openssl/crypto/evp
Bernd Edlinger 87bea6550a Remove x86/x86_64 BSAES and AES_ASM support
This leaves VPAES and AESNI support.
The VPAES performance is comparable but BSAES is not
completely constant time. There are table lookups
using secret key data in AES_set_encrypt/decrypt_key
and in ctr mode short data uses the non-constant
time AES_encrypt function instead of bit-slicing.
Furthermore the AES_ASM is by far outperformed
by recent GCC versions.
Since BSAES calls back to AES_ASM for short
data blocks the performance on those is also
worse than the pure software implementaion.

Fixes: #9640

Reviewed-by: Richard Levitte <levitte@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/9675)
2019-09-07 10:26:48 +02:00
..
bio_b64.c
bio_enc.c
bio_md.c
bio_ok.c Fix Typos 2019-07-01 02:02:06 +08:00
build.info s390x assembly pack: add KIMD/KLMD code path for sha3/shake 2018-08-06 12:04:52 +02:00
c_allc.c
c_alld.c
cmeth_lib.c
digest.c Update copyright year 2019-05-28 14:49:38 +02:00
e_aes.c Remove x86/x86_64 BSAES and AES_ASM support 2019-09-07 10:26:48 +02:00
e_aes_cbc_hmac_sha1.c
e_aes_cbc_hmac_sha256.c
e_aria.c Change EVP_CIPHER_CTX_iv_length() to return current ivlen for some modes 2019-08-08 13:19:23 +10:00
e_bf.c
e_camellia.c
e_cast.c
e_chacha20_poly1305.c Change EVP_CIPHER_CTX_iv_length() to return current ivlen for some modes 2019-08-08 13:19:23 +10:00
e_des.c
e_des3.c
e_idea.c
e_null.c
e_old.c
e_rc2.c Update copyright year 2018-11-20 13:27:36 +00:00
e_rc4.c
e_rc4_hmac_md5.c
e_rc5.c Ensure that rc5 doesn't try to use a key longer than 2040 bits 2019-07-01 10:23:54 +01:00
e_seed.c
e_sm4.c
e_xcbc_d.c
encode.c
evp_cnf.c
evp_enc.c Revert "EVP_*Update: ensure that input NULL with length 0 isn't passed" 2019-05-21 14:44:48 +01:00
evp_err.c Ensure that rc5 doesn't try to use a key longer than 2040 bits 2019-07-01 10:23:54 +01:00
evp_key.c
evp_lib.c Change EVP_CIPHER_CTX_iv_length() to return current ivlen for some modes 2019-08-08 13:19:23 +10:00
evp_locl.h
evp_pbe.c Update copyright year 2018-09-11 13:45:17 +01:00
evp_pkey.c
m_md2.c
m_md4.c
m_md5.c
m_md5_sha1.c
m_mdc2.c
m_null.c
m_ripemd.c
m_sha1.c
m_sha3.c Directly return from final sha3/keccak_final if no bytes are requested 2019-08-18 21:33:49 +02:00
m_sigver.c Update document for SM2 stuffs 2018-09-07 18:12:26 +08:00
m_wp.c
names.c
p5_crpt.c
p5_crpt2.c
p_dec.c
p_enc.c
p_lib.c Update copyright year 2019-05-28 14:49:38 +02:00
p_open.c Update copyright year 2019-05-28 14:49:38 +02:00
p_seal.c Update copyright year 2018-09-11 13:45:17 +01:00
p_sign.c
p_verify.c
pbe_scrypt.c
pmeth_fn.c
pmeth_gn.c
pmeth_lib.c Make some return checks consistent with others 2018-09-13 23:23:18 +09:00