]> git.ipfire.org Git - thirdparty/kernel/linux.git/commitdiff
crypto: testmgr - allow authenc(sha224,rfc3686) variant in fips mode
authorAleksander Jan Bajkowski <olek2@wp.pl>
Thu, 1 Jan 2026 15:25:18 +0000 (16:25 +0100)
committerHerbert Xu <herbert@gondor.apana.org.au>
Fri, 23 Jan 2026 05:48:44 +0000 (13:48 +0800)
The remaining combinations of AES-CTR-RFC3686 and SHA* have already been
marked as allowed in 8888690ef5f7. This commit does the same for SHA224.

rfc3686(ctr(aes)) is already marked fips compliant,
so these should be fine.

Signed-off-by: Aleksander Jan Bajkowski <olek2@wp.pl>
Signed-off-by: Herbert Xu <herbert@gondor.apana.org.au>
crypto/testmgr.c

index a302be53896d3225309c78f5246a1bd810b94d4c..5bae4871690f5bb72d247c7d2191687fdf933910 100644 (file)
@@ -4137,6 +4137,10 @@ static const struct alg_test_desc alg_test_descs[] = {
                .suite = {
                        .aead = __VECS(hmac_sha224_des3_ede_cbc_tv_temp)
                }
+       }, {
+               .alg = "authenc(hmac(sha224),rfc3686(ctr(aes)))",
+               .test = alg_test_null,
+               .fips_allowed = 1,
        }, {
                .alg = "authenc(hmac(sha256),cbc(aes))",
                .generic_driver = "authenc(hmac-sha256-lib,cbc(aes-generic))",