[openssl/openssl] 52ca56: Make X25519 and X448 FIPS unapproved

Tomáš Mráz noreply at github.com
Fri Apr 19 08:35:17 UTC 2024


  Branch: refs/heads/master
  Home:   https://github.com/openssl/openssl
  Commit: 52ca56090cb651ffa8ef9b5cd155742ee35117d1
      https://github.com/openssl/openssl/commit/52ca56090cb651ffa8ef9b5cd155742ee35117d1
  Author: Tomas Mraz <tomas at openssl.org>
  Date:   2024-04-19 (Fri, 19 Apr 2024)

  Changed paths:
    M CHANGES.md
    M doc/man7/OSSL_PROVIDER-FIPS.pod
    M providers/fips/fipsprov.c

  Log Message:
  -----------
  Make X25519 and X448 FIPS unapproved

Partially fixes: #22105

Reviewed-by: Neil Horman <nhorman at openssl.org>
Reviewed-by: Paul Dale <ppzgs1 at gmail.com>
(Merged from https://github.com/openssl/openssl/pull/24099)


  Commit: fccd1615eea5f81f2a12b2fb953e6606edbc59c8
      https://github.com/openssl/openssl/commit/fccd1615eea5f81f2a12b2fb953e6606edbc59c8
  Author: Dimitri John Ledkov <dimitri.ledkov at surgut.co.uk>
  Date:   2024-04-19 (Fri, 19 Apr 2024)

  Changed paths:
    M providers/common/capabilities.c

  Log Message:
  -----------
  Exclude X25519 and X448 from capabilities advertised by FIPS provider

Reviewed-by: Neil Horman <nhorman at openssl.org>
Reviewed-by: Paul Dale <ppzgs1 at gmail.com>
Reviewed-by: Tomas Mraz <tomas at openssl.org>
(Merged from https://github.com/openssl/openssl/pull/24099)


  Commit: 0977eac5655138318a60a459a0d8de108dc614b5
      https://github.com/openssl/openssl/commit/0977eac5655138318a60a459a0d8de108dc614b5
  Author: Tomas Mraz <tomas at openssl.org>
  Date:   2024-04-19 (Fri, 19 Apr 2024)

  Changed paths:
    M test/quicapitest.c
    M test/ssl-tests/14-curves.cnf.in
    M test/ssl-tests/20-cert-select.cnf
    M test/ssl-tests/20-cert-select.cnf.in
    M test/ssl-tests/28-seclevel.cnf.in

  Log Message:
  -----------
  Adjust tests that were depending on X25519 and X448 in fips

Reviewed-by: Neil Horman <nhorman at openssl.org>
Reviewed-by: Paul Dale <ppzgs1 at gmail.com>
(Merged from https://github.com/openssl/openssl/pull/24099)


Compare: https://github.com/openssl/openssl/compare/4e3c1e620625...0977eac56551

To unsubscribe from these emails, change your notification settings at https://github.com/openssl/openssl/settings/notifications


More information about the openssl-commits mailing list