Re: SHA1 signatures in FIPS mode w/ TLS 1.2

2014-07-16 Thread Dr. Stephen Henson
On Wed, Jul 16, 2014, Jason Schultz wrote: > According to this wiki page: > > http://wiki.openssl.org/index.php/FIPS_mode_and_TLS > > When in FIPS mode, SHA1 signatures can not be used when using the TLS 1.2 > protocol: "If that wasn't enough there's another complication. For TLS v1.2 > you have

RE: SHA1 signatures in FIPS mode w/ TLS 1.2

2014-07-16 Thread Jason Schultz
Another follow up question. The Wiki page refers to FIPS 186-4. Are these restrictions only for FIPS 186-4, or FIPS 140-2 as well? From: jetso...@hotmail.com To: openssl-users@openssl.org Subject: SHA1 signatures in FIPS mode w/ TLS 1.2 Date: Wed, 16 Jul 2014 13:31:35 + According to this

SHA1 signatures in FIPS mode w/ TLS 1.2

2014-07-16 Thread Jason Schultz
According to this wiki page: http://wiki.openssl.org/index.php/FIPS_mode_and_TLS When in FIPS mode, SHA1 signatures can not be used when using the TLS 1.2 protocol: "If that wasn't enough there's another complication. For TLS v1.2 you have to restrict the supported signature algorithms to