Hi Michael,
fips_mode is default, i.e. disabled. At least according to charon/openssl.conf.
I was not referring to the openssl plugin, but clearly to the kernel. Check e.g. via `cat /proc/sys/crypto/fips_enabled` if it runs in FIPS mode. Note that this can only be changed via `fips` kernel command line option.
Regards, Tobias