We are excited to announce the immediate availability of version 1.1.0 of the wolfssl-wolfcrypt Rust crate! This update is a big milestone, bringing official support for wolfSSL FIPS-enabled cryptography to the Rust ecosystem. Getting started with wolfSSL? Download the latest libraries here and start exploring. Key Highlights The new version focuses on providing robust, validated […]
Read MoreMore TagCategory: wolfCrypt FIPS
FIPS 140-3 for CMMC 2.0
In a previous blog post, we defined CMMC 2.0 in terms of NIST 800-171, DIB entities, CUI, FCI and the FIPS 140-3 program. You can find what the acronym stands for here. The bottom line is that FIPS 140-3 is the security certification foundation of CMMC 2.0. Getting started with wolfSSL? Download the latest libraries […]
Read MoreMore TagGuidance for FIPS Customers: Auditing Direct Calls to wc_ecc_verify_hash()
The fix for CVE-2026-5194 is available in wolfSSL 5.9.1. Upgrading to the new version resolves the issue for TLS, DTLS, and X.509 users. FIPS customers need to take a closer look. FIPS users who call wc_ecc_verify_hash() or wc_ecc_verify_hash_ex() directly may remain exposed until they add a small check at their call sites. The required check […]
Read MoreMore TagwolfCrypt FreeBSD kernel module update: FIPS and crypto acceleration support
The wolfSSL team are adding two new enhancements to our FreeBSD kernel module (bsdkm) that will make cryptography in the kernel faster and more secure: FIPS 140-3 in the kernel: PR #9590 introduced support for wolfCrypt FIPS in our FreeBSD kernel module. This provides a simple recipe for FIPS-certified crypto in FreeBSD kernel space. x86 […]
Read MoreMore TagYocto and PetaLinux: Achieving Full FIPS 140-3 Linux with meta-wolfssl
wolfSSL has made it possible to have a streamlined Full FIPS Linux build for Yocto and PetaLinux. The updates to meta-wolfssl provide a quick, known-good path to FIPS 140-3 cryptography for both userland and kernel applications, ensuring your entire embedded Linux ecosystem is compliant. Unified Kernel and Userland Cryptography A primary focus of this release […]
Read MoreMore TagFIPS-Compliant Tailscale Mesh VPN Powered by wolfSSL
Earlier last year, we shared the integration of our FIPS-validated crypto engine, wolfCrypt, into WireGuard to create a project we call wolfGuard. We’re now extending this effort to Tailscale, the popular mesh VPN built on top of WireGuard. Getting started with wolfSSL? Download the latest libraries here and start exploring. Tailscale simplifies WireGuard deployment by […]
Read MoreMore TagDrop-In FIPS Compliance for Linux: OpenSSL, NSS, GnuTLS, libgcrypt, and Kernel
Do you have a Linux appliance, embedded system, container image, VM image, or distribution that must meet FIPS 140 requirements, or interoperate with systems operating under FIPS restrictions? wolfSSL provides FIPS-aligned cryptographic integrations across the Linux stack, including kernel-level updates and userspace cryptography platforms such as OpenSSL, Mozilla NSS, GnuTLS, and libgcrypt. These integrations replace […]
Read MoreMore TagTwo Certs, No Limits: wolfSSL’s FIPS 140-3 2026 Roadmap
Active Certificates: wolfSSL holds two active FIPS 140-3 certificates #4718 and #5041. Download wolfSSL → Entropy Validation: An Entropy Source Validation (ESV) is currently at the CMVP for an in-house, high-performance software jitter TRNG and the Jan 1, 2026 Transition! In addition to the above, here is a roadmap of how 2026 will go for […]
Read MoreMore TagFIPS 140-3 Kernel Cryptography for Yocto
Introducing meta-wolfssl support for LinuxKM: build-time FIPS-validated kernel crypto for embedded Linux What’s New: LinuxKM Recipes in meta-wolfssl The meta-wolfssl Yocto layer now includes recipes for building wolfSSL’s Linux Kernel Module (LinuxKM) directly into your embedded Linux images. This means Yocto-based projects can integrate FIPS 140-3 validated cryptography at the kernel level. You can now: […]
Read MoreMore TagNVIDIA Jetson GPU boards getting FIPS 140-3 OE certification
wolfSSL is bringing FIPS 140-3 to the NVIDIA Jetson Orin GPU platform, in both kernel and userspace contexts, with a kernel module alongside user-space cryptography that works under OpenSSL, GnuTLS, and Gcrypt, requiring no or minimal changes to applications. Download wolfSSL → It is ARM64-native and uses AES-XTS to meet the high throughput demands of […]
Read MoreMore Tag
