[RFC PATCH v2] Initial implementation of GCM

Stephan Mueller smueller at chronox.de
Wed Nov 13 04:42:57 CET 2013


Am Montag, 11. November 2013, 16:09:32 schrieb Jussi Kivilinna:

Hi Jussi,

> On 11.11.2013 15:02, Dmitry Eremin-Solenikov wrote:
> > Hello,
> > 
> > On Mon, Nov 11, 2013 at 4:46 PM, Jussi Kivilinna <jussi.kivilinna at iki.fi> 
wrote:

[..]

> > I'm unsure about generate_iv/set_iv argument. More on that here:
> > http://thread.gmane.org/gmane.comp.encryption.gpg.libgcrypt.devel/2896/foc
> > us=2897
> How is this handled in other libraries?

All libraries that undergo or underwent a FIPS 140-2 validation have 
appropriate handling here.

As libgcrypt has a FIPS mode, it looks like FIPS is of importance. If so, 
either the handling is implemented or GCM cannot be allowed in FIPS mode.

Ciao
Stephan
-- 
| Cui bono? |



More information about the Gcrypt-devel mailing list