OpenSSL ENIGNE support for OpenSSH

Michal Ludvig mludvig at suse.cz
Thu Jul 1 01:18:14 EST 2004


Hi all,

attached is a patch that enables using hardware crypto accelerators
available through OpenSSL library for SSH operations. Especially in
ssh/sshd it can bring a significant speed improvement. OTOH if no crypto
engine is available, nothing bad happens and default software crypto
routines are used.

This patch is used in SUSE Linux OpenSSH package and proved to work (at
least it didn't break anything) both with and without crypto engines.
Tested also with VIA PadLock crypto engine (patches for OpenSSL are at
http://www.logix.cz/michal/devel/padlock/ )

Would you consider including it in the official OpenSSH release?

Thanks!

Michal Ludvig
-- 
SUSE Labs                    mludvig at suse.cz
(+420) 296.545.396        http://www.suse.cz
Personal homepage http://www.logix.cz/michal
-------------- next part --------------
An embedded and charset-unspecified text was scrubbed...
Name: openssh-3.8p1-engines.diff
Url: http://lists.mindrot.org/pipermail/openssh-unix-dev/attachments/20040630/0ca79630/attachment.ksh 
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 252 bytes
Desc: OpenPGP digital signature
Url : http://lists.mindrot.org/pipermail/openssh-unix-dev/attachments/20040630/0ca79630/attachment.bin 


More information about the openssh-unix-dev mailing list