[tahoe-lafs-trac-stream] [Tahoe-LAFS] #3914: Loading a huge RSA key is _extremely_ slow on Ubuntu 22.04
Tahoe-LAFS
trac at tahoe-lafs.org
Fri Dec 2 20:39:57 UTC 2022
#3914: Loading a huge RSA key is _extremely_ slow on Ubuntu 22.04
--------------------------+-----------------------
Reporter: itamarst | Owner:
Type: defect | Status: new
Priority: normal | Milestone: undecided
Component: unknown | Version: n/a
Resolution: | Keywords:
Launchpad Bug: |
--------------------------+-----------------------
Comment (by exarkun):
This is a known slowdown. OpenSSL 3 introduces some "primality" tests.
It is possible to disable these (pass
`unsafe_skip_rsa_key_validation=True` to the above API). As the parameter
name suggests, this option is "unsafe" (in the sense that setting it and
also taking untrusted key material exposes you to unspecified behavior
from OpenSSL).
The *test suite* is not exposed to untrusted key material so it would
probably be fine to set the option there (and reclaim about 4 minutes from
each test run). However, I'm not entirely confident that we can say the
same thing about all production uses of the function.
--
Ticket URL: <https://tahoe-lafs.org/trac/tahoe-lafs/ticket/3914#comment:5>
Tahoe-LAFS <https://Tahoe-LAFS.org>
secure decentralized storage
More information about the tahoe-lafs-trac-stream
mailing list