[Cryptography-dev] Criteria for first release?

Paul McMillan paul at mcmillan.ws
Fri Oct 25 01:14:03 CEST 2013


On Thu, Oct 24, 2013 at 4:05 PM, Paul Kehrer <paul.l.kehrer at gmail.com> wrote:
> I'd prefer GCM support to be present in the first release. It's
> (ideally) the best mode to use and I'd love to be able to suggest its
> use immediately.

I agree that GCM is an excellent feature, which would be really nice
to have in a first release. That said, I have real difficulty
recommending it as a primative without a sanity wrapper (and to some
extent, even with one) because it comes with some fantastic footguns
that are non-obvious in dev/test environments, and difficult to
systematically correct at the library level.

All that boils down to the feeling that while it would be nice,
shipping without it is not the end of the world.

-Paul


More information about the Cryptography-dev mailing list