Вход на сайт

Просмотр новости

Найдите то, что Вас интересует

Linux's crypto_rng Abstraction Layer Next On The Chopping Block

Дата публикации: 28-07-2026 09:41:49

In addition to the deprecation and stripping down of AF_ALG, another piece of the Linux kernel crypto code steaming ahead toward removal is the crypto_rng abstraction layer...

Основное содержимое страницы с новостью.

LINUX KERNEL

In addition to the deprecation and stripping down of AF_ALG, another piece of the Linux kernel crypto code steaming ahead toward removal is the crypto_rng abstraction layer.

Linux crypto subsystem expert Eric Biggers of Google is working to remove the crypto_rng abstraction layer from the kernel. This generic interface for RNGs is ultimately unnecessary now with it recommended that APIs to the Deterministic Random Bit Generator (DRBG) and Jitterentropy modules are used directly.

Biggers explains in a patch currently pending via the wip-rng Git branch:

"The crypto_rng abstraction layer was designed as a generic interface for random number generators. However, it's now exclusively used to implement a "NIST approved" RNG and the "jitterentropy" entropy collector that supports it (for certification reasons).

Previously some hardware RNG drivers supported crypto_rng. However, that functionality was unused and just caused confusion, as it existed alongside hw_random which is the interface that is actually used.

Reflecting this reality, let's remove the crypto_rng abstraction and make the drbg and jitterentropy modules provide dedicated APIs directly.

To make this work, update the users of crypto_rng accordingly:

- algif_rng.c now calls the DRBG and jitterentropy APIs directly.

- __crypto_stdrng_get_bytes() now calls the DRBG API directly.

- The DRBG self-tests are moved from the testmgr to drbg.c itself, and the DRBG APIs are used directly."

We'll see if this ends up being submitted for the upcoming Linux v7.3 cycle for eliminating the crypto_rng interface.

Схожие новости

#Наименование новостиТональностьИнформативностьДата публикации
1Fedora 45 Looks To Begin Phasing Out In-Kernel Crypto Userspace API014.2424-07-2026
2Qualcomm QCE Driver On The Chopping Block With ~48x Slower Than Armv8 Crypto Extensions07.5424-07-2026
3Linux Kernel Module Rootkits: How Attackers Hide After Compromising Cloud Workloads -2702-07-2026
4AMD PMF Testing Tool Slated For Linux 7.309.0727-07-2026
5AMD P-State Linux Driver Patches Can Boost 1%-Low FPS Gaming Performance By 31%015.9828-07-2026
6BTC — 0012-02-2026
7🤖 Почему 80% денег на крипте и Форексе забирают алгоритмы, и при чем тут нейросети? (Откровения разработчиков)013.1326-07-2026
8В Крыму отменили беспилотную опасность0505-07-2026
9В Крыму отменили беспилотную опасность06.9427-07-2026
10 El daño de la crispación -5312-07-2026

Классификация: Мнения. Схожих патентов: 0. Схожих новостей: 10. Тональность: 0. Информативность: 6.49. Источник: www.phoronix.com.