Received: by 2002:a05:6902:102b:0:0:0:0 with SMTP id x11csp2375369ybt; Tue, 16 Jun 2020 04:36:20 -0700 (PDT) X-Google-Smtp-Source: ABdhPJzq2jeN/T8ejNuDK8M4w7tFtRvUPR4BFvIFUOjXhPwthKsEOitUDSzjk0qOlZqE7PoVGV2T X-Received: by 2002:a50:ba8b:: with SMTP id x11mr2176533ede.201.1592307379903; Tue, 16 Jun 2020 04:36:19 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1592307379; cv=none; d=google.com; s=arc-20160816; b=lyiaK1O2NihNdVUGLek3e2B5wEJJkIkzd5OHbf8vvsByQcAJVMURGrlymWgQcO0R+X CKliT/H05ybnZZZqfwSGvSFoXhTq1n6YNVvf6euVia5lj9vBlXCvmQBoDsSHRYithCw0 C+GyBNffcWCDy28zbReuKyIRhBPIHfEXmSVdS2kSh0iD119MfuL9NMDp514hghZBGsfv VIudm1/UUqjLt3015q76XDFN7GSbmlw3/ZpV1WHnAnKewS7Ab+gGXiB3AumKaMIVTne/ Py8LBw2ZaRdNDAlA7HSbfbAGVBe1k/XPHFg/m9hqCqrEGpZWWwoX1KNrfjYGx2YWFncR TLIQ== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:user-agent:in-reply-to :content-disposition:mime-version:references:message-id:subject:cc :to:from:date; bh=HdEq1AxegAf5iIoK1e8YrqCQSo72nP+lRfwfMuSTkkI=; b=x9BfQGXklE+GLzdyaohknTsOM83Cg3JvYahf31VY5PSEX8J4dwu9q4anZeey8KmkHu rX4o9ZdMt/xVeq3SpGMN+XS25b+S7MZFv4P3qH8T2OjRgGAS1rfrNxtNKj0dtfaB9EGU t0VfP4jPXjy0NHpnhcMl5wcEPdY1T5+f4IKXYXBa7iSNBbw6DL6Ii2RQH4HbpQOyOw+J 6MnjYe2GLj18bCmXd8pa7Vl8rfIggbrSe4u/ozixVvCxgk0O0IcQxB38UKV8hrhKcNYT t3uxqHI4lUGfqX7ZoCTE417fL98UzXpw94QOsFifQM77KYtoAGW2rIWfwIQGh+NZtZdw aiKw== ARC-Authentication-Results: i=1; mx.google.com; spf=pass (google.com: domain of linux-crypto-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-crypto-owner@vger.kernel.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [23.128.96.18]) by mx.google.com with ESMTP id d17si9890161edr.224.2020.06.16.04.35.45; Tue, 16 Jun 2020 04:36:19 -0700 (PDT) Received-SPF: pass (google.com: domain of linux-crypto-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) client-ip=23.128.96.18; Authentication-Results: mx.google.com; spf=pass (google.com: domain of linux-crypto-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-crypto-owner@vger.kernel.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1725768AbgFPLfn (ORCPT + 99 others); Tue, 16 Jun 2020 07:35:43 -0400 Received: from 167-179-156-38.a7b39c.bne.nbn.aussiebb.net ([167.179.156.38]:60807 "EHLO fornost.hmeau.com" rhost-flags-OK-OK-OK-FAIL) by vger.kernel.org with ESMTP id S1726526AbgFPLfn (ORCPT ); Tue, 16 Jun 2020 07:35:43 -0400 X-Greylist: delayed 1851 seconds by postgrey-1.27 at vger.kernel.org; Tue, 16 Jun 2020 07:35:42 EDT Received: from gwarestrin.arnor.me.apana.org.au ([192.168.0.7]) by fornost.hmeau.com with smtp (Exim 4.92 #5 (Debian)) id 1jl9OW-0006og-Ph; Tue, 16 Jun 2020 21:04:45 +1000 Received: by gwarestrin.arnor.me.apana.org.au (sSMTP sendmail emulation); Tue, 16 Jun 2020 21:04:44 +1000 Date: Tue, 16 Jun 2020 21:04:44 +1000 From: Herbert Xu To: Eric Biggers Cc: Ard Biesheuvel , Stephan Mueller , Linux Crypto Mailing List Subject: Re: [v2 PATCH 0/3] crypto: skcipher - Add support for no chaining and partial chaining Message-ID: <20200616110444.GA31608@gondor.apana.org.au> References: <20200612120643.GA15724@gondor.apana.org.au> <1688262.LSb4nGpegl@tauon.chronox.de> <20200612121651.GA15849@gondor.apana.org.au> <20200612122105.GA18892@gondor.apana.org.au> <20200615073024.GA27015@gondor.apana.org.au> <20200615185028.GB85413@gmail.com> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <20200615185028.GB85413@gmail.com> User-Agent: Mutt/1.10.1 (2018-07-13) Sender: linux-crypto-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-crypto@vger.kernel.org On Mon, Jun 15, 2020 at 11:50:28AM -0700, Eric Biggers wrote: > > Wouldn't it make a lot more sense to make skcipher algorithms non-chainable by > default, and only opt-in the ones where chaining is actually working? At the > moment we only test iv_out for CBC and CTR, so we can expect that all the others > are broken. Yes, I'm working through all the algorithms marking them. If it turns out that defaulting to off would result in a smaller patch then I'm certainly going to do that. > Note that wide-block modes such as Adiantum don't support chaining either. > > Also, please use a better name than "fcsize". Any suggestions? Thanks, -- Email: Herbert Xu Home Page: http://gondor.apana.org.au/~herbert/ PGP Key: http://gondor.apana.org.au/~herbert/pubkey.txt