On Mon, Dec 06, 2010 at 04:10:25PM +0100, Martin Willi wrote: > > > > Has this scheme been discussed on a public forum somewhere? > > No, sorry, I haven't found much valuable discussion about TFC padding. > Nothing at all how to overcome the ESPv2 padding limit. OK. > I'll re-spin the patchset with get_random_bytes(). Even if the ESPv2 > padding fallback makes TFC in this case less efficient, it shouldn't > harm. Or do you see this differently? Indeed I don't think we should do anything for the ESPv2 case at all without having this discussed in an appropriate forum first. So please remove that part completely from your submission for now. Thanks, -- Email: Herbert Xu <herbert@xxxxxxxxxxxxxxxxxxx> Home Page: http://gondor.apana.org.au/~herbert/ PGP Key: http://gondor.apana.org.au/~herbert/pubkey.txt -- To unsubscribe from this list: send the line "unsubscribe linux-crypto" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html