On Thu, Jul 02, 2020 at 09:51:29AM +0200, Ard Biesheuvel wrote: > > I'll wait for the code to be posted (please put me on cc), but my Sure I will. > suspicion is that carrying opaque state like that is going to bite us > down the road. Well it's only going to be arc4 at first, where it's definitely an improvement over modifying the tfm context in encrypt/decrypt. For XTS I haven't decided whether to go this way or not. If it does work out though we could even extend it to AEAD. Cheers, -- Email: Herbert Xu <herbert@xxxxxxxxxxxxxxxxxxx> Home Page: http://gondor.apana.org.au/~herbert/ PGP Key: http://gondor.apana.org.au/~herbert/pubkey.txt