Re: Hardware Crypto Offload on Kirkwood (SheevaPlug)

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Tue, May 24, 2011 at 6:11 PM, Andrew Haley <aph@xxxxxxxxxx> wrote:
> On 05/23/2011 04:12 PM, Gordan Bobic wrote:
>> omalleys@xxxxxxx wrote:
>>
>>> My question, is how hard is this to implement the hardware support
>>> non-openssl programs.
>>
>> Not particularly hard if you're writing your own crypto implementation
>> anyway, but there's a lot to be said for just linking against OpenSSL.
>> It's probably safer to link against the library that has a lot of eyes
>> on it than it is to implement your own.
>>
>>> OpenAFS could use this as it can use a lot of DES
>>> encryption, but it uses its own DES implementation. It also happens to
>>> be the only one I can think of off the top of my head that uses its own
>>> implementation. It would be nice to have.
>
> gpg seems to use its own AES implementation that's slower than SSL's.
> It would certainly be nice to fix that to use acceleration.

It would be better to use nss as it has the option of all the various
fips certifications which would be useful for gpg.

Alternatively I would think it would be better to use the HW crytpo
user interface directly so you get HW acceleration if it avail or
fallback if its not. I'd personally prefer not to use openssl for gpg
as its not the most secure beast.

Peter
_______________________________________________
arm mailing list
arm@xxxxxxxxxxxxxxxxxxxxxxx
https://admin.fedoraproject.org/mailman/listinfo/arm


[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[Index of Archives]     [Linux ARM (Vger)]     [Linux ARM]     [ARM Kernel]     [Fedora User Discussion]     [Older Fedora Users Discussion]     [Fedora Advisory Board]     [Fedora Security]     [Fedora Maintainers]     [Fedora Devel Java]     [Fedora Legacy]     [Fedora Desktop]     [ATA RAID]     [Fedora Marketing]     [Fedora Mentors]     [Fedora Package Announce]     [Fedora Package Review]     [Fedora Music]     [Fedora Packaging]     [Centos]     [Fedora SELinux]     [Coolkey]     [Yum Users]     [Tux]     [Yosemite News]     [Linux Apps]     [KDE Users]     [Fedora Tools]     [Fedora Art]     [Fedora Docs]     [Asterisk PBX]

Powered by Linux