From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from flow-b2-smtp.messagingengine.com (flow-b2-smtp.messagingengine.com [202.12.124.137]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by smtp.subspace.kernel.org (Postfix) with ESMTPS id 5290C433A4; Sun, 30 Mar 2025 08:45:43 +0000 (UTC) Authentication-Results: smtp.subspace.kernel.org; arc=none smtp.client-ip=202.12.124.137 ARC-Seal:i=1; a=rsa-sha256; d=subspace.kernel.org; s=arc-20240116; t=1743324347; cv=none; b=iH+tE4Yp8wJX2gQVP8OwxWvI3YcTVR+j2P5pW0YMp3vkGpoYjwoB65G6oO7VWOhVPzFw5lOl3CIzMgmWYDlOpKjQskpyaR2ZPnvQQgMcRsZnHTaWSRdlxODPgBkuTI8DbRJa0YyPJWdOJS0vRT4u+Wpl9lBQZd+zoATwCAcrHrs= ARC-Message-Signature:i=1; a=rsa-sha256; d=subspace.kernel.org; s=arc-20240116; t=1743324347; c=relaxed/simple; bh=H+Ux5Cj60Wwux5gpGqtyWyKc4Ac653kKfonZ49tQiz0=; h=MIME-Version:Date:From:To:Cc:Message-Id:In-Reply-To:References: Subject:Content-Type; b=KFkCrwqHZyu637B+75ZD0AZD6yp0n8KZEX0JJM9Hjj2ANpZIt+aPrgyldTVBZJ/h+2OHGWNIYaDHLARi1Lmbsg7W1+RwoxKQuXxZvgTMMuJnDWTbTUdaYS1/NAB0g36ALfm4sJtXPDePxopYhlDcQHajLzEDy0uAseIAsyFeWM8= ARC-Authentication-Results:i=1; smtp.subspace.kernel.org; dmarc=pass (p=none dis=none) header.from=arndb.de; spf=pass smtp.mailfrom=arndb.de; dkim=pass (2048-bit key) header.d=arndb.de header.i=@arndb.de header.b=M0UdzJmp; dkim=pass (2048-bit key) header.d=messagingengine.com header.i=@messagingengine.com header.b=JsmG2djz; arc=none smtp.client-ip=202.12.124.137 Authentication-Results: smtp.subspace.kernel.org; dmarc=pass (p=none dis=none) header.from=arndb.de Authentication-Results: smtp.subspace.kernel.org; spf=pass smtp.mailfrom=arndb.de Authentication-Results: smtp.subspace.kernel.org; dkim=pass (2048-bit key) header.d=arndb.de header.i=@arndb.de header.b="M0UdzJmp"; dkim=pass (2048-bit key) header.d=messagingengine.com header.i=@messagingengine.com header.b="JsmG2djz" Received: from phl-compute-07.internal (phl-compute-07.phl.internal [10.202.2.47]) by mailflow.stl.internal (Postfix) with ESMTP id 7FB6C1D417AF; Sun, 30 Mar 2025 04:45:42 -0400 (EDT) Received: from phl-imap-11 ([10.202.2.101]) by phl-compute-07.internal (MEProxy); Sun, 30 Mar 2025 04:45:43 -0400 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=arndb.de; h=cc :cc:content-transfer-encoding:content-type:content-type:date :date:from:from:in-reply-to:in-reply-to:message-id:mime-version :references:reply-to:subject:subject:to:to; s=fm1; t=1743324342; x=1743331542; bh=jQjMu37O/l4HzRGTyx5F4BIFe78F9UaGqYjLoWsple4=; b= M0UdzJmpeLm3ADW5uZ4hZ6yrLV3yPx/q2x7O3H3vK+lJiiDRelNFWxVBBNrXZjuH rwVY8ASm2eCXlBjOgvxlxUlkQw1idKaEtgK5Vs6O9bMnp6QFeJG+P7uaITMXAS4k FlMnEcWGTKeAjoAo2JQcQXczK4KMTZkIvwCCVSmxSj/eAuiFjMI3f5qxMhV2ctC2 ohZsFiOXa0WeNk5SvVfsTKevISygSDrexia5TTUIfuH59v4hMfUjLtoPyiZjC5Nr CKh/O9FuQAGoWk6K8uaudwEC3cSvC8YQGhsFTzkcGmRhpynYmccojjI1WiVqF74A 80vIQ7fYxPNdVB/KIjOQGw== DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=cc:cc:content-transfer-encoding :content-type:content-type:date:date:feedback-id:feedback-id :from:from:in-reply-to:in-reply-to:message-id:mime-version :references:reply-to:subject:subject:to:to:x-me-proxy :x-me-sender:x-me-sender:x-sasl-enc; s=fm2; t=1743324342; x= 1743331542; bh=jQjMu37O/l4HzRGTyx5F4BIFe78F9UaGqYjLoWsple4=; b=J smG2djz6vfVjZfm/9HsjDJNuy5fipjqS3xySNuwaYr8fq038FJD8/2xIwBsxEFlF G+wvm44m7HU2Lf1C5XXqRG8JL0Tf9ic5ljKKT6NUlk2miPYy/cyQO+kCHJVsYSuq LB0sLH17kC3hKJBk7hvZRRVBspYfF0NEdaTLC7/Mf1FZtzZNNls5aHspVuauWpYc L61gee4ENborxfMwwWG6U8BIIBESUAdyPmJ0HqNOUqMlcCeIvKdNOrWPWd1G2zTd I2SgmuOb/HoZ81vwwVRARvHFIK9pLZ2KhH+S2xrkeGGprWCG9QitIY/3+kOqlUzc 1vwWCHZ3ec6Ij1JKx4FKw== X-ME-Sender: X-ME-Proxy-Cause: gggruggvucftvghtrhhoucdtuddrgeefvddrtddtgddujeeiiedtucetufdoteggodetrf dotffvucfrrhhofhhilhgvmecuhfgrshhtofgrihhlpdggtfgfnhhsuhgsshgtrhhisggv pdfurfetoffkrfgpnffqhgenuceurghilhhouhhtmecufedttdenucesvcftvggtihhpih gvnhhtshculddquddttddmnecujfgurhepofggfffhvfevkfgjfhfutgfgsehtjeertder tddtnecuhfhrohhmpedftehrnhguuceuvghrghhmrghnnhdfuceorghrnhgusegrrhhnug gsrdguvgeqnecuggftrfgrthhtvghrnhephfdthfdvtdefhedukeetgefggffhjeeggeet fefggfevudegudevledvkefhvdeinecuvehluhhsthgvrhfuihiivgeptdenucfrrghrrg hmpehmrghilhhfrhhomheprghrnhgusegrrhhnuggsrdguvgdpnhgspghrtghpthhtohep vddupdhmohguvgepshhmthhpohhuthdprhgtphhtthhopegurghvvghmsegurghvvghmlh hofhhtrdhnvghtpdhrtghpthhtohepjhhfohhrsggvshesfhgvughorhgrphhrohhjvggt thdrohhrghdprhgtphhtthhopehrohhsvghnphesghhmrghilhdrtghomhdprhgtphhtth hopehhvghrsggvrhhtsehgohhnughorhdrrghprghnrgdrohhrghdrrghupdhrtghpthht ohepshgvrhhgvgeshhgrlhhlhihnrdgtohhmpdhrtghpthhtohepjhgrmhgvshdrsghoth htohhmlhgvhieshhgrnhhsvghnphgrrhhtnhgvrhhshhhiphdrtghomhdprhgtphhtthho pegrrhgusgeskhgvrhhnvghlrdhorhhgpdhrtghpthhtoheprghrnhgusehkvghrnhgvlh drohhrghdprhgtphhtthhopegssghrvgiiihhllhhonheskhgvrhhnvghlrdhorhhg X-ME-Proxy: Feedback-ID: i56a14606:Fastmail Received: by mailuser.phl.internal (Postfix, from userid 501) id 0B7AF2220072; Sun, 30 Mar 2025 04:45:39 -0400 (EDT) X-Mailer: MessagingEngine.com Webmail Interface Precedence: bulk X-Mailing-List: linux-kernel@vger.kernel.org List-Id: List-Subscribe: List-Unsubscribe: MIME-Version: 1.0 X-ThreadId: T2a88af23abfdad3d Date: Sun, 30 Mar 2025 10:45:19 +0200 From: "Arnd Bergmann" To: "Geert Uytterhoeven" , "Arnd Bergmann" Cc: "'bbrezillon@kernel.org'" , "Arnaud Ebalard" , "Srujana Challa" , "Herbert Xu" , "David S . Miller" , "David Howells" , "Jarkko Sakkinen" , "Paul Moore" , "James Morris" , "Serge E. Hallyn" , "Justin M. Forbes" , "Jason A . Donenfeld" , "Rosen Penev" , "Ard Biesheuvel" , "James E . J . Bottomley" , linux-crypto@vger.kernel.org, linux-kernel@vger.kernel.org, keyrings@vger.kernel.org, linux-security-module@vger.kernel.org Message-Id: <4a1e3e4d-a568-4f5f-a6cc-502b9642d0eb@app.fastmail.com> In-Reply-To: References: <20250314160543.605055-1-arnd@kernel.org> Subject: Re: [PATCH] [v2] crypto: lib/Kconfig: hide library options Content-Type: text/plain Content-Transfer-Encoding: 7bit On Sun, Mar 30, 2025, at 10:34, Geert Uytterhoeven wrote: > On Fri, 14 Mar 2025 at 17:05, Arnd Bergmann wrote: > >> --- a/security/keys/Kconfig >> +++ b/security/keys/Kconfig >> @@ -60,7 +60,7 @@ config BIG_KEYS >> bool "Large payload keys" >> depends on KEYS >> depends on TMPFS >> - depends on CRYPTO_LIB_CHACHA20POLY1305 = y >> + select CRYPTO_LIB_CHACHA20POLY1305 >> help >> This option provides support for holding large keys within the kernel >> (for example Kerberos ticket caches). The data may be stored out to > > Due to dropping the dependency, this appeared on my radar. > Should this be selected by one or some of the Kerberos Kconfig symbols? > I don't see why: before commit 521fd61c84a1 ("security/keys: rewrite big_key crypto to use library interface") it was user selectable without the crypto dependency, and now it got back to that. I think from the point of view of Kconfig that is how we want it. Arnd