]> git.ipfire.org Git - thirdparty/openssl.git/commitdiff
Skip newly added blocked OAEP SHAKE testcases with old fips providers
authorTomas Mraz <tomas@openssl.org>
Wed, 29 May 2024 14:32:19 +0000 (16:32 +0200)
committerTomas Mraz <tomas@openssl.org>
Fri, 31 May 2024 12:36:22 +0000 (14:36 +0200)
Reviewed-by: Paul Dale <ppzgs1@gmail.com>
Reviewed-by: Matt Caswell <matt@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/24529)

test/recipes/30-test_evp_data/evppkey_rsa_common.txt

index 9fa4094bcc16f3093805433de1b49db3794eae81..9cc007ad7b1957a0d618d182e2c1ecc8ffb9a1a3 100644 (file)
@@ -330,6 +330,7 @@ Output = "Hello World"
 
 # Decrypt OAEP SHAKE MGF1
 Availablein = fips
+FIPSversion = >=3.4.0
 Decrypt = RSA-2048
 Ctrl = rsa_padding_mode:oaep
 Ctrl = rsa_mgf1_md:shake128
@@ -338,6 +339,7 @@ Result = KEYOP_ERROR
 
 # Decrypt OAEP SHAKE MD
 Availablein = fips
+FIPSversion = >=3.4.0
 Decrypt = RSA-2048
 Ctrl = rsa_padding_mode:oaep
 Ctrl = rsa_oaep_md:shake128