Date: Fri, 16 Dec 2016 13:22:37 +0000 From: Jean-Philippe Aumasson <jeanphilippe.aumasson@...il.com> To: "Jason A. Donenfeld" <Jason@...c4.com> Cc: George Spelvin <linux@...encehorizons.net>, Andi Kleen <ak@...ux.intel.com>, David Miller <davem@...emloft.net>, David Laight <David.Laight@...lab.com>, Eric Biggers <ebiggers3@...il.com>, Hannes Frederic Sowa <hannes@...essinduktion.org>, kernel-hardening@...ts.openwall.com, Linux Crypto Mailing List <linux-crypto@...r.kernel.org>, LKML <linux-kernel@...r.kernel.org>, Andy Lutomirski <luto@...capital.net>, Netdev <netdev@...r.kernel.org>, Tom Herbert <tom@...bertland.com>, Linus Torvalds <torvalds@...ux-foundation.org>, "Theodore Ts'o" <tytso@....edu>, vegard.nossum@...il.com, "Daniel J . Bernstein" <djb@...yp.to> Subject: Re: [PATCH v5 1/4] siphash: add cryptographically secure PRF It needs some basic security review, which I'll try do next week (check for security margin, optimality of rotation counts, etc.). But after a lot of experience with this kind of construction (BLAKE, SipHash, NORX), I'm confident it will be safe as it is. On Fri, Dec 16, 2016 at 1:44 PM Jason A. Donenfeld <Jason@...c4.com> wrote: > Hey JP, > > On Fri, Dec 16, 2016 at 9:08 AM, Jean-Philippe Aumasson > <jeanphilippe.aumasson@...il.com> wrote: > > Here's a tentative HalfSipHash: > > https://github.com/veorq/SipHash/blob/halfsiphash/halfsiphash.c > > > > Haven't computed the cycle count nor measured its speed. > > This is incredible. Really. Wow! > > I'll integrate this into my patchset and will write up some > documentation about when one should be used over the other. > > Thanks again. Quite exciting. > > Jason > Content of type "text/html" skipped
Powered by blists - more mailing lists
Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.