Usage of pycrypto
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
keystonemiddleware |
Fix Released
|
Low
|
Tin Lam |
Bug Description
The pycrypto library is unmaintained. There is an effort across various OpenStack projects to move away from it and use something else that is better supported [0].
Keystonemiddleware uses pycrypto to encrypt and decrypt things before caching them [1]. At the time of opening this bug report, we can either use the drop-in replacement (pycryptdome [2]) or we can rewrite the crypto stuff in keystonemiddleware to use another supported crypto library (i.e. pyca/cryptography [3])
[0] http://
[1] http://
[2] https:/
[3] https:/
Changed in keystonemiddleware: | |
status: | New → Confirmed |
summary: |
- Remove usage of pycrypto + Usage of pycrypto |
Changed in keystonemiddleware: | |
importance: | Undecided → Low |
Changed in keystonemiddleware: | |
assignee: | nobody → Tin Lam (tl3438) |
description: | updated |
description: | updated |
description: | updated |
Fix proposed to branch: master /review. openstack. org/451941
Review: https:/