Hawkynt

AES Key Wrap with Padding

RFC 5649 extension of AES Key Wrap that supports wrapping keys of any length (not limited to multiples of 8 bytes). Uses Alternative Initial Value (AIV) containing plaintext length.

Properties

Property Value
Category Special Algorithms
Sub-category Key Wrapping
Security status πŸ›‘οΈ Secure
Complexity Intermediate
Inventor NIST
Year 2009
Origin πŸ‡ΊπŸ‡Έ United States
Source algorithms/crypto/aeswrappad.js

Parameters

Parameter Supported values
Key sizes 16 bytes (128 bits) to 32 bytes (256 bits) in steps of 8 bytes

Security

Status: πŸ›‘οΈ Secure

No vulnerabilities are recorded for this implementation.

Documentation

References

Test vectors

2 vectors ship with this algorithm and run in the test suite. Byte values are hexadecimal.

Vector 1 β€” RFC 5649 Section 6.1 - 192-bit KEK, 20-octet Key Data

Field Value
key 5840df6e29b02af1ab493b705bf16ea1ae8338f4dcc176a8
input c37b7e6492584340bed12207808941155068f738
expected 138bdeaa9b8fa7fc61f97742e72248ee5ae6ae5360d1ae6a5f54f373fa543b6a

Vector 2 β€” RFC 5649 Section 6.2 - 192-bit KEK, 7-octet Key Data

Field Value
key 5840df6e29b02af1ab493b705bf16ea1ae8338f4dcc176a8
input 466f7250617369
expected afbeb0f07dfbf5419200f2ccb50bb24f

← All algorithms