Hi All,

We are using OpenSSL 1.0.1c along with OpenSSL FIPS object Module in our
product.  Recently we have added TPM support.  TPM chip is not FIPS
compliant. Hence in FIPS mode none of the SSL applications are working.

I wanted inputs on the following questions. I would be grateful to receive
any help.

1. According to FIPS user guide *OpenSSL FIPS 140-2 User Guide : 2.6.2
Algorithms Available in FIPS Mode, *with the current TPM chip we cannot
make the device FIPS complaint. Is my understanding correct?

2. Say if we move to FIPS compliant TPM chip, do we have to add engine
support in OpenSSL FIPS object Module?

3. What are the alternative methods to support TPM in FIPS mode.


Thanks and Regards
Jayalakshmi

Reply via email to