[openssl-dev] [openssl.org #4206] [PATCH] Add cipher alias for ChaCha20

Hubert Kario via RT rt at openssl.org
Wed Jan 6 12:46:47 UTC 2016


On Monday 28 December 2015 15:28:26 Kurt Roeckx via RT wrote:
> On Mon, Dec 28, 2015 at 03:01:28PM +0000, Short, Todd via RT wrote:
> > Hello OpenSSL.org<http://OpenSSL.org>:
> > 
> > This is a patch for the master branch. The changes in master to add
> > ChaCha20 to OpenSSL do not include an alias for the cipher in the
> > "openssl cipher" command, nor in the cipher functions., even though
> > the necessary constants have been defined. The attached patch adds
> > that alias.
> > 
> > The following openssl commands now behave as expected:
> > 
> > openssl ciphers CHACHA20
> > openssl ciphers CHACHA20:AES
> 
> Please at least also update the documentation, like ciphers.pod.
> 
> I'm also not sure if CHACHA20 should only select those in
> combination with Poly1305, even if those are currently the only
> supported.

AES selects both AES-CBC and AES-GCM while AESGCM selects just AES-GCM.

Selecting ChaCha20-Poly1305 by just CHACHA20 is consistent with existing 
flags.

-- 
Regards,
Hubert Kario
Senior Quality Engineer, QE BaseOS Security team
Web: www.cz.redhat.com
Red Hat Czech s.r.o., Purkyňova 99/71, 612 45, Brno, Czech Republic
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 819 bytes
Desc: not available
URL: <http://mta.openssl.org/pipermail/openssl-dev/attachments/20160106/05bf7070/attachment.sig>


More information about the openssl-dev mailing list