Home GnuPG

fips: Provide a mechanizm to put libgcrypt in non-FIPS mode.

Description

fips: Provide a mechanizm to put libgcrypt in non-FIPS mode.

* doc/gcrypt.texi (Disabling FIPS mode): Add.
* src/gcrypt.h.in (GCRYCTL_NO_FIPS_MODE): New.
* src/global.c (_gcry_vcontrol): Support GCRYCTL_NO_FIPS_MODE.
* tests/t-ed25519.c: Add --no-fips option to test non-FIPS mode.
  • GnuPG-bug-id: T5747
  • Signed-off-by: NIIBE Yutaka <gniibe@fsij.org>