On Tue, Feb 25, 2025 at 8:50 AM Petr Pisar <ppi...@redhat.com> wrote:
> V Mon, Feb 24, 2025 at 05:53:46PM +0000, Aoife Moloney via devel-announce > napsal(a): > > == Detailed Description == > > We are going to build OpenSSL without engine support. Engines are not > > FIPS compatible and corresponding API is deprecated since OpenSSL 3.0. > > The engine functionality we are aware of (PKCS#11, TPM) is covered by > > providers. > > Are providers FIPS compatible? > Some of them - yes. We have a dedicated FIPS provider, and also AFAIK PKCS#11 provider is FIPS-compatible to some extent. -- Dmitry Belyavskiy
-- _______________________________________________ devel mailing list -- devel@lists.fedoraproject.org To unsubscribe send an email to devel-le...@lists.fedoraproject.org Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/devel@lists.fedoraproject.org Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue