[gnutls-devel] GnuTLS | fips: add functions to inspect thread-local FIPS operation state (!1465)

Read-only notification of GnuTLS library development activities gnutls-devel at lists.gnutls.org
Sun Nov 28 11:35:34 CET 2021




Stephan Mueller started a new discussion on lib/nettle/pk.c: https://gitlab.com/gnutls/gnutls/-/merge_requests/1465#note_745617497

>  					       params->raw_pub.data,
>  					       params->raw_priv.data);
>  			if (ret < 0)
> -				goto fail;
> +				goto cleanup;
>  
>  			break;
>  		}
>  	case GNUTLS_PK_ECDSA:

See comment on ECC above: shouldn't there be a check that only approved curves are used? All other curves should be treated with not_approved = true;

-- 
Reply to this email directly or view it on GitLab: https://gitlab.com/gnutls/gnutls/-/merge_requests/1465#note_745617497
You're receiving this email because of your account on gitlab.com.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.gnupg.org/pipermail/gnutls-devel/attachments/20211128/bd3e1bd8/attachment.html>


More information about the Gnutls-devel mailing list