Received: by 2002:a05:6359:c8b:b0:c7:702f:21d4 with SMTP id go11csp1568251rwb; Fri, 23 Sep 2022 14:59:45 -0700 (PDT) X-Google-Smtp-Source: AMsMyM5kDwItp44+SQi16syeLE/u2qWsqWxYUbtnKMk7Ir/OU+RWrq+Pfjd9R1uAoQu4jSpFrQbq X-Received: by 2002:a17:902:ea11:b0:178:1c19:b0f5 with SMTP id s17-20020a170902ea1100b001781c19b0f5mr10491920plg.152.1663970385474; Fri, 23 Sep 2022 14:59:45 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1663970385; cv=none; d=google.com; s=arc-20160816; b=Mozy1CBM8pAQKMxiYMq6BGZuTUmYNoW94pbTOm4m/vB8Cu0tnbHiw5kC2qJlBFogrR wXdIp3bD93WBcuqO+brfLdHyAqW+G/qV4Q0HTqvZz26TTgSBrihZA7bhcIUYMBd1jOBO HdR0q7oOq41tr9H/jIJth5S2EhYlPuwepVFk2/KiLt5kPT0AmwRN/uoc6YPKoc8F7883 58JE2m3zozuVeMPwWfLzq7mhM3ruAazBnTqF5Hlsqkraas38KqkxRJu+9x5ZNwhb1xpe Z8q8eZwq87L7TNT28b1UXOHqFxxDffRK4okAmlTcbi7Z0QZNOO8786MurbTeWSFMbHDX l8UA== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:in-reply-to:content-disposition:mime-version :references:mail-followup-to:message-id:subject:cc:to:from:date :dkim-signature; bh=rSFjW36jJOKHdmnnk3/fGHSGvXpsb/XtXPbpN+m6od0=; b=yohriLg0LD3pRWroGBP3cwrvnY5jP5isBToTR83XcTH726iXNwe7iL8Olhrw8Co3i/ HLNWP+JciNsY0CKHRuWt42gquHec3gW6UTBrAu2AwXKqkJI8earfjp5SLMRxiGCbVfqQ DYFZyTBbNInV/CvUf7O/CDU89e31C0eo8kV4tzw5dwHHC9rHNbqUgOBkxFcWvZaUu2CC 6BQ5TasBGXUcSIz/WPf3CSTT7Rr+u5ypmazie1L5QLtlnzx5qNNuvdI3LVBpXRYi/68w w/sQ0nvDfpZHim89FHdJu1afhFMAUu6VoISS7G9FVYwAiXPl40I0YncKmTf+l2iLhPP8 eI4g== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@gmail.com header.s=20210112 header.b="WbGuo/Q+"; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 2620:137:e000::1:20 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=QUARANTINE dis=NONE) header.from=gmail.com Return-Path: Received: from out1.vger.email (out1.vger.email. [2620:137:e000::1:20]) by mx.google.com with ESMTP id j15-20020a056a00174f00b005355298e9c3si11338264pfc.228.2022.09.23.14.59.33; Fri, 23 Sep 2022 14:59:45 -0700 (PDT) Received-SPF: pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 2620:137:e000::1:20 as permitted sender) client-ip=2620:137:e000::1:20; Authentication-Results: mx.google.com; dkim=pass header.i=@gmail.com header.s=20210112 header.b="WbGuo/Q+"; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 2620:137:e000::1:20 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=QUARANTINE dis=NONE) header.from=gmail.com Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S231317AbiIWVdJ (ORCPT + 99 others); Fri, 23 Sep 2022 17:33:09 -0400 Received: from lindbergh.monkeyblade.net ([23.128.96.19]:57124 "EHLO lindbergh.monkeyblade.net" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S229525AbiIWVdA (ORCPT ); Fri, 23 Sep 2022 17:33:00 -0400 Received: from mail-qv1-xf33.google.com (mail-qv1-xf33.google.com [IPv6:2607:f8b0:4864:20::f33]) by lindbergh.monkeyblade.net (Postfix) with ESMTPS id 966119E8BC for ; Fri, 23 Sep 2022 14:32:58 -0700 (PDT) Received: by mail-qv1-xf33.google.com with SMTP id mi14so735644qvb.12 for ; Fri, 23 Sep 2022 14:32:58 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20210112; h=in-reply-to:content-disposition:mime-version:references :mail-followup-to:message-id:subject:cc:to:from:date:from:to:cc :subject:date; bh=rSFjW36jJOKHdmnnk3/fGHSGvXpsb/XtXPbpN+m6od0=; b=WbGuo/Q+2JQls71JXy+DKjT5lrw9Kurr859OQWRjUynQP9sn+xsppwjjlQoPfdEMSk UtXtkNhx2Ve54PsfhiAsf3fxP9SOXsyLtjyMrQ/bO3Kr/89MWJMKEGObGFlV/4jC01E7 p5Bu8AlF4rtevBUYS6v/GZpbDCqkysmu4vOtXv1fgT3Pwyj5wFKf9ckkGMeaO9H/x/xJ aJ84ZU9KLyjGw2pAVsfKPntSXrF7DP7wGMPdE91jn19BQ0UNfqAfL61/nL8Mfnkfn4IC pnqDIFsY2GMYomFs6QM6Tx6qkmipmV3Zwelkia49Vq4sLM7XVnY0vDgbvylNhcf5jG9n jGzA== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=in-reply-to:content-disposition:mime-version:references :mail-followup-to:message-id:subject:cc:to:from:date :x-gm-message-state:from:to:cc:subject:date; bh=rSFjW36jJOKHdmnnk3/fGHSGvXpsb/XtXPbpN+m6od0=; b=Lfx47yhj9oBw04i7TgiBpknw0lWJTy4ziPJAR2IDCISeSXSt/rEuZrJWBnpBpwdpOO qId/WaOr0gi8I4GBTyd0h+B753ZgfPGFvKuiGfq7isnfTWUgPl3rdUgoGnX2iiAX8OuG gD8RemsnHClgnAa8zYJpJDTRQ98Os10ixtOh1u5lYC5Ea9RCDGbA5UUDqHe2+b/wRwnT QL2Dejzn83lQTSTwB8+NualgVs3iRsYY3sSAz0rU+GFfUsBw0ioAxT9dP+yGlZ6jWdfi tku9v9AINNQJJoElWNmSXKLyYyVoALtlVUf7Tp7l2nNSjL8skF1NMHEKYeDD/NRzITG3 k0dA== X-Gm-Message-State: ACrzQf1uuFvNS4C4IFdQEwfsCHj0kAGbOmMm5j4O0955eCEbY1VXRHLh 5IJ2bqzAOzi2eId0t5UC33D7B5eCrpE= X-Received: by 2002:a0c:8dca:0:b0:4ad:6e03:c906 with SMTP id u10-20020a0c8dca000000b004ad6e03c906mr8735830qvb.74.1663968777751; Fri, 23 Sep 2022 14:32:57 -0700 (PDT) Received: from Gentoo ([154.16.192.39]) by smtp.gmail.com with ESMTPSA id c15-20020ac8110f000000b0035bbb0fe90bsm5881272qtj.47.2022.09.23.14.32.53 (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Fri, 23 Sep 2022 14:32:57 -0700 (PDT) Date: Sat, 24 Sep 2022 03:02:32 +0530 From: Bhaskar Chowdhury To: Daniel Mentz Cc: Bhaskar Chowdhury , masahiroy@kernel.org, lkml Subject: Re: [PATCH] kernel:gen_kheaders:Replace md5sum to sha256sum Message-ID: Mail-Followup-To: Bhaskar Chowdhury , Daniel Mentz , Bhaskar Chowdhury , masahiroy@kernel.org, lkml References: <20220923110332.24090-1-unixbhaskar@gmail.com> MIME-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha256; protocol="application/pgp-signature"; boundary="0rxz6OFaGQFUDwk7" Content-Disposition: inline In-Reply-To: X-Spam-Status: No, score=-1.8 required=5.0 tests=BAYES_00,DKIM_SIGNED, DKIM_VALID,DKIM_VALID_AU,DKIM_VALID_EF,FREEMAIL_ENVFROM_END_DIGIT, FREEMAIL_FROM,RCVD_IN_DNSWL_NONE,SPF_HELO_NONE,SPF_PASS autolearn=ham autolearn_force=no version=3.4.6 X-Spam-Checker-Version: SpamAssassin 3.4.6 (2021-04-09) on lindbergh.monkeyblade.net Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org --0rxz6OFaGQFUDwk7 Content-Type: text/plain; charset=us-ascii; format=flowed Content-Disposition: inline On 11:12 Fri 23 Sep 2022, Daniel Mentz wrote: >On Fri, Sep 23, 2022 at 4:06 AM Bhaskar Chowdhury wrote: >> Thought to apply a better encryption mechanism. > >MD5 and SHA256 are secure (or, in the case of MD5, not so secure) hash >algorithms, not encryption mechanisms. > >> Replace all occurance of md5sum to sha256sum . > >Looking at this script, I'm not convinced that it relies on MD5 being >a cryptophically secure hash function. It appears to me as if this >script uses MD5 to simply detect innocent changes to a set of files as >opposed to guarding against malicious attacks. I also found that >sha256sum takes almost three times longer than md5sum. So, in the >absence of security requirements, md5sum might actually be the better >choice because it's faster. Al righto! Then...no issues, give it a pass. -- Thanks, Bhaskar "Here's looking at you kid"-- Casablanca https://about.me/unixbhaskar --0rxz6OFaGQFUDwk7 Content-Type: application/pgp-signature; name="signature.asc" -----BEGIN PGP SIGNATURE----- iQGzBAABCAAdFiEEs7FAjU4eq1yogJSEAkGeLcGNq5MFAmMuJfAACgkQAkGeLcGN q5OqngwAqKVulL0D7+pSyt+EoqX11vRhvNV24J14JrJdXCkg8RTrMDFnCHS8xo8y ypsXspIKDFo0Qy943HS/5CNYI6ulx4fI6EGKB4T4oFqxf53Mb8hLiiNT9fURRcXY t6R54tBi58wnyP8DMi56I/zEniTpvUhKh6hfaei8392CseZcb1RV+Vgq+q+v2UDq L61XVfhqq3axJi2VCZLH3uTQUBW5UQjP3d+KkVHfoHMOMXpWV8K7AVdSYZRSjOJG 90Au0GjS11AoAtw43ZrIFVJ05rcPTgoZSVjvfQdv438p/M7hQwd+3Gxgz7I4Y5A2 o4aijZeHeI5qrJpvitR3m1PXQjdn7wRK29ImydEcJY7zrhhL50wLlCFViR2K6gN6 AaABCvOlXOm/7RCXcft8dGlGEIYR5b8gWGIipW7O6jlCLaY1y+MMVpO9Mhgd84GO 3JQvryuoJG3WPmY4TZGvQpuwWC+WPoArqbnTRgw0S+2vCtlcU8s3kWwpGBfMh3xc Kmb/ob8S =8hBt -----END PGP SIGNATURE----- --0rxz6OFaGQFUDwk7--