Hawkynt

ARIA Key Wrap with Padding

RFC 5649 key wrapping with padding applied to ARIA cipher. Supports arbitrary-length plaintext by padding to 8-byte multiples and embedding length in AIV.

Properties

Property Value
Category Special Algorithms
Sub-category Key Wrapping
Security status ๐Ÿ›ก๏ธ Secure
Complexity Intermediate
Inventor NIST (RFC 5649 specification with ARIA cipher)
Year 2009
Origin ๐Ÿ‡ฐ๐Ÿ‡ท South Korea
Source algorithms/crypto/ariawrappad.js

Parameters

Parameter Supported values
Key sizes 16 bytes (128 bits) to 32 bytes (256 bits) in steps of 8 bytes

Security

Status: ๐Ÿ›ก๏ธ Secure

No vulnerabilities are recorded for this implementation.

Documentation

References

Test vectors

2 vectors ship with this algorithm and run in the test suite. Byte values are hexadecimal.

Vector 1 โ€” Self-consistency vector (RFC 5649 wrap structure, sized like RFC 5649 ยง6.2, with ARIA-128 substituted for AES; no official ARIA-KWP KAT exists) โ€” single-block case (7-octet key data)

Field Value
key 000102030405060708090a0b0c0d0e0f
input 466f7250617369
expected ff5df3faba86bd7802800f420b6bb16a

Vector 2 โ€” Self-consistency vector (RFC 5649 wrap structure, sized like RFC 5649 ยง6.1, with ARIA-192 substituted for AES; no official ARIA-KWP KAT exists) โ€” multi-block case (20-octet key data, general RFC 3394 loop)

Field Value
key 5840df6e29b02af1ab493b705bf16ea1ae8338f4dcc176a8
input c37b7e6492584340bed12207808941155068f738
expected f8e2e399e9f9f5679651a57413ec81067acd1e72521d96cd794a83c44865f38d

โ† All algorithms