diff options
author | Dr. Stephen Henson <steve@openssl.org> | 2011-02-01 18:14:07 +0100 |
---|---|---|
committer | Dr. Stephen Henson <steve@openssl.org> | 2011-02-01 18:14:07 +0100 |
commit | 5eedacc904c0203f30163094d9ede9d091c32d42 (patch) | |
tree | be975e44c38f8a26d2858d1d774d725a9a317211 | |
parent | Since FIPS 186-3 specifies we use the leftmost bits of the digest (diff) | |
download | openssl-5eedacc904c0203f30163094d9ede9d091c32d42.tar.xz openssl-5eedacc904c0203f30163094d9ede9d091c32d42.zip |
update README.FIPS
-rw-r--r-- | README.FIPS | 18 |
1 files changed, 16 insertions, 2 deletions
diff --git a/README.FIPS b/README.FIPS index edd92e3292..2829bf789b 100644 --- a/README.FIPS +++ b/README.FIPS @@ -13,7 +13,21 @@ test/fips_test_suite again should complete without errors. -Run test vectors: TBA. +Run test vectors: + +1. Download an appropriate set of testvectors from www.openssl.org/docs/fips + those for 2007 are OK. + +2. Extract the files to a suitable directory. + +3. Run the test vector perl script, for example: + + cd fips + perl fipsalgtest.pl --dir=/wherever/stuff/was/extracted + +4. It should say "passed all tests" at the end. Report full details of any + failures. + Known issues: @@ -21,6 +35,6 @@ No Windows support. Algorithm tests are pre-2011. No SP800-90 PRNG. No ECDSA2 support. -No DSA2 support. +No DSA2 support: work in progress. No GCM. No CMAC. |