From 7c03de546e1c368fb978d8e57fa2da7eaecae834 Mon Sep 17 00:00:00 2001 From: Joachim Vandersmissen Date: Wed, 11 Mar 2026 16:02:26 -0700 Subject: [PATCH] Add hashAlgorithm to IKE-PRF fixes #872 Also changes primitive to "kdf" since this is a KDF, not a key agreement function. Signed-off-by: Joachim Vandersmissen --- schema/cryptography-defs.json | 12 ++++++------ 1 file changed, 6 insertions(+), 6 deletions(-) diff --git a/schema/cryptography-defs.json b/schema/cryptography-defs.json index 2d1a7f19..343044f6 100644 --- a/schema/cryptography-defs.json +++ b/schema/cryptography-defs.json @@ -821,16 +821,16 @@ ], "variant": [ { - "pattern": "IKE_PRF_DERIVE", - "primitive": "key-agree" + "pattern": "IKE_PRF_DERIVE[-{hashAlgorithm}]", + "primitive": "kdf" }, { - "pattern": "IKE1_(PRF|Extended)_DERIVE", - "primitive": "key-agree" + "pattern": "IKE1_(PRF|Extended)_DERIVE[-{hashAlgorithm}]", + "primitive": "kdf" }, { - "pattern": "IKE2_PRF_PLUS_DERIVE", - "primitive": "key-agree" + "pattern": "IKE2_PRF_PLUS_DERIVE[-{hashAlgorithm}]", + "primitive": "kdf" } ] },