Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Rule to check for insufficient key size to HMAC #390

Merged
merged 1 commit into from
Mar 27, 2024

Commits on Mar 27, 2024

  1. Rule to check for insufficient key size to HMAC

    HMAC algorithms require a minimum key size that corresponds to
    their digest size. Using a size less than the digest size is
    considered weak.
    
    Signed-off-by: Eric Brown <eric.brown@securesauce.dev>
    ericwb committed Mar 27, 2024
    Configuration menu
    Copy the full SHA
    1240304 View commit details
    Browse the repository at this point in the history