CKM_EC_MONTGOMERY_KEY_PAIR_GEN

Generate keys over Montgomery curves. Keys generated with this mechanism are of type CKK_EC_MONTGOMERY. They can be used with the existing CKM_ECDH1_DERIVE mechanism. Given that the ECDH mechanism is the same, and relies on "point multiply" on the given curve, no Montgomery-specific mechanism is provided at this time. Allowed curve is "Curve25519".

Firmware 7.8.4 and Newer Summary

FIPS approved? Yes
Supported functions Generate Key Pair
Functions restricted from FIPS use None
Minimum key length (bits) 256
Minimum key length for FIPS use (bits) 256
Minimum legacy key length for FIPS use (bits) N/A
Maximum key length (bits) 448
Block size 0
Digest size 0
Key types EC_MONT
Algorithms None
Modes None
Flags None

Firmware 7.1.0-7.8.2 Summary

FIPS approved? Yes
Supported functions Generate Key Pair
Functions restricted from FIPS use None
Minimum key length (bits) 256
Minimum key length for FIPS use (bits) 256
Minimum legacy key length for FIPS use (bits) N/A
Maximum key length (bits) 256
Block size 0
Digest size 0
Key types EC_MONT
Algorithms None
Modes None
Flags None

Firmware 7.0.3 and Older Summary

FIPS approved? No
Supported functions Generate Key Pair
Minimum key length (bits) 256
Minimum key length for FIPS use (bits) N/A
Minimum legacy key length for FIPS use (bits) N/A
Maximum key length (bits) 256
Block size 0
Digest size 0
Key types EC_MONT
Algorithms None
Modes None
Flags None