> One reason you may want to select aes-128-gcm rather than aes-128-ccm is > that GCM is one of the modes for AES in NSA Suite B[3], but CCM is not.
> Are there symmetric algorithms other than AES that are of interest ? How might AES-XTS [1] be able to fit into the the ZFS picture? Additionally given the user may wish to trade off compression, dedup, the number of encryptable blocks [2], etc for any particular selectable algorithm. [1] http://en.wikipedia.org/wiki/Disk_encryption_theory#XTS [2] Perhaps handled similar to: http://groups.google.com/group/mailing.freebsd.security/browse_thread/thread/66d84fdbcee78fcf _______________________________________________ zfs-discuss mailing list zfs-discuss@opensolaris.org http://mail.opensolaris.org/mailman/listinfo/zfs-discuss