Hide Forgot
Description of problem: Over the years we have accumulated several downstream patches in NSS (for various reasons) which deviate from upstream in very important code paths. That makes our work very difficult on planning and implementing rebases, as well as introduces the risk of downstream bugs introduced due to that process. This project is about getting our existing FIPS140 and common criteria patches upstream. This is a tracker bug of the process.
"Pick up FIPS-140 certification work done by Red Hat" was completed.
"Support TLS 1.2 PRF with SHA-384 as the hash function" was completed.
"Don't require that the signature method for certificate verify is identical with PRF, support alternatives" was completed.