OpenSSH FIPS support

Mabry Tyson Tyson at AI.SRI.COM
Sat Mar 11 08:13:57 AEDT 2023


When I search at NIST for products validated for FIPS that mention 
"ssh", 
<https://csrc.nist.gov/projects/cryptographic-module-validation-program/validated-modules/search?SearchMode=Basic&ModuleName=ssh&CertificateStatus=Active&ValidationYear=0> 
only 6 products are returned (3 vendors).

On 3/10/23 11:55 AM, Roumen Petrov wrote:
> Hi Joel,
> Joel GUITTET wrote:
>> Hi,
>> We currently work on a project that require SSH server with FIPS and 
>> using OpenSSL v3.
>
> There is no way to work with OpenSSL v3 due to many reasons.
>
> If you like to get FIPS capable secsh implementation compatible with 
> OpenSSL FIPS validated modules 1.2 and 2.0 , RedHat ES, or Oracle 
> Solaris you could use PKIX-SSH.
>
>
> Regards,
> Roumen Petrov
>


More information about the openssh-unix-dev mailing list