[openssl-project] Constant time by default

Kurt Roeckx kurt at roeckx.be
Tue Apr 17 13:10:19 UTC 2018


On Mon, Apr 16, 2018 at 06:06:33PM +0100, Matt Caswell wrote:
> 
> As I say in the PR (marked as WIP) I am seeking feedback as to whether
> this is something we should pursue now (i.e. for 1.1.1) or later (post
> 1.1.1) or not at all.

A related question I have is, do we consider this security issues,
and does that mean we should backport those changes?


Kurt



More information about the openssl-project mailing list