On Thu, 21 Jan 2016, Robert Relyea wrote:
The call PK11_IsFIPS() returns true if softoken is in FIPS mode.
Oh, I did not know about this one. I guess once we (the application) detect the system is in FIPS mode, we could verify that NSS is as well.
Finally, is there any example code out there that uses NSS in FIPS mode ?
libreswan uses NSS and supports a FIPS mode. Paul -- dev-tech-crypto mailing list [email protected] https://lists.mozilla.org/listinfo/dev-tech-crypto

