Closed richardschneider closed 8 years ago
An encrypted value
\u009e
key id
followed by .
.
Note: for aes-256-gcm
the IV
and authTag
follow the algorithm number.
A security module safeguards and manages digital keys for strong authentication and provides crypto-processing.
Need a key management system #114 before this is really done. Currently the key is baked into software. But we can close for now, because KMS will fix this.
Use a strong encryption algorithm like AES. Should we add the algorithm name and key id to the value?
See #111 for more background info.