Project review: AES-NI support

Will Fiveash will.fiveash at oracle.com
Wed May 8 16:59:11 EDT 2013


On Tue, May 07, 2013 at 03:03:03PM -0400, Greg Hudson wrote:
> I've put together a candidate implementation of AES-NI support in the
> libk5crypto builtin AES enc-provider.  Here is the project writeup:
> 
>     http://k5wiki.kerberos.org/wiki/Projects/AES-NI_Support
> 
> and here is the code (this branch will eventually go away after the code
> is merged into master):
> 
>     https://github.com/greghudson/krb5/tree/aesni
> 
> Comments are appreciated.

Given there is now support for OpenSSL/NSS crypto providers in MIT krb,
which hopefully offer CPU optimized AES, why spend the time improving
the built-in AES provider?

-- 
Will Fiveash
Oracle Solaris Software Engineer


More information about the krbdev mailing list