提交 c9adde06 编写于 作者: D Dr. Stephen Henson

Update status.

上级 614dd926
...@@ -76,14 +76,8 @@ Known issues: ...@@ -76,14 +76,8 @@ Known issues:
Algorithm tests are pre-2011. Algorithm tests are pre-2011.
The fipslagtest.pl script wont auto run new algorithm tests such as DSA2. The fipslagtest.pl script wont auto run new algorithm tests such as DSA2.
Usage of ECDH/DH needs review and whether any KDFs need to be implemented. Code needs extensively reviewing to ensure it builds correctly on
Selftests need updating with larger key sizes in some cases and redundant supported platforms and is compliant with FIPS 140-2.
tests pruned.
SP800-90 DRBG needs more work: check for compliance, continuous PRNG test
when entropy gathering, periodic health tests.
Some algorithms need to check security strength of PRNG: keygen etc.
No CCM.
No XTS.
The "FIPS capable OpenSSL" is not yet complete: meaning that the rest of The "FIPS capable OpenSSL" is not yet complete: meaning that the rest of
OpenSSL doesn't always use the correct FIPS module APIs and block others OpenSSL doesn't always use the correct FIPS module APIs and block others
in FIPS mode. in FIPS mode.
Markdown is supported
0% .
You are about to add 0 people to the discussion. Proceed with caution.
先完成此消息的编辑!
想要评论请 注册