crypto: arm64/aes-xctr - Add accelerated implementation of XCTR
authorNathan Huckleberry <nhuck@google.com>
Fri, 20 May 2022 18:14:57 +0000 (18:14 +0000)
committerHerbert Xu <herbert@gondor.apana.org.au>
Fri, 10 Jun 2022 08:40:17 +0000 (16:40 +0800)
commit23a251cc1696e1bf68df1dbba569d2fe12469d22
treeee41c849231de5fec9f50da01f61d315f01650e9
parentfd94fcf09957a75e25941f7dbfc84d30a63817ac
crypto: arm64/aes-xctr - Add accelerated implementation of XCTR

Add hardware accelerated version of XCTR for ARM64 CPUs with ARMv8
Crypto Extension support.  This XCTR implementation is based on the CTR
implementation in aes-modes.S.

More information on XCTR can be found in
the HCTR2 paper: "Length-preserving encryption with HCTR2":
https://eprint.iacr.org/2021/1441.pdf

Signed-off-by: Nathan Huckleberry <nhuck@google.com>
Reviewed-by: Ard Biesheuvel <ardb@kernel.org>
Reviewed-by: Eric Biggers <ebiggers@google.com>
Signed-off-by: Herbert Xu <herbert@gondor.apana.org.au>
arch/arm64/crypto/Kconfig
arch/arm64/crypto/aes-glue.c
arch/arm64/crypto/aes-modes.S