fastd: disable GMAC-based methods by default
The UMAC-based methods provide higher performance than GMAC and aren't suspectible to timing attacks when implemented in software (which is always the case on OpenWrt, as OpenSSL support is disabled). Disable GMAC by default to save a few KiB. Signed-off-by: Matthias Schiffer <mschiffer@universe-factory.net>
This commit is contained in:
parent
45976ff31a
commit
916a657818
|
@ -8,7 +8,6 @@ config FASTD_ENABLE_METHOD_CIPHER_TEST
|
|||
config FASTD_ENABLE_METHOD_COMPOSED_GMAC
|
||||
bool "Enable composed-gmac method provider"
|
||||
select FASTD_ENABLE_MAC_GHASH
|
||||
default y
|
||||
|
||||
config FASTD_ENABLE_METHOD_COMPOSED_UMAC
|
||||
bool "Enable composed-umac method provider"
|
||||
|
@ -18,7 +17,6 @@ config FASTD_ENABLE_METHOD_COMPOSED_UMAC
|
|||
config FASTD_ENABLE_METHOD_GENERIC_GMAC
|
||||
bool "Enable generic-gmac method provider"
|
||||
select FASTD_ENABLE_MAC_GHASH
|
||||
default y
|
||||
|
||||
config FASTD_ENABLE_METHOD_GENERIC_POLY1305
|
||||
bool "Enable generic-poly1305 method provider"
|
||||
|
|
Loading…
Reference in New Issue