Some checks failed
AOC Guard CI / aoc-guard (push) Has been cancelled
AOC Guard CI / aoc-verify (push) Has been cancelled
Concelier Attestation Tests / attestation-tests (push) Has been cancelled
Docs CI / lint-and-preview (push) Has been cancelled
Policy Lint & Smoke / policy-lint (push) Has been cancelled
Scanner Analyzers / Discover Analyzers (push) Has been cancelled
Scanner Analyzers / Build Analyzers (push) Has been cancelled
Scanner Analyzers / Test Language Analyzers (push) Has been cancelled
Scanner Analyzers / Validate Test Fixtures (push) Has been cancelled
Scanner Analyzers / Verify Deterministic Output (push) Has been cancelled
wine-csp-build / Build Wine CSP Image (push) Has been cancelled
- Implemented PqSoftCryptoProvider for software-only post-quantum algorithms (Dilithium3, Falcon512) using BouncyCastle. - Added PqSoftProviderOptions and PqSoftKeyOptions for configuration. - Created unit tests for Dilithium3 and Falcon512 signing and verification. - Introduced EcdsaPolicyCryptoProvider for compliance profiles (FIPS/eIDAS) with explicit allow-lists. - Added KcmvpHashOnlyProvider for KCMVP baseline compliance. - Updated project files and dependencies for new libraries and testing frameworks.
22 lines
510 B
YAML
22 lines
510 B
YAML
StellaOps:
|
|
Crypto:
|
|
Registry:
|
|
ActiveProfile: us-fips-soft
|
|
PreferredProviders:
|
|
- fips.ecdsa.soft
|
|
- pq.soft
|
|
- default
|
|
Profiles:
|
|
us-fips-soft:
|
|
PreferredProviders:
|
|
- fips.ecdsa.soft
|
|
- pq.soft
|
|
- default
|
|
Diagnostics:
|
|
Providers:
|
|
Enabled: true
|
|
Metrics:
|
|
LogLevel: Information
|
|
Notes:
|
|
Certification: "non-certified software baseline; enable FIPS_SOFT_ALLOWED=1 to activate"
|