Re: Crypto oops in async_chainiv_do_postponed

2009-09-01 Thread Herbert Xu
On Tue, Sep 01, 2009 at 10:42:44AM -0500, Brad Bosch wrote: > > Now, ctx-err may be used by both async_chainiv_postpone_request to > store the return value from skcipher_enqueue_givcrypt and by > async_chainiv_givencrypt_tail to store the return value from > crypto_ablkcipher_encrypt at the same t

Re: [pkg-cryptsetup-devel] Bug#541835: crypto configuration / dependencies broken

2009-09-01 Thread Sebastian Andrzej Siewior
* Jonas Meurer | 2009-09-01 02:51:20 [+0200]: >as you already discovered, that's because the initramfs hook script for >cryptroot adds some crypto modules manually in debian. currently these >are dm-mod, dm-crypt, cbc, aes, sha256 and all the modules they depend >on. You could add something like

Re: Crypto oops in async_chainiv_do_postponed

2009-09-01 Thread Brad Bosch
Herbert Xu writes: > On Mon, Aug 31, 2009 at 11:11:42AM -0500, Brad Bosch wrote: > > > > OK. I was looking for something subtle because the crash takes a long > > time to happen. But do you agree that the race I described above also > > a real bug? > > No I don't think it is. CHAINV_STAT

[PATCH] crypto: Add VMAC(AES) to kernel for intel_txt support (resend)

2009-09-01 Thread Shane Wang
Hi Herbert, I am wondering whether the email system converts tab indent into spaces. Please use the attached file (it is the same as the plain text below). This patch is based on the latest git://git.kernel.org/pub/scm/linux/kernel/git/herbert/cryptodev-2.6.git Any problem, let me know. Thank

Re: Does ESP support 64 bit sequence numbering for authentication hash ?

2009-09-01 Thread Steffen Klassert
On Tue, Sep 01, 2009 at 03:23:21PM +0300, Alex Badea wrote: > > A while ago I implemented a rough version of ESN support. It's against > an ancient 2.6.7 kernel though, and is only superficially tested. > > I suppose there's no reason not to publish them here, if only for > historical reasons. My

Re: Does ESP support 64 bit sequence numbering for authentication hash ?

2009-09-01 Thread Alex Badea
On 09/01/2009 03:09 PM, Steffen Klassert wrote: > On Thu, Jan 15, 2009 at 04:56:44PM +1100, Herbert Xu wrote: >> Dean Jenkins wrote: >>> Does ESP support 64 bit sequence numbering for use with the >>> authentication HMAC ? >> We don't support 64-bit sequence numbers yet. If you look at >> struct

Re: Does ESP support 64 bit sequence numbering for authentication hash ?

2009-09-01 Thread Herbert Xu
On Tue, Sep 01, 2009 at 02:09:15PM +0200, Steffen Klassert wrote: > > > Patches for 64-bit support are welcome of course. > > Is there actually anybody working on 64-bit sequence number support? > If not, I'd start to look at it. I certainly am not :) Thanks, -- Visit Openswan at http://www.ope

Re: Does ESP support 64 bit sequence numbering for authentication hash ?

2009-09-01 Thread Steffen Klassert
On Thu, Jan 15, 2009 at 04:56:44PM +1100, Herbert Xu wrote: > Dean Jenkins wrote: > > > > Does ESP support 64 bit sequence numbering for use with the > > authentication HMAC ? > > We don't support 64-bit sequence numbers yet. If you look at > struct xfrm_replay_state which is where we store the