Timo Teräs wrote:
You can download the patch from:
http://dev.alpinelinux.org/cgit/aports/plain/core/openssl/openssl-0.9.8k-padlock-oneshot-sha.patch
I have updated the patch to do the trick involving protected
page and handing sigsegv. New patch at:
http://dev.alpinelinux.org/cgit/aports/plain/core/openssl/openssl-0.9.8k-padlock-sha.patch?id=656e8c615885329ffbafc41f9e4be85314f520da
The old patch with oneshot support only is accessible still as:
http://dev.alpinelinux.org/cgit/aports/plain/core/openssl/openssl-0.9.8k-padlock-oneshot-sha.patch?id=c79cb2c008414b615bcd31a9b122108eca3696e1
The new patch also modifies the EVP sign/verify code to set
oneshot flag on the temporary context that is used to finalize
the signing hash. It can be used to speed up some things.
On the new VIA Nano CPUs the xsha instruction has non-finalizing
mode. I'm open to implement that if I get a box to play with.
- Timo
______________________________________________________________________
OpenSSL Project http://www.openssl.org
Development Mailing List openssl-dev@openssl.org
Automated List Manager majord...@openssl.org