SMB3 encryption performance

Andreas Schneider asn at
Tue Feb 17 08:01:38 MST 2015

On Sunday 15 February 2015 11:25:16 Volker Lendecke wrote:
> On Sat, Feb 14, 2015 at 03:41:46PM -0500, Michael Ledford wrote:
> > There are a few libraries that can provide CPU optimization for AES.
> > Here are a few which might fit.
> > 
> > If you are looking for a C based library then libgcrypt
> > <> might be a good choice.
> Thanks. I've already found libgcrypt, it seems to be part of
> the gpg suite. The question I have is broader: libcrypt,
> mozilla nss, probably some Kerberos base libs,
> open/libressl/, etc all offer AES. What do we want to put
> development effort on? Not so much a question to you,
> Michael, but rather more to the broader audience here, in
> particular for example Simo, Andrew and others involved with
> crypto.

Forget libgcrypt, it is one of the most horrible APIs out there. It is simply 
a pain for every programmer. We have libgcrypt in libssh and I want to get rid 
of it.

If you prefer something which is LGPL, then use nettle [1]. GnuTLS switched 
from libgcrypt to libnettle ...

libcrypt from OpenSSL is another options. libressl is not in any distribution 
right now.

	-- andreas


Andreas Schneider                   GPG-ID: CC014E3D
Samba Team                             asn at

More information about the samba-technical mailing list