Received: by 2002:a05:6a10:af89:0:0:0:0 with SMTP id iu9csp1573153pxb; Sat, 29 Jan 2022 09:56:43 -0800 (PST) X-Google-Smtp-Source: ABdhPJyj5u1TwT5EjDM0/Ej1CTK30Z4eL3o4159n36T+RxLgsLXDnUP0lptsmYN6ZHzai5lqYQiV X-Received: by 2002:a17:906:58d4:: with SMTP id e20mr11270729ejs.769.1643479002912; Sat, 29 Jan 2022 09:56:42 -0800 (PST) ARC-Seal: i=1; a=rsa-sha256; t=1643479002; cv=none; d=google.com; s=arc-20160816; b=uvk0b+Eum0IDizudGa9ly3Pu7xsFEF4Bp/173vtG/e09W9M5hSMNSlNk9LLOCqg2oT koXP2VirwYfiGLLBW4ZxqZi/lQBnlEJH8vgxBA9PPvyBY6wCHcc/PydJKfPnoBBW/S/s 7xFHRHOwBhPAr+w+zwYn+AzkyiKv42dVkG3224Rkck7IOsHNi8Otc1w7l5OxJ5EyqSpI QqGTPH1UFF6+uT4XInA7mx/wMXxtj9W5PKFZD0gyOfnom7LXCr1QbAves7SaGxwzQJRw k4nuPZx92SLFJzqEvoFJ2vhKbF7FzDvpuHNEhH14kBn29sqKewQmb9pePmR9VHd749H8 Q9hg== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:content-transfer-encoding:mime-version :references:in-reply-to:message-id:date:subject:cc:to:from :dkim-signature; bh=LfgyuYj4G0g1iMmVYf2axeVDbQXKKQcZ9H/fS+KMx9U=; b=pRG8F9gEl3il99qahqeASkvVRhmB7o23IdUylBaKtQl7T/pNO7rDpbn/Ko8IU7x1hF I32EVIyKijaq9EDRbzKQhrPBvCl1QyI0appUYSZpsiAAnAAMmUArBMMjOk86iNsFs5I2 gOWLQwgqYq21EMrl2wMYxPT+3C0TOgpxS4thh2O72JXysXQk5605OOsdORyBy8YWW7/Y uiKh+a9WPAngpRTbHVg2i+AdNgLZW5DSuRufNXOFXpw3to8oV3mesHVOcT53Eo76637z Nw+pqqfjwuE3RGk5SOi0b5R2JJQ0Yl308a6brsN7+fsKFeMaXhwoQWhjuPcJ3KHAotaL 8j4A== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@chronox.de header.s=strato-dkim-0002 header.b=GdVe7FAk; spf=pass (google.com: domain of linux-crypto-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-crypto-owner@vger.kernel.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [23.128.96.18]) by mx.google.com with ESMTP id ga2si5276583ejc.987.2022.01.29.09.56.07; Sat, 29 Jan 2022 09:56:42 -0800 (PST) Received-SPF: pass (google.com: domain of linux-crypto-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) client-ip=23.128.96.18; Authentication-Results: mx.google.com; dkim=pass header.i=@chronox.de header.s=strato-dkim-0002 header.b=GdVe7FAk; spf=pass (google.com: domain of linux-crypto-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-crypto-owner@vger.kernel.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1346269AbiA1GFq (ORCPT + 99 others); Fri, 28 Jan 2022 01:05:46 -0500 Received: from mo4-p00-ob.smtp.rzone.de ([85.215.255.23]:43993 "EHLO mo4-p00-ob.smtp.rzone.de" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1346272AbiA1GFq (ORCPT ); Fri, 28 Jan 2022 01:05:46 -0500 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; t=1643349934; s=strato-dkim-0002; d=chronox.de; h=References:In-Reply-To:Message-ID:Date:Subject:Cc:To:From:Cc:Date: From:Subject:Sender; bh=LfgyuYj4G0g1iMmVYf2axeVDbQXKKQcZ9H/fS+KMx9U=; b=GdVe7FAkehp0oDka7XGoCbMlj9d15oBoNawoIxt0JfR900tskLERb1OTo6CnsR1SC2 jgHSp6jiPMXHf31uRt9ag4MvdXGJ2rORcdkauVpPD9ckBPJM2NNxqNT6fnt/9fmdAvtR GPQefwOJNQDWbpSvz76emFA8ZmTU2PsxUSffIx1r1mtgdXBZizfsCb/ZeIOA7pnFPlpW Cd4DoHu+9lvLqgZrJyc3BXiemjW/l4qtMgBBEwXZrxNAgiRtrWAIeNSsL35c5PEM+h1e VRfhDNof7UBrCrG2/84rOiM3h1ztQ/w12Hgpnsw5hu1MPsKbmSj+PpOfmn2ytlUdXGDh IBsg== Authentication-Results: strato.com; dkim=none X-RZG-AUTH: ":P2ERcEykfu11Y98lp/T7+hdri+uKZK8TKWEqNyiHySGSa9k9xmwdNnzGHXPaIfSfD3I=" X-RZG-CLASS-ID: mo00 Received: from tauon.chronox.de by smtp.strato.de (RZmta 47.38.0 DYNA|AUTH) with ESMTPSA id v5f65ay0S65YsKK (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256 bits)) (Client did not present a certificate); Fri, 28 Jan 2022 07:05:34 +0100 (CET) From: Stephan Mueller To: Herbert Xu Cc: linux-crypto@vger.kernel.org, Niolai Stange , Simo Sorce Subject: Re: [PATCH] crypto: HMAC - disallow keys < 112 bits in FIPS mode Date: Fri, 28 Jan 2022 07:05:33 +0100 Message-ID: <2285874.XlJOkxW7XW@tauon.chronox.de> In-Reply-To: References: <2075651.9o76ZdvQCi@positron.chronox.de> MIME-Version: 1.0 Content-Transfer-Encoding: quoted-printable Content-Type: text/plain; charset="iso-8859-1" Precedence: bulk List-ID: X-Mailing-List: linux-crypto@vger.kernel.org Am Freitag, 28. Januar 2022, 05:46:20 CET schrieb Herbert Xu: Hi Herbert, > On Fri, Jan 07, 2022 at 08:25:24PM +0100, Stephan M=FCller wrote: > > diff --git a/crypto/testmgr.h b/crypto/testmgr.h > > index a253d66ba1c1..1c39d294b9ba 100644 > > --- a/crypto/testmgr.h > > +++ b/crypto/testmgr.h > > @@ -5706,6 +5706,7 @@ static const struct hash_testvec > > hmac_sha1_tv_template[] =3D {>=20 > > .digest =3D "\xb6\x17\x31\x86\x55\x05\x72\x64" > > =09 > > "\xe2\x8b\xc0\xb6\xfb\x37\x8c\x8e\xf1" > > "\x46\xbe", > >=20 > > +#ifndef CONFIG_CRYPTO_FIPS > >=20 > > }, { > > =09 > > .key =3D "Jefe", > > .ksize =3D 4, >=20 > Please don't use ifdefs, you can instead add a fips_skip setting > just like we do for cipher test vectors. Thank you for the hint, will do. >=20 > Thanks, Ciao Stephan