This series supersedes [0] '[PATCH] crypto: aegis128/neon - optimize tail block handling', which is included as patch #3 here, but hasn't been modified substantially. Patch #1 should probably go to -stable, even though aegis128 does not appear to be widely used. Patches #2 and #3 improve the SIMD code paths. Patch #4 enables fuzz testing for the SIMD code by registering the generic code as a separate driver if the SIMD code path is enabled. Changes since v2: - add Ondrej's ack to #1 - fix an issue spotted by Ondrej in #4 where the generic code path would still use some of the SIMD helpers Cc: Ondrej Mosnacek <omosnacek@xxxxxxxxx> Cc: Eric Biggers <ebiggers@xxxxxxxxxx> [0] https://lore.kernel.org/linux-crypto/20201107195516.13952-1-ardb@xxxxxxxxxx/ Ard Biesheuvel (4): crypto: aegis128 - wipe plaintext and tag if decryption fails crypto: aegis128/neon - optimize tail block handling crypto: aegis128/neon - move final tag check to SIMD domain crypto: aegis128 - expose SIMD code path as separate driver crypto/aegis128-core.c | 245 ++++++++++++++------ crypto/aegis128-neon-inner.c | 122 ++++++++-- crypto/aegis128-neon.c | 21 +- 3 files changed, 287 insertions(+), 101 deletions(-) -- 2.17.1