MepeeSSL 3.1.0 Mwepụta Ọbá akwụkwọ Cryptographic

Mgbe otu afọ na ọkara nke mmepe gasịrị, a tọhapụrụ ọbá akwụkwọ OpenSSL 3.1.0 site na mmejuputa ụkpụrụ SSL/TLS na usoro nzuzo dị iche iche. A ga-akwado OpenSSL 3.1 ruo Maachị 2025. Nkwado maka ngalaba OpenSSL 3.0 na 1.1.1 gara aga ga-aga n'ihu ruo Septemba 2026 na Septemba 2023, n'otu n'otu. A na-ekesa koodu ọrụ n'okpuru ikike Apache 2.0.

Isi ihe ọhụrụ nke OpenSSL 3.1.0:

  • Modul FIPS na-akwado algọridim nke cryptographic nke dabara na ọkọlọtọ nchekwa FIPS 140-3. Usoro asambodo modul amalitela inweta asambodo nnabata na ihe FIPS 140-3 chọrọ. Ruo mgbe asambodo zuru, mgbe emelite OpenSSL gaa na ngalaba 3.1, ndị ọrụ nwere ike ịga n'ihu na-eji modul FIPS nke enwetara na FIPS 140-2. N'ime mgbanwe na ụdị ọhụrụ nke modul ahụ, a na-ahụta ntinye nke Triple DES ECB, Triple DES CBC na EdDSA algọridim, bụ ndị a na-anwalebeghị maka irube isi na ihe FIPS chọrọ. Ụdị ọhụrụ ahụ gụnyekwara nkwalite iji melite arụmọrụ yana mgbanwe na-agba ọsọ n'ime ule n'ime oge ọ bụla a na-ebu modul, ọ bụghị naanị mgbe echichi gasịrị.
  • A rụgharịrị koodu OSSL_LIB_CTX. Nhọrọ ọhụrụ ahụ na-ewepụ nkwụsị na-enweghị isi ma na-enye ohere maka ịrụ ọrụ dị elu.
  • Arụmọrụ emelitere nke ihe ngbanwe na ihe ngbanwe.
  • Nkwalite arụmọrụ metụtara iji ihe arụrụ arụ n'ime (tebụl hash) na caching emeela.
  • Ọsọ nke imepụta igodo RSA na ọnọdụ FIPS abawanyela.
  • Maka ụlọ ọrụ nhazi dị iche iche, ewebatala njikarịcha mgbakọ na ntinye nke AES-GCM, ChaCha20, SM3, SM4 na SM4-GCM algọridim. Dịka ọmụmaatụ, koodu AES-GCM na-eme ngwa ngwa site na iji ntuziaka AVX512 vAES na vPCLMULQDQ.
  • KBKDF (Ọrụ Nwepụta Igodo dabere na igodo) na-akwado algọridim KMAC (KedCAK Message Athentication Code).
  • A na-emegharị ọrụ dị iche iche "OBJ_*" maka ojiji na koodu nwere ọtụtụ eriri.
  • Agbakwunyere ikike iji ntuziaka RNDR na ndekọ RNDRRS, dị na ndị nrụpụta dabere na AArch64 architecture, iji mepụta nọmba pseudorandom.
  • Akọchaala ọrụ ndị OPENSL_LH_stats, OPENSSL_LH_node_stats, OPENSSL_LH_node_usage_stats, OPENSSL_LH_stats_bio, OPENSSL_LH_node_stats_bio na OPENSSL_LH_node_usage_stats_bio. Akwụsịla nnukwu DEFINE_LHASH_OF.

isi: opennet.ru

Tinye a comment