[Opendnssec-develop] Botan version

Rickard Bellgrim rickard at opendnssec.org
Fri Jul 1 12:58:34 UTC 2011


On Fri, Jul 1, 2011 at 2:07 PM, Roland van Rijswijk
<Roland.vanRijswijk at surfnet.nl> wrote:
> Hi Rickard,
>
> On 1 jul 2011, at 14:04, Rickard Bellgrim wrote:
>
>> Before I committed the code today, SoftHSM did not reuse the PK_Signer
>> object. It worked ok in Botan 1.8.X, but it would get some performance
>> issues in Botan 1.9 and Botan 1.10.
>>
>> I realized however that there is a bug in Botan prior to the latest
>> releases that caused a problem when you reuse the object and where
>> running EMSA3(RAW) (== CKM_RSA_PKCS).
>>
>> Should I increase the required Botan version or try to detect which
>> version are used and then apply the optimization?
>
>
> I would say try to detect the version; pre-built packages for distributions tend to lag behind the release cycle of products so it would be prudent to make this optional for the time being.

Fixed in r5277



More information about the Opendnssec-develop mailing list