Skip to content

Add RSA4096 to the PIV algorithm set - #10

Merged
mmlado merged 1 commit into
mainfrom
feat/rsa4096-support
Sep 4, 2026
Merged

mmlado merged 1 commit into
mainfrom
feat/rsa4096-support

Conversation

@mmlado

@mmlado mmlado commented Sep 2, 2026

Copy link
Copy Markdown
Collaborator

perso generate-key, perso import-key (plain N/E/D form), CSR and self-signed-cert signing, and profile key mechanisms all accept RSA4096 (mechanism 0x16), alongside the existing algorithms.

Also:

  • generate-key gains the --create-key-object dev/eval fallback import-key already had.
  • 6F00 on RSA generate/import is reported as the chip's RSA size cap instead of the raw status word.

CI locally: ruff check + format, pytest (347, not real_card), mypy, sphinx -W all green.

🤖 Generated with Claude Code

perso generate-key, perso import-key (plain N/E/D form), CSR and
self-signed-cert signing, and profile key mechanisms all accept
RSA4096 (mechanism 0x16), alongside the existing algorithms.
generate-key gains the --create-key-object dev/eval fallback
import-key already had, and 6F00 on RSA generate/import is
reported as the chip's RSA size cap instead of the raw status word.

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
@mmlado
mmlado requested a review from embarquech September 4, 2026 07:55
@mmlado mmlado self-assigned this Sep 4, 2026
@mmlado
mmlado merged commit 01c5c57 into main Sep 4, 2026
12 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants