Page MenuHomeFreeBSD

Remove support for the algorithms deprecated in r348876.
ClosedPublic

Authored by jhb on Apr 8 2020, 10:09 PM.
Tags
None
Referenced Files
Unknown Object (File)
Sun, Dec 22, 4:49 AM
Unknown Object (File)
Thu, Dec 19, 6:29 PM
Unknown Object (File)
Thu, Dec 12, 1:44 AM
Unknown Object (File)
Wed, Dec 4, 2:59 PM
Unknown Object (File)
Sun, Nov 24, 6:23 PM
Unknown Object (File)
Sun, Nov 24, 8:35 AM
Unknown Object (File)
Nov 19 2024, 2:35 PM
Unknown Object (File)
Nov 19 2024, 11:59 AM
Subscribers

Details

Summary

This removes support for the following algorithms:

  • ARC4
  • Blowfish
  • CAST128
  • DES
  • 3DES
  • MD5-HMAC
  • Skipjack

Since /dev/crypto no longer supports 3DES, stop testing the 3DES KAT
vectors in cryptotest.py.

Diff Detail

Repository
rS FreeBSD src repository - subversion
Lint
Lint Not Applicable
Unit
Tests Not Applicable

Event Timeline

I don't know why we would defer 3DES to 14. I think it makes more sense to remove it ASAP, and we should probably also go ahead and mark SHA1-HMAC as gone_in(14). NIST will probably unrecommend that one pretty soon.

(The removals are good and correct, thanks.)

This revision is now accepted and ready to land.Apr 9 2020, 3:01 AM
This revision now requires review to proceed.Apr 22 2020, 8:58 PM
jhb retitled this revision from Remove support for most of the algorithms deprecated in r348876. to Remove support for the algorithms deprecated in r348876..Apr 22 2020, 8:59 PM
jhb edited the summary of this revision. (Show Details)
This revision was not accepted when it landed; it landed in state Needs Review.May 2 2020, 2:20 PM
This revision was automatically updated to reflect the committed changes.