Skip to content

doc: crypto: supported features updates - #28661

Merged
nordicjm merged 8 commits into
nrfconnect:mainfrom
greg-fer:doc_crypto_gcm_cc3xx_support_fix
May 12, 2026
Merged

doc: crypto: supported features updates#28661
nordicjm merged 8 commits into
nrfconnect:mainfrom
greg-fer:doc_crypto_gcm_cc3xx_support_fix

Conversation

@greg-fer

@greg-fer greg-fer commented May 10, 2026

Copy link
Copy Markdown
Contributor

Commit 1
Updated the support tables and notes for CONFIG_PSA_WANT_ALG_GCM support on CC310 SoCs. The support is not available on CC310 SoCs. NCSDK-38868.

Commit 2
Updated the table for supported AES key wrapping algorithms
with an entry for nRF54LS05. The algorithms are not supported
in the CRACEN driver and experimental in the nrf_oberon driver.
NCSDK-38869.

Commit 3
Removed the note about CRACEN's GCM support under AES key size.
Kept the note under AEAD algorithms.
NCSDK-38870.

Commit 4
Updated Experimental entries for SPAKE2+ for Matter to Supported
in the crypto supported features page.
NCSDK-38872.

Commit 5
Moved PSA_ALG_WPA3_SAE_H2E from PAKE under the KDF section
to match the PSA Crypto categorization.
NCSDK-38873.

Commit 6
Changed the support status for PQC algorithms listed under
Key types and key management from Supported to the correct
Experimental status.
NCSDK-38874.

Commit 7
Removed nrf_cc310 mention from the AES key size note.
NCSDK-38879.

Commit 8
Changed the support status for SHA-256/192 and SHAKE algorithms
to not supported in the CRACEN driver and to experimental
in nrf_oberon. SHAKE256 512 bits is an exception, supported
in both CRACEN and nrf_oberon. NCSDK-38885.

Updated the support tables and notes for CONFIG_PSA_WANT_ALG_GCM
support on CC310 SoCs. The support is not available on CC310 SoCs.
NCSDK-38868.

Signed-off-by: Grzegorz Ferenc <Grzegorz.Ferenc@nordicsemi.no>
@greg-fer greg-fer added this to the 3.4.0 milestone May 10, 2026
@greg-fer
greg-fer requested a review from endre-nordic May 10, 2026 19:00
@greg-fer greg-fer added CI-disable Disable CI for this PR doc only labels May 10, 2026
@greg-fer
greg-fer requested review from a team as code owners May 10, 2026 19:00
@NordicBuilder NordicBuilder added doc-required PR must not be merged without tech writer approval. changelog labels May 10, 2026
@greg-fer
greg-fer marked this pull request as draft May 10, 2026 19:02
@NordicBuilder

NordicBuilder commented May 10, 2026

Copy link
Copy Markdown
Contributor

CI Information

To view the history of this post, click the 'edited' button above
Build number: 8

Inputs:

Sources:

more details

Github labels

Enabled Name Description
ci-disabled Disable the ci execution
ci-all-test Run all of ci, no test spec filtering will be done
ci-force-downstream Force execution of downstream even if twister fails
ci-run-twister Force run twister
ci-run-zephyr-twister Force run zephyr twister
List of changed files detected by CI (0)

Outputs:

Toolchain

Version:
Build docker image:

Test Spec & Results: ✅ Success; ❌ Failure; 🟠 Queued; 🟡 Progress; ◻️ Skipped; ⚠️ Quarantine

  • ◻️ Toolchain
  • ◻️ Build twister
  • ◻️ Integration tests

Note: This message is automatically posted and updated by the CI

@greg-fer greg-fer changed the title doc: crypto: update support for GCM on CC310 SoCs doc: crypto: supported features updates May 10, 2026
Updated the table for supported AES key wrapping algorithms
with an entry for nRF54LS05. The algorithms are not supported
in the CRACEN driver and experimental in the nrf_oberon driver.
NCSDK-38869.

Signed-off-by: Grzegorz Ferenc <Grzegorz.Ferenc@nordicsemi.no>
@github-actions

Copy link
Copy Markdown

greg-fer added 4 commits May 11, 2026 08:54
Removed the note about CRACEN's GCM support under AES key size.
Kept the note under AEAD algorithms.
NCSDK-38870.

Signed-off-by: Grzegorz Ferenc <Grzegorz.Ferenc@nordicsemi.no>
Updated Experimental entries for SPAKE2+ for Matter to Supported
in the crypto supported features page.
NCSDK-38872.

Signed-off-by: Grzegorz Ferenc <Grzegorz.Ferenc@nordicsemi.no>
Moved PSA_ALG_WPA3_SAE_H2E from PAKE under the KDF section
to match the PSA Crypto categorization.
NCSDK-38873.

Signed-off-by: Grzegorz Ferenc <Grzegorz.Ferenc@nordicsemi.no>
Changed the support status for PQC algorithms listed under
Key types and key management from Supported to the correct
Experimental status.
NCSDK-38874.

Signed-off-by: Grzegorz Ferenc <Grzegorz.Ferenc@nordicsemi.no>
@greg-fer
greg-fer force-pushed the doc_crypto_gcm_cc3xx_support_fix branch from 23c367f to f52eb26 Compare May 11, 2026 06:56
greg-fer added 2 commits May 11, 2026 09:18
Removed nrf_cc310 mention from the AES key size note.
NCSDK-38879.

Signed-off-by: Grzegorz Ferenc <Grzegorz.Ferenc@nordicsemi.no>
Changed the support status for SHA-256/192 and SHAKE algorithms
to not supported in the CRACEN driver and to experimental
in nrf_oberon. SHAKE256 512 bits is an exception, supported
in both CRACEN and nrf_oberon. NCSDK-38885.

Signed-off-by: Grzegorz Ferenc <Grzegorz.Ferenc@nordicsemi.no>
@greg-fer
greg-fer marked this pull request as ready for review May 11, 2026 10:07
@greg-fer
greg-fer requested a review from frkv May 11, 2026 10:57

@frkv frkv left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@nordicjm
nordicjm merged commit 7128ebe into nrfconnect:main May 12, 2026
21 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

changelog CI-disable Disable CI for this PR doc only doc-required PR must not be merged without tech writer approval.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

6 participants