prakgen wrote:
Thanks Steve. This happened on a system with Intel dual core 2.4ghz
processor and 2gig ram. Is the observed cpu pattern expected on such
platforms? You mentioned it will be less painful after upcoming
validation. Do you mean change in implementation for speedier self-tests?
...
You are seeing the "POST" (Power Up Self Test) mandated by FIPS
140-2. It is a huge performance hit on low powered platforms
(sometimes taking tens or even hundreds of seconds). We're going to
make it significantly less painful for the upcoming new validation
now in progress, but there will always be a performance hit relative
to the same software without enabling FIPS mode.
Yes, we will be making the POST as time efficient as we can within the
boundaries of what is mandated by FIPS 140-2. Those tests are very
compute-intensive and so will tax any CPU for some period of time.
-Steve M.
--
Steve Marquess
The OpenSSL Software Foundation, Inc.
1829 Mount Ephraim Road
Adamstown, MD 21710
USA
+1 877-673-6775
marqu...@opensslfoundation.com
______________________________________________________________________
OpenSSL Project http://www.openssl.org
User Support Mailing List openssl-users@openssl.org
Automated List Manager majord...@openssl.org