[openssl-dev] [openssl.org #4017] [PATCH] Implement Camellia GCM suites (RFC 6367)

Salz, Rich via RT rt at openssl.org
Mon Aug 24 17:41:19 UTC 2015


> May I ask one question: Why?

Excellent question.  "Because there is an RFC" is not a good enough reason any more, I think.
 
> Does camellia offer any significant advantage in
> any situation that would justify increasing support?

Yes, I'd like to know who needs it.

GOST is going to move to an externally-maintained ENGINE (thanks, Dimitry:).  We should look at moving other ciphers out of the core the same way.  The OID's will need to be maintained, since the run-time really wants to deal with NID's, and figuring out how to make them first-class citizens with an EVP interface would take some thought, but Blowfish, Cast, Camellia, SEED, and Whirlpool could all be pushed out, IMHO.




More information about the openssl-dev mailing list