[php-src] Issue #7737: openssl_seal()/_open() is not able to handle gcm cipers, e.g. aes-256-gcm
| From: | rotdrop | Date: | Thu, 16 Dec 2021 13:08:36 +0000 |
| Subject: | [php-src] Issue #7737: openssl_seal()/_open() is not able to handle gcm cipers, e.g. aes-256-gcm | ||
| Groups: | php.bugs | ||
| Request: | Send a blank email to php-bugs+get-238450@lists.php.net to get a copy of this message | ||
Issue: https://github.com/php/php-src/issues/7737
Comment Author: rotdrop
Well, AFAIK PHP's openssl_seal() is not able to use the gcm-ciphers. So probably
- it should be documented
- one might regard this as a missing feature
- as
openssl_seal() does not complain (return value is true) this is also a bug.
Arguably, the encoding does succeed. Its just that there is no chance to decode the sealed data
without the authentication tag.
There is also an attempt to use openssl_seal() with aes-256-gcm within the
Nextcloud-project: https://github.com/nextcloud/server/pull/25551