crypto: openssl - IV len not passed by caller. Callee knows from algo type 62/18862/3
authorNeale Ranns <nranns@cisco.com>
Sun, 14 Apr 2019 20:43:51 +0000 (20:43 +0000)
committerDamjan Marion <dmarion@me.com>
Mon, 15 Apr 2019 08:38:13 +0000 (08:38 +0000)
Change-Id: Ib80e9bfb19a79e1adc79aef90371a15954daa993
Signed-off-by: Neale Ranns <nranns@cisco.com>
src/plugins/crypto_openssl/main.c

index 288de8a..5b66150 100644 (file)
@@ -118,10 +118,10 @@ openssl_ops_enc_gcm (vlib_main_t * vm, vnet_crypto_op_t * ops[], u32 n_ops,
       int len;
 
       if (op->flags & VNET_CRYPTO_OP_FLAG_INIT_IV)
-       RAND_bytes (op->iv, op->iv_len);
+       RAND_bytes (op->iv, 8);
 
       EVP_EncryptInit_ex (ctx, cipher, 0, 0, 0);
-      EVP_CIPHER_CTX_ctrl (ctx, EVP_CTRL_GCM_SET_IVLEN, op->iv_len, NULL);
+      EVP_CIPHER_CTX_ctrl (ctx, EVP_CTRL_GCM_SET_IVLEN, 8, NULL);
       EVP_EncryptInit_ex (ctx, 0, 0, op->key, op->iv);
       if (op->aad_len)
        EVP_EncryptUpdate (ctx, NULL, &len, op->aad, op->aad_len);