You should take note that this is written by the person that wrote the bad patch.
So grain of salt.
So grain of salt.
I've liked it nevertheless for context, as augmentation to parent's post.
You could push that all down to the accelerator, but if there are even a few such use cases you might want a dedicated DMA-capable implementation instead.
You've almost certainly never had a system that supported any hardware accelerated crypto that also required a kernel module.
It's much easier to expose as cpu extensions.