Is shared and static crypto libraries FIPS compliant

Previous Topic Next Topic
 
classic Classic list List threaded Threaded
1 message Options
Reply | Threaded
Open this post in threaded view
|

Is shared and static crypto libraries FIPS compliant

prakash babu
Hello All,
 
Is both the static and shared crypto libraries FIPS compliant.
 
0.9.7e
=========
The static crypto library is fips compliant.
The integrity of libcrypto.a is checked using its HMAC-SHA1 fingerprint libcrypto.a.sha1
 
There is no checking for shared library libcrypto.so
 
0.9.7j-dev
==========
The shared crypto library is fips compliant.
The integrity of libcrypto.so is  checked using the HMAC-SHA1 fingerprint embedded into the library using fips_premain.c
 
There is no checking for the static library libcrypto.a since libcrypto.sha1 is not generated.
 
Why is this difference ?
 
Thanks,
Prakash


Yahoo! Mail - Helps protect you from nasty viruses.