Commit a8a34416 authored by Milan Broz's avatar Milan Broz Committed by Herbert Xu

crypto: testmgr - mark crc32 checksum as FIPS allowed

The CRC32 is not a cryptographic hash algorithm,
so the FIPS restrictions should not apply to it.
(The CRC32C variant is already allowed.)

This CRC32 variant is used for in dm-crypt legacy TrueCrypt
IV implementation (tcw); detected by cryptsetup test suite
failure in FIPS mode.
Signed-off-by: default avatarMilan Broz <gmazyland@gmail.com>
Reviewed-by: default avatarStephan Mueller <smueller@chronox.de>
Signed-off-by: default avatarHerbert Xu <herbert@gondor.apana.org.au>
parent 87fec010
...@@ -2740,6 +2740,7 @@ static const struct alg_test_desc alg_test_descs[] = { ...@@ -2740,6 +2740,7 @@ static const struct alg_test_desc alg_test_descs[] = {
}, { }, {
.alg = "crc32", .alg = "crc32",
.test = alg_test_hash, .test = alg_test_hash,
.fips_allowed = 1,
.suite = { .suite = {
.hash = __VECS(crc32_tv_template) .hash = __VECS(crc32_tv_template)
} }
......
Markdown is supported
0%
or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment