Re: [PATCH 0/3] Remove old AES-GCM library

From: Nikunj A. Dadhania

Date: Thu Jul 23 2026 - 02:14:44 EST




On 7/22/2026 9:33 PM, Borislav Petkov wrote:
> On Tue, Jul 21, 2026 at 07:53:35PM -0700, Eric Biggers wrote:
>> The old AES-GCM library code is being replaced as part of an overhaul
>> that is adding support for all the common AES encryption modes with
>> consistent conventions
>> (https://lore.kernel.org/linux-crypto/20260715221153.246410-1-ebiggers@xxxxxxxxxx/).
>>
>> The SEV code is the only user of the old API. Update it to use the new
>> API instead. Then remove the old API.
>>
>> This applies to libcrypto-next. If possible I'd like to take this
>> through libcrypto-next for 7.3. Acks are appreciated.
>
> Fine with me as long as the additionally added AMD folks can verify everything
> still works with their SNP guest setups.

Tested with a SecureTSC-enabled SNP guest. SecureTSC guests rely on the SNP
guest messaging API which uses AES-GCM library, so this exercises the new
library code through that path. No issues found.

Tested-by: Nikunj A Dadhania <nikunj@xxxxxxx>