com.amazonaws.services.s3.internal.crypto.S3KeyWrapScheme Maven / Gradle / Ivy
/*
* Copyright 2013-2018 Amazon.com, Inc. or its affiliates. All Rights Reserved.
*
* Licensed under the Apache License, Version 2.0 (the "License").
* You may not use this file except in compliance with the License.
* A copy of the License is located at
*
* http://aws.amazon.com/apache2.0
*
* or in the "license" file accompanying this file. This file is distributed
* on an "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either
* express or implied. See the License for the specific language governing
* permissions and limitations under the License.
*/
package com.amazonaws.services.s3.internal.crypto;
import java.security.Key;
class S3KeyWrapScheme {
/**
* Used for backward compatibility where the encryption only mode has no
* explicit key wrapping scheme.
*/
static final S3KeyWrapScheme NONE = new S3KeyWrapScheme() {
String getKeyWrapAlgorithm(Key key) {
return null;
}
@Override public String toString() { return "NONE"; }
};
public static final String AESWrap = "AESWrap";
public static final String RSA_ECB_OAEPWithSHA256AndMGF1Padding = "RSA/ECB/OAEPWithSHA-256AndMGF1Padding";
/**
* @param kek
* the key encrypting key, which is either an AES key or a public
* key
*/
String getKeyWrapAlgorithm(Key kek) {
String algorithm = kek.getAlgorithm();
if (S3CryptoScheme.AES.equals(algorithm)) {
return AESWrap;
}
if (S3CryptoScheme.RSA.equals(algorithm)) {
if (CryptoRuntime.isRsaKeyWrapAvailable())
return RSA_ECB_OAEPWithSHA256AndMGF1Padding;
}
return null;
}
@Override public String toString() { return "S3KeyWrapScheme"; }
}
© 2015 - 2025 Weber Informatics LLC | Privacy Policy