Hi Andrey, On Tue, Jan 11, 2022 at 3:21 PM Andrey Smirnov <andrew.smirnov@xxxxxxxxx> wrote: > Is this true for every i.MX device? I haven't worked with the I do see the problem on i.MX6SX. This thread reports the same problem on i.MX6D: https://www.spinics.net/lists/linux-crypto/msg52319.html > i.MX6Q/i.MX8 hardware I was enabling this feature for in a while, so > I'm not 100% up to date on all of the problems we've seen with those, > but last time enabling prediction resistance didn't seem to cause any > issues besides a noticeable slowdown of random data generation. > > Can this be a Kconfig option or maybe a runtime flag so that it'd > still be possible for some i.MX users to keep PR enabled? The problem is that I don't know when it is safe or not to enable PR. What about introducing a boolean devicetree property that when present, disables prediction resistance?