Skip to Content.
Sympa Menu

mace-opensaml-users - [OpenSAML] How to use OpenSAML and maintain FIPS 140-1 compliance?

Subject: OpenSAML user discussion

List archive

[OpenSAML] How to use OpenSAML and maintain FIPS 140-1 compliance?


Chronological Thread 
  • From: Chris Fasbinder <>
  • To:
  • Subject: [OpenSAML] How to use OpenSAML and maintain FIPS 140-1 compliance?
  • Date: Thu, 23 Jun 2011 15:13:06 -0400 (EDT)

I am working on a project where we are considering using OpenSAML. The
product we plan to update currently uses a third party cryptography module
that has been validated by NIST for FIPS 140-1 compliance. We would like to
continue to use that third party cryptography module for all cryptography to
not require our own validation by NIST, unless the cryptography module used by
OpenSAML has already by validated for FIPS 140-1 compliance. Since my company
discourages employees from viewing third party open source code, I would like
to know how I can plug-in what cryptography module OpenSAML will use. The
third party cryptography module we currently use does provide a JSSE provider.

Thanks,
Chris Fasbinder



Archive powered by MHonArc 2.6.16.

Top of Page