Timo Teräs wrote:
You can download the patch from:
http://dev.alpinelinux.org/cgit/aports/plain/core/openssl/openssl-0.9.8k-padlock-oneshot-sha.patch

I have updated the patch to do the trick involving protected
page and handing sigsegv. New patch at:
http://dev.alpinelinux.org/cgit/aports/plain/core/openssl/openssl-0.9.8k-padlock-sha.patch?id=656e8c615885329ffbafc41f9e4be85314f520da

The old patch with oneshot support only is accessible still as:
http://dev.alpinelinux.org/cgit/aports/plain/core/openssl/openssl-0.9.8k-padlock-oneshot-sha.patch?id=c79cb2c008414b615bcd31a9b122108eca3696e1

The new patch also modifies the EVP sign/verify code to set
oneshot flag on the temporary context that is used to finalize
the signing hash. It can be used to speed up some things.

On the new VIA Nano CPUs the xsha instruction has non-finalizing
mode. I'm open to implement that if I get a box to play with.

- Timo
______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
Development Mailing List                       openssl-dev@openssl.org
Automated List Manager                           majord...@openssl.org

Reply via email to