Difference between revisions of "FIPS module 3.0"
From OpenSSLWiki
Jump to navigationJump to search (Update the old plans to be something closer to what the current plans are for the next FIPS module) |
(remove historical information that is out of date) |
||
Line 1: | Line 1: | ||
− | The 3.0 FIPS module will be conceptually | + | The 3.0 FIPS module will be conceptually different to the preceeding line of ''OpenSSL FIPS Object Module'' cryptographic modules. |
+ | An extensive reworking of the internals is planned, to address some issues stemming from the historical origins and subsequent ad-hoc evolution of previous modules. | ||
+ | |||
+ | Refer to the [https://www.openssl.org/blog/blog/2018/09/25/fips/ OpenSSL FIPS 140-2 blog]. | ||
== Note == | == Note == | ||
− | These notes are | + | These notes are subject to change going forward. |
− | What we | + | What we won't do: |
1. Any "light" or other versions of the FIPS module (i.e fewer algorithm implementations). | 1. Any "light" or other versions of the FIPS module (i.e fewer algorithm implementations). | ||
− | 2. Matching set of platforms. The initial validation will only include a minimal platform set. | + | 2. Matching set of platforms. The initial validation will only include a very minimal platform set. |
3. Any substantial additions or changes to the module once the initial development is substantially complete. | 3. Any substantial additions or changes to the module once the initial development is substantially complete. | ||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− |
Latest revision as of 02:12, 1 October 2018
The 3.0 FIPS module will be conceptually different to the preceeding line of OpenSSL FIPS Object Module cryptographic modules. An extensive reworking of the internals is planned, to address some issues stemming from the historical origins and subsequent ad-hoc evolution of previous modules.
Refer to the OpenSSL FIPS 140-2 blog.
Note[edit]
These notes are subject to change going forward.
What we won't do:
1. Any "light" or other versions of the FIPS module (i.e fewer algorithm implementations).
2. Matching set of platforms. The initial validation will only include a very minimal platform set.
3. Any substantial additions or changes to the module once the initial development is substantially complete.