logoalt Hacker News

PunchyHamstertoday at 5:02 PM2 repliesview on HN

So a step backward in security ?


Replies

kstrausertoday at 5:10 PM

In fairness, modern versions of FIPS are much less awful. AFAICT it's now possible to be FIPS compliant and meet reasonable crypto expectations, which was not always the case before.

loegtoday at 5:21 PM

It's fine. None of the FIPS algorithms are known to be broken, either. The only risk here is implementation bugs doing the conversion and any maintenance burden incurred due to diverging from upstream wireguard.