Francis and all,

Your blog article on this is informative:

https://www.isc.org/blogs/the-crypto-library-disaster/

Personally I think the insistence on FIPS-2 certification is a bit
misplaced. Certification can actually make organizations less agile in
responding to security problems, thereby ultimately less secure rather
than more.

Still, some administrators have that requirement, so crypto agility is
ultimately a good thing. :)

Cheers,

--
Shane

Attachment: pgp9YACOGr0gF.pgp
Description: OpenPGP digital signature

_______________________________________________
Kea-users mailing list
[email protected]
https://lists.isc.org/mailman/listinfo/kea-users

Reply via email to