Thread (4 messages) flat view 4 messages, 3 authors, 2021-12-01

Re: [PATCH] net/tls: Fix authentication failure in CCM mode

From: Tianjia Zhang <hidden>
Date: 2021-12-01 09:55:27

Hi Vadim,

On 11/30/21 6:39 AM, Vadim Fedorenko wrote:
On 29.11.2021 09:32, Tianjia Zhang wrote:
quoted
When the TLS cipher suite uses CCM mode, including AES CCM and
SM4 CCM, the first byte of the B0 block is flags, and the real
IV starts from the second byte. The XOR operation of the IV and
rec_seq should be skip this byte, that is, add the iv_offset.

Fixes: f295b3ae9f59 ("net/tls: Add support of AES128-CCM based ciphers")
Signed-off-by: Tianjia Zhang <redacted>
Nice catch, thanks!
This is what I was talking about last time.

Tested-by: Vadim Fedorenko <redacted>
David has applied this patch, the tested tag may not be added, still 
thanks for your test.

Kind regards,
Tianjia
Keyboard shortcuts
hback out one level
jnext message in thread
kprevious message in thread
ldrill in
Escclose help / fold thread tree
?toggle this help