[Defect]: Variant pattern for PBKDF2 must have {prfFunction} instead of {hashAlgorithm}
Nobody has claimed this yet.
Assessment
- Difficulty
- 2/5
- Estimated time
- 1-3 hours
- Newbie friendliness
- 64/100
- Issue type
- Bug
- Clarity
- Clearly specified
- Activity status
- Quiet
- Domain
- cryptography
Research direction
Start in the Cryptography Registry and locate the PBKDF2 variant pattern. Compare its variable naming with the linked SP800-132 guidance; done means the pattern uses {prfFunction} rather than {hashAlgorithm}, without schema or algorithm changes.
Written by the indexing model from the issue text.
Description
Describe the defect
As per the SP800-132, PBKDF2 is the PBKDF using HMAC with any approved hash function as the PRF. Therefore, the variable {prfFunction} must be an element of the variant pattern instead of {hashAlgorithm}.
Additional context
The issue is data-quality / naming defect in the Cryptography Registry and can be fixed without changing schema behavior or introducing new algorithms.
- Dominant language
- XSLT
- Stars
- 551
- Forks
- 93
- Avg merge
- 4h 51m
- Merged PRs (30d)
- 42
Contributor guide
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
More from CycloneDX/specification
-
defect documentation
Difficulty 2/5 1-3 hours Newbie friendliness 72/100
CycloneDX/specification#1115 ·
-
cap: cryptography-registry
Difficulty 2/5 1-3 hours Newbie friendliness 62/100
CycloneDX/specification#1098 ·
-
defect
Difficulty 1/5 Under an hour Newbie friendliness 91/100
CycloneDX/specification#1045 · 2 comments ·
-
CDX 2.0 documentation ready for review
Difficulty 2/5 1-3 hours Newbie friendliness 65/100
CycloneDX/specification#1035 ·
-
cap: cryptography-registry defect
Difficulty 2/5 1-3 hours Newbie friendliness 84/100
CycloneDX/specification#1028 ·
All issues in CycloneDX/specification
Similar issues
-
security
Difficulty 2/5 1-3 hours Newbie friendliness 68/100
IBM/OpenJCEPlus#1822 ·
-
Difficulty 2/5 1-3 hours Newbie friendliness 88/100
-
enhancement
Difficulty 2/5 1-3 hours Newbie friendliness 82/100
-
objects
Difficulty 2/5 1-3 hours Newbie friendliness 84/100
-
Difficulty 2/5 1-3 hours Newbie friendliness 84/100
snapshot-labs/snapshot.js#1247 · 1 comment ·