Page MenuHomeFreeBSD

Add warnings to /dev/crypto for deprecated algorithms.
ClosedPublic

Authored by jhb on Jun 7 2019, 9:17 PM.
Tags
None
Referenced Files
Unknown Object (File)
Mon, Nov 24, 1:00 AM
Unknown Object (File)
Sun, Nov 23, 5:34 PM
Unknown Object (File)
Sat, Nov 22, 6:18 PM
Unknown Object (File)
Thu, Nov 20, 6:31 PM
Unknown Object (File)
Thu, Nov 20, 6:23 PM
Unknown Object (File)
Thu, Nov 20, 6:14 PM
Unknown Object (File)
Thu, Nov 20, 6:03 PM
Unknown Object (File)
Wed, Nov 19, 12:28 AM
Subscribers

Details

Summary

These algorithms are deprecated algorithms that will have no in-kernel
consumers in FreeBSD 13. Specifically, deprecate the following algorithms:

  • ARC4
  • Blowfish
  • CAST128
  • DES
  • 3DES
  • MD5-HMAC
  • Skipjack
Test Plan
  • cryptocheck doesn't test any of these, but the python tests do run 3DES test vectors and thus do trigger the warning (and also inspired adding rate limiting since a single run of cryptotest.py generated multiple warnings without rate limiting)

Diff Detail

Repository
rS FreeBSD src repository - subversion
Lint
Lint Not Applicable
Unit
Tests Not Applicable