mbox series

[v2,0/1] use crc32 instead of md5 for hibernation e820 integrity check

Message ID 20210401164145.8051-1-crecklin@redhat.com
Headers show
Series use crc32 instead of md5 for hibernation e820 integrity check | expand

Message

Chris von Recklinghausen April 1, 2021, 4:41 p.m. UTC
Currently, suspend on x86_64 fails when FIPS mode is enabled because it uses md5
to generate a digest of the e820 region. MD5 is not FIPS compliant so an error
is reported and the suspend fails.

MD5 is used only to create a digest to ensure integrity of the region, no actual
encryption is done. This patch set changes the integrity check to use crc32
instead of md5 since crc32 is available in both FIPS and non-FIPS modes.

Chris von Recklinghausen (1):
  use crc32 instead of md5 for hibernation e820 integrity check

 arch/x86/power/hibernate.c | 35 +++++++++++++++++++----------------
 1 file changed, 19 insertions(+), 16 deletions(-)