4 ms·
Thanks, this is for multi-platform encryption of data at rest, as where I work all systems are using LibreSSL now so can abstract away the openssl shell command
by chachalarue 11y ago
Thanks, this is for multi-platform encryption of data at rest, as where I work all systems are using LibreSSL now so can abstract away the openssl shell commands for easy encrypt/decrypt and since Android will soon have a similar library through BoringSSL can extend it to mobile devices.
Went through the Salsa20/ChaCha djb pages to see it doesn't use modes, and LibreSSL source for e_chacha/e_chacha20poly1305.c indicates a 2TB limit but would never come close to encrypting anything that large as that's why we have Tarsnap backups. Reasons I eyed the AEAD stream cipher for file encryption was because how crazy fast it was during tests and the small size of the output, just was wondering about any potential 'gotchas' I wouldn't know about since I'm no expert on crypto hashing/file encryption.