Configurar o Tink C++

Depois de instalar e configurar o Tink, continue com Próximas etapas.

Compatibilidade

Compatível com todas as bibliotecas Além disso, compatível com o Tink C++
Idioma C++ >= 17 N/A
SO UbuntuLTS >= 20.04 (x86_64)
macOS >= 12.5 Monterey (x86_64)
Windows Server >= 2019 (x86_64)
Compilador GCC >= 7.5.0
Apple Clang >= 14
MSVC >= 2019
Sistema de build Bazel >= 7 LTS CMake >= 3.22

Instalação

Tink C++

A biblioteca principal do C++ é a tink-cc, e a versão mais recente é a 2.9.2.

Bazel

Bzlmod

Adicione isso ao arquivo MODULE.bazel:

bazel_dep(name = "tink_cc", version = "2.9.2")

CMake

Adicione tink-cc como uma dependência no repositório.

cmake_minimum_required(VERSION 3.22)
project(YourProject CXX)
set(CMAKE_CXX_STANDARD_REQUIRED ON)
set(CMAKE_CXX_STANDARD 14)
include(FetchContent)

# Import Tink as an in-tree dependency.
FetchContent_Declare(
  tink
  URL       https://github.com/tink-crypto/tink-cc/archive/refs/tags/v2.9.2.zip
  URL_HASH  SHA256=f5259652e09e26ca4a00c16c009a0930c18be0568e3fe34645db4208ebb57f8c
)
FetchContent_GetProperties(tink)
if(NOT googletest_POPULATED)
  FetchContent_Populate(tink)
    add_subdirectory(${tink_SOURCE_DIR} ${tink_BINARY_DIR} EXCLUDE_FROM_ALL)
endif()

add_executable(your_app your_app.cc)
target_link_libraries(your_app tink::static)

Extensão do KMS da AWS

A extensão AWS KMS do Tink C++ é a tink-cc-awskms, e a versão mais recente é a 2.0.1.

Bazel

WORKSPACE

Adicione isso ao seu arquivo WORKSPACE:

load("@bazel_tools//tools/build_defs/repo:http.bzl", "http_archive")

http_archive(
    name = "tink_cc",
    urls = ["https://github.com/tink-crypto/tink-cc/releases/download/v2.1.3/tink-cc-2.1.3.zip"],
    strip_prefix = "tink-2.1.3",
    sha256 = "14a3f64a56d7e9296889d7eba7a3b8787c3281e5bc5791033c54baf810a0b6ef",
)

load("@tink_cc//:tink_cc_deps.bzl", "tink_cc_deps")

tink_cc_deps()

load("@tink_cc//:tink_cc_deps_init.bzl", "tink_cc_deps_init")

tink_cc_deps_init()

http_archive(
    name = "tink_cc_awskms",
    urls = ["https://github.com/tink-crypto/tink-cc-awskms/archive/refs/tags/v2.0.1.zip"],
    strip_prefix = "tink-cc-awskms-2.0.1",
    sha256 = "366319b269f62af120ee312ce4c99ce3738ceb23ce3f9491b4859432f8b991a4",
)

load("@tink_cc_awskms//:tink_cc_awskms_deps.bzl", "tink_cc_awskms_deps")

tink_cc_awskms_deps()

Extensão do Google Cloud KMS

A extensão Google Cloud KMS do Tink C++ é a tink-cc-gcpkms, e a versão mais recente é a 2.6.0.

Bazel

Adicione a instrução a seguir ao seu arquivo MODULE.bazel:

bazel_dep(name = "tink_cc_gcpkms")

git_override(
    module_name = "tink_cc_gcpkms",
    remote = "https://github.com/tink-crypto/tink-cc-gcpkms",
    tag = "v2.6.0",
)

# ... Your dependencies here ...

Próximas etapas

Depois de configurar o Tink, siga as etapas padrão de uso:

  • Escolher um primitivo: decida qual primitivo usar com base no seu caso de uso.
  • Gerenciar chaves: proteja suas chaves com o KMS externo, gere conjuntos de chaves e faça a rotação delas.