[dm-crypt] Using GCM mode with dm-crypt?

Igor Novgorodov igor at novg.net
Fri Dec 31 12:14:14 CET 2010

From  what  i've  read  this  mode  is  faster  than  CBC  due to some
parallelism,   and   it's   accelerated   by   newer   Intel's  PCLMUL

But it seems that AES/GCM mode is used only with IPSEC and such.

Is there any particular reason we cannot use it with disk encryption?

