Re: [RFC] crypto: sa2ul - sha1/sha256/sha512 support

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Mon, Jun 10, 2024 at 06:38:49PM +0530, Kamlesh Gurudasani wrote:
> 
> Increasing the size of sg list will sove our problem to certain extent,
> but not completely.

Wait, I think I'm missing something.  You said that the hardware
keeps context which cannot be exported, but how could we possibly
use this for anything other than digest without creating trivial
DoS problems?

For example, if any user can start a hash process without finalising,
then they could make the entire hash offload device unavailable for
other users.  If somehow your hardware contained multiple hash
contexts to alleviate the problem, it could still be brought down
easily by starting a large number of partial hash operations.

So I cannot see how this could possibly work at all.

Cheers,
-- 
Email: Herbert Xu <herbert@xxxxxxxxxxxxxxxxxxx>
Home Page: http://gondor.apana.org.au/~herbert/
PGP Key: http://gondor.apana.org.au/~herbert/pubkey.txt




[Index of Archives]     [Kernel]     [Gnu Classpath]     [Gnu Crypto]     [DM Crypt]     [Netfilter]     [Bugtraq]
  Powered by Linux