[gnutls-devel] GnuTLS | Add support for AES CMAC mac (!786)

Development of GNU's TLS library gnutls-devel at lists.gnutls.org
Sat Oct 27 10:46:56 CEST 2018


Hi Dmitri,
 The milestone that these issues are under was made after discussing with samba, qemu and chrony developers. They use gnutls for TLS but had to use some other library for crypto like CFB8 or xts. Nettle is an option for some of them but it has two shortcomings: 1. It is changing abi and api quite regularly, while at gnutls we are getting better in terms of abi and especially api stability, 2. It is very low level and thus cannot serve as a crypto module in the fips definition (eg it cannot refuse the use of a forbidden algorithm like md5)

-- 
Reply to this email directly or view it on GitLab: https://gitlab.com/gnutls/gnutls/merge_requests/786#note_112274380
You're receiving this email because of your account on gitlab.com.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.gnupg.org/pipermail/gnutls-devel/attachments/20181027/f68b82da/attachment-0001.html>


More information about the Gnutls-devel mailing list