[openssl-dev] [openssl.org #4595] Enhancement Request - FPE (FF1 and FF3)

Robert Wagner via RT rt at openssl.org
Tue Jun 28 16:04:49 UTC 2016


Dear OpenSSL,
As you may be aware, NIST recently approved two Format Preserving
Encryption (FPE) methods - FF1 and FF3.
See:
http://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-38G.pdf

The field of tokenization and fixed format encryption (FFX) has taken off
due to PCI compliance.  These protocols
allow one to replace a sensitive field with similarly formatted
ciphertext.  This is useful when field type and size is fixed (like SSN,
Credit Card Number).

I would like to request that OpenSSL implement these ciphers as fpe-ff1 and
fpe-ff3.

Sincerely,
Robert Wagner

-- 
Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4595
Please log in as guest with password guest if prompted



More information about the openssl-dev mailing list