Re: FIPS compliance efforts in Fedora and RHEL

[Date Prev] [Date Next] [Thread Prev] [Thread Next] [Date Index] [Thread Index]

 



Dear Damien,

On Wed, Apr 19, 2023 at 10:01 AM Dmitry Belyavskiy <dbelyavs@xxxxxxxxxx>
wrote:

> Dear Damien,
>
> On Wed, Apr 19, 2023 at 9:55 AM Damien Miller <djm@xxxxxxxxxxx> wrote:
> >
> > On Wed, 19 Apr 2023, Dmitry Belyavskiy wrote:
> >
> > > > While I'm sure this is good for RHEL/rawhide users who care about
> FIPS,
> > > > Portable OpenSSH won't be able to merge this. We explictly aim to
> support
> > > > LibreSSL's libcrypto as well as openssl-1.1.x and neither supports
> the
> > > > OSSL_PARAM_BLD API (neither does BoringSSL, though our support for
> that
> > > > I'd describe as "best effort").
> > > >
> > > > If this changes we can look again.
>

Filed an issue on libressl [0] asking for support for OSSL_* API. Adding it
here as
a tracker.

[0] - https://github.com/libressl/portable/issues/846

Regards
Norbert Pócs
_______________________________________________
openssh-unix-dev mailing list
openssh-unix-dev@xxxxxxxxxxx
https://lists.mindrot.org/mailman/listinfo/openssh-unix-dev




[Date Prev] [Date Next] [Thread Prev] [Thread Next] [Date Index] [Thread Index]

[Index of Archives]     [Linux ARM Kernel]     [Linux ARM]     [Linux Omap]     [Fedora ARM]     [IETF Annouce]     [Security]     [Bugtraq]     [Linux]     [Linux OMAP]     [Linux MIPS]     [ECOS]     [Asterisk Internet PBX]     [Linux API]

  Powered by Linux