From: Pauli Date: Wed, 12 Feb 2025 02:34:56 +0000 (+1100) Subject: fips: include ML-KEM capabilities in FIPS provider X-Git-Tag: openssl-3.5.0-alpha1~498 X-Git-Url: http://git.ipfire.org/cgi-bin/gitweb.cgi?a=commitdiff_plain;h=7c45e7a6c882f4949a12ced4b87527ba2e0be06d;p=thirdparty%2Fopenssl.git fips: include ML-KEM capabilities in FIPS provider Co-Authored-By: Tomas Mraz Reviewed-by: Tim Hudson Reviewed-by: Neil Horman Reviewed-by: Tomas Mraz (Merged from https://github.com/openssl/openssl/pull/26714) --- diff --git a/providers/common/capabilities.c b/providers/common/capabilities.c index 82ea4736f72..f16e90ff0e1 100644 --- a/providers/common/capabilities.c +++ b/providers/common/capabilities.c @@ -215,7 +215,7 @@ static const OSSL_PARAM param_group_list[][11] = { TLS_GROUP_ENTRY("ffdhe6144", "ffdhe6144", "DH", 36), TLS_GROUP_ENTRY("ffdhe8192", "ffdhe8192", "DH", 37), # endif -# if !defined(OPENSSL_NO_ML_KEM) && !defined(FIPS_MODULE) +# if !defined(OPENSSL_NO_ML_KEM) /* https://www.iana.org/assignments/tls-parameters/tls-parameters.xhtml#tls-parameters-8 */ TLS_GROUP_ENTRY("MLKEM512", "", "ML-KEM-512", 38), TLS_GROUP_ENTRY("MLKEM768", "", "ML-KEM-768", 39),