SunPKCS11's Secmod and external modules in FIPS mode

Martin Balao mbalao at redhat.com
Thu Jan 23 22:11:41 UTC 2020


Hi Sean,

On 1/21/20 5:47 PM, Sean Mullan wrote:
> 
> I asked around but no-one can quite recall why the fips variable was set
> this way. Our best guess is that it was set this way as we did not have
> any tests for this use case.
> 
> I don't have any issue with changing this. However, is there a way you
> could provide some tests (ex: on linux) to make sure it is working as
> expected?
> 

Thanks for having a look at this. I'll propose a change and either an
automated reproducer or manual steps to verify on Linux.

Kind regards,
Martin.-




More information about the security-dev mailing list