I'm wrong. Reviewing SecurityPolicy (2.0.13 + 1.2.4) at
https://www.openssl.org/docs/fips/ - using FIPS_mode_set(1) for revalidation was actually expressly called out in section 3. While mod_ssl is 'unloaded' (unconfigured) the process is not operating in a fips validated manner, but once the configuration resets FIPS_mode_set(1) it resumes validated behavior. git-svn-id: https://svn.apache.org/repos/asf/httpd/httpd/branches/2.4.x@1788258 13f79535-47bb-0310-9956-ffa450edef68
parent
76241f86
Please register or sign in to comment