From a6d312bc9ca68d7df6f6a89c44bd1014b01d8321 Mon Sep 17 00:00:00 2001 From: Filip Skokan Date: Tue, 10 Mar 2026 11:55:06 +0100 Subject: [PATCH] crypto: default ML-KEM and ML-DSA pkcs8 export to seed-only format Configure OpenSSL provider parameters to prefer seed-only format when exporting ML-KEM and ML-DSA private keys that contain a seed. Keys without a seed continue to use the private-only format. --- doc/api/crypto.md | 5 +++++ src/crypto/crypto_util.cc | 17 +++++++++++++++++ .../test-crypto-pqc-key-objects-ml-dsa.js | 2 +- .../test-crypto-pqc-key-objects-ml-kem.js | 2 +- 4 files changed, 24 insertions(+), 2 deletions(-) diff --git a/doc/api/crypto.md b/doc/api/crypto.md index 65b61292e70891..acde45c346c84e 100644 --- a/doc/api/crypto.md +++ b/doc/api/crypto.md @@ -2121,6 +2121,11 @@ type, value, and parameters. This method is not