Allow compile-time alternate to mbedtls_zeroize()

Add a new macro MBEDTLS_UTILS_ZEROIZE that allows users to configure
mbedtls_zeroize() to an alternative definition when defined. If the
macro is not defined, then mbed TLS will use the default definition of
the function.
This commit is contained in:
Andres Amaya Garcia 2017-10-25 09:51:14 +01:00 committed by Andres Amaya Garcia
parent e32df087fb
commit b1262a3bdb
2 changed files with 16 additions and 0 deletions

View file

@ -2852,6 +2852,14 @@
*/
#define MBEDTLS_TLS_DEFAULT_ALLOW_SHA1_IN_KEY_EXCHANGE
/**
* \def MBEDTLS_UTILS_ZEROIZE_ALT
*
* Uncomment the macro to let mbed TLS use your alternate implementation of
* mbedtls_zeroize().
*/
//#define MBEDTLS_UTILS_ZEROIZE_ALT
/* \} name SECTION: Customisation configuration options */
/* Target and application specific configurations */