No, the test/fips_test_suite does not run correctly, here's the results:

        FIPS-mode test application

1. Non-Approved cryptographic operation test...
        a. Included algorithm (D-H)...successful
ERROR:2d072065:lib=45,func=114,reason=101:file=fips_rand_selftest.c:line=364:
2. Automatic power-up self test...FAILED!

/Russ


Dr. Stephen Henson wrote:
> 
> On Thu, Feb 12, 2009, RussMitch wrote:
> 
>> 
>> Hello,
>> 
>> I've built openssl-0.9.8j on Solaris10 Update 5 as follows:
>> 
>> ./config fipscanisterbuild
>> make clean
>> make
>> 
> 
> That's against the security policy.
> 
>> Next, I've created a simple program that calls FIPS_mode_set(1) and links
>> to
>> the libraries in /usr/local/ssl/fips/lib.
>> 
>> The first two tests, FIPS_signature_witness() and
>> FIPS_check_incore_fingerprint() PASS.
>> 
>> The third test, FIPS_selftest_rng FAILS.
>> 
>> I've also tried the exact same procedure on a Fedora Core5 linux based
>> machine, and all of the tests PASS.
>> 
>> Anyone have an idea of what may be wrong?
>> 
> 
> Does test/fips_test_suite run correctly?
> 
> Steve.
> --
> Dr Stephen N. Henson. Email, S/MIME and PGP keys: see homepage
> OpenSSL project core developer and freelance consultant.
> Homepage: http://www.drh-consultancy.demon.co.uk
> ______________________________________________________________________
> OpenSSL Project                                 http://www.openssl.org
> Development Mailing List                       [email protected]
> Automated List Manager                           [email protected]
> 
> 

-- 
View this message in context: 
http://www.nabble.com/FIPS_selftest_rng-fails-on-Solaris10-x86-tp21980325p21983578.html
Sent from the OpenSSL - Dev mailing list archive at Nabble.com.

______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
Development Mailing List                       [email protected]
Automated List Manager                           [email protected]

Reply via email to