Hi Tudor-Dan, On 02/05/2016 07:25 AM, Tudor-Dan Ambarus wrote: > I see that in qat, if the RSA decryption output data has the first octets of value zero, you skip them, actualize the dst_len and memmove the decrypted data to the initial pointer (see [1]). Why do you do this? Why can't you keep the decryption output data of key length? This is because the SW RSA implementation works the same way. MPI lib also discards the leading zeros. The two implementations have to produce the same output for a given input. Thanks, -- TS -- To unsubscribe from this list: send the line "unsubscribe linux-crypto" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html