Skip to content

Always report FIPS mode true on developer platforms#1181

Merged
jasonkatonica merged 1 commit intoIBM:java26from
Mohit-Rajbhar100698:backport/java26/fips-weak-rsa-fix-dev-platforms
Feb 13, 2026
Merged

Always report FIPS mode true on developer platforms#1181
jasonkatonica merged 1 commit intoIBM:java26from
Mohit-Rajbhar100698:backport/java26/fips-weak-rsa-fix-dev-platforms

Conversation

@Mohit-Rajbhar100698
Copy link
Collaborator

The OpenJCEPlusFIPS provider may run on platforms that support developer mode. On these systems, the provider should always report that it is operating in FIPS mode to ensure behavior is consistent with fully FIPS-certified platforms. This change simulates FIPS operation as closely as possible in development environments.

Fixes: #1076

Back-ported from: #1166

Signed-off-by: Mohit Rajbhar mohit.rajbhar@ibm.com

The OpenJCEPlusFIPS provider may run on platforms that support developer
mode. On these systems, the provider should always report that it is operating in FIPS mode
to ensure behavior is consistent with fully FIPS-certified platforms.
This change simulates FIPS operation as closely as possible in development environments.

Fixes: https://github.ibm.com/runtimes/jit-crypto/issues/1076

Signed-off-by: Mohit Rajbhar <mohit.rajbhar@ibm.com>
Copy link
Member

@jasonkatonica jasonkatonica left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

Copy link
Member

@KostasTsiounis KostasTsiounis left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@jasonkatonica jasonkatonica merged commit ee29ef8 into IBM:java26 Feb 13, 2026
3 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants