No, the test/fips_test_suite does not run correctly, here's the results:
FIPS-mode test application
1. Non-Approved cryptographic operation test...
a. Included algorithm (D-H)...successful
ERROR:2d072065:lib=45,func=114,reason=101:file=fips_rand_selftest.c:line=364:
2. Automatic power-up self test...FAILED!
/Russ
Dr. Stephen Henson wrote:
>
> On Thu, Feb 12, 2009, RussMitch wrote:
>
>>
>> Hello,
>>
>> I've built openssl-0.9.8j on Solaris10 Update 5 as follows:
>>
>> ./config fipscanisterbuild
>> make clean
>> make
>>
>
> That's against the security policy.
>
>> Next, I've created a simple program that calls FIPS_mode_set(1) and links
>> to
>> the libraries in /usr/local/ssl/fips/lib.
>>
>> The first two tests, FIPS_signature_witness() and
>> FIPS_check_incore_fingerprint() PASS.
>>
>> The third test, FIPS_selftest_rng FAILS.
>>
>> I've also tried the exact same procedure on a Fedora Core5 linux based
>> machine, and all of the tests PASS.
>>
>> Anyone have an idea of what may be wrong?
>>
>
> Does test/fips_test_suite run correctly?
>
> Steve.
> --
> Dr Stephen N. Henson. Email, S/MIME and PGP keys: see homepage
> OpenSSL project core developer and freelance consultant.
> Homepage: http://www.drh-consultancy.demon.co.uk
> ______________________________________________________________________
> OpenSSL Project http://www.openssl.org
> Development Mailing List [email protected]
> Automated List Manager [email protected]
>
>
--
View this message in context:
http://www.nabble.com/FIPS_selftest_rng-fails-on-Solaris10-x86-tp21980325p21983578.html
Sent from the OpenSSL - Dev mailing list archive at Nabble.com.
______________________________________________________________________
OpenSSL Project http://www.openssl.org
Development Mailing List [email protected]
Automated List Manager [email protected]