X-Git-Url: https://git.distorted.org.uk/~mdw/tripe/blobdiff_plain/07bdda1fdf877d00dd63d53ebd5159b5edd1df29..de8edc7fdb0a26ca9cb736a49b020a64ee4a0d40:/keys/tripe-keys.conf.5.in diff --git a/keys/tripe-keys.conf.5.in b/keys/tripe-keys.conf.5.in index ee67e9a3..ab4c9e16 100644 --- a/keys/tripe-keys.conf.5.in +++ b/keys/tripe-keys.conf.5.in @@ -229,25 +229,56 @@ Hashing algorithm to use. Default is The bulk crypto transform to use. Default is .BR iiv . +.ne 8 +.TP .I mac -Message authentication algorithm to use. Default is -.IB hash -hmac/ halfhashlen \fR, -where +Message authentication algorithm to use. +Default depends on +.I bulk +as follows. +.TS +center; +| ci | ci | +| lb | lb |. +_ +bulk mac +_ +v0 \fIhash\fB-hmac/\fIhalfhashlen +iiv \fIhash\fB-hmac/\fIhalfhashlenrijndael-cbc +naclbox poly1305/128 +_ +.TE +.IP +(In the above, .I halfhashlen is half of .IR hash 's -output length. +output length.) .TP .I mgf Mask-generation algorithm to use. Default is .IB hash -mgf \fR. This is probably a good choice. -.ne 6 +.ne 7 .TP .I cipher -Symmetric encryption scheme to use. Default is -.BR rijndael-cbc . -.ne 6 +Symmetric encryption scheme to use. +Default depends on +.I bulk +as follows. +.TS +center; +| ci | ci | +| lb | lb |. +_ +bulk cipher +_ +v0 rijndael-cbc +iiv rijndael-cbc +naclbox chacha20 +_ +.TE +.ne 7 .TP .I sig Signature scheme to use. Must be one of those recognized by