Hello list,

I am unsure how OpenSSL FIPS 1.2 can be deployed. I read that it can be linked static but also loaded dynamically, but I also read that it can only be linked static (as FIPS 1.1.2)

1) Can it be linked dynamically?

2) If I would like to link it dynamically when/where do I link the 
fipscanister.o?

3) Can it only be linked to binaries or is it possible to link it (static/dynamic) to a static lib (*.a) or to an shared object (*.so)? How/Where to incorporate the fips_premain.c?

4) DH-Key-Exchange: I read that it is not certified but not disabled. Is it compliant to use it or not? Why is it handled in this special way?

5) I have the UserGuide1.2 from February 2008 but it is only a draft. Is there a newer one?

Thanks
Jan

______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    openssl-users@openssl.org
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to