Roadmap
Note that the quarter when a feature is expected to be completed is based on very rough estimates of the effort involved and therefore can change. Items to be delivered beyond the current quarter may be pushed back, or change in scope.
If you are interested in collaborating on any of the roadmap features or other features in the project, please mail Mbed TLS or PSA Crypto mailing lists.
2024 CQ4 (In Development)
[PSA Crypto] TF-PSACrypto repository becomes live
[Mbed TLS] Mbed TLS uses PSA Crypto repository
[PSA Crypto] PSA Crypto Repo split
[PSA Crypto] Framework for PSA Crypto Repo split
[PSA Crypto] Configuration Split for PSA Crypto Repo split
[Mbed TLS] Mbed TLS4.0 - PSA Interruptible ECC
[Mbed TLS] Mbed TLS4.0 - Test cases not executed
[Mbed TLS] Mbed TLS4.0 - Investigate removals and deprecations
[Mbed TLS] [Mbed TLS4.0 - PSA Crypto Always ON]https://github.com/orgs/Mbed-TLS/projects/15/views/3
2025 CQ1
[Mbed TLS] Mbed TLS4.0 Alpha release
[PSA Crypto] SPAKE2+ Implementation
2025 CQ2
[Mbed TLS] Mbed TLS4.0 Alpha
[PSA Crypto] PSA driver – Handle Opaque Persistent Key in Secure Element - Implementation
Future
[Mbed TLS] Bignum Improvements
[PSA Crypto] PSA Client-Server Testing
PSA Crypto restartable sign enhancements
Multi-threading perf. improvements, testing
[PSA Crypto] Memory Optimizations (code size)
[Mbed TLS] [PSA Crypto 1.1 compliance]
[PSA Crypto] [Extended PSA Crypto v1.0 spec compliance]
[Mbed TLS] [TLS1.3 Continued]
[PSA Crypto][PSA Secure Element, Crypto Accelerator Support Enhancements]
[Raw Public Key Mode]
[EdDSA]
[PSA Crypto] SHA3
[Mbed TLS][Performance Optimization - ECP and Bignum]
[PSA Crypto] Clean up and Stabilization
DTLS1.3
[Mbed TLS] [PKCS7 Generation]
Post Quantum Crypto
Completed
[Mbed TLS] [Mbed TLS3.6.1]
[PSA Crypto] [PBKDF2 PSA SW Implementation]
[Mbed TLS] [3.6 LTS release]
[Mbed TLS] [TLS1.3 early data]
[Mbed TLS] [TLS1.3 misc]
[PSA Crypto] [PSA Crypto Thread safe]
[Mbed TLS] [Code size optimisation (driver only build - Cipher and AEAD)]
[Mbed TLS] [Code size optimisation (driver only build - ECC)]
[PSA Crypto] [Memory Optimizations (code size)]
[Mbed TLS] [Mbed TLS3.5 Release]
[PSA Crypto] [Publish PSA Crypto prototype repository]
[Mbed TLS] [Code size optimisation (driver only build - hashes inc. HMAC)]
[Mbed TLS] [PKCS7 Parser]
[PSA Crypto] [PSA Crypto restartable sign message]
[PSA Crypto] [ECJ-PAKE PSA Implementation]
[Mbed TLS] [Connection ID DTLS1.2]
[Mbed TLS] [Use PSA: code size optimisation via PSA_CRYPTO_CONFIG - part1: symmetric]
[Mbed TLS] [TLS/X.509 - Use PSA Long term secret isolation]
[Mbed TLS] [TLS1.3 PSK]
[Mbed TLS] [Mbed TLS3.2]
[Mbed TLS] [TLS1.3 server side]
[Mbed TLS] [TLS1.3 MVP]
[Mbed TLS] [TLS/X.509 - Use PSA Crypto APIs Fully - Phase1]
[Mbed TLS] [SHA256/512 - Neon Optimization]
[Mbed TLS] [New 2.x LTS]
[PSA Crypto] [Support Missing PSA Crypto v1.0 APIs supported in MbedCrypto]
[PSA Crypto] M-AEAD Implementation
[PSA Crypto] EdDSA API Design
[PSA Crypto] PBKDF2 API Design
[PSA Crypto] ECJPAKE API Design
DTLS-SRTP
Lucky13 Security Improvements
[PSA Crypto] [PSA Crypto API implementation v1.0 Specification - Phase1]
[Unified PSA Driver Interface]- API Design and initial support
[PSA Crypto] PSA driver – Handle Opaque Persistent Key in Secure Element - [Design]
[Mbed TLS] [Use PSA: misc. gaps]
[Bignum] [ECP Curves field reduction - NIST]