fips.go 1.01 KB
Newer Older
1 2 3 4 5 6 7 8 9 10 11 12 13 14
// Copyright (C) 2017. See AUTHORS.
//
// Licensed under the Apache License, Version 2.0 (the "License");
// you may not use this file except in compliance with the License.
// You may obtain a copy of the License at
//
//   http://www.apache.org/licenses/LICENSE-2.0
//
// Unless required by applicable law or agreed to in writing, software
// distributed under the License is distributed on an "AS IS" BASIS,
// WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
// See the License for the specific language governing permissions and
// limitations under the License.

kujenga's avatar
kujenga committed
15 16 17 18 19 20
package openssl

/*
#include <openssl/ssl.h>
*/
import "C"
21
import "runtime"
kujenga's avatar
kujenga committed
22

23 24
// FIPSModeSet enables a FIPS 140-2 validated mode of operation.
// https://wiki.openssl.org/index.php/FIPS_mode_set()
kujenga's avatar
kujenga committed
25
func FIPSModeSet(mode bool) error {
26 27 28
	runtime.LockOSThread()
	defer runtime.UnlockOSThread()

kujenga's avatar
kujenga committed
29 30 31 32 33 34 35 36 37 38
	var r C.int
	if mode {
		r = C.FIPS_mode_set(1)
	} else {
		r = C.FIPS_mode_set(0)
	}
	if r != 1 {
		return errorFromErrorQueue()
	}
	return nil
39
}