> One reason you may want to select aes-128-gcm rather than aes-128-ccm is
> that GCM is one of the modes for AES in NSA Suite B[3], but CCM is not.

> Are there symmetric algorithms other than AES that are of interest ?

How might AES-XTS [1] be able to fit into the the ZFS picture?

Additionally given the user may wish to trade off compression, dedup,
the number of encryptable blocks [2], etc for any particular selectable
algorithm.

[1] http://en.wikipedia.org/wiki/Disk_encryption_theory#XTS
[2] Perhaps handled similar to:
http://groups.google.com/group/mailing.freebsd.security/browse_thread/thread/66d84fdbcee78fcf
_______________________________________________
zfs-discuss mailing list
zfs-discuss@opensolaris.org
http://mail.opensolaris.org/mailman/listinfo/zfs-discuss

Reply via email to