From 94249991d41e877b56ec2e772948443d2e142d98 Mon Sep 17 00:00:00 2001 From: Stefan Catargiu <13122921+5kt@users.noreply.github.com> Date: Thu, 2 Jul 2026 14:13:45 +0200 Subject: [PATCH] Add fips related changes --- config/amd64/defines.toml | 6 ++++-- config/arm64/defines.toml | 6 ++++-- config/config.fips | 21 +++++++++++++++++++++ 3 files changed, 29 insertions(+), 4 deletions(-) create mode 100644 config/config.fips diff --git a/config/amd64/defines.toml b/config/amd64/defines.toml index 30a2306..120c03e 100644 --- a/config/amd64/defines.toml +++ b/config/amd64/defines.toml @@ -6,7 +6,8 @@ config = [ 'amd64/config', 'amd64/config.mlx', 'config.gardenlinux', - 'config.tdx' + 'config.tdx', + 'config.fips' ] [flavour.defs] is_default = true @@ -22,7 +23,8 @@ name = 'cloud-amd64' config = [ 'config.cloud', 'amd64/config.cloud-amd64', - 'config.gardenlinux' + 'config.gardenlinux', + 'config.fips' ] [flavour.defs] is_quick = true diff --git a/config/arm64/defines.toml b/config/arm64/defines.toml index ec153f4..29b7379 100644 --- a/config/arm64/defines.toml +++ b/config/arm64/defines.toml @@ -7,7 +7,8 @@ config = [ 'arm64/config.gardenlinux', 'config.gardenlinux', 'config.tdx', - 'arm64/config.mlxbf' + 'arm64/config.mlxbf', + 'config.fips' ] [flavour.defs] is_default = true @@ -23,7 +24,8 @@ config = [ 'arm64/config.gardenlinux', 'config.cloud', 'arm64/config.cloud-arm64', - 'config.gardenlinux' + 'config.gardenlinux', + 'config.fips' ] [flavour.defs] is_quick = true diff --git a/config/config.fips b/config/config.fips new file mode 100644 index 0000000..3210f33 --- /dev/null +++ b/config/config.fips @@ -0,0 +1,21 @@ +CONFIG_CRYPTO_AES_TI=y +CONFIG_CRYPTO_AES=y +CONFIG_CRYPTO_AUTHENC=y +CONFIG_CRYPTO_CBC=y +CONFIG_CRYPTO_CCM=y +CONFIG_CRYPTO_CMAC=y +CONFIG_CRYPTO_CTR=y +CONFIG_CRYPTO_CTS=y +CONFIG_CRYPTO_DH=y +CONFIG_CRYPTO_DRBG_MENU=y +CONFIG_CRYPTO_ECB=y +CONFIG_CRYPTO_ECDH=y +CONFIG_CRYPTO_GCM=y +CONFIG_CRYPTO_GHASH=y +CONFIG_CRYPTO_HMAC=y +CONFIG_CRYPTO_JITTERENTROPY=y +CONFIG_CRYPTO_RSA=y +CONFIG_CRYPTO_SEQIV=y +CONFIG_CRYPTO_SHA3=y +CONFIG_CRYPTO_SHA512=y +CONFIG_CRYPTO_XTS=y