commit | 9118c01ecf918bd115650927e150c065962aa5a8 | [log] [tgz] |
---|---|---|
author | James E. Blair <jeblair@redhat.com> | Thu Aug 03 11:19:16 2017 -0700 |
committer | James E. Blair <jeblair@redhat.com> | Fri Aug 04 08:12:43 2017 -0700 |
tree | 4fd2495e84c38a0eecb86c73a886e57a452f3730 | |
parent | b8cb3da45174ab1cbd7bef210cd0c58ce5d6bb2f [diff] |
Support longer pkcs1-oaep secrets We have run into a case where we need to store a secret longer than 3760 bits. We may eventually support a hybrid encryption scheme, but for now, let's also support the alt.zuul.secrets protocol where we split the secret into 3760 bit chunks and recombine it. The encrypt_secret utility is updated to output a copy-pastable YAML data structure to simplify dealing with long secrets. Change-Id: Ied372572e5aa29fddfb7043bf07df4cd3e39566c