Then I am afraid fips compliance is impossible due to the use of that algorithm 
without improving kergeros support :/

Regards
Armin

Am November 21, 2019 3:30:56 PM UTC schrieb "Ransom, Geoffrey M. via 
FreeRDP-devel" <freerdp-devel@lists.sourceforge.net>:
>
>
>As for the NLA issue, you could just remove the line and check if it
>works
>(there have been some improvements regarding NLA, so the force off
>might be outdated)
>
>I tired that. freerdp dies when openssl fails with a fips error. It
>looks like openssl calls assert() which makes sense if you have FIPS
>enabled and try to do something that is not FIPS compliant.
>
>evp_enc.c(92): OpenSSL intenral error, assertion failed: Cipher update
>previous FIPS forbidden algorithm error ignored
>    Aborted (core dumped) 
>
>
>_______________________________________________
>FreeRDP-devel mailing list
>FreeRDP-devel@lists.sourceforge.net
>https://lists.sourceforge.net/lists/listinfo/freerdp-devel


_______________________________________________
FreeRDP-devel mailing list
FreeRDP-devel@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/freerdp-devel

Reply via email to