> There's very little advantage to a constant time implementation for disk > encryption.
^^^^ 100% agree But this has been shoved into the tree, only considering IPSEC performance, and zero assessment of the impact it has upon other consumers. It was done wrong. It was commited before we were told it wasslower. Increasingly the lack of comment about that detail before commit feels intentional.
