mbedtls/configs
Gilles Peskine c6d197b68a ssl-opt needs debug messages
Many test cases in ssl-opt.sh need error messages (MBEDTLS_ERROR_C) or SSL
traces (MBEDTLS_DEBUG_C). Some sample configurations don't include these
options. When running ssl-opt.sh on those configurations, enable the
required options. They must be listed in the config*.h file, commented out.

Run ssl-opt in the following configurations with debug options:
ccm-psk-tls1_2, ccm-psk-dtls1_2, suite-b.

Signed-off-by: Gilles Peskine <Gilles.Peskine@arm.com>
2022-02-25 21:22:25 +01:00
..
config-ccm-psk-dtls1_2.h ssl-opt needs debug messages 2022-02-25 21:22:25 +01:00
config-ccm-psk-tls1_2.h ssl-opt needs debug messages 2022-02-25 21:22:25 +01:00
config-no-entropy.h Make config version symbols optional 2021-06-28 09:28:48 +01:00
config-suite-b.h ssl-opt needs debug messages 2022-02-25 21:22:25 +01:00
config-symmetric-only.h Make config version symbols optional 2021-06-28 09:28:48 +01:00
config-thread.h Restructure test-ref-configs to test with USE_PSA_CRYPTO turned on 2022-01-19 12:34:41 -05:00
README.txt Remove reference to including check_config.h 2021-06-28 09:28:47 +01:00

This directory contains example configuration files.

The examples are generally focused on a particular usage case (eg, support for
a restricted number of ciphersuites) and aim at minimizing resource usage for
this target. They can be used as a basis for custom configurations.

These files are complete replacements for the default mbedtls_config.h. To use one of
them, you can pick one of the following methods:

1. Replace the default file include/mbedtls/mbedtls_config.h with the chosen one.

2. Define MBEDTLS_CONFIG_FILE and adjust the include path accordingly.
   For example, using make:

    CFLAGS="-I$PWD/configs -DMBEDTLS_CONFIG_FILE='<foo.h>'" make

   Or, using cmake:

    find . -iname '*cmake*' -not -name CMakeLists.txt -exec rm -rf {} +
    CFLAGS="-I$PWD/configs -DMBEDTLS_CONFIG_FILE='<foo.h>'" cmake .
    make

Note that the second method also works if you want to keep your custom
configuration file outside the mbed TLS tree.