Thomas Gleixner | ec8f24b | 2019-05-19 13:07:45 +0100 | [diff] [blame] | 1 | # SPDX-License-Identifier: GPL-2.0-only |
Jaegeuk Kim | 0b81d07 | 2015-05-15 16:26:10 -0700 | [diff] [blame] | 2 | config FS_ENCRYPTION |
Chandan Rajendra | 643fa96 | 2018-12-12 15:20:12 +0530 | [diff] [blame] | 3 | bool "FS Encryption (Per-file encryption)" |
Jaegeuk Kim | 0b81d07 | 2015-05-15 16:26:10 -0700 | [diff] [blame] | 4 | select CRYPTO |
Herbert Xu | ede7a09 | 2019-12-27 10:47:00 +0800 | [diff] [blame] | 5 | select CRYPTO_HASH |
| 6 | select CRYPTO_SKCIPHER |
Eric Biggers | bd0d97b | 2020-07-21 15:59:16 -0700 | [diff] [blame] | 7 | select CRYPTO_LIB_SHA256 |
Jaegeuk Kim | 0b81d07 | 2015-05-15 16:26:10 -0700 | [diff] [blame] | 8 | select KEYS |
Jaegeuk Kim | 0b81d07 | 2015-05-15 16:26:10 -0700 | [diff] [blame] | 9 | help |
| 10 | Enable encryption of files and directories. This |
| 11 | feature is similar to ecryptfs, but it is more memory |
| 12 | efficient since it avoids caching the encrypted and |
Chandan Rajendra | 643fa96 | 2018-12-12 15:20:12 +0530 | [diff] [blame] | 13 | decrypted pages in the page cache. Currently Ext4, |
| 14 | F2FS and UBIFS make use of this feature. |
Herbert Xu | ede7a09 | 2019-12-27 10:47:00 +0800 | [diff] [blame] | 15 | |
| 16 | # Filesystems supporting encryption must select this if FS_ENCRYPTION. This |
| 17 | # allows the algorithms to be built as modules when all the filesystems are. |
| 18 | config FS_ENCRYPTION_ALGS |
| 19 | tristate |
| 20 | select CRYPTO_AES |
| 21 | select CRYPTO_CBC |
| 22 | select CRYPTO_CTS |
| 23 | select CRYPTO_ECB |
| 24 | select CRYPTO_HMAC |
| 25 | select CRYPTO_SHA512 |
| 26 | select CRYPTO_XTS |
Satya Tangirala | 5fee360 | 2020-07-02 01:56:05 +0000 | [diff] [blame] | 27 | |
| 28 | config FS_ENCRYPTION_INLINE_CRYPT |
| 29 | bool "Enable fscrypt to use inline crypto" |
| 30 | depends on FS_ENCRYPTION && BLK_INLINE_ENCRYPTION |
| 31 | help |
| 32 | Enable fscrypt to use inline encryption hardware if available. |