On Tue, Dec 02, 2025 at 06:26:07PM +0530, tirumal reddy wrote:
> On Tue, 2 Dec 2025 at 18:20, Ilari Liusvaara <[email protected]>
> wrote:
> 
> > And secondly, AKP is not fitting for this. Earlier I thought it AKP
> > would fit this purpose, but then I tried implementing it... The
> > encryption side is fine, the decryption side is not.
> >
> 
> Could you please elaborate on the specific problem you encountered on the
> decryption side ?

The easiest way to structure code is to decode the algorithm into HPKE
ciphersuite and decode the key into HPKE KEM key. Works well enough, but
enforcing alg on decryption is hard (on encryption one can just set the
alg from key).

Oh, and another problem I run into was that the code assumed it could
save generated HPKE KEM keys as JWK/COSE_key. Which does not work if
there is alg.




-Ilari

_______________________________________________
jose mailing list -- [email protected]
To unsubscribe send an email to [email protected]

Reply via email to