-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Hi all, attached is a driver for OpenBSD-like /dev/crypto device (aka CryptoDev) that makes a way for userspace processes to access ciphers provided by in-kernel CryptoAPI modules. How does it work? - - Process opens /dev/crypto and with a set of ioctl() commands does what it wants to. I.e. obtains a crypto session, does the {enc,dec}ryption and finally closes the session. The sessions are bound to "struct file" of the open /dev/crypto and thus are automatically removed even if the process dies unexpectedly. What is it good for? - - One can build really light-weigth programs with crypto support that don't need any external libraries (e.g. OpenSSL) or built-in algorithms. - - Easier testing of new CryptoAPI ciphers (later also hashes and maybe asymmetric ciphers as well). - - Once, maybe, userspace access to crypto accelerators through kernel drivers. - - etc :-) For more info about /dev/crypto usage, demo programs and OpenSSL patch see http://www.logix.cz/michal/devel/cryptodev/ Comments? Any chance to have this accepted into vanilla kernel? Michal Ludvig - -- SUSE Labs mludvig@suse.cz (+420) 296.542.373 http://www.suse.cz Personal homepage http://www.logix.cz/michal -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.4 (GNU/Linux) Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org iD8DBQFBK7URDDolCcRbIhgRAhbSAJ4uf2jXY3X8zYcmbgqLATG7SuT0QwCg4IF6 RxZNkz+u+xjaI+pja8bSt3M= =CrP/ -----END PGP SIGNATURE-----