[gnutls-devel] GnuTLS | fips: add functions to inspect thread-local FIPS operation state (!1465)

Read-only notification of GnuTLS library development activities gnutls-devel at lists.gnutls.org
Mon Nov 29 09:05:02 CET 2021




Stephan Mueller commented on a discussion on lib/crypto-api.c: https://gitlab.com/gnutls/gnutls/-/merge_requests/1465#note_745974142

>   * Since: 3.6.13
>   */
>  int
>  gnutls_hkdf_extract(gnutls_mac_algorithm_t mac,

Hi Daiki,

> Daiki Ueno commented on a discussion on lib/crypto-api.c:
> https://gitlab.com/gnutls/gnutls/-/merge_requests/1465#note_745932151
> >   * Since: 3.6.13
> >   */
> > 
> >  int
> >  gnutls_hkdf_extract(gnutls_mac_algorithm_t mac,
>
> If I remember correctly, it is approved as a TLS-PRF (for TLS 1.3); should
> we mark it as non-approved when it is used outside of the TLS context, or
> all uses?

It is approved when used as part of TLS 1.3, correct. But for a general-
purpose use case it is a non-approved algorithm.


Ciao
Stephan

-- 
Reply to this email directly or view it on GitLab: https://gitlab.com/gnutls/gnutls/-/merge_requests/1465#note_745974142
You're receiving this email because of your account on gitlab.com.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.gnupg.org/pipermail/gnutls-devel/attachments/20211129/c74af856/attachment.html>


More information about the Gnutls-devel mailing list