2022-08-28 11:11:36 +02:00
|
|
|
//go:build !without_openssl
|
2021-09-04 11:41:56 +02:00
|
|
|
// +build !without_openssl
|
|
|
|
|
|
|
|
package stupidgcm
|
|
|
|
|
|
|
|
// #include <openssl/evp.h>
|
|
|
|
import "C"
|
|
|
|
|
|
|
|
import (
|
|
|
|
"crypto/cipher"
|
|
|
|
"log"
|
|
|
|
)
|
|
|
|
|
|
|
|
const (
|
|
|
|
// BuiltWithoutOpenssl indicates if openssl been disabled at compile-time
|
|
|
|
BuiltWithoutOpenssl = false
|
|
|
|
|
|
|
|
keyLen = 32
|
|
|
|
ivLen = 16
|
|
|
|
tagLen = 16
|
|
|
|
)
|
|
|
|
|
2021-09-07 17:48:55 +02:00
|
|
|
type stupidGCM struct {
|
2021-09-04 11:41:56 +02:00
|
|
|
stupidAEADCommon
|
|
|
|
}
|
|
|
|
|
2021-09-07 18:11:11 +02:00
|
|
|
// NewAES256GCM returns a new AES-256-GCM cipher that satisfies the cipher.AEAD interface.
|
2021-09-07 17:58:42 +02:00
|
|
|
//
|
|
|
|
// Only 32-bytes keys and 16-byte IVs are supported.
|
2021-09-10 12:14:19 +02:00
|
|
|
func NewAES256GCM(keyIn []byte) cipher.AEAD {
|
2021-09-04 11:41:56 +02:00
|
|
|
if len(keyIn) != keyLen {
|
|
|
|
log.Panicf("Only %d-byte keys are supported", keyLen)
|
|
|
|
}
|
2021-09-07 17:48:55 +02:00
|
|
|
return &stupidGCM{
|
2021-09-04 11:41:56 +02:00
|
|
|
stupidAEADCommon{
|
|
|
|
// Create a private copy of the key
|
|
|
|
key: append([]byte{}, keyIn...),
|
|
|
|
openSSLEVPCipher: C.EVP_aes_256_gcm(),
|
|
|
|
nonceSize: ivLen,
|
|
|
|
},
|
|
|
|
}
|
|
|
|
}
|