age Plugins
More from Filippo Valsorda
RSA key generation is conceptually simple, but extremely tricky. Even benchmarking involves math: we generated a stable but representative “average case” instead of using the ordinary statistical approach.
My NAS is just one big initramfs containing a whole Alpine Linux system. It’s delightful. Here's why and how.
Accumulated test vectors make it possible to run large sets of random known-answer tests without checking in large assets.
The FIPS compliance of HKDF is a somewhat confusing and controversial topic, partially because the normative reference is split over at least four separate documents, but in practice it’s approved for almost any purpose.
ML-KEM private key seeds are vastly preferable to expanded decapsulation keys as a storage format. A plea to standardize on them.