Jira (PUP-7512) Explore FIPS certification of our openssl

2 views
Skip to first unread message

Eric Sorenson (JIRA)

unread,
May 10, 2017, 2:08:03 AM5/10/17
to puppe...@googlegroups.com
Eric Sorenson created an issue
 
Puppet / Task PUP-7512
Explore FIPS certification of our openssl
Issue Type: Task Task
Assignee: Unassigned
Created: 2017/05/09 11:07 PM
Priority: Normal Normal
Reporter: Eric Sorenson

The Openssl FIPS documentation states:

The OpenSSL FIPS Object Module validation is unique among all FIPS 140-2 validations in that the product is "delivered" in source code form, meaning that if you can use it exactly as is and can build it for your platform according to a very specific set of instructions, then you can use it as validated cryptography.

The OpenSSL library is also unique in that you can download and use it for free.

If you require source code or build process changes for your intended application, then you cannot use the open source based validated module – you must obtain your own validation. This situation is common; see "Private Label" validation, below.

As an adjunct to the approach described in PUP-7511, it's probably worth understanding whether this situation applies to our builds and whether we could get a validated openssl library without an unreasonable effort.

Add Comment Add Comment
 
This message was sent by Atlassian JIRA (v6.4.14#64029-sha1:ae256fe)
Atlassian logo

Josh Cooper (JIRA)

unread,
May 16, 2017, 7:17:03 PM5/16/17
to puppe...@googlegroups.com

Josh Cooper (JIRA)

unread,
May 16, 2017, 7:17:03 PM5/16/17
to puppe...@googlegroups.com
Josh Cooper updated an issue
Change By: Josh Cooper
Labels: triaged

Jayant Sane (JIRA)

unread,
Jan 8, 2018, 5:02:05 PM1/8/18
to puppe...@googlegroups.com
Jayant Sane updated an issue
Change By: Jayant Sane
Fix Version/s: PUP 5.4.0
Fix Version/s: PUP 5.y
This message was sent by Atlassian JIRA (v7.0.2#70111-sha1:88534db)
Atlassian logo

Josh Cooper (JIRA)

unread,
Jul 15, 2019, 7:50:04 PM7/15/19
to puppe...@googlegroups.com
Josh Cooper updated an issue
Change By: Josh Cooper
Fix Version/s: PUP 5.y
This message was sent by Atlassian JIRA (v7.7.1#77002-sha1:e75ca93)
Atlassian logo
Reply all
Reply to author
Forward
0 new messages