[SERVER-63186] Add AES-CTR support for Openssl Created: 01/Feb/22 Updated: 09/Feb/22 Resolved: 09/Feb/22 |
|
| Status: | Closed |
| Project: | Core Server |
| Component/s: | None |
| Affects Version/s: | None |
| Fix Version/s: | None |
| Type: | Task | Priority: | Major - P3 |
| Reporter: | Mark Benvenuto | Assignee: | Sergey Galtsev (Inactive) |
| Resolution: | Done | Votes: | 0 |
| Labels: | None | ||
| Remaining Estimate: | Not Specified | ||
| Time Spent: | Not Specified | ||
| Original Estimate: | Not Specified | ||
| Issue Links: |
|
||||||||
| Sprint: | Security 2022-02-07, Security 2022-02-21 | ||||||||
| Participants: | |||||||||
| Description |
|
1. Extend aesMode to support CTR in src/mongo/crypto/symmetric_crypto.h 2. Extend the existing SymmetricEncryptorOpenSSL in src/mongo/crypto/symmetric_crypto_openssl.cpp to support AES-CTR mode 3. Add test vectors from US NIST SP 800-38A Sections F.5.5. and F.5.6 See https://csrc.nist.gov/publications/detail/sp/800-38a/final
|
| Comments |
| Comment by Githook User [ 09/Feb/22 ] | |||||||||||||||||||||||||||||||||||||||||||||||||||
|
Author: {'name': 'sergey.galtsev', 'email': 'sergey.galtsev@mongodb.com', 'username': 'brushless-glitch'}Message: | |||||||||||||||||||||||||||||||||||||||||||||||||||
| Comment by Githook User [ 09/Feb/22 ] | |||||||||||||||||||||||||||||||||||||||||||||||||||
|
Author: {'name': 'sergey.galtsev', 'email': 'sergey.galtsev@mongodb.com', 'username': 'brushless-glitch'}Message: | |||||||||||||||||||||||||||||||||||||||||||||||||||
| Comment by Sergey Galtsev (Inactive) [ 07/Feb/22 ] | |||||||||||||||||||||||||||||||||||||||||||||||||||
|
elizabeth.roytburd I will eventually need to check-in code against this ticket. Will need "Mongo Internal" removed, or alternatively I can create a new ticket | |||||||||||||||||||||||||||||||||||||||||||||||||||
| Comment by Sergey Galtsev (Inactive) [ 07/Feb/22 ] | |||||||||||||||||||||||||||||||||||||||||||||||||||
|
CTR test vectors: https://nvlpubs.nist.gov/nistpubs/Legacy/SP/nistspecialpublication800-38a.pdf
|