Home GnuPG
Diffusion GnuPG ab177eed514f

g10/mainproc: avoid extra hash contexts when decrypting MDC input

Description

g10/mainproc: avoid extra hash contexts when decrypting MDC input

* g10/mainproc.c (mainproc_context): New member
'seen_pkt_encrypted_mdc'.
(release_list): Clear 'seen_pkt_encrypted_mdc'.
(proc_encrypted): Set 'seen_pkt_encrypted_mdc'.
(have_seen_pkt_encrypted_aead): Rename to...
(have_seen_pkt_encrypted_aead_or_mdc): ...this and add check for
'seen_pkt_encrypted_mdc'.
(proc_plaintext): Do not enable extra hash contexts when decrypting
MDC input.

Avoiding extra hash contexts speeds up CFB/MDC decryption quite
a lot. For example, decrypting symmetric-key AES-256 encrypted
4 GiB file from RAM to /dev/null sees ~3.4x speed increase on
AMD Ryzen 5800X:

AES256.CFB encryption: 783 MB/s
AES256.CFB decryption: 386 MB/s (before)
AES256.CFB encryption: 1.3 GB/s (after patch)

Note, AEAD is still significantly faster:

AES256.OCB encryption: 2.2 GB/s
AES256.OCB decryption: 3.0 GB/s

  • GnuPG-bug-id: T5820
  • Signed-off-by: Jussi Kivilinna <jussi.kivilinna@iki.fi>

Details

Provenance
jukiviliAuthored on Feb 8 2022, 5:31 PM
Parents
rGe23dc755fa72: sm: New option --ignore-cert-with-oid.
Branches
Unknown
Tags
Unknown
Tasks
T5820: Slow symmetric decryption speed