[GIT PULL] Interleaved SHA-256 hashing support for 6.18

From: Eric Biggers

Date: Sat Sep 27 2025 - 16:24:13 EST


Note: this depends on the pull request
"[GIT PULL 03/12 for v6.18] inode" from Christian Brauner.

The following changes since commit f0883b9c395ecdf7e66a58b6027fd35056cf152c:

Merge patch series "Move fscrypt and fsverity info out of struct inode" (2025-08-21 13:58:13 +0200)

are available in the Git repository at:

https://git.kernel.org/pub/scm/fs/fsverity/linux.git tags/fsverity-for-linus

for you to fetch changes up to a1f692fd69ccdbe1e492d366788b63227d429753:

fsverity: Use 2-way interleaved SHA-256 hashing when supported (2025-09-17 13:10:04 -0500)

----------------------------------------------------------------

Add support for 2-way interleaved SHA-256 hashing to lib/crypto/, and
make fsverity use it for faster file data verification. This improves
fsverity performance on many x86_64 and arm64 processors.

Later, I plan to make dm-verity use this too.

----------------------------------------------------------------
Eric Biggers (6):
lib/crypto: sha256: Add support for 2-way interleaved hashing
lib/crypto: arm64/sha256: Add support for 2-way interleaved hashing
lib/crypto: x86/sha256: Add support for 2-way interleaved hashing
lib/crypto: tests: Add tests and benchmark for sha256_finup_2x()
fsverity: Remove inode parameter from fsverity_hash_block()
fsverity: Use 2-way interleaved SHA-256 hashing when supported

fs/verity/enable.c | 12 +-
fs/verity/fsverity_private.h | 2 +-
fs/verity/hash_algs.c | 3 +-
fs/verity/verify.c | 175 +++++++++++++++----
include/crypto/sha2.h | 28 +++
lib/crypto/arm64/sha256-ce.S | 284 ++++++++++++++++++++++++++++++-
lib/crypto/arm64/sha256.h | 37 ++++
lib/crypto/sha256.c | 71 +++++++-
lib/crypto/tests/sha256_kunit.c | 184 ++++++++++++++++++++
lib/crypto/x86/sha256-ni-asm.S | 368 ++++++++++++++++++++++++++++++++++++++++
lib/crypto/x86/sha256.h | 39 +++++
11 files changed, 1147 insertions(+), 56 deletions(-)