openssl/test/smime-certs
Daniel Van Geest d0899abb1b Implement KEMRecipientInfo (RFC9629) in CMS
Also add support for ML-KEM in CMS (draft-ietf-lamps-cms-kyber).

Add the -recip_kdf and -recip_ukm parameters to `openssl cms -encrypt`
to allow the user to specify the KDF algorithm and optional user
keying material for each recipient.

A provider may indicate which RecipientInfo type is supported
for a key, otherwise CMS will try to figure it out itself. A
provider may also indicate which KDF to use in KEMRecipientInfo
if the user hasn't specified one.

Reviewed-by: Dmitry Belyavskiy <beldmit@gmail.com>
Reviewed-by: Tomas Mraz <tomas@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/27681)
2025-07-30 11:39:04 +02:00
..
badrsa.pem
ca.cnf Implement KEMRecipientInfo (RFC9629) in CMS 2025-07-30 11:39:04 +02:00
csrsa1.pem
mksmime-certs.sh Implement KEMRecipientInfo (RFC9629) in CMS 2025-07-30 11:39:04 +02:00
sm_mldsa44.pem Fix use of SHAKE as a digest in CMS 2025-03-20 12:20:37 +01:00
sm_mlkem512.pem Implement KEMRecipientInfo (RFC9629) in CMS 2025-07-30 11:39:04 +02:00
sm_mlkem768.pem Implement KEMRecipientInfo (RFC9629) in CMS 2025-07-30 11:39:04 +02:00
sm_slhdsa_sha2_128s.pem Fix use of SHAKE as a digest in CMS 2025-03-20 12:20:37 +01:00
sm_slhdsa_shake_128s.pem Fix use of SHAKE as a digest in CMS 2025-03-20 12:20:37 +01:00
sm_slhdsa_shake_256s.pem Fix use of SHAKE as a digest in CMS 2025-03-20 12:20:37 +01:00
smdh.pem
smdsa1.pem
smdsa2.pem
smdsa3.pem
smdsap.pem
smec1.pem
smec2.pem
smec3.pem
smroot.pem
smrsa1.pem
smrsa2.pem
smrsa3-cert.pem
smrsa3-key.pem
smrsa3.pem
smrsa1024.pem