On Fri, Oct 16, 2009 at 11:28 AM, CB <cn...@verizon.net> wrote: > Follow on information; > > I was able to get the host shlibsign to run by editing the sign.sh > script, end commenting out all the environment variables it exports, > which pointed into cross-compiled libraries. So, the host version was > able to run and process the files it needed to. Is that going to > break anything on the target?
No. You can use the host version of shlibsign to sign the target binaries. When running on the target platform, the target binaries will be able to verify the signature. Without the signatures in the .chk files generated by shlibsign, NSS can't go into the FIPS mode. That's the only issue if you don't run shlibsign during the build. Wan-Teh -- dev-tech-crypto mailing list dev-tech-crypto@lists.mozilla.org https://lists.mozilla.org/listinfo/dev-tech-crypto