Kicinski: TLS 1.3 Rx improvements in Linux 5.20
Jakub Kicinski providesan overview of some changes to the in-kernel TLS implementation comingin the next development cycle:
The first implementation of kTLS was designed in the good old daysof TLS 1.2. When TLS 1.3 came into the picture the interest in kTLShad slightly diminished and the implementation, althoughfunctional, was rather simple and did not retain all thebenefits. This post covers developments in the Linux 5.20implementation of TLS which claws back the performance lost movingto TLS 1.3.