On Wed, Jan 21, 2015, John Laundree wrote: > > Ok, so I will naively ask the question "How does one do TLS 1.0/1.1 in FIPS mode? Or is this no longer allowed, i.e. TLS 1.2 only?" > The use of MD5 for TLS 1.0/1.1 is treated as an exception which is allowed in FIPS mode but general MD5 use is not. Steve. -- Dr Stephen N. Henson. OpenSSL project core developer. Commercial tech support now available see: http://www.openssl.org