Re: scram-sha-256 authentication broken in FIPS mode

From: Alessandro Gherardi <alessandro(dot)gherardi(at)yahoo(dot)com>
To: Michael Paquier <michael(at)paquier(dot)xyz>
Cc: "pgsql-general(at)lists(dot)postgresql(dot)org" <pgsql-general(at)lists(dot)postgresql(dot)org>
Subject: Re: scram-sha-256 authentication broken in FIPS mode
Date: 2018-09-10 14:52:00
Message-ID: 1168852455.1352488.1536591120175@mail.yahoo.com
Views: Raw Message | Whole Thread | Download mbox | Resend email
Thread:
Lists: pgsql-general

I changed the implementation of the other SHA digests to use EVP also.
I verified that, with these changes, scram-sha-256 works when FIPS is enabled.

Attachment Content-Type Size
sha2.h.diff application/octet-stream 354 bytes
sha2_openssl.c.diff application/octet-stream 1.6 KB

In response to

Responses

Browse pgsql-general by date

  From Date Subject
Next Message Jeremy Schneider 2018-09-10 22:57:09 survey: pg_stat_statements total_time and entry deallocation
Previous Message David Steele 2018-09-10 14:33:55 Re: Volume partitioning (was Re: pgbackrest when data/base is symlinked to another volume)