Hi Michael,
fips_mode is default, i.e. disabled. At least according to
charon/openssl.conf.
I was not referring to the openssl plugin, but clearly to the kernel.
Check e.g. via `cat /proc/sys/crypto/fips_enabled` if it runs in FIPS
mode. Note that this can only be changed via `fips` kernel
Hi Michael,
On the embedded device we have the following logs entries:
SYS DLOG 346 log info verbose 1 charon-systemd: 11[CHD] CHILD_SA
imx-nad{1004} state change: CREATED => INSTALLING
SYS DLOG 346 log info verbose 1 charon-systemd: 11[CHD] using
CHACHA20_POLY1305 for encryption
SYS DLOG 346