Page MenuHomeFreeBSD

Add warnings to /dev/crypto for deprecated algorithms.
ClosedPublic

Authored by jhb on Jun 7 2019, 9:17 PM.
Tags
None
Referenced Files
Unknown Object (File)
Tue, Apr 7, 10:10 AM
Unknown Object (File)
Mon, Apr 6, 7:17 AM
Unknown Object (File)
Tue, Mar 31, 5:05 PM
Unknown Object (File)
Mon, Mar 30, 8:50 PM
Unknown Object (File)
Wed, Mar 25, 7:19 AM
Unknown Object (File)
Mon, Mar 23, 8:13 AM
Unknown Object (File)
Sun, Mar 22, 7:46 PM
Unknown Object (File)
Sun, Mar 22, 4:42 AM
Subscribers

Details

Summary

These algorithms are deprecated algorithms that will have no in-kernel
consumers in FreeBSD 13. Specifically, deprecate the following algorithms:

  • ARC4
  • Blowfish
  • CAST128
  • DES
  • 3DES
  • MD5-HMAC
  • Skipjack
Test Plan
  • cryptocheck doesn't test any of these, but the python tests do run 3DES test vectors and thus do trigger the warning (and also inspired adding rate limiting since a single run of cryptotest.py generated multiple warnings without rate limiting)

Diff Detail

Repository
rS FreeBSD src repository - subversion
Lint
Lint Not Applicable
Unit
Tests Not Applicable