The following appears in the FIPS 140-2 Validation
presentation from Linux World Expo.
(oss-institute.org/OpenSSL/LWE_040406_BOF.pdf) Page 23: FIPS mode requirements: * The application must use only OpenSSL for all
cryptography. Where can I find this in the security policy? Are there any exceptions? What if “other
crypto” is also FIPS validated? What is the purpose of the requirement? |
- Not FIPS if app uses other crypto? Lyon, Jay
- Re: Not FIPS if app uses other crypto? Kyle Hamilton
- Re: Not FIPS if app uses other crypto? Kyle Hamilton
- RE: Not FIPS if app uses other crypto? Lyon, Jay
- Re: Not FIPS if app uses other crypto? Kyle Hamilton
- Re: Not FIPS if app uses other crypto? Richard Salz
- RE: Not FIPS if app uses other crypto? Hank Cohen
- RE: Not FIPS if app uses other crypto? Richard Salz
- RE: Not FIPS if app uses other crypto? Hank Cohen
- Re: Not FIPS if app uses other crypto? Kyle Hamilton
- Re: Not FIPS if app uses other crypto? Dr. Stephen Henson