Hi,

In openssl, if I try to use anything using PBKD (PKCS#5 PBKDF2 in particular) 
when in FIPS enabled mode, it returns an error.

Can someone point me to the relevant documentation in FIPS 140-2 that disallows 
the use of PBKD functionality? In particular, when used to encrypt PKCS#12 
files, etc.

The implementation guide does disallow it for key establishment purposes (7.1 
Acceptable Key Establishment Protocols) but what about just common-or-garden 
key derivation?

Thanks for any guidance or assistance,

Carl




______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    openssl-users@openssl.org
Automated List Manager                           majord...@openssl.org

Reply via email to