From owner-freebsd-security Fri May 5 5:46:43 2000 Delivered-To: freebsd-security@freebsd.org Received: from tempest.waterspout.com (tempest.waterspout.com [208.13.56.2]) by hub.freebsd.org (Postfix) with ESMTP id 8558237B876; Fri, 5 May 2000 05:46:38 -0700 (PDT) (envelope-from ajk@iu.edu) Received: from localhost (ajk@localhost) by tempest.waterspout.com (8.9.3/8.9.3) with ESMTP id HAA56982; Fri, 5 May 2000 07:46:36 -0500 (EST) (envelope-from ajk@iu.edu) Date: Fri, 5 May 2000 07:46:36 -0500 (EST) From: "Andrew J. Korty" X-Sender: ajk@tempest.waterspout.com To: Kris Kennaway Cc: Warner Losh , Peter Jeremy , security@FreeBSD.org Subject: Re: Cryptographic dump(8) In-Reply-To: Message-ID: MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII Sender: owner-freebsd-security@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.org > On Fri, 5 May 2000, Warner Losh wrote: > > > How slow is quite slow? My dumps rarely run faster than a few > > hundered kbps (usually about 150). Even though my tape drive can go > > faster than that. My fs has too many small files for dump to get good > > performance out of. > > The unmodified OpenSSL (used in e.g. libdes) gets about 500kbps for 3DES > encryption on my PPro 233 - if you enable the asm optimizations per my > patch sent to -current a few weeks back, it brings it up to about > 1900kbps. Blowfish is much faster that this for the same key strength, > although I don't have exact numbers to hand. Well, like I said, I'm trying to make it easy to add cipher types. I have CBC 3DES working currently, but I can see how keeping the tape streaming could be a worry. I see Blowfish in libcrypto, but where is the documentation? -- Andrew J. Korty, Lead Security Engineer Office of the Vice President for Information Technology Indiana University To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message