From ec95961620ac20e21fde547f1daff3b652f25015 Mon Sep 17 00:00:00 2001 From: Archana Shinde Date: Fri, 1 Nov 2019 15:19:36 -0700 Subject: [PATCH] kernel: Enable configuration for fips mode. This will allow us to run a VM in fips mode. The intention is to check if the host is running in fips mode and then start a container in fips mode as well. Fixes #787 Signed-off-by: Archana Shinde --- kernel/configs/fragments/common/crypto.conf | 2 ++ kernel/kata_config_version | 2 +- 2 files changed, 3 insertions(+), 1 deletion(-) diff --git a/kernel/configs/fragments/common/crypto.conf b/kernel/configs/fragments/common/crypto.conf index d327bad6..9b6aa0d8 100644 --- a/kernel/configs/fragments/common/crypto.conf +++ b/kernel/configs/fragments/common/crypto.conf @@ -13,3 +13,5 @@ CONFIG_DECOMPRESS_GZIP=y CONFIG_CRYPTO_USER_API=y CONFIG_CRYPTO_USER_API_HASH=y CONFIG_CRYPTO_SHA256=y +CONFIG_CRYPTO_FIPS=y +CONFIG_CRYPTO_ANSI_CPRNG=y diff --git a/kernel/kata_config_version b/kernel/kata_config_version index fb1e7bc8..c3f407c0 100644 --- a/kernel/kata_config_version +++ b/kernel/kata_config_version @@ -1 +1 @@ -54 +55