#5 Force FIPS mode for NSS.
Closed: Fixed None Opened 10 years ago by nalin.

NSS is FIPS-validated, but we currently don't force NSS into FIPS mode. This might impact the tests if FIPS mode adds restrictions on the sizes of keys or digests that we generate.


Fixed in 0.62 and later: we heed the system-wide setting read from /proc/sys/crypto/fips_enabled.

Login to comment on this ticket.

Metadata