Dear OpenSSL,
As you may be aware, NIST recently approved two Format Preserving
Encryption (FPE) methods - FF1 and FF3.
See:
http://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-38G.pdf

The field of tokenization and fixed format encryption (FFX) has taken off
due to PCI compliance.  These protocols
allow one to replace a sensitive field with similarly formatted
ciphertext.  This is useful when field type and size is fixed (like SSN,
Credit Card Number).

I would like to request that OpenSSL implement these ciphers as fpe-ff1 and
fpe-ff3.

Sincerely,
Robert Wagner

-- 
Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4595
Please log in as guest with password guest if prompted

-- 
openssl-dev mailing list
To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

Reply via email to