Change GCM IV size to 12 bytes when encrypting/decrypting TLS session ticket

XMLWordPrintable

    • Type: Enhancement
    • Resolution: Unresolved
    • Priority: P4
    • None
    • Affects Version/s: None
    • Component/s: security-libs

      12 bytes is the recommended size for GCM per NIST SP 800-38D:
      ---
      For IVs, it is recommended that implementations restrict support to the length of 96 bits, to
      promote interoperability, efficiency, and simplicity of design.`
      ---
      Larger IV size requires an extra hashing step (GHASH). Currently we have it set to 16 bytes.

            Assignee:
            Artur Barashev
            Reporter:
            Artur Barashev
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

              Created:
              Updated: