Re: [PATCH] crypto: aead: add service indicator flag for RFC4106 AES-GCM

From: Herbert Xu

Date: Mon Mar 02 2026 - 22:37:48 EST


On Mon, Mar 02, 2026 at 04:51:38PM -0500, Jeff Barnes wrote:
>
> For instance, ceph, samba, tls, to name a few. They all instantiate the
> gcm(aes) template. They all construct their own IV. They are all compliant
> to SP 800-38d. I am pretty sure that at least one constructs it per 8.2.2
> while the rest construct per 8.2.1.

Perhaps they could switch to IV generation in a way that's similar
to seqiv?

Cheers,
--
Email: Herbert Xu <herbert@xxxxxxxxxxxxxxxxxxx>
Home Page: http://gondor.apana.org.au/~herbert/
PGP Key: http://gondor.apana.org.au/~herbert/pubkey.txt