์•”ํ˜ธํ™” ๋ผ์ด๋ธŒ๋Ÿฌ๋ฆฌ WolfSSL 4.4.0 ์ถœ์‹œ

์‚ฌ์šฉ ๊ฐ€๋Šฅ ์ปดํŒฉํŠธ ์•”ํ˜ธํ™” ๋ผ์ด๋ธŒ๋Ÿฌ๋ฆฌ์˜ ์ƒˆ๋กœ์šด ๋ฆด๋ฆฌ์Šค ์šธํ”„SSL 4.4.0, ์‚ฌ๋ฌผ ์ธํ„ฐ๋„ท ๊ธฐ๊ธฐ, ์Šค๋งˆํŠธ ํ™ˆ ์‹œ์Šคํ…œ, ์ฐจ๋Ÿ‰์šฉ ์ •๋ณด ์‹œ์Šคํ…œ, ๋ผ์šฐํ„ฐ, ํœด๋Œ€ํฐ ๋“ฑ ํ”„๋กœ์„ธ์„œ์™€ ๋ฉ”๋ชจ๋ฆฌ ๋ฆฌ์†Œ์Šค๊ฐ€ ์ œํ•œ๋œ ์ž„๋ฒ ๋””๋“œ ๊ธฐ๊ธฐ์—์„œ ์‚ฌ์šฉํ•˜๋„๋ก ์ตœ์ ํ™”๋˜์—ˆ์Šต๋‹ˆ๋‹ค. ์ฝ”๋“œ๋Š” C ์–ธ์–ด๋กœ ์ž‘์„ฑ๋˜์—ˆ์œผ๋ฉฐ ๋ฐฐํฌ์ž GPLv2์— ๋”ฐ๋ผ ๋ผ์ด์„ผ์Šค๊ฐ€ ๋ถ€์—ฌ๋˜์—ˆ์Šต๋‹ˆ๋‹ค.

์ด ๋ผ์ด๋ธŒ๋Ÿฌ๋ฆฌ๋Š” ChaCha20, Curve25519, NTRU, RSA, Blake2b, TLS 1.0-1.3, DTLS 1.2๋ฅผ ํฌํ•จํ•œ ์ตœ์‹  ์•”ํ˜ธํ™” ์•Œ๊ณ ๋ฆฌ์ฆ˜์˜ ๊ณ ์„ฑ๋Šฅ ๊ตฌํ˜„์„ ์ œ๊ณตํ•ฉ๋‹ˆ๋‹ค. ๊ฐœ๋ฐœ์ž์— ๋”ฐ๋ฅด๋ฉด, ์ด๋Ÿฌํ•œ ๊ตฌํ˜„์€ OpenSSL ๊ตฌํ˜„๋ณด๋‹ค 20๋ฐฐ ๋” ๊ฐ„๊ฒฐํ•ฉ๋‹ˆ๋‹ค. ์ž์ฒด ๊ฐ„์†Œํ™”๋œ API์™€ OpenSSL API์™€์˜ ํ˜ธํ™˜์„ฑ์„ ์œ„ํ•œ ๊ณ„์ธต์ด ๋ชจ๋‘ ์ œ๊ณต๋ฉ๋‹ˆ๋‹ค. ๋‹ค์Œ์„ ์ง€์›ํ•ฉ๋‹ˆ๋‹ค. OCSP (์˜จ๋ผ์ธ ์ธ์ฆ์„œ ์ƒํƒœ ํ”„๋กœํ† ์ฝœ) ๋ฐ C.R.L. (์ธ์ฆ์„œ ํ์ง€ ๋ชฉ๋ก)์„ ํด๋ฆญํ•˜์—ฌ ์ธ์ฆ์„œ ํ์ง€๋ฅผ ํ™•์ธํ•ฉ๋‹ˆ๋‹ค.

WolfSSL 4.4.0์˜ ์ฃผ์š” ํ˜์‹ :

  • ๋งˆ์ดํฌ๋กœ ์•„ํ‚คํ…์ฒ˜ ๊ธฐ๋ฐ˜ ์นฉ ์ง€์›
    ํ€„์ปด ํ—ฅ์‚ฌ๊ณค;
  • ์˜ค๋ฅ˜ ์ •์ • ์ฝ”๋“œ(ECC) ๊ฒ€์‚ฌ ์ž‘์—…์„ DSP ์นฉ ์ชฝ์œผ๋กœ ์˜ฎ๊ธฐ๊ธฐ ์œ„ํ•œ DSP ์–ด์…ˆ๋ธ”๋ฆฌ
  • ChaCha20/Poly1305 ๋ชจ๋“œ์˜ ์ƒˆ๋กœ์šด API AEAD;
  • OpenVPN ์ง€์›;
  • Apache http ์„œ๋ฒ„์™€ ํ•จ๊ป˜ ์‚ฌ์šฉ ๊ฐ€๋Šฅ
  • IBM s390x ์ง€์›;
  • ED8์— ๋Œ€ํ•œ PKCS25519 ์ง€์›;
  • ์ธ์ฆ์„œ ๊ด€๋ฆฌ์ž์—์„œ ์ฝœ๋ฐฑ ์ง€์›
  • SP์— ๋Œ€ํ•œ ํƒ€์› ๊ณก์„  P384 ์ง€์›.
  • BIO ๋ฐ EVP์šฉ API
  • AES-OFB ๋ฐ AES-CFB ๋ชจ๋“œ ๊ตฌํ˜„
  • ํƒ€์› ๊ณก์„  Curve448, X448 ๋ฐ Ed448 ์ง€์›
  • ํ•˜๋“œ์›จ์–ด ๊ฐ€์†์„ ์‚ฌ์šฉํ•˜์—ฌ Renesas Synergy S7G2 ๋นŒ๋“œ๋ฅผ ์ง€์›ํ•ฉ๋‹ˆ๋‹ค.

์ถœ์ฒ˜ : opennet.ru