#authenticated-encryption #tink #daead

tink-daead

Deterministic AEAD functionality for Rust port of Google's Tink cryptography library

9 releases

0.3.0 Nov 28, 2024
0.2.5 Mar 14, 2023
0.2.4 Mar 25, 2022
0.2.1 Oct 8, 2021
0.1.0 Jan 21, 2021

#2026 in Cryptography

Download history 169/week @ 2024-09-18 122/week @ 2024-09-25 70/week @ 2024-10-02 124/week @ 2024-10-09 54/week @ 2024-10-16 68/week @ 2024-10-23 106/week @ 2024-10-30 63/week @ 2024-11-06 35/week @ 2024-11-13 129/week @ 2024-11-20 227/week @ 2024-11-27 117/week @ 2024-12-04 106/week @ 2024-12-11 9/week @ 2024-12-18 24/week @ 2024-12-25 88/week @ 2025-01-01

257 downloads per month
Used in 2 crates

Apache-2.0

235KB
3.5K SLoC

Tink-Rust: Deterministic Authenticated Encryption with Additional Data

Docs MSRV

This crate provides deterministic authenticated encryption with additional data (DAEAD) functionality, as described in the upstream Tink documentation.

Usage

fn main() -> Result<(), Box<dyn Error>> {
    tink_daead::init();
    let kh = tink_core::keyset::Handle::new(&tink_daead::aes_siv_key_template())?;
    let d = tink_daead::new(&kh)?;

    let pt = b"this data needs to be encrypted";
    let ad = b"additional data";
    let ct1 = d.encrypt_deterministically(pt, ad)?;
    println!("'{}' => {}", String::from_utf8_lossy(pt), hex::encode(&ct1));

    let ct2 = d.encrypt_deterministically(pt, ad)?;
    assert_eq!(ct1, ct2, "cipher texts are not equal");
    println!("Cipher texts are equal.");

    let pt2 = d.decrypt_deterministically(&ct1, ad)?;
    assert_eq!(&pt[..], pt2);
    Ok(())
}

License

Apache License, Version 2.0

Disclaimer

This is not an officially supported Google product.

Dependencies

~1.6–3.5MB
~55K SLoC