Rijndael CBC encryption

classic Classic list List threaded Threaded
4 messages Options
Reply | Threaded
Open this post in threaded view
|

Rijndael CBC encryption

Jussi Hirvi-2
Does Lasso support this encryption scheme? It is used in a strong
authentication scheme using bank customer usernames and passwords.

"The encryption used is Rijndael, block size 256, CBC mode. Note that
the encryption is not AES compatible. (AES is Rijndael with a block size
of 128)

Specifcs of the encryption used:
• Rijndael
• CBC mode
• A block size of 256 bits.
• An encryption key size of 256 bits.
• An initialization vector size of 256 bits.
• Null-padding."

I found mention of Rijndael/AES encryption in Lasso 9.2, but that's not
what I am looking for.

BTW, I found a php function which probably does this:

        https://gist.github.com/joshhartman/5383582

Regards,
Jussi
#############################################################
This message is sent to you because you are subscribed to
  the mailing list Lasso [hidden email]
Official list archives available at http://www.lassotalk.com
To unsubscribe, E-mail to: <[hidden email]>
Send administrative queries to  <[hidden email]>
Reply | Threaded
Open this post in threaded view
|

Re: Rijndael CBC encryption

Ke Carlton-3
Try cipher_list(-digest)  or cipher_list to see what's available:
http://lassoguide.com/operations/encryption.html?highlight=cipher_list

Worse case scenario just use sys_process with openssl or similar for more...

Ke

On 9 January 2014 10:52, Jussi Hirvi <[hidden email]> wrote:

> Does Lasso support this encryption scheme? It is used in a strong
> authentication scheme using bank customer usernames and passwords.
>
> "The encryption used is Rijndael, block size 256, CBC mode. Note that the
> encryption is not AES compatible. (AES is Rijndael with a block size of 128)
>
#############################################################
This message is sent to you because you are subscribed to
  the mailing list Lasso [hidden email]
Official list archives available at http://www.lassotalk.com
To unsubscribe, E-mail to: <[hidden email]>
Send administrative queries to  <[hidden email]>
Reply | Threaded
Open this post in threaded view
|

Re: Rijndael CBC encryption

Jolle Carlestam-2
9 jan 2014 kl. 12:03 skrev Ke Carlton <[hidden email]>:

> Try cipher_list(-digest)  or cipher_list to see what's available:
> http://lassoguide.com/operations/encryption.html?highlight=cipher_list
>
> Worse case scenario just use sys_process with openssl or similar for more...

As far as I know Lasso only hand encryption over to the OS it runs on. Thus is dependent on whatever libraries the OS deals with.
Ke's suggestion will allow you to see what is available. Note that this list will differ depending on where you run it from.

My local mac looks like this:
$lasso9 -s "cipher_list(-digest)"
staticarray(MD2, MD4, MD5, SHA, SHA1, DSA-SHA, DSA, RIPEMD160)
$lasso9 -s "cipher_list"
staticarray(DES-ECB, DES-EDE, DES-CFB, DES-OFB, DES-CBC, DES-EDE3-CBC, RC4, RC2-CBC, BF-CBC, CAST5-CBC, RC5-CBC)

Whereas our Centos 5 and 6 servers presents these lists:
staticarray(MD2, MD4, MD5, SHA, SHA1, DSA-SHA, DSA, SHA224, SHA256, SHA384, SHA512, RIPEMD160)
staticarray(DES-ECB, DES-EDE, DES-CFB, DES-OFB, DES-CBC, DES-EDE3-CBC, RC4, RC2-CBC, BF-CBC, CAST5-CBC)

If you want other encryption schemes you would need to install libs for it on you OS.

HDB
Jolle
#############################################################
This message is sent to you because you are subscribed to
  the mailing list Lasso [hidden email]
Official list archives available at http://www.lassotalk.com
To unsubscribe, E-mail to: <[hidden email]>
Send administrative queries to  <[hidden email]>
Reply | Threaded
Open this post in threaded view
|

Re: Rijndael CBC encryption

Jussi Hirvi-2
On 9.1.2014 13.18, Jolle Carlestam wrote:
> As far as I know Lasso only hand encryption over to the OS it runs
> on. Thus is dependent on whatever libraries the OS deals with. Ke's
> suggestion will allow you to see what is available. Note that this
> list will differ depending on where you run it from.

Ok, cool. Looks like I could get this done on Lasso 9. I am not sure yet
if I need to.

- Jussi
#############################################################
This message is sent to you because you are subscribed to
  the mailing list Lasso [hidden email]
Official list archives available at http://www.lassotalk.com
To unsubscribe, E-mail to: <[hidden email]>
Send administrative queries to  <[hidden email]>