Re: [dm-devel] [PATCH v8 01/12] Documentation/x86: Document Key Locker

2023-06-05 Thread Bagas Sanjaya
On 6/3/23 22:22, Chang S. Bae wrote: > +== > +x86 Key Locker > +== > + > +Introduction > + > + > +Key Locker is a CPU feature to reduce key exfiltration opportunities > +while maintaining a programming interface similar to AES-NI. It > +converts the AES key into

Re: [dm-devel] [PATCH v8 01/12] Documentation/x86: Document Key Locker

2023-06-05 Thread Chang S. Bae
On 6/5/2023 7:17 PM, Randy Dunlap wrote: On 6/3/23 08:22, Chang S. Bae wrote: + +* AES-KL implements support for 128-bit and 256-bit keys, but there is no + AES-KL instruction to process an 192-bit key. The AES-KL cipher + implementation logs a warning message with a 192-bit key and then falls

Re: [dm-devel] [PATCH v8 01/12] Documentation/x86: Document Key Locker

2023-06-05 Thread Randy Dunlap
On 6/3/23 08:22, Chang S. Bae wrote: > Document the overview of the feature along with relevant consideration > when provisioning dm-crypt volumes with AES-KL instead of AES-NI. > > --- > --- > Documentation/arch/x86/index.rst | 1 + > Documentation/arch/x86/keylocker.rst | 97 +++

[dm-devel] [PATCH v8 01/12] Documentation/x86: Document Key Locker

2023-06-03 Thread Chang S. Bae
Document the overview of the feature along with relevant consideration when provisioning dm-crypt volumes with AES-KL instead of AES-NI. Signed-off-by: Chang S. Bae Reviewed-by: Dan Williams Cc: Thomas Gleixner Cc: Ingo Molnar Cc: Borislav Petkov Cc: Dave Hansen Cc: "H. Peter Anvin" Cc: Jon