On Mon, Aug 15, 2011 at 03:19:29PM +0800, Herbert Xu wrote: > > Actually the reason it places a bigger weight on the cipher's > priority is because typically ciphers are slower than hashes. > So this is expressing the fact that we'd rather use a faster > cipher with a slower hash than the other way around. I thought the underlying ciphers and hashes choose their priority based on the algorithms speed. So I thought it would be ok to just add their priorities in the authenc algorithms. Do you think we shoud keep the weight on the cipher's priority? > > Do you have a particular scenario in mind where this is broken? > I don't think it is broken. It's just easier to handle if an underlying algorithm changes it's priority. If the user changes the priority of a certain algorithm, I take the difference of the old and new priority value and add this to all subsequent algorithms. So this can not take the weight into account without some 'per algorithm' priority update functions. -- To unsubscribe from this list: send the line "unsubscribe linux-crypto" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html