Project

General

Profile

Task #1600

Updated by Luděk Urban almost 4 years ago

On the NUKIB recommendation need to change algorithm mode in local confidential storage from CBC to CCM. With this change is also need to be implemented some kind of re-encrypt tool that will re-encrypt current data. And also create deployment plan for it. 

 Encryption algorithm of Confidential storage must be changed from AES/CBC/PKCS5Padding to AES/CCM/PKCS5Padding. 

 Tasks: 

 * Change encryption mode in IdM 
 * Create tool re-encrypt already used Confidential storage 
 * Create deploy guide 

Back