[openssl-users] Openssl 1.0.2o issue with FIPS mode set.

Ajay Nalawade ajay.nalawade at gmail.com
Thu Jun 7 07:03:29 UTC 2018


Hello,

I have golang based openssl server with FIPS mode set. I am using Openssl
library build with fips module 2.0.
With Openssl 1.0.1u version, everything was running fine.
Recently I upgraded to version 1.0.2o. With this version, under high
traffic condition (more than 4k requests per minute), read request fails
with following error.
"SSL errors: SSL routines:SSL3_GET_RECORD:decryption failed or bad record
mac"

If I disable FIPS mode, every thing runs fine. Is there any known issue
with version 1.0.2o with FIPS mode set.

Thanks a lot in advance,
Ajay
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mta.openssl.org/pipermail/openssl-users/attachments/20180607/e5bf4f97/attachment.html>


More information about the openssl-users mailing list