Bug 1660177
Summary: | FIPS-140: Tracker for compliance in .NET Core packages | ||
---|---|---|---|
Product: | dotNET | Reporter: | David Mulford <dmulford> |
Component: | rh-dotnet60 | Assignee: | Omair Majid <omajid> |
Status: | NEW --- | QA Contact: | jiri vanek <jvanek> |
Severity: | unspecified | Docs Contact: | Jacob Taylor Valdez <jvaldez> |
Priority: | unspecified | ||
Version: | 6.0 | CC: | andrew.slice, bodavis, dbhole, lvaleeva, rwagner |
Target Milestone: | ga | Keywords: | FutureFeature |
Target Release: | 6.0 | ||
Hardware: | Unspecified | ||
OS: | Unspecified | ||
Whiteboard: | |||
Fixed In Version: | Doc Type: | If docs needed, set a value | |
Doc Text: | Story Points: | --- | |
Clone Of: | Environment: | ||
Last Closed: | Type: | Bug | |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: |
Description
David Mulford
2018-12-17 17:29:28 UTC
Any update on this? The upstream issue [1] seems to also have gone silent, so let me know if there is anything needed from me to push this forward. [1] https://github.com/dotnet/corefx/issues/29417 .NET Core 2.2 has gone EOL. I am re-targeting the bug to the latest version, .NET Core 3.1. (In reply to David Mulford from comment #0) > .NET Core calls out to OpenSSL for all but the following crypto algorithms. > > - RSA-PSS > - RSA-OEAP > - IDEA With recent versions of .NET: - It's my understanding that RSA-PSS and RSA-OEAP are only used on the fallback code paths, if OpenSSL is missing these features. These code paths shouldn't get executed on RHEL. - The IDEA implementation is a unit test case. It's not part of the .NET product itself. The only IDEA implementation that .NET applications can make use of is the OpenSSL-based one. |