X-Git-Url: http://www.git.cypherpunks.ru/?a=blobdiff_plain;f=pygost%2Fwrap.py;h=eb3855fb8ce3d7f25c18f01ae53c61df610f1783;hb=3374d4b8a5a58941e309b13524067ffa8d410d45;hp=a3c206ca4c52a02c61e35fb55806fed0d5a36ae3;hpb=a2b4808f6628225be99874bd5f6a0f80a514db82;p=pygost.git diff --git a/pygost/wrap.py b/pygost/wrap.py index a3c206c..eb3855f 100644 --- a/pygost/wrap.py +++ b/pygost/wrap.py @@ -1,6 +1,6 @@ # coding: utf-8 # PyGOST -- Pure Python GOST cryptographic functions library -# Copyright (C) 2015-2020 Sergey Matveev +# Copyright (C) 2015-2022 Sergey Matveev # # This program is free software: you can redistribute it and/or modify # it under the terms of the GNU General Public License as published by @@ -18,6 +18,7 @@ :rfc:`4357` key wrapping (28147-89 and CryptoPro). """ +from hmac import compare_digest from struct import pack from struct import unpack @@ -26,6 +27,8 @@ from pygost.gost28147 import DEFAULT_SBOX from pygost.gost28147 import ecb_decrypt from pygost.gost28147 import ecb_encrypt from pygost.gost28147_mac import MAC +from pygost.gost3413 import ctr +from pygost.gost3413 import mac def wrap_gost(ukm, kek, cek, sbox=DEFAULT_SBOX): @@ -76,7 +79,12 @@ def wrap_cryptopro(ukm, kek, cek, sbox=DEFAULT_SBOX): :returns: wrapped key :rtype: bytes, 44 bytes """ - return wrap_gost(ukm, diversify(kek, bytearray(ukm)), cek, sbox=sbox) + return wrap_gost( + ukm, + diversify(kek, bytearray(ukm), sbox=sbox), + cek, + sbox=sbox, + ) def unwrap_cryptopro(kek, data, sbox=DEFAULT_SBOX): @@ -111,3 +119,34 @@ def diversify(kek, ukm, sbox=DEFAULT_SBOX): iv = pack("