I'm replacing OpenSSL 1.0.2 with OpenSSL 3.0 in an embedded environment with
>> very limited flash space. We need and use libcrypto and libssl but we have
>> no need for the openssl binary. To date it was never necessary to ship this
>> utility in our product. Now with OpenSSL
need for the openssl binary. To date it was never necessary to ship
> this utility in our product. Now with OpenSSL 3.0 it appears the only way
> to get FIPS support is to run "openssl fipsinstall ..." to create a FIPS
> config file to be included by the main config file. How
FIPS support is to run "openssl fipsinstall ..." to create a FIPS config file
> to be included by the main config file. However, at nearly 1MB in size this
> binary is prohibitively large.
>
> I am able to reproduce the output of "openssl fipsinstall ..." with a
&g
s the only way
to get FIPS support is to run "openssl fipsinstall ..." to create a FIPS
config file to be included by the main config file. However, at nearly 1MB
in size this binary is prohibitively large.
I am able to reproduce the output of "openssl fipsinstall ..." wit