summaryrefslogtreecommitdiff
path: root/README.FIPS
diff options
context:
space:
mode:
authorsteve <steve>2011-02-23 16:06:50 +0000
committersteve <steve>2011-02-23 16:06:50 +0000
commit637adf77ca1cbed76dca2fffd6bd91c89ee309be (patch)
tree4b914fc197a1dfa24bb2b02172d8e0f52b8e4d7e /README.FIPS
parent884049ec549c9d964e29c493a6e26eed9fbc4c3d (diff)
downloadopenssl-637adf77ca1cbed76dca2fffd6bd91c89ee309be.tar.gz
Update status information.
Diffstat (limited to 'README.FIPS')
-rw-r--r--README.FIPS21
1 files changed, 17 insertions, 4 deletions
diff --git a/README.FIPS b/README.FIPS
index 2829bf789..5e3b5ab79 100644
--- a/README.FIPS
+++ b/README.FIPS
@@ -28,13 +28,26 @@ Run test vectors:
4. It should say "passed all tests" at the end. Report full details of any
failures.
+Run symbol hiding test:
+
+./config fipscanisteronly -DOPENSSL_FIPSSYMS
+make
+
+This time only the fips utilities should be built.
+
+Examine the external symbols in fips/fipscanister.o they should all begin
+with FIPS or fips. One way to check with GNU nm is:
+
+nm -g --defined-only fips/fipscanister.o | grep -v -i fips
Known issues:
-No Windows support.
Algorithm tests are pre-2011.
+The fipslagtest.pl script wont auto run new algorithm tests such as DSA2.
+No ECDH.
+No primitives tests for ECDH/DH
+Selftests need updating with larger key sizes in some cases and redundant
+tests pruned.
No SP800-90 PRNG.
-No ECDSA2 support.
-No DSA2 support: work in progress.
-No GCM.
No CMAC.
+No CCM.