Comment 5 for bug 2036724

Revision history for this message
Tobias Heider (tobhe) wrote :

> By reading Tobias' comment on the FIPS archive, looks like that dropping disable_fips_enabled_read.patch doesn't actually make a difference in practice, as on FIPS systems a different libgcrypt20 will be used. Is this the case?

Yes. This wasn't the case when the patch was added, so back then it helped make the archive version usable with a FIPS kernel. Nowadays we ship our own libgcrypt20 so it doesn't make a difference.