|
@@ -8,29 +8,46 @@ config DROPBEAR_CURVE25519
|
|
|
This enables the following key exchange algorithm:
|
|
|
[email protected]
|
|
|
|
|
|
- Increases binary size by about 13 kB uncompressed (MIPS).
|
|
|
+ Increases binary size by about 8 kB uncompressed (MIPS).
|
|
|
|
|
|
config DROPBEAR_ECC
|
|
|
bool "Elliptic curve cryptography (ECC)"
|
|
|
default n
|
|
|
help
|
|
|
- Enables elliptic curve cryptography (ECC) support in key exchange and public key
|
|
|
- authentication.
|
|
|
+ Enables basic support for elliptic curve cryptography (ECC)
|
|
|
+ in key exchange and public key authentication.
|
|
|
|
|
|
Key exchange algorithms:
|
|
|
ecdh-sha2-nistp256
|
|
|
+
|
|
|
+ Public key algorithms:
|
|
|
+ ecdsa-sha2-nistp256
|
|
|
+
|
|
|
+ Increases binary size by about 24 kB (MIPS).
|
|
|
+
|
|
|
+ If full ECC support is required, also select DROPBEAR_ECC_FULL.
|
|
|
+
|
|
|
+config DROPBEAR_ECC_FULL
|
|
|
+ bool "Elliptic curve cryptography (ECC), full support"
|
|
|
+ default n
|
|
|
+ depends on DROPBEAR_ECC
|
|
|
+ help
|
|
|
+ Enables full support for elliptic curve cryptography (ECC)
|
|
|
+ in key exchange and public key authentication.
|
|
|
+
|
|
|
+ Key exchange algorithms:
|
|
|
+ ecdh-sha2-nistp256 (*)
|
|
|
ecdh-sha2-nistp384
|
|
|
ecdh-sha2-nistp521
|
|
|
|
|
|
Public key algorithms:
|
|
|
- ecdsa-sha2-nistp256
|
|
|
+ ecdsa-sha2-nistp256 (*)
|
|
|
ecdsa-sha2-nistp384
|
|
|
ecdsa-sha2-nistp521
|
|
|
|
|
|
- Does not generate ECC host keys by default (ECC key exchange will not be used,
|
|
|
- only ECC public key auth).
|
|
|
+ (*) - basic ECC support; provided by DROPBEAR_ECC.
|
|
|
|
|
|
- Increases binary size by about 23 kB (MIPS).
|
|
|
+ Increases binary size by about 4 kB (MIPS).
|
|
|
|
|
|
config DROPBEAR_ZLIB
|
|
|
bool "Enable compression"
|