About the OpenSSL V3 APIs to support FIPS mode
Joel GUITTET
jguittet.opensource at witekio.com
Tue Jun 17 17:51:39 AEST 2025
Hello,
We are working on a project with OpenSSH built-in with Yocto and we need to set FIPS mode on the target. This mainly means OpenSSL V3 APIs. We would like to propose a patch to the community so that the support is integrated in the mainline OpenSSH source code. Limitation could be we are not able to provide full patch but only a partial one depending of the feature we built in the project (sshd, sftp).
Could it be interesting by the way? Is there such initiative somewhere that we can join to help? If we submit such patch what will be the response of OpenSSH project? Useful or not? What is migration status to OpenSSL V3 APIs, if such status exists?
Thanks for the feedback.
Joel
More information about the openssh-unix-dev
mailing list