intel / cryptography-primitives

Intel® Cryptography Primitives Library is a secure, fast and lightweight library of building blocks for cryptography, highly-optimized for various Intel® CPUs
Apache License 2.0
326 stars 86 forks source link

Cerfication support for the IPP #37

Closed syan10 closed 2 years ago

syan10 commented 2 years ago

Hi, I notice that it mentioned below in the Readme file. " Intel IPP Cryptography library is not certified for FIPS-140-2 (Security Requirements for Cryptographic Modules) and CMVP (Cryptographic Module Validation Program). "

Does the IPP plan to certify the FIPS-140-2 in future release?

amatyuko-intc commented 2 years ago

Hi, @syan10, there're plans to add capabilities to make the library certifiable, i.e. FIPS-140-3 ready to be able pass validation as part of user's product. There are no plans to certificate the library as a standalone.

syan10 commented 2 years ago

thanks for the quick reply.

So does the currently version already can be certifiable for FIPS-140-3 as part of user's product? or when does it can support it?

amatyuko-intc commented 2 years ago

It hasn't been tested against ACVP, so currently it is up to user to check it, as well as provide other capabilities required by FIPS 140-3. There will be ongoing efforts towards FIPS ready early next year. We will update information about it, when status is changed.

syan10 commented 2 years ago

It's great!!

Thanks for the information. :)

amatyuko-intc commented 2 years ago

Feel free to contact us if you have any other questions.