And even for the 15 that EVP_EC_gen() accepts, several (B-163, K-163, P-192) can't be used for signing certificates and requests. (Says "Curve X-yyy cannot be used for signing".)
Is there an easy way to get a list of FIPS-140 approved curves that can be used for signing certificates and requests, or do you have to try each one and see if it works?
OpenSSL 3.0.10.
-- Jordan Brown, Oracle ZFS Storage Appliance, Oracle Solaris