At the moment OpenSSL FIPS validation supports ANSI X9.31 with AES128 for RNG, however it will be outdated in 2015.

Another alternative RNG in OpenSSL FIPS is SP800-90 DRBG, however the new requirement is to use DRBG per SP800-90A.

Are the DRBGs in SP800-90/OpenSSL-FIPS-2.0.9 the same as what SP800-90A requires? Otherwise how can OpenSSL 2.0 FIPS be used in any new validations?

Thanks,
xxiao

_______________________________________________
openssl-users mailing list
To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-users

Reply via email to