On Tue, Jan 11, 2011, Xiao, Ying wrote: > Hi Steve, > > Sorry for the same questions asked many times by Openssl users. > > Will the new random number generator specified in FIPS SP80-900 be > included or planned to be include in the openssl v1.2.2 modules. I don't > see it in the source code. > > Openssl is the best of all the security libraries we tried in term of > performance and features, but because of the new random number, we have > to investigate using other library such as Mozilla Network Security > Services etc. >
The new validation will include support for SP800-90. We can't include it in the 1.2.2 validation because adding a new algorithm requires a new validation. It would be possible to backport the code to 1.2.2 but the result would not be validated. Steve. -- Dr Stephen N. Henson. OpenSSL project core developer. Commercial tech support now available see: http://www.openssl.org ______________________________________________________________________ OpenSSL Project http://www.openssl.org Development Mailing List openssl-dev@openssl.org Automated List Manager majord...@openssl.org