From: Pauli Date: Wed, 4 Nov 2020 23:29:45 +0000 (+1000) Subject: 3.0 design: remove the compliance column. X-Git-Url: https://git.openssl.org/gitweb/?p=openssl-web.git;a=commitdiff_plain;h=c4649934a2149bd28a58db52e5351e41b293390c 3.0 design: remove the compliance column. Reviewed-by: Matt Caswell (Merged from https://github.com/openssl/openssl/pull/205) --- diff --git a/docs/OpenSSL300Design.md b/docs/OpenSSL300Design.md index 6aab23a..ae234f4 100644 --- a/docs/OpenSSL300Design.md +++ b/docs/OpenSSL300Design.md @@ -2756,8 +2756,6 @@ The algorithms which are to be included in the FIPS module are: Standard - Compliant[^7] - Notes @@ -2768,8 +2766,6 @@ The algorithms which are to be included in the FIPS module are: FIPS 81 - ✓ - Refer also to SP 800-67rev2. \ \ TDES support being decryption only (from 2020) and banned (from 2025). \ @@ -2786,8 +2782,6 @@ Security Policy statement regarding the FIPS 81 - ✓ - AES @@ -2796,8 +2790,6 @@ Security Policy statement regarding the SP 800-38A - ✓ - All AES cipher modes supporting 128, 192 and 256 bits. @@ -2808,8 +2800,6 @@ Security Policy statement regarding the SP 800-38C - ✓ - @@ -2832,8 +2820,6 @@ Security Policy statement regarding the SP 800-38A - ✓ - @@ -2844,8 +2830,6 @@ Security Policy statement regarding the SP 800-38A - ✓ - @@ -2856,8 +2840,6 @@ Security Policy statement regarding the SP 800-38A - ✓ - @@ -2868,10 +2850,6 @@ Security Policy statement regarding the SP 800-38D - ✓ - - Changes in IV. Module must generate the IV. - @@ -2880,10 +2858,6 @@ Security Policy statement regarding the SP 800-38D - ✓ - - - @@ -2892,10 +2866,6 @@ Security Policy statement regarding the SP 800-38A - ✓ - - - @@ -2904,8 +2874,6 @@ Security Policy statement regarding the SP 800-38E - ✓ - See FIPS 140-2 I.G. A.9. Needs key check added. This mode does not support 192 bits. Check added by #7120. @@ -2916,8 +2884,6 @@ Security Policy statement regarding the SP 800-38F - ✓ - Differences from standard but within it. @@ -2928,8 +2894,6 @@ Security Policy statement regarding the SP 800-38F - ✓ - Hash @@ -2938,10 +2902,6 @@ Security Policy statement regarding the FIPS 180-4 - ✓ - - - @@ -2950,8 +2910,6 @@ Security Policy statement regarding the FIPS 180-4 - ✓ - 224, 256, 384, 512. @@ -2962,9 +2920,7 @@ Security Policy statement regarding the FIPS 180-4 - ✓ - - 512/224, 512/256. Appear to be compliant. + 512/224, 512/256. @@ -2974,9 +2930,7 @@ Security Policy statement regarding the FIPS 202 - ✓ - - 224, 256, 384, 512. Appear to be compliant. + 224, 256, 384, 512. @@ -2986,10 +2940,6 @@ Security Policy statement regarding the FIPS 198-1 - ✓ - - - @@ -2998,8 +2948,6 @@ Security Policy statement regarding the FIPS 198-1 - ✓ - 224, 256, 384, 512. @@ -3010,46 +2958,18 @@ Security Policy statement regarding the FIPS 198-1 - ✓ - - - CMAC - - - - - ✓ - - - GMAC - - - - - ✓ - - - KMAC - - - - - ✓ - - - DRBG @@ -3058,8 +2978,6 @@ Security Policy statement regarding the SP 800-90A - ✓ - Issues with SP 800-90C.

All comply with SP 800-90A. @@ -3072,8 +2990,6 @@ All comply with SP 800-90A - ✓ - @@ -3082,8 +2998,6 @@ All comply with SP 800-90A - ✓ - DRBG @@ -3092,8 +3006,6 @@ All comply with A, B & C. @@ -3104,8 +3016,6 @@ All comply with FIPS 186-4 - ✓ - Refer also to SP 800-56B. PKCS#1.5, PSS, Key pair generation. Modulus size changes. @@ -3116,8 +3026,6 @@ All comply with SP 800-56B - ✓ - OAEP. Update to SP 800-56B rev-1 standard. @@ -3128,8 +3036,6 @@ All comply with SP 800-56A - ✓ - Update to SP 800-56A rev-3 standard. @@ -3140,8 +3046,6 @@ All comply with KASVS - ✓ - Additional testing to meet ZZonly. CVL/KAS. @@ -3152,8 +3056,6 @@ All comply with FIPS 186-4 - ✓ - PQG generation & verification, signature generation & verification, key pair generation. @@ -3164,8 +3066,6 @@ All comply with FIPS 186-4 - ✓ - Key pair generation, public key generation, signature generation & verification. @@ -3176,8 +3076,6 @@ All comply with SP 800-56A - ✓ - B-233, 283, 409, 571; K-233, 283, 409, 571; P-224, 256, 384, 521. Update to SP 800-56A rev-3 standard. @@ -3188,8 +3086,6 @@ All comply with KASVS - ✓ - Additional testing to meet ZZonly. CVL/KAS. @@ -3200,8 +3096,6 @@ All comply with SP 800-132 - ✓ - Verify conformance with standards. See #6674. @@ -3210,84 +3104,42 @@ All comply with - ✓ - For TLS 1.2 and 1.3. @@ -3326,5 +3176,3 @@ All comply with