To clarify here, using the OpenSSL FIPS implementation does not allow you to claim “FIPS Validated”, rather this would be “FIPS Compliant”. If you want to claim “FIPS Validated”, you must get your own validation for your implementation regardless of what you are using, OpenSSL FIPS module or otherwise. - Walt Walter Paley Walt@xxxxxxxxxxxxx SafeLogic - FIPS 140-2 Simplified