On 10/20/21 3:45 PM, Eric Molitor wrote: > I need to sort out a few more defects but will try both BoringSSL and the FIPS > Version of OpenSSL 3.0. In theory both should "just work" with this > integration. > Albeit with the caveat that FIPS 140-2 verification ended last mouth and I > don't > believe either BoringSSL or OpenSSL 3 are FIPS 140-3 validated yet.
Using a certified library is an understandable reason to use an external implementation. I still need an internal implementation to promote it out of pending, but android's been using a half-dozen commands out of pending for years. (They're on my todo list...) Rob _______________________________________________ Toybox mailing list [email protected] http://lists.landley.net/listinfo.cgi/toybox-landley.net
