summaryrefslogtreecommitdiff
path: root/crypto/polyval-generic.c
diff options
context:
space:
mode:
authorNathan Huckleberry <nhuck@google.com>2022-05-20 21:14:53 +0300
committerHerbert Xu <herbert@gondor.apana.org.au>2022-06-10 11:40:16 +0300
commit17fee07a2ac577da18b44dd658a9c3c864281c49 (patch)
tree235a3d7c336a995f3f3be558aed5385c4d534de6 /crypto/polyval-generic.c
parent7df7563b16aa0281cb811785e4bb3681b46e2a28 (diff)
downloadlinux-17fee07a2ac577da18b44dd658a9c3c864281c49.tar.xz
crypto: xctr - Add XCTR support
Add a generic implementation of XCTR mode as a template. XCTR is a blockcipher mode similar to CTR mode. XCTR uses XORs and little-endian addition rather than big-endian arithmetic which has two advantages: It is slightly faster on little-endian CPUs and it is less likely to be implemented incorrect since integer overflows are not possible on practical input sizes. XCTR is used as a component to implement HCTR2. More information on XCTR mode can be found in the HCTR2 paper: https://eprint.iacr.org/2021/1441.pdf Signed-off-by: Nathan Huckleberry <nhuck@google.com> Reviewed-by: Eric Biggers <ebiggers@google.com> Reviewed-by: Ard Biesheuvel <ardb@kernel.org> Signed-off-by: Herbert Xu <herbert@gondor.apana.org.au>
Diffstat (limited to 'crypto/polyval-generic.c')
0 files changed, 0 insertions, 0 deletions