From 63befb128d013f8b7de49ed98a83c735556f498c Mon Sep 17 00:00:00 2001 From: Lim Xuan Ping Date: Wed, 11 Sep 2024 16:20:19 +0800 Subject: [PATCH] Update myinfo encryptedAndSignedPersona to use enc A256GCM --- lib/express/myinfo/controllers.js | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/lib/express/myinfo/controllers.js b/lib/express/myinfo/controllers.js index 95f56b9..b7784a9 100644 --- a/lib/express/myinfo/controllers.js +++ b/lib/express/myinfo/controllers.js @@ -50,7 +50,7 @@ module.exports = const encryptedAndSignedPersona = await new jose.CompactEncrypt( Buffer.from(sign), ) - .setProtectedHeader({ alg: 'RSA-OAEP', enc: 'A128CBC-HS256' }) + .setProtectedHeader({ alg: 'RSA-OAEP', enc: 'A256GCM' }) .encrypt(publicKey) return encryptedAndSignedPersona }