https://bugs.ruby-lang.org/https://bugs.ruby-lang.org/favicon.ico?17097754782011-02-19T10:50:50ZRuby Issue Tracking SystemRuby master - Bug #4408: Net::SSH connections are subject to plaintext recovery due to lack of CTR modehttps://bugs.ruby-lang.org/issues/4408?journal_id=158922011-02-19T10:50:50ZMartinBosslet (Martin Bosslet)Martin.Bosslet@gmail.com
<ul></ul><p>=begin<br>
The Cipher class uses the OpenSSL EVP API, but if you look in the file evp.h in all available OpenSSL versions (including >= 1.0.0) you will find this:</p>
<p>#if 0<br>
const EVP_CIPHER *EVP_aes_128_ctr(void);<br>
#endif</p>
<p>As soon as this is supported by OpenSSL itself, it will also be available in Ruby's Cipher support.</p>
<p>Regards,<br>
Martin<br>
=end</p> Ruby master - Bug #4408: Net::SSH connections are subject to plaintext recovery due to lack of CTR modehttps://bugs.ruby-lang.org/issues/4408?journal_id=184172011-06-26T17:53:00Znaruse (Yui NARUSE)naruse@airemix.jp
<ul><li><strong>Status</strong> changed from <i>Open</i> to <i>Assigned</i></li><li><strong>Assignee</strong> set to <i>nahi (Hiroshi Nakamura)</i></li></ul> Ruby master - Bug #4408: Net::SSH connections are subject to plaintext recovery due to lack of CTR modehttps://bugs.ruby-lang.org/issues/4408?journal_id=184442011-06-26T18:40:35Znahi (Hiroshi Nakamura)nakahiro@gmail.com
<ul><li><strong>Target version</strong> set to <i>2.0.0</i></li></ul> Ruby master - Bug #4408: Net::SSH connections are subject to plaintext recovery due to lack of CTR modehttps://bugs.ruby-lang.org/issues/4408?journal_id=271332012-06-10T07:06:08ZMartinBosslet (Martin Bosslet)Martin.Bosslet@gmail.com
<ul></ul><p>I think we can close this? As of OpenSSL 1.0.1, OpenSSL::Cipher supports CTR modes.</p> Ruby master - Bug #4408: Net::SSH connections are subject to plaintext recovery due to lack of CTR modehttps://bugs.ruby-lang.org/issues/4408?journal_id=341482012-11-29T22:28:02Znahi (Hiroshi Nakamura)nakahiro@gmail.com
<ul><li><strong>Category</strong> set to <i>ext</i></li><li><strong>Status</strong> changed from <i>Assigned</i> to <i>Third Party's Issue</i></li></ul><p>Indeed. Closing this as TPI. Added CTR test at r37994 for making sure we can use CTR.</p>