blob: ccb8d3cb97b4b091239f6f360e19c1240c59ba11 [file] [log] [blame]
Thai Duonge473b4c2017-11-19 21:59:19 -08001// Copyright 2017 Google Inc.
2//
3// Licensed under the Apache License, Version 2.0 (the "License");
4// you may not use this file except in compliance with the License.
5// You may obtain a copy of the License at
6//
7// http://www.apache.org/licenses/LICENSE-2.0
8//
9// Unless required by applicable law or agreed to in writing, software
10// distributed under the License is distributed on an "AS IS" BASIS,
11// WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12// See the License for the specific language governing permissions and
13// limitations under the License.
14//
15////////////////////////////////////////////////////////////////////////////////
16
17syntax = "proto3";
18
19package google.crypto.tink;
20
21option java_package = "com.google.crypto.tink.proto";
22option java_multiple_files = true;
juerg70c62942023-02-13 07:07:13 -080023option go_package = "github.com/google/tink/go/proto/aes_siv_go_proto";
Thai Duonge473b4c2017-11-19 21:59:19 -080024
juerg39ecc212023-04-27 00:02:20 -070025// Tink implements RFC 5297 (https://www.rfc-editor.org/rfc/rfc5297) for
26// AES-SIV, putting the SIV/Tag at the beginning of the ciphertext.
27//
28// While the RFC 5297 supports a list of associated datas, Tink only supports
29// exactly one associated data, which corresponds to a list with one element in
30// RFC 5297. An empty associated data is a list with one empty element, and not
31// an empty list.
32
Thai Duonge473b4c2017-11-19 21:59:19 -080033message AesSivKeyFormat {
Bartosz Przydatek3bbc4992018-04-04 09:12:25 -070034 // Only valid value is: 64.
Thai Duonge473b4c2017-11-19 21:59:19 -080035 uint32 key_size = 1;
rafaelmisoczkib7b10092021-03-23 08:11:12 -070036 uint32 version = 2;
Thai Duonge473b4c2017-11-19 21:59:19 -080037}
38
39// key_type: type.googleapis.com/google.crypto.tink.AesSivKey
40message AesSivKey {
41 uint32 version = 1;
42 // First half is AES-CTR key, second is AES-SIV.
43 bytes key_value = 2;
44}