--- a/components/openssl/README Mon Jan 27 23:00:15 2014 -0800
+++ b/components/openssl/README Wed Jan 29 11:12:07 2014 -0800
@@ -24,10 +24,10 @@
Build Layout
---
-OpenSSL build is run four times. Once for regular dynamic 1.0.0 non-fips, once
-for static 1.0.0 bits to link with standalone wanboot binary, once for 0.9.8
-fips-140, and once for 0.9.8 FIPS-140 canister (in the openssl-fips component)
-needed to build 0.9.8 FIPS-140 certified libraries. All builds apart from
+OpenSSL build is run four times. Once for regular dynamic 1.0.1 non-fips, once
+for static 1.0.1 bits to link with standalone wanboot binary, once for 1.0.1
+fips-140, and once for 1.0.1 FIPS-140 canister (in the openssl-fips component)
+needed to build 1.0.1 FIPS-140 certified libraries. All builds apart from
static libraries for wanboot are done for 32 and 64 bits. So, in total, OpenSSL
is built seven times. OpenSSL for wanboot is only build on sparc.
@@ -138,23 +138,16 @@
The fips Build
---
-FIPS-140 certified libraries for Solaris private use. We wait for OpenSSL 1.0.0
-to be FIPS-140 certified in which time we can ship only 1.0.0 with S11 and make
-it a public interface.
+FIPS-140 certified libraries for Solaris private use. We wait for OpenSSL 1.0.1
+to be FIPS-140 certified in which time we can ship only 1.0.1 with S11 and make
+it a public interface. (To be done next)
Patches
---
-All the patches from 1.0.0 are used in 0.9.8 as well aside from
-14-manpage_openssl.patch which is not needed since we do not deliver 0.9.8 man
-pages. Additional patches:
-
-01-7009105.patch
-Fixing a bug introduces in 0.9.8q and fixed in 0.9.8r.
-
-sparc-01-ccwrap.patch
-Workaround so that fingerprinting the canister during runtime and comparing it
-with the saved fingerprint works correctly.
+All the patches from 1.0.1 (non-fips) are used in 1.0.1 (fips) as well aside from
+14-manpage_openssl.patch which is not needed since we do not deliver 1.0.1 man
+pages. Once we make fips version public, we should deliver man page.
The wanboot Build
----