Greetings!

You probably know that low level AES function AES_set_encrypt_key is
disabled in FIPS 140-2 module. Instead it is offered to use EVP_
set of functions.

We develop transparent database encryption for SQL Server and
performance is very important issue. AES CTR requires very frequent
changes of IV and I can't find a way to set it other than
EVP_CipherInit. Initialization, however, relatively high time-consuming 
operation.

Question: Is there a way to set IV for CTX after its initialization for FIPS
version of OpenSSL?

-- 
Best regards,
Alex Dankow                          
a...@activecrypt.com
ActiveCrypt Software

-- 
openssl-users mailing list
To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-users

Reply via email to