mirror of
https://github.com/haproxy/haproxy.git
synced 2026-03-27 12:56:09 -04:00
MINOR: ssl: add "FIPS" details in haproxy -vv
Add the FIPS mode in haproxy -vv, it need to be activated on the system with openssl.cnf or by compiling the SSL library with the right options. Can't work with OpenSSL >= 3.0 because fips a "provider" to load, works with AWS-LC, WolfSSL and OpenSSL 1.1.1.
This commit is contained in:
parent
23f670f1f5
commit
f97ffb9ec4
1 changed files with 3 additions and 1 deletions
|
|
@ -7071,7 +7071,9 @@ static void ssl_register_build_options()
|
|||
#endif
|
||||
#endif
|
||||
"", ptr);
|
||||
|
||||
#if defined(USE_OPENSSL) && (HA_OPENSSL_VERSION_NUMBER < 0x3000000fL)
|
||||
memprintf(&ptr, "%s\nOpenSSL library FIPS mode : %s", ptr, FIPS_mode() ? "yes" : "no");
|
||||
#endif
|
||||
memprintf(&ptr, "%s\nOpenSSL library supports :", ptr);
|
||||
for (i = CONF_TLSV_MIN; i <= CONF_TLSV_MAX; i++)
|
||||
if (methodVersions[i].option)
|
||||
|
|
|
|||
Loading…
Reference in a new issue