[gnutls-devel] GnuTLS | FIPS: Missing self-tests for SHAKE256 (#1284)

Read-only notification of GnuTLS library development activities gnutls-devel at lists.gnutls.org
Wed Oct 20 08:52:29 CEST 2021

Daiki Ueno created an issue: https://gitlab.com/gnutls/gnutls/-/issues/1284

FIPS140-3 IG [10.3.A](https://csrc.nist.gov/CSRC/media/Projects/cryptographic-module-validation-program/documents/fips%20140-3/FIPS%20140-3%20IG.pdf#page=56) mentions:
> if the module implements SHA-3 permutation-based and/or extendable-output functions (see IG C.C and 
FIPS 202):
> * At the minimum, the cryptographic module shall perform a CAST for one of the functions defined in 
FIPS 202: SHA3-224, SHA3-256, SHA3-384, SHA3-512, SHAKE128 and SHAKE256, no matter 
how many of these functions the module may be designed to use.

GnuTLS currently doesn't perform self-tests for SHAKE256 while it's provided.

Reply to this email directly or view it on GitLab: https://gitlab.com/gnutls/gnutls/-/issues/1284
You're receiving this email because of your account on gitlab.com.

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.gnupg.org/pipermail/gnutls-devel/attachments/20211020/9ffa5c63/attachment.html>

More information about the Gnutls-devel mailing list