Is HMAC required after AES encryption? Security discussion
When learning the Go language encryption library, you may notice AES encryption, especially CBC mode, and it is recommended to use HMAC for hash verification. This raises a key question: Do you have to use HMAC after AES encryption?
The answer is: It depends on the situation.
The tips of the Go language standard library emphasize the importance of ciphertext authentication, and it is recommended to use crypto/hmac
for hashing to ensure the integrity of the data transmission process and prevent tampering. The receiver verifies the ciphertext by comparing the hash value.
However, the choice of AES encryption mode is crucial. Commonly used modes of AES include CBC and GCM. GCM mode is an AEAD (Authenticated Encryption with Associated Data) mode, which provides both confidentiality and integrity. The GCM encryption process automatically generates authentication tags without additional HMAC processing.
crypto/cipher
package of Go provides NewGCM
functions to create encryptors in GCM mode. If you use GCM, you don't need HMAC.
However, if you are using AES-CBC mode, since the CBC mode itself does not provide authentication function, it is necessary to combine HMAC to ensure the integrity of the data and prevent the data from being maliciously tampered during transmission.
Summary: HMAC is not necessary when using AES-GCM mode; when using AES-CBC mode, HMAC must be used to ensure data integrity and security. Choosing the appropriate AES mode and deciding whether HMAC is needed based on the mode characteristics is the key to ensuring data security.
The above is the detailed content of Does it require HMAC to be hashed after AES encryption?. For more information, please follow other related articles on the PHP Chinese website!

go语言有缩进。在go语言中,缩进直接使用gofmt工具格式化即可(gofmt使用tab进行缩进);gofmt工具会以标准样式的缩进和垂直对齐方式对源代码进行格式化,甚至必要情况下注释也会重新格式化。

go语言叫go的原因:想表达这门语言的运行速度、开发速度、学习速度(develop)都像gopher一样快。gopher是一种生活在加拿大的小动物,go的吉祥物就是这个小动物,它的中文名叫做囊地鼠,它们最大的特点就是挖洞速度特别快,当然可能不止是挖洞啦。

是,TiDB采用go语言编写。TiDB是一个分布式NewSQL数据库;它支持水平弹性扩展、ACID事务、标准SQL、MySQL语法和MySQL协议,具有数据强一致的高可用特性。TiDB架构中的PD储存了集群的元信息,如key在哪个TiKV节点;PD还负责集群的负载均衡以及数据分片等。PD通过内嵌etcd来支持数据分布和容错;PD采用go语言编写。

go语言需要编译。Go语言是编译型的静态语言,是一门需要编译才能运行的编程语言,也就说Go语言程序在运行之前需要通过编译器生成二进制机器码(二进制的可执行文件),随后二进制文件才能在目标机器上运行。

go语言能编译。Go语言是编译型的静态语言,是一门需要编译才能运行的编程语言。对Go语言程序进行编译的命令有两种:1、“go build”命令,可以将Go语言程序代码编译成二进制的可执行文件,但该二进制文件需要手动运行;2、“go run”命令,会在编译后直接运行Go语言程序,编译过程中会产生一个临时文件,但不会生成可执行文件。

删除map元素的两种方法:1、使用delete()函数从map中删除指定键值对,语法“delete(map, 键名)”;2、重新创建一个新的map对象,可以清空map中的所有元素,语法“var mapname map[keytype]valuetype”。


Hot AI Tools

Undresser.AI Undress
AI-powered app for creating realistic nude photos

AI Clothes Remover
Online AI tool for removing clothes from photos.

Undress AI Tool
Undress images for free

Clothoff.io
AI clothes remover

AI Hentai Generator
Generate AI Hentai for free.

Hot Article

Hot Tools

EditPlus Chinese cracked version
Small size, syntax highlighting, does not support code prompt function

VSCode Windows 64-bit Download
A free and powerful IDE editor launched by Microsoft

ZendStudio 13.5.1 Mac
Powerful PHP integrated development environment

MantisBT
Mantis is an easy-to-deploy web-based defect tracking tool designed to aid in product defect tracking. It requires PHP, MySQL and a web server. Check out our demo and hosting services.

SublimeText3 Chinese version
Chinese version, very easy to use
