At this point, AES is the more common name for Rijndael128. setkey
will still accept the old name and old constants remain for
Ditto below remarks
For these I would encourage use of SADB_X_EALG_AESCBC.
Can we kill SADB_X_EALG_RIJNDAELCBC? And perhaps SADB_X_EALG_AES?
These are bad.
Maybe use SADB_X_EALG_AESCBC now that it has been added.
I can change this one. This is originally code from KAME which is why it has all the #ifdef's and other crud.
We can't kill the RIJNDAELCBC one because that's what KAME uses and so it's what 3rd party software like IKE daemons in ports expect. We might be able to care the bare 'AES' but to feel comfortable I'd have to do an exp-run.
These are just for reporting counts for 'netstat -s'. Even if we remove NULL from OCF it will have to stay around for IPsec. I suspect the "none" entry never gets used.