Received: by 2002:ab2:6857:0:b0:1ef:ffd0:ce49 with SMTP id l23csp2905099lqp; Mon, 25 Mar 2024 12:35:39 -0700 (PDT) X-Forwarded-Encrypted: i=3; AJvYcCXEhuuLshSCSkb1zHCZWYDPuI3bycjjCgUPTxN91bPbpXwsbtwRQaU9JwRDeERRWCmbb9GgQbgm7jKPvOJ09Jx/d/afX+uQikD/EW96KA== X-Google-Smtp-Source: AGHT+IFGe/QOQom7BeB6moF/UiaG9SmSl+OqUB4k0TeRBrfpMsjcVogqLb3i5JTmEcXGvgN+L3KD X-Received: by 2002:a05:6a00:4fc9:b0:6e6:b320:5567 with SMTP id le9-20020a056a004fc900b006e6b3205567mr9044896pfb.24.1711395338853; Mon, 25 Mar 2024 12:35:38 -0700 (PDT) ARC-Seal: i=2; a=rsa-sha256; t=1711395338; cv=pass; d=google.com; s=arc-20160816; b=cYCQEvleZKRL6e20aCwQq/qvLkdF5gL9xQZfCgq1WH3AQdKbXUqBrTrcSlawWbtDKZ 8sQemqd5gyRRHkir9D3DfNQQnlaNVEjCNgk4lIh+5/qcmLX5elxXdiyYwslNT20AN8o2 K2d9543bHI9SxLNA0ZT6zc58JbjT6NDoIFjlKSbapq0q6YGg3/aK/5S3KhCBDDmne/u9 mu2tH2rFQTrezRSKb/G6+Pdfs9NYPKN4ctbsca/5z4/4FpMlzh4qAY2byXkydZunMh2h n2XGkmBIfYfaEP5yAbjy6WG3mfOhhYJbzZ8pDU5u9e7KaXms9g93nrF4BFDktR9njJUf O0Bw== ARC-Message-Signature: i=2; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=in-reply-to:content-disposition:mime-version:list-unsubscribe :list-subscribe:list-id:precedence:references:message-id:subject:cc :to:from:date; bh=1B6uE1jrEoWFav8C7H7+mU1eazh6GGzekinT/8JpKiU=; fh=7M7xt4GwHoE6LWhECArR7PKdW1wUBt8/HzwdaG6wGwQ=; b=jXZfGIYfDXYbFNsH4DzRlv7VF4FUtn1cU6VBa5oW8LPL2WSXt/vNHZioiomnzl82Vh FpFOSPz0me2S77BzeQZRE396A5bilwF6cFRkCM2eX9OzCgVG10jnmR9PcwPlIuJB59VI PUdOkUdAEeVeMat/cts1K9P/6ycsb1w+J90z2MzXQokb6hPAU/v3VGoud/DBN8YJOUTf yPeAL67rEq2Fjr6X3VHUN7ifd05Bwg6F7vcN8bHXU3CteoUSjrwnUwEx/m26USFzwLNM XKnoeFEdN3HOXypXjdzGOfz5RVnLCCRDNHU2fGsAT0mBd2B7gIF+TDmdjQshBBMzF4h9 ucyQ==; dara=google.com ARC-Authentication-Results: i=2; mx.google.com; arc=pass (i=1); spf=pass (google.com: domain of linux-crypto+bounces-2855-linux.lists.archive=gmail.com@vger.kernel.org designates 2604:1380:45e3:2400::1 as permitted sender) smtp.mailfrom="linux-crypto+bounces-2855-linux.lists.archive=gmail.com@vger.kernel.org" Return-Path: Received: from sv.mirrors.kernel.org (sv.mirrors.kernel.org. [2604:1380:45e3:2400::1]) by mx.google.com with ESMTPS id b21-20020aa78715000000b006e6ae26c2dcsi5662970pfo.15.2024.03.25.12.35.38 for (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Mon, 25 Mar 2024 12:35:38 -0700 (PDT) Received-SPF: pass (google.com: domain of linux-crypto+bounces-2855-linux.lists.archive=gmail.com@vger.kernel.org designates 2604:1380:45e3:2400::1 as permitted sender) client-ip=2604:1380:45e3:2400::1; Authentication-Results: mx.google.com; arc=pass (i=1); spf=pass (google.com: domain of linux-crypto+bounces-2855-linux.lists.archive=gmail.com@vger.kernel.org designates 2604:1380:45e3:2400::1 as permitted sender) smtp.mailfrom="linux-crypto+bounces-2855-linux.lists.archive=gmail.com@vger.kernel.org" Received: from smtp.subspace.kernel.org (wormhole.subspace.kernel.org [52.25.139.140]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by sv.mirrors.kernel.org (Postfix) with ESMTPS id EFCC829AAD2 for ; Mon, 25 Mar 2024 19:18:54 +0000 (UTC) Received: from localhost.localdomain (localhost.localdomain [127.0.0.1]) by smtp.subspace.kernel.org (Postfix) with ESMTP id 839A4134BD; Mon, 25 Mar 2024 19:18:50 +0000 (UTC) X-Original-To: linux-crypto@vger.kernel.org Received: from bmailout2.hostsharing.net (bmailout2.hostsharing.net [83.223.78.240]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by smtp.subspace.kernel.org (Postfix) with ESMTPS id C137112B6C; Mon, 25 Mar 2024 19:18:46 +0000 (UTC) Authentication-Results: smtp.subspace.kernel.org; arc=none smtp.client-ip=83.223.78.240 ARC-Seal:i=1; a=rsa-sha256; d=subspace.kernel.org; s=arc-20240116; t=1711394330; cv=none; b=tdk2FJOEc8+Rc2NGZGm/nwwBNaSxFhclfJVoh5QDxExSO5qZOAcXL9MNjZ8RjG+3QfJsWkss3kV5okTLhUwi93r1fRYJGn/JR5kxeETQwhUuws/hP5HVk6UTpzkl3QG4HT+KuqnaCQ115uanc346Cqod4x2bPtYTNG1/IcZUQDM= ARC-Message-Signature:i=1; a=rsa-sha256; d=subspace.kernel.org; s=arc-20240116; t=1711394330; c=relaxed/simple; bh=eo8SEgIiydINJpLrrNpDWriCqpURl3Xcf6eqpBDXGTc=; h=Date:From:To:Cc:Subject:Message-ID:References:MIME-Version: Content-Type:Content-Disposition:In-Reply-To; b=VWO4QxFu5lBkxc45NKuBWlFGNRCK8DsOdAQ7vl0om1Geh6YVHnPD3rYRS+7rGS1iPkLTnYWNAIZXTdB1TQEqeSa88VmBa3QG5i0GfAqnnXeQW2mcEOzY5oSE8ULguF2NvZau7dc/tY8kFmgV696c2dYeN4+FSePU99quO3U/HMM= ARC-Authentication-Results:i=1; smtp.subspace.kernel.org; dmarc=none (p=none dis=none) header.from=wunner.de; spf=none smtp.mailfrom=h08.hostsharing.net; arc=none smtp.client-ip=83.223.78.240 Authentication-Results: smtp.subspace.kernel.org; dmarc=none (p=none dis=none) header.from=wunner.de Authentication-Results: smtp.subspace.kernel.org; spf=none smtp.mailfrom=h08.hostsharing.net Received: from h08.hostsharing.net (h08.hostsharing.net [83.223.95.28]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "*.hostsharing.net", Issuer "RapidSSL TLS RSA CA G1" (verified OK)) by bmailout2.hostsharing.net (Postfix) with ESMTPS id 899E82800BBDF; Mon, 25 Mar 2024 20:18:37 +0100 (CET) Received: by h08.hostsharing.net (Postfix, from userid 100393) id 744B170E41A; Mon, 25 Mar 2024 20:18:37 +0100 (CET) Date: Mon, 25 Mar 2024 20:18:37 +0100 From: Lukas Wunner To: Stefan Berger Cc: keyrings@vger.kernel.org, linux-crypto@vger.kernel.org, herbert@gondor.apana.org.au, davem@davemloft.net, linux-kernel@vger.kernel.org, saulo.alessandre@tse.jus.br, bbhushan2@marvell.com, jarkko@kernel.org Subject: Re: [PATCH v7 00/13] Add support for NIST P521 to ecdsa Message-ID: References: <20240320114725.1644921-1-stefanb@linux.ibm.com> <5c6c5f51-125b-4cc7-ac27-5a5358d514c7@linux.ibm.com> Precedence: bulk X-Mailing-List: linux-crypto@vger.kernel.org List-Id: List-Subscribe: List-Unsubscribe: MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <5c6c5f51-125b-4cc7-ac27-5a5358d514c7@linux.ibm.com> On Wed, Mar 20, 2024 at 08:44:52AM -0400, Stefan Berger wrote: > On 3/20/24 07:47, Stefan Berger wrote: > > This series adds support for the NIST P521 curve to the ecdsa module > > to enable signature verification with it. > > > > An issue with the current code in ecdsa is that it assumes that input > > arrays providing key coordinates for example, are arrays of digits > > (a 'digit' is a 'u64'). This works well for all currently supported > > curves, such as NIST P192/256/384, but does not work for NIST P521 where > > coordinates are 8 digits + 2 bytes long. So some of the changes deal with > > converting byte arrays to digits and adjusting tests on input byte > > array lengths to tolerate arrays not providing multiples of 8 bytes. I've tested the whole series successfully on v6.9-rc1 by authenticating a PCI device with a NIST P521 certificate using my PCI/CMA development branch: https://github.com/l1k/linux/commits/doe Tested-by: Lukas Wunner