No fips and --with-fipsdir arguments in OpenSSL 1.0.0l configure script.

2014-01-08 Thread Abdul Anshad
Hello All, I noticed in trying to build OpenSSL 1.0.0l that, Configure doesn't accept the fips and --with-fipsdir= arguments. But, the OpenSSl 1.0.1f and OpenSSL 0.9.8y accepts the same. Does that mean that the OpenSSL 1.0.0l wont support fips mode ? is the branch OpenSSL 1.0.0 still under

Re: No fips and --with-fipsdir arguments in OpenSSL 1.0.0l configure script.

2014-01-08 Thread Dr. Stephen Henson
On Wed, Jan 08, 2014, Abdul Anshad wrote: Hello All, I noticed in trying to build OpenSSL 1.0.0l that, Configure doesn't accept the fips and --with-fipsdir= arguments. But, the OpenSSl 1.0.1f and OpenSSL 0.9.8y accepts the same. Does that mean that the OpenSSL 1.0.0l wont support fips

Re: No fips and --with-fipsdir arguments in OpenSSL 1.0.0l configure script.

2014-01-08 Thread Abdul Anshad
Thank you for the information. Is there any patch or unofficial release which supports FIPS mode in OpenSSL 1.0.0 branch for Solaris 10 platform ? Regards, Abdul On 1/8/2014 6:06 PM, Dr. Stephen Henson wrote: On Wed, Jan 08, 2014, Abdul Anshad wrote: Hello All, I noticed in trying to

Re: No fips and --with-fipsdir arguments in OpenSSL 1.0.0l configure script.

2014-01-08 Thread Stephan Mueller
Am Mittwoch, 8. Januar 2014, 13:36:37 schrieb Dr. Stephen Henson: Hi Stephen, On Wed, Jan 08, 2014, Abdul Anshad wrote: Hello All, I noticed in trying to build OpenSSL 1.0.0l that, Configure doesn't accept the fips and --with-fipsdir= arguments. But, the OpenSSl 1.0.1f and OpenSSL 0.9.8y

Re: No fips and --with-fipsdir arguments in OpenSSL 1.0.0l configure script.

2014-01-08 Thread Steve Marquess
On 01/08/2014 07:48 AM, Stephan Mueller wrote: Am Mittwoch, 8. Januar 2014, 13:36:37 schrieb Dr. Stephen Henson: Hi Stephen, On Wed, Jan 08, 2014, Abdul Anshad wrote: Hello All, I noticed in trying to build OpenSSL 1.0.0l that, Configure doesn't accept the fips and --with-fipsdir=

Re: No fips and --with-fipsdir arguments in OpenSSL 1.0.0l configure script.

2014-01-08 Thread Steve Marquess
On 01/08/2014 08:21 AM, Stephan Mueller wrote: ... Once the validated FIPS Object Module has been generated it is usually combined with an OpenSSL distribution in order to provide the standard OpenSSL API. Any 1.0.1 release can be used for this purpose. I thought that rather specifically

Re: No fips and --with-fipsdir arguments in OpenSSL 1.0.0l configure script.

2014-01-08 Thread Stephan Mueller
Am Mittwoch, 8. Januar 2014, 08:26:52 schrieb Steve Marquess: Hi Steve, On 01/08/2014 08:21 AM, Stephan Mueller wrote: ... Once the validated FIPS Object Module has been generated it is usually combined with an OpenSSL distribution in order to provide the standard OpenSSL API. Any 1.0.1

Re: No fips and --with-fipsdir arguments in OpenSSL 1.0.0l configure script.

2014-01-08 Thread Brad House
Ok. If there's a way we can improve that document I want to know. It's a complex topic. When OpenSSL 1.0.2 is released the User Guide will be updated to state 1.0.1 and 1.0.2 as the current FIPS module will also be compatible with 1.0.2. I think the description is perfectly fine. I only got