[php-src] Issue #7737: openssl_seal()/_open() is not able to handle gcm cipers, e.g. aes-256-gcm
| From: | rotdrop | Date: | Thu, 16 Dec 2021 22:37:55 +0000 |
| Subject: | [php-src] Issue #7737: openssl_seal()/_open() is not able to handle gcm cipers, e.g. aes-256-gcm | ||
| Groups: | php.bugs | ||
| Request: | Send a blank email to php-bugs+get-238457@lists.php.net to get a copy of this message | ||
Issue: https://github.com/php/php-src/issues/7737
Comment Author: rotdrop
So then. Kind of a missing feature.
You are probably right that an extra parameter
string &$tag or so is more in the
spirit of the current interface than simply appending the tag to the encrypted keys.
I am still tempted to interpret the current state as a documentation bug. It is not so clear from
reading the manual that the the ...-gcm ciphes to not work out of the box. And it still feels a
little bit weird that openssl_seal() very happily accepts the ...-gcm cipher just to
produce something which cannot be decrypted again.