Linux-Crypto Archive on
 help / color / Atom feed
From: "Stephan Müller" <>
To: "Bhat, Jayalakshmi Manjunath" <>,
	Ard Biesheuvel <>
Cc: "" <>
Subject: Re: Monte Carlo Test (MCT) for AES
Date: Sat, 23 May 2020 20:43:43 +0200
Message-ID: <> (raw)
In-Reply-To: <>

Am Samstag, 23. Mai 2020, 00:11:35 CEST schrieb Ard Biesheuvel:

Hi Ard,

> (+ Stephan)
> On Fri, 22 May 2020 at 05:20, Bhat, Jayalakshmi Manjunath
> <> wrote:
> > Hi All,
> > 
> > We are using libkcapi for CAVS vectors verification on our Linux kernel.
> > Our Linux kernel version is 4.14.  Monte Carlo Test (MCT) for SHA worked
> > fine using libkcapi. We are trying to perform Monte Carlo Test (MCT) for
> > AES using libkcapi. We not able to get the result successfully. Is it
> > possible to use libkcapi to achieve AES MCT?

Yes, it is possible. I have the ACVP testing implemented completely for AES 
(ECB, CBC, CFB8, CFB128, CTR, XTS, GCM internal and external IV generation, 
CCM), TDES (ECB, CTR, CBC), SHA, HMAC, CMAC (AES and TDES). I did not yet try 
TDES CFB8 and CFB64 through, but it should work out of the box.

AES-KW is the only one that cannot be tested through libkcapi as AF_ALG has 
one shortcoming preventing this test.

The testing is implemented with [1] but the libkcapi test backend is not 
public. The public code in [1] already implements the MCT. So, if you want to 
use [1], all you need to implement is a libkcapi backend that just invokes the 
ciphers as defined by the API in [1].



  reply index

Thread overview: 6+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
     [not found] <TU4PR8401MB0544BD5EDA39A5E1E3388940F6B40@TU4PR8401MB0544.NAMPRD84.PROD.OUTLOOK.COM>
2020-05-22  3:20 ` Bhat, Jayalakshmi Manjunath
2020-05-22 22:11   ` Ard Biesheuvel
2020-05-23 18:43     ` Stephan Müller [this message]
2020-05-26  3:07       ` Bhat, Jayalakshmi Manjunath
2020-05-26  5:23         ` Stephan Mueller
2020-05-26  6:30           ` Bhat, Jayalakshmi Manjunath

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \ \ \ \ \ \

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link

Linux-Crypto Archive on

Archives are clonable:
	git clone --mirror linux-crypto/git/0.git

	# If you have public-inbox 1.1+ installed, you may
	# initialize and index your mirror using the following commands:
	public-inbox-init -V2 linux-crypto linux-crypto/ \
	public-inbox-index linux-crypto

Example config snippet for mirrors

Newsgroup available over NNTP:

AGPL code for this site: git clone