On Tue, Jan 11, 2022 at 10:35 AM Fabio Estevam <festevam@xxxxxxxxx> wrote: > > Hi Andrey, > > On Tue, Jan 11, 2022 at 3:21 PM Andrey Smirnov <andrew.smirnov@xxxxxxxxx> wrote: > > > Is this true for every i.MX device? I haven't worked with the > > I do see the problem on i.MX6SX. > > This thread reports the same problem on i.MX6D: > https://www.spinics.net/lists/linux-crypto/msg52319.html > > > i.MX6Q/i.MX8 hardware I was enabling this feature for in a while, so > > I'm not 100% up to date on all of the problems we've seen with those, > > but last time enabling prediction resistance didn't seem to cause any > > issues besides a noticeable slowdown of random data generation. > > > > Can this be a Kconfig option or maybe a runtime flag so that it'd > > still be possible for some i.MX users to keep PR enabled? > > The problem is that I don't know when it is safe or not to enable PR. > Yeah, I hear you. It sounds like long term, we'll need some advice from HW folks on this. I don't have any FAE contacts anymore, but maybe you or Horia do have a venue to pursue this? > What about introducing a boolean devicetree property that when > present, disables prediction resistance? That sounds fair.