Paul Wouters wrote:

> Oh, I did not know about this one. I guess once we (the application)
> detect the system is in FIPS mode, we could verify that NSS is as
> well.

>>  Finally, is there any example code out there that uses NSS in FIPS
>>  mode ?

> libreswan uses NSS and supports a FIPS mode.

I know.  I wouldn't call libreswan 'example code', though :)

I have browsed the code although did not find what I was looking for,
which is exactly what you mentioned above.  In our systems we have to
verify that 'everything' is in FIPS mode at boot, before applications
are kicking off.

Cheers.




--
View this message in context: 
http://mozilla.6506.n7.nabble.com/Using-NSS-in-FIPS-mode-tp350446p350499.html
Sent from the Mozilla - Cryptography mailing list archive at Nabble.com.
-- 
dev-tech-crypto mailing list
dev-tech-crypto@lists.mozilla.org
https://lists.mozilla.org/listinfo/dev-tech-crypto

Reply via email to