mirror of https://lore.kernel.org/lkml/
 help / color / mirror / Atom feed
From: Eric Biggers <ebiggers@kernel.org>
To: vjardin@free.fr
Cc: "Horia Geantă" <horia.geanta@nxp.com>,
	"Pankaj Gupta" <pankaj.gupta@nxp.com>,
	"Sahil Malhotra" <sahil.malhotra@nxp.com>,
	"Herbert Xu" <herbert@gondor.apana.org.au>,
	"David S. Miller" <davem@davemloft.net>,
	"Rob Herring" <robh@kernel.org>,
	"Krzysztof Kozlowski" <krzk+dt@kernel.org>,
	"Conor Dooley" <conor+dt@kernel.org>,
	"Gaurav Jain" <gaurav.jain@nxp.com>,
	linux-crypto@vger.kernel.org, linux-kernel@vger.kernel.org,
	devicetree@vger.kernel.org
Subject: Re: [PATCH 0/3] crypto: caam/qi2 - algorithm priority configurable
Date: Mon, 28 Sep 2026 22:41:43 +0000	[thread overview]
Message-ID: <20260928224143.GA21235@google.com> (raw)
In-Reply-To: <20260928-for-upstream-caam-qi2-priority-v1-0-e4a8e5f01dbc@free.fr>

On Mon, Sep 28, 2026 at 04:01:02PM +0200, Vincent Jardin via B4 Relay wrote:
> dpaa2_caam registers its skcipher, aead and ahash algorithms at a fixed
> priority above the ARMv8 Crypto Extensions, so on DPAA2 SoCs
> every in-kernel consumers of AES, SHA or GCM use the SEC.
> 
> Patch 1 adds dpaa2_caam.priority module parameter
> Patch 2 doc fsl,qi2-crypto-priority property on the SEC node
> Patch 3 reads it at probe, the module parameter takes precedence
> 
> Signed-off-by: Vincent Jardin <vjardin@free.fr>

Is there *any* real-world use case in which these caamalg_qi2.c
algorithms are worth using?  This looks like another one of those
problematic drivers pushed by the hardware vendor as a checkbox feature.
Just doing the crypto on the CPU is almost always much faster and more
reliable.

As shown by your other patch
(https://lore.kernel.org/linux-crypto/20260928-for-upstream-caam-qi-plain-keylen-v1-1-6edb56649cf9@free.fr/)
it also seems that this driver has been critically broken for the last
year, with it being unable to set keys.  Evidently, no one has tested or
used it in the last year until now.

It also has the usual anti-patterns like supporting MD5 and DES.

I really don't see the point.  Why do people put themselves through
these issues at all?  It seems this functionality should just be
disabled everywhere, without putting policy in the device tree which as
has been noted many times isn't the right place for it.

- Eric

  parent reply	other threads:[~2026-09-28 22:41 UTC|newest]

Thread overview: 10+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2026-09-28 14:01 Vincent Jardin via B4 Relay
2026-09-28 14:01 ` [PATCH 1/3] crypto: caam/qi2 - algorithm priority be a parameter Vincent Jardin via B4 Relay
2026-09-29 12:29   ` Herbert Xu
2026-09-29 12:57     ` Vincent Jardin
2026-09-28 14:01 ` [PATCH 2/3] dt-bindings: crypto: fsl,sec-v4.0: add fsl,qi2-crypto-priority Vincent Jardin via B4 Relay
2026-09-29  9:08   ` Krzysztof Kozlowski
2026-09-29 12:58     ` Vincent Jardin
2026-09-28 14:01 ` [PATCH 3/3] crypto: caam/qi2 - priority from the DTS Vincent Jardin via B4 Relay
2026-09-28 22:41 ` Eric Biggers [this message]
2026-09-29 16:45   ` [PATCH 0/3] crypto: caam/qi2 - algorithm priority configurable Vincent Jardin

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=20260928224143.GA21235@google.com \
    --to=ebiggers@kernel.org \
    --cc=conor+dt@kernel.org \
    --cc=davem@davemloft.net \
    --cc=devicetree@vger.kernel.org \
    --cc=gaurav.jain@nxp.com \
    --cc=herbert@gondor.apana.org.au \
    --cc=horia.geanta@nxp.com \
    --cc=krzk+dt@kernel.org \
    --cc=linux-crypto@vger.kernel.org \
    --cc=linux-kernel@vger.kernel.org \
    --cc=pankaj.gupta@nxp.com \
    --cc=robh@kernel.org \
    --cc=sahil.malhotra@nxp.com \
    --cc=vjardin@free.fr \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox

all inboxes | Powered by JetHome®