[openssl-users] Openssl FIPS 186-4 Patch

Marcus Meissner meissner at suse.de
Tue Oct 10 06:47:19 UTC 2017


Hi,

On Mon, Oct 09, 2017 at 05:24:17PM +0530, murugesh pitchaiah wrote:
> Hi,
> 
> Thanks for the comment.
> 
> I know that openSSL is not 186-4 compliant. That is why I am looking
> for anybody have the patch for the same.
> 
> I see there are some works in Fedora:
> http://pkgs.fedoraproject.org/cgit/rpms/openssl.git/tree/openssl-1.1.0-fips.patch

Yes, the FIPS 140-2 patches done by Redhat provide a FIPS 186-3 or 186-4 enabled
keygeneration.

There are some small adjustments that could be merged back into the generic
e.g. RSA key generation.

Ciao, Marcus
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 833 bytes
Desc: Digital signature
URL: <http://mta.openssl.org/pipermail/openssl-users/attachments/20171010/2d6bc95f/attachment.sig>


More information about the openssl-users mailing list