News [LWN.net] [$] A loadable crypto module for FIPS certification

News

LinuxBot

Member
Joined
Apr 25, 2017
Messages
6,375
Reaction score
94
Credits
-1,257
Many organizations require US Federal Information Processing Standard (FIPS) certification of the crypto code they are running. The certification process is lengthy, but the bigger problem is that the way the crypto subsystem is built into the kernel makes the result unable to be reused across kernel updates. I have proposed a patch series that decouples the crypto subsystem into a standalone loadable module, allowing a certified crypto module to be reused with multiple kernels and, thus, requiring fewer lengthy recertification delays.

Source: https://lwn.net/Articles/1073759/

Aggregated via Linux News
 


Follow Linux.org

Members online


Top