Re: [openssl-dev] [openssl-users] Kerberos

2015-05-14 Thread Jeffrey Altman
On 5/13/2015 10:19 AM, Matt Caswell wrote: On 08/05/15 09:40, Matt Caswell wrote: On 08/05/15 02:28, Jeffrey Altman wrote: Regardless, the inability to improve the support in this area has left the those organizations that rely upon 2712 with the choice of use insecure protocols or

[openssl-dev] [openssl.org #3850] [PATCH] Improved performance Multi Block CBC-SHA1 and CBC-SHA256

2015-05-14 Thread Gueron, Shay via RT
Hello all, This patch is a contribution to OpenSSL. It concerns the Multi Block (MB) CBC SHA1/SHA256 implementations (the function tls1_1_multi_block_encrypt in e_aes_cbc_hmac_sha1.c and e_aes_cbc_hmac_sha256.c). The patch addresses a slow derivation of the multiple random IV's for the CBC