From: Stephen Hemminger <stephen@networkplumber.org>
To: dev@dpdk.org
Cc: Stephen Hemminger <stephen@networkplumber.org>,
Anatoly Burakov <anatoly.burakov@intel.com>
Subject: [PATCH 03/20] eal: promote explicit zero and sensitive free to stable
Date: Wed, 7 Oct 2026 14:39:33 -0700 [thread overview]
Message-ID: <20261007214115.3092715-4-stephen@networkplumber.org> (raw)
In-Reply-To: <20261007214115.3092715-1-stephen@networkplumber.org>
rte_memzero_explicit() and rte_free_sensitive() were added in 25.07 and
have not changed since. They are used by the QAT crypto driver for
asymmetric and symmetric session keys and by the ixgbe IPsec code, which
are exactly the sensitive data paths they exist for.
An API for clearing keys is of little use to applications while it is
marked as subject to change, so promote it.
Signed-off-by: Stephen Hemminger <stephen@networkplumber.org>
---
lib/eal/common/eal_common_memory.c | 2 +-
lib/eal/common/rte_malloc.c | 2 +-
lib/eal/include/rte_malloc.h | 4 ----
lib/eal/include/rte_memory.h | 4 ----
4 files changed, 2 insertions(+), 10 deletions(-)
diff --git a/lib/eal/common/eal_common_memory.c b/lib/eal/common/eal_common_memory.c
index 33681e7a37..c12b9e1e7f 100644
--- a/lib/eal/common/eal_common_memory.c
+++ b/lib/eal/common/eal_common_memory.c
@@ -1730,7 +1730,7 @@ RTE_INIT(memory_telemetry)
#endif /* telemetry !RTE_EXEC_ENV_WINDOWS */
-RTE_EXPORT_EXPERIMENTAL_SYMBOL(rte_memzero_explicit, 25.07)
+RTE_EXPORT_SYMBOL(rte_memzero_explicit)
void
rte_memzero_explicit(void *dst, size_t sz)
{
diff --git a/lib/eal/common/rte_malloc.c b/lib/eal/common/rte_malloc.c
index 388e5a63b6..0c71f26df3 100644
--- a/lib/eal/common/rte_malloc.c
+++ b/lib/eal/common/rte_malloc.c
@@ -56,7 +56,7 @@ rte_free(void *addr)
mem_free(addr, true, false);
}
-RTE_EXPORT_EXPERIMENTAL_SYMBOL(rte_free_sensitive, 25.07)
+RTE_EXPORT_SYMBOL(rte_free_sensitive)
void
rte_free_sensitive(void *addr)
{
diff --git a/lib/eal/include/rte_malloc.h b/lib/eal/include/rte_malloc.h
index 0a397e7723..c42006b594 100644
--- a/lib/eal/include/rte_malloc.h
+++ b/lib/eal/include/rte_malloc.h
@@ -53,9 +53,6 @@ rte_free(void *ptr);
/**
- * @warning
- * @b EXPERIMENTAL: this API may change without prior notice.
- *
* Frees the memory space pointed to by the provided pointer
* and guarantees it will be zero'd before reuse.
* This function is slower than simple rte_free() it should only
@@ -70,7 +67,6 @@ rte_free(void *ptr);
* @param ptr
* The pointer to memory to be freed.
*/
-__rte_experimental
void
rte_free_sensitive(void *ptr);
diff --git a/lib/eal/include/rte_memory.h b/lib/eal/include/rte_memory.h
index 940770f1eb..a7749ceed1 100644
--- a/lib/eal/include/rte_memory.h
+++ b/lib/eal/include/rte_memory.h
@@ -729,9 +729,6 @@ int
rte_mem_alloc_validator_unregister(const char *name, int socket_id);
/**
- * @warning
- * @b EXPERIMENTAL: this API may change without prior notice.
- *
* Fill memory with zero's (e.g. sensitive keys).
* Normally using memset() is fine, but in cases where clearing out local data
* before going out of scope is required, use rte_memzero_explicit() instead
@@ -742,7 +739,6 @@ rte_mem_alloc_validator_unregister(const char *name, int socket_id);
* @param sz
* Number of bytes to fill.
*/
-__rte_experimental
void
rte_memzero_explicit(void *dst, size_t sz);
--
2.53.0
next prev parent reply other threads:[~2026-10-07 21:41 UTC|newest]
Thread overview: 30+ messages / expand[flat|nested] mbox.gz Atom feed top
2026-10-07 21:39 [PATCH 00/20] promote long standing experimental API to stable Stephen Hemminger
2026-10-07 21:39 ` [PATCH 01/20] eal: add missing export for rte_basename Stephen Hemminger
2026-10-08 9:56 ` Bruce Richardson
2026-10-07 21:39 ` [PATCH 02/20] eal: promote rte_basename to stable Stephen Hemminger
2026-10-08 9:56 ` Bruce Richardson
2026-10-07 21:39 ` Stephen Hemminger [this message]
2026-10-08 10:01 ` [PATCH 03/20] eal: promote explicit zero and sensitive free " Bruce Richardson
2026-10-07 21:39 ` [PATCH 04/20] eal: promote rte_size_to_str " Stephen Hemminger
2026-10-08 10:01 ` Bruce Richardson
2026-10-07 21:39 ` [PATCH 05/20] eal: promote lcore variables API " Stephen Hemminger
2026-10-08 10:04 ` Bruce Richardson
2026-10-07 21:39 ` [PATCH 06/20] cmdline: promote bool token ops " Stephen Hemminger
2026-10-08 10:05 ` Bruce Richardson
2026-10-07 21:39 ` [PATCH 07/20] ethdev: promote link connector to string " Stephen Hemminger
2026-10-07 21:39 ` [PATCH 08/20] port: promote SWX port API " Stephen Hemminger
2026-10-07 21:39 ` [PATCH 09/20] table: promote SWX table " Stephen Hemminger
2026-10-07 21:39 ` [PATCH 10/20] pipeline: promote SWX IPsec " Stephen Hemminger
2026-10-07 21:39 ` [PATCH 11/20] pipeline: promote SWX pipeline and control " Stephen Hemminger
2026-10-07 21:39 ` [PATCH 12/20] power: promote PM QoS and uncore " Stephen Hemminger
2026-10-07 21:39 ` [PATCH 13/20] ring: promote soring " Stephen Hemminger
2026-10-07 21:39 ` [PATCH 14/20] dispatcher: promote " Stephen Hemminger
2026-10-07 21:39 ` [PATCH 15/20] argparse: " Stephen Hemminger
2026-10-08 10:15 ` Bruce Richardson
2026-10-07 21:39 ` [PATCH 16/20] node: " Stephen Hemminger
2026-10-07 21:39 ` [PATCH 17/20] hash: promote RCU reclaim and thash key generation " Stephen Hemminger
2026-10-08 10:16 ` Bruce Richardson
2026-10-07 21:39 ` [PATCH 18/20] cryptodev: promote algorithm helpers " Stephen Hemminger
2026-10-07 21:39 ` [PATCH 19/20] pdcp: promote API " Stephen Hemminger
2026-10-07 21:39 ` [PATCH 20/20] mempool: promote memory range and alignment " Stephen Hemminger
2026-10-08 7:19 ` Morten Brørup
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=20261007214115.3092715-4-stephen@networkplumber.org \
--to=stephen@networkplumber.org \
--cc=anatoly.burakov@intel.com \
--cc=dev@dpdk.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.