[Info-vax] VSI has released 9.2-1

Dan Cross cross at spitfire.i.gajendra.net
Wed Jul 5 23:28:34 EDT 2023


In article <u859bs$q1h7$1 at dont-email.me>,
Arne Vajhøj  <arne at vajhoej.dk> wrote:
>On 7/5/2023 9:43 PM, Dan Cross wrote:
>> In article <u84l3q$kcjd$1 at dont-email.me>,
>> Arne Vajhøj  <arne at vajhoej.dk> wrote:
>>> On 7/5/2023 4:33 PM, Arne Vajhøj wrote:
>>>> Per:
>>>>
>>>> https://www.openssl.org/docs/fips.html
>>>> https://csrc.nist.gov/projects/cryptographic-module-validation-program/certificate/4282
>>>>
>>>> then OpenSSL is FIPS 140-2 certified on:
>>>>
>>>> <quote>
>>>>       Debian 11.5 running on Dell Inspiron 7591 with Intel i7(x86) with PAA
>>>>       Debian 11.5 running on Dell Inspiron 7591 with Intel i7(x86)
>>>> without PAA
>>>>       FreeBSD 13.1 running on Dell Inspiron 7591 with Intel i7(x64) with PAA
>>>>       FreeBSD 13.1 running on Dell Inspiron 7591 with Intel i7(x64)
>>>> without PAA
>>>>       macOS 11.5.2 running on Apple i7 Mac Mini with Intel i7(x64) with PAA
>>>>       macOS 11.5.2 running on Apple i7 Mac Mini with Intel i7(x64)
>>>> without PAA
>>>>       macOS 11.5.2 running on Apple M1 Mac Mini with M1 with PAA
>>>>       macOS 11.5.2 running on Apple M1 Mac Mini with M1 without PAA
>>>> (single-user mode)
>>>>       Ubuntu Linux 22.04.1 LTS running on Dell Inspiron 7591 with Intel
>>>> i7(x64) with PAA
>>>>       Ubuntu Linux 22.04.1 LTS running on Dell Inspiron 7591 with Intel
>>>> i7(x64) without PAA
>>>>       Windows 10 running on Dell Inspiron 7591 with Intel i7(x64) with PAA
>>>>       Windows 10 running on Dell Inspiron 7591 with Intel i7(x64) without
>>>> PAA
>>>> </quote>
>>>>
>>>> Maybe VSI want VMS on that list.
>>>
>>> But I wonder.
>>>
>>> How will VSI get FIPS 140-2 certification for VMS x86-64 if they only
>>> support running in VM not on physical hardware??
>> 
>> Virtual Machines, by definition, run most of their instructions
>> on the physical hardware, including in kernel mode.  Running in
>> a VM does not preclude one from access to high-quality hardware
>> facilitated entropy sources a priori.
>
>No. But that is not the problem.
>
>FIPS 140-2 certification is a certification of hardware
>and software.

Hypervisors are software.  The guest OS running on them is also
software.  Certifying an OS running on a specific hypervisor on
a specific hardware platform is certainly doable.

>VMS 9.2-1 on a VirtualBox VM setup as ... running on
>RockyLinux 9 running on Dell Inspiron 7591 with Intel i7(x64)????

Sounds pretty bog standard as these things go, but I imagine it
would be more like VMS on ESXi on a Dell Xeon thing.  Probably
much of that combination is already at least partially tested
for the US military (ESXi on Dell hardware was very common when
I was a communications officer in the US Marine Corps, which
wasn't _that_ long ago).

	- Dan C.




More information about the Info-vax mailing list