s390/paes: fix PKEY_TYPE_EP11_AES handling for secure keyblobs
[ Upstream commit cba33db3fc4dbf2e54294b0e499d2335a3a00d78 ]
Commit 'fa6999e326fe ("s390/pkey: support CCA and EP11 secure ECC
private keys")' introduced PKEY_TYPE_EP11_AES securekey blobs as a
supplement to the PKEY_TYPE_EP11 (which won't work in environments
with session-bound keys). This new keyblobs has a different maximum
size, so fix paes crypto module to accept also these larger keyblobs.
Fixes: fa6999e326
("s390/pkey: support CCA and EP11 secure ECC private keys")
Signed-off-by: Holger Dengler <dengler@linux.ibm.com>
Reviewed-by: Ingo Franzki <ifranzki@linux.ibm.com>
Signed-off-by: Heiko Carstens <hca@linux.ibm.com>
Signed-off-by: Sasha Levin <sashal@kernel.org>
This commit is contained in:

committed by
Greg Kroah-Hartman

parent
e06326ff3a
commit
3de36b8b9b
@@ -34,7 +34,7 @@
|
|||||||
* and padding is also possible, the limits need to be generous.
|
* and padding is also possible, the limits need to be generous.
|
||||||
*/
|
*/
|
||||||
#define PAES_MIN_KEYSIZE 16
|
#define PAES_MIN_KEYSIZE 16
|
||||||
#define PAES_MAX_KEYSIZE 320
|
#define PAES_MAX_KEYSIZE MAXEP11AESKEYBLOBSIZE
|
||||||
|
|
||||||
static u8 *ctrblk;
|
static u8 *ctrblk;
|
||||||
static DEFINE_MUTEX(ctrblk_lock);
|
static DEFINE_MUTEX(ctrblk_lock);
|
||||||
|
Reference in New Issue
Block a user