On Fri, May 23, 2008 at 10:59:33AM -0400, Mikulas Patocka wrote: > > If you want to negate the meaning of the flag, then you have to write it > yourself. I, as non-developer of crypto code, can prove that on given path > the input data are read only once --- but I can't prove that on all paths > and all possible chaining modes of algorithms the data are read once, > because I don't know about all of them. Huh? Inverting it would give exactly the same result as your current patch. If you're not confident with it inverted, then I can't see how you could be confident about the patch as it is. Cheers, -- Visit Openswan at http://www.openswan.org/ Email: Herbert Xu ~{PmV>HI~} <herbert@xxxxxxxxxxxxxxxxxxx> Home Page: http://gondor.apana.org.au/~herbert/ PGP Key: http://gondor.apana.org.au/~herbert/pubkey.txt -- dm-devel mailing list dm-devel@xxxxxxxxxx https://www.redhat.com/mailman/listinfo/dm-devel