Merge "Remove IV auto-generation workaround."

This commit is contained in:
Alex Klyubin
2015-04-16 16:39:07 +00:00
committed by Gerrit Code Review

View File

@@ -547,18 +547,12 @@ public abstract class KeyStoreCipherSpi extends CipherSpi implements KeyStoreCry
if (mIvRequired) { if (mIvRequired) {
// IV is needed // IV is needed
if ((mIv == null) && (mEncrypting)) { if ((mIv == null) && (mEncrypting)) {
// TODO: Switch to keymaster-generated IV code below once keymaster supports // IV was not provided by the caller and thus will be generated by keymaster.
// that. // Mix in some additional entropy from the provided SecureRandom.
// IV is needed but was not provided by the caller -- generate an IV. if (mRng != null) {
mIv = new byte[mBlockSizeBytes]; mAdditionalEntropyForBegin = new byte[mBlockSizeBytes];
SecureRandom rng = (mRng != null) ? mRng : new SecureRandom(); mRng.nextBytes(mAdditionalEntropyForBegin);
rng.nextBytes(mIv); }
// // IV was not provided by the caller and thus will be generated by keymaster.
// // Mix in some additional entropy from the provided SecureRandom.
// if (mRng != null) {
// mAdditionalEntropyForBegin = new byte[mBlockSizeBytes];
// mRng.nextBytes(mAdditionalEntropyForBegin);
// }
} }
} }
} }