[openssl-project] Constant time by default

Kurt Roeckx kurt at roeckx.be
Tue Apr 17 12:39:02 UTC 2018


On Mon, Apr 16, 2018 at 05:57:33PM +0000, David Benjamin wrote:
> This also aligns with the guidelines here:
> https://github.com/HACS-workshop/spectre-mitigations/blob/master/crypto_guidelines.md#2-avoid-indirect-branches-in-constant-time-code

I think you actually meant #1 instead of #2

But when reading #2 I think about how for instance we select the
assembler versions, like use AESNI or not.


Kurt



More information about the openssl-project mailing list