From 4316c6418d068ecf3b032f973d8b6cd12d000edd Mon Sep 17 00:00:00 2001 From: "Dr. David von Oheimb" Date: Sun, 16 Jul 2023 14:55:35 +0200 Subject: [PATCH] EVP_KDF.pod: extend text on 'salt' and 'info' parameters Reviewed-by: Tomas Mraz Reviewed-by: Paul Dale (Merged from https://github.com/openssl/openssl/pull/21469) (cherry picked from commit 61c8146aa36b84afd9d83c87c9a01138979ffd60) --- doc/man3/EVP_KDF.pod | 11 ++++++++++- 1 file changed, 10 insertions(+), 1 deletion(-) diff --git a/doc/man3/EVP_KDF.pod b/doc/man3/EVP_KDF.pod index bbff6dd41a8..b291c203d82 100644 --- a/doc/man3/EVP_KDF.pod +++ b/doc/man3/EVP_KDF.pod @@ -191,7 +191,7 @@ For those KDF implementations that support it, this parameter sets the password. =item "salt" (B) -Some KDF implementations can take a salt. +Some KDF implementations can take a non-secret unique cryptographic salt. For those KDF implementations that support it, this parameter sets the salt. The default value, if any, is implementation dependent. @@ -227,6 +227,15 @@ Some KDF implementations require a key. For those KDF implementations that support it, this octet string parameter sets the key. +=item "info" (B) + +Some KDF implementations, such as L, take an 'info' parameter +for binding the derived key material +to application- and context-specific information. +This parameter sets the info, fixed info, other info or shared info argument. +You can specify this parameter multiple times, and each instance will +be concatenated to form the final value. + =item "maclen" (B) Used by implementations that use a MAC with a variable output size (KMAC). -- 2.47.2