Re: BUG #19457: RE: pgp_sym_encrypt silently accepts non-FIPS ciphers (bf, cast5, 3des) when OpenSSL is in FIPS mod - Mailing list pgsql-bugs

From Joe Conway
Subject Re: BUG #19457: RE: pgp_sym_encrypt silently accepts non-FIPS ciphers (bf, cast5, 3des) when OpenSSL is in FIPS mod
Date
Msg-id 4ab05a1f-f709-4ba1-b9d4-5d3ded89f7b8@joeconway.com
Whole thread
In response to Re: BUG #19457: RE: pgp_sym_encrypt silently accepts non-FIPS ciphers (bf, cast5, 3des) when OpenSSL is in FIPS mod  (Michael Paquier <michael@paquier.xyz>)
List pgsql-bugs
On 4/24/26 18:32, Michael Paquier wrote:
> He has added a paragraph about the set of ciphers that are allowed
> in FIPS.  Do we actually need to mention these explicitely? Perhaps
> a link to an external source would be more adapted?  I am not
> convinced that this is a good addition for pgcrypto, but feel free
> to disagree.


+1 for a link to an external source, specifically the official NIST 
reference I would think.

-- 
Joe Conway
PostgreSQL Contributors Team
Amazon Web Services: https://aws.amazon.com



pgsql-bugs by date:

Previous
From: Christophe Pettus
Date:
Subject: uuidv7 improperly accepts dates before 1970-01-01
Next
From: Shishir Sharma
Date:
Subject: Re: BUG #19457: RE: pgp_sym_encrypt silently accepts non-FIPS ciphers (bf, cast5, 3des) when OpenSSL is in FIPS mod