On 10/20/21 3:45 PM, Eric Molitor wrote:
> I need to sort out a few more defects but will try both BoringSSL and the FIPS
> Version of OpenSSL 3.0. In theory both should "just work" with this 
> integration.
> Albeit with the caveat that FIPS 140-2 verification ended last mouth and I 
> don't
> believe either BoringSSL or OpenSSL 3 are FIPS 140-3 validated yet. 

Using a certified library is an understandable reason to use an external
implementation. I still need an internal implementation to promote it out of
pending, but android's been using a half-dozen commands out of pending for
years. (They're on my todo list...)

Rob
_______________________________________________
Toybox mailing list
[email protected]
http://lists.landley.net/listinfo.cgi/toybox-landley.net

Reply via email to