View Single Post

  #1 (permalink)  
Old 02-18-2005
Steve Marquess
 
Posts: n/a
Default RE: OpenSSH and OpenSSL 0.9.7.e with FIPS

Michael Selvesteen wrote:

>I use OpenSSH 3.9 on HP-UX 11vi. I compiled OpenSSL 0.9.7e by enabling
>FIPS. I found in the FIPS document that OpenSSL now contains the
>FIPS 140 specific cryptographic API and algorithm implementations
>only; i.e. the API for low level algorithms (RSA, AES, 3DES, DSA,
>SHA-1). Does it have any functional impacts on SSH.
>
>Will all the encryption algorithm used by SSH continue to work when
>FIPS is enabled in OpenSSL.


Check the openssh-unix-dev archives around the June 2004 timeframe for
a patch and discussion on a FIPS mode OpenSSH.

Note that the FIPS mode OpenSSL validation is *still* pending.

-Steve M.

Steve Marquess
Veridical Systems, Inc.
1829 Mount Ephraim Road
Adamstown, MD 21710
301-524-9915 cell (weekdays)
301-831-8447 landline/fax
marquess@veridicalsystems.com
marquess@oss-institute.org

_______________________________________________
openssh-unix-dev mailing list
openssh-unix-dev@mindrot.org
http://www.mindrot.org/mailman/listi...enssh-unix-dev
Reply With Quote