ืึทืžืึทื–ืึธืŸ ื”ืื˜ ืืจื•ื™ืก ืึทืŸ ืึธืคึฟืŸ ืžืงื•ืจ ืงืจื™ืคึผื˜ืึธื’ืจืึทืคื™ืง ื‘ื™ื‘ืœื™ืึธื˜ืขืง ืคึฟืึทืจ ื“ื™ ืจื•ืกื˜ ืฉืคึผืจืึทืš

ืึทืžืึทื–ืึธืŸ ื”ืื˜ ื‘ืึทืงืขื ืขื  ื“ื™ aws-lc-rs ืงืจื™ืคึผื˜ืึธื’ืจืึทืคื™ืง ื‘ื™ื‘ืœื™ืึธื˜ืขืง, ื•ื•ืึธืก ืื™ื– ื‘ื“ืขื” ืคึฟืึทืจ ื ื•ืฆืŸ ืื™ืŸ ืจื•ืกื˜ ืึทืคึผืœืึทืงื™ื™ืฉืึทื ื– ืื•ืŸ ืื™ื– ืึทืคึผื™-ืงืึทืžืคึผืึทื˜ืึทื‘ืึทืœ ืžื™ื˜ ื“ื™ ืจื™ื ื’ ืจื•ืกื˜ ื‘ื™ื‘ืœื™ืึธื˜ืขืง. ื“ื™ ืคึผืจื•ื™ืขืงื˜ ืงืึธื“ ืื™ื– ืคื•ื ืื ื“ืขืจื’ืขื˜ื™ื™ืœื˜ ืื•ื ื˜ืขืจ ื“ื™ Apache 2.0 ืื•ืŸ ISC ืœื™ื™ืกืึทื ืกื™ื–. ื“ื™ ื‘ื™ื‘ืœื™ืึธื˜ืขืง ืฉื˜ื™ืฆื˜ ืœื™ื ื•ืงืก (ืงืก86, ืงืก86-64, ืึทืึทืจื˜ืฉ64) ืื•ืŸ ืžืึทืงืึธืก (ืงืก86-64) ืคึผืœืึทื˜ืคืึธืจืžืก.

ื“ื™ ื™ืžืคึผืœืึทืžืขื ื˜ื™ื™ืฉืึทืŸ ืคื•ืŸ ืงืจื™ืคึผื˜ืึธื’ืจืึทืคื™ืง ืึทืคึผืขืจื™ื™ืฉืึทื ื– ืื™ืŸ aws-lc-rs ืื™ื– ื‘ืื–ื™ืจื˜ ืื•ื™ืฃ ื“ื™ AWS-LC ื‘ื™ื‘ืœื™ืึธื˜ืขืง (AWS libcrypto), ื’ืขืฉืจื™ื‘ืŸ ืื™ืŸ C ++ ืื•ืŸ ืื™ืŸ ืงืขืจ ื‘ืื–ื™ืจื˜ ืื•ื™ืฃ ืงืึธื“ ืคื•ืŸ ื“ื™ BoringSSL ืคึผืจื•ื™ืขืงื˜ (ืึท Google-ืžื™ื™ื ื˜ื™ื™ื ื“ ืึธืคืฉืึธืจ ืคื•ืŸ OpenSSL). ืื™ืŸ ื“ืขืจืฆื•, ืฆื•ื•ื™ื™ ื ื™ื“ืขืจื™ืง-ืžื“ืจื’ื” ืงืจื™ื™ื˜ ืคึผืึทืงืึทื“ื–ืฉืึทื– ื–ืขื ืขืŸ ืคืืจื’ืขืœื™ื™ื’ื˜: aws-lc-sys (ืึทื•ื˜ืึธ-ื“ื–ืฉืขื ืขืจื™ื™ื˜ืึทื“ ื ื™ื“ืขืจื™ืง-ืžื“ืจื’ื” ื‘ื™ื™ื ื“ื™ื ื’ื– ืื™ื‘ืขืจ AWS-LC) ืื•ืŸ aws-lc-fips-sys (ื ื™ื“ืขืจื™ืง-ืžื“ืจื’ื” ื‘ื™ื™ื ื“ื™ื ื’ื– ื‘ืื–ื™ืจื˜ ืื•ื™ืฃ FFI (ืคืจืขืžื“ ืคื•ื ืงืฆื™ืข ืฆื•ื‘ื™ื ื“) ), ืจืขืคึผืจืึธื“ื•ืฆื™ืจืŸ ื“ื™ AWS-LC API.

ื“ื™ AWS-LC ื‘ื™ื‘ืœื™ืึธื˜ืขืง ื™ื ืงืœื•ื“ื– ืคืึธืจืžืึทืœื™ ื•ื•ืขืจืึทืคื™ื™ื“ ื™ืžืคึผืœืึทืžืึทื ืฅ ืคื•ืŸ ื“ื™ SHA-2, HMAC, AES-GCM, AES-KWP, HKDF, ECDH ืื•ืŸ ECDSA ืึทืœื’ืขืจื™ื“ืึทืžื– ื•ื•ืึธืก ื˜ืจืขืคืŸ ื“ื™ ืจืขืงื•ื•ื™ืจืขืžืขื ืฅ ืคึฟืึทืจ ืงืจื™ืคึผื˜ืึธื’ืจืึทืคื™ืง ืกื™ืกื˜ืขืžืขืŸ ื•ื•ืึธืก ืงืขื ืขืŸ ื–ื™ื™ืŸ ื’ืขื•ื•ื™ื™ื ื˜ ื“ื•ืจืš ืจืขื’ื™ืจื•ื ื’ ื™ื™ื“ื–ืฉืึทื ืกื™ื– ืื™ืŸ ื“ื™ ืคืึทืจื™ื™ื ื™ืงื˜ืข ืฉื˜ืึทื˜ืŸ. ืื•ืŸ ืงืื ืื“ืข. ืฉืืคืŸ ืึท ืจื•ืกื˜ ื‘ื™ื™ื ื“ื™ื ื’ ืื™ื– ื’ืขื˜ืจื™ื‘ืŸ ื“ื•ืจืš ื“ื™ ื ื•ื™ื˜ ืฆื• ื”ืึธื‘ืŸ FIPS-ื’ืขื”ืึธืจื›ื™ืง ืงืจื™ืคึผื˜ืึธ ืœื™ื™ื‘ืจืขืจื™ื– ื•ื•ืึธืก ืงืขื ืขืŸ ื–ื™ื™ืŸ ื’ืขื•ื•ื™ื™ื ื˜ ืื™ืŸ ืจื•ืกื˜ ืคึผืจืึทื“ื–ืฉืขืงืก. ืื™ืŸ ื“ืขืจ aws-lc-rs ื‘ื™ื‘ืœื™ืึธื˜ืขืง, ืึทืžืึทื–ืึธืŸ ื‘ืึทืฉืœืึธืกืŸ ืฆื• ืคืึทืจื‘ื™ื ื“ืŸ ื“ื™ ืจื™ื ื’ ืึทืคึผื™, ื•ื•ืึธืก ืื™ื– ื‘ืึทืงืึทื ื˜ ืื•ืŸ ืคึผืจืึธืกื˜ ืฆื•ื•ื™ืฉืŸ ืจื•ืกื˜ ืคึผืจืึธื•ื’ืจืึทืžืขืจื–, ืื•ืŸ ื•ื•ืขืจืึทืคื™ื™ื“ ื™ืžืคึผืœืึทืžืึทื ืฅ ืคื•ืŸ ืึทืœื’ืขืจื™ื“ืึทืžื– ืคื•ืŸ ื“ื™ AWS-LC ื‘ื™ื‘ืœื™ืึธื˜ืขืง ื•ื•ืึธืก ื ืึธื›ืงื•ืžืขืŸ ืžื™ื˜ FIPS ืจืขืงื•ื•ื™ืจืขืžืขื ืฅ.

ื“ื™ ื ื•ืฆืŸ ืคื•ืŸ ื“ื™ AWS-LC ื‘ื™ื‘ืœื™ืึธื˜ืขืง ื•ื•ื™ ื“ื™ ื™ืงืขืจ ืื•ื™ืš ื’ืขืžืื›ื˜ ืขืก ืžืขื’ืœืขืš ืฆื• ื ื•ืฆืŸ ืึทืœืข ื“ื™ ืกืคึผืขืฆื™ืคื™ืฉ ืึทืคึผื˜ืึทืžืึทื–ื™ื™ืฉืึทื ื– ื“ืขื•ื•ืขืœืึธืคึผืขื“ ื“ื•ืจืš ืึทืžืึทื–ืึธืŸ ืื™ืŸ aws-lc-rs. ืœืžืฉืœ, AWS-LC ื’ื™ื˜ ืึธืคึผืฆื™ืขืก ืคึฟืึทืจ ื“ื™ ChaCha20-Poly1305 ืื•ืŸ NIST P-256 ืึทืœื’ืขืจื™ื“ืึทืžื– ื•ื•ืึธืก ื–ืขื ืขืŸ ืกืขืคึผืขืจืึทื˜ืœื™ ืึธืคึผื˜ื™ืžื™ื–ืขื“ ืคึฟืึทืจ ARM ืคึผืจืึทืกืขืกืขืจื–, ืื•ืŸ ื‘ืึทื˜ื™ื™ื˜ื™ืง ืึทืคึผื˜ืึทืžืึทื–ื™ื™ืฉืึทื ื– ืคึฟืึทืจ ืงืก86 ืกื™ืกื˜ืขืžืขืŸ ื–ืขื ืขืŸ ื’ืขืžืื›ื˜ ืฆื• ืคืึทืจื’ื™ื›ืขืจืŸ ื“ื™ ืคึผืจืึทืกืขืกื™ื ื’ ืคื•ืŸ ECDSA ื“ื™ื’ื™ื˜ืึทืœ ืกื™ื’ื ืึทื˜ืฉืขืจื–. ื•ื•ืขืŸ ื˜ืขืกื˜ื™ื ื’ ื“ื™ ืึธืคึผืขืจืึทืฆื™ืข ืคื•ืŸ โ€‹โ€‹โ€‹โ€‹TLS 1.2 ืื•ืŸ 1.3 ืคึผืจืึธื˜ืึธืงืึธืœืก, ื“ื™ aws-lc-rs ื‘ื™ื‘ืœื™ืึธื˜ืขืง ื‘ืื˜ื™ื™ื˜ื™ืง ืึทื•ื˜ืคึผืขืจืคืึธืจืžื“ ื“ื™ ืจืึทืกืœืก ืคึผืขืงืœ ืื™ืŸ ื˜ืขืจืžื™ื ืขืŸ ืคื•ืŸ ืคืึธืจืฉื˜ืขืœื•ื ื’, ื“ืขืžืึทื ืกื˜ืจื™ื™ื˜ื™ื ื’ ื‘ื™ื™ื“ืข ืึท ืจืขื“ื•ืงืฆื™ืข ืื™ืŸ ื“ื™ ืงืึทื ืขืงืฉืึทืŸ ืกืขื˜ืึทืคึผ ืฆื™ื™ื˜ ืื•ืŸ ืึท ืคืึทืจื’ืจืขืกืขืจืŸ ืื™ืŸ ื˜ืจื•ืคึผื•ื˜ (ืžืขืจ ื•ื•ื™ ืฆื•ื•ื™ื™ ืžืึธืœ ืื™ืŸ ECDSA ื˜ืขืกืฅ).

ืึทืžืึทื–ืึธืŸ ื”ืื˜ ืืจื•ื™ืก ืึทืŸ ืึธืคึฟืŸ ืžืงื•ืจ ืงืจื™ืคึผื˜ืึธื’ืจืึทืคื™ืง ื‘ื™ื‘ืœื™ืึธื˜ืขืง ืคึฟืึทืจ ื“ื™ ืจื•ืกื˜ ืฉืคึผืจืึทืš


ืžืงื•ืจ: opennet.ru

ืœื™ื™ื’ืŸ ืึท ื‘ืึทืžืขืจืงื•ื ื’