[Kea-users] Botan vs. OpenSSL dependency for Kea

Shane Kerr shane at time-travellers.org
Mon Mar 7 15:58:41 UTC 2016


Francis and all,

Your blog article on this is informative:

https://www.isc.org/blogs/the-crypto-library-disaster/

Personally I think the insistence on FIPS-2 certification is a bit
misplaced. Certification can actually make organizations less agile in
responding to security problems, thereby ultimately less secure rather
than more.

Still, some administrators have that requirement, so crypto agility is
ultimately a good thing. :)

Cheers,

--
Shane
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 181 bytes
Desc: OpenPGP digital signature
URL: <https://lists.isc.org/pipermail/kea-users/attachments/20160307/4f615eb8/attachment.bin>


More information about the Kea-users mailing list