On Tue, May 22, 2012 at 9:55 AM, Simner, John <john.sim...@siemens-enterprise.com> wrote: > Dear all, > > I am working on an embedded product which currently uses OpenSSL 0.9.8w with > FIPS support.
I'm curious: what product is this? I had a quick poke around and couldn't find any mention of OpenSSL on Siemen's websites... > We have received a request to support ECC and in particular the following > cipher suites for ECC certification TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA and > TLS_ECDH_ECDSA_WITH_AES_128_CBC_SHA. > > I can see from the header files for OpenSSL 0.9.8, the ECC ciphersuites from > draft-ietf-tls-ecc-01.txt (Mar 15, 2001) have been defined so potentially > could be used. > However, from the OpenSSL change log, I can see there were many > improvements/enhancements for ECCÂ from 0.9.8n to 1.0.0. > Have there been any improvements/enhancements on 0.9.8? > > As the embedded product must support FIPS, does anybody know whether OpenSSL > 0.9.8 has sufficient functionality to pass ECC certification with these > cipher suites? > Or will I have to upgrade to OpenSSL 1.0.0 and wait for FIPS certification > on OpenSSL 1.0.0 to be complete? > > Thank you for your assistance and I look forward to your responses. > > Thanks.. > John > > John Simner BSc(Hons) MSc CEng. MIET > Software Engineer > Siemens Enterprise Communications Limited > > Tel: + 44 (0) 1908 817378 > Please Note New Telephone number from 11/09/10: + 44 (0) 1908 817378 > Email: john.sim...@siemens-enterprise.com > > www.siemens.co.uk/enterprise > > Communication for the open minded > > Siemens Enterprise Communications Limited. > > Registered office: Brickhill Street, Willen Lake, Milton Keynes, MK15 > 0DJ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List openssl-users@openssl.org Automated List Manager majord...@openssl.org