From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from dpdk.org (dpdk.org [92.243.14.124]) by inbox.dpdk.org (Postfix) with ESMTP id 4AE25A046B for ; Tue, 23 Jul 2019 03:02:36 +0200 (CEST) Received: from [92.243.14.124] (localhost [127.0.0.1]) by dpdk.org (Postfix) with ESMTP id 3DE571BEF8; Tue, 23 Jul 2019 03:02:36 +0200 (CEST) Received: from mellanox.co.il (mail-il-dmz.mellanox.com [193.47.165.129]) by dpdk.org (Postfix) with ESMTP id 0ED981BEF8 for ; Tue, 23 Jul 2019 03:02:34 +0200 (CEST) Received: from Internal Mail-Server by MTLPINE2 (envelope-from yskoh@mellanox.com) with ESMTPS (AES256-SHA encrypted); 23 Jul 2019 04:02:30 +0300 Received: from scfae-sc-2.mti.labs.mlnx (scfae-sc-2.mti.labs.mlnx [10.101.0.96]) by labmailer.mlnx (8.13.8/8.13.8) with ESMTP id x6N11HfR026580; Tue, 23 Jul 2019 04:02:29 +0300 From: Yongseok Koh To: Fan Zhang Cc: Konstantin Ananyev , Akhil Goyal , dpdk stable Date: Mon, 22 Jul 2019 18:00:08 -0700 Message-Id: <20190723010115.6446-41-yskoh@mellanox.com> X-Mailer: git-send-email 2.21.0 In-Reply-To: <20190723010115.6446-1-yskoh@mellanox.com> References: <20190723010115.6446-1-yskoh@mellanox.com> MIME-Version: 1.0 Content-Transfer-Encoding: 8bit Subject: [dpdk-stable] patch 'examples/ipsec-secgw: fix AES-CTR block size' has been queued to LTS release 17.11.7 X-BeenThere: stable@dpdk.org X-Mailman-Version: 2.1.15 Precedence: list List-Id: patches for DPDK stable branches List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: stable-bounces@dpdk.org Sender: "stable" Hi, FYI, your patch has been queued to LTS release 17.11.7 Note it hasn't been pushed to http://dpdk.org/browse/dpdk-stable yet. It will be pushed if I get no objection by 07/27/19. So please shout if anyone has objection. Also note that after the patch there's a diff of the upstream commit vs the patch applied to the branch. This will indicate if there was any rebasing needed to apply to the stable branch. If there were code changes for rebasing (ie: not only metadata diffs), please double check that the rebase was correctly done. Thanks. Yongseok --- >From 406181af775f015be96d1b2bef1221b29a54900a Mon Sep 17 00:00:00 2001 From: Fan Zhang Date: Tue, 5 Mar 2019 14:40:41 +0000 Subject: [PATCH] examples/ipsec-secgw: fix AES-CTR block size [ upstream commit 8d9a222507b291113e18e6bc46f3196a51fd181d ] This patch fixes the incorrect block size for AES-CTR in legacy mode. Originally, wrong block size will cause esp_inbound() drop AES-CTR encrypted packets if the payload sizes not equal to multiple times of 16. Fixes: 4470c22de2e1 ("examples/ipsec-secgw: add AES-CTR") Signed-off-by: Fan Zhang Acked-by: Konstantin Ananyev Acked-by: Akhil Goyal --- examples/ipsec-secgw/sa.c | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/examples/ipsec-secgw/sa.c b/examples/ipsec-secgw/sa.c index b9f4a21149..b51a230a33 100644 --- a/examples/ipsec-secgw/sa.c +++ b/examples/ipsec-secgw/sa.c @@ -101,7 +101,7 @@ const struct supported_cipher_algo cipher_algos[] = { .keyword = "aes-128-ctr", .algo = RTE_CRYPTO_CIPHER_AES_CTR, .iv_len = 8, - .block_size = 16, /* XXX AESNI MB limition, should be 4 */ + .block_size = 4, .key_len = 20 } }; -- 2.21.0 --- Diff of the applied patch vs upstream commit (please double-check if non-empty: --- --- - 2019-07-22 17:55:08.740136911 -0700 +++ 0041-examples-ipsec-secgw-fix-AES-CTR-block-size.patch 2019-07-22 17:55:06.057474000 -0700 @@ -1,15 +1,16 @@ -From 8d9a222507b291113e18e6bc46f3196a51fd181d Mon Sep 17 00:00:00 2001 +From 406181af775f015be96d1b2bef1221b29a54900a Mon Sep 17 00:00:00 2001 From: Fan Zhang Date: Tue, 5 Mar 2019 14:40:41 +0000 Subject: [PATCH] examples/ipsec-secgw: fix AES-CTR block size +[ upstream commit 8d9a222507b291113e18e6bc46f3196a51fd181d ] + This patch fixes the incorrect block size for AES-CTR in legacy mode. Originally, wrong block size will cause esp_inbound() drop AES-CTR encrypted packets if the payload sizes not equal to multiple times of 16. Fixes: 4470c22de2e1 ("examples/ipsec-secgw: add AES-CTR") -Cc: stable@dpdk.org Signed-off-by: Fan Zhang Acked-by: Konstantin Ananyev @@ -19,18 +20,18 @@ 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/examples/ipsec-secgw/sa.c b/examples/ipsec-secgw/sa.c -index 414fcd26cf..93e3620bcd 100644 +index b9f4a21149..b51a230a33 100644 --- a/examples/ipsec-secgw/sa.c +++ b/examples/ipsec-secgw/sa.c -@@ -80,7 +80,7 @@ const struct supported_cipher_algo cipher_algos[] = { +@@ -101,7 +101,7 @@ const struct supported_cipher_algo cipher_algos[] = { .keyword = "aes-128-ctr", .algo = RTE_CRYPTO_CIPHER_AES_CTR, .iv_len = 8, - .block_size = 16, /* XXX AESNI MB limition, should be 4 */ + .block_size = 4, .key_len = 20 - }, - { + } + }; -- 2.21.0