Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

Add AES-GCM or ChaCha20Poly1305 #8

Open
paulmillr opened this issue Oct 21, 2021 · 0 comments
Open

Add AES-GCM or ChaCha20Poly1305 #8

paulmillr opened this issue Oct 21, 2021 · 0 comments

Comments

@paulmillr
Copy link
Collaborator

paulmillr commented Oct 21, 2021

aes is pretty bad. I know it's there for compatibility, but we should be also exposing GCM (+50-100 loc):

  • CBC Padding is easy to misuse. CTR or GCM should be preferred to it
  • GCM is better than CTR/CBC+HMAC (can be parallel; harder to misuse)
  • GCM has AAD
  • GCM is the only mode included in TLS v1.3. They've dropped all CTR/CBC ciphers!
  • If ETH non-wallet apps are using encryption, they should definitely be using GCM, not CTR/CBC
@paulmillr paulmillr changed the title AES-GCM Add AES-GCM or ChaCha20Poly1305 Oct 5, 2023
# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant