Ntọhapụ nke LibreSSL 3.1.0 na Botan 2.14.0 ọba akwụkwọ cryptographic

Ndị nrụpụta ọrụ OpenBSD ọkọnọ mwepụta nke ngwungwu a na-ebugharị ebugharị Ihe ngosi LibreSSL 3.1.0, n'ime nke a na-emepụta ndụdụ nke OpenSSL, iji nye nchebe dị elu. Arụ ọrụ LibreSSL lekwasịrị anya na nkwado dị elu maka usoro SSL/TLS site na iwepu ọrụ na-adịghị mkpa, na-agbakwunye atụmatụ nchekwa ndị ọzọ, na ihicha ma na-arụ ọrụ ntọala koodu. A na-ahụta ntọhapụ LibreSSL 3.1.0 dị ka ntọhapụ nnwale nke na-emepụta atụmatụ nke a ga-etinye na OpenBSD 6.7.

Atụmatụ nke LibreSSL 3.1.0:

  • A na-atụpụta mmejuputa mbụ nke TLS 1.3 dabere na igwe steeti ọhụrụ yana sistemụ arụ ọrụ na ndekọ. Site na ndabara, ọ bụ naanị akụkụ ndị ahịa nke TLS 1.3 ka enyere maka ugbu a; a na-eme atụmatụ ime ka akụkụ nkesa rụọ ọrụ na ndabara na ntọhapụ n'ọdịnihu.
  • E hichaa koodu ahụ, emeziwanyela nyocha protocol na njikwa ebe nchekwa.
  • Ụzọ RSA-PSS na RSA-OAEP ebupụla na OpenSSL 1.1.1.
  • Ebufere mmejuputa iwu site na OpenSSL 1.1.1 wee mee ya site na ndabara CMS (Syntax ozi Cryptography). Agbakwunyela iwu "cms" na ọrụ openssl.
  • Emelitere ndakọrịta na OpenSSL 1.1.1 site na ịbughachi mgbanwe ụfọdụ.
  • Agbakwunyere nnukwu ule ọrụ cryptographic ọhụrụ.
  • Omume nke EVP_chacha20() dị nso na semantics nke OpenSSL.
  • Agbakwunyere ikike ịhazi ọnọdụ nke setịpụrụ nwere asambodo ikike asambodo.
  • Na openssl utility, iwu "req" na-emejuputa nhọrọ "-addext".

Na mgbakwunye, enwere ike ịdebe ya mwepụta ọbá akwụkwọ cryptographic Ogwe osisi 2.14.0, eji na oru ngo NeoPG, ndụdụ nke GnuPG 2. Ọbá akwụkwọ na-enye nnukwu nchịkọta ngwa ngwa emebere, ejiri na protocol TLS, asambodo X.509, AEAD ciphers, TPMs, PKCS#11, okwuntughe hashing, na post-quantum cryptography (mbinye aka dabere na hash na nkwekọrịta isi dabere na McEliece na NewHope). Edere ọbá akwụkwọ ahụ na C++11 na ọnọ n'okpuru ikikere BSD.

N'etiti mgbanwe na mbipụta ọhụrụ nke Botan:

  • agbakwunyere mmejuputa iwu nke ụdị ahụ GCM (Galois/Counter Mode), emelitere maka ndị nrụpụta POWER8 site na iji ntuziaka vector VPSUMD.
  • Maka sistemu ARM na POWER, mmejuputa atumatu vector permutation maka AES na oge igbu oge agbagoro nke ukwuu.
  • Atụpụtala algọridim ngbanwe modulo ọhụrụ, nke na-adị ngwa ngwa ma na-echebe nke ọma megide mwakpo ọwa n'akụkụ.
  • Emeela nkwalite iji mee ka ECDSA/ECDH dị ngwa site na ibelata mpaghara NIST.

isi: opennet.ru

Tinye a comment