[PATCH] rijndael: use more compact look-up tables and add table prefetching

Werner Koch wk at gnupg.org
Mon Dec 15 12:29:30 CET 2014


On Fri, 12 Dec 2014 23:52, jussi.kivilinna at iki.fi said:

> AMD64 assembly is slower than before because of additional rotation
> instructions. The generic C implementation is new better optimized and
> actually faster than before.

Can you explain why we want a slower implementation of AESNI?  Make
side-channel attacks harder?


Salam-Shalom,

   Werner

-- 
Die Gedanken sind frei.  Ausnahmen regelt ein Bundesgesetz.




More information about the Gcrypt-devel mailing list