Ah, yes. Well that's why FIPS for OpenSSL is the main focus of the next release, and presumably why Oracle is one of the sponsors... :-) In the mean-time, yeah, you may have to support 1.0.2 for ~1 more year. > On Sep 12, 2018, at 1:18 AM, Jordan Brown <openssl@xxxxxxxxxxxxxxxxxxxx> wrote: > > My understanding is that lack of FIPS-140 certification is a problem for us. -- Viktor. -- openssl-users mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-users