Received: by 2002:a05:6a10:9e8c:0:0:0:0 with SMTP id y12csp611457pxx; Mon, 26 Oct 2020 16:51:39 -0700 (PDT) X-Google-Smtp-Source: ABdhPJzajreyDsJLFkSDtTVolMc7ZSGSh4ZORWwBG9jLvMXE2kDMT3ZMhm8YNohK2IjOwQmkIRdB X-Received: by 2002:a17:907:4273:: with SMTP id nq3mr16683552ejb.439.1603756299526; Mon, 26 Oct 2020 16:51:39 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1603756299; cv=none; d=google.com; s=arc-20160816; b=Uk8I8eE57J2SGmiKjGzY9HNc7W1ax3Q7+lDz6PxGGBlSsreRvmIwMa/4XWVHWDEgza 9hnwfozA6rbGl4ZVoas9YyjLo2k/YUAi6Vi/QDXCHACUDTSTZDZ9Jvm8pKGJPCdrca/j 1zCX84zhXI2uYH2j6Zuv790Ws5ocgUIJMnYZqQqb5PzRJJLSu/cpuWtD2ftlRlvSooPT Dmj1UzjoeVw2QvkIBMidIyOGnW5ueeDP+l6QHRTN/SHKCfqiWLrAjmFgZdptvjqVe0RY TqKCAGdSanouR/dMD4dag5CC3tenFS4rqoVos+cWath1p7qSHAkjcsueJxWZjLGbcHXv EelQ== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:user-agent:in-reply-to:content-disposition :mime-version:references:message-id:subject:cc:to:from:date; bh=MZ+P520LedKIxAySWvNN9ePvitbNI/9gGwOeLozasv4=; b=1FXTvr0Li8JH6D2U0d8ntSyfwgMRUyBzPO2aMPXzkJ2W+24/iq6JMdLQ4ORYxji96o ByyMpcwUX4I/XStuaiCZKUvn+32V0d/TM9PYWVdH+K5A3UvIQCsfXwVhcuJzjCuiz+tq E5e+fnjJDUItjhBx/1fMMrnbKsSHP+zw4JZ4/QwhASOKGEw5Hx20ehXsNcLfHLYvZNCa y9BFM8l6hGWvSYUy/AE4hRYcwZBX4dZWEoJ+9ARe6dac4Eg5pf5u/9pU18Wp/34odxXP M89HKK2zfPXXfnrzLPiicWeCerhwhFsj1CZpDWJCwANhUFxUVnN0JUpoaytDUaCVBwIA Urfg== ARC-Authentication-Results: i=1; mx.google.com; spf=pass (google.com: domain of linux-crypto-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-crypto-owner@vger.kernel.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [23.128.96.18]) by mx.google.com with ESMTP id p90si8127840edd.284.2020.10.26.16.51.16; Mon, 26 Oct 2020 16:51:39 -0700 (PDT) Received-SPF: pass (google.com: domain of linux-crypto-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) client-ip=23.128.96.18; Authentication-Results: mx.google.com; spf=pass (google.com: domain of linux-crypto-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-crypto-owner@vger.kernel.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1790197AbgJZSmN (ORCPT + 99 others); Mon, 26 Oct 2020 14:42:13 -0400 Received: from helcar.hmeau.com ([216.24.177.18]:48796 "EHLO fornost.hmeau.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1774771AbgJZSmN (ORCPT ); Mon, 26 Oct 2020 14:42:13 -0400 Received: from gwarestrin.arnor.me.apana.org.au ([192.168.0.7]) by fornost.hmeau.com with smtp (Exim 4.92 #5 (Debian)) id 1kX7RM-0006ql-2t; Tue, 27 Oct 2020 05:41:57 +1100 Received: by gwarestrin.arnor.me.apana.org.au (sSMTP sendmail emulation); Tue, 27 Oct 2020 05:41:56 +1100 Date: Tue, 27 Oct 2020 05:41:56 +1100 From: Herbert Xu To: Eric Biggers Cc: Milan Broz , Gilad Ben-Yossef , "David S. Miller" , Alasdair Kergon , Mike Snitzer , dm-devel@redhat.com, Song Liu , Ofir Drang , linux-crypto@vger.kernel.org, linux-kernel@vger.kernel.org, linux-raid@vger.kernel.org Subject: Re: [PATCH 3/4] dm crypt: switch to EBOIV crypto API template Message-ID: <20201026184155.GA6863@gondor.apana.org.au> References: <20201026130450.6947-1-gilad@benyossef.com> <20201026130450.6947-4-gilad@benyossef.com> <20201026175231.GG858@sol.localdomain> <20201026183936.GJ858@sol.localdomain> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <20201026183936.GJ858@sol.localdomain> User-Agent: Mutt/1.10.1 (2018-07-13) Precedence: bulk List-ID: X-Mailing-List: linux-crypto@vger.kernel.org On Mon, Oct 26, 2020 at 11:39:36AM -0700, Eric Biggers wrote: > > CONFIG_DM_CRYPT can either select every weird combination of algorithms anyone > can ever be using, or it can select some defaults and require any other needed > algorithms to be explicitly selected. > > In reality, dm-crypt has never even selected any particular block ciphers, even > AES. Nor has it ever selected XTS. So it's actually always made users (or > kernel distributors) explicitly select algorithms. Why the Bitlocker support > suddenly different? > > I'd think a lot of dm-crypt users don't want to bloat their kernels with random > legacy algorithms. The point is that people rebuilding their kernel can end up with a broken system. Just set a default on EBOIV if dm-crypt is on. Cheers, -- Email: Herbert Xu Home Page: http://gondor.apana.org.au/~herbert/ PGP Key: http://gondor.apana.org.au/~herbert/pubkey.txt