Hello list,
I am unsure how OpenSSL FIPS 1.2 can be deployed. I read that it can be linked
static but also loaded dynamically, but I also read that it can only be linked
static (as FIPS 1.1.2)
1) Can it be linked dynamically?
2) If I would like to link it dynamically when/where do I link the
fipscanister.o?
3) Can it only be linked to binaries or is it possible to link it
(static/dynamic) to a static lib (*.a) or to an shared object (*.so)? How/Where
to incorporate the fips_premain.c?
4) DH-Key-Exchange: I read that it is not certified but not disabled. Is it
compliant to use it or not? Why is it handled in this special way?
5) I have the UserGuide1.2 from February 2008 but it is only a draft. Is there a
newer one?
Thanks
Jan
______________________________________________________________________
OpenSSL Project http://www.openssl.org
User Support Mailing List openssl-users@openssl.org
Automated List Manager [EMAIL PROTECTED]