Hi,

Tanveer Salim wrote on Tue, Aug 05, 2025 at 03:12:56AM +0200:

> If you don't mind me asking why does OpenBSD consider FIPS compliance
> irrelevant.

The official position was explained here:

https://marc.info/?l=openbsd-misc&m=139819485423701

Also study this presentation if you are interested
what OpenBSD crypto development priorities are.
Yes, Bob's talk is a decade old, but while *lots*
of progress has been made in that decade, the basic
priorities did not change:

https://www.openbsd.org/papers/bsdcan14-libressl/
specifically:
https://www.openbsd.org/papers/bsdcan14-libressl/mgp00028.html
https://www.openbsd.org/papers/bsdcan14-libressl/mgp00029.html

> Apparently even the US DoD makes use of OpenBSD so I am now wondering
> why the US Federal Government would make of OpenBSD in that case.

I have no idea whether it's true that they do, but if it is,
then probably because it's free, functional, and secure.

Everybody is welcome to use OpenBSD for any purpose,
even a military organization for military purposes.

Yours,
  Ingo

Reply via email to