RFC 5649 extension of AES Key Wrap that supports wrapping keys of any length (not limited to multiples of 8 bytes). Uses Alternative Initial Value (AIV) containing plaintext length.
| Property | Value |
|---|---|
| Category | Special Algorithms |
| Sub-category | Key Wrapping |
| Security status | π‘οΈ Secure |
| Complexity | Intermediate |
| Inventor | NIST |
| Year | 2009 |
| Origin | πΊπΈ United States |
| Source | algorithms/crypto/aeswrappad.js |
| Parameter | Supported values |
|---|---|
| Key sizes | 16 bytes (128 bits) to 32 bytes (256 bits) in steps of 8 bytes |
Status: π‘οΈ Secure
No vulnerabilities are recorded for this implementation.
2 vectors ship with this algorithm and run in the test suite. Byte values are hexadecimal.
Vector 1 β RFC 5649 Section 6.1 - 192-bit KEK, 20-octet Key Data
| Field | Value |
|---|---|
key |
5840df6e29b02af1ab493b705bf16ea1ae8338f4dcc176a8 |
input |
c37b7e6492584340bed12207808941155068f738 |
expected |
138bdeaa9b8fa7fc61f97742e72248ee5ae6ae5360d1ae6a5f54f373fa543b6a |
Vector 2 β RFC 5649 Section 6.2 - 192-bit KEK, 7-octet Key Data
| Field | Value |
|---|---|
key |
5840df6e29b02af1ab493b705bf16ea1ae8338f4dcc176a8 |
input |
466f7250617369 |
expected |
afbeb0f07dfbf5419200f2ccb50bb24f |