mirror of https://gitee.com/openkylin/linux.git
crypto: echainiv - change to 'default n'
echainiv is the only algorithm or template in the crypto API that is enabled by default. But there doesn't seem to be a good reason for it. And it pulls in a lot of stuff as dependencies, like AEAD support and a "NIST SP800-90A DRBG" including HMAC-SHA256. The commit which made it default 'm', commit3491244c62
("crypto: echainiv - Set Kconfig default to m"), mentioned that it's needed for IPsec. However, later commit32b6170ca5
("ipv4+ipv6: Make INET*_ESP select CRYPTO_ECHAINIV") made the IPsec kconfig options select it. So, remove the 'default m'. Signed-off-by: Eric Biggers <ebiggers@google.com> Signed-off-by: Herbert Xu <herbert@gondor.apana.org.au>
This commit is contained in:
parent
c8a3315a5f
commit
87804144cb
|
@ -428,7 +428,6 @@ config CRYPTO_ECHAINIV
|
||||||
select CRYPTO_NULL
|
select CRYPTO_NULL
|
||||||
select CRYPTO_RNG_DEFAULT
|
select CRYPTO_RNG_DEFAULT
|
||||||
select CRYPTO_MANAGER
|
select CRYPTO_MANAGER
|
||||||
default m
|
|
||||||
help
|
help
|
||||||
This IV generator generates an IV based on the encryption of
|
This IV generator generates an IV based on the encryption of
|
||||||
a sequence number xored with a salt. This is the default
|
a sequence number xored with a salt. This is the default
|
||||||
|
|
Loading…
Reference in New Issue