summaryrefslogtreecommitdiffstats
path: root/README.FIPS
blob: 2829bf789bd79073eafbf3c835088536742b640e (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
Preliminary status and build information for FIPS module v2.0

To build the module do:

./config fipscanisterbuild
make

Build should complete without errors.

Run test suite:

test/fips_test_suite

again should complete without errors.

Run test vectors: 

1. Download an appropriate set of testvectors from www.openssl.org/docs/fips
   those for 2007 are OK.

2. Extract the files to a suitable directory.

3. Run the test vector perl script, for example:

   cd fips
   perl fipsalgtest.pl --dir=/wherever/stuff/was/extracted

4. It should say "passed all tests" at the end. Report full details of any
   failures.


Known issues:

No Windows support. 
Algorithm tests are pre-2011.
No SP800-90 PRNG.
No ECDSA2 support.
No DSA2 support: work in progress.
No GCM.
No CMAC.