OpenSSL gets FIPS certification
U.S. federal agencies must use FIPS-compliant products to secure networks carrying unclassified but sensitive data.
The OpenSSL library uses the Advanced Encryption Standard, the Data Encryption Standard, the Digital Signature Algorithm, FIPS-mode RSA and the FIPS-qualified Secure Hash Algorithm-1, or SH-1.
Software testing was sponsored by the Defense Department's Defense Medical Logistics Standard Support Program, Hewlett-Packard Co., OSSI, PreVal Specialists Inc., OpenSSL developers and the Domus IT Security Laboratory of Ottawa, which did the validation testing.
The link for this article located at GCN is no longer available.