From owner-freebsd-stable@freebsd.org Sat Mar 6 08:19:02 2021 Return-Path: Delivered-To: freebsd-stable@mailman.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mailman.nyi.freebsd.org (Postfix) with ESMTP id 5614055C8A6 for ; Sat, 6 Mar 2021 08:19:02 +0000 (UTC) (envelope-from peter@rulingia.com) Received: from mailman.nyi.freebsd.org (mailman.nyi.freebsd.org [IPv6:2610:1c1:1:606c::50:13]) by mx1.freebsd.org (Postfix) with ESMTP id 4DsyDk0vrfz3HHh for ; Sat, 6 Mar 2021 08:19:02 +0000 (UTC) (envelope-from peter@rulingia.com) Received: by mailman.nyi.freebsd.org (Postfix) id 1F14E55C8A5; Sat, 6 Mar 2021 08:19:02 +0000 (UTC) Delivered-To: stable@mailman.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mailman.nyi.freebsd.org (Postfix) with ESMTP id 1EDA155C6D8 for ; Sat, 6 Mar 2021 08:19:02 +0000 (UTC) (envelope-from peter@rulingia.com) Received: from vtr.rulingia.com (vtr.rulingia.com [IPv6:2001:19f0:5801:ebe:5400:1ff:fe53:30fd]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA512 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "vtr.rulingia.com", Issuer "R3" (not verified)) by mx1.freebsd.org (Postfix) with ESMTPS id 4DsyDh6vr0z3H2p for ; Sat, 6 Mar 2021 08:19:00 +0000 (UTC) (envelope-from peter@rulingia.com) Received: from server.rulingia.com (ppp239-208.static.internode.on.net [59.167.239.208]) by vtr.rulingia.com (8.16.1/8.15.2) with ESMTPS id 1268Ih4A066635 (version=TLSv1.3 cipher=AEAD-AES256-GCM-SHA384 bits=256 verify=OK) for ; Sat, 6 Mar 2021 19:18:49 +1100 (AEDT) (envelope-from peter@rulingia.com) DKIM-Filter: OpenDKIM Filter v2.10.3 vtr.rulingia.com 1268Ih4A066635 X-Bogosity: Ham, spamicity=0.000000 Received: from server.rulingia.com (localhost.rulingia.com [127.0.0.1]) by server.rulingia.com (8.16.1/8.16.1) with ESMTPS id 1268IbPZ036892 (version=TLSv1.3 cipher=AEAD-AES256-GCM-SHA384 bits=256 verify=NO) for ; Sat, 6 Mar 2021 19:18:37 +1100 (AEDT) (envelope-from peter@server.rulingia.com) Received: (from peter@localhost) by server.rulingia.com (8.16.1/8.16.1/Submit) id 1268IbIK036891 for stable@freebsd.org; Sat, 6 Mar 2021 19:18:37 +1100 (AEDT) (envelope-from peter) Date: Sat, 6 Mar 2021 19:18:37 +1100 From: Peter Jeremy To: stable@freebsd.org Subject: geli broken in 13.0-BETA4 and later Message-ID: MIME-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha512; protocol="application/pgp-signature"; boundary="dBa6xN/VMuN5G2Av" Content-Disposition: inline X-PGP-Key: http://www.rulingia.com/keys/peter.pgp X-Rspamd-Queue-Id: 4DsyDh6vr0z3H2p X-Spamd-Bar: ------ X-Spamd-Result: default: False [-6.10 / 15.00]; ARC_NA(0.00)[]; NEURAL_HAM_MEDIUM(-1.00)[-1.000]; R_DKIM_ALLOW(-0.20)[rulingia.com:s=default]; FREEFALL_USER(0.00)[peter]; FROM_HAS_DN(0.00)[]; TO_MATCH_ENVRCPT_ALL(0.00)[]; R_SPF_ALLOW(-0.20)[+mx]; MIME_GOOD(-0.20)[multipart/signed,text/plain]; TO_DN_NONE(0.00)[]; PREVIOUSLY_DELIVERED(0.00)[stable@freebsd.org]; NEURAL_HAM_LONG(-1.00)[-1.000]; RCPT_COUNT_ONE(0.00)[1]; SPAMHAUS_ZRD(0.00)[2001:19f0:5801:ebe:5400:1ff:fe53:30fd:from:127.0.2.255]; RCVD_COUNT_THREE(0.00)[3]; DKIM_TRACE(0.00)[rulingia.com:+]; DMARC_POLICY_ALLOW(-0.50)[rulingia.com,quarantine]; NEURAL_HAM_SHORT(-1.00)[-1.000]; SIGNED_PGP(-2.00)[]; FROM_EQ_ENVFROM(0.00)[]; MIME_TRACE(0.00)[0:+,1:+,2:~]; RBL_DBL_DONT_QUERY_IPS(0.00)[2001:19f0:5801:ebe:5400:1ff:fe53:30fd:from]; ASN(0.00)[asn:20473, ipnet:2001:19f0:5800::/38, country:US]; RCVD_TLS_ALL(0.00)[]; MAILMAN_DEST(0.00)[stable] X-BeenThere: freebsd-stable@freebsd.org X-Mailman-Version: 2.1.34 Precedence: list List-Id: Production branch of FreeBSD source code List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 06 Mar 2021 08:19:02 -0000 --dBa6xN/VMuN5G2Av Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable Somewhere between 13.0-ALPHA2 (c256201-g02611ef8ee9) and 13.0-BETA4 (releng/13.0-n244592-e32bc253629), geli (at least on my RockPro64 - RK3399, arm64) has changed so that a geli-encrypted partition (using AES-XTS 128) that was readable on 13.0-ALPHA2 becomes garbage on 13.0-BETA4. I've verified that the garbage seems consistent between reboots and isn't impacted by enabling the big cores in 7ba4d0f82955. There's nothing useful reported via geli debugging. I've tried updating to releng/13.0 60e8939aa85b and it's still broken. My suspicion is f76393a6305b - whilst that just talks about AES-GCM, it does a reasonable job of roto-tilling the entire armv8crypto stack. I notice that there are a fixes to f76393a6305b that don't seem to have made it into releng/13.0 and I will continue to investigate. --=20 Peter Jeremy --dBa6xN/VMuN5G2Av Content-Type: application/pgp-signature; name="signature.asc" -----BEGIN PGP SIGNATURE----- iQKTBAEBCgB9FiEE7rKYbDBnHnTmXCJ+FqWXoOSiCzQFAmBDOthfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldEVF QjI5ODZDMzA2NzFFNzRFNjVDMjI3RTE2QTU5N0EwRTRBMjBCMzQACgkQFqWXoOSi CzS4JQ/+OG6E445UyqBggpjR7wduDv54YnAVwKm2TbA7YSnZmGxDcHkt3LXyBV/U EZxEoNoIk/38sWtxQmn0hph3IVn0OPOTtf/FNKURqQvrqJ+Bl7NEV3Jrgv3wlWja NgoG+HtvyHFWuE6pDfWB5K06Ba0r77tbj5OBY/gizeT2X7FZr+EHYnPAI0XIX0Ps U55s6pi3fHOGpD1gBAK02XP/U+l0bZQrltrRttO2vzaxAx/JL9Luv8/UwoPdWnNq uP5kG/uDJp10hxOLiGJDQlD0USMr9QHA/WY1AFYbDey5nZpO+h/zGE7NnoFQ8JM0 NGYLcGQDZqrE5x2FJ2bQXIZT/kEZYKl2M8QXCdmuhZcHcgFy0wCNvxkiMRPX8Vzg giDLXyb5kgtwql0wfbfx6eN5wOUFsdGTIVlFsiMpAvodXFO2OxW9rIOs+HOBLb9o cRxe1rPjpuYrySfZfDW2ry7SS83a7B72KIgh0k5fsfm+vlbccbDvGq9ICt4CLkQr R6Z/GvD+oCIsRuDVPvOg8tHrHrYVxNx77jculVV9l1qCyFFJieCaMO+5SUiVJbAJ RgYGPhZCTmVKzSUC9ac1USQpJ7eSeTtm0CxzOszEyvs2zMteCQN2JOh/SmWEfnIq DZeJtdKB30aPr9qdb3QXOPQG9c/8p0VvMn6DHVs5E20azt3Obgk= =9KSx -----END PGP SIGNATURE----- --dBa6xN/VMuN5G2Av--