Password-based key wrapping algorithm from RFC 3211 for CMS. Uses CBC mode with random padding and checksum verification. Older standard compared to RFC 3394.
| Property | Value |
|---|---|
| Category | Special Algorithms |
| Sub-category | Key Wrapping |
| Security status | ⚠️ Deprecated |
| Complexity | Intermediate |
| Inventor | IETF S/MIME Working Group |
| Year | 2001 |
| Origin | 🌐 International |
| Source | algorithms/crypto/rfc3211wrap.js |
Status: ⚠️ Deprecated
No vulnerabilities are recorded for this implementation.
2 vectors ship with this algorithm and run in the test suite. Byte values are hexadecimal.
Vector 1 — DES-CBC Key Wrap - 64-bit key with fixed random
| Field | Value |
|---|---|
cipherName |
DES |
key |
d1daa78615f287e6 |
iv |
efe598ef21b33d6d |
random |
c436f541 |
input |
8c627c897323a2f8 |
expected |
b81b2565ee373ca6dedca26a178b0c10 |
Vector 2 — 3DES-CBC Key Wrap - 256-bit key with fixed random
| Field | Value |
|---|---|
cipherName |
3DES (Triple DES) |
key |
6a8970bf68c92caea84a8df28510858607126380cc47ab2d |
iv |
baf1ca7931213c4e |
random |
fa060a45 |
input |
8c637d887223a2f965b566eb014b0fa5d52300a3f7ea40fffc577203c71baf3b |
expected |
c03c514abdb9e2c5aac038572b5e2455 3876b377aafb82eca5a9d73f8ab143d9 ec74e6cad7db260c |