Received: by 2002:a6b:500f:0:0:0:0:0 with SMTP id e15csp4593334iob; Sun, 8 May 2022 18:33:43 -0700 (PDT) X-Google-Smtp-Source: ABdhPJwtZNlm68IVoBqZVHT6u2i1jAW6OxxhQNZwJffCoNiMggafj6FZ3ij3lvwSuZxbxsxHtiAp X-Received: by 2002:a17:90b:3ecc:b0:1dc:9471:31a1 with SMTP id rm12-20020a17090b3ecc00b001dc947131a1mr23951053pjb.220.1652060023575; Sun, 08 May 2022 18:33:43 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1652060023; cv=none; d=google.com; s=arc-20160816; b=Ix/WdGLU0W1NlGhFTQaeySHqbYQu98vf2ksQSFE5l6xjO2/SjMtIPgAqo3ssXd6/T3 UTTs0wfBHShdHNMYaDlDQJEfQE3Rn1MY1XhkDI1JhD+MSkN1r7/1toAqr0TOhD+K8AO3 GAq71ifoRA55KRk3DHfTFp0vgI87Jec73knRtboiY8X9K3QU9dRz5i3wSZ1l+yPaHCKl PgSY1ezrCvs+aj92/UXMSaIHotsWc4Xur7KjnYIKFfCbGUUkW/GAIj5YeCJrNeiHZV13 Dez4bmutPMYxNeZZukkEKy56nNgMbJeIlvKg0ZdjU5BQS6Qguw7/6Y047Z6LrnBPvDIz qHlA== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:in-reply-to:content-disposition:mime-version :references:message-id:subject:cc:to:from:date:dkim-signature; bh=QyqkFh05w3PjGTiCNOA93qsxR7wiuBgoSU+uxGbYbGo=; b=JVVWbS8R+7IT/eXLLLybQnhjK0E1LKsECIdhM8k50llWRKyc1hmHPJf61diLqiOxof JwjIGLejWhsD11zUrvVKdmIU8tc/huNp64zamyhXil8eBWuEi0kHBGXx0zdHARKrLbod 8ZWC4GqT3wc5zXW74AznCowfEXzK7MRsWMaYXja60hR3nTISZ3UPjzNyb2jlBG7JzeQB InGapEaeWYcYGG744s8lGirLSvx1TjCMUyO7S2Y/k9laJbvn2/8Jhyj9MUbKg6EbNsGF LtAbez8E52jZKGxn9c+nuiEolWx//XTHAEsOg1Av2+pCp7ci3xnW9tMYtdvWnvjDSljo nJIQ== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@kernel.org header.s=k20201202 header.b=lzSnceCh; spf=pass (google.com: domain of linux-crypto-owner@vger.kernel.org designates 2620:137:e000::1:18 as permitted sender) smtp.mailfrom=linux-crypto-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=kernel.org Return-Path: Received: from lindbergh.monkeyblade.net (lindbergh.monkeyblade.net. [2620:137:e000::1:18]) by mx.google.com with ESMTPS id d17-20020a17090ad3d100b001d991dfad30si17262866pjw.153.2022.05.08.18.33.43 (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Sun, 08 May 2022 18:33:43 -0700 (PDT) Received-SPF: pass (google.com: domain of linux-crypto-owner@vger.kernel.org designates 2620:137:e000::1:18 as permitted sender) client-ip=2620:137:e000::1:18; Authentication-Results: mx.google.com; dkim=pass header.i=@kernel.org header.s=k20201202 header.b=lzSnceCh; spf=pass (google.com: domain of linux-crypto-owner@vger.kernel.org designates 2620:137:e000::1:18 as permitted sender) smtp.mailfrom=linux-crypto-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=kernel.org Received: from vger.kernel.org (vger.kernel.org [23.128.96.18]) by lindbergh.monkeyblade.net (Postfix) with ESMTP id D98CA2CCA0; Sun, 8 May 2022 18:33:32 -0700 (PDT) Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1389291AbiEFFyE (ORCPT + 99 others); Fri, 6 May 2022 01:54:04 -0400 Received: from lindbergh.monkeyblade.net ([23.128.96.19]:52366 "EHLO lindbergh.monkeyblade.net" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S241386AbiEFFxs (ORCPT ); Fri, 6 May 2022 01:53:48 -0400 Received: from ams.source.kernel.org (ams.source.kernel.org [145.40.68.75]) by lindbergh.monkeyblade.net (Postfix) with ESMTPS id 0E48A2CE2B; Thu, 5 May 2022 22:50:01 -0700 (PDT) Received: from smtp.kernel.org (relay.kernel.org [52.25.139.140]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ams.source.kernel.org (Postfix) with ESMTPS id A5AD2B831B9; Fri, 6 May 2022 05:49:59 +0000 (UTC) Received: by smtp.kernel.org (Postfix) with ESMTPSA id 20789C385AA; Fri, 6 May 2022 05:49:58 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=kernel.org; s=k20201202; t=1651816198; bh=8PSn7NDUZ6qAlG7PnSxYBQyy8HrO/Tvwf5uUNcJEdt4=; h=Date:From:To:Cc:Subject:References:In-Reply-To:From; b=lzSnceChIv86SDn4QF+ArFGI5XBUOGy2c05zvpSfsSBpMsJIdqf4tUwBRCSx+9yKi 2jepqGHR1IBdVZ9KI5bN7RaRTBc1KTqCCz19nsc3elGQq+Nb1jPaVax4fL/jt4zRIh a/28NAopga6ATC7iyHSFt1tQ4pg2VgwerFmmSQXJfpgOQRPVKoHTXAvaS9pVSRcgXH 9mYBQrgjuLqJ3Rw5yeLoMdAzDtpA9Tms7wVUuUk/w5vYrzyq/wHNi4R04Cb5z45dLg xUzlLUYjKdjCWeZZdFMEq6CFqyYb7tLCUdzJCS6ZhJefF0Og+31dxkFQHhSBb9vOfk e5CyHnH+dXM+w== Date: Thu, 5 May 2022 22:49:56 -0700 From: Eric Biggers To: Nathan Huckleberry Cc: linux-crypto@vger.kernel.org, linux-fscrypt@vger.kernel.org, Herbert Xu , "David S. Miller" , linux-arm-kernel@lists.infradead.org, Paul Crowley , Sami Tolvanen , Ard Biesheuvel Subject: Re: [PATCH v6 5/9] crypto: arm64/aes-xctr: Add accelerated implementation of XCTR Message-ID: References: <20220504001823.2483834-1-nhuck@google.com> <20220504001823.2483834-6-nhuck@google.com> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <20220504001823.2483834-6-nhuck@google.com> X-Spam-Status: No, score=-2.9 required=5.0 tests=BAYES_00,DKIMWL_WL_HIGH, DKIM_SIGNED,DKIM_VALID,DKIM_VALID_AU,DKIM_VALID_EF,MAILING_LIST_MULTI, RDNS_NONE,SPF_HELO_NONE,T_SCC_BODY_TEXT_LINE autolearn=unavailable autolearn_force=no version=3.4.6 X-Spam-Checker-Version: SpamAssassin 3.4.6 (2021-04-09) on lindbergh.monkeyblade.net Precedence: bulk List-ID: X-Mailing-List: linux-crypto@vger.kernel.org On Wed, May 04, 2022 at 12:18:19AM +0000, Nathan Huckleberry wrote: > Add hardware accelerated version of XCTR for ARM64 CPUs with ARMv8 > Crypto Extension support. This XCTR implementation is based on the CTR > implementation in aes-modes.S. > > More information on XCTR can be found in > the HCTR2 paper: Length-preserving encryption with HCTR2: > https://eprint.iacr.org/2021/1441.pdf > > Signed-off-by: Nathan Huckleberry > Reviewed-by: Ard Biesheuvel > --- > arch/arm64/crypto/Kconfig | 4 +- > arch/arm64/crypto/aes-glue.c | 64 ++++++++++++- > arch/arm64/crypto/aes-modes.S | 168 +++++++++++++++++++++------------- > 3 files changed, 169 insertions(+), 67 deletions(-) Looks good, although the assembly code gets easier to read after the next patch. Reviewed-by: Eric Biggers - Eric