[PATCH v6] security/keys: rewrite all of big_key crypto

Jason A. Donenfeld Jason at zx2c4.com
Wed Sep 20 14:09:46 UTC 2017


On Wed, Sep 20, 2017 at 4:06 PM, Stephan Mueller <smueller at chronox.de> wrote:
>> Section 3 shows an attack with repeated nonces, which we don't do here.
>
> Maybe I miss a point here, but zero IVs is no repetition of nonces?

If there's a fresh key each time, then no, it's not a repetition.

This patch uses a fresh random key for every encryption.
--
To unsubscribe from this list: send the line "unsubscribe linux-security-module" in
the body of a message to majordomo at vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html



More information about the Linux-security-module-archive mailing list