Hawkynt

GOST 28147-89 MAC

CBC-MAC construction using GOST 28147-89 block cipher. Specified in GOST R 34.13-2015 for message authentication.

Properties

Property Value
Category Message Authentication
Sub-category Block Cipher MAC
Security status ⚠️ Deprecated
Complexity Intermediate
Inventor Soviet/Russian standard committee
Year 1989
Origin 🇷🇺 Russia
Source algorithms/mac/gost28147mac.js

Parameters

Parameter Supported values
MAC sizes 4 bytes (32 bits) to 8 bytes (64 bits) in steps of 4 bytes

Capabilities

Flag Value
NeedsKey Yes

Security

Status: ⚠️ Deprecated

Known vulnerabilities

Issue Description Mitigation
Deprecated standard GOST 28147-89 has been superseded by newer Russian standards (Kuznyechik/Magma). Use modern MAC algorithms like CMAC with AES or HMAC-SHA256 for new applications.
S-box dependency Security depends on the selected S-box parameter set. Always use standardized S-box sets (E-A, CryptoPro, etc.).

Documentation

References

Test vectors

1 vector ship with this algorithm and run in the test suite. Byte values are hexadecimal.

Vector 1 — Bouncy Castle test vector 1 (E-A S-box)

Field Value
key 6d145dc993f4019e104280df6fcd8cd8e01e101e4c113d7ec4f469ce6dcd9e49
input 7768617420646f2079612077616e7420666f72206e6f7468696e673f
expected 93468a46

← All algorithms