aalg_list array contains list of "approved" HMAC algorightms. Do I understand correctly that to update this list some sort of official document like RFC has to be present? For example, it contains hmac(rmd160) entry, but doesn't contain hmac(rmd128) and other RIPEMD functions (there is even test for hmac(rmd128)). Also, kernel has more cryptographic hash functions than there are allowed by ipsec code like Tiger hashes, Whirlpool etc. They are dead code, if IPSec code doesn't user to use them. -- To unsubscribe from this list: send the line "unsubscribe linux-crypto" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html