Supported cryptographic operations in the nRF Connect SDK
This reference page lists the supported features and limitations of cryptographic operations in the nRF Connect SDK.
Note
Cryptographic features and algorithms that are not listed on this page are not supported by Oberon PSA Crypto in the nRF Connect SDK. Similarly, if a driver is not available for a device Series for a given feature, it is not included in the corresponding section.
Support definitions
This page uses the same definitions as the Software maturity levels page, with the exception of not listing features that are not supported.
- Supported
The feature or component is implemented and maintained, and is suitable for product development.
- Not supported (–)
The feature or component is neither implemented nor maintained, and it does not work.
- Experimental
The feature can be used for development, but it is not recommended for production. This means that the feature is incomplete in functionality or verification and can be expected to change in future releases. The feature is made available in its current state, but the design and interfaces can change between release tags. The feature is also labeled as experimental in Kconfig files and a build warning is generated to indicate this status.
Hardware support for PSA Crypto implementations
The following tables list hardware support for the PSA Crypto implementations in the nRF Connect SDK.
The following tables list the cryptographic support for nRF52 Series devices. The nRF52 Series devices do not support the CRACEN driver.
Cryptographic support by implementation - nRF52 Series Implementation
nRF52810
nRF52811
nRF52820
nRF52832
nRF52833
nRF52840
–
–
–
–
–
Supported
–
–
–
–
–
–
–
–
–
Supported
Supported
Supported
–
–
–
–
–
–
–
–
–
–
–
–
The following tables list the cryptographic support for nRF53 Series devices. The nRF53 Series devices do not support the CRACEN driver.
Cryptographic support by implementation - nRF53 Series Implementation
nRF5340
Supported
–
Supported
Experimental
–
The following tables list the cryptographic support for nRF54H Series devices. nRF54H Series devices do not support either the nrf_cc3xx or the nrf_oberon drivers.
Cryptographic support by implementation - nRF54H Series Implementation
nRF54H20
–
–
–
–
Supported
The following tables list the cryptographic support for nRF54L Series devices. The nRF54L Series devices do not support the nrf_cc3xx driver.
Cryptographic support by implementation - nRF54L Series Implementation
nRF54L05
nRF54L10
nRF54L15
nRF54LM20A
nRF54LM20B
nRF54LV10A
nRF54LS05A
nRF54LS05B
–
–
–
–
–
–
–
–
Supported
Supported
Supported
Supported
Supported
Supported
–
–
Supported
Supported
Supported
Supported
Supported
Supported
Experimental
Supported
–
Experimental
Experimental
Experimental
Experimental
Experimental
–
–
–
–
–
–
–
–
–
–
The following tables list the cryptographic support for nRF91 Series devices. The nRF91 Series devices do not support the CRACEN driver.
Cryptographic support by implementation - nRF91 Series Implementation
nRF9131
nRF9151
nRF9160
nRF9161
Experimental
Supported
Supported
Supported
–
–
–
–
Supported
Supported
Supported
Supported
Experimental
Experimental
Experimental
Experimental
–
–
–
–
Cryptographic feature support
The following sections list the supported cryptographic features and algorithms. The lists are organized by device Series and cryptographic drivers: nrf_cc3xx, CRACEN, and nrf_oberon.
The listed CONFIG_ Kconfig options enable the features and algorithms for the drivers that support them.
The Kconfig options follow the CONFIG_PSA_WANT_* + CONFIG_PSA_USE_* configuration scheme, which is described in detail on the Cryptographic drivers page.
When you select Kconfig options for the wanted features and drivers to use, the corresponding Oberon PSA Crypto directives are compiled into the build to make the optimal driver selection.
For more information, see the Cryptographic drivers page.
Note
On the nRF54H20 SoC, the IronSide SE implements a fixed set of features and algorithms that cannot be changed by the user.
The PSA_WANT_* and PSA_USE_* directives are directly implemented within IronSide SE.
Enabling any feature with the corresponding Kconfig options will have no effect.
Key types and key management
The following tables show the CONFIG_PSA_WANT_* Kconfig options for configuring key types that Oberon PSA Crypto should add support for in the application at compile time.
Based on this setting and the corresponding CONFIG_PSA_USE_* Kconfig option, Oberon PSA Crypto selects the most appropriate driver for the management of the supported key types.
The options are grouped by Series and drivers available for the device Series, and support level for each device is listed.
The following tables list the supported key types for nRF52 Series devices.
Key type |
Configuration option |
nRF52840 |
|---|---|---|
AES |
Supported |
|
Chacha20 |
Supported |
|
ECC Key Pair Import |
Supported |
|
ECC Key Pair Export |
Supported |
|
ECC Key Pair Generate |
Supported |
|
ECC Key Pair Derive |
Supported |
|
ECC Public Key |
Supported |
|
RSA Key Pair Import |
Supported |
|
RSA Key Pair Export |
Supported |
|
RSA Key Pair Generate |
Supported |
|
RSA Key Pair Derive |
Supported |
|
RSA Public Key |
Supported |
|
XChaCha20 |
– |
|
HMAC |
Supported |
|
HSS Public Key |
– |
|
LMS Public Key |
– |
|
XMSS Public Key |
– |
|
XMSS-MT Public Key |
– |
|
ML-DSA-44 |
– |
|
ML-DSA-65 |
– |
|
ML-DSA-87 |
– |
|
ML-DSA Key Pair Import |
– |
|
ML-DSA Key Pair Export |
– |
|
ML-DSA Key Pair Generate |
– |
|
ML-DSA Key Pair Derive |
– |
|
ML-DSA Public Key |
– |
|
ML-KEM-512 |
– |
|
ML-KEM-768 |
– |
|
ML-KEM-1024 |
– |
|
ML-KEM Key Pair Import |
– |
|
ML-KEM Key Pair Export |
– |
|
ML-KEM Key Pair Generate |
– |
|
ML-KEM Key Pair Derive |
– |
|
ML-KEM Public Key |
– |
|
WPA3-SAE PT key |
– |
|
ASCON |
– |
Key type |
Configuration option |
nRF52832 |
nRF52833 |
nRF52840 |
|---|---|---|---|---|
AES |
Supported |
Supported |
Supported |
|
Chacha20 |
Supported |
Supported |
Supported |
|
ECC Key Pair Import |
Supported |
Supported |
Supported |
|
ECC Key Pair Export |
Supported |
Supported |
Supported |
|
ECC Key Pair Generate |
Supported |
Supported |
Supported |
|
ECC Key Pair Derive |
Supported |
Supported |
Supported |
|
ECC Public Key |
Supported |
Supported |
Supported |
|
RSA Key Pair Import |
Supported |
Supported |
Supported |
|
RSA Key Pair Export |
Supported |
Supported |
Supported |
|
RSA Key Pair Generate |
Supported |
Supported |
Supported |
|
RSA Key Pair Derive |
Supported |
Supported |
Supported |
|
RSA Public Key |
Supported |
Supported |
Supported |
|
XChaCha20 |
Supported |
Supported |
Supported |
|
HMAC |
Supported |
Supported |
Supported |
|
HSS Public Key |
Experimental |
Experimental |
Experimental |
|
LMS Public Key |
Experimental |
Experimental |
Experimental |
|
XMSS Public Key |
Experimental |
Experimental |
Experimental |
|
XMSS-MT Public Key |
Experimental |
Experimental |
Experimental |
|
ML-DSA-44 |
Experimental |
Experimental |
Experimental |
|
ML-DSA-65 |
Experimental |
Experimental |
Experimental |
|
ML-DSA-87 |
Experimental |
Experimental |
Experimental |
|
ML-DSA Key Pair Import |
Experimental |
Experimental |
Experimental |
|
ML-DSA Key Pair Export |
Experimental |
Experimental |
Experimental |
|
ML-DSA Key Pair Generate |
Experimental |
Experimental |
Experimental |
|
ML-DSA Key Pair Derive |
Experimental |
Experimental |
Experimental |
|
ML-DSA Public Key |
Experimental |
Experimental |
Experimental |
|
ML-KEM-512 |
Experimental |
Experimental |
Experimental |
|
ML-KEM-768 |
Experimental |
Experimental |
Experimental |
|
ML-KEM-1024 |
Experimental |
Experimental |
Experimental |
|
ML-KEM Key Pair Import |
Experimental |
Experimental |
Experimental |
|
ML-KEM Key Pair Export |
Experimental |
Experimental |
Experimental |
|
ML-KEM Key Pair Generate |
Experimental |
Experimental |
Experimental |
|
ML-KEM Key Pair Derive |
Experimental |
Experimental |
Experimental |
|
ML-KEM Public Key |
Experimental |
Experimental |
Experimental |
|
WPA3-SAE PT key |
Experimental |
Experimental |
Experimental |
|
ASCON |
Experimental |
Experimental |
Experimental |
The following tables list the supported key types for nRF53 Series devices.
Key type |
Configuration option |
nRF5340 |
|---|---|---|
AES |
Supported |
|
Chacha20 |
Supported |
|
ECC Key Pair Import |
Supported |
|
ECC Key Pair Export |
Supported |
|
ECC Key Pair Generate |
Supported |
|
ECC Key Pair Derive |
Supported |
|
ECC Public Key |
Supported |
|
RSA Key Pair Import |
Supported |
|
RSA Key Pair Export |
Supported |
|
RSA Key Pair Generate |
Supported |
|
RSA Key Pair Derive |
Supported |
|
RSA Public Key |
Supported |
|
XChaCha20 |
– |
|
HMAC |
Supported |
|
HSS Public Key |
– |
|
LMS Public Key |
– |
|
XMSS Public Key |
– |
|
XMSS-MT Public Key |
– |
|
ML-DSA-44 |
– |
|
ML-DSA-65 |
– |
|
ML-DSA-87 |
– |
|
ML-DSA Key Pair Import |
– |
|
ML-DSA Key Pair Export |
– |
|
ML-DSA Key Pair Generate |
– |
|
ML-DSA Key Pair Derive |
– |
|
ML-DSA Public Key |
– |
|
ML-KEM-512 |
– |
|
ML-KEM-768 |
– |
|
ML-KEM-1024 |
– |
|
ML-KEM Key Pair Import |
– |
|
ML-KEM Key Pair Export |
– |
|
ML-KEM Key Pair Generate |
– |
|
ML-KEM Key Pair Derive |
– |
|
ML-KEM Public Key |
– |
|
WPA3-SAE PT key |
– |
|
ASCON |
– |
Key type |
Configuration option |
nRF5340 |
|---|---|---|
AES |
Supported |
|
Chacha20 |
Supported |
|
ECC Key Pair Import |
Supported |
|
ECC Key Pair Export |
Supported |
|
ECC Key Pair Generate |
Supported |
|
ECC Key Pair Derive |
Supported |
|
ECC Public Key |
Supported |
|
RSA Key Pair Import |
Supported |
|
RSA Key Pair Export |
Supported |
|
RSA Key Pair Generate |
Supported |
|
RSA Key Pair Derive |
Supported |
|
RSA Public Key |
Supported |
|
XChaCha20 |
Supported |
|
HMAC |
Supported |
|
HSS Public Key |
Experimental |
|
LMS Public Key |
Experimental |
|
XMSS Public Key |
Experimental |
|
XMSS-MT Public Key |
Experimental |
|
ML-DSA-44 |
Experimental |
|
ML-DSA-65 |
Experimental |
|
ML-DSA-87 |
Experimental |
|
ML-DSA Key Pair Import |
Experimental |
|
ML-DSA Key Pair Export |
Experimental |
|
ML-DSA Key Pair Generate |
Experimental |
|
ML-DSA Key Pair Derive |
Experimental |
|
ML-DSA Public Key |
Experimental |
|
ML-KEM-512 |
Experimental |
|
ML-KEM-768 |
Experimental |
|
ML-KEM-1024 |
Experimental |
|
ML-KEM Key Pair Import |
Experimental |
|
ML-KEM Key Pair Export |
Experimental |
|
ML-KEM Key Pair Generate |
Experimental |
|
ML-KEM Key Pair Derive |
Experimental |
|
ML-KEM Public Key |
Experimental |
|
WPA3-SAE PT key |
Experimental |
|
ASCON |
Experimental |
The following tables list the supported key types for nRF54H Series devices.
The nRF54H Series does not use the CRACEN driver directly for cryptographic operations. The driver is used alongside Oberon PSA Core and the CRACEN driver within the IronSide Secure Enclave firmware.
The IronSide SE implements a fixed set of features and algorithms that cannot be changed by the user.
Key type |
Supported directive |
nRF54H20 |
|---|---|---|
AES |
|
Supported |
Chacha20 |
|
Supported |
ECC Key Pair Import |
|
Supported |
ECC Key Pair Export |
|
Supported |
ECC Key Pair Generate |
|
Supported |
ECC Key Pair Derive |
|
Supported |
ECC Public Key |
|
Supported |
RSA Key Pair Import |
|
– |
RSA Key Pair Export |
|
– |
RSA Key Pair Generate |
|
– |
RSA Key Pair Derive |
|
– |
RSA Public Key |
|
– |
XChaCha20 |
|
– |
HMAC |
|
– |
HSS Public Key |
|
– |
LMS Public Key |
|
– |
XMSS Public Key |
|
– |
XMSS-MT Public Key |
|
– |
ML-DSA-44 |
|
– |
ML-DSA-65 |
|
– |
ML-DSA-87 |
|
– |
ML-DSA Key Pair Import |
|
– |
ML-DSA Key Pair Export |
|
– |
ML-DSA Key Pair Generate |
|
– |
ML-DSA Key Pair Derive |
|
– |
ML-DSA Public Key |
|
– |
ML-KEM-512 |
|
– |
ML-KEM-768 |
|
– |
ML-KEM-1024 |
|
– |
ML-KEM Key Pair Import |
|
– |
ML-KEM Key Pair Export |
|
– |
ML-KEM Key Pair Generate |
|
– |
ML-KEM Key Pair Derive |
|
– |
ML-KEM Public Key |
|
– |
WPA3-SAE key |
|
– |
The following tables list the supported key types for nRF54L Series devices.
Note
Only some of these key types can be stored in the Key Management Unit (KMU).
Key type |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
AES |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
Chacha20 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
ECC Key Pair Import |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
ECC Key Pair Export |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
ECC Key Pair Generate |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
ECC Key Pair Derive |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
ECC Public Key |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
RSA Key Pair Import |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
RSA Key Pair Export |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
RSA Key Pair Generate |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
RSA Key Pair Derive |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
RSA Public Key |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
XChaCha20 |
– |
– |
– |
– |
– |
– |
– |
– |
|
HMAC |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
HSS Public Key |
– |
– |
– |
– |
– |
– |
– |
– |
|
LMS Public Key |
– |
– |
– |
– |
– |
– |
– |
– |
|
XMSS Public Key |
– |
– |
– |
– |
– |
– |
– |
– |
|
XMSS-MT Public Key |
– |
– |
– |
– |
– |
– |
– |
– |
|
ML-DSA-44 |
– |
– |
– |
– |
– |
– |
– |
– |
|
ML-DSA-65 |
– |
– |
– |
– |
– |
– |
– |
– |
|
ML-DSA-87 |
– |
– |
– |
– |
– |
– |
– |
– |
|
ML-DSA Key Pair Import |
– |
– |
– |
– |
– |
– |
– |
– |
|
ML-DSA Key Pair Export |
– |
– |
– |
– |
– |
– |
– |
– |
|
ML-DSA Key Pair Generate |
– |
– |
– |
– |
– |
– |
– |
– |
|
ML-DSA Key Pair Derive |
– |
– |
– |
– |
– |
– |
– |
– |
|
ML-DSA Public Key |
– |
– |
– |
– |
– |
– |
– |
– |
|
ML-KEM-512 |
– |
– |
– |
– |
– |
– |
– |
– |
|
ML-KEM-768 |
– |
– |
– |
– |
– |
– |
– |
– |
|
ML-KEM-1024 |
– |
– |
– |
– |
– |
– |
– |
– |
|
ML-KEM Key Pair Import |
– |
– |
– |
– |
– |
– |
– |
– |
|
ML-KEM Key Pair Export |
– |
– |
– |
– |
– |
– |
– |
– |
|
ML-KEM Key Pair Generate |
– |
– |
– |
– |
– |
– |
– |
– |
|
ML-KEM Key Pair Derive |
– |
– |
– |
– |
– |
– |
– |
– |
|
ML-KEM Public Key |
– |
– |
– |
– |
– |
– |
– |
– |
|
WPA3-SAE key |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
– |
– |
|
ASCON |
– |
– |
– |
– |
– |
– |
– |
– |
Key type |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
AES |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
Chacha20 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
ECC Key Pair Import |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
ECC Key Pair Export |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
ECC Key Pair Generate |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
ECC Key Pair Derive |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
ECC Public Key |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
RSA Key Pair Import |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
RSA Key Pair Export |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
RSA Key Pair Generate |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
RSA Key Pair Derive |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
RSA Public Key |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
XChaCha20 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
HMAC |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
HSS Public Key |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
LMS Public Key |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
XMSS Public Key |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
XMSS-MT Public Key |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-DSA-44 |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-DSA-65 |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-DSA-87 |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-DSA Key Pair Import |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-DSA Key Pair Export |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-DSA Key Pair Generate |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-DSA Key Pair Derive |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-DSA Public Key |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-KEM-512 |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-KEM-768 |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-KEM-1024 |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-KEM Key Pair Import |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-KEM Key Pair Export |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-KEM Key Pair Generate |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-KEM Key Pair Derive |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-KEM Public Key |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
WPA3-SAE PT key |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
ASCON |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
The following tables list the supported key types for nRF91 Series devices.
Key type |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
AES |
Experimental |
Supported |
Supported |
Supported |
|
Chacha20 |
Experimental |
Supported |
Supported |
Supported |
|
ECC Key Pair Import |
Experimental |
Supported |
Supported |
Supported |
|
ECC Key Pair Export |
Experimental |
Supported |
Supported |
Supported |
|
ECC Key Pair Generate |
Experimental |
Supported |
Supported |
Supported |
|
ECC Key Pair Derive |
Experimental |
Supported |
Supported |
Supported |
|
ECC Public Key |
Experimental |
Supported |
Supported |
Supported |
|
RSA Key Pair Import |
Experimental |
Supported |
Supported |
Supported |
|
RSA Key Pair Export |
Experimental |
Supported |
Supported |
Supported |
|
RSA Key Pair Generate |
Experimental |
Supported |
Supported |
Supported |
|
RSA Key Pair Derive |
Experimental |
Supported |
Supported |
Supported |
|
RSA Public Key |
Experimental |
Supported |
Supported |
Supported |
|
XChaCha20 |
– |
– |
– |
– |
|
HMAC |
Supported |
Supported |
Supported |
Supported |
|
HSS Public Key |
– |
– |
– |
– |
|
LMS Public Key |
– |
– |
– |
– |
|
XMSS Public Key |
– |
– |
– |
– |
|
XMSS-MT Public Key |
– |
– |
– |
– |
|
ML-DSA-44 |
– |
– |
– |
– |
|
ML-DSA-65 |
– |
– |
– |
– |
|
ML-DSA-87 |
– |
– |
– |
– |
|
ML-DSA Key Pair Import |
– |
– |
– |
– |
|
ML-DSA Key Pair Export |
– |
– |
– |
– |
|
ML-DSA Key Pair Generate |
– |
– |
– |
– |
|
ML-DSA Key Pair Derive |
– |
– |
– |
– |
|
ML-DSA Public Key |
– |
– |
– |
– |
|
ML-KEM-512 |
– |
– |
– |
– |
|
ML-KEM-768 |
– |
– |
– |
– |
|
ML-KEM-1024 |
– |
– |
– |
– |
|
ML-KEM Key Pair Import |
– |
– |
– |
– |
|
ML-KEM Key Pair Export |
– |
– |
– |
– |
|
ML-KEM Key Pair Generate |
– |
– |
– |
– |
|
ML-KEM Key Pair Derive |
– |
– |
– |
– |
|
ML-KEM Public Key |
– |
– |
– |
– |
|
WPA3-SAE key |
– |
– |
– |
– |
|
ASCON |
– |
– |
– |
– |
Key type |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
AES |
Supported |
Supported |
Supported |
Supported |
|
Chacha20 |
Supported |
Supported |
Supported |
Supported |
|
ECC Key Pair Import |
Supported |
Supported |
Supported |
Supported |
|
ECC Key Pair Export |
Supported |
Supported |
Supported |
Supported |
|
ECC Key Pair Generate |
Supported |
Supported |
Supported |
Supported |
|
ECC Key Pair Derive |
Supported |
Supported |
Supported |
Supported |
|
ECC Public Key |
Supported |
Supported |
Supported |
Supported |
|
RSA Key Pair Import |
Supported |
Supported |
Supported |
Supported |
|
RSA Key Pair Export |
Supported |
Supported |
Supported |
Supported |
|
RSA Key Pair Generate |
Supported |
Supported |
Supported |
Supported |
|
RSA Key Pair Derive |
Supported |
Supported |
Supported |
Supported |
|
RSA Public Key |
Supported |
Supported |
Supported |
Supported |
|
XChaCha20 |
Supported |
Supported |
Supported |
Supported |
|
HMAC |
Supported |
Supported |
Supported |
Supported |
|
HSS Public Key |
Experimental |
Experimental |
Experimental |
Experimental |
|
LMS Public Key |
Experimental |
Experimental |
Experimental |
Experimental |
|
XMSS Public Key |
Experimental |
Experimental |
Experimental |
Experimental |
|
XMSS-MT Public Key |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-DSA-44 |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-DSA-65 |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-DSA-87 |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-DSA Key Pair Import |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-DSA Key Pair Export |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-DSA Key Pair Generate |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-DSA Key Pair Derive |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-DSA Public Key |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-KEM-512 |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-KEM-768 |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-KEM-1024 |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-KEM Key Pair Import |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-KEM Key Pair Export |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-KEM Key Pair Generate |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-KEM Key Pair Derive |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-KEM Public Key |
Experimental |
Experimental |
Experimental |
Experimental |
|
WPA3-SAE key |
Experimental |
Experimental |
Experimental |
Experimental |
|
ASCON |
Experimental |
Experimental |
Experimental |
Experimental |
Key management
The following tables show the CONFIG_PSA_USE_* Kconfig options for configuring driver preferences.
Based on this setting, Oberon PSA Crypto selects the most appropriate driver for the management of the supported key types (selected with the corresponding CONFIG_PSA_WANT_*).
The following tables list the key management support for nRF52 Series devices.
Kconfig option |
Supported key types |
|---|---|
Kconfig option |
Supported key types |
|---|---|
Configuration automatically generated based on the enabled key types. Acts as software fallback for the other drivers. |
The following tables list the key management support for nRF53 Series devices.
Kconfig option |
Supported key types |
|---|---|
Kconfig option |
Supported key types |
|---|---|
Configuration automatically generated based on the enabled key types. Acts as software fallback for the other drivers. |
The following tables list the key management support for nRF54L Series devices.
Kconfig option |
Supported key types |
|---|---|
Kconfig option |
Supported key types |
|---|---|
Configuration automatically generated based on the enabled key types. Acts as software fallback for the other drivers. |
The following tables list the key management support for nRF91 Series devices.
Kconfig option |
Supported key types |
|---|---|
Kconfig option |
Supported key types |
|---|---|
Configuration automatically generated based on the enabled key types. Acts as software fallback for the other drivers. |
Cipher modes
The following tables show the CONFIG_PSA_WANT_* Kconfig options for configuring cipher modes that Oberon PSA Crypto should add support for in the application at compile time.
Based on this setting and the corresponding CONFIG_PSA_USE_* Kconfig option, Oberon PSA Crypto selects the most appropriate cipher driver for the supported cipher modes.
The options are grouped by Series and drivers available for the device Series, and support level for each device is listed.
Note
Key size configuration is supported as described in AES key size configuration, for all algorithms except the stream cipher.
The nrf_cc3xx driver is limited to AES key sizes of 128 bits on devices with Arm CryptoCell CC310.
The following tables list the supported cipher modes for nRF52 Series devices.
Cipher mode |
Configuration option |
nRF52840 |
|---|---|---|
ECB no padding |
Supported |
|
CBC no padding |
Supported |
|
CBC PKCS#7 padding |
Supported |
|
CTR |
Supported |
|
CCM* no tag |
– |
|
Stream cipher |
Supported |
Cipher mode |
Configuration option |
nRF52832 |
nRF52833 |
nRF52840 |
|---|---|---|---|---|
ECB no padding |
Supported |
Supported |
Supported |
|
CBC no padding |
Supported |
Supported |
Supported |
|
CBC PKCS#7 padding |
Supported |
Supported |
Supported |
|
CTR |
Supported |
Supported |
Supported |
|
CCM* no tag |
Supported |
Supported |
Supported |
|
Stream cipher |
Supported |
Supported |
Supported |
The following tables list the supported cipher modes for nRF53 Series devices.
Cipher mode |
Configuration option |
nRF5340 |
|---|---|---|
ECB no padding |
Supported |
|
CBC no padding |
Supported |
|
CBC PKCS#7 padding |
Supported |
|
CTR |
Supported |
|
CCM* no tag |
– |
|
Stream cipher |
Supported |
Cipher mode |
Configuration option |
nRF5340 |
|---|---|---|
ECB no padding |
Supported |
|
CBC no padding |
Supported |
|
CBC PKCS#7 padding |
Supported |
|
CTR |
Supported |
|
CCM* no tag |
Supported |
|
Stream cipher |
Supported |
The following tables list the supported cipher modes for nRF54H Series devices.
The nRF54H Series does not use the CRACEN driver directly for cryptographic operations. The driver is used alongside Oberon PSA Core and the CRACEN driver within the IronSide Secure Enclave firmware.
The IronSide SE implements a fixed set of features and algorithms that cannot be changed by the user.
Cipher mode |
Supported directive |
nRF54H20 |
|---|---|---|
ECB no padding |
|
Supported |
CBC no padding |
|
Supported |
CBC PKCS#7 padding |
|
Supported |
CTR |
|
Supported |
CCM* no tag |
|
– |
Stream cipher |
|
– |
The following tables list the supported cipher modes for nRF54L Series devices.
Cipher mode |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
ECB no padding |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
CBC no padding |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
CBC PKCS#7 padding |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
CTR |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
CCM* no tag |
– |
– |
– |
– |
– |
– |
– |
– |
|
Stream cipher |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
Note
The following limitations apply for nRF54LM20A, nRF54LM20B, and nRF54LV10A when using the CRACEN driver:
192-bit keys are not supported. See also AES key size configuration.
Cipher mode |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
ECB no padding |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
CBC no padding |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
CBC PKCS#7 padding |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
CTR |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
CCM* no tag |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
Stream cipher |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
The following tables list the supported cipher modes for nRF91 Series devices.
Cipher mode |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
ECB no padding |
Experimental |
Supported |
Supported |
Supported |
|
CBC no padding |
Experimental |
Supported |
Supported |
Supported |
|
CBC PKCS#7 padding |
Experimental |
Supported |
Supported |
Supported |
|
CTR |
Experimental |
Supported |
Supported |
Supported |
|
CCM* no tag |
– |
– |
– |
– |
|
Stream cipher |
Experimental |
Supported |
Supported |
Supported |
Cipher mode |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
ECB no padding |
Supported |
Supported |
Supported |
Supported |
|
CBC no padding |
Supported |
Supported |
Supported |
Supported |
|
CBC PKCS#7 padding |
Supported |
Supported |
Supported |
Supported |
|
CTR |
Supported |
Supported |
Supported |
Supported |
|
CCM* no tag |
Supported |
Supported |
Supported |
Supported |
|
Stream cipher |
Supported |
Supported |
Supported |
Supported |
Cipher driver
The following tables show the CONFIG_PSA_USE_* Kconfig options for configuring driver preferences.
Based on this setting, Oberon PSA Crypto selects the most appropriate driver for the supported cipher modes (selected with the corresponding CONFIG_PSA_WANT_*).
The following tables list the cipher driver support for nRF52 Series devices.
Kconfig option |
Supported cipher modes |
|---|---|
Kconfig option |
Supported cipher modes |
|---|---|
Configuration automatically generated based on the enabled cipher modes. Acts as software fallback for the other drivers. |
The following tables list the cipher driver support for nRF53 Series devices.
Kconfig option |
Supported cipher modes |
|---|---|
Kconfig option |
Supported cipher modes |
|---|---|
Configuration automatically generated based on the enabled cipher modes. Acts as software fallback for the other drivers. |
The following tables list the cipher driver support for nRF54L Series devices.
Kconfig option |
Supported cipher modes |
|---|---|
Kconfig option |
Supported cipher modes |
|---|---|
Configuration automatically generated based on the enabled cipher modes. Acts as software fallback for the other drivers. |
The following tables list the cipher driver support for nRF91 Series devices.
Kconfig option |
Supported cipher modes |
|---|---|
Kconfig option |
Supported cipher modes |
|---|---|
Configuration automatically generated based on the enabled cipher modes. Acts as software fallback for the other drivers. |
Key agreement algorithms
The following tables show the CONFIG_PSA_WANT_* Kconfig options for configuring key agreement algorithms that Oberon PSA Crypto should add support for in the application at compile time.
Based on this setting and the corresponding CONFIG_PSA_USE_* Kconfig option, Oberon PSA Crypto selects the most appropriate driver for the supported key agreement algorithms.
The options are grouped by Series and drivers available for the device Series, and support level for each device is listed.
Note
The algorithm support when using ECC key types is dependent on one or more Kconfig options enabling curve support according to ECC curve types.
The following tables list the supported key agreement algorithms for nRF52 Series devices.
Key agreement algorithm |
Configuration option |
nRF52840 |
|---|---|---|
ECDH |
Supported |
Key agreement algorithm |
Configuration option |
nRF52832 |
nRF52833 |
nRF52840 |
|---|---|---|---|---|
ECDH |
Supported |
Supported |
Supported |
The following tables list the supported key agreement algorithms for nRF53 Series devices.
The following tables list the supported key agreement algorithms for nRF54H Series devices.
The nRF54H Series does not use the CRACEN driver directly for cryptographic operations. The driver is used alongside Oberon PSA Core and the CRACEN driver within the IronSide Secure Enclave firmware.
The IronSide SE implements a fixed set of features and algorithms that cannot be changed by the user.
Key agreement algorithm |
Supported directive |
nRF54H20 |
|---|---|---|
ECDH |
|
Supported |
The following tables list the supported key agreement algorithms for nRF54L Series devices.
Key agreement algorithm |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
ECDH |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
Key agreement algorithm |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
ECDH |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
The following tables list the supported key agreement algorithms for nRF91 Series devices.
Key agreement algorithm |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
ECDH |
Experimental |
Supported |
Supported |
Supported |
Key agreement algorithm |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
ECDH |
Supported |
Supported |
Supported |
Supported |
Key agreement driver
The following tables show the CONFIG_PSA_USE_* Kconfig options for configuring driver preferences.
Based on this setting, Oberon PSA Crypto selects the most appropriate driver for the supported key agreement algorithms (selected with the corresponding CONFIG_PSA_WANT_*).
The following tables list the key agreement driver support for nRF52 Series devices.
Kconfig option |
Supported key agreement algorithms |
|---|---|
Kconfig option |
Supported key agreement algorithms |
|---|---|
Configuration automatically generated based on the enabled key agreement algorithms. Acts as software fallback for the other drivers. |
|
The following tables list the key agreement driver support for nRF53 Series devices.
Kconfig option |
Supported key agreement algorithms |
|---|---|
Kconfig option |
Supported key agreement algorithms |
|---|---|
Configuration automatically generated based on the enabled key agreement algorithms. Acts as software fallback for the other drivers. |
|
The following tables list the key agreement driver support for nRF54L Series devices.
Kconfig option |
Supported key agreement algorithms |
|---|---|
Kconfig option |
Supported key agreement algorithms |
|---|---|
Configuration automatically generated based on the enabled key agreement algorithms. Acts as software fallback for the other drivers. |
|
The following tables list the key agreement driver support for nRF91 Series devices.
Kconfig option |
Supported key agreement algorithms |
|---|---|
Kconfig option |
Supported key agreement algorithms |
|---|---|
Configuration automatically generated based on the enabled key agreement algorithms. Acts as software fallback for the other drivers. |
|
Key encapsulation algorithms
The following tables show the CONFIG_PSA_WANT_* Kconfig options for configuring key encapsulation algorithms that Oberon PSA Crypto should add support for in the application at compile time.
Based on this setting and the corresponding CONFIG_PSA_USE_* Kconfig option, Oberon PSA Crypto selects the most appropriate driver for the supported key encapsulation algorithms.
The options are grouped by Series and drivers available for the device Series, and support level for each device is listed.
The following tables list the supported key encapsulation algorithms for nRF52 Series devices.
Key encapsulation algorithm |
Configuration option |
nRF52832 |
nRF52833 |
nRF52840 |
|---|---|---|---|---|
ML-KEM |
Experimental |
Experimental |
Experimental |
The following tables list the supported key encapsulation algorithms for nRF53 Series devices.
Key encapsulation algorithm |
Configuration option |
nRF5340 |
|---|---|---|
ML-KEM |
Experimental |
The following tables list the supported key encapsulation algorithms for nRF54L Series devices.
Key encapsulation algorithm |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
ML-KEM |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
The following tables list the supported key encapsulation algorithms for nRF91 Series devices.
Key encapsulation algorithm |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
ML-KEM |
Experimental |
Experimental |
Experimental |
Experimental |
Key encapsulation driver
The following tables show the CONFIG_PSA_USE_* Kconfig options for configuring driver preferences.
Based on this setting, Oberon PSA Crypto selects the most appropriate driver for the supported key encapsulation algorithms (selected with the corresponding CONFIG_PSA_WANT_*).
The following tables list the key encapsulation driver support for nRF52 Series devices.
Kconfig option |
Supported key encapsulation algorithms |
|---|---|
Configuration automatically generated based on the enabled key encapsulation algorithms. Acts as software fallback for the other drivers. |
The following tables list the key encapsulation driver support for nRF53 Series devices.
Kconfig option |
Supported key encapsulation algorithms |
|---|---|
Configuration automatically generated based on the enabled key encapsulation algorithms. Acts as software fallback for the other drivers. |
The following tables list the key encapsulation driver support for nRF54L Series devices.
Kconfig option |
Supported key encapsulation algorithms |
|---|---|
Configuration automatically generated based on the enabled key encapsulation algorithms. Acts as software fallback for the other drivers. |
The following tables list the key encapsulation driver support for nRF91 Series devices.
Kconfig option |
Supported key encapsulation algorithms |
|---|---|
Configuration automatically generated based on the enabled key encapsulation algorithms. Acts as software fallback for the other drivers. |
KDF algorithms
The following tables show the CONFIG_PSA_WANT_* Kconfig options for configuring KDF algorithms that Oberon PSA Crypto should add support for in the application at compile time.
Based on this setting and the corresponding CONFIG_PSA_USE_* Kconfig option, Oberon PSA Crypto selects the most appropriate driver for the supported KDF algorithms.
The options are grouped by Series and drivers available for the device Series, and support level for each device is listed.
The following table lists the supported KDF algorithms for nRF52 Series devices.
KDF algorithm |
Configuration option |
nRF52832 |
nRF52833 |
nRF52840 |
|---|---|---|---|---|
HKDF |
Supported |
Supported |
Supported |
|
HKDF-Extract |
Supported |
Supported |
Supported |
|
HKDF-Expand |
Supported |
Supported |
Supported |
|
PBKDF2-HMAC |
Supported |
Supported |
Supported |
|
PBKDF2-AES-CMAC-PRF-128 |
Supported |
Supported |
Supported |
|
TLS 1.2 PRF |
Supported |
Supported |
Supported |
|
TLS 1.2 PSK to MS |
Supported |
Supported |
Supported |
|
TLS 1.2 EC J-PAKE to PMS |
Supported |
Supported |
Supported |
|
SP 800-108r1 CMAC w/counter |
Supported |
Supported |
Supported |
|
SP 800-108 HMAC counter mode |
Supported |
Supported |
Supported |
|
WPA3-SAE hash-to-element |
– |
– |
– |
The following table lists the supported KDF algorithms for nRF53 Series devices.
KDF algorithm |
Configuration option |
nRF5340 |
|---|---|---|
HKDF |
Supported |
|
HKDF-Extract |
Supported |
|
HKDF-Expand |
Supported |
|
PBKDF2-HMAC |
Supported |
|
PBKDF2-AES-CMAC-PRF-128 |
Supported |
|
TLS 1.2 PRF |
Supported |
|
TLS 1.2 PSK to MS |
Supported |
|
TLS 1.2 EC J-PAKE to PMS |
Supported |
|
SP 800-108r1 CMAC w/counter |
Supported |
|
SP 800-108 HMAC counter mode |
Supported |
|
WPA3-SAE hash-to-element |
– |
The following table lists the supported KDF algorithms for nRF54H Series devices.
The nRF54H Series does not use the CRACEN driver directly for cryptographic operations. The driver is used alongside Oberon PSA Core and the CRACEN driver within the IronSide Secure Enclave firmware.
The IronSide SE implements a fixed set of features and algorithms that cannot be changed by the user.
KDF algorithm |
Supported directive |
nRF54H20 |
|---|---|---|
HKDF |
|
Supported |
HKDF-Extract |
|
Supported |
HKDF-Expand |
|
Supported |
PBKDF2-HMAC |
|
Supported |
PBKDF2-AES-CMAC-PRF-128 |
|
Supported |
TLS 1.2 PRF |
|
Supported |
TLS 1.2 PSK to MS |
|
Supported |
TLS 1.2 EC J-PAKE to PMS |
|
Supported |
SP 800-108r1 CMAC w/counter |
|
Supported |
SP 800-108 HMAC counter mode |
|
– |
WPA3-SAE hash-to-element |
|
– |
The following tables list the supported KDF algorithms for nRF54L Series devices.
KDF algorithm |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
HKDF |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
HKDF-Extract |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
HKDF-Expand |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
PBKDF2-HMAC |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
PBKDF2-AES-CMAC-PRF-128 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
TLS 1.2 PRF |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
TLS 1.2 PSK to MS |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
TLS 1.2 EC J-PAKE to PMS |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
SP 800-108r1 CMAC w/counter |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
SP 800-108 HMAC counter mode |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
WPA3-SAE hash-to-element |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
– |
– |
KDF algorithm |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
HKDF |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
HKDF-Extract |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
HKDF-Expand |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
PBKDF2-HMAC |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
PBKDF2-AES-CMAC-PRF-128 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
TLS 1.2 PRF |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
TLS 1.2 PSK to MS |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
TLS 1.2 EC J-PAKE to PMS |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
SP 800-108r1 CMAC w/counter |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
SP 800-108 HMAC counter mode |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
WPA3-SAE hash-to-element |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
The following table lists the supported KDF algorithms for nRF91 Series devices.
KDF algorithm |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
HKDF |
Supported |
Supported |
Supported |
Supported |
|
HKDF-Extract |
Supported |
Supported |
Supported |
Supported |
|
HKDF-Expand |
Supported |
Supported |
Supported |
Supported |
|
PBKDF2-HMAC |
Supported |
Supported |
Supported |
Supported |
|
PBKDF2-AES-CMAC-PRF-128 |
Supported |
Supported |
Supported |
Supported |
|
TLS 1.2 PRF |
Supported |
Supported |
Supported |
Supported |
|
TLS 1.2 PSK to MS |
Supported |
Supported |
Supported |
Supported |
|
TLS 1.2 EC J-PAKE to PMS |
Supported |
Supported |
Supported |
Supported |
|
SP 800-108r1 CMAC w/counter |
Supported |
Supported |
Supported |
Supported |
|
SP 800-108 HMAC counter mode |
Supported |
Supported |
Supported |
Supported |
|
WPA3-SAE hash-to-element |
– |
– |
– |
– |
Key derivation function driver
The following tables show the CONFIG_PSA_USE_* Kconfig options for configuring driver preferences.
Based on this setting, Oberon PSA Crypto selects the most appropriate driver for the supported KDF algorithms (selected with the corresponding CONFIG_PSA_WANT_*).
The following table lists the KDF driver support for nRF52 Series devices.
Kconfig option |
Supported KDF algorithms |
|---|---|
Configuration automatically generated based on the enabled KDF algorithms. Acts as software fallback for the other drivers. |
The following table lists the KDF driver support for nRF53 Series devices.
Kconfig option |
Supported KDF algorithms |
|---|---|
Configuration automatically generated based on the enabled KDF algorithms. Acts as software fallback for the other drivers. |
The following tables list the KDF driver support for nRF54L Series devices.
Kconfig option |
Supported KDF algorithms |
|---|---|
Kconfig option |
Supported KDF algorithms |
|---|---|
Configuration automatically generated based on the enabled KDF algorithms. Acts as software fallback for the other drivers. |
The following table lists the KDF driver support for nRF91 Series devices.
Kconfig option |
Supported KDF algorithms |
|---|---|
Configuration automatically generated based on the enabled KDF algorithms. Acts as software fallback for the other drivers. |
Key wrapping algorithms
The following tables show the CONFIG_PSA_WANT_* Kconfig options for configuring AES key wrapping algorithms that Oberon PSA Crypto should add support for in the application at compile time.
Based on this setting and the corresponding CONFIG_PSA_USE_* Kconfig option, Oberon PSA Crypto selects the most appropriate driver for the supported AES key wrapping algorithms.
The options are grouped by Series and drivers available for the device Series, and support level for each device is listed.
The following tables list the supported AES key wrapping algorithms for nRF52 Series devices.
Key wrapping algorithm |
Configuration option |
nRF52832 |
nRF52833 |
nRF52840 |
|---|---|---|---|---|
AES Key wrap (AES-KW) |
Experimental |
Experimental |
Experimental |
|
AES Key wrap with Padding (AES-KWP) |
Experimental |
Experimental |
Experimental |
The following tables list the supported AES key wrapping algorithms for nRF53 Series devices.
Key wrapping algorithm |
Configuration option |
nRF5340 |
|---|---|---|
AES Key wrap (AES-KW) |
Experimental |
|
AES Key wrap with Padding (AES-KWP) |
Experimental |
The following tables list the supported AES key wrapping algorithms for nRF54L Series devices.
Key wrapping algorithm |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
AES Key wrap (AES-KW) |
Experimental |
Experimental |
Experimental |
Experimental (with exceptions, see note) |
Experimental (with exceptions, see note) |
Experimental (with exceptions, see note) |
– |
– |
|
AES Key wrap with Padding (AES-KWP) |
Experimental |
Experimental |
Experimental |
Experimental (with exceptions, see note) |
Experimental (with exceptions, see note) |
Experimental (with exceptions, see note) |
– |
– |
Note
The following limitations apply for nRF54LM20A, nRF54LM20B, and nRF54LV10A when using the CRACEN driver:
192-bit keys are not supported. See also AES key size configuration.
Key wrapping algorithm |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
AES Key wrap (AES-KW) |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
AES Key wrap with Padding (AES-KWP) |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
The following tables list the supported AES key wrapping algorithms for nRF91 Series devices.
Key wrapping algorithm |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
AES Key wrap (AES-KW) |
Experimental |
Experimental |
Experimental |
Experimental |
|
AES Key wrap with Padding (AES-KWP) |
Experimental |
Experimental |
Experimental |
Experimental |
MAC algorithms
The following tables show the CONFIG_PSA_WANT_* Kconfig options for configuring MAC algorithms that Oberon PSA Crypto should add support for in the application at compile time.
Based on this setting and the corresponding CONFIG_PSA_USE_* Kconfig option, Oberon PSA Crypto selects the most appropriate driver for the supported MAC algorithms.
The options are grouped by Series and drivers available for the device Series, and support level for each device is listed.
Note
Key size configuration for CMAC is supported as described in AES key size configuration.
The following tables list the supported MAC algorithms for nRF52 Series devices.
MAC algorithm |
Configuration option |
nRF52840 |
|---|---|---|
CMAC |
Supported |
|
HMAC |
Supported |
Note
CONFIG_PSA_WANT_ALG_CMACis limited to AES key sizes of 128 bits on devices with Arm CryptoCell CC310CONFIG_PSA_WANT_ALG_HMACis limited to SHA-1, SHA-224, and SHA-256
MAC algorithm |
Configuration option |
nRF52832 |
nRF52833 |
nRF52840 |
|---|---|---|---|---|
CMAC |
Supported |
Supported |
Supported |
|
HMAC |
Supported |
Supported |
Supported |
The following tables list the supported MAC algorithms for nRF53 Series devices.
MAC algorithm |
Configuration option |
nRF5340 |
|---|---|---|
CMAC |
Supported |
|
HMAC |
Supported |
Note
CONFIG_PSA_WANT_ALG_CMACis limited to AES key sizes of 128 bits on devices with Arm CryptoCell CC310CONFIG_PSA_WANT_ALG_HMACis limited to SHA-1, SHA-224, and SHA-256
MAC algorithm |
Configuration option |
nRF5340 |
|---|---|---|
CMAC |
Supported |
|
HMAC |
Supported |
The following tables list the supported MAC algorithms for nRF54H Series devices.
The nRF54H Series does not use the CRACEN driver directly for cryptographic operations. The driver is used alongside Oberon PSA Core and the CRACEN driver within the IronSide Secure Enclave firmware.
The IronSide SE implements a fixed set of features and algorithms that cannot be changed by the user.
MAC algorithm |
Supported directive |
nRF54H20 |
|---|---|---|
CMAC |
|
Supported |
HMAC |
|
Supported |
Note
On the nRF54H20 SoC, 192-bit keys are not supported. See also AES key size configuration.
The following tables list the supported MAC algorithms for nRF54L Series devices.
MAC algorithm |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
CMAC |
Supported |
Supported |
Supported |
Supported (with exceptions, see note) |
Supported (with exceptions, see note) |
Supported (with exceptions, see note) |
– |
– |
|
HMAC |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
Note
The following limitations apply for nRF54LM20A, nRF54LM20B, and nRF54LV10A when using the CRACEN driver:
192-bit keys are not supported. See also AES key size configuration.
MAC algorithm |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
CMAC |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
HMAC |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
The following tables list the supported MAC algorithms for nRF91 Series devices.
MAC algorithm |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
CMAC |
Supported |
Supported |
Supported |
Supported |
|
HMAC |
Supported |
Supported |
Supported |
Supported |
Note
CONFIG_PSA_WANT_ALG_CMACis limited to AES key sizes of 128 bits on devices with Arm CryptoCell CC310CONFIG_PSA_WANT_ALG_HMACis limited to SHA-1, SHA-224, and SHA-256
MAC algorithm |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
CMAC |
Supported |
Supported |
Supported |
Supported |
|
HMAC |
Supported |
Supported |
Supported |
Supported |
MAC driver
The following tables show the CONFIG_PSA_USE_* Kconfig options for configuring driver preferences.
Based on this setting, Oberon PSA Crypto selects the most appropriate driver for the supported MAC algorithms (selected with the corresponding CONFIG_PSA_WANT_*).
The following tables list the MAC driver support for nRF52 Series devices.
Kconfig option |
Supported MAC algorithms |
|---|---|
CONFIG_PSA_WANT_ALG_CMAC (limited to AES key sizes of 128 bits on devices with Arm CryptoCell CC310)CONFIG_PSA_WANT_ALG_HMAC (limited to SHA-1, SHA-224, and SHA-256) |
Kconfig option |
Supported MAC algorithms |
|---|---|
Configuration automatically generated based on the enabled MAC algorithms. Acts as software fallback for the other drivers. |
The following tables list the MAC driver support for nRF53 Series devices.
Kconfig option |
Supported MAC algorithms |
|---|---|
CONFIG_PSA_WANT_ALG_CMAC (limited to AES key sizes of 128 bits on devices with Arm CryptoCell CC310)CONFIG_PSA_WANT_ALG_HMAC (limited to SHA-1, SHA-224, and SHA-256) |
Kconfig option |
Supported MAC algorithms |
|---|---|
Configuration automatically generated based on the enabled MAC algorithms. Acts as software fallback for the other drivers. |
The following tables list the MAC driver support for nRF54L Series devices.
Kconfig option |
Supported MAC algorithms |
|---|---|
CONFIG_PSA_WANT_ALG_CMAC (all AES key sizes except the 192-bit key size on nRF54LM20A, nRF54LM20B, and nRF54LV10A) |
Kconfig option |
Supported MAC algorithms |
|---|---|
Configuration automatically generated based on the enabled MAC algorithms. Acts as software fallback for the other drivers. |
The following tables list the MAC driver support for nRF91 Series devices.
Kconfig option |
Supported MAC algorithms |
|---|---|
CONFIG_PSA_WANT_ALG_CMAC (limited to AES key sizes of 128 bits on devices with Arm CryptoCell CC310)CONFIG_PSA_WANT_ALG_HMAC (limited to SHA-1, SHA-224, and SHA-256) |
Kconfig option |
Supported MAC algorithms |
|---|---|
Configuration automatically generated based on the enabled MAC algorithms. Acts as software fallback for the other drivers. |
AEAD algorithms
The following tables show the CONFIG_PSA_WANT_* Kconfig options for configuring AEAD algorithms that Oberon PSA Crypto should add support for in the application at compile time.
Based on this setting and the corresponding CONFIG_PSA_USE_* Kconfig option, Oberon PSA Crypto selects the most appropriate driver for the supported AEAD algorithms.
The options are grouped by Series and drivers available for the device Series, and support level for each device is listed.
Note
Key size configuration for CCM and GCM is supported as described in AES key size configuration.
The following tables list the supported AEAD algorithms for nRF52 Series devices.
AEAD algorithm |
Configuration option |
nRF52840 |
|---|---|---|
CCM |
Supported |
|
GCM |
– |
|
ChaCha20-Poly1305 |
Supported |
|
XChaCha20-Poly1305 |
– |
|
ASCON AEAD128 |
– |
Note
CONFIG_PSA_WANT_ALG_CCM is limited to AES key sizes of 128 bits on devices with Arm CryptoCell CC310.
AEAD algorithm |
Configuration option |
nRF52832 |
nRF52833 |
nRF52840 |
|---|---|---|---|---|
CCM |
Supported |
Supported |
Supported |
|
GCM |
Supported |
Supported |
Supported |
|
ChaCha20-Poly1305 |
Supported |
Supported |
Supported |
|
XChaCha20-Poly1305 |
Experimental |
Experimental |
Experimental |
|
ASCON AEAD128 |
Experimental |
Experimental |
Experimental |
The following tables list the supported AEAD algorithms for nRF53 Series devices.
AEAD algorithm |
Configuration option |
nRF5340 |
|---|---|---|
CCM |
Supported |
|
GCM |
Supported |
|
ChaCha20-Poly1305 |
Supported |
|
XChaCha20-Poly1305 |
– |
|
ASCON AEAD128 |
– |
AEAD algorithm |
Configuration option |
nRF5340 |
|---|---|---|
CCM |
Supported |
|
GCM |
Supported |
|
ChaCha20-Poly1305 |
Supported |
|
XChaCha20-Poly1305 |
Experimental |
|
ASCON AEAD128 |
Experimental |
The following tables list the supported AEAD algorithms for nRF54H Series devices.
The nRF54H Series does not use the CRACEN driver directly for cryptographic operations. The driver is used alongside Oberon PSA Core and the CRACEN driver within the IronSide Secure Enclave firmware.
The IronSide SE implements a fixed set of features and algorithms that cannot be changed by the user.
AEAD algorithm |
Supported directive |
nRF54H20 |
|---|---|---|
CCM |
|
Supported |
GCM |
|
Supported |
ChaCha20-Poly1305 |
|
Supported |
XChaCha20-Poly1305 |
|
– |
Note
CRACEN only supports a 96-bit IV for AES GCM.
The following tables list the supported AEAD algorithms for nRF54L Series devices.
AEAD algorithm |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
CCM |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
GCM |
Supported |
Supported |
Supported |
Supported (with exceptions, see note) |
Supported (with exceptions, see note) |
Supported (with exceptions, see note) |
– |
– |
|
ChaCha20-Poly1305 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
XChaCha20-Poly1305 |
– |
– |
– |
– |
– |
– |
– |
– |
|
ASCON AEAD128 |
– |
– |
– |
– |
– |
– |
– |
– |
Note
CRACEN only supports a 96-bit IV for AES GCM.
The following limitations apply for nRF54LM20A, nRF54LM20B, and nRF54LV10A when using the CRACEN driver:
192-bit keys are not supported. See also AES key size configuration.
AEAD algorithm |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
CCM |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
GCM |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
ChaCha20-Poly1305 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
XChaCha20-Poly1305 |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
ASCON AEAD128 |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
The following tables list the supported AEAD algorithms for nRF91 Series devices.
AEAD algorithm |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
CCM |
Supported |
Supported |
Supported |
Supported |
|
GCM |
– |
– |
– |
– |
|
ChaCha20-Poly1305 |
Supported |
Supported |
Supported |
Supported |
|
XChaCha20-Poly1305 |
– |
– |
– |
– |
|
ASCON AEAD128 |
– |
– |
– |
– |
Note
CONFIG_PSA_WANT_ALG_CCM is limited to AES key sizes of 128 bits on devices with Arm CryptoCell CC310.
AEAD algorithm |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
CCM |
Supported |
Supported |
Supported |
Supported |
|
GCM |
Supported |
Supported |
Supported |
Supported |
|
ChaCha20-Poly1305 |
Supported |
Supported |
Supported |
Supported |
|
XChaCha20-Poly1305 |
Experimental |
Experimental |
Experimental |
Experimental |
|
ASCON AEAD128 |
Experimental |
Experimental |
Experimental |
Experimental |
AEAD driver
The following tables show the CONFIG_PSA_USE_* Kconfig options for configuring driver preferences.
Based on this setting, Oberon PSA Crypto selects the most appropriate driver for the supported AEAD algorithms (selected with the corresponding CONFIG_PSA_WANT_*).
The following tables list the AEAD driver support for nRF52 Series devices.
Kconfig option |
Supported AEAD algorithms |
|---|---|
CONFIG_PSA_WANT_ALG_CCM (limited to AES key sizes of 128 bits on devices with Arm CryptoCell CC310) |
Kconfig option |
Supported AEAD algorithms |
|---|---|
Configuration automatically generated based on the enabled AEAD algorithms. Acts as software fallback for the other drivers. |
The following tables list the AEAD driver support for nRF53 Series devices.
Kconfig option |
Supported AEAD algorithms |
|---|---|
Kconfig option |
Supported AEAD algorithms |
|---|---|
Configuration automatically generated based on the enabled AEAD algorithms. Acts as software fallback for the other drivers. |
The following tables list the AEAD driver support for nRF54L Series devices.
Kconfig option |
Supported AEAD algorithms |
|---|---|
CONFIG_PSA_WANT_ALG_GCM (all AES key sizes except the 192-bit key size on nRF54LM20A, nRF54LM20B, and nRF54LV10A) |
Kconfig option |
Supported AEAD algorithms |
|---|---|
Configuration automatically generated based on the enabled AEAD algorithms. Acts as software fallback for the other drivers. |
The following tables list the AEAD driver support for nRF91 Series devices.
Kconfig option |
Supported AEAD algorithms |
|---|---|
CONFIG_PSA_WANT_ALG_CCM (limited to AES key sizes of 128 bits on devices with Arm CryptoCell CC310) |
Kconfig option |
Supported AEAD algorithms |
|---|---|
Configuration automatically generated based on the enabled AEAD algorithms. Acts as software fallback for the other drivers. |
Asymmetric signature algorithms
The following tables show the CONFIG_PSA_WANT_* Kconfig options for configuring asymmetric signature algorithms that Oberon PSA Crypto should add support for in the application at compile time.
Based on this setting and the corresponding CONFIG_PSA_USE_* Kconfig option, Oberon PSA Crypto selects the most appropriate driver for the supported asymmetric signature algorithms.
The options are grouped by Series and drivers available for the device Series, and support level for each device is listed.
Note
The algorithm support when using ECC key types is dependent on one or more Kconfig options enabling curve support according to ECC curve types.
RSA key size configuration is supported as described in RSA key size configuration.
The following tables list the supported asymmetric signature algorithms for nRF52 Series devices.
Asymmetric signature algorithm |
Configuration option |
nRF52840 |
|---|---|---|
ECDSA |
Supported |
|
ECDSA without hashing |
Supported |
|
ECDSA (deterministic) |
Supported |
|
PureEdDSA |
Supported |
|
HashEdDSA Edwards25519 |
– |
|
HashEdDSA Edwards448 |
– |
|
RSA PKCS#1 v1.5 sign |
Supported |
|
RSA PSS |
Supported |
|
HSS |
– |
|
LMS |
– |
|
ML-DSA |
– |
|
XMSS |
– |
|
XMSS-MT |
– |
Asymmetric signature algorithm |
Configuration option |
nRF52832 |
nRF52833 |
nRF52840 |
|---|---|---|---|---|
ECDSA |
Supported |
Supported |
Supported |
|
ECDSA without hashing |
Supported |
Supported |
Supported |
|
ECDSA (deterministic) |
Supported |
Supported |
Supported |
|
PureEdDSA |
Supported |
Supported |
Supported |
|
HashEdDSA Edwards25519 |
– |
– |
– |
|
HashEdDSA Edwards448 |
– |
– |
– |
|
RSA PKCS#1 v1.5 sign |
Supported |
Supported |
Supported |
|
RSA PSS |
Supported |
Supported |
Supported |
|
HSS |
Experimental |
Experimental |
Experimental |
|
LMS |
Experimental |
Experimental |
Experimental |
|
ML-DSA |
Experimental |
Experimental |
Experimental |
|
XMSS |
Experimental |
Experimental |
Experimental |
|
XMSS-MT |
Experimental |
Experimental |
Experimental |
|
Hash ML-DSA |
Experimental |
Experimental |
Experimental |
|
Deterministic ML-DSA |
Experimental |
Experimental |
Experimental |
|
Deterministic Hash ML-DSA |
Experimental |
Experimental |
Experimental |
The following tables list the supported asymmetric signature algorithms for nRF53 Series devices.
Asymmetric signature algorithm |
Configuration option |
nRF5340 |
|---|---|---|
ECDSA |
Supported |
|
ECDSA without hashing |
Supported |
|
ECDSA (deterministic) |
Supported |
|
PureEdDSA |
Supported |
|
HashEdDSA Edwards25519 |
– |
|
HashEdDSA Edwards448 |
– |
|
RSA PKCS#1 v1.5 sign |
Supported |
|
RSA PSS |
Supported |
|
HSS |
– |
|
LMS |
– |
|
ML-DSA |
– |
|
XMSS |
– |
|
XMSS-MT |
– |
Asymmetric signature algorithm |
Configuration option |
nRF5340 |
|---|---|---|
ECDSA |
Supported |
|
ECDSA without hashing |
Supported |
|
ECDSA (deterministic) |
Supported |
|
PureEdDSA |
Supported |
|
HashEdDSA Edwards25519 |
– |
|
HashEdDSA Edwards448 |
– |
|
RSA PKCS#1 v1.5 sign |
Supported |
|
RSA PSS |
Supported |
|
HSS |
Experimental |
|
LMS |
Experimental |
|
ML-DSA |
Experimental |
|
XMSS |
Experimental |
|
XMSS-MT |
Experimental |
|
Hash ML-DSA |
Experimental |
|
Deterministic ML-DSA |
Experimental |
|
Deterministic Hash ML-DSA |
Experimental |
Note
CONFIG_PSA_WANT_ALG_ECDSAis limited to ECC curve types secp224r1, secp256r1, and secp384r1.CONFIG_PSA_WANT_ALG_PURE_EDDSAis limited to ECC curve type Ed25519.
The following tables list the supported asymmetric signature algorithms for nRF54H Series devices.
The nRF54H Series does not use the CRACEN driver directly for cryptographic operations. The driver is used alongside Oberon PSA Core and the CRACEN driver within the IronSide Secure Enclave firmware.
The IronSide SE implements a fixed set of features and algorithms that cannot be changed by the user.
Asymmetric signature algorithm |
Supported directive |
nRF54H20 |
|---|---|---|
ECDSA |
|
Supported |
ECDSA without hashing |
|
Supported |
ECDSA (deterministic) |
|
Supported |
PureEdDSA |
|
Supported |
HashEdDSA Edwards25519 |
|
Supported |
HashEdDSA Edwards448 |
|
– |
RSA PKCS#1 v1.5 sign |
|
– |
RSA PSS |
|
– |
HSS |
|
– |
LMS |
|
– |
ML-DSA |
|
– |
XMSS |
|
– |
XMSS-MT |
|
– |
The following tables list the supported asymmetric signature algorithms for nRF54L Series devices.
Asymmetric signature algorithm |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
ECDSA |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
ECDSA without hashing |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
ECDSA (deterministic) |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
PureEdDSA |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
HashEdDSA Edwards25519 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
HashEdDSA Edwards448 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
RSA PKCS#1 v1.5 sign |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
RSA PSS |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
HSS |
– |
– |
– |
– |
– |
– |
– |
– |
|
LMS |
– |
– |
– |
– |
– |
– |
– |
– |
|
ML-DSA |
– |
– |
– |
– |
– |
– |
– |
– |
|
XMSS |
– |
– |
– |
– |
– |
– |
– |
– |
|
XMSS-MT |
– |
– |
– |
– |
– |
– |
– |
– |
Asymmetric signature algorithm |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
ECDSA |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
ECDSA without hashing |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
ECDSA (deterministic) |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
PureEdDSA |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
HashEdDSA Edwards25519 |
– |
– |
– |
– |
– |
– |
– |
– |
|
HashEdDSA Edwards448 |
– |
– |
– |
– |
– |
– |
– |
– |
|
RSA PKCS#1 v1.5 sign |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
RSA PSS |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
HSS |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
LMS |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-DSA |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
XMSS |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
XMSS-MT |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
Hash ML-DSA |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
Deterministic ML-DSA |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
Deterministic Hash ML-DSA |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Note
CONFIG_PSA_WANT_ALG_ECDSAis limited to ECC curve types secp224r1, secp256r1, and secp384r1.CONFIG_PSA_WANT_ALG_PURE_EDDSAis limited to ECC curve type Ed25519.
The following tables list the supported asymmetric signature algorithms for nRF91 Series devices.
Asymmetric signature algorithm |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
ECDSA |
Supported |
Supported |
Supported |
Supported |
|
ECDSA without hashing |
Supported |
Supported |
Supported |
Supported |
|
ECDSA (deterministic) |
Supported |
Supported |
Supported |
Supported |
|
PureEdDSA |
Supported |
Supported |
Supported |
Supported |
|
HashEdDSA Edwards25519 |
– |
– |
– |
– |
|
HashEdDSA Edwards448 |
– |
– |
– |
– |
|
RSA PKCS#1 v1.5 sign |
Supported |
Supported |
Supported |
Supported |
|
RSA PSS |
Supported |
Supported |
Supported |
Supported |
|
HSS |
– |
– |
– |
– |
|
LMS |
– |
– |
– |
– |
|
ML-DSA |
– |
– |
– |
– |
|
XMSS |
– |
– |
– |
– |
|
XMSS-MT |
– |
– |
– |
– |
Asymmetric signature algorithm |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
ECDSA |
Supported |
Supported |
Supported |
Supported |
|
ECDSA without hashing |
Supported |
Supported |
Supported |
Supported |
|
ECDSA (deterministic) |
Supported |
Supported |
Supported |
Supported |
|
PureEdDSA |
Supported |
Supported |
Supported |
Supported |
|
HashEdDSA Edwards25519 |
– |
– |
– |
– |
|
HashEdDSA Edwards448 |
– |
– |
– |
– |
|
RSA PKCS#1 v1.5 sign |
Supported |
Supported |
Supported |
Supported |
|
RSA PSS |
Supported |
Supported |
Supported |
Supported |
|
HSS |
Experimental |
Experimental |
Experimental |
Experimental |
|
LMS |
Experimental |
Experimental |
Experimental |
Experimental |
|
ML-DSA |
Experimental |
Experimental |
Experimental |
Experimental |
|
XMSS |
Experimental |
Experimental |
Experimental |
Experimental |
|
XMSS-MT |
Experimental |
Experimental |
Experimental |
Experimental |
|
Hash ML-DSA |
Experimental |
Experimental |
Experimental |
Experimental |
|
Deterministic ML-DSA |
Experimental |
Experimental |
Experimental |
Experimental |
|
Deterministic Hash ML-DSA |
Experimental |
Experimental |
Experimental |
Experimental |
Note
CONFIG_PSA_WANT_ALG_ECDSAis limited to ECC curve types secp224r1, secp256r1, and secp384r1.CONFIG_PSA_WANT_ALG_PURE_EDDSAis limited to ECC curve type Ed25519.
Asymmetric signature driver
The following tables show the CONFIG_PSA_USE_* Kconfig options for configuring driver preferences.
Based on this setting, Oberon PSA Crypto selects the most appropriate driver for the supported asymmetric signature algorithms (selected with the corresponding CONFIG_PSA_WANT_*).
The following tables list the asymmetric signature driver support for nRF52 Series devices.
Kconfig option |
Supported asymmetric signature algorithms |
|---|---|
Kconfig option |
Supported asymmetric signature algorithms |
|---|---|
Configuration automatically generated based on the enabled asymmetric signature algorithms. Acts as software fallback for the other drivers. |
CONFIG_PSA_WANT_ALG_ECDSA (limited to ECC curve types secp224r1, secp256r1, and secp384r1)CONFIG_PSA_WANT_ALG_PURE_EDDSA (limited to ECC curve type Ed25519) |
The following tables list the asymmetric signature driver support for nRF53 Series devices.
Kconfig option |
Supported asymmetric signature algorithms |
|---|---|
Kconfig option |
Supported asymmetric signature algorithms |
|---|---|
Configuration automatically generated based on the enabled asymmetric signature algorithms. Acts as software fallback for the other drivers. |
CONFIG_PSA_WANT_ALG_ECDSA (limited to ECC curve types secp224r1, secp256r1, and secp384r1)CONFIG_PSA_WANT_ALG_PURE_EDDSA (limited to ECC curve type Ed25519) |
The following tables list the asymmetric signature driver support for nRF54L Series devices.
Kconfig option |
Supported asymmetric signature algorithms |
|---|---|
Kconfig option |
Supported asymmetric signature algorithms |
|---|---|
Configuration automatically generated based on the enabled asymmetric signature algorithms. Acts as software fallback for the other drivers. |
CONFIG_PSA_WANT_ALG_ECDSA (limited to ECC curve types secp224r1, secp256r1, and secp384r1)CONFIG_PSA_WANT_ALG_PURE_EDDSA (limited to ECC curve type Ed25519) |
The following tables list the asymmetric signature driver support for nRF91 Series devices.
Kconfig option |
Supported asymmetric signature algorithms |
|---|---|
Kconfig option |
Supported asymmetric signature algorithms |
|---|---|
Configuration automatically generated based on the enabled asymmetric signature algorithms. Acts as software fallback for the other drivers. |
CONFIG_PSA_WANT_ALG_ECDSA (limited to ECC curve types secp224r1, secp256r1, and secp384r1)CONFIG_PSA_WANT_ALG_PURE_EDDSA (limited to ECC curve type Ed25519) |
Asymmetric encryption algorithms
The following tables show the CONFIG_PSA_WANT_* Kconfig options for configuring asymmetric encryption algorithms that Oberon PSA Crypto should add support for in the application at compile time.
Based on this setting and the corresponding CONFIG_PSA_USE_* Kconfig option, Oberon PSA Crypto selects the most appropriate driver for the supported asymmetric encryption algorithms.
The options are grouped by Series and drivers available for the device Series, and support level for each device is listed.
Note
RSA key size configuration is supported as described in RSA key size configuration.
The following tables list the supported asymmetric encryption algorithms for nRF52 Series devices.
Asymmetric encryption algorithm |
Configuration option |
nRF52840 |
|---|---|---|
RSA OAEP |
Supported |
|
RSA PKCS#1 v1.5 crypt |
Supported |
Note
CONFIG_PSA_WANT_ALG_RSA_PKCS1V15_CRYPT is limited to key sizes ≤ 2048 bits.
Asymmetric encryption algorithm |
Configuration option |
nRF52832 |
nRF52833 |
nRF52840 |
|---|---|---|---|---|
RSA OAEP |
Supported |
Supported |
Supported |
|
RSA PKCS#1 v1.5 crypt |
Supported |
Supported |
Supported |
Note
CONFIG_PSA_WANT_ALG_RSA_PKCS1V15_CRYPT does not support RSA key pair generation.
The following tables list the supported asymmetric encryption algorithms for nRF53 Series devices.
Asymmetric encryption algorithm |
Configuration option |
nRF5340 |
|---|---|---|
RSA OAEP |
Supported |
|
RSA PKCS#1 v1.5 crypt |
Supported |
Note
CONFIG_PSA_WANT_ALG_RSA_PKCS1V15_CRYPT is limited to key sizes ≤ 2048 bits.
Asymmetric encryption algorithm |
Configuration option |
nRF5340 |
|---|---|---|
RSA OAEP |
Supported |
|
RSA PKCS#1 v1.5 crypt |
Supported |
Note
CONFIG_PSA_WANT_ALG_RSA_PKCS1V15_CRYPT does not support RSA key pair generation.
The following tables list the supported asymmetric encryption algorithms for nRF54L Series devices.
Asymmetric encryption algorithm |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
RSA OAEP |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
RSA PKCS#1 v1.5 crypt |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
Asymmetric encryption algorithm |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
RSA OAEP |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
RSA PKCS#1 v1.5 crypt |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Note
CONFIG_PSA_WANT_ALG_RSA_PKCS1V15_CRYPT does not support RSA key pair generation.
The following tables list the supported asymmetric encryption algorithms for nRF91 Series devices.
Asymmetric encryption algorithm |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
RSA OAEP |
Supported |
Supported |
Supported |
Supported |
|
RSA PKCS#1 v1.5 crypt |
Supported |
Supported |
Supported |
Supported |
Note
CONFIG_PSA_WANT_ALG_RSA_PKCS1V15_CRYPT is limited to key sizes ≤ 2048 bits.
Asymmetric encryption algorithm |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
RSA OAEP |
Supported |
Supported |
Supported |
Supported |
|
RSA PKCS#1 v1.5 crypt |
Supported |
Supported |
Supported |
Supported |
Note
CONFIG_PSA_WANT_ALG_RSA_PKCS1V15_CRYPT does not support RSA key pair generation.
Asymmetric encryption driver
The following tables show the CONFIG_PSA_USE_* Kconfig options for configuring driver preferences.
Based on this setting, Oberon PSA Crypto selects the most appropriate driver for the supported asymmetric encryption algorithms (selected with the corresponding CONFIG_PSA_WANT_*).
The following tables list the asymmetric encryption driver support for nRF52 Series devices.
Kconfig option |
Supported asymmetric encryption algorithms |
|---|---|
CONFIG_PSA_WANT_ALG_RSA_PKCS1V15_CRYPT (limited to key sizes ≤ 2048 bits) |
Kconfig option |
Supported asymmetric encryption algorithms |
|---|---|
Configuration automatically generated based on the enabled asymmetric encryption algorithms. Acts as software fallback for the other drivers. |
CONFIG_PSA_WANT_ALG_RSA_PKCS1V15_CRYPT (does not support RSA key pair generation) |
The following tables list the asymmetric encryption driver support for nRF53 Series devices.
Kconfig option |
Supported asymmetric encryption algorithms |
|---|---|
CONFIG_PSA_WANT_ALG_RSA_PKCS1V15_CRYPT (limited to key sizes ≤ 2048 bits) |
Kconfig option |
Supported asymmetric encryption algorithms |
|---|---|
Configuration automatically generated based on the enabled asymmetric encryption algorithms. Acts as software fallback for the other drivers. |
CONFIG_PSA_WANT_ALG_RSA_PKCS1V15_CRYPT (does not support RSA key pair generation) |
The following tables list the asymmetric encryption driver support for nRF54L Series devices.
Kconfig option |
Supported asymmetric encryption algorithms |
|---|---|
Kconfig option |
Supported asymmetric encryption algorithms |
|---|---|
Configuration automatically generated based on the enabled asymmetric encryption algorithms. Acts as software fallback for the other drivers. |
CONFIG_PSA_WANT_ALG_RSA_PKCS1V15_CRYPT (does not support RSA key pair generation) |
The following tables list the asymmetric encryption driver support for nRF91 Series devices.
Kconfig option |
Supported asymmetric encryption algorithms |
|---|---|
CONFIG_PSA_WANT_ALG_RSA_PKCS1V15_CRYPT (limited to key sizes ≤ 2048 bits) |
Kconfig option |
Supported asymmetric encryption algorithms |
|---|---|
Configuration automatically generated based on the enabled asymmetric encryption algorithms. Acts as software fallback for the other drivers. |
CONFIG_PSA_WANT_ALG_RSA_PKCS1V15_CRYPT (does not support RSA key pair generation) |
ECC curve types
The following tables show the CONFIG_PSA_WANT_* Kconfig options for configuring ECC curve types that Oberon PSA Crypto should add support for in the application at compile time.
Based on this setting and the corresponding CONFIG_PSA_USE_* Kconfig option, Oberon PSA Crypto selects the most appropriate driver for the supported ECC curve types.
The options are grouped by Series and drivers available for the device Series, and support level for each device is listed.
The following tables list the supported ECC curve types for nRF52 Series devices.
ECC curve type |
Configuration option |
nRF52840 |
|---|---|---|
BrainpoolP224r1 |
– |
|
BrainpoolP256r1 |
Supported |
|
BrainpoolP320r1 |
– |
|
BrainpoolP384r1 |
– |
|
BrainpoolP512r1 |
– |
|
Curve25519 (X25519) |
Supported |
|
Curve448 (X448) |
– |
|
Edwards25519 (Ed25519) |
Supported |
|
Edwards448 (Ed448) |
– |
|
secp256k1 |
Supported |
|
secp224r1 |
Supported |
|
secp256r1 |
Supported |
|
secp384r1 |
Supported |
|
secp521r1 |
– |
ECC curve type |
Configuration option |
nRF52832 |
nRF52833 |
nRF52840 |
|---|---|---|---|---|
BrainpoolP224r1 |
– |
– |
– |
|
BrainpoolP256r1 |
– |
– |
– |
|
BrainpoolP320r1 |
– |
– |
– |
|
BrainpoolP384r1 |
– |
– |
– |
|
BrainpoolP512r1 |
– |
– |
– |
|
Curve25519 (X25519) |
Supported |
Supported |
Supported |
|
Curve448 (X448) |
Supported |
Supported |
Supported |
|
Edwards25519 (Ed25519) |
Supported |
Supported |
Supported |
|
Edwards448 (Ed448) |
Supported |
Supported |
Supported |
|
secp256k1 |
– |
– |
– |
|
secp224r1 |
Supported |
Supported |
Supported |
|
secp256r1 |
Supported |
Supported |
Supported |
|
secp384r1 |
Supported |
Supported |
Supported |
|
secp521r1 |
– |
– |
– |
The following tables list the supported ECC curve types for nRF53 Series devices.
ECC curve type |
Configuration option |
nRF5340 |
|---|---|---|
BrainpoolP224r1 |
– |
|
BrainpoolP256r1 |
Supported |
|
BrainpoolP320r1 |
– |
|
BrainpoolP384r1 |
– |
|
BrainpoolP512r1 |
– |
|
Curve25519 (X25519) |
Supported |
|
Curve448 (X448) |
– |
|
Edwards25519 (Ed25519) |
Supported |
|
Edwards448 (Ed448) |
– |
|
secp256k1 |
Supported |
|
secp224r1 |
Supported |
|
secp256r1 |
Supported |
|
secp384r1 |
Supported |
|
secp521r1 |
– |
ECC curve type |
Configuration option |
nRF5340 |
|---|---|---|
BrainpoolP224r1 |
– |
|
BrainpoolP256r1 |
– |
|
BrainpoolP320r1 |
– |
|
BrainpoolP384r1 |
– |
|
BrainpoolP512r1 |
– |
|
Curve25519 (X25519) |
Supported |
|
Curve448 (X448) |
Supported |
|
Edwards25519 (Ed25519) |
Supported |
|
Edwards448 (Ed448) |
Supported |
|
secp256k1 |
– |
|
secp224r1 |
Supported |
|
secp256r1 |
Supported |
|
secp384r1 |
Supported |
|
secp521r1 |
– |
The following tables list the supported ECC curve types for nRF54H Series devices.
The nRF54H Series does not use the CRACEN driver directly for cryptographic operations. The driver is used alongside Oberon PSA Core and the CRACEN driver within the IronSide Secure Enclave firmware.
The IronSide SE implements a fixed set of features and algorithms that cannot be changed by the user.
ECC curve type |
Supported directive |
nRF54H20 |
|---|---|---|
BrainpoolP192r1 |
|
– |
BrainpoolP224r1 |
|
– |
BrainpoolP256r1 |
|
Supported |
BrainpoolP320r1 |
|
– |
BrainpoolP384r1 |
|
– |
BrainpoolP512r1 |
|
– |
Curve25519 (X25519) |
|
Supported |
Curve448 (X448) |
|
– |
Edwards25519 (Ed25519) |
|
Supported |
Edwards448 (Ed448) |
|
– |
secp256k1 |
|
– |
secp224r1 |
|
– |
secp256r1 |
|
Supported |
secp384r1 |
|
Supported |
secp521r1 |
|
Supported |
The following tables list the supported ECC curve types for nRF54L Series devices.
ECC curve type |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
BrainpoolP224r1 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
BrainpoolP256r1 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
BrainpoolP320r1 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
BrainpoolP384r1 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
BrainpoolP512r1 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
Curve25519 (X25519) |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
Curve448 (X448) |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
Edwards25519 (Ed25519) |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
Edwards448 (Ed448) |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
secp256k1 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
secp224r1 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
secp256r1 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
secp384r1 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
secp521r1 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
ECC curve type |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
BrainpoolP224r1 |
– |
– |
– |
– |
– |
– |
– |
– |
|
BrainpoolP256r1 |
– |
– |
– |
– |
– |
– |
– |
– |
|
BrainpoolP320r1 |
– |
– |
– |
– |
– |
– |
– |
– |
|
BrainpoolP384r1 |
– |
– |
– |
– |
– |
– |
– |
– |
|
BrainpoolP512r1 |
– |
– |
– |
– |
– |
– |
– |
– |
|
Curve25519 (X25519) |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
Edwards25519 (Ed25519) |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
Curve448 (X448) |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
Edwards448 (Ed448) |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
secp256k1 |
– |
– |
– |
– |
– |
– |
– |
– |
|
secp224r1 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
secp256r1 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
secp384r1 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
secp521r1 |
– |
– |
– |
– |
– |
– |
– |
– |
The following tables list the supported ECC curve types for nRF91 Series devices.
ECC curve type |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
BrainpoolP224r1 |
– |
– |
– |
– |
|
BrainpoolP256r1 |
Supported |
Supported |
Supported |
Supported |
|
BrainpoolP320r1 |
– |
– |
– |
– |
|
BrainpoolP384r1 |
– |
– |
– |
– |
|
BrainpoolP512r1 |
– |
– |
– |
– |
|
Curve25519 (X25519) |
Supported |
Supported |
Supported |
Supported |
|
Curve448 (X448) |
– |
– |
– |
– |
|
Edwards25519 (Ed25519) |
Supported |
Supported |
Supported |
Supported |
|
Edwards448 (Ed448) |
– |
– |
– |
– |
|
secp256k1 |
Supported |
Supported |
Supported |
Supported |
|
secp224r1 |
Supported |
Supported |
Supported |
Supported |
|
secp256r1 |
Supported |
Supported |
Supported |
Supported |
|
secp384r1 |
Supported |
Supported |
Supported |
Supported |
|
secp521r1 |
– |
– |
– |
– |
ECC curve type |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
BrainpoolP224r1 |
– |
– |
– |
– |
|
BrainpoolP256r1 |
– |
– |
– |
– |
|
BrainpoolP320r1 |
– |
– |
– |
– |
|
BrainpoolP384r1 |
– |
– |
– |
– |
|
BrainpoolP512r1 |
– |
– |
– |
– |
|
Curve25519 (X25519) |
Supported |
Supported |
Supported |
Supported |
|
Curve448 (X448) |
Supported |
Supported |
Supported |
Supported |
|
Edwards25519 (Ed25519) |
Supported |
Supported |
Supported |
Supported |
|
Edwards448 (Ed448) |
Supported |
Supported |
Supported |
Supported |
|
secp256k1 |
– |
– |
– |
– |
|
secp224r1 |
Supported |
Supported |
Supported |
Supported |
|
secp256r1 |
Supported |
Supported |
Supported |
Supported |
|
secp384r1 |
Supported |
Supported |
Supported |
Supported |
|
secp521r1 |
– |
– |
– |
– |
ECC curve driver
The following tables show the CONFIG_PSA_USE_* Kconfig options for configuring driver preferences.
Based on this setting, Oberon PSA Crypto selects the most appropriate driver for the supported ECC curve types (selected with the corresponding CONFIG_PSA_WANT_*).
The following tables list the ECC curve driver support for nRF52 Series devices.
Kconfig option |
Supported ECC curve types |
|---|---|
Kconfig option |
Supported ECC curve types |
|---|---|
Configuration automatically generated based on the enabled ECC curve types. Acts as software fallback for the other drivers. |
The following tables list the ECC curve driver support for nRF53 Series devices.
Kconfig option |
Supported ECC curve types |
|---|---|
Kconfig option |
Supported ECC curve types |
|---|---|
Configuration automatically generated based on the enabled ECC curve types. Acts as software fallback for the other drivers. |
The following tables list the ECC curve driver support for nRF54L Series devices.
Kconfig option |
Supported ECC curve types |
|---|---|
Kconfig option |
Supported ECC curve types |
|---|---|
Configuration automatically generated based on the enabled ECC curve types. Acts as software fallback for the other drivers. |
The following tables list the ECC curve driver support for nRF91 Series devices.
Kconfig option |
Supported ECC curve types |
|---|---|
Kconfig option |
Supported ECC curve types |
|---|---|
Configuration automatically generated based on the enabled ECC curve types. Acts as software fallback for the other drivers. |
RNG algorithms
RNG uses PRNG seeded by entropy (also known as TRNG).
The following tables show the CONFIG_PSA_WANT_* Kconfig options for configuring RNG algorithms that Oberon PSA Crypto should add support for in the application at compile time.
Based on this setting and the corresponding CONFIG_PSA_USE_* Kconfig option, Oberon PSA Crypto selects the most appropriate driver for the supported RNG algorithms.
The options are grouped by Series and drivers available for the device Series, and support level for each device is listed.
Note
Both PRNG algorithms are NIST-qualified Cryptographically Secure Pseudo Random Number Generators (CSPRNG).
CONFIG_PSA_WANT_ALG_CTR_DRBGandCONFIG_PSA_WANT_ALG_HMAC_DRBGare custom configurations not described by the PSA Crypto specification.If multiple PRNG algorithms are enabled at the same time, CTR-DRBG will be prioritized for random number generation through the front-end APIs for PSA Crypto.
The following tables list the supported RNG algorithms for nRF52 Series devices.
PRNG algorithm |
Configuration option |
nRF52840 |
|---|---|---|
RNG support |
Supported |
|
CTR-DRBG |
Supported |
|
HMAC-DRBG |
Supported |
Note
CONFIG_PSA_WANT_GENERATE_RANDOMis enabled by default for nRF52840.CONFIG_PSA_WANT_ALG_HMAC_DRBGis limited to 1024 bytes per request.
PRNG algorithm |
Configuration option |
nRF52832 |
nRF52833 |
nRF52840 |
|---|---|---|---|---|
RNG support |
Supported |
Supported |
Supported |
|
CTR-DRBG |
Supported |
Supported |
Supported |
|
HMAC-DRBG |
Supported |
Supported |
Supported |
Note
CONFIG_PSA_WANT_ALG_HMAC_DRBG is implemented in software, with entropy provided by the hardware RNG peripheral.
The following tables list the supported RNG algorithms for nRF53 Series devices.
PRNG algorithm |
Configuration option |
nRF5340 |
|---|---|---|
RNG support |
Supported |
|
CTR-DRBG |
Supported |
|
HMAC-DRBG |
Supported |
Note
CONFIG_PSA_WANT_GENERATE_RANDOMis enabled by default for nRF5340.CONFIG_PSA_WANT_ALG_HMAC_DRBGis limited to 1024 bytes per request.
PRNG algorithm |
Configuration option |
nRF5340 |
|---|---|---|
RNG support |
Supported |
|
CTR-DRBG |
Supported |
|
HMAC-DRBG |
Supported |
Note
CONFIG_PSA_WANT_ALG_HMAC_DRBG is implemented in software, with entropy provided by the hardware RNG peripheral.
The following tables list the supported RNG algorithms for nRF54H Series devices.
The nRF54H Series does not use the CRACEN driver directly for cryptographic operations. The driver is used alongside Oberon PSA Core and the CRACEN driver within the IronSide Secure Enclave firmware.
The IronSide SE implements a fixed set of features and algorithms that cannot be changed by the user.
PRNG algorithm |
Supported directive |
nRF54H20 |
|---|---|---|
RNG support |
|
Supported |
CTR-DRBG |
|
Supported |
HMAC-DRBG |
|
– |
The following tables list the supported RNG algorithms for nRF54L Series devices.
PRNG algorithm |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
RNG support |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
CTR-DRBG |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
HMAC-DRBG |
– |
– |
– |
– |
– |
– |
– |
– |
PRNG algorithm |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
RNG support |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
CTR-DRBG |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
HMAC-DRBG |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Note
CONFIG_PSA_WANT_ALG_HMAC_DRBG is implemented in software, with entropy provided by the hardware RNG peripheral.
The following tables list the supported RNG algorithms for nRF91 Series devices.
PRNG algorithm |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
RNG support |
Supported |
Supported |
Supported |
Supported |
|
CTR-DRBG |
Supported |
Supported |
Supported |
Supported |
|
HMAC-DRBG |
Supported |
Supported |
Supported |
Supported |
Note
CONFIG_PSA_WANT_GENERATE_RANDOMis enabled by default for nRF91 Series devices.CONFIG_PSA_WANT_ALG_HMAC_DRBGis limited to 1024 bytes per request.
PRNG algorithm |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
RNG support |
Supported |
Supported |
Supported |
Supported |
|
CTR-DRBG |
Supported |
Supported |
Supported |
Supported |
|
HMAC-DRBG |
Supported |
Supported |
Supported |
Supported |
Note
CONFIG_PSA_WANT_ALG_HMAC_DRBG is implemented in software, with entropy provided by the hardware RNG peripheral.
RNG driver
The following tables show the CONFIG_PSA_USE_* Kconfig options for configuring driver preferences.
Based on this setting, Oberon PSA Crypto selects the most appropriate driver for the supported RNG algorithms (selected with the corresponding CONFIG_PSA_WANT_*).
The following tables list the RNG driver support for nRF52 Series devices.
Kconfig option |
Supported RNG algorithms |
|---|---|
Enabled by default for nRF52840, nRF91 Series, and nRF5340 devices |
CONFIG_PSA_WANT_ALG_HMAC_DRBG (limited to 1024 bytes per request) |
Kconfig option |
Supported RNG algorithms |
|---|---|
Configuration automatically generated based on the enabled RNG algorithms. Acts as software fallback for the other drivers. |
CONFIG_PSA_WANT_ALG_HMAC_DRBG (software implementation, entropy provided by the hardware RNG peripheral) |
The following tables list the RNG driver support for nRF53 Series devices.
Kconfig option |
Supported RNG algorithms |
|---|---|
Enabled by default for nRF52840, nRF91 Series, and nRF5340 devices |
CONFIG_PSA_WANT_ALG_HMAC_DRBG (limited to 1024 bytes per request) |
Kconfig option |
Supported RNG algorithms |
|---|---|
Configuration automatically generated based on the enabled RNG algorithms. Acts as software fallback for the other drivers. |
CONFIG_PSA_WANT_ALG_HMAC_DRBG (software implementation, entropy provided by the hardware RNG peripheral) |
The following tables list the RNG driver support for nRF54L Series devices.
Kconfig option |
Supported RNG algorithms |
|---|---|
|
Kconfig option |
Supported RNG algorithms |
|---|---|
Configuration automatically generated based on the enabled RNG algorithms. Acts as software fallback for the other drivers. |
CONFIG_PSA_WANT_ALG_HMAC_DRBG (software implementation, entropy provided by the hardware RNG peripheral) |
The following tables list the RNG driver support for nRF91 Series devices.
Kconfig option |
Supported RNG algorithms |
|---|---|
Enabled by default for nRF52840, nRF91 Series, and nRF5340 devices |
CONFIG_PSA_WANT_ALG_HMAC_DRBG (limited to 1024 bytes per request) |
Kconfig option |
Supported RNG algorithms |
|---|---|
Configuration automatically generated based on the enabled RNG algorithms. Acts as software fallback for the other drivers. |
CONFIG_PSA_WANT_ALG_HMAC_DRBG (software implementation, entropy provided by the hardware RNG peripheral) |
Hash algorithms
The following tables show the CONFIG_PSA_WANT_* Kconfig options for configuring hash algorithms that Oberon PSA Crypto should add support for in the application at compile time.
Based on this setting and the corresponding CONFIG_PSA_USE_* Kconfig option, Oberon PSA Crypto selects the most appropriate driver for the supported hash algorithms.
The options are grouped by Series and drivers available for the device Series, and support level for each device is listed.
Note
The SHA-1 hash is weak and deprecated and is only recommended for use in legacy protocols.
The following tables list the supported hash algorithms for nRF52 Series devices.
Hash algorithm |
Configuration option |
nRF52840 |
|---|---|---|
SHA-1 (weak) |
Supported |
|
SHA-224 |
Supported |
|
SHA-256 |
Supported |
|
SHA-384 |
– |
|
SHA-512 |
– |
|
SHA3-224 |
– |
|
SHA3-256 |
– |
|
SHA3-384 |
– |
|
SHA3-512 |
– |
|
SHA-256/192 |
– |
|
SHAKE128 256 bits |
– |
|
SHAKE256 192 bits |
– |
|
SHAKE256 256 bits |
– |
|
SHAKE256 512 bits |
– |
|
ASCON HASH256 |
– |
Hash algorithm |
Configuration option |
nRF52832 |
nRF52833 |
nRF52840 |
|---|---|---|---|---|
SHA-1 (weak) |
Supported |
Supported |
Supported |
|
SHA-224 |
Supported |
Supported |
Supported |
|
SHA-256 |
Supported |
Supported |
Supported |
|
SHA-384 |
Supported |
Supported |
Supported |
|
SHA-512 |
Supported |
Supported |
Supported |
|
SHA3-224 |
– |
– |
– |
|
SHA3-256 |
– |
– |
– |
|
SHA3-384 |
– |
– |
– |
|
SHA3-512 |
– |
– |
– |
|
SHA-256/192 |
Experimental |
Experimental |
Experimental |
|
SHAKE128 256 bits |
Experimental |
Experimental |
Experimental |
|
SHAKE256 192 bits |
Experimental |
Experimental |
Experimental |
|
SHAKE256 256 bits |
Experimental |
Experimental |
Experimental |
|
SHAKE256 512 bits |
Supported |
Supported |
Supported |
|
ASCON HASH256 |
Experimental |
Experimental |
Experimental |
The following tables list the supported hash algorithms for nRF53 Series devices.
Hash algorithm |
Configuration option |
nRF5340 |
|---|---|---|
SHA-1 (weak) |
Supported |
|
SHA-224 |
Supported |
|
SHA-256 |
Supported |
|
SHA-384 |
– |
|
SHA-512 |
– |
|
SHA3-224 |
– |
|
SHA3-256 |
– |
|
SHA3-384 |
– |
|
SHA3-512 |
– |
|
SHA-256/192 |
– |
|
SHAKE128 256 bits |
– |
|
SHAKE256 192 bits |
– |
|
SHAKE256 256 bits |
– |
|
SHAKE256 512 bits |
– |
|
ASCON HASH256 |
– |
Hash algorithm |
Configuration option |
nRF5340 |
|---|---|---|
SHA-1 (weak) |
Supported |
|
SHA-224 |
Supported |
|
SHA-256 |
Supported |
|
SHA-384 |
Supported |
|
SHA-512 |
Supported |
|
SHA3-224 |
– |
|
SHA3-256 |
– |
|
SHA3-384 |
– |
|
SHA3-512 |
– |
|
SHA-256/192 |
Experimental |
|
SHAKE128 256 bits |
Experimental |
|
SHAKE256 192 bits |
Experimental |
|
SHAKE256 256 bits |
Experimental |
|
SHAKE256 512 bits |
Supported |
|
ASCON HASH256 |
Experimental |
The following tables list the supported hash algorithms for nRF54H Series devices.
The nRF54H Series does not use the CRACEN driver directly for cryptographic operations. The driver is used alongside Oberon PSA Core and the CRACEN driver within the IronSide Secure Enclave firmware.
The IronSide SE implements a fixed set of features and algorithms that cannot be changed by the user.
Hash algorithm |
Supported directive |
nRF54H20 |
|---|---|---|
SHA-1 (weak) |
|
Supported |
SHA-224 |
|
– |
SHA-256 |
|
Supported |
SHA-384 |
|
Supported |
SHA-512 |
|
Supported |
SHA3-224 |
|
– |
SHA3-256 |
|
Supported |
SHA3-384 |
|
Supported |
SHA3-512 |
|
Supported |
SHA-256/192 |
|
– |
SHAKE128 256 bits |
|
– |
SHAKE256 192 bits |
|
– |
SHAKE256 256 bits |
|
– |
SHAKE256 512 bits |
|
Supported |
The following tables list the supported hash algorithms for nRF54L Series devices.
Hash algorithm |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
SHA-1 (weak) |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
SHA-224 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
SHA-256 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
SHA-384 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
SHA-512 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
SHA3-224 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
SHA3-256 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
SHA3-384 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
SHA3-512 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
SHA-256/192 |
– |
– |
– |
– |
– |
– |
– |
– |
|
SHAKE128 256 bits |
– |
– |
– |
– |
– |
– |
– |
– |
|
SHAKE256 192 bits |
– |
– |
– |
– |
– |
– |
– |
– |
|
SHAKE256 256 bits |
– |
– |
– |
– |
– |
– |
– |
– |
|
SHAKE256 512 bits |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
ASCON HASH256 |
– |
– |
– |
– |
– |
– |
– |
– |
Hash algorithm |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
SHA-1 (weak) |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
SHA-224 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
SHA-256 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
SHA-384 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
SHA-512 |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
SHA3-224 |
– |
– |
– |
– |
– |
– |
– |
– |
|
SHA3-256 |
– |
– |
– |
– |
– |
– |
– |
– |
|
SHA3-384 |
– |
– |
– |
– |
– |
– |
– |
– |
|
SHA3-512 |
– |
– |
– |
– |
– |
– |
– |
– |
|
SHA-256/192 |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
SHAKE128 256 bits |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
SHAKE256 192 bits |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
SHAKE256 256 bits |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
SHAKE256 512 bits |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
ASCON HASH256 |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
The following tables list the supported hash algorithms for nRF91 Series devices.
Hash algorithm |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
SHA-1 (weak) |
Supported |
Supported |
Supported |
Supported |
|
SHA-224 |
Supported |
Supported |
Supported |
Supported |
|
SHA-256 |
Supported |
Supported |
Supported |
Supported |
|
SHA-384 |
– |
– |
– |
– |
|
SHA-512 |
– |
– |
– |
– |
|
SHA3-224 |
– |
– |
– |
– |
|
SHA3-256 |
– |
– |
– |
– |
|
SHA3-384 |
– |
– |
– |
– |
|
SHA3-512 |
– |
– |
– |
– |
|
SHA-256/192 |
– |
– |
– |
– |
|
SHAKE128 256 bits |
– |
– |
– |
– |
|
SHAKE256 192 bits |
– |
– |
– |
– |
|
SHAKE256 256 bits |
– |
– |
– |
– |
|
SHAKE256 512 bits |
– |
– |
– |
– |
|
ASCON HASH256 |
– |
– |
– |
– |
Hash algorithm |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
SHA-1 (weak) |
Supported |
Supported |
Supported |
Supported |
|
SHA-224 |
Supported |
Supported |
Supported |
Supported |
|
SHA-256 |
Supported |
Supported |
Supported |
Supported |
|
SHA-384 |
Supported |
Supported |
Supported |
Supported |
|
SHA-512 |
Supported |
Supported |
Supported |
Supported |
|
SHA3-224 |
– |
– |
– |
– |
|
SHA3-256 |
– |
– |
– |
– |
|
SHA3-384 |
– |
– |
– |
– |
|
SHA3-512 |
– |
– |
– |
– |
|
SHA-256/192 |
Experimental |
Experimental |
Experimental |
Experimental |
|
SHAKE128 256 bits |
Experimental |
Experimental |
Experimental |
Experimental |
|
SHAKE256 192 bits |
Experimental |
Experimental |
Experimental |
Experimental |
|
SHAKE256 256 bits |
Experimental |
Experimental |
Experimental |
Experimental |
|
SHAKE256 512 bits |
Supported |
Supported |
Supported |
Supported |
|
ASCON HASH256 |
Experimental |
Experimental |
Experimental |
Experimental |
Hash driver
The following tables show the CONFIG_PSA_USE_* Kconfig options for configuring driver preferences.
Based on this setting, Oberon PSA Crypto selects the most appropriate driver for the supported hash algorithms (selected with the corresponding CONFIG_PSA_WANT_*).
The following tables list the hash driver support for nRF52 Series devices.
Kconfig option |
Supported hash algorithms |
|---|---|
Kconfig option |
Supported hash algorithms |
|---|---|
Configuration automatically generated based on the enabled hash algorithms. Acts as software fallback for the other drivers. |
CONFIG_PSA_WANT_ALG_SHA_1 (weak) |
The following tables list the hash driver support for nRF53 Series devices.
Kconfig option |
Supported hash algorithms |
|---|---|
Kconfig option |
Supported hash algorithms |
|---|---|
Configuration automatically generated based on the enabled hash algorithms. Acts as software fallback for the other drivers. |
CONFIG_PSA_WANT_ALG_SHA_1 (weak) |
The following tables list the hash driver support for nRF54L Series devices.
Kconfig option |
Supported hash algorithms |
|---|---|
Kconfig option |
Supported hash algorithms |
|---|---|
Configuration automatically generated based on the enabled hash algorithms. Acts as software fallback for the other drivers. |
CONFIG_PSA_WANT_ALG_SHA_1 (weak) |
The following tables list the hash driver support for nRF91 Series devices.
Kconfig option |
Supported hash algorithms |
|---|---|
Kconfig option |
Supported hash algorithms |
|---|---|
Configuration automatically generated based on the enabled hash algorithms. Acts as software fallback for the other drivers. |
CONFIG_PSA_WANT_ALG_SHA_1 (weak) |
Extendable-Output Function (XOF) algorithms
The following tables show the CONFIG_PSA_WANT_* Kconfig options for configuring XOF algorithms that Oberon PSA Crypto should add support for in the application at compile time.
Based on this setting and the corresponding CONFIG_PSA_USE_* Kconfig option, Oberon PSA Crypto selects the most appropriate driver for the supported XOF algorithms.
The options are grouped by Series and drivers available for the device Series, and support level for each device is listed.
The following table lists the supported XOF algorithms for nRF52 Series devices.
XOF algorithm |
Configuration option |
nRF52832 |
nRF52833 |
nRF52840 |
|---|---|---|---|---|
SHAKE128 |
Experimental |
Experimental |
Experimental |
|
SHAKE256 |
Experimental |
Experimental |
Experimental |
|
ASCON XOF128 |
Experimental |
Experimental |
Experimental |
|
ASCON CXOF128 |
Experimental |
Experimental |
Experimental |
The following table lists the supported XOF algorithms for nRF53 Series devices.
XOF algorithm |
Configuration option |
nRF5340 |
|---|---|---|
SHAKE128 |
Experimental |
|
SHAKE256 |
Experimental |
|
ASCON XOF128 |
Experimental |
|
ASCON CXOF128 |
Experimental |
The following table lists the supported XOF algorithms for nRF54L Series devices.
XOF algorithm |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
SHAKE128 |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
SHAKE256 |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
ASCON XOF128 |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
ASCON CXOF128 |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
The following table lists the supported XOF algorithms for nRF91 Series devices.
XOF algorithm |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
SHAKE128 |
Experimental |
Experimental |
Experimental |
Experimental |
|
SHAKE256 |
Experimental |
Experimental |
Experimental |
Experimental |
|
ASCON XOF128 |
Experimental |
Experimental |
Experimental |
Experimental |
|
ASCON CXOF128 |
Experimental |
Experimental |
Experimental |
Experimental |
XOF driver
The following tables show the CONFIG_PSA_USE_* Kconfig options for configuring driver preferences.
Based on this setting, Oberon PSA Crypto selects the most appropriate driver for the supported XOF algorithms (selected with the corresponding CONFIG_PSA_WANT_*).
The following table lists the XOF driver support for nRF52 Series devices.
Kconfig option |
Supported XOF algorithms |
|---|---|
Configuration automatically generated based on the enabled XOF algorithms. Acts as software fallback for the other drivers. |
The following table lists the XOF driver support for nRF53 Series devices.
Kconfig option |
Supported XOF algorithms |
|---|---|
Configuration automatically generated based on the enabled XOF algorithms. Acts as software fallback for the other drivers. |
The following table lists the XOF driver support for nRF54L Series devices.
Kconfig option |
Supported XOF algorithms |
|---|---|
Configuration automatically generated based on the enabled XOF algorithms. Acts as software fallback for the other drivers. |
The following table lists the XOF driver support for nRF91 Series devices.
Kconfig option |
Supported XOF algorithms |
|---|---|
Configuration automatically generated based on the enabled XOF algorithms. Acts as software fallback for the other drivers. |
PAKE algorithms
The following tables show the CONFIG_PSA_WANT_* Kconfig options for configuring PAKE algorithms that Oberon PSA Crypto should add support for in the application at compile time.
Based on this setting and the corresponding CONFIG_PSA_USE_* Kconfig option, Oberon PSA Crypto selects the most appropriate driver for the supported PAKE algorithms.
The options are grouped by Series and drivers available for the device Series, and support level for each device is listed.
The following table lists the supported PAKE algorithms for nRF52 Series devices.
PAKE algorithm |
Configuration option |
nRF52832 |
nRF52833 |
nRF52840 |
|---|---|---|---|---|
EC J-PAKE |
Supported |
Supported |
Supported |
|
SPAKE2+ with HMAC |
Supported |
Supported |
Supported |
|
SPAKE2+ with CMAC |
Supported |
Supported |
Supported |
|
SPAKE2+ for Matter |
Supported |
Supported |
Supported |
|
SRP-6 |
Experimental |
Experimental |
Experimental |
|
SRP password hashing |
Experimental |
Experimental |
Experimental |
The following table lists the supported PAKE algorithms for nRF53 Series devices.
PAKE algorithm |
Configuration option |
nRF5340 |
|---|---|---|
EC J-PAKE |
Supported |
|
SPAKE2+ with HMAC |
Supported |
|
SPAKE2+ with CMAC |
Supported |
|
SPAKE2+ for Matter |
Supported |
|
SRP-6 |
Experimental |
|
SRP password hashing |
Experimental |
The following table lists the supported PAKE algorithms for nRF54H Series devices.
The nRF54H Series does not use the CRACEN driver directly for cryptographic operations. The driver is used alongside Oberon PSA Core and the CRACEN driver within the IronSide Secure Enclave firmware.
The IronSide SE implements a fixed set of features and algorithms that cannot be changed by the user.
PAKE algorithm |
Supported directive |
nRF54H20 |
|---|---|---|
EC J-PAKE |
|
Supported |
SPAKE2+ with HMAC |
|
Supported |
SPAKE2+ with CMAC |
|
Supported |
SPAKE2+ for Matter |
|
Supported |
SRP-6 |
|
– |
SRP password hashing |
|
– |
WPA3-SAE Fixed |
|
– |
WPA3-SAE GDH |
|
– |
The following tables list the supported PAKE algorithms for nRF54L Series devices.
PAKE algorithm |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
EC J-PAKE |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
SPAKE2+ with HMAC |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
SPAKE2+ with CMAC |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
SPAKE2+ for Matter |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
SRP-6 |
Experimental |
Experimental |
Experimental |
– |
– |
Experimental |
– |
– |
|
SRP password hashing |
Experimental |
Experimental |
Experimental |
– |
– |
Experimental |
– |
– |
|
WPA3-SAE fixed |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
– |
– |
|
WPA3-SAE GDH |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
– |
– |
PAKE algorithm |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05 |
|---|---|---|---|---|---|---|---|---|
EC J-PAKE |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
SPAKE2+ with HMAC |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
SPAKE2+ with CMAC |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
SPAKE2+ for Matter |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
SRP-6 |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
SRP password hashing |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
WPA3-SAE |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
|
WPA3-SAE GDH |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
Experimental |
The following table lists the supported PAKE algorithms for nRF91 Series devices.
PAKE algorithm |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
EC J-PAKE |
Supported |
Supported |
Supported |
Supported |
|
SPAKE2+ with HMAC |
Supported |
Supported |
Supported |
Supported |
|
SPAKE2+ with CMAC |
Supported |
Supported |
Supported |
Supported |
|
SPAKE2+ for Matter |
Supported |
Supported |
Supported |
Supported |
|
SRP-6 |
Experimental |
Experimental |
Experimental |
Experimental |
|
SRP password hashing |
Experimental |
Experimental |
Experimental |
Experimental |
PAKE driver
The following tables show the CONFIG_PSA_USE_* Kconfig options for configuring driver preferences.
Based on this setting, Oberon PSA Crypto selects the most appropriate driver for the supported PAKE algorithms (selected with the corresponding CONFIG_PSA_WANT_*).
The following table lists the PAKE driver support for nRF52 Series devices.
Kconfig option |
Supported PAKE algorithms |
|---|---|
Configuration automatically generated based on the enabled PAKE algorithms. Acts as software fallback for the other drivers. |
The following table lists the PAKE driver support for nRF53 Series devices.
Kconfig option |
Supported PAKE algorithms |
|---|---|
Configuration automatically generated based on the enabled PAKE algorithms. Acts as software fallback for the other drivers. |
The following tables list the PAKE driver support for nRF54L Series devices.
Kconfig option |
Supported PAKE algorithms |
|---|---|
Kconfig option |
Supported PAKE algorithms |
|---|---|
Configuration automatically generated based on the enabled PAKE algorithms. Acts as software fallback for the other drivers. |
The following table lists the PAKE driver support for nRF91 Series devices.
Kconfig option |
Supported PAKE algorithms |
|---|---|
Configuration automatically generated based on the enabled PAKE algorithms. Acts as software fallback for the other drivers. |
Key pair operations
The following sections list the supported key pair operation Kconfig options for different key types.
The Kconfig options follow the CONFIG_PSA_WANT_* configuration scheme, which is described in detail on the Cryptographic drivers page.
RSA key pair operations
The following tables show the CONFIG_PSA_WANT_* Kconfig options for configuring RSA key pair operations that Oberon PSA Crypto should add support for in the application at compile time.
Based on this setting, Oberon PSA Crypto selects the most appropriate driver for the supported RSA key pair operations.
The options are grouped by Series and drivers available for the device Series, and support level for each device is listed.
The following tables list the supported RSA key pair operations for nRF52 Series devices.
RSA key pair operation |
Configuration option |
nRF52840 |
|---|---|---|
Import |
Supported |
|
Export |
Supported |
|
Generate |
Supported |
|
Derive |
Supported |
RSA key pair operation |
Configuration option |
nRF52832 |
nRF52833 |
nRF52840 |
|---|---|---|---|---|
Import |
Supported |
Supported |
Supported |
|
Export |
Supported |
Supported |
Supported |
|
Generate |
– |
– |
– |
|
Derive |
Supported |
Supported |
Supported |
The following tables list the supported RSA key pair operations for nRF53 Series devices.
RSA key pair operation |
Configuration option |
nRF5340 |
|---|---|---|
Import |
Supported |
|
Export |
Supported |
|
Generate |
Supported |
|
Derive |
Supported |
RSA key pair operation |
Configuration option |
nRF5340 |
|---|---|---|
Import |
Supported |
|
Export |
Supported |
|
Generate |
– |
|
Derive |
Supported |
The following tables list the supported RSA key pair operations for nRF54L Series devices.
RSA key pair operation |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
Import |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
Export |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
Generate |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
Derive |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
RSA key pair operation |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
Import |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
Export |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
Generate |
– |
– |
– |
– |
– |
– |
– |
– |
|
Derive |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
The following tables list the supported RSA key pair operations for nRF91 Series devices.
RSA key pair operation |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
Import |
Supported |
Supported |
Supported |
Supported |
|
Export |
Supported |
Supported |
Supported |
Supported |
|
Generate |
Supported |
Supported |
Supported |
Supported |
|
Derive |
Supported |
Supported |
Supported |
Supported |
RSA key pair operation |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
Import |
Supported |
Supported |
Supported |
Supported |
|
Export |
Supported |
Supported |
Supported |
Supported |
|
Generate |
– |
– |
– |
– |
|
Derive |
Supported |
Supported |
Supported |
Supported |
SRP key pair operations
The following tables show the CONFIG_PSA_WANT_* Kconfig options for configuring SRP key pair operations that Oberon PSA Crypto should add support for in the application at compile time.
Based on this setting, Oberon PSA Crypto selects the most appropriate driver for the supported SRP key pair operations.
The options are grouped by Series and drivers available for the device Series, and support level for each device is listed.
The following table lists the supported SRP key pair operations for nRF52 Series devices.
SRP key pair operation |
Configuration option |
nRF52832 |
nRF52833 |
nRF52840 |
|---|---|---|---|---|
Import |
Supported |
Supported |
Supported |
|
Export |
Supported |
Supported |
Supported |
|
Generate |
– |
– |
– |
|
Derive |
Supported |
Supported |
Supported |
The following table lists the supported SRP key pair operations for nRF53 Series devices.
SRP key pair operation |
Configuration option |
nRF5340 |
|---|---|---|
Import |
Supported |
|
Export |
Supported |
|
Generate |
– |
|
Derive |
Supported |
The following tables list the supported SRP key pair operations for nRF54L Series devices.
SRP key pair operation |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
Import |
Supported |
Supported |
Supported |
– |
– |
– |
– |
– |
|
Export |
Supported |
Supported |
Supported |
– |
– |
Experimental |
– |
– |
|
Generate |
Supported |
Supported |
Supported |
– |
– |
Experimental |
– |
– |
|
Derive |
Supported |
Supported |
Supported |
– |
– |
Experimental |
– |
– |
SRP key pair operation |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
Import |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
Export |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
Generate |
– |
– |
– |
– |
– |
– |
– |
– |
|
Derive |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
The following table lists the supported SRP key pair operations for nRF91 Series devices.
SRP key pair operation |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
Import |
Supported |
Supported |
Supported |
Supported |
|
Export |
Supported |
Supported |
Supported |
Supported |
|
Generate |
– |
– |
– |
– |
|
Derive |
Supported |
Supported |
Supported |
Supported |
SPAKE2P key pair operations
The following tables show the CONFIG_PSA_WANT_* Kconfig options for configuring SPAKE2P key pair operations that Oberon PSA Crypto should add support for in the application at compile time.
Based on this setting, Oberon PSA Crypto selects the most appropriate driver for the supported SPAKE2P key pair operations.
The options are grouped by Series and drivers available for the device Series, and support level for each device is listed.
The following table lists the supported SPAKE2P key pair operations for nRF52 Series devices.
SPAKE2P key pair operation |
Configuration option |
nRF52832 |
nRF52833 |
nRF52840 |
|---|---|---|---|---|
Import |
Supported |
Supported |
Supported |
|
Export |
Supported |
Supported |
Supported |
|
Generate |
Supported |
Supported |
Supported |
|
Derive |
Supported |
Supported |
Supported |
The following table lists the supported SPAKE2P key pair operations for nRF53 Series devices.
SPAKE2P key pair operation |
Configuration option |
nRF5340 |
|---|---|---|
Import |
Supported |
|
Export |
Supported |
|
Generate |
Supported |
|
Derive |
Supported |
The following table lists the supported SPAKE2P key pair operations for nRF54H Series devices.
The nRF54H Series does not use the CRACEN driver directly for cryptographic operations. The driver is used alongside Oberon PSA Core and the CRACEN driver within the IronSide Secure Enclave firmware.
The IronSide SE implements a fixed set of features and algorithms that cannot be changed by the user.
SPAKE2P key pair operation |
Supported directive |
nRF54H20 |
|---|---|---|
Import |
|
Supported |
Export |
|
Supported |
Generate |
|
Supported |
Derive |
|
Supported |
The following tables list the supported SPAKE2P key pair operations for nRF54L Series devices.
SPAKE2P key pair operation |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
Import |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
Export |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
Generate |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
Derive |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
SPAKE2P key pair operation |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
Import |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
Export |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
Generate |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
Derive |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
The following table lists the supported SPAKE2P key pair operations for nRF91 Series devices.
SPAKE2P key pair operation |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
Import |
Supported |
Supported |
Supported |
Supported |
|
Export |
Supported |
Supported |
Supported |
Supported |
|
Generate |
Supported |
Supported |
Supported |
Supported |
|
Derive |
Supported |
Supported |
Supported |
Supported |
ECC key pair operations
The following tables show the CONFIG_PSA_WANT_* Kconfig options for configuring ECC key pair operations that Oberon PSA Crypto should add support for in the application at compile time.
Based on this setting, Oberon PSA Crypto selects the most appropriate driver for the supported ECC key pair operations.
The options are grouped by Series and drivers available for the device Series, and support level for each device is listed.
The following tables list the supported ECC key pair operations for nRF52 Series devices.
ECC key pair operation |
Configuration option |
nRF52840 |
|---|---|---|
Generate |
Supported |
|
Import |
Supported |
|
Export |
Supported |
|
Derive |
Supported |
ECC key pair operation |
Configuration option |
nRF52832 |
nRF52833 |
nRF52840 |
|---|---|---|---|---|
Generate |
Supported |
Supported |
Supported |
|
Import |
Supported |
Supported |
Supported |
|
Export |
Supported |
Supported |
Supported |
|
Derive |
Supported |
Supported |
Supported |
The following tables list the supported ECC key pair operations for nRF53 Series devices.
ECC key pair operation |
Configuration option |
nRF5340 |
|---|---|---|
Generate |
Supported |
|
Import |
Supported |
|
Export |
Supported |
|
Derive |
Supported |
ECC key pair operation |
Configuration option |
nRF5340 |
|---|---|---|
Generate |
Supported |
|
Import |
Supported |
|
Export |
Supported |
|
Derive |
Supported |
The following tables list the supported ECC key pair operations for nRF54H Series devices.
The nRF54H Series does not use the CRACEN driver directly for cryptographic operations. The driver is used alongside Oberon PSA Core and the CRACEN driver within the IronSide Secure Enclave firmware.
The IronSide SE implements a fixed set of features and algorithms that cannot be changed by the user.
ECC key pair operation |
Supported directive |
nRF54H20 |
|---|---|---|
Generate |
|
Supported |
Import |
|
Supported |
Export |
|
Supported |
Derive |
|
Supported |
The following tables list the supported ECC key pair operations for nRF54L Series devices.
ECC key pair operation |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
Generate |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
Import |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
Export |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
Derive |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
ECC key pair operation |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
Generate |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
Import |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
Export |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
Derive |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
The following tables list the supported ECC key pair operations for nRF91 Series devices.
ECC key pair operation |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
Generate |
Supported |
Supported |
Supported |
Supported |
|
Import |
Supported |
Supported |
Supported |
Supported |
|
Export |
Supported |
Supported |
Supported |
Supported |
|
Derive |
Supported |
Supported |
Supported |
Supported |
ECC key pair operation |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
Generate |
Supported |
Supported |
Supported |
Supported |
|
Import |
Supported |
Supported |
Supported |
Supported |
|
Export |
Supported |
Supported |
Supported |
Supported |
|
Derive |
Supported |
Supported |
Supported |
Supported |
Key size configurations
The following sections list the supported AES and RSA key size Kconfig options.
The Kconfig options follow the CONFIG_PSA_WANT_* configuration scheme, which is described in detail on the Cryptographic drivers page.
AES key size configuration
The following tables show the CONFIG_PSA_WANT_* Kconfig options for configuring AES key sizes that Oberon PSA Crypto should add support for in the application at compile time.
Based on this setting, Oberon PSA Crypto selects the most appropriate driver for the supported AES key sizes.
The options are grouped by Series and drivers available for the device Series, and support level for each device is listed.
The following tables list the supported AES key sizes for nRF52 Series devices.
AES key size |
Configuration option |
nRF52840 |
|---|---|---|
128 bits |
Supported |
|
192 bits |
– |
|
256 bits |
– |
AES key size |
Configuration option |
nRF52832 |
nRF52833 |
nRF52840 |
|---|---|---|---|---|
128 bits |
Supported |
Supported |
Supported |
|
192 bits |
Supported |
Supported |
Supported |
|
256 bits |
Supported |
Supported |
Supported |
The following tables list the supported AES key sizes for nRF53 Series devices.
AES key size |
Configuration option |
nRF5340 |
|---|---|---|
128 bits |
Supported |
|
192 bits |
Supported |
|
256 bits |
Supported |
AES key size |
Configuration option |
nRF5340 |
|---|---|---|
128 bits |
Supported |
|
192 bits |
Supported |
|
256 bits |
Supported |
The following tables list the supported AES key sizes for nRF54H Series devices.
The nRF54H Series does not use the CRACEN driver directly for cryptographic operations. The driver is used alongside Oberon PSA Core and the CRACEN driver within the IronSide Secure Enclave firmware.
The IronSide SE implements a fixed set of features and algorithms that cannot be changed by the user.
AES key size |
Supported directive |
nRF54H20 |
|---|---|---|
128 bits |
|
Supported |
192 bits |
|
Supported |
256 bits |
|
Supported |
The following tables list the supported AES key sizes for nRF54L Series devices.
AES key size |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
128 bits |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
192 bits |
Supported |
Supported |
Supported |
– |
– |
– |
– |
– |
|
256 bits |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
AES key size |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
128 bits |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
192 bits |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
256 bits |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
The following tables list the supported AES key sizes for nRF91 Series devices.
AES key size |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
128 bits |
Supported |
Supported |
Supported |
Supported |
|
192 bits |
– |
– |
– |
– |
|
256 bits |
– |
– |
– |
– |
AES key size |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
128 bits |
Supported |
Supported |
Supported |
Supported |
|
192 bits |
Supported |
Supported |
Supported |
Supported |
|
256 bits |
Supported |
Supported |
Supported |
Supported |
RSA key size configuration
The following tables show the CONFIG_PSA_WANT_* Kconfig options for configuring RSA key sizes that Oberon PSA Crypto should add support for in the application at compile time.
Based on this setting, Oberon PSA Crypto selects the most appropriate driver for the supported RSA key sizes.
The options are grouped by Series and drivers available for the device Series, and support level for each device is listed.
The following tables list the supported RSA key sizes for nRF52 Series devices.
RSA key size |
Configuration option |
nRF52840 |
|---|---|---|
1024 bits |
Supported |
|
1536 bits |
Supported |
|
2048 bits |
Supported |
|
3072 bits |
– |
|
4096 bits |
– |
|
6144 bits |
– |
|
8192 bits |
– |
RSA key size |
Configuration option |
nRF52832 |
nRF52833 |
nRF52840 |
|---|---|---|---|---|
1024 bits |
Supported |
Supported |
Supported |
|
1536 bits |
Supported |
Supported |
Supported |
|
2048 bits |
Supported |
Supported |
Supported |
|
3072 bits |
Supported |
Supported |
Supported |
|
4096 bits |
Supported |
Supported |
Supported |
|
6144 bits |
Supported |
Supported |
Supported |
|
8192 bits |
Supported |
Supported |
Supported |
The following tables list the supported RSA key sizes for nRF53 Series devices.
RSA key size |
Configuration option |
nRF5340 |
|---|---|---|
1024 bits |
Supported |
|
1536 bits |
Supported |
|
2048 bits |
Supported |
|
3072 bits |
Supported |
|
4096 bits |
– |
|
6144 bits |
– |
|
8192 bits |
– |
RSA key size |
Configuration option |
nRF5340 |
|---|---|---|
1024 bits |
Supported |
|
1536 bits |
Supported |
|
2048 bits |
Supported |
|
3072 bits |
Supported |
|
4096 bits |
Supported |
|
6144 bits |
Supported |
|
8192 bits |
Supported |
The following tables list the supported RSA key sizes for nRF54L Series devices.
RSA key size |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
1024 bits |
– |
– |
– |
– |
– |
– |
– |
– |
|
1536 bits |
– |
– |
– |
– |
– |
– |
– |
– |
|
2048 bits |
Supported |
Supported |
Supported |
Supported |
Supported |
Experimental |
– |
– |
|
3072 bits |
Supported |
Supported |
Supported |
Supported |
Supported |
Experimental |
– |
– |
|
4096 bits |
Supported |
Supported |
Supported |
Supported |
Supported |
Experimental |
– |
– |
|
6144 bits |
– |
– |
– |
– |
– |
– |
– |
– |
|
8192 bits |
– |
– |
– |
– |
– |
– |
– |
– |
RSA key size |
Configuration option |
nRF54L05 |
nRF54L10 |
nRF54L15 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
1024 bits |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
1536 bits |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
2048 bits |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
3072 bits |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
4096 bits |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
6144 bits |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
|
8192 bits |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
The following tables list the supported RSA key sizes for nRF91 Series devices.
RSA key size |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
1024 bits |
Supported |
Supported |
Supported |
Supported |
|
1536 bits |
Supported |
Supported |
Supported |
Supported |
|
2048 bits |
Supported |
Supported |
Supported |
Supported |
|
3072 bits |
– |
– |
– |
– |
|
4096 bits |
– |
– |
– |
– |
|
6144 bits |
– |
– |
– |
– |
|
8192 bits |
– |
– |
– |
– |
RSA key size |
Configuration option |
nRF9131 |
nRF9151 |
nRF9160 |
nRF9161 |
|---|---|---|---|---|---|
1024 bits |
Supported |
Supported |
Supported |
Supported |
|
1536 bits |
Supported |
Supported |
Supported |
Supported |
|
2048 bits |
Supported |
Supported |
Supported |
Supported |
|
3072 bits |
Supported |
Supported |
Supported |
Supported |
|
4096 bits |
Supported |
Supported |
Supported |
Supported |
|
6144 bits |
Supported |
Supported |
Supported |
Supported |
|
8192 bits |
Supported |
Supported |
Supported |
Supported |
Side-channel countermeasures
The following tables show the Kconfig options for configuring side-channel countermeasures. These countermeasures are available on the CRACEN peripheral and protect private key operations against power analysis attacks.
The options are grouped by Series and support level for each device is listed. The countermeasures are available only on the CRACEN driver.
The following table lists the supported side-channel countermeasures for nRF54L Series devices.
Note
CONFIG_CRACEN_LITE_ECC_COUNTERMEASURES_EXTENDED does not support scalar blinding for Montgomery curve multiplication (X25519, X448).
nRF54L15, nRF54L10, and nRF54L05 do not support countermeasures for Montgomery curve multiplication (X25519, X448), EdDSA base point multiplication, and Edwards point multiplication.
Countermeasure |
Configuration option |
nRF54L15 |
nRF54L10 |
nRF54L05 |
nRF54LM20A |
nRF54LM20B |
nRF54LV10A |
nRF54LS05A |
nRF54LS05B |
|---|---|---|---|---|---|---|---|---|---|
ECC scalar randomization |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
ECC projective coordinate randomization |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
ECC extended (Montgomery/Edwards) |
|
– |
– |
– |
Supported |
Supported |
Supported |
– |
– |
RSA exponent randomization |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
|
RSA modulus randomization |
Supported |
Supported |
Supported |
Supported |
Supported |
Supported |
– |
– |
The following table lists the supported side-channel countermeasures for nRF54H Series devices.
Note
On the nRF54H20 SoC, countermeasures configuration is part of the IronSide SE firmware and cannot be customized.
Countermeasure |
Configuration option |
nRF54H20 |
|---|---|---|
ECC scalar randomization |
Enabled in IronSide SE 23.7.0 or later |
|
ECC projective coordinate randomization |
Enabled in IronSide SE 23.7.0 or later |
|
ECC extended (Montgomery/Edwards) |
– |
|
RSA exponent randomization |
– |
|
RSA modulus randomization |
– |