Re: storing an explicit nonce

From: Sasasu <i(at)sasa(dot)su>
To: pgsql-hackers(at)lists(dot)postgresql(dot)org
Subject: Re: storing an explicit nonce
Date: 2021-09-06 02:04:33
Message-ID: e8d8be0f-d3d2-a3e7-8dc1-79b16c3ae3ca@sasa.su
Views: Raw Message | Whole Thread | Download mbox | Resend email
Thread:
Lists: pgsql-hackers

在 2021/9/5 下午10:51, Sasasu 写道:
>
> For AES-GCM, a predictable IV is fine. I think we can decrypt and
> re-encrypt the user data in pg_upgrade. this will allows us to use
> relfile oid + block number as nonce.

relfile oid + block number + some counter for heap table IV. I mean.

Attachment Content-Type Size
OpenPGP_0x4E72AF09097DAE2E.asc application/pgp-keys 7.9 KB

In response to

Browse pgsql-hackers by date

  From Date Subject
Next Message Masahiro Ikeda 2021-09-06 02:17:40 Re: Allow escape in application_name
Previous Message kuroda.hayato@fujitsu.com 2021-09-06 01:32:57 RE: Allow escape in application_name (was: [postgres_fdw] add local pid to fallback_application_name)