[gnutls-devel] GnuTLS | fips: enable self-tests for KDF algorithms and CMAC (!1341)

Read-only notification of GnuTLS library development activities gnutls-devel at lists.gnutls.org
Tue Oct 6 09:39:19 CEST 2020




Stephan Mueller commented:


- CMAC: I see no problems in having both AES key sizes tested, but one would suffice (also cryptographically).

- TLS: Looks good

- PBKDF2: looks good

- HKDF: looks good - Is that code also applicable to TLS 1.3 KDF? If so, I would
 recommend adding a comment to state that avoiding later questions. If not, what about considering a TLS 1.3 KDF self test?

-- 
Reply to this email directly or view it on GitLab: https://gitlab.com/gnutls/gnutls/-/merge_requests/1341#note_424197662
You're receiving this email because of your account on gitlab.com.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.gnupg.org/pipermail/gnutls-devel/attachments/20201006/969b5899/attachment.html>


More information about the Gnutls-devel mailing list