zephyr/scripts/kconfig/hardened.csv
Joakim Andersson 97d59a7c6d Bluetooth: host: Mark the option BT_FIXED_PASSKEY as insecure
Mark the option BT_FIXED_PASSKEY as an insecure option.
During Legacy pairing the passkey is used as encryption key, and
brute-forcing this is easy.
During LE Secure Connections the passkey is checked one bit at a time,
so when it is fixed the passkey can be deduced with series of pairing
attempts.

Signed-off-by: Joakim Andersson <joakim.andersson@nordicsemi.no>
2021-02-02 11:09:05 -05:00

1.9 KiB

1HW_STACK_PROTECTIONy
2INIT_STACKSn
3KERNEL_DEBUGn
4BOOT_BANNERn
5BOOT_DELAY0
6THREAD_MONITORn
7THREAD_NAMEn
8STACK_CANARIESy
9EXECUTE_XOR_WRITEy
10STACK_POINTER_RANDOM100
11BOUNDS_CHECK_BYPASS_MITIGATIONy
12PERFORMANCE_METRICSn
13STATSn
14DEBUGn
15TRACINGn
16STACK_USAGEn
17PRINTKn
18EARLY_CONSOLEn
19ASSERTn
20OBJECT_TRACINGn
21OVERRIDE_FRAME_POINTER_DEFAULTy
22DEBUG_INFOn
23OPENOCD_SUPPORTn
24TRACING_CPU_STATSn
25TRACING_CTFn
26USE_SEGGER_RTTn
27LOGn
28SHELLn
29TEST_RANDOM_GENERATORn
30ZTESTn
31TESTn
32TEST_SHELLn
33TEST_EXTRA_STACKSIZE0
34TEST_USERSPACEn
35BUILD_OUTPUT_STRIPPEDy
36SOC_ATMEL_SAME70_DISABLE_ERASE_PINy
37SOC_ATMEL_SAME70_WAIT_MODEn
38FAULT_DUMP0
39EXCEPTION_DEBUGn
40X86_MMUy
41BUILTIN_STACK_GUARDy
42MPU_STACK_GUARDy
43STACK_SENTINELy
44BT_DEBUG_SMPn
45BT_OOB_DATA_FIXEDn
46BT_FIXED_PASSKEYn
47BT_DEBUG_KEYSn
48BT_USE_DEBUG_KEYSn
49BT_STORE_DEBUG_KEYSn
50BT_CONN_DISABLE_SECURITYn
51MCUMGR_CMD_FS_MGMTn