Amazon ya wallafa buɗaɗɗen ɗakin karatu na sirri don harshen Rust

Amazon ya gabatar da ɗakin karatu na aws-lc-rs, wanda aka yi niyya don amfani a aikace-aikacen Rust kuma ya dace da API-dace da ɗakin karatu na Rust na zobe. Ana rarraba lambar aikin a ƙarƙashin lasisin Apache 2.0 da ISC. Laburaren yana tallafawa dandamali na Linux (x86, x86-64, aarch64) da macOS (x86-64).

Aiwatar da ayyukan sirri a cikin aws-lc-rs ya dogara ne akan ɗakin karatu na AWS-LC (AWS libcrypto), wanda aka rubuta a cikin C++ kuma bi da bi ya dogara da lambar daga aikin BoringSSL (wani ɓangaren Google mai kula da OpenSSL). Bugu da ƙari, ana ba da shawarar fakitin ƙaramin ƙaramin akwati guda biyu: aws-lc-sys (ƙirar ƙananan matakan ɗaure kai tsaye akan AWS-LC) da aws-lc-fips-sys (ƙananan ɗaurin ɗauri dangane da FFI (Interface Aiki na Ƙasashen waje) ), sake haifar da AWS-LC API.

Laburaren AWS-LC ya haɗa da ingantattun aiwatarwa na SHA-2, HMAC, AES-GCM, AES-KBP, HKDF, ECDH, da ECDSA algorithms waɗanda suka cika buƙatu don tsarin rubutun da hukumomin gwamnati za su iya amfani da su a Amurka. da Kanada. Ƙirƙirar daurin tsatsa yana haifar da buƙatar samun ɗakunan karatu na crypto masu dacewa da FIPS waɗanda za a iya amfani da su a cikin ayyukan tsatsa. A cikin ɗakin karatu na aws-lc-rs, Amazon ya yanke shawarar hada Ring API, wanda ya saba da kowa a tsakanin masu shirye-shiryen Rust, da kuma tabbatar da aiwatar da algorithms daga ɗakin karatu na AWS-LC wanda ya dace da bukatun FIPS.

Yin amfani da ɗakin karatu na AWS-LC a matsayin tushen kuma ya ba da damar yin amfani da duk ƙayyadaddun ingantawa da Amazon ya haɓaka a cikin aws-lc-rs. Misali, AWS-LC yana ba da zaɓuɓɓuka don ChaCha20-Poly1305 da NIST P-256 algorithms waɗanda aka keɓance daban-daban don na'urori masu sarrafa ARM, kuma an yi ingantaccen haɓakawa ga tsarin x86 don hanzarta aiwatar da sa hannu na dijital na ECDSA. Lokacin gwada aikin TLS 1.2 da 1.3 ladabi, ɗakin karatu na aws-lc-rs ya fi ƙarfin fakitin rustls dangane da aiki, yana nuna duka raguwa a lokacin saitin haɗin haɗin gwiwa da haɓaka kayan aiki (fiye da sau biyu a cikin gwaje-gwajen ECDSA).

 Amazon ya wallafa buɗaɗɗen ɗakin karatu na sirri don harshen Rust


source: budenet.ru

Add a comment