]> git.ipfire.org Git - thirdparty/openssl.git/commitdiff
ctr drbg: make indicator parameter conditional on FIPS
authorPauli <ppzgs1@gmail.com>
Wed, 13 Aug 2025 02:59:22 +0000 (12:59 +1000)
committerPauli <ppzgs1@gmail.com>
Fri, 15 Aug 2025 01:03:12 +0000 (11:03 +1000)
Reviewed-by: Shane Lontis <shane.lontis@oracle.com>
Reviewed-by: Tomas Mraz <tomas@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/28243)

providers/implementations/rands/drbg_ctr.c.in

index 2a19f71a96820b410be7e73fe07ca733f5b055e9..9d129ef9db35188487552e8c06e2c5745f443dfa 100644 (file)
@@ -689,7 +689,7 @@ static void drbg_ctr_free(void *vdrbg)
                           ['DRBG_PARAM_RESEED_TIME',            'reseed_time', 'time_t'],
                           ['DRBG_PARAM_RESEED_REQUESTS',        'reseed_req',  'uint'],
                           ['DRBG_PARAM_RESEED_TIME_INTERVAL',   'reseed_int',  'uint64'],
-                          ['KDF_PARAM_FIPS_APPROVED_INDICATOR', 'ind',         'int'],
+                          ['KDF_PARAM_FIPS_APPROVED_INDICATOR', 'ind',         'int', 'fips'],
                          )); -}
 
 static int drbg_ctr_get_ctx_params(void *vdrbg, OSSL_PARAM params[])