANG=y\n CONFIG_MBEDTLS_LIB=y\n+CONFIG_ECDSA=y\n CONFIG_TPM=y\n CONFIG_SPL_GZIP=y\n CONFIG_TOOLS_MKFWUMDATA=y\ndiff --git a/configs/xilinx_zynqmp_virt_defconfig b/configs/xilinx_zynqmp_virt_defconfig\nindex bb79ddf989e..01370a215d4 100644\n--- a/configs/xilinx_zynqmp_virt_defconfig\n+++ b/configs/xilinx_zynqmp_virt_defconfig\n@@ -237,6 +237,7 @@ CONFIG_VIRTIO_BLK=y\n CONFIG_BINMAN_DTB=\"./arch/arm/dts/zynqmp-binman.dtb\"\n CONFIG_PANIC_HANG=y\n CONFIG_MBEDTLS_LIB=y\n+CONFIG_ECDSA=y\n CONFIG_TPM=y\n CONFIG_SPL_GZIP=y\n CONFIG_TOOLS_MKFWUMDATA=y\ndiff --git a/lib/mbedtls/Kconfig b/lib/mbedtls/Kconfig\nindex 789721ee6cd..8bf8809198f 100644\n--- a/lib/mbedtls/Kconfig\n+++ b/lib/mbedtls/Kconfig\n@@ -242,11 +242,16 @@ config MBEDTLS_LIB_X509\n \tselect X509_CERTIFICATE_PARSER_MBEDTLS if X509_CERTIFICATE_PARSER\n \tselect PKCS7_MESSAGE_PARSER_MBEDTLS if PKCS7_MESSAGE_PARSER\n \tselect MSCODE_PARSER_MBEDTLS if MSCODE_PARSER\n+\tselect ECDSA_MBEDTLS if ECDSA\n \thelp\n \t  Enable MbedTLS certificate libraries.\n \n if MBEDTLS_LIB_X509\n \n+config BIGNUM_MBEDTLS\n+\tbool\n+\tdefault n\n+\n config ASN1_DECODER_MBEDTLS\n \tbool \"ASN1 decoder with MbedTLS certificate library\"\n \tdepends on MBEDTLS_LIB_X509 && ASN1_DECODER\n@@ -264,6 +269,7 @@ config RSA_PUBLIC_KEY_PARSER_MBEDTLS\n \tbool \"RSA public key parser with MbedTLS certificate library\"\n \tdepends on ASYMMETRIC_PUBLIC_KEY_MBEDTLS\n \tselect ASN1_DECODER_MBEDTLS\n+\tselect BIGNUM_MBEDTLS\n \thelp\n \t  This option chooses MbedTLS certificate library for RSA public key\n \t  parser.\n@@ -292,6 +298,15 @@ config MSCODE_PARSER_MBEDTLS\n \t  This option chooses MbedTLS certificate library for MS authenticode\n \t  parser.\n \n+config ECDSA_MBEDTLS\n+\tbool \"Enable ECDSA support with MbedTLS certificate library\"\n+\tdepends on MBEDTLS_LIB_X509\n+\tselect ASN1_DECODER\n+\tselect BIGNUM_MBEDTLS\n+\thelp\n+\t  This option enables support of ECDSA with the MbedTLS certificate\n+\t  library.\n+\n endif # MBEDTLS_LIB_X509\n \n config MBEDTLS_LIB_TLS\n@@ -301,6 +316,7 @@ config MBEDTLS_LIB_TLS\n \tdepends on ASYMMETRIC_PUBLIC_KEY_MBEDTLS\n \tdepends on ASN1_DECODER_MBEDTLS\n \tdepends on MBEDTLS_LIB\n+\tdepends on ECDSA_MBEDTLS\n \thelp\n \t  Enable MbedTLS TLS library. Required for HTTPs support\n \t  in wget\ndiff --git a/lib/mbedtls/Makefile b/lib/mbedtls/Makefile\nindex c5b445bd85c..5433e17cc64 100644\n--- a/lib/mbedtls/Makefile\n+++ b/lib/mbedtls/Makefile\n@@ -39,13 +39,14 @@ mbedtls_lib_crypto-$(CONFIG_$(PHASE_)HKDF_MBEDTLS) += \\\n # MbedTLS X509 library\n obj-$(CONFIG_$(XPL_)MBEDTLS_LIB_X509) += mbedtls_lib_x509.o\n mbedtls_lib_x509-y := $(MBEDTLS_LIB_DIR)/x509.o\n+mbedtls_lib_x509-$(CONFIG_$(PHASE_)BIGNUM_MBEDTLS) += \\\n+\t$(MBEDTLS_LIB_DIR)/bignum.o \\\n+\t$(MBEDTLS_LIB_DIR)/bignum_core.o\n mbedtls_lib_x509-$(CONFIG_$(PHASE_)ASN1_DECODER_MBEDTLS) += \\\n \t$(MBEDTLS_LIB_DIR)/asn1parse.o \\\n \t$(MBEDTLS_LIB_DIR)/asn1write.o \\\n \t$(MBEDTLS_LIB_DIR)/oid.o\n mbedtls_lib_x509-$(CONFIG_$(PHASE_)RSA_PUBLIC_KEY_PARSER_MBEDTLS) += \\\n-\t$(MBEDTLS_LIB_DIR)/bignum.o \\\n-\t$(MBEDTLS_LIB_DIR)/bignum_core.o \\\n \t$(MBEDTLS_LIB_DIR)/rsa.o \\\n \t$(MBEDTLS_LIB_DIR)/rsa_alt_helpers.o\n mbedtls_lib_x509-$(CONFIG_$(PHASE_)ASYMMETRIC_PUBLIC_KEY_MBEDTLS) += \\\n@@ -57,6 +58,12 @@ mbedtls_lib_x509-$(CONFIG_$(PHASE_)X509_CERTIFICATE_PARSER_MBEDTLS) += \\\n \t$(MBEDTLS_LIB_DIR)/x509_crt.o\n mbedtls_lib_x509-$(CONFIG_$(PHASE_)PKCS7_MESSAGE_PARSER_MBEDTLS) += \\\n \t$(MBEDTLS_LIB_DIR)/pkcs7.o\n+mbedtls_lib_x509-$(CONFIG_$(PHASE_)ECDSA_MBEDTLS) += \\\n+\t$(MBEDTLS_LIB_DIR)/ecdsa.o \\\n+\t$(MBEDTLS_LIB_DIR)/ecp.o \\\n+\t$(MBEDTLS_LIB_DIR)/ecp_curves.o \\\n+\t$(MBEDTLS_LIB_DIR)/ecp_curves_new.o \\\n+\t$(MBEDTLS_LIB_DIR)/pk_ecc.o\n \n #mbedTLS TLS support\n obj-$(CONFIG_$(XPL_)MBEDTLS_LIB_TLS) += mbedtls_lib_tls.o\n@@ -64,7 +71,6 @@ mbedtls_lib_tls-y := \\\n \t$(MBEDTLS_LIB_DIR)/mps_reader.o \\\n \t$(MBEDTLS_LIB_DIR)/mps_trace.o \\\n \t$(MBEDTLS_LIB_DIR)/net_sockets.o \\\n-\t$(MBEDTLS_LIB_DIR)/pk_ecc.o \\\n \t$(MBEDTLS_LIB_DIR)/ssl_cache.o \\\n \t$(MBEDTLS_LIB_DIR)/ssl_ciphersuites.o \\\n \t$(MBEDTLS_LIB_DIR)/ssl_client.o \\\n@@ -82,8 +88,4 @@ mbedtls_lib_tls-y := \\\n \t$(MBEDTLS_LIB_DIR)/cipher.o \\\n \t$(MBEDTLS_LIB_DIR)/cipher_wrap.o \\\n \t$(MBEDTLS_LIB_DIR)/ecdh.o \\\n-\t$(MBEDTLS_LIB_DIR)/ecdsa.o \\\n-\t$(MBEDTLS_LIB_DIR)/ecp.o \\\n-\t$(MBEDTLS_LIB_DIR)/ecp_curves.o \\\n-\t$(MBEDTLS_LIB_DIR)/ecp_curves_new.o \\\n \t$(MBEDTLS_LIB_DIR)/gcm.o \\\ndiff --git a/lib/mbedtls/mbedtls_def_config.h b/lib/mbedtls/mbedtls_def_config.h\nindex dda3f4dd6e4..7d60bcc52aa 100644\n--- a/lib/mbedtls/mbedtls_def_config.h\n+++ b/lib/mbedtls/mbedtls_def_config.h\n@@ -89,6 +89,24 @@\n #define MBEDTLS_ASN1_WRITE_C\n #endif\n \n+#if CONFIG_IS_ENABLED(ECDSA_MBEDTLS)\n+#define MBEDTLS_ECDSA_C\n+#define MBEDTLS_ECP_C\n+#define MBEDTLS_BIGNUM_C\n+#define MBEDTLS_ECP_DP_SECP256K1_ENABLED\n+#define MBEDTLS_ECP_DP_SECP192R1_ENABLED\n+#define MBEDTLS_ECP_DP_SECP224R1_ENABLED\n+#define MBEDTLS_ECP_DP_SECP256R1_ENABLED\n+#define MBEDTLS_ECP_DP_SECP384R1_ENABLED\n+#define MBEDTLS_ECP_DP_SECP521R1_ENABLED\n+#define MBEDTLS_ECP_DP_SECP192K1_ENABLED\n+#define MBEDTLS_ECP_DP_SECP224K1_ENABLED\n+#define MBEDTLS_ECP_DP_SECP256K1_ENABLED\n+#define MBEDTLS_ECP_DP_BP256R1_ENABLED\n+#define MBEDTLS_ECP_DP_BP384R1_ENABLED\n+#define MBEDTLS_ECP_DP_BP512R1_ENABLED\n+#endif\n+\n #endif /* #if CONFIG_IS_ENABLED(MBEDTLS_LIB_X509) */\n \n #if CONFIG_IS_ENABLED(MBEDTLS_LIB_TLS)\n","prefixes":["RFC","v2","1/9"]}