On 7/15/2011 6:48 PM, Tatiana Evers wrote:
> Hi Steve,
> 
> I want my software be FIPS 140-2 validated, not just experiment with source.  
> The Security
> Policy document point me to use openssl-fips-1.2.3.tar.gz. Should I
> remove openssl-0.9.8r.tar.gz? 

You cannot build the FIPS canister from openssl-0.9.8r.  You may combine
the validated FIPS canister generated from openssl-fips-1.2.3 with the
openssl-0.9.8r package.  Please stop to read the documentation, because
if you don't follow it, you don't have a FIPS validated solution.
______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
Development Mailing List                       [email protected]
Automated List Manager                           [email protected]

Reply via email to