Received: by 2002:a05:6902:102b:0:0:0:0 with SMTP id x11csp1995995ybt; Mon, 15 Jun 2020 15:16:53 -0700 (PDT) X-Google-Smtp-Source: ABdhPJxajZxaGvZ58EMwDu93yNv6uqUoeMCbQL2Q84E+EcT5bdHjCQxBhURALaKmO0yeM513Y+Si X-Received: by 2002:a17:906:d204:: with SMTP id w4mr12288029ejz.117.1592259413642; Mon, 15 Jun 2020 15:16:53 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1592259413; cv=none; d=google.com; s=arc-20160816; b=PjMeX6f54Hv/oaHAkD5VY3kEtcxhZdTcjlq8YTxiQrsB/7VYWFKwiVehtd4IHLffe4 PyFvOYcLjSRcFziWyp/t5vrqsJmv6J5wqs8BYATVrnO7rq6s/EsI9r+oJgsaMbCoJuw5 6iuDK60K3IvaUMK/DVCVUfGxWaO7P/kW0F+rMB045+AOnNzWetrYOJ3y42yr1iFmlfIf MY4nFK4R08fGtHA9wsiIcjbMq5Ay6Ht/jWTAvoFNK2b4VdpRdq1rR4nsAq3Tpr/KVe7Y SdKgda/bVczfN2RXZ4hD1dFPovA1pL04+hPXobjBhE/Ntb9rSigD8MEmpdsgmvZIbUse 4pXQ== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:content-transfer-encoding:mime-version :references:in-reply-to:message-id:date:subject:cc:to:from :dkim-signature; bh=FeJ3l5DH892KBxi7jQF8NaTXGsSNdYcTAS54Cp4sDVY=; b=uvMRHxYNh6LJy20OtXlfa3CCqKD92nYyjrPKGcr+hjH37/6j5IZY83GtTYA6uUDQ01 sZAqrzlWIY9499FCGpBZyX9isw3RYKhBQ5spSww/aZnaWRbJR6UIsNJXIsk1g3huVpEa anMt2zJrer+6JhRYJsp+y0xVrT54gY0OQisa54Do650pHnwmnljbCammujN9/kzv4fNq kcTO0LCUfjFu/eZz98xdonXmx6hKM1fEvBljUbdftlrt9u078XB+2RD/qjQVd6W+Ki8b RKMwIdGSHUrIJUGmvJJd6Io1DR4jFIb/SPMpOgLIDW6yorYlUOQz8NMveichUq6VjFxx w/Qg== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@kernel.org header.s=default header.b=M2ftYjM5; spf=pass (google.com: domain of linux-crypto-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-crypto-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=kernel.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [23.128.96.18]) by mx.google.com with ESMTP id gl17si9856433ejb.336.2020.06.15.15.16.30; Mon, 15 Jun 2020 15:16:53 -0700 (PDT) Received-SPF: pass (google.com: domain of linux-crypto-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) client-ip=23.128.96.18; Authentication-Results: mx.google.com; dkim=pass header.i=@kernel.org header.s=default header.b=M2ftYjM5; spf=pass (google.com: domain of linux-crypto-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-crypto-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=kernel.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1726362AbgFOWOG (ORCPT + 99 others); Mon, 15 Jun 2020 18:14:06 -0400 Received: from mail.kernel.org ([198.145.29.99]:36720 "EHLO mail.kernel.org" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1726044AbgFOWOC (ORCPT ); Mon, 15 Jun 2020 18:14:02 -0400 Received: from ebiggers-linuxstation.mtv.corp.google.com (unknown [104.132.1.76]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by mail.kernel.org (Postfix) with ESMTPSA id D53912078E; Mon, 15 Jun 2020 22:14:01 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=kernel.org; s=default; t=1592259242; bh=/+9oMm841PV2DS5+tXwvS9/SSKKKymrkweEl/gCWAiM=; h=From:To:Cc:Subject:Date:In-Reply-To:References:From; b=M2ftYjM53KgV8apDXYNHPm1wPJE0jdf/PA5zQpqM/DRw4C8obH+vF857cOwcHEMLJ Q09YY7KV86SbGG3wFhmeu2oyqFcSZOJLRcm+cSyxHFWXU8+fC8cIApJTr1Ecrrsmpi L5jYCBV/sdqwvm5qT82y4XD1AP0ADhfyuFE4ULjY= From: Eric Biggers To: netdev@vger.kernel.org Cc: linux-crypto@vger.kernel.org, Corentin Labbe , Greg Kroah-Hartman , Herbert Xu , Steffen Klassert Subject: [PATCH net v5 2/3] esp: select CRYPTO_SEQIV Date: Mon, 15 Jun 2020 15:13:17 -0700 Message-Id: <20200615221318.149558-3-ebiggers@kernel.org> X-Mailer: git-send-email 2.27.0.290.gba653c62da-goog In-Reply-To: <20200615221318.149558-1-ebiggers@kernel.org> References: <20200615221318.149558-1-ebiggers@kernel.org> MIME-Version: 1.0 Content-Transfer-Encoding: 8bit Sender: linux-crypto-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-crypto@vger.kernel.org From: Eric Biggers Commit f23efcbcc523 ("crypto: ctr - no longer needs CRYPTO_SEQIV") made CRYPTO_CTR stop selecting CRYPTO_SEQIV. This breaks IPsec for most users since GCM and several other encryption algorithms require "seqiv" -- and RFC 8221 lists AES-GCM as "MUST" be implemented. Just make XFRM_ESP select CRYPTO_SEQIV. Fixes: f23efcbcc523 ("crypto: ctr - no longer needs CRYPTO_SEQIV") Acked-by: Herbert Xu Cc: Corentin Labbe Cc: Greg Kroah-Hartman Cc: Steffen Klassert Signed-off-by: Eric Biggers --- net/xfrm/Kconfig | 1 + 1 file changed, 1 insertion(+) diff --git a/net/xfrm/Kconfig b/net/xfrm/Kconfig index d140707faddc..bfb45ee56e5f 100644 --- a/net/xfrm/Kconfig +++ b/net/xfrm/Kconfig @@ -86,6 +86,7 @@ config XFRM_ESP select CRYPTO_SHA1 select CRYPTO_DES select CRYPTO_ECHAINIV + select CRYPTO_SEQIV config XFRM_IPCOMP tristate -- 2.27.0.290.gba653c62da-goog