g-andrade

g-andrade

ExFPE encrypts a numerical string into another of the same length over the same alphabet.

Use cases

  • credit-card numbers - encrypt them in a field or database column that only accepts credit-card -shaped values;
  • sequential integers - encrypt them while preserving their domain:
    • auto-incremented IDs in SQL databases;
    • short, temporary sharing codes that look random but are the result of encrypting the outputs of a cycling counter;
    • generate a 1-to-1 map from (sequence of consecutive integers) => (collection of seemingly random integers), in the same domain, no repeated elements.

And any other similar problems.

Example

Base 10

key = :crypto.strong_rand_bytes(32)
radix = 10
ctx = ExFPE.new!(key, radix)

tweak = "dev.env"
plaintext = "34436524"
ciphertext = ExFPE.encrypt!(ctx, tweak, plaintext)
^plaintext = ExFPE.decrypt!(ctx, tweak, ciphertext)

^ The encrypted ciphertext is always of the same length, and over the same alphabet, as plaintext.

Base 16

key = :crypto.strong_rand_bytes(32)
radix = 16
ctx = ExFPE.new!(key, radix)

tweak = "prod.env"
plaintext = "ABE19F00E22333445C"
ciphertext = ExFPE.encrypt!(ctx, tweak, plaintext)
^plaintext = ExFPE.decrypt!(ctx, tweak, ciphertext)

Custom alphabet

key = :crypto.strong_rand_bytes(32)
alphabet = "abcdeぜそぞ🦄🕞🌖"
ctx = ExFPE.new!(key, alphabet)

tweak = "tweak45"
plaintext = "🕞aebe🕞ぜそ🌖"
ciphertext = ExFPE.encrypt!(ctx, tweak, plaintext)
^plaintext = ExFPE.decrypt!(ctx, tweak, ciphertext)

Capabilities

  • any base/radix from 2 up to 65535;
  • optimized for bases between 2 and 36 if the alphabet matches the output of Integer.to_string/2 (upcase or downcase);
  • can otherwise use custom Unicode alphabets, with restrictions on accepted symbols;
  • use ExFPE to store context under your supervision tree, and access the API through generated functions that don’t require you to pass context every time;
  • can also operate in raw mode, encrypting and decrypting integer values directly.

Modes

By default, ExFPE uses FF1 (ExFPE.FF1), the only mode approved by NIST in SP 800-38Gr1 2pd. The other available mode is FF3-1 (ExFPE.FF3_1), which NIST no longer recommends.

I implemented the FF3-1 mode back in 2023, before the latest recommendation - which is why it’s part of this release.

Links

Where Next? Top

Trending in Announcing Top

bluzky
You may know https://ui.shadcn.com/, a UI component library for React. I really love it’s design style and components. I’ve built some co...
387 15136 120
New
woylie
Flop is an Elixir library that applies filtering, ordering and pagination parameters to your Ecto queries. offset-based pagination with...
New
restlessronin
The repo is at GitHub - cyberchitta/openai_ex: Community maintained Elixir library for OpenAI API · GitHub. Docs are at OpenaiEx User Gu...
152 11030 135
New
JesseHerrick
Hey, I’m Jesse and I’m the main contributor behind Dexter, a full-featured, lightning-fast Elixir LSP optimized for large codebases. It s...
New
shahryarjb
The Chelekom project is a library of Phoenix and LiveView components generated via Mix tasks to fit developer needs seamlessly. One of i...
New
woylie
Phoenix components for pagination, sortable tables and filter forms with Flop and (optionally) Ecto. pagination cursor pagination sorta...
New
kip
Please say hi to a new lib, Astro that aims to deliver easy-to-consume astronomy calculations of practical use. For now it only calculat...
New

Other Trending Topics Top

akoutmos
@hugobarauna and I (Alex Koutmos) have been hard at work on writing a book on Nerves that takes you from simply blinking LEDs to building...
New
spammy
I’m looking to build a personal workflow to quickly deploy web applications written in elixir/phoenix, for local consumption (ie not on t...
New
alexslade
Fly’s CEO posted this recently - Turn And Face The Strange · The Fly Blog It says that Fly is going all-in on sprites, which is a worry ...
New
bartblast
Hey folks, I just published a post about Hologram’s funding and where the project goes next - the short version: Curiosum as Main Spons...
New
Herve37
We’re evaluating API mocking tools for OpenAPI-based projects and would love to hear what other teams are using. We’re particularly inte...
New
mudasobwa
I am seeing a lot of aplications of Argumentum ad Vericundiam in software discussions. They do link some piece of writing and point us to...
New

We're in Beta

About us Mission Statement

Options

Thread Display Mode




Thread Preview

Skip Thread Previews