Page MenuHomeFreeBSD

Add boot crypto framework
AbandonedPublic

Authored by eric_metricspace.net on Oct 17 2017, 12:47 AM.
Tags
None
Referenced Files
F148627838: D12692.diff
Thu, Mar 19, 5:49 AM
F148525884: D12692.id40871.diff
Wed, Mar 18, 11:38 AM
F148519206: D12692.id35356.diff
Wed, Mar 18, 10:26 AM
F148516523: D12692.id40871.diff
Wed, Mar 18, 9:56 AM
Unknown Object (File)
Wed, Mar 18, 3:43 AM
Unknown Object (File)
Wed, Mar 18, 3:37 AM
Unknown Object (File)
Wed, Mar 18, 1:13 AM
Unknown Object (File)
Tue, Mar 17, 11:40 AM

Details

Summary

This adds a crypto framework for boot-time code without the size restrictions to which BIOS code is subject. The framework is designed to allow new ciphers to be added relatively easily.

Note: it is probable that this code will be replaced in the mid-term future. There is talk of a crypto overhaul, but this will not take place in any timeline suitable for GELI integration.

Test Plan

This has already been tested for both AES-CBC and AES-XTS in testing of the GELI boot code. Its present form is unmodified from the last successful test.

Diff Detail

Repository
rS FreeBSD src repository - subversion
Lint
Lint Skipped
Unit
Tests Skipped