Message ID | SJ0PR15MB46305249A38B065C6181CD46BF249@SJ0PR15MB4630.namprd15.prod.outlook.com |
---|---|
State | Accepted |
Headers | show
Return-Path: <hostap-bounces+incoming=patchwork.ozlabs.org@lists.infradead.org> X-Original-To: incoming@patchwork.ozlabs.org Delivered-To: patchwork-incoming@legolas.ozlabs.org Authentication-Results: legolas.ozlabs.org; spf=none (no SPF record) smtp.mailfrom=lists.infradead.org (client-ip=2607:7c80:54:3::133; helo=bombadil.infradead.org; envelope-from=hostap-bounces+incoming=patchwork.ozlabs.org@lists.infradead.org; receiver=<UNKNOWN>) Authentication-Results: legolas.ozlabs.org; dkim=pass (2048-bit key; secure) header.d=lists.infradead.org header.i=@lists.infradead.org header.a=rsa-sha256 header.s=bombadil.20210309 header.b=AowNlsxz; dkim=fail reason="signature verification failed" (2048-bit key; unprotected) header.d=absolute.com header.i=@absolute.com header.a=rsa-sha256 header.s=abstkey header.b=A001BGtv; dkim=fail reason="signature verification failed" (1024-bit key; unprotected) header.d=AbsoluteCloud.onmicrosoft.com header.i=@AbsoluteCloud.onmicrosoft.com header.a=rsa-sha256 header.s=selector1-AbsoluteCloud-onmicrosoft-com header.b=QCXmLX8a; dkim-atps=neutral Received: from bombadil.infradead.org (bombadil.infradead.org [IPv6:2607:7c80:54:3::133]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature ECDSA (P-384) server-digest SHA384) (No client certificate requested) by legolas.ozlabs.org (Postfix) with ESMTPS id 4MpwCD0NgWz23jn for <incoming@patchwork.ozlabs.org>; Sat, 15 Oct 2022 05:39:01 +1100 (AEDT) DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=lists.infradead.org; s=bombadil.20210309; h=Sender: Content-Transfer-Encoding:Content-Type:List-Subscribe:List-Help:List-Post: List-Archive:List-Unsubscribe:List-Id:MIME-Version:Message-ID:Date:Subject:To :From:Reply-To:Cc:Content-ID:Content-Description:Resent-Date:Resent-From: Resent-Sender:Resent-To:Resent-Cc:Resent-Message-ID:In-Reply-To:References: List-Owner; bh=0uYOrWhDhnD79w1GXdp++FiZmM6yCTcI4o3y8Zc73Vk=; b=AowNlsxzifFKY6 gswdOrx46urlphuglg43q7jUoHRNhA0eWS7uLacdNMqyM20OcS3KSo4y+p91yMPq65ukrRr+zlOHt KZXFxdUHsKGI3V4b2Al7ZHvDHp1EAmUDUK9k8ftg5T+JQPAQoWDd2OGfVlJWfOb0vWv42LBb4q9sm 2u7NWYMF7Axb9qJbtm5CCbIfZFcB4B9tzXoLbpnLSwoklsiQ9Og46a7Aiv4B3lUfvsdjjY3GBEV90 XMaG4dos/OK1M4MIJkPYgfL7GjDO+qsrMvVy3v45qGnjEnBWWipr3F0LFx1WPo1Lvqr7MWzgueUpU b1kE+4UVsSD7pIZ/6JuA==; Received: from localhost ([::1] helo=bombadil.infradead.org) by bombadil.infradead.org with esmtp (Exim 4.94.2 #2 (Red Hat Linux)) id 1ojPZ3-00FcrY-TZ; Fri, 14 Oct 2022 18:37:46 +0000 Received: from mx0d-0037f201.pphosted.com ([67.231.151.203]) by bombadil.infradead.org with esmtps (Exim 4.94.2 #2 (Red Hat Linux)) id 1ojPZ0-00Fcqm-LO for hostap@lists.infradead.org; Fri, 14 Oct 2022 18:37:44 +0000 Received: from pps.filterd (m0169704.ppops.net [127.0.0.1]) by mx0d-0037f201.pphosted.com (8.17.1.19/8.17.1.5) with ESMTP id 29ECHdkM010866 for <hostap@lists.infradead.org>; Fri, 14 Oct 2022 11:37:38 -0700 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=absolute.com; h=from : to : subject : date : message-id : content-type : content-transfer-encoding : mime-version; s=abstkey; bh=BsYVofKperLj5BccLqBarCtO5WQ7i+zQGAemjZkqBFE=; b=A001BGtvMO8M6NW/qv2mtCV6eibuMFVme4dNDVnlT4vD9EC4sDmv52Ss7xW7QDp6Yt4H 6jjSeaAIy5FPixkaVnZXXGciNXIMyyDx/6jGrJFp41cC8FkqmrQez/frstX3DnTTdaV/ 57QtkAGkOK5Jfb9Cte/wSBKdZNvBakOHAKyNrfKNhDZTbAjnsBSCfnLkghdegEoMxRvE y0cbA7ztHGiAGKmdWNhHgcK8KOEXqJiCuQqsX2vkWxSvuZyLXM3jy5UWNAq/ijLKgET1 ZSeb83+C7zhlVGgLVrqIfoY5zvJZ94G8X1+8Rutz60fN9WOtlpntpZ35xNXhepJrCutq yA== Received: from nam04-dm6-obe.outbound.protection.outlook.com (mail-dm6nam04lp2047.outbound.protection.outlook.com [104.47.73.47]) by mx0d-0037f201.pphosted.com (PPS) with ESMTPS id 3k35dmv2r7-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT) for <hostap@lists.infradead.org>; Fri, 14 Oct 2022 11:37:38 -0700 ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=MseScOG77gxR85KG71k8ndB5YfwF0zFgDKTa+M8thL8+TVe8Q0Ve+iE2eG+aTSoZakdnhQ4WgQgvJOt5FhkgIGrrRTOZdFzOYlz6vEAeLkjBZjprXlFtTPCmqmUQUWIebiSrY4yFQ8sBEGiD/l8DhZVZCcMaK7lLIvK2mCIbAoZQvrbciBB+4AJKZ1qYr5GV+ro9ygn7CHcAuURlr4LE44Zj5symM3ksFn6b3yCSj5dEz4keqvmHEMPyLl4G3SUkjDC2pfRXdCjnctzcD9NQqgOd9EaIR2A930pl7HVnr51WJwlw9Rnb7FmWg4zr9e+esnqrxlTb+hlYkwbEl8OzpQ== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=BsYVofKperLj5BccLqBarCtO5WQ7i+zQGAemjZkqBFE=; b=j4cXPHalYt5sAKyolLxYltgF8NPItSKIu+PsllmVFKTERTHr9yHGCtTwRznhtDBbLIgIXqgVZQlVq/Fnv1Z/Bi4D/FzEftab0wr39E2r2Ku8z7WGrtcf7oxCQacwMCZc7N9RNbvNDNIqWBGHa6rtoQ5ZKtL+lyeH2MYBe451atp5z2sjJZYvXn1uV72KmZN0dD1ACf6ar3AWOPHsAKpEuOYgqgrfI4epRHCRc4xTi+eDQNwz/ehUmgd+4HtNKxVjydQcUCHLVMBK53mRCaSA0YlVRpy1c7aK60Ug1RnudM4PsyLk9e76z44jS0JCuqKyoeq1h0MHWvT6FH+AXmwOLQ== ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=absolute.com; dmarc=pass action=none header.from=absolute.com; dkim=pass header.d=absolute.com; arc=none DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=AbsoluteCloud.onmicrosoft.com; s=selector1-AbsoluteCloud-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=BsYVofKperLj5BccLqBarCtO5WQ7i+zQGAemjZkqBFE=; b=QCXmLX8aCP0p0O3KINS5egIXTpMVC/DWpoBp23uKr+2XKZiL5vgW3HEau6MXfEbQ9AzcnF5FI3J4f5LAmCfKO4d6LhTNENpH27DYy/1yluWMA1lvY2BDkPMuZ+HTZqWFQdBGPIxI6KDkCmv6aLfZHBZodgzeOx0+tJFSQ37XwD4= Received: from SJ0PR15MB4630.namprd15.prod.outlook.com (2603:10b6:a03:37b::9) by MW4PR15MB4508.namprd15.prod.outlook.com (2603:10b6:303:109::7) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5723.26; Fri, 14 Oct 2022 18:37:35 +0000 Received: from SJ0PR15MB4630.namprd15.prod.outlook.com ([fe80::5f4:a94b:b01e:357f]) by SJ0PR15MB4630.namprd15.prod.outlook.com ([fe80::5f4:a94b:b01e:357f%6]) with mapi id 15.20.5723.029; Fri, 14 Oct 2022 18:37:34 +0000 From: Norman Hamer <NHamer@absolute.com> To: "hostap@lists.infradead.org" <hostap@lists.infradead.org> Subject: [PATCH] Don't provide implementation of DES/RC4 if CONFIG_FIPS Thread-Topic: [PATCH] Don't provide implementation of DES/RC4 if CONFIG_FIPS Thread-Index: Adjf++KPbDDbQhB/QeebfLYIj1vqzw== Date: Fri, 14 Oct 2022 18:37:34 +0000 Message-ID: <SJ0PR15MB46305249A38B065C6181CD46BF249@SJ0PR15MB4630.namprd15.prod.outlook.com> Accept-Language: en-US Content-Language: en-US X-MS-Has-Attach: X-MS-TNEF-Correlator: x-ms-publictraffictype: Email x-ms-traffictypediagnostic: SJ0PR15MB4630:EE_|MW4PR15MB4508:EE_ x-ms-office365-filtering-correlation-id: e7360aa1-c4e1-4719-044d-08daae132965 x-ms-exchange-senderadcheck: 1 x-ms-exchange-antispam-relay: 0 x-microsoft-antispam: BCL:0; x-microsoft-antispam-message-info: +lK4EZz7fM1pkp2RqVsijFCbZFrkb6j2tDZ/0tMxsVvJZCZlTrUFkF4d5Sv9sPzQC9h2p7ev7x+bSJDp70oQdoUBThBLKeIbjOekdLjmpF2dM+BUfuKcnVZL0aNBXU8itj7J7S7vYvZmGu+V9e0K7Q6+RCPiiHEOIuQH9lj21+7CrxnyxlE9zE97VeHJhwBL5gX2tNBc8bZm99ImUQ3E4wWnNPEtplxuvdXPeJ3C12L+vpn5mIcn8p3rtmBFOOBqN661EA+L6mTXJKjSVwbxxBP0F/uENp2r3foD5T+b0c4ALxVw10kkVWOET0VqAboZ64++e5X/pDAVV19p/0BJQzGf/ccG2yo6PBAz5Da1n7Aw7lf3d9Bo7z2sMygKNHGIHbUOYwuJ1rWL2/WmmSh8rH7xfJFdATvIPFnOkiGYt+2OxdccZTDNLH+EIGxpBFz+0ATeJuZy8hIVSHSrITdF8XRO2r1JyvRe2avaALZQxdbSyo2laLG1HECxE8W+oMswus2G/xMGGfEG8SPn3otlcgvQzivXOWqhXP9UTb1THjrN+/sLCI8h7/a2/t980ojHjSEjL2Ugq2YhdgOip/VujlYCKQlYCy/91gWWRwGGGEqQXipJB2qFNPdCQFelkd2EVcqIln2/CWoDZthZGvNzCUBhPv+8zBHAksf6rPwZRmO0B/3wxPTwc3iFbTtJq0jy0CPLYhQwFli7YB6P4wWjyZaq0CUJ0lGYa4HvR9F5+zmlFSXgLqU8DVjX/X6kkOupNBzyyFJISlXE+5+aiEzwpA== x-forefront-antispam-report: CIP:255.255.255.255;CTRY:;LANG:en;SCL:1;SRV:;IPV:NLI;SFV:NSPM;H:SJ0PR15MB4630.namprd15.prod.outlook.com;PTR:;CAT:NONE;SFS:(13230022)(376002)(366004)(136003)(346002)(39850400004)(396003)(451199015)(316002)(478600001)(6916009)(71200400001)(76116006)(66446008)(66476007)(66946007)(66556008)(8676002)(64756008)(83380400001)(122000001)(7696005)(8936002)(9686003)(26005)(41300700001)(186003)(5660300002)(6506007)(2906002)(38100700002)(33656002)(52536014)(55016003)(38070700005)(86362001);DIR:OUT;SFP:1102; x-ms-exchange-antispam-messagedata-chunkcount: 1 x-ms-exchange-antispam-messagedata-0: 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 MIME-Version: 1.0 X-OriginatorOrg: absolute.com X-MS-Exchange-CrossTenant-AuthAs: Internal X-MS-Exchange-CrossTenant-AuthSource: SJ0PR15MB4630.namprd15.prod.outlook.com X-MS-Exchange-CrossTenant-Network-Message-Id: e7360aa1-c4e1-4719-044d-08daae132965 X-MS-Exchange-CrossTenant-originalarrivaltime: 14 Oct 2022 18:37:34.8288 (UTC) X-MS-Exchange-CrossTenant-fromentityheader: Hosted X-MS-Exchange-CrossTenant-id: b5039c9e-612b-4c15-9c25-2850fb9ce9e7 X-MS-Exchange-CrossTenant-mailboxtype: HOSTED X-MS-Exchange-CrossTenant-userprincipalname: RX2+q95RdtRsIklUKhMR6hQLyUOfqRxyzmy8hyXWSjD49xai2ag4JrQyK0ZCAXw5EVmXALqVcpflzmxTr/AVlA== X-MS-Exchange-Transport-CrossTenantHeadersStamped: MW4PR15MB4508 X-Proofpoint-ORIG-GUID: nRPyel4ecwFc0vhlUG4VJhHiSHNnMVgN X-Proofpoint-GUID: nRPyel4ecwFc0vhlUG4VJhHiSHNnMVgN X-Proofpoint-Virus-Version: vendor=baseguard engine=ICAP:2.0.205,Aquarius:18.0.895,Hydra:6.0.545,FMLib:17.11.122.1 definitions=2022-10-14_09,2022-10-14_01,2022-06-22_01 X-Proofpoint-Spam-Details: rule=outbound_notspam policy=outbound score=0 mlxscore=0 clxscore=1015 priorityscore=1501 phishscore=0 spamscore=0 impostorscore=0 adultscore=0 bulkscore=0 malwarescore=0 lowpriorityscore=0 mlxlogscore=872 suspectscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-2209130000 definitions=main-2210140101 X-Proofpoint-SSN: Sensitivity3 X-CRM114-Version: 20100106-BlameMichelson ( TRE 0.8.0 (BSD) ) MR-646709E3 X-CRM114-CacheID: sfid-20221014_113743_068836_77DB625D X-CRM114-Status: GOOD ( 17.15 ) X-Spam-Score: -0.2 (/) X-Spam-Report: Spam detection software, running on the system "bombadil.infradead.org", has NOT identified this incoming email as spam. The original message has been attached to this so you can view it or label similar future email. If you have any questions, see the administrator of that system for details. Content preview: Don't provide implementation of DES/RC4 if CONFIG_FIPS Signed-off-by: Norman Hamer <nhamer@absolute.com> --- src/crypto/crypto_openssl.c | 5 ++++- 1 file changed, 4 insertions(+), 1 deletion(-) diff --git a/src/crypto/crypto_openssl.c b/src/crypto/crypto_openssl.c index 700638761..fc85c2c90 100644 --- a/src/crypto/crypto_openssl.c +++ b/src/crypto/crypto_openssl.c @@ -321,6 +321,7 @@ int md4 [...] Content analysis details: (-0.2 points, 5.0 required) pts rule name description ---- ---------------------- -------------------------------------------------- 0.0 SPF_HELO_NONE SPF: HELO does not publish an SPF Record 0.0 SPF_NONE SPF: sender does not publish an SPF Record -0.1 DKIM_VALID_AU Message has a valid DKIM or DK signature from author's domain -0.1 DKIM_VALID Message has at least one valid DKIM or DK signature 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid -0.1 DKIM_VALID_EF Message has a valid DKIM or DK signature from envelope-from domain X-BeenThere: hostap@lists.infradead.org X-Mailman-Version: 2.1.34 Precedence: list List-Id: <hostap.lists.infradead.org> List-Unsubscribe: <http://lists.infradead.org/mailman/options/hostap>, <mailto:hostap-request@lists.infradead.org?subject=unsubscribe> List-Archive: <http://lists.infradead.org/pipermail/hostap/> List-Post: <mailto:hostap@lists.infradead.org> List-Help: <mailto:hostap-request@lists.infradead.org?subject=help> List-Subscribe: <http://lists.infradead.org/mailman/listinfo/hostap>, <mailto:hostap-request@lists.infradead.org?subject=subscribe> Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: 7bit Sender: "Hostap" <hostap-bounces@lists.infradead.org> Errors-To: hostap-bounces+incoming=patchwork.ozlabs.org@lists.infradead.org |
Series |
Don't provide implementation of DES/RC4 if CONFIG_FIPS
|
expand
|
On Fri, Oct 14, 2022 at 06:37:34PM +0000, Norman Hamer wrote:
> Don't provide implementation of DES/RC4 if CONFIG_FIPS
Thanks, applied.
diff --git a/src/crypto/crypto_openssl.c b/src/crypto/crypto_openssl.c index 700638761..fc85c2c90 100644 --- a/src/crypto/crypto_openssl.c +++ b/src/crypto/crypto_openssl.c @@ -321,6 +321,7 @@ int md4_vector(size_t num_elem, const u8 *addr[], const size_t *len, u8 *mac) #endif /* CONFIG_FIPS */ +#ifndef CONFIG_FIPS int des_encrypt(const u8 *clear, const u8 *key, u8 *cypher) { u8 pkey[8], next, tmp; @@ -352,8 +353,10 @@ int des_encrypt(const u8 *clear, const u8 *key, u8 *cypher) EVP_CIPHER_CTX_free(ctx); return ret; } +#endif /* CONFIG_FIPS */ +#ifndef CONFIG_FIPS #ifndef CONFIG_NO_RC4 int rc4_skip(const u8 *key, size_t keylen, size_t skip, u8 *data, size_t data_len) @@ -395,7 +398,7 @@ out: #endif /* OPENSSL_NO_RC4 */ } #endif /* CONFIG_NO_RC4 */ - +#endif /* CONFIG_FIPS */ #ifndef CONFIG_FIPS int md5_vector(size_t num_elem, const u8 *addr[], const size_t *len, u8 *mac)
Don't provide implementation of DES/RC4 if CONFIG_FIPS Signed-off-by: Norman Hamer <nhamer@absolute.com> --- src/crypto/crypto_openssl.c | 5 ++++- 1 file changed, 4 insertions(+), 1 deletion(-)