[gnutls-devel] GnuTLS | Fix bug in the CASE2 macro that means the second function will never be called. (!1742)

Read-only notification of GnuTLS library development activities gnutls-devel at lists.gnutls.org
Wed May 10 21:36:29 CEST 2023




Daiki Ueno commented: https://gitlab.com/gnutls/gnutls/-/merge_requests/1742#note_1385804094

According to FIPS 140-3 IG [10.A](https://csrc.nist.gov/csrc/media/Projects/cryptographic-module-validation-program/documents/fips%20140-3/FIPS%20140-3%20IG.pdf#page=60), the requirement seems to be to execute at least one KAT for each AES forward cipher mode. Given that exercising more test cases would cost startup time, I'm slightly leaning to skipping the second function in POST (but exercising it in the full test suite). In that case, I guess we should make it clear that CASE2 macro is organized in that way either documenting that or renaming it.

-- 
Reply to this email directly or view it on GitLab: https://gitlab.com/gnutls/gnutls/-/merge_requests/1742#note_1385804094
You're receiving this email because of your account on gitlab.com.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.gnupg.org/pipermail/gnutls-devel/attachments/20230510/d6cc92e8/attachment-0001.html>


More information about the Gnutls-devel mailing list