Hacker News new | ask | show | jobs
by yencabulator 579 days ago
NaCl predates GCM by some 15 months. But that's an old concern, both are pretty old by now.

NaCl tends to be faster on hardware without AES acceleration.

Go's AES/GCM implementation is not constant time unless the hardware has AES acceleration.