changes: add no_short_mac entry

Reviewed-by: Shane Lontis <shane.lontis@oracle.com>
Reviewed-by: Tom Cosgrove <tom.cosgrove@arm.com>
(Merged from https://github.com/openssl/openssl/pull/24917)
This commit is contained in:
Pauli 2024-07-24 11:45:51 +10:00
parent 3762a56b87
commit 50a91de440

View File

@ -29,6 +29,12 @@ OpenSSL 3.4
### Changes between 3.3 and 3.4 [xx XXX xxxx]
* Add FIPS provider configuration option to enforce the a minimal
MAC length check. The option '-no_short_mac' can optionally be
supplied to 'openssl fipsinstall'.
*Paul Dale*
* Redesigned Windows use of OPENSSLDIR/ENGINESDIR/MODULESDIR such that
what were formerly build time locations can now be defined at run time
with registry keys. See NOTES-WINDOWS.md
@ -1108,7 +1114,7 @@ OpenSSL 3.1
* Add FIPS provider configuration option to enforce the
Extended Master Secret (EMS) check during the TLS1_PRF KDF.
The option '-ems-check' can optionally be supplied to
The option '-ems_check' can optionally be supplied to
'openssl fipsinstall'.
*Shane Lontis*