Skip to content

Conversation

@LinuxJedi
Copy link
Member

In FIPSv5, wc_ecc_get_curve_id_from_oid is broken. With certain build configurations the OIDs are the wrong type too. Also with FIPSv5 the ecc_sets list is not available. So, this PR brings the lookup in-house.

@LinuxJedi LinuxJedi marked this pull request as ready for review August 6, 2025 16:20
douzzer
douzzer previously requested changes Aug 6, 2025
Copy link
Contributor

@douzzer douzzer left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

can we gate the insourcing on defined(HAVE_FIPS) && FIPS_VERSION_LT(6,0)?

we want to maintain proper test coverage of the libwolfssl implementation in the provider tests when linked with v6+ or non-FIPS libwolfssl.

@douzzer douzzer assigned LinuxJedi and unassigned wolfSSL-Bot Aug 6, 2025
In FIPSv5, `wc_ecc_get_curve_id_from_oid` is broken. With certain build
configurations the OIDs are the wrong type too. Also with FIPSv5 the
`ecc_sets` list is not available. So, this PR brings the lookup
in-house.
@dgarske dgarske merged commit 34d4313 into wolfSSL:master Aug 7, 2025
51 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants