dhm.h 51 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889909192939495969798991001011021031041051061071081091101111121131141151161171181191201211221231241251261271281291301311321331341351361371381391401411421431441451461471481491501511521531541551561571581591601611621631641651661671681691701711721731741751761771781791801811821831841851861871881891901911921931941951961971981992002012022032042052062072082092102112122132142152162172182192202212222232242252262272282292302312322332342352362372382392402412422432442452462472482492502512522532542552562572582592602612622632642652662672682692702712722732742752762772782792802812822832842852862872882892902912922932942952962972982993003013023033043053063073083093103113123133143153163173183193203213223233243253263273283293303313323333343353363373383393403413423433443453463473483493503513523533543553563573583593603613623633643653663673683693703713723733743753763773783793803813823833843853863873883893903913923933943953963973983994004014024034044054064074084094104114124134144154164174184194204214224234244254264274284294304314324334344354364374384394404414424434444454464474484494504514524534544554564574584594604614624634644654664674684694704714724734744754764774784794804814824834844854864874884894904914924934944954964974984995005015025035045055065075085095105115125135145155165175185195205215225235245255265275285295305315325335345355365375385395405415425435445455465475485495505515525535545555565575585595605615625635645655665675685695705715725735745755765775785795805815825835845855865875885895905915925935945955965975985996006016026036046056066076086096106116126136146156166176186196206216226236246256266276286296306316326336346356366376386396406416426436446456466476486496506516526536546556566576586596606616626636646656666676686696706716726736746756766776786796806816826836846856866876886896906916926936946956966976986997007017027037047057067077087097107117127137147157167177187197207217227237247257267277287297307317327337347357367377387397407417427437447457467477487497507517527537547557567577587597607617627637647657667677687697707717727737747757767777787797807817827837847857867877887897907917927937947957967977987998008018028038048058068078088098108118128138148158168178188198208218228238248258268278288298308318328338348358368378388398408418428438448458468478488498508518528538548558568578588598608618628638648658668678688698708718728738748758768778788798808818828838848858868878888898908918928938948958968978988999009019029039049059069079089099109119129139149159169179189199209219229239249259269279289299309319329339349359369379389399409419429439449459469479489499509519529539549559569579589599609619629639649659669679689699709719729739749759769779789799809819829839849859869879889899909919929939949959969979989991000100110021003100410051006100710081009101010111012101310141015101610171018101910201021102210231024102510261027102810291030103110321033103410351036103710381039104010411042104310441045104610471048104910501051105210531054105510561057105810591060106110621063
  1. /**
  2. * \file dhm.h
  3. *
  4. * \brief This file contains Diffie-Hellman-Merkle (DHM) key exchange
  5. * definitions and functions.
  6. *
  7. * Diffie-Hellman-Merkle (DHM) key exchange is defined in
  8. * <em>RFC-2631: Diffie-Hellman Key Agreement Method</em> and
  9. * <em>Public-Key Cryptography Standards (PKCS) #3: Diffie
  10. * Hellman Key Agreement Standard</em>.
  11. *
  12. * <em>RFC-3526: More Modular Exponential (MODP) Diffie-Hellman groups for
  13. * Internet Key Exchange (IKE)</em> defines a number of standardized
  14. * Diffie-Hellman groups for IKE.
  15. *
  16. * <em>RFC-5114: Additional Diffie-Hellman Groups for Use with IETF
  17. * Standards</em> defines a number of standardized Diffie-Hellman
  18. * groups that can be used.
  19. *
  20. * \warning The security of the DHM key exchange relies on the proper choice
  21. * of prime modulus - optimally, it should be a safe prime. The usage
  22. * of non-safe primes both decreases the difficulty of the underlying
  23. * discrete logarithm problem and can lead to small subgroup attacks
  24. * leaking private exponent bits when invalid public keys are used
  25. * and not detected. This is especially relevant if the same DHM
  26. * parameters are reused for multiple key exchanges as in static DHM,
  27. * while the criticality of small-subgroup attacks is lower for
  28. * ephemeral DHM.
  29. *
  30. * \warning For performance reasons, the code does neither perform primality
  31. * nor safe primality tests, nor the expensive checks for invalid
  32. * subgroups. Moreover, even if these were performed, non-standardized
  33. * primes cannot be trusted because of the possibility of backdoors
  34. * that can't be effectively checked for.
  35. *
  36. * \warning Diffie-Hellman-Merkle is therefore a security risk when not using
  37. * standardized primes generated using a trustworthy ("nothing up
  38. * my sleeve") method, such as the RFC 3526 / 7919 primes. In the TLS
  39. * protocol, DH parameters need to be negotiated, so using the default
  40. * primes systematically is not always an option. If possible, use
  41. * Elliptic Curve Diffie-Hellman (ECDH), which has better performance,
  42. * and for which the TLS protocol mandates the use of standard
  43. * parameters.
  44. *
  45. */
  46. /*
  47. * Copyright (C) 2006-2018, Arm Limited (or its affiliates), All Rights Reserved
  48. * SPDX-License-Identifier: Apache-2.0
  49. *
  50. * Licensed under the Apache License, Version 2.0 (the "License"); you may
  51. * not use this file except in compliance with the License.
  52. * You may obtain a copy of the License at
  53. *
  54. * http://www.apache.org/licenses/LICENSE-2.0
  55. *
  56. * Unless required by applicable law or agreed to in writing, software
  57. * distributed under the License is distributed on an "AS IS" BASIS, WITHOUT
  58. * WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  59. * See the License for the specific language governing permissions and
  60. * limitations under the License.
  61. *
  62. * This file is part of Mbed TLS (https://tls.mbed.org)
  63. */
  64. #ifndef MBEDTLS_DHM_H
  65. #define MBEDTLS_DHM_H
  66. #if !defined(MBEDTLS_CONFIG_FILE)
  67. #include "config.h"
  68. #else
  69. #include MBEDTLS_CONFIG_FILE
  70. #endif
  71. #include "bignum.h"
  72. /*
  73. * DHM Error codes
  74. */
  75. #define MBEDTLS_ERR_DHM_BAD_INPUT_DATA -0x3080 /**< Bad input parameters. */
  76. #define MBEDTLS_ERR_DHM_READ_PARAMS_FAILED -0x3100 /**< Reading of the DHM parameters failed. */
  77. #define MBEDTLS_ERR_DHM_MAKE_PARAMS_FAILED -0x3180 /**< Making of the DHM parameters failed. */
  78. #define MBEDTLS_ERR_DHM_READ_PUBLIC_FAILED -0x3200 /**< Reading of the public values failed. */
  79. #define MBEDTLS_ERR_DHM_MAKE_PUBLIC_FAILED -0x3280 /**< Making of the public value failed. */
  80. #define MBEDTLS_ERR_DHM_CALC_SECRET_FAILED -0x3300 /**< Calculation of the DHM secret failed. */
  81. #define MBEDTLS_ERR_DHM_INVALID_FORMAT -0x3380 /**< The ASN.1 data is not formatted correctly. */
  82. #define MBEDTLS_ERR_DHM_ALLOC_FAILED -0x3400 /**< Allocation of memory failed. */
  83. #define MBEDTLS_ERR_DHM_FILE_IO_ERROR -0x3480 /**< Read or write of file failed. */
  84. #define MBEDTLS_ERR_DHM_HW_ACCEL_FAILED -0x3500 /**< DHM hardware accelerator failed. */
  85. #define MBEDTLS_ERR_DHM_SET_GROUP_FAILED -0x3580 /**< Setting the modulus and generator failed. */
  86. #ifdef __cplusplus
  87. extern "C" {
  88. #endif
  89. #if !defined(MBEDTLS_DHM_ALT)
  90. /**
  91. * \brief The DHM context structure.
  92. */
  93. typedef struct
  94. {
  95. size_t len; /*!< The size of \p P in Bytes. */
  96. mbedtls_mpi P; /*!< The prime modulus. */
  97. mbedtls_mpi G; /*!< The generator. */
  98. mbedtls_mpi X; /*!< Our secret value. */
  99. mbedtls_mpi GX; /*!< Our public key = \c G^X mod \c P. */
  100. mbedtls_mpi GY; /*!< The public key of the peer = \c G^Y mod \c P. */
  101. mbedtls_mpi K; /*!< The shared secret = \c G^(XY) mod \c P. */
  102. mbedtls_mpi RP; /*!< The cached value = \c R^2 mod \c P. */
  103. mbedtls_mpi Vi; /*!< The blinding value. */
  104. mbedtls_mpi Vf; /*!< The unblinding value. */
  105. mbedtls_mpi pX; /*!< The previous \c X. */
  106. }
  107. mbedtls_dhm_context;
  108. #else /* MBEDTLS_DHM_ALT */
  109. #include "dhm_alt.h"
  110. #endif /* MBEDTLS_DHM_ALT */
  111. /**
  112. * \brief This function initializes the DHM context.
  113. *
  114. * \param ctx The DHM context to initialize.
  115. */
  116. void mbedtls_dhm_init( mbedtls_dhm_context *ctx );
  117. /**
  118. * \brief This function parses the ServerKeyExchange parameters.
  119. *
  120. * \param ctx The DHM context.
  121. * \param p On input, *p must be the start of the input buffer.
  122. * On output, *p is updated to point to the end of the data
  123. * that has been read. On success, this is the first byte
  124. * past the end of the ServerKeyExchange parameters.
  125. * On error, this is the point at which an error has been
  126. * detected, which is usually not useful except to debug
  127. * failures.
  128. * \param end The end of the input buffer.
  129. *
  130. * \return \c 0 on success.
  131. * \return An \c MBEDTLS_ERR_DHM_XXX error code on failure.
  132. */
  133. int mbedtls_dhm_read_params( mbedtls_dhm_context *ctx,
  134. unsigned char **p,
  135. const unsigned char *end );
  136. /**
  137. * \brief This function sets up and writes the ServerKeyExchange
  138. * parameters.
  139. *
  140. * \note The destination buffer must be large enough to hold
  141. * the reduced binary presentation of the modulus, the generator
  142. * and the public key, each wrapped with a 2-byte length field.
  143. * It is the responsibility of the caller to ensure that enough
  144. * space is available. Refer to \c mbedtls_mpi_size to computing
  145. * the byte-size of an MPI.
  146. *
  147. * \note This function assumes that \c ctx->P and \c ctx->G
  148. * have already been properly set. For that, use
  149. * mbedtls_dhm_set_group() below in conjunction with
  150. * mbedtls_mpi_read_binary() and mbedtls_mpi_read_string().
  151. *
  152. * \param ctx The DHM context.
  153. * \param x_size The private key size in Bytes.
  154. * \param olen The number of characters written.
  155. * \param output The destination buffer.
  156. * \param f_rng The RNG function.
  157. * \param p_rng The RNG context.
  158. *
  159. * \return \c 0 on success.
  160. * \return An \c MBEDTLS_ERR_DHM_XXX error code on failure.
  161. */
  162. int mbedtls_dhm_make_params( mbedtls_dhm_context *ctx, int x_size,
  163. unsigned char *output, size_t *olen,
  164. int (*f_rng)(void *, unsigned char *, size_t),
  165. void *p_rng );
  166. /**
  167. * \brief This function sets the prime modulus and generator.
  168. *
  169. * \note This function can be used to set \p P, \p G
  170. * in preparation for mbedtls_dhm_make_params().
  171. *
  172. * \param ctx The DHM context.
  173. * \param P The MPI holding the DHM prime modulus.
  174. * \param G The MPI holding the DHM generator.
  175. *
  176. * \return \c 0 if successful.
  177. * \return An \c MBEDTLS_ERR_DHM_XXX error code on failure.
  178. */
  179. int mbedtls_dhm_set_group( mbedtls_dhm_context *ctx,
  180. const mbedtls_mpi *P,
  181. const mbedtls_mpi *G );
  182. /**
  183. * \brief This function imports the public value of the peer, G^Y.
  184. *
  185. * \param ctx The DHM context.
  186. * \param input The input buffer containing the G^Y value of the peer.
  187. * \param ilen The size of the input buffer.
  188. *
  189. * \return \c 0 on success.
  190. * \return An \c MBEDTLS_ERR_DHM_XXX error code on failure.
  191. */
  192. int mbedtls_dhm_read_public( mbedtls_dhm_context *ctx,
  193. const unsigned char *input, size_t ilen );
  194. /**
  195. * \brief This function creates its own private key, \c X, and
  196. * exports \c G^X.
  197. *
  198. * \note The destination buffer is always fully written
  199. * so as to contain a big-endian representation of G^X mod P.
  200. * If it is larger than ctx->len, it is padded accordingly
  201. * with zero-bytes at the beginning.
  202. *
  203. * \param ctx The DHM context.
  204. * \param x_size The private key size in Bytes.
  205. * \param output The destination buffer.
  206. * \param olen The length of the destination buffer. Must be at least
  207. * equal to ctx->len (the size of \c P).
  208. * \param f_rng The RNG function.
  209. * \param p_rng The RNG context.
  210. *
  211. * \return \c 0 on success.
  212. * \return An \c MBEDTLS_ERR_DHM_XXX error code on failure.
  213. */
  214. int mbedtls_dhm_make_public( mbedtls_dhm_context *ctx, int x_size,
  215. unsigned char *output, size_t olen,
  216. int (*f_rng)(void *, unsigned char *, size_t),
  217. void *p_rng );
  218. /**
  219. * \brief This function derives and exports the shared secret
  220. * \c (G^Y)^X mod \c P.
  221. *
  222. * \note If \p f_rng is not NULL, it is used to blind the input as
  223. * a countermeasure against timing attacks. Blinding is used
  224. * only if our private key \c X is re-used, and not used
  225. * otherwise. We recommend always passing a non-NULL
  226. * \p f_rng argument.
  227. *
  228. * \param ctx The DHM context.
  229. * \param output The destination buffer.
  230. * \param output_size The size of the destination buffer. Must be at least
  231. * the size of ctx->len (the size of \c P).
  232. * \param olen On exit, holds the actual number of Bytes written.
  233. * \param f_rng The RNG function, for blinding purposes.
  234. * \param p_rng The RNG context.
  235. *
  236. * \return \c 0 on success.
  237. * \return An \c MBEDTLS_ERR_DHM_XXX error code on failure.
  238. */
  239. int mbedtls_dhm_calc_secret( mbedtls_dhm_context *ctx,
  240. unsigned char *output, size_t output_size, size_t *olen,
  241. int (*f_rng)(void *, unsigned char *, size_t),
  242. void *p_rng );
  243. /**
  244. * \brief This function frees and clears the components of a DHM context.
  245. *
  246. * \param ctx The DHM context to free and clear.
  247. */
  248. void mbedtls_dhm_free( mbedtls_dhm_context *ctx );
  249. #if defined(MBEDTLS_ASN1_PARSE_C)
  250. /** \ingroup x509_module */
  251. /**
  252. * \brief This function parses DHM parameters in PEM or DER format.
  253. *
  254. * \param dhm The DHM context to initialize.
  255. * \param dhmin The input buffer.
  256. * \param dhminlen The size of the buffer, including the terminating null
  257. * Byte for PEM data.
  258. *
  259. * \return \c 0 on success.
  260. * \return An \c MBEDTLS_ERR_DHM_XXX or \c MBEDTLS_ERR_PEM_XXX error code
  261. * error code on failure.
  262. */
  263. int mbedtls_dhm_parse_dhm( mbedtls_dhm_context *dhm, const unsigned char *dhmin,
  264. size_t dhminlen );
  265. #if defined(MBEDTLS_FS_IO)
  266. /** \ingroup x509_module */
  267. /**
  268. * \brief This function loads and parses DHM parameters from a file.
  269. *
  270. * \param dhm The DHM context to load the parameters to.
  271. * \param path The filename to read the DHM parameters from.
  272. *
  273. * \return \c 0 on success.
  274. * \return An \c MBEDTLS_ERR_DHM_XXX or \c MBEDTLS_ERR_PEM_XXX error code
  275. * error code on failure.
  276. */
  277. int mbedtls_dhm_parse_dhmfile( mbedtls_dhm_context *dhm, const char *path );
  278. #endif /* MBEDTLS_FS_IO */
  279. #endif /* MBEDTLS_ASN1_PARSE_C */
  280. /**
  281. * \brief The DMH checkup routine.
  282. *
  283. * \return \c 0 on success.
  284. * \return \c 1 on failure.
  285. */
  286. int mbedtls_dhm_self_test( int verbose );
  287. #ifdef __cplusplus
  288. }
  289. #endif
  290. /**
  291. * RFC 3526, RFC 5114 and RFC 7919 standardize a number of
  292. * Diffie-Hellman groups, some of which are included here
  293. * for use within the SSL/TLS module and the user's convenience
  294. * when configuring the Diffie-Hellman parameters by hand
  295. * through \c mbedtls_ssl_conf_dh_param.
  296. *
  297. * The following lists the source of the above groups in the standards:
  298. * - RFC 5114 section 2.2: 2048-bit MODP Group with 224-bit Prime Order Subgroup
  299. * - RFC 3526 section 3: 2048-bit MODP Group
  300. * - RFC 3526 section 4: 3072-bit MODP Group
  301. * - RFC 3526 section 5: 4096-bit MODP Group
  302. * - RFC 7919 section A.1: ffdhe2048
  303. * - RFC 7919 section A.2: ffdhe3072
  304. * - RFC 7919 section A.3: ffdhe4096
  305. * - RFC 7919 section A.4: ffdhe6144
  306. * - RFC 7919 section A.5: ffdhe8192
  307. *
  308. * The constants with suffix "_p" denote the chosen prime moduli, while
  309. * the constants with suffix "_g" denote the chosen generator
  310. * of the associated prime field.
  311. *
  312. * The constants further suffixed with "_bin" are provided in binary format,
  313. * while all other constants represent null-terminated strings holding the
  314. * hexadecimal presentation of the respective numbers.
  315. *
  316. * The primes from RFC 3526 and RFC 7919 have been generating by the following
  317. * trust-worthy procedure:
  318. * - Fix N in { 2048, 3072, 4096, 6144, 8192 } and consider the N-bit number
  319. * the first and last 64 bits are all 1, and the remaining N - 128 bits of
  320. * which are 0x7ff...ff.
  321. * - Add the smallest multiple of the first N - 129 bits of the binary expansion
  322. * of pi (for RFC 5236) or e (for RFC 7919) to this intermediate bit-string
  323. * such that the resulting integer is a safe-prime.
  324. * - The result is the respective RFC 3526 / 7919 prime, and the corresponding
  325. * generator is always chosen to be 2 (which is a square for these prime,
  326. * hence the corresponding subgroup has order (p-1)/2 and avoids leaking a
  327. * bit in the private exponent).
  328. *
  329. */
  330. #if !defined(MBEDTLS_DEPRECATED_REMOVED)
  331. #if defined(MBEDTLS_DEPRECATED_WARNING)
  332. #define MBEDTLS_DEPRECATED __attribute__((deprecated))
  333. MBEDTLS_DEPRECATED typedef char const * mbedtls_deprecated_constant_t;
  334. #define MBEDTLS_DEPRECATED_STRING_CONSTANT( VAL ) \
  335. ( (mbedtls_deprecated_constant_t) ( VAL ) )
  336. #else
  337. #define MBEDTLS_DEPRECATED_STRING_CONSTANT( VAL ) VAL
  338. #endif /* ! MBEDTLS_DEPRECATED_WARNING */
  339. /**
  340. * \warning The origin of the primes in RFC 5114 is not documented and
  341. * their use therefore constitutes a security risk!
  342. *
  343. * \deprecated The hex-encoded primes from RFC 5114 are deprecated and are
  344. * likely to be removed in a future version of the library without
  345. * replacement.
  346. */
  347. /**
  348. * The hexadecimal presentation of the prime underlying the
  349. * 2048-bit MODP Group with 224-bit Prime Order Subgroup, as defined
  350. * in <em>RFC-5114: Additional Diffie-Hellman Groups for Use with
  351. * IETF Standards</em>.
  352. */
  353. #define MBEDTLS_DHM_RFC5114_MODP_2048_P \
  354. MBEDTLS_DEPRECATED_STRING_CONSTANT( \
  355. "AD107E1E9123A9D0D660FAA79559C51FA20D64E5683B9FD1" \
  356. "B54B1597B61D0A75E6FA141DF95A56DBAF9A3C407BA1DF15" \
  357. "EB3D688A309C180E1DE6B85A1274A0A66D3F8152AD6AC212" \
  358. "9037C9EDEFDA4DF8D91E8FEF55B7394B7AD5B7D0B6C12207" \
  359. "C9F98D11ED34DBF6C6BA0B2C8BBC27BE6A00E0A0B9C49708" \
  360. "B3BF8A317091883681286130BC8985DB1602E714415D9330" \
  361. "278273C7DE31EFDC7310F7121FD5A07415987D9ADC0A486D" \
  362. "CDF93ACC44328387315D75E198C641A480CD86A1B9E587E8" \
  363. "BE60E69CC928B2B9C52172E413042E9B23F10B0E16E79763" \
  364. "C9B53DCF4BA80A29E3FB73C16B8E75B97EF363E2FFA31F71" \
  365. "CF9DE5384E71B81C0AC4DFFE0C10E64F" )
  366. /**
  367. * The hexadecimal presentation of the chosen generator of the 2048-bit MODP
  368. * Group with 224-bit Prime Order Subgroup, as defined in <em>RFC-5114:
  369. * Additional Diffie-Hellman Groups for Use with IETF Standards</em>.
  370. */
  371. #define MBEDTLS_DHM_RFC5114_MODP_2048_G \
  372. MBEDTLS_DEPRECATED_STRING_CONSTANT( \
  373. "AC4032EF4F2D9AE39DF30B5C8FFDAC506CDEBE7B89998CAF" \
  374. "74866A08CFE4FFE3A6824A4E10B9A6F0DD921F01A70C4AFA" \
  375. "AB739D7700C29F52C57DB17C620A8652BE5E9001A8D66AD7" \
  376. "C17669101999024AF4D027275AC1348BB8A762D0521BC98A" \
  377. "E247150422EA1ED409939D54DA7460CDB5F6C6B250717CBE" \
  378. "F180EB34118E98D119529A45D6F834566E3025E316A330EF" \
  379. "BB77A86F0C1AB15B051AE3D428C8F8ACB70A8137150B8EEB" \
  380. "10E183EDD19963DDD9E263E4770589EF6AA21E7F5F2FF381" \
  381. "B539CCE3409D13CD566AFBB48D6C019181E1BCFE94B30269" \
  382. "EDFE72FE9B6AA4BD7B5A0F1C71CFFF4C19C418E1F6EC0179" \
  383. "81BC087F2A7065B384B890D3191F2BFA" )
  384. /**
  385. * The hexadecimal presentation of the prime underlying the 2048-bit MODP
  386. * Group, as defined in <em>RFC-3526: More Modular Exponential (MODP)
  387. * Diffie-Hellman groups for Internet Key Exchange (IKE)</em>.
  388. *
  389. * \deprecated The hex-encoded primes from RFC 3625 are deprecated and
  390. * superseded by the corresponding macros providing them as
  391. * binary constants. Their hex-encoded constants are likely
  392. * to be removed in a future version of the library.
  393. *
  394. */
  395. #define MBEDTLS_DHM_RFC3526_MODP_2048_P \
  396. MBEDTLS_DEPRECATED_STRING_CONSTANT( \
  397. "FFFFFFFFFFFFFFFFC90FDAA22168C234C4C6628B80DC1CD1" \
  398. "29024E088A67CC74020BBEA63B139B22514A08798E3404DD" \
  399. "EF9519B3CD3A431B302B0A6DF25F14374FE1356D6D51C245" \
  400. "E485B576625E7EC6F44C42E9A637ED6B0BFF5CB6F406B7ED" \
  401. "EE386BFB5A899FA5AE9F24117C4B1FE649286651ECE45B3D" \
  402. "C2007CB8A163BF0598DA48361C55D39A69163FA8FD24CF5F" \
  403. "83655D23DCA3AD961C62F356208552BB9ED529077096966D" \
  404. "670C354E4ABC9804F1746C08CA18217C32905E462E36CE3B" \
  405. "E39E772C180E86039B2783A2EC07A28FB5C55DF06F4C52C9" \
  406. "DE2BCBF6955817183995497CEA956AE515D2261898FA0510" \
  407. "15728E5A8AACAA68FFFFFFFFFFFFFFFF" )
  408. /**
  409. * The hexadecimal presentation of the chosen generator of the 2048-bit MODP
  410. * Group, as defined in <em>RFC-3526: More Modular Exponential (MODP)
  411. * Diffie-Hellman groups for Internet Key Exchange (IKE)</em>.
  412. */
  413. #define MBEDTLS_DHM_RFC3526_MODP_2048_G \
  414. MBEDTLS_DEPRECATED_STRING_CONSTANT( "02" )
  415. /**
  416. * The hexadecimal presentation of the prime underlying the 3072-bit MODP
  417. * Group, as defined in <em>RFC-3072: More Modular Exponential (MODP)
  418. * Diffie-Hellman groups for Internet Key Exchange (IKE)</em>.
  419. */
  420. #define MBEDTLS_DHM_RFC3526_MODP_3072_P \
  421. MBEDTLS_DEPRECATED_STRING_CONSTANT( \
  422. "FFFFFFFFFFFFFFFFC90FDAA22168C234C4C6628B80DC1CD1" \
  423. "29024E088A67CC74020BBEA63B139B22514A08798E3404DD" \
  424. "EF9519B3CD3A431B302B0A6DF25F14374FE1356D6D51C245" \
  425. "E485B576625E7EC6F44C42E9A637ED6B0BFF5CB6F406B7ED" \
  426. "EE386BFB5A899FA5AE9F24117C4B1FE649286651ECE45B3D" \
  427. "C2007CB8A163BF0598DA48361C55D39A69163FA8FD24CF5F" \
  428. "83655D23DCA3AD961C62F356208552BB9ED529077096966D" \
  429. "670C354E4ABC9804F1746C08CA18217C32905E462E36CE3B" \
  430. "E39E772C180E86039B2783A2EC07A28FB5C55DF06F4C52C9" \
  431. "DE2BCBF6955817183995497CEA956AE515D2261898FA0510" \
  432. "15728E5A8AAAC42DAD33170D04507A33A85521ABDF1CBA64" \
  433. "ECFB850458DBEF0A8AEA71575D060C7DB3970F85A6E1E4C7" \
  434. "ABF5AE8CDB0933D71E8C94E04A25619DCEE3D2261AD2EE6B" \
  435. "F12FFA06D98A0864D87602733EC86A64521F2B18177B200C" \
  436. "BBE117577A615D6C770988C0BAD946E208E24FA074E5AB31" \
  437. "43DB5BFCE0FD108E4B82D120A93AD2CAFFFFFFFFFFFFFFFF" )
  438. /**
  439. * The hexadecimal presentation of the chosen generator of the 3072-bit MODP
  440. * Group, as defined in <em>RFC-3526: More Modular Exponential (MODP)
  441. * Diffie-Hellman groups for Internet Key Exchange (IKE)</em>.
  442. */
  443. #define MBEDTLS_DHM_RFC3526_MODP_3072_G \
  444. MBEDTLS_DEPRECATED_STRING_CONSTANT( "02" )
  445. /**
  446. * The hexadecimal presentation of the prime underlying the 4096-bit MODP
  447. * Group, as defined in <em>RFC-3526: More Modular Exponential (MODP)
  448. * Diffie-Hellman groups for Internet Key Exchange (IKE)</em>.
  449. */
  450. #define MBEDTLS_DHM_RFC3526_MODP_4096_P \
  451. MBEDTLS_DEPRECATED_STRING_CONSTANT( \
  452. "FFFFFFFFFFFFFFFFC90FDAA22168C234C4C6628B80DC1CD1" \
  453. "29024E088A67CC74020BBEA63B139B22514A08798E3404DD" \
  454. "EF9519B3CD3A431B302B0A6DF25F14374FE1356D6D51C245" \
  455. "E485B576625E7EC6F44C42E9A637ED6B0BFF5CB6F406B7ED" \
  456. "EE386BFB5A899FA5AE9F24117C4B1FE649286651ECE45B3D" \
  457. "C2007CB8A163BF0598DA48361C55D39A69163FA8FD24CF5F" \
  458. "83655D23DCA3AD961C62F356208552BB9ED529077096966D" \
  459. "670C354E4ABC9804F1746C08CA18217C32905E462E36CE3B" \
  460. "E39E772C180E86039B2783A2EC07A28FB5C55DF06F4C52C9" \
  461. "DE2BCBF6955817183995497CEA956AE515D2261898FA0510" \
  462. "15728E5A8AAAC42DAD33170D04507A33A85521ABDF1CBA64" \
  463. "ECFB850458DBEF0A8AEA71575D060C7DB3970F85A6E1E4C7" \
  464. "ABF5AE8CDB0933D71E8C94E04A25619DCEE3D2261AD2EE6B" \
  465. "F12FFA06D98A0864D87602733EC86A64521F2B18177B200C" \
  466. "BBE117577A615D6C770988C0BAD946E208E24FA074E5AB31" \
  467. "43DB5BFCE0FD108E4B82D120A92108011A723C12A787E6D7" \
  468. "88719A10BDBA5B2699C327186AF4E23C1A946834B6150BDA" \
  469. "2583E9CA2AD44CE8DBBBC2DB04DE8EF92E8EFC141FBECAA6" \
  470. "287C59474E6BC05D99B2964FA090C3A2233BA186515BE7ED" \
  471. "1F612970CEE2D7AFB81BDD762170481CD0069127D5B05AA9" \
  472. "93B4EA988D8FDDC186FFB7DC90A6C08F4DF435C934063199" \
  473. "FFFFFFFFFFFFFFFF" )
  474. /**
  475. * The hexadecimal presentation of the chosen generator of the 4096-bit MODP
  476. * Group, as defined in <em>RFC-3526: More Modular Exponential (MODP)
  477. * Diffie-Hellman groups for Internet Key Exchange (IKE)</em>.
  478. */
  479. #define MBEDTLS_DHM_RFC3526_MODP_4096_G \
  480. MBEDTLS_DEPRECATED_STRING_CONSTANT( "02" )
  481. #endif /* MBEDTLS_DEPRECATED_REMOVED */
  482. /*
  483. * Trustworthy DHM parameters in binary form
  484. */
  485. #define MBEDTLS_DHM_RFC3526_MODP_2048_P_BIN { \
  486. 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, \
  487. 0xC9, 0x0F, 0xDA, 0xA2, 0x21, 0x68, 0xC2, 0x34, \
  488. 0xC4, 0xC6, 0x62, 0x8B, 0x80, 0xDC, 0x1C, 0xD1, \
  489. 0x29, 0x02, 0x4E, 0x08, 0x8A, 0x67, 0xCC, 0x74, \
  490. 0x02, 0x0B, 0xBE, 0xA6, 0x3B, 0x13, 0x9B, 0x22, \
  491. 0x51, 0x4A, 0x08, 0x79, 0x8E, 0x34, 0x04, 0xDD, \
  492. 0xEF, 0x95, 0x19, 0xB3, 0xCD, 0x3A, 0x43, 0x1B, \
  493. 0x30, 0x2B, 0x0A, 0x6D, 0xF2, 0x5F, 0x14, 0x37, \
  494. 0x4F, 0xE1, 0x35, 0x6D, 0x6D, 0x51, 0xC2, 0x45, \
  495. 0xE4, 0x85, 0xB5, 0x76, 0x62, 0x5E, 0x7E, 0xC6, \
  496. 0xF4, 0x4C, 0x42, 0xE9, 0xA6, 0x37, 0xED, 0x6B, \
  497. 0x0B, 0xFF, 0x5C, 0xB6, 0xF4, 0x06, 0xB7, 0xED, \
  498. 0xEE, 0x38, 0x6B, 0xFB, 0x5A, 0x89, 0x9F, 0xA5, \
  499. 0xAE, 0x9F, 0x24, 0x11, 0x7C, 0x4B, 0x1F, 0xE6, \
  500. 0x49, 0x28, 0x66, 0x51, 0xEC, 0xE4, 0x5B, 0x3D, \
  501. 0xC2, 0x00, 0x7C, 0xB8, 0xA1, 0x63, 0xBF, 0x05, \
  502. 0x98, 0xDA, 0x48, 0x36, 0x1C, 0x55, 0xD3, 0x9A, \
  503. 0x69, 0x16, 0x3F, 0xA8, 0xFD, 0x24, 0xCF, 0x5F, \
  504. 0x83, 0x65, 0x5D, 0x23, 0xDC, 0xA3, 0xAD, 0x96, \
  505. 0x1C, 0x62, 0xF3, 0x56, 0x20, 0x85, 0x52, 0xBB, \
  506. 0x9E, 0xD5, 0x29, 0x07, 0x70, 0x96, 0x96, 0x6D, \
  507. 0x67, 0x0C, 0x35, 0x4E, 0x4A, 0xBC, 0x98, 0x04, \
  508. 0xF1, 0x74, 0x6C, 0x08, 0xCA, 0x18, 0x21, 0x7C, \
  509. 0x32, 0x90, 0x5E, 0x46, 0x2E, 0x36, 0xCE, 0x3B, \
  510. 0xE3, 0x9E, 0x77, 0x2C, 0x18, 0x0E, 0x86, 0x03, \
  511. 0x9B, 0x27, 0x83, 0xA2, 0xEC, 0x07, 0xA2, 0x8F, \
  512. 0xB5, 0xC5, 0x5D, 0xF0, 0x6F, 0x4C, 0x52, 0xC9, \
  513. 0xDE, 0x2B, 0xCB, 0xF6, 0x95, 0x58, 0x17, 0x18, \
  514. 0x39, 0x95, 0x49, 0x7C, 0xEA, 0x95, 0x6A, 0xE5, \
  515. 0x15, 0xD2, 0x26, 0x18, 0x98, 0xFA, 0x05, 0x10, \
  516. 0x15, 0x72, 0x8E, 0x5A, 0x8A, 0xAC, 0xAA, 0x68, \
  517. 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF }
  518. #define MBEDTLS_DHM_RFC3526_MODP_2048_G_BIN { 0x02 }
  519. #define MBEDTLS_DHM_RFC3526_MODP_3072_P_BIN { \
  520. 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, \
  521. 0xC9, 0x0F, 0xDA, 0xA2, 0x21, 0x68, 0xC2, 0x34, \
  522. 0xC4, 0xC6, 0x62, 0x8B, 0x80, 0xDC, 0x1C, 0xD1, \
  523. 0x29, 0x02, 0x4E, 0x08, 0x8A, 0x67, 0xCC, 0x74, \
  524. 0x02, 0x0B, 0xBE, 0xA6, 0x3B, 0x13, 0x9B, 0x22, \
  525. 0x51, 0x4A, 0x08, 0x79, 0x8E, 0x34, 0x04, 0xDD, \
  526. 0xEF, 0x95, 0x19, 0xB3, 0xCD, 0x3A, 0x43, 0x1B, \
  527. 0x30, 0x2B, 0x0A, 0x6D, 0xF2, 0x5F, 0x14, 0x37, \
  528. 0x4F, 0xE1, 0x35, 0x6D, 0x6D, 0x51, 0xC2, 0x45, \
  529. 0xE4, 0x85, 0xB5, 0x76, 0x62, 0x5E, 0x7E, 0xC6, \
  530. 0xF4, 0x4C, 0x42, 0xE9, 0xA6, 0x37, 0xED, 0x6B, \
  531. 0x0B, 0xFF, 0x5C, 0xB6, 0xF4, 0x06, 0xB7, 0xED, \
  532. 0xEE, 0x38, 0x6B, 0xFB, 0x5A, 0x89, 0x9F, 0xA5, \
  533. 0xAE, 0x9F, 0x24, 0x11, 0x7C, 0x4B, 0x1F, 0xE6, \
  534. 0x49, 0x28, 0x66, 0x51, 0xEC, 0xE4, 0x5B, 0x3D, \
  535. 0xC2, 0x00, 0x7C, 0xB8, 0xA1, 0x63, 0xBF, 0x05, \
  536. 0x98, 0xDA, 0x48, 0x36, 0x1C, 0x55, 0xD3, 0x9A, \
  537. 0x69, 0x16, 0x3F, 0xA8, 0xFD, 0x24, 0xCF, 0x5F, \
  538. 0x83, 0x65, 0x5D, 0x23, 0xDC, 0xA3, 0xAD, 0x96, \
  539. 0x1C, 0x62, 0xF3, 0x56, 0x20, 0x85, 0x52, 0xBB, \
  540. 0x9E, 0xD5, 0x29, 0x07, 0x70, 0x96, 0x96, 0x6D, \
  541. 0x67, 0x0C, 0x35, 0x4E, 0x4A, 0xBC, 0x98, 0x04, \
  542. 0xF1, 0x74, 0x6C, 0x08, 0xCA, 0x18, 0x21, 0x7C, \
  543. 0x32, 0x90, 0x5E, 0x46, 0x2E, 0x36, 0xCE, 0x3B, \
  544. 0xE3, 0x9E, 0x77, 0x2C, 0x18, 0x0E, 0x86, 0x03, \
  545. 0x9B, 0x27, 0x83, 0xA2, 0xEC, 0x07, 0xA2, 0x8F, \
  546. 0xB5, 0xC5, 0x5D, 0xF0, 0x6F, 0x4C, 0x52, 0xC9, \
  547. 0xDE, 0x2B, 0xCB, 0xF6, 0x95, 0x58, 0x17, 0x18, \
  548. 0x39, 0x95, 0x49, 0x7C, 0xEA, 0x95, 0x6A, 0xE5, \
  549. 0x15, 0xD2, 0x26, 0x18, 0x98, 0xFA, 0x05, 0x10, \
  550. 0x15, 0x72, 0x8E, 0x5A, 0x8A, 0xAA, 0xC4, 0x2D, \
  551. 0xAD, 0x33, 0x17, 0x0D, 0x04, 0x50, 0x7A, 0x33, \
  552. 0xA8, 0x55, 0x21, 0xAB, 0xDF, 0x1C, 0xBA, 0x64, \
  553. 0xEC, 0xFB, 0x85, 0x04, 0x58, 0xDB, 0xEF, 0x0A, \
  554. 0x8A, 0xEA, 0x71, 0x57, 0x5D, 0x06, 0x0C, 0x7D, \
  555. 0xB3, 0x97, 0x0F, 0x85, 0xA6, 0xE1, 0xE4, 0xC7, \
  556. 0xAB, 0xF5, 0xAE, 0x8C, 0xDB, 0x09, 0x33, 0xD7, \
  557. 0x1E, 0x8C, 0x94, 0xE0, 0x4A, 0x25, 0x61, 0x9D, \
  558. 0xCE, 0xE3, 0xD2, 0x26, 0x1A, 0xD2, 0xEE, 0x6B, \
  559. 0xF1, 0x2F, 0xFA, 0x06, 0xD9, 0x8A, 0x08, 0x64, \
  560. 0xD8, 0x76, 0x02, 0x73, 0x3E, 0xC8, 0x6A, 0x64, \
  561. 0x52, 0x1F, 0x2B, 0x18, 0x17, 0x7B, 0x20, 0x0C, \
  562. 0xBB, 0xE1, 0x17, 0x57, 0x7A, 0x61, 0x5D, 0x6C, \
  563. 0x77, 0x09, 0x88, 0xC0, 0xBA, 0xD9, 0x46, 0xE2, \
  564. 0x08, 0xE2, 0x4F, 0xA0, 0x74, 0xE5, 0xAB, 0x31, \
  565. 0x43, 0xDB, 0x5B, 0xFC, 0xE0, 0xFD, 0x10, 0x8E, \
  566. 0x4B, 0x82, 0xD1, 0x20, 0xA9, 0x3A, 0xD2, 0xCA, \
  567. 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF }
  568. #define MBEDTLS_DHM_RFC3526_MODP_3072_G_BIN { 0x02 }
  569. #define MBEDTLS_DHM_RFC3526_MODP_4096_P_BIN { \
  570. 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, \
  571. 0xC9, 0x0F, 0xDA, 0xA2, 0x21, 0x68, 0xC2, 0x34, \
  572. 0xC4, 0xC6, 0x62, 0x8B, 0x80, 0xDC, 0x1C, 0xD1, \
  573. 0x29, 0x02, 0x4E, 0x08, 0x8A, 0x67, 0xCC, 0x74, \
  574. 0x02, 0x0B, 0xBE, 0xA6, 0x3B, 0x13, 0x9B, 0x22, \
  575. 0x51, 0x4A, 0x08, 0x79, 0x8E, 0x34, 0x04, 0xDD, \
  576. 0xEF, 0x95, 0x19, 0xB3, 0xCD, 0x3A, 0x43, 0x1B, \
  577. 0x30, 0x2B, 0x0A, 0x6D, 0xF2, 0x5F, 0x14, 0x37, \
  578. 0x4F, 0xE1, 0x35, 0x6D, 0x6D, 0x51, 0xC2, 0x45, \
  579. 0xE4, 0x85, 0xB5, 0x76, 0x62, 0x5E, 0x7E, 0xC6, \
  580. 0xF4, 0x4C, 0x42, 0xE9, 0xA6, 0x37, 0xED, 0x6B, \
  581. 0x0B, 0xFF, 0x5C, 0xB6, 0xF4, 0x06, 0xB7, 0xED, \
  582. 0xEE, 0x38, 0x6B, 0xFB, 0x5A, 0x89, 0x9F, 0xA5, \
  583. 0xAE, 0x9F, 0x24, 0x11, 0x7C, 0x4B, 0x1F, 0xE6, \
  584. 0x49, 0x28, 0x66, 0x51, 0xEC, 0xE4, 0x5B, 0x3D, \
  585. 0xC2, 0x00, 0x7C, 0xB8, 0xA1, 0x63, 0xBF, 0x05, \
  586. 0x98, 0xDA, 0x48, 0x36, 0x1C, 0x55, 0xD3, 0x9A, \
  587. 0x69, 0x16, 0x3F, 0xA8, 0xFD, 0x24, 0xCF, 0x5F, \
  588. 0x83, 0x65, 0x5D, 0x23, 0xDC, 0xA3, 0xAD, 0x96, \
  589. 0x1C, 0x62, 0xF3, 0x56, 0x20, 0x85, 0x52, 0xBB, \
  590. 0x9E, 0xD5, 0x29, 0x07, 0x70, 0x96, 0x96, 0x6D, \
  591. 0x67, 0x0C, 0x35, 0x4E, 0x4A, 0xBC, 0x98, 0x04, \
  592. 0xF1, 0x74, 0x6C, 0x08, 0xCA, 0x18, 0x21, 0x7C, \
  593. 0x32, 0x90, 0x5E, 0x46, 0x2E, 0x36, 0xCE, 0x3B, \
  594. 0xE3, 0x9E, 0x77, 0x2C, 0x18, 0x0E, 0x86, 0x03, \
  595. 0x9B, 0x27, 0x83, 0xA2, 0xEC, 0x07, 0xA2, 0x8F, \
  596. 0xB5, 0xC5, 0x5D, 0xF0, 0x6F, 0x4C, 0x52, 0xC9, \
  597. 0xDE, 0x2B, 0xCB, 0xF6, 0x95, 0x58, 0x17, 0x18, \
  598. 0x39, 0x95, 0x49, 0x7C, 0xEA, 0x95, 0x6A, 0xE5, \
  599. 0x15, 0xD2, 0x26, 0x18, 0x98, 0xFA, 0x05, 0x10, \
  600. 0x15, 0x72, 0x8E, 0x5A, 0x8A, 0xAA, 0xC4, 0x2D, \
  601. 0xAD, 0x33, 0x17, 0x0D, 0x04, 0x50, 0x7A, 0x33, \
  602. 0xA8, 0x55, 0x21, 0xAB, 0xDF, 0x1C, 0xBA, 0x64, \
  603. 0xEC, 0xFB, 0x85, 0x04, 0x58, 0xDB, 0xEF, 0x0A, \
  604. 0x8A, 0xEA, 0x71, 0x57, 0x5D, 0x06, 0x0C, 0x7D, \
  605. 0xB3, 0x97, 0x0F, 0x85, 0xA6, 0xE1, 0xE4, 0xC7, \
  606. 0xAB, 0xF5, 0xAE, 0x8C, 0xDB, 0x09, 0x33, 0xD7, \
  607. 0x1E, 0x8C, 0x94, 0xE0, 0x4A, 0x25, 0x61, 0x9D, \
  608. 0xCE, 0xE3, 0xD2, 0x26, 0x1A, 0xD2, 0xEE, 0x6B, \
  609. 0xF1, 0x2F, 0xFA, 0x06, 0xD9, 0x8A, 0x08, 0x64, \
  610. 0xD8, 0x76, 0x02, 0x73, 0x3E, 0xC8, 0x6A, 0x64, \
  611. 0x52, 0x1F, 0x2B, 0x18, 0x17, 0x7B, 0x20, 0x0C, \
  612. 0xBB, 0xE1, 0x17, 0x57, 0x7A, 0x61, 0x5D, 0x6C, \
  613. 0x77, 0x09, 0x88, 0xC0, 0xBA, 0xD9, 0x46, 0xE2, \
  614. 0x08, 0xE2, 0x4F, 0xA0, 0x74, 0xE5, 0xAB, 0x31, \
  615. 0x43, 0xDB, 0x5B, 0xFC, 0xE0, 0xFD, 0x10, 0x8E, \
  616. 0x4B, 0x82, 0xD1, 0x20, 0xA9, 0x21, 0x08, 0x01, \
  617. 0x1A, 0x72, 0x3C, 0x12, 0xA7, 0x87, 0xE6, 0xD7, \
  618. 0x88, 0x71, 0x9A, 0x10, 0xBD, 0xBA, 0x5B, 0x26, \
  619. 0x99, 0xC3, 0x27, 0x18, 0x6A, 0xF4, 0xE2, 0x3C, \
  620. 0x1A, 0x94, 0x68, 0x34, 0xB6, 0x15, 0x0B, 0xDA, \
  621. 0x25, 0x83, 0xE9, 0xCA, 0x2A, 0xD4, 0x4C, 0xE8, \
  622. 0xDB, 0xBB, 0xC2, 0xDB, 0x04, 0xDE, 0x8E, 0xF9, \
  623. 0x2E, 0x8E, 0xFC, 0x14, 0x1F, 0xBE, 0xCA, 0xA6, \
  624. 0x28, 0x7C, 0x59, 0x47, 0x4E, 0x6B, 0xC0, 0x5D, \
  625. 0x99, 0xB2, 0x96, 0x4F, 0xA0, 0x90, 0xC3, 0xA2, \
  626. 0x23, 0x3B, 0xA1, 0x86, 0x51, 0x5B, 0xE7, 0xED, \
  627. 0x1F, 0x61, 0x29, 0x70, 0xCE, 0xE2, 0xD7, 0xAF, \
  628. 0xB8, 0x1B, 0xDD, 0x76, 0x21, 0x70, 0x48, 0x1C, \
  629. 0xD0, 0x06, 0x91, 0x27, 0xD5, 0xB0, 0x5A, 0xA9, \
  630. 0x93, 0xB4, 0xEA, 0x98, 0x8D, 0x8F, 0xDD, 0xC1, \
  631. 0x86, 0xFF, 0xB7, 0xDC, 0x90, 0xA6, 0xC0, 0x8F, \
  632. 0x4D, 0xF4, 0x35, 0xC9, 0x34, 0x06, 0x31, 0x99, \
  633. 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF }
  634. #define MBEDTLS_DHM_RFC3526_MODP_4096_G_BIN { 0x02 }
  635. #define MBEDTLS_DHM_RFC7919_FFDHE2048_P_BIN { \
  636. 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, \
  637. 0xAD, 0xF8, 0x54, 0x58, 0xA2, 0xBB, 0x4A, 0x9A, \
  638. 0xAF, 0xDC, 0x56, 0x20, 0x27, 0x3D, 0x3C, 0xF1, \
  639. 0xD8, 0xB9, 0xC5, 0x83, 0xCE, 0x2D, 0x36, 0x95, \
  640. 0xA9, 0xE1, 0x36, 0x41, 0x14, 0x64, 0x33, 0xFB, \
  641. 0xCC, 0x93, 0x9D, 0xCE, 0x24, 0x9B, 0x3E, 0xF9, \
  642. 0x7D, 0x2F, 0xE3, 0x63, 0x63, 0x0C, 0x75, 0xD8, \
  643. 0xF6, 0x81, 0xB2, 0x02, 0xAE, 0xC4, 0x61, 0x7A, \
  644. 0xD3, 0xDF, 0x1E, 0xD5, 0xD5, 0xFD, 0x65, 0x61, \
  645. 0x24, 0x33, 0xF5, 0x1F, 0x5F, 0x06, 0x6E, 0xD0, \
  646. 0x85, 0x63, 0x65, 0x55, 0x3D, 0xED, 0x1A, 0xF3, \
  647. 0xB5, 0x57, 0x13, 0x5E, 0x7F, 0x57, 0xC9, 0x35, \
  648. 0x98, 0x4F, 0x0C, 0x70, 0xE0, 0xE6, 0x8B, 0x77, \
  649. 0xE2, 0xA6, 0x89, 0xDA, 0xF3, 0xEF, 0xE8, 0x72, \
  650. 0x1D, 0xF1, 0x58, 0xA1, 0x36, 0xAD, 0xE7, 0x35, \
  651. 0x30, 0xAC, 0xCA, 0x4F, 0x48, 0x3A, 0x79, 0x7A, \
  652. 0xBC, 0x0A, 0xB1, 0x82, 0xB3, 0x24, 0xFB, 0x61, \
  653. 0xD1, 0x08, 0xA9, 0x4B, 0xB2, 0xC8, 0xE3, 0xFB, \
  654. 0xB9, 0x6A, 0xDA, 0xB7, 0x60, 0xD7, 0xF4, 0x68, \
  655. 0x1D, 0x4F, 0x42, 0xA3, 0xDE, 0x39, 0x4D, 0xF4, \
  656. 0xAE, 0x56, 0xED, 0xE7, 0x63, 0x72, 0xBB, 0x19, \
  657. 0x0B, 0x07, 0xA7, 0xC8, 0xEE, 0x0A, 0x6D, 0x70, \
  658. 0x9E, 0x02, 0xFC, 0xE1, 0xCD, 0xF7, 0xE2, 0xEC, \
  659. 0xC0, 0x34, 0x04, 0xCD, 0x28, 0x34, 0x2F, 0x61, \
  660. 0x91, 0x72, 0xFE, 0x9C, 0xE9, 0x85, 0x83, 0xFF, \
  661. 0x8E, 0x4F, 0x12, 0x32, 0xEE, 0xF2, 0x81, 0x83, \
  662. 0xC3, 0xFE, 0x3B, 0x1B, 0x4C, 0x6F, 0xAD, 0x73, \
  663. 0x3B, 0xB5, 0xFC, 0xBC, 0x2E, 0xC2, 0x20, 0x05, \
  664. 0xC5, 0x8E, 0xF1, 0x83, 0x7D, 0x16, 0x83, 0xB2, \
  665. 0xC6, 0xF3, 0x4A, 0x26, 0xC1, 0xB2, 0xEF, 0xFA, \
  666. 0x88, 0x6B, 0x42, 0x38, 0x61, 0x28, 0x5C, 0x97, \
  667. 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, }
  668. #define MBEDTLS_DHM_RFC7919_FFDHE2048_G_BIN { 0x02 }
  669. #define MBEDTLS_DHM_RFC7919_FFDHE3072_P_BIN { \
  670. 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, \
  671. 0xAD, 0xF8, 0x54, 0x58, 0xA2, 0xBB, 0x4A, 0x9A, \
  672. 0xAF, 0xDC, 0x56, 0x20, 0x27, 0x3D, 0x3C, 0xF1, \
  673. 0xD8, 0xB9, 0xC5, 0x83, 0xCE, 0x2D, 0x36, 0x95, \
  674. 0xA9, 0xE1, 0x36, 0x41, 0x14, 0x64, 0x33, 0xFB, \
  675. 0xCC, 0x93, 0x9D, 0xCE, 0x24, 0x9B, 0x3E, 0xF9, \
  676. 0x7D, 0x2F, 0xE3, 0x63, 0x63, 0x0C, 0x75, 0xD8, \
  677. 0xF6, 0x81, 0xB2, 0x02, 0xAE, 0xC4, 0x61, 0x7A, \
  678. 0xD3, 0xDF, 0x1E, 0xD5, 0xD5, 0xFD, 0x65, 0x61, \
  679. 0x24, 0x33, 0xF5, 0x1F, 0x5F, 0x06, 0x6E, 0xD0, \
  680. 0x85, 0x63, 0x65, 0x55, 0x3D, 0xED, 0x1A, 0xF3, \
  681. 0xB5, 0x57, 0x13, 0x5E, 0x7F, 0x57, 0xC9, 0x35, \
  682. 0x98, 0x4F, 0x0C, 0x70, 0xE0, 0xE6, 0x8B, 0x77, \
  683. 0xE2, 0xA6, 0x89, 0xDA, 0xF3, 0xEF, 0xE8, 0x72, \
  684. 0x1D, 0xF1, 0x58, 0xA1, 0x36, 0xAD, 0xE7, 0x35, \
  685. 0x30, 0xAC, 0xCA, 0x4F, 0x48, 0x3A, 0x79, 0x7A, \
  686. 0xBC, 0x0A, 0xB1, 0x82, 0xB3, 0x24, 0xFB, 0x61, \
  687. 0xD1, 0x08, 0xA9, 0x4B, 0xB2, 0xC8, 0xE3, 0xFB, \
  688. 0xB9, 0x6A, 0xDA, 0xB7, 0x60, 0xD7, 0xF4, 0x68, \
  689. 0x1D, 0x4F, 0x42, 0xA3, 0xDE, 0x39, 0x4D, 0xF4, \
  690. 0xAE, 0x56, 0xED, 0xE7, 0x63, 0x72, 0xBB, 0x19, \
  691. 0x0B, 0x07, 0xA7, 0xC8, 0xEE, 0x0A, 0x6D, 0x70, \
  692. 0x9E, 0x02, 0xFC, 0xE1, 0xCD, 0xF7, 0xE2, 0xEC, \
  693. 0xC0, 0x34, 0x04, 0xCD, 0x28, 0x34, 0x2F, 0x61, \
  694. 0x91, 0x72, 0xFE, 0x9C, 0xE9, 0x85, 0x83, 0xFF, \
  695. 0x8E, 0x4F, 0x12, 0x32, 0xEE, 0xF2, 0x81, 0x83, \
  696. 0xC3, 0xFE, 0x3B, 0x1B, 0x4C, 0x6F, 0xAD, 0x73, \
  697. 0x3B, 0xB5, 0xFC, 0xBC, 0x2E, 0xC2, 0x20, 0x05, \
  698. 0xC5, 0x8E, 0xF1, 0x83, 0x7D, 0x16, 0x83, 0xB2, \
  699. 0xC6, 0xF3, 0x4A, 0x26, 0xC1, 0xB2, 0xEF, 0xFA, \
  700. 0x88, 0x6B, 0x42, 0x38, 0x61, 0x1F, 0xCF, 0xDC, \
  701. 0xDE, 0x35, 0x5B, 0x3B, 0x65, 0x19, 0x03, 0x5B, \
  702. 0xBC, 0x34, 0xF4, 0xDE, 0xF9, 0x9C, 0x02, 0x38, \
  703. 0x61, 0xB4, 0x6F, 0xC9, 0xD6, 0xE6, 0xC9, 0x07, \
  704. 0x7A, 0xD9, 0x1D, 0x26, 0x91, 0xF7, 0xF7, 0xEE, \
  705. 0x59, 0x8C, 0xB0, 0xFA, 0xC1, 0x86, 0xD9, 0x1C, \
  706. 0xAE, 0xFE, 0x13, 0x09, 0x85, 0x13, 0x92, 0x70, \
  707. 0xB4, 0x13, 0x0C, 0x93, 0xBC, 0x43, 0x79, 0x44, \
  708. 0xF4, 0xFD, 0x44, 0x52, 0xE2, 0xD7, 0x4D, 0xD3, \
  709. 0x64, 0xF2, 0xE2, 0x1E, 0x71, 0xF5, 0x4B, 0xFF, \
  710. 0x5C, 0xAE, 0x82, 0xAB, 0x9C, 0x9D, 0xF6, 0x9E, \
  711. 0xE8, 0x6D, 0x2B, 0xC5, 0x22, 0x36, 0x3A, 0x0D, \
  712. 0xAB, 0xC5, 0x21, 0x97, 0x9B, 0x0D, 0xEA, 0xDA, \
  713. 0x1D, 0xBF, 0x9A, 0x42, 0xD5, 0xC4, 0x48, 0x4E, \
  714. 0x0A, 0xBC, 0xD0, 0x6B, 0xFA, 0x53, 0xDD, 0xEF, \
  715. 0x3C, 0x1B, 0x20, 0xEE, 0x3F, 0xD5, 0x9D, 0x7C, \
  716. 0x25, 0xE4, 0x1D, 0x2B, 0x66, 0xC6, 0x2E, 0x37, \
  717. 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF }
  718. #define MBEDTLS_DHM_RFC7919_FFDHE3072_G_BIN { 0x02 }
  719. #define MBEDTLS_DHM_RFC7919_FFDHE4096_P_BIN { \
  720. 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, \
  721. 0xAD, 0xF8, 0x54, 0x58, 0xA2, 0xBB, 0x4A, 0x9A, \
  722. 0xAF, 0xDC, 0x56, 0x20, 0x27, 0x3D, 0x3C, 0xF1, \
  723. 0xD8, 0xB9, 0xC5, 0x83, 0xCE, 0x2D, 0x36, 0x95, \
  724. 0xA9, 0xE1, 0x36, 0x41, 0x14, 0x64, 0x33, 0xFB, \
  725. 0xCC, 0x93, 0x9D, 0xCE, 0x24, 0x9B, 0x3E, 0xF9, \
  726. 0x7D, 0x2F, 0xE3, 0x63, 0x63, 0x0C, 0x75, 0xD8, \
  727. 0xF6, 0x81, 0xB2, 0x02, 0xAE, 0xC4, 0x61, 0x7A, \
  728. 0xD3, 0xDF, 0x1E, 0xD5, 0xD5, 0xFD, 0x65, 0x61, \
  729. 0x24, 0x33, 0xF5, 0x1F, 0x5F, 0x06, 0x6E, 0xD0, \
  730. 0x85, 0x63, 0x65, 0x55, 0x3D, 0xED, 0x1A, 0xF3, \
  731. 0xB5, 0x57, 0x13, 0x5E, 0x7F, 0x57, 0xC9, 0x35, \
  732. 0x98, 0x4F, 0x0C, 0x70, 0xE0, 0xE6, 0x8B, 0x77, \
  733. 0xE2, 0xA6, 0x89, 0xDA, 0xF3, 0xEF, 0xE8, 0x72, \
  734. 0x1D, 0xF1, 0x58, 0xA1, 0x36, 0xAD, 0xE7, 0x35, \
  735. 0x30, 0xAC, 0xCA, 0x4F, 0x48, 0x3A, 0x79, 0x7A, \
  736. 0xBC, 0x0A, 0xB1, 0x82, 0xB3, 0x24, 0xFB, 0x61, \
  737. 0xD1, 0x08, 0xA9, 0x4B, 0xB2, 0xC8, 0xE3, 0xFB, \
  738. 0xB9, 0x6A, 0xDA, 0xB7, 0x60, 0xD7, 0xF4, 0x68, \
  739. 0x1D, 0x4F, 0x42, 0xA3, 0xDE, 0x39, 0x4D, 0xF4, \
  740. 0xAE, 0x56, 0xED, 0xE7, 0x63, 0x72, 0xBB, 0x19, \
  741. 0x0B, 0x07, 0xA7, 0xC8, 0xEE, 0x0A, 0x6D, 0x70, \
  742. 0x9E, 0x02, 0xFC, 0xE1, 0xCD, 0xF7, 0xE2, 0xEC, \
  743. 0xC0, 0x34, 0x04, 0xCD, 0x28, 0x34, 0x2F, 0x61, \
  744. 0x91, 0x72, 0xFE, 0x9C, 0xE9, 0x85, 0x83, 0xFF, \
  745. 0x8E, 0x4F, 0x12, 0x32, 0xEE, 0xF2, 0x81, 0x83, \
  746. 0xC3, 0xFE, 0x3B, 0x1B, 0x4C, 0x6F, 0xAD, 0x73, \
  747. 0x3B, 0xB5, 0xFC, 0xBC, 0x2E, 0xC2, 0x20, 0x05, \
  748. 0xC5, 0x8E, 0xF1, 0x83, 0x7D, 0x16, 0x83, 0xB2, \
  749. 0xC6, 0xF3, 0x4A, 0x26, 0xC1, 0xB2, 0xEF, 0xFA, \
  750. 0x88, 0x6B, 0x42, 0x38, 0x61, 0x1F, 0xCF, 0xDC, \
  751. 0xDE, 0x35, 0x5B, 0x3B, 0x65, 0x19, 0x03, 0x5B, \
  752. 0xBC, 0x34, 0xF4, 0xDE, 0xF9, 0x9C, 0x02, 0x38, \
  753. 0x61, 0xB4, 0x6F, 0xC9, 0xD6, 0xE6, 0xC9, 0x07, \
  754. 0x7A, 0xD9, 0x1D, 0x26, 0x91, 0xF7, 0xF7, 0xEE, \
  755. 0x59, 0x8C, 0xB0, 0xFA, 0xC1, 0x86, 0xD9, 0x1C, \
  756. 0xAE, 0xFE, 0x13, 0x09, 0x85, 0x13, 0x92, 0x70, \
  757. 0xB4, 0x13, 0x0C, 0x93, 0xBC, 0x43, 0x79, 0x44, \
  758. 0xF4, 0xFD, 0x44, 0x52, 0xE2, 0xD7, 0x4D, 0xD3, \
  759. 0x64, 0xF2, 0xE2, 0x1E, 0x71, 0xF5, 0x4B, 0xFF, \
  760. 0x5C, 0xAE, 0x82, 0xAB, 0x9C, 0x9D, 0xF6, 0x9E, \
  761. 0xE8, 0x6D, 0x2B, 0xC5, 0x22, 0x36, 0x3A, 0x0D, \
  762. 0xAB, 0xC5, 0x21, 0x97, 0x9B, 0x0D, 0xEA, 0xDA, \
  763. 0x1D, 0xBF, 0x9A, 0x42, 0xD5, 0xC4, 0x48, 0x4E, \
  764. 0x0A, 0xBC, 0xD0, 0x6B, 0xFA, 0x53, 0xDD, 0xEF, \
  765. 0x3C, 0x1B, 0x20, 0xEE, 0x3F, 0xD5, 0x9D, 0x7C, \
  766. 0x25, 0xE4, 0x1D, 0x2B, 0x66, 0x9E, 0x1E, 0xF1, \
  767. 0x6E, 0x6F, 0x52, 0xC3, 0x16, 0x4D, 0xF4, 0xFB, \
  768. 0x79, 0x30, 0xE9, 0xE4, 0xE5, 0x88, 0x57, 0xB6, \
  769. 0xAC, 0x7D, 0x5F, 0x42, 0xD6, 0x9F, 0x6D, 0x18, \
  770. 0x77, 0x63, 0xCF, 0x1D, 0x55, 0x03, 0x40, 0x04, \
  771. 0x87, 0xF5, 0x5B, 0xA5, 0x7E, 0x31, 0xCC, 0x7A, \
  772. 0x71, 0x35, 0xC8, 0x86, 0xEF, 0xB4, 0x31, 0x8A, \
  773. 0xED, 0x6A, 0x1E, 0x01, 0x2D, 0x9E, 0x68, 0x32, \
  774. 0xA9, 0x07, 0x60, 0x0A, 0x91, 0x81, 0x30, 0xC4, \
  775. 0x6D, 0xC7, 0x78, 0xF9, 0x71, 0xAD, 0x00, 0x38, \
  776. 0x09, 0x29, 0x99, 0xA3, 0x33, 0xCB, 0x8B, 0x7A, \
  777. 0x1A, 0x1D, 0xB9, 0x3D, 0x71, 0x40, 0x00, 0x3C, \
  778. 0x2A, 0x4E, 0xCE, 0xA9, 0xF9, 0x8D, 0x0A, 0xCC, \
  779. 0x0A, 0x82, 0x91, 0xCD, 0xCE, 0xC9, 0x7D, 0xCF, \
  780. 0x8E, 0xC9, 0xB5, 0x5A, 0x7F, 0x88, 0xA4, 0x6B, \
  781. 0x4D, 0xB5, 0xA8, 0x51, 0xF4, 0x41, 0x82, 0xE1, \
  782. 0xC6, 0x8A, 0x00, 0x7E, 0x5E, 0x65, 0x5F, 0x6A, \
  783. 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF }
  784. #define MBEDTLS_DHM_RFC7919_FFDHE4096_G_BIN { 0x02 }
  785. #define MBEDTLS_DHM_RFC7919_FFDHE6144_P_BIN { \
  786. 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, \
  787. 0xAD, 0xF8, 0x54, 0x58, 0xA2, 0xBB, 0x4A, 0x9A, \
  788. 0xAF, 0xDC, 0x56, 0x20, 0x27, 0x3D, 0x3C, 0xF1, \
  789. 0xD8, 0xB9, 0xC5, 0x83, 0xCE, 0x2D, 0x36, 0x95, \
  790. 0xA9, 0xE1, 0x36, 0x41, 0x14, 0x64, 0x33, 0xFB, \
  791. 0xCC, 0x93, 0x9D, 0xCE, 0x24, 0x9B, 0x3E, 0xF9, \
  792. 0x7D, 0x2F, 0xE3, 0x63, 0x63, 0x0C, 0x75, 0xD8, \
  793. 0xF6, 0x81, 0xB2, 0x02, 0xAE, 0xC4, 0x61, 0x7A, \
  794. 0xD3, 0xDF, 0x1E, 0xD5, 0xD5, 0xFD, 0x65, 0x61, \
  795. 0x24, 0x33, 0xF5, 0x1F, 0x5F, 0x06, 0x6E, 0xD0, \
  796. 0x85, 0x63, 0x65, 0x55, 0x3D, 0xED, 0x1A, 0xF3, \
  797. 0xB5, 0x57, 0x13, 0x5E, 0x7F, 0x57, 0xC9, 0x35, \
  798. 0x98, 0x4F, 0x0C, 0x70, 0xE0, 0xE6, 0x8B, 0x77, \
  799. 0xE2, 0xA6, 0x89, 0xDA, 0xF3, 0xEF, 0xE8, 0x72, \
  800. 0x1D, 0xF1, 0x58, 0xA1, 0x36, 0xAD, 0xE7, 0x35, \
  801. 0x30, 0xAC, 0xCA, 0x4F, 0x48, 0x3A, 0x79, 0x7A, \
  802. 0xBC, 0x0A, 0xB1, 0x82, 0xB3, 0x24, 0xFB, 0x61, \
  803. 0xD1, 0x08, 0xA9, 0x4B, 0xB2, 0xC8, 0xE3, 0xFB, \
  804. 0xB9, 0x6A, 0xDA, 0xB7, 0x60, 0xD7, 0xF4, 0x68, \
  805. 0x1D, 0x4F, 0x42, 0xA3, 0xDE, 0x39, 0x4D, 0xF4, \
  806. 0xAE, 0x56, 0xED, 0xE7, 0x63, 0x72, 0xBB, 0x19, \
  807. 0x0B, 0x07, 0xA7, 0xC8, 0xEE, 0x0A, 0x6D, 0x70, \
  808. 0x9E, 0x02, 0xFC, 0xE1, 0xCD, 0xF7, 0xE2, 0xEC, \
  809. 0xC0, 0x34, 0x04, 0xCD, 0x28, 0x34, 0x2F, 0x61, \
  810. 0x91, 0x72, 0xFE, 0x9C, 0xE9, 0x85, 0x83, 0xFF, \
  811. 0x8E, 0x4F, 0x12, 0x32, 0xEE, 0xF2, 0x81, 0x83, \
  812. 0xC3, 0xFE, 0x3B, 0x1B, 0x4C, 0x6F, 0xAD, 0x73, \
  813. 0x3B, 0xB5, 0xFC, 0xBC, 0x2E, 0xC2, 0x20, 0x05, \
  814. 0xC5, 0x8E, 0xF1, 0x83, 0x7D, 0x16, 0x83, 0xB2, \
  815. 0xC6, 0xF3, 0x4A, 0x26, 0xC1, 0xB2, 0xEF, 0xFA, \
  816. 0x88, 0x6B, 0x42, 0x38, 0x61, 0x1F, 0xCF, 0xDC, \
  817. 0xDE, 0x35, 0x5B, 0x3B, 0x65, 0x19, 0x03, 0x5B, \
  818. 0xBC, 0x34, 0xF4, 0xDE, 0xF9, 0x9C, 0x02, 0x38, \
  819. 0x61, 0xB4, 0x6F, 0xC9, 0xD6, 0xE6, 0xC9, 0x07, \
  820. 0x7A, 0xD9, 0x1D, 0x26, 0x91, 0xF7, 0xF7, 0xEE, \
  821. 0x59, 0x8C, 0xB0, 0xFA, 0xC1, 0x86, 0xD9, 0x1C, \
  822. 0xAE, 0xFE, 0x13, 0x09, 0x85, 0x13, 0x92, 0x70, \
  823. 0xB4, 0x13, 0x0C, 0x93, 0xBC, 0x43, 0x79, 0x44, \
  824. 0xF4, 0xFD, 0x44, 0x52, 0xE2, 0xD7, 0x4D, 0xD3, \
  825. 0x64, 0xF2, 0xE2, 0x1E, 0x71, 0xF5, 0x4B, 0xFF, \
  826. 0x5C, 0xAE, 0x82, 0xAB, 0x9C, 0x9D, 0xF6, 0x9E, \
  827. 0xE8, 0x6D, 0x2B, 0xC5, 0x22, 0x36, 0x3A, 0x0D, \
  828. 0xAB, 0xC5, 0x21, 0x97, 0x9B, 0x0D, 0xEA, 0xDA, \
  829. 0x1D, 0xBF, 0x9A, 0x42, 0xD5, 0xC4, 0x48, 0x4E, \
  830. 0x0A, 0xBC, 0xD0, 0x6B, 0xFA, 0x53, 0xDD, 0xEF, \
  831. 0x3C, 0x1B, 0x20, 0xEE, 0x3F, 0xD5, 0x9D, 0x7C, \
  832. 0x25, 0xE4, 0x1D, 0x2B, 0x66, 0x9E, 0x1E, 0xF1, \
  833. 0x6E, 0x6F, 0x52, 0xC3, 0x16, 0x4D, 0xF4, 0xFB, \
  834. 0x79, 0x30, 0xE9, 0xE4, 0xE5, 0x88, 0x57, 0xB6, \
  835. 0xAC, 0x7D, 0x5F, 0x42, 0xD6, 0x9F, 0x6D, 0x18, \
  836. 0x77, 0x63, 0xCF, 0x1D, 0x55, 0x03, 0x40, 0x04, \
  837. 0x87, 0xF5, 0x5B, 0xA5, 0x7E, 0x31, 0xCC, 0x7A, \
  838. 0x71, 0x35, 0xC8, 0x86, 0xEF, 0xB4, 0x31, 0x8A, \
  839. 0xED, 0x6A, 0x1E, 0x01, 0x2D, 0x9E, 0x68, 0x32, \
  840. 0xA9, 0x07, 0x60, 0x0A, 0x91, 0x81, 0x30, 0xC4, \
  841. 0x6D, 0xC7, 0x78, 0xF9, 0x71, 0xAD, 0x00, 0x38, \
  842. 0x09, 0x29, 0x99, 0xA3, 0x33, 0xCB, 0x8B, 0x7A, \
  843. 0x1A, 0x1D, 0xB9, 0x3D, 0x71, 0x40, 0x00, 0x3C, \
  844. 0x2A, 0x4E, 0xCE, 0xA9, 0xF9, 0x8D, 0x0A, 0xCC, \
  845. 0x0A, 0x82, 0x91, 0xCD, 0xCE, 0xC9, 0x7D, 0xCF, \
  846. 0x8E, 0xC9, 0xB5, 0x5A, 0x7F, 0x88, 0xA4, 0x6B, \
  847. 0x4D, 0xB5, 0xA8, 0x51, 0xF4, 0x41, 0x82, 0xE1, \
  848. 0xC6, 0x8A, 0x00, 0x7E, 0x5E, 0x0D, 0xD9, 0x02, \
  849. 0x0B, 0xFD, 0x64, 0xB6, 0x45, 0x03, 0x6C, 0x7A, \
  850. 0x4E, 0x67, 0x7D, 0x2C, 0x38, 0x53, 0x2A, 0x3A, \
  851. 0x23, 0xBA, 0x44, 0x42, 0xCA, 0xF5, 0x3E, 0xA6, \
  852. 0x3B, 0xB4, 0x54, 0x32, 0x9B, 0x76, 0x24, 0xC8, \
  853. 0x91, 0x7B, 0xDD, 0x64, 0xB1, 0xC0, 0xFD, 0x4C, \
  854. 0xB3, 0x8E, 0x8C, 0x33, 0x4C, 0x70, 0x1C, 0x3A, \
  855. 0xCD, 0xAD, 0x06, 0x57, 0xFC, 0xCF, 0xEC, 0x71, \
  856. 0x9B, 0x1F, 0x5C, 0x3E, 0x4E, 0x46, 0x04, 0x1F, \
  857. 0x38, 0x81, 0x47, 0xFB, 0x4C, 0xFD, 0xB4, 0x77, \
  858. 0xA5, 0x24, 0x71, 0xF7, 0xA9, 0xA9, 0x69, 0x10, \
  859. 0xB8, 0x55, 0x32, 0x2E, 0xDB, 0x63, 0x40, 0xD8, \
  860. 0xA0, 0x0E, 0xF0, 0x92, 0x35, 0x05, 0x11, 0xE3, \
  861. 0x0A, 0xBE, 0xC1, 0xFF, 0xF9, 0xE3, 0xA2, 0x6E, \
  862. 0x7F, 0xB2, 0x9F, 0x8C, 0x18, 0x30, 0x23, 0xC3, \
  863. 0x58, 0x7E, 0x38, 0xDA, 0x00, 0x77, 0xD9, 0xB4, \
  864. 0x76, 0x3E, 0x4E, 0x4B, 0x94, 0xB2, 0xBB, 0xC1, \
  865. 0x94, 0xC6, 0x65, 0x1E, 0x77, 0xCA, 0xF9, 0x92, \
  866. 0xEE, 0xAA, 0xC0, 0x23, 0x2A, 0x28, 0x1B, 0xF6, \
  867. 0xB3, 0xA7, 0x39, 0xC1, 0x22, 0x61, 0x16, 0x82, \
  868. 0x0A, 0xE8, 0xDB, 0x58, 0x47, 0xA6, 0x7C, 0xBE, \
  869. 0xF9, 0xC9, 0x09, 0x1B, 0x46, 0x2D, 0x53, 0x8C, \
  870. 0xD7, 0x2B, 0x03, 0x74, 0x6A, 0xE7, 0x7F, 0x5E, \
  871. 0x62, 0x29, 0x2C, 0x31, 0x15, 0x62, 0xA8, 0x46, \
  872. 0x50, 0x5D, 0xC8, 0x2D, 0xB8, 0x54, 0x33, 0x8A, \
  873. 0xE4, 0x9F, 0x52, 0x35, 0xC9, 0x5B, 0x91, 0x17, \
  874. 0x8C, 0xCF, 0x2D, 0xD5, 0xCA, 0xCE, 0xF4, 0x03, \
  875. 0xEC, 0x9D, 0x18, 0x10, 0xC6, 0x27, 0x2B, 0x04, \
  876. 0x5B, 0x3B, 0x71, 0xF9, 0xDC, 0x6B, 0x80, 0xD6, \
  877. 0x3F, 0xDD, 0x4A, 0x8E, 0x9A, 0xDB, 0x1E, 0x69, \
  878. 0x62, 0xA6, 0x95, 0x26, 0xD4, 0x31, 0x61, 0xC1, \
  879. 0xA4, 0x1D, 0x57, 0x0D, 0x79, 0x38, 0xDA, 0xD4, \
  880. 0xA4, 0x0E, 0x32, 0x9C, 0xD0, 0xE4, 0x0E, 0x65, \
  881. 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF }
  882. #define MBEDTLS_DHM_RFC7919_FFDHE6144_G_BIN { 0x02 }
  883. #define MBEDTLS_DHM_RFC7919_FFDHE8192_P_BIN { \
  884. 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, \
  885. 0xAD, 0xF8, 0x54, 0x58, 0xA2, 0xBB, 0x4A, 0x9A, \
  886. 0xAF, 0xDC, 0x56, 0x20, 0x27, 0x3D, 0x3C, 0xF1, \
  887. 0xD8, 0xB9, 0xC5, 0x83, 0xCE, 0x2D, 0x36, 0x95, \
  888. 0xA9, 0xE1, 0x36, 0x41, 0x14, 0x64, 0x33, 0xFB, \
  889. 0xCC, 0x93, 0x9D, 0xCE, 0x24, 0x9B, 0x3E, 0xF9, \
  890. 0x7D, 0x2F, 0xE3, 0x63, 0x63, 0x0C, 0x75, 0xD8, \
  891. 0xF6, 0x81, 0xB2, 0x02, 0xAE, 0xC4, 0x61, 0x7A, \
  892. 0xD3, 0xDF, 0x1E, 0xD5, 0xD5, 0xFD, 0x65, 0x61, \
  893. 0x24, 0x33, 0xF5, 0x1F, 0x5F, 0x06, 0x6E, 0xD0, \
  894. 0x85, 0x63, 0x65, 0x55, 0x3D, 0xED, 0x1A, 0xF3, \
  895. 0xB5, 0x57, 0x13, 0x5E, 0x7F, 0x57, 0xC9, 0x35, \
  896. 0x98, 0x4F, 0x0C, 0x70, 0xE0, 0xE6, 0x8B, 0x77, \
  897. 0xE2, 0xA6, 0x89, 0xDA, 0xF3, 0xEF, 0xE8, 0x72, \
  898. 0x1D, 0xF1, 0x58, 0xA1, 0x36, 0xAD, 0xE7, 0x35, \
  899. 0x30, 0xAC, 0xCA, 0x4F, 0x48, 0x3A, 0x79, 0x7A, \
  900. 0xBC, 0x0A, 0xB1, 0x82, 0xB3, 0x24, 0xFB, 0x61, \
  901. 0xD1, 0x08, 0xA9, 0x4B, 0xB2, 0xC8, 0xE3, 0xFB, \
  902. 0xB9, 0x6A, 0xDA, 0xB7, 0x60, 0xD7, 0xF4, 0x68, \
  903. 0x1D, 0x4F, 0x42, 0xA3, 0xDE, 0x39, 0x4D, 0xF4, \
  904. 0xAE, 0x56, 0xED, 0xE7, 0x63, 0x72, 0xBB, 0x19, \
  905. 0x0B, 0x07, 0xA7, 0xC8, 0xEE, 0x0A, 0x6D, 0x70, \
  906. 0x9E, 0x02, 0xFC, 0xE1, 0xCD, 0xF7, 0xE2, 0xEC, \
  907. 0xC0, 0x34, 0x04, 0xCD, 0x28, 0x34, 0x2F, 0x61, \
  908. 0x91, 0x72, 0xFE, 0x9C, 0xE9, 0x85, 0x83, 0xFF, \
  909. 0x8E, 0x4F, 0x12, 0x32, 0xEE, 0xF2, 0x81, 0x83, \
  910. 0xC3, 0xFE, 0x3B, 0x1B, 0x4C, 0x6F, 0xAD, 0x73, \
  911. 0x3B, 0xB5, 0xFC, 0xBC, 0x2E, 0xC2, 0x20, 0x05, \
  912. 0xC5, 0x8E, 0xF1, 0x83, 0x7D, 0x16, 0x83, 0xB2, \
  913. 0xC6, 0xF3, 0x4A, 0x26, 0xC1, 0xB2, 0xEF, 0xFA, \
  914. 0x88, 0x6B, 0x42, 0x38, 0x61, 0x1F, 0xCF, 0xDC, \
  915. 0xDE, 0x35, 0x5B, 0x3B, 0x65, 0x19, 0x03, 0x5B, \
  916. 0xBC, 0x34, 0xF4, 0xDE, 0xF9, 0x9C, 0x02, 0x38, \
  917. 0x61, 0xB4, 0x6F, 0xC9, 0xD6, 0xE6, 0xC9, 0x07, \
  918. 0x7A, 0xD9, 0x1D, 0x26, 0x91, 0xF7, 0xF7, 0xEE, \
  919. 0x59, 0x8C, 0xB0, 0xFA, 0xC1, 0x86, 0xD9, 0x1C, \
  920. 0xAE, 0xFE, 0x13, 0x09, 0x85, 0x13, 0x92, 0x70, \
  921. 0xB4, 0x13, 0x0C, 0x93, 0xBC, 0x43, 0x79, 0x44, \
  922. 0xF4, 0xFD, 0x44, 0x52, 0xE2, 0xD7, 0x4D, 0xD3, \
  923. 0x64, 0xF2, 0xE2, 0x1E, 0x71, 0xF5, 0x4B, 0xFF, \
  924. 0x5C, 0xAE, 0x82, 0xAB, 0x9C, 0x9D, 0xF6, 0x9E, \
  925. 0xE8, 0x6D, 0x2B, 0xC5, 0x22, 0x36, 0x3A, 0x0D, \
  926. 0xAB, 0xC5, 0x21, 0x97, 0x9B, 0x0D, 0xEA, 0xDA, \
  927. 0x1D, 0xBF, 0x9A, 0x42, 0xD5, 0xC4, 0x48, 0x4E, \
  928. 0x0A, 0xBC, 0xD0, 0x6B, 0xFA, 0x53, 0xDD, 0xEF, \
  929. 0x3C, 0x1B, 0x20, 0xEE, 0x3F, 0xD5, 0x9D, 0x7C, \
  930. 0x25, 0xE4, 0x1D, 0x2B, 0x66, 0x9E, 0x1E, 0xF1, \
  931. 0x6E, 0x6F, 0x52, 0xC3, 0x16, 0x4D, 0xF4, 0xFB, \
  932. 0x79, 0x30, 0xE9, 0xE4, 0xE5, 0x88, 0x57, 0xB6, \
  933. 0xAC, 0x7D, 0x5F, 0x42, 0xD6, 0x9F, 0x6D, 0x18, \
  934. 0x77, 0x63, 0xCF, 0x1D, 0x55, 0x03, 0x40, 0x04, \
  935. 0x87, 0xF5, 0x5B, 0xA5, 0x7E, 0x31, 0xCC, 0x7A, \
  936. 0x71, 0x35, 0xC8, 0x86, 0xEF, 0xB4, 0x31, 0x8A, \
  937. 0xED, 0x6A, 0x1E, 0x01, 0x2D, 0x9E, 0x68, 0x32, \
  938. 0xA9, 0x07, 0x60, 0x0A, 0x91, 0x81, 0x30, 0xC4, \
  939. 0x6D, 0xC7, 0x78, 0xF9, 0x71, 0xAD, 0x00, 0x38, \
  940. 0x09, 0x29, 0x99, 0xA3, 0x33, 0xCB, 0x8B, 0x7A, \
  941. 0x1A, 0x1D, 0xB9, 0x3D, 0x71, 0x40, 0x00, 0x3C, \
  942. 0x2A, 0x4E, 0xCE, 0xA9, 0xF9, 0x8D, 0x0A, 0xCC, \
  943. 0x0A, 0x82, 0x91, 0xCD, 0xCE, 0xC9, 0x7D, 0xCF, \
  944. 0x8E, 0xC9, 0xB5, 0x5A, 0x7F, 0x88, 0xA4, 0x6B, \
  945. 0x4D, 0xB5, 0xA8, 0x51, 0xF4, 0x41, 0x82, 0xE1, \
  946. 0xC6, 0x8A, 0x00, 0x7E, 0x5E, 0x0D, 0xD9, 0x02, \
  947. 0x0B, 0xFD, 0x64, 0xB6, 0x45, 0x03, 0x6C, 0x7A, \
  948. 0x4E, 0x67, 0x7D, 0x2C, 0x38, 0x53, 0x2A, 0x3A, \
  949. 0x23, 0xBA, 0x44, 0x42, 0xCA, 0xF5, 0x3E, 0xA6, \
  950. 0x3B, 0xB4, 0x54, 0x32, 0x9B, 0x76, 0x24, 0xC8, \
  951. 0x91, 0x7B, 0xDD, 0x64, 0xB1, 0xC0, 0xFD, 0x4C, \
  952. 0xB3, 0x8E, 0x8C, 0x33, 0x4C, 0x70, 0x1C, 0x3A, \
  953. 0xCD, 0xAD, 0x06, 0x57, 0xFC, 0xCF, 0xEC, 0x71, \
  954. 0x9B, 0x1F, 0x5C, 0x3E, 0x4E, 0x46, 0x04, 0x1F, \
  955. 0x38, 0x81, 0x47, 0xFB, 0x4C, 0xFD, 0xB4, 0x77, \
  956. 0xA5, 0x24, 0x71, 0xF7, 0xA9, 0xA9, 0x69, 0x10, \
  957. 0xB8, 0x55, 0x32, 0x2E, 0xDB, 0x63, 0x40, 0xD8, \
  958. 0xA0, 0x0E, 0xF0, 0x92, 0x35, 0x05, 0x11, 0xE3, \
  959. 0x0A, 0xBE, 0xC1, 0xFF, 0xF9, 0xE3, 0xA2, 0x6E, \
  960. 0x7F, 0xB2, 0x9F, 0x8C, 0x18, 0x30, 0x23, 0xC3, \
  961. 0x58, 0x7E, 0x38, 0xDA, 0x00, 0x77, 0xD9, 0xB4, \
  962. 0x76, 0x3E, 0x4E, 0x4B, 0x94, 0xB2, 0xBB, 0xC1, \
  963. 0x94, 0xC6, 0x65, 0x1E, 0x77, 0xCA, 0xF9, 0x92, \
  964. 0xEE, 0xAA, 0xC0, 0x23, 0x2A, 0x28, 0x1B, 0xF6, \
  965. 0xB3, 0xA7, 0x39, 0xC1, 0x22, 0x61, 0x16, 0x82, \
  966. 0x0A, 0xE8, 0xDB, 0x58, 0x47, 0xA6, 0x7C, 0xBE, \
  967. 0xF9, 0xC9, 0x09, 0x1B, 0x46, 0x2D, 0x53, 0x8C, \
  968. 0xD7, 0x2B, 0x03, 0x74, 0x6A, 0xE7, 0x7F, 0x5E, \
  969. 0x62, 0x29, 0x2C, 0x31, 0x15, 0x62, 0xA8, 0x46, \
  970. 0x50, 0x5D, 0xC8, 0x2D, 0xB8, 0x54, 0x33, 0x8A, \
  971. 0xE4, 0x9F, 0x52, 0x35, 0xC9, 0x5B, 0x91, 0x17, \
  972. 0x8C, 0xCF, 0x2D, 0xD5, 0xCA, 0xCE, 0xF4, 0x03, \
  973. 0xEC, 0x9D, 0x18, 0x10, 0xC6, 0x27, 0x2B, 0x04, \
  974. 0x5B, 0x3B, 0x71, 0xF9, 0xDC, 0x6B, 0x80, 0xD6, \
  975. 0x3F, 0xDD, 0x4A, 0x8E, 0x9A, 0xDB, 0x1E, 0x69, \
  976. 0x62, 0xA6, 0x95, 0x26, 0xD4, 0x31, 0x61, 0xC1, \
  977. 0xA4, 0x1D, 0x57, 0x0D, 0x79, 0x38, 0xDA, 0xD4, \
  978. 0xA4, 0x0E, 0x32, 0x9C, 0xCF, 0xF4, 0x6A, 0xAA, \
  979. 0x36, 0xAD, 0x00, 0x4C, 0xF6, 0x00, 0xC8, 0x38, \
  980. 0x1E, 0x42, 0x5A, 0x31, 0xD9, 0x51, 0xAE, 0x64, \
  981. 0xFD, 0xB2, 0x3F, 0xCE, 0xC9, 0x50, 0x9D, 0x43, \
  982. 0x68, 0x7F, 0xEB, 0x69, 0xED, 0xD1, 0xCC, 0x5E, \
  983. 0x0B, 0x8C, 0xC3, 0xBD, 0xF6, 0x4B, 0x10, 0xEF, \
  984. 0x86, 0xB6, 0x31, 0x42, 0xA3, 0xAB, 0x88, 0x29, \
  985. 0x55, 0x5B, 0x2F, 0x74, 0x7C, 0x93, 0x26, 0x65, \
  986. 0xCB, 0x2C, 0x0F, 0x1C, 0xC0, 0x1B, 0xD7, 0x02, \
  987. 0x29, 0x38, 0x88, 0x39, 0xD2, 0xAF, 0x05, 0xE4, \
  988. 0x54, 0x50, 0x4A, 0xC7, 0x8B, 0x75, 0x82, 0x82, \
  989. 0x28, 0x46, 0xC0, 0xBA, 0x35, 0xC3, 0x5F, 0x5C, \
  990. 0x59, 0x16, 0x0C, 0xC0, 0x46, 0xFD, 0x82, 0x51, \
  991. 0x54, 0x1F, 0xC6, 0x8C, 0x9C, 0x86, 0xB0, 0x22, \
  992. 0xBB, 0x70, 0x99, 0x87, 0x6A, 0x46, 0x0E, 0x74, \
  993. 0x51, 0xA8, 0xA9, 0x31, 0x09, 0x70, 0x3F, 0xEE, \
  994. 0x1C, 0x21, 0x7E, 0x6C, 0x38, 0x26, 0xE5, 0x2C, \
  995. 0x51, 0xAA, 0x69, 0x1E, 0x0E, 0x42, 0x3C, 0xFC, \
  996. 0x99, 0xE9, 0xE3, 0x16, 0x50, 0xC1, 0x21, 0x7B, \
  997. 0x62, 0x48, 0x16, 0xCD, 0xAD, 0x9A, 0x95, 0xF9, \
  998. 0xD5, 0xB8, 0x01, 0x94, 0x88, 0xD9, 0xC0, 0xA0, \
  999. 0xA1, 0xFE, 0x30, 0x75, 0xA5, 0x77, 0xE2, 0x31, \
  1000. 0x83, 0xF8, 0x1D, 0x4A, 0x3F, 0x2F, 0xA4, 0x57, \
  1001. 0x1E, 0xFC, 0x8C, 0xE0, 0xBA, 0x8A, 0x4F, 0xE8, \
  1002. 0xB6, 0x85, 0x5D, 0xFE, 0x72, 0xB0, 0xA6, 0x6E, \
  1003. 0xDE, 0xD2, 0xFB, 0xAB, 0xFB, 0xE5, 0x8A, 0x30, \
  1004. 0xFA, 0xFA, 0xBE, 0x1C, 0x5D, 0x71, 0xA8, 0x7E, \
  1005. 0x2F, 0x74, 0x1E, 0xF8, 0xC1, 0xFE, 0x86, 0xFE, \
  1006. 0xA6, 0xBB, 0xFD, 0xE5, 0x30, 0x67, 0x7F, 0x0D, \
  1007. 0x97, 0xD1, 0x1D, 0x49, 0xF7, 0xA8, 0x44, 0x3D, \
  1008. 0x08, 0x22, 0xE5, 0x06, 0xA9, 0xF4, 0x61, 0x4E, \
  1009. 0x01, 0x1E, 0x2A, 0x94, 0x83, 0x8F, 0xF8, 0x8C, \
  1010. 0xD6, 0x8C, 0x8B, 0xB7, 0xC5, 0xC6, 0x42, 0x4C, \
  1011. 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF, 0xFF }
  1012. #define MBEDTLS_DHM_RFC7919_FFDHE8192_G_BIN { 0x02 }
  1013. #endif /* dhm.h */