> Ah ha! This explanation makes sense to me and indeed pointed me at the real > problem. I had recompiled OpenSSL but I forgot to update the hmac in fips.cnf > via fipsinstall. So yes, the fips provider was failing to activate because of > that. As soon I fixed the hmac RAND_status() started working for me. So > THANKS for that! :-)
Not producing any diagnostic output for a failed checksum seems like a bug. Pauli -- Dr Paul Dale | Distinguished Architect | Cryptographic Foundations Phone +61 7 3031 7217 Oracle Australia