At wolfSSL we provide two main services to help with the transition away from OpenSSL crypto operations, wolfEngine and wolfProvider. These both provide a plug and play solution to wolfSSL’s cryptography (which also can use our FIPS-140-3 module) in whatever application you may be using OpenSSL in. wolfEngine targets any application using OpenSSL 1.x using […]
Read MoreMore TagCategory: Uncategorized
DTLS 1.3 vs DTLS 1.2: Why It’s Time to Upgrade
DTLS 1.3, standardized as RFC 9147, is a major leap over DTLS 1.2 for any application securing UDP traffic. It inherits every improvement of TLS 1.3, first among them the only path to post-quantum cryptography, one DTLS 1.2 will never have, and adds datagram-specific advances of its own that make communication safer, faster, more reliable, […]
Read MoreMore Tagnet-snmp / snmpd is now FIPS 140-3 Tested & Available with wolfCrypt FIPS
net-snmp / snmpd is an open source implementation of the Simple Network Management Protocol (SNMP) used for monitoring and managing network devices. FIPS 140-3 support is available for net-snmp / snmpd with wolfCrypt FIPS, tested for use with SNMP management environments. wolfCrypt FIPS provides a lightweight cryptographic module for security-focused deployments. This helps organizations secure […]
Read MoreMore TagwolfEngine 1.4.1 Now Available
wolfEngine version 1.4.1 is officially here. Built as an OpenSSL engine backed by the wolfCrypt FIPS 140-3 cryptographic module, wolfEngine brings FIPS-validated cryptography to legacy OpenSSL 1.0.2 and 1.1.1 applications without requiring application code changes. This update delivers critical security fixes for two TLS AEAD nonce-reuse vulnerabilities, along with FIPS enhancements and a comprehensive hardening […]
Read MoreMore TagwolfProvider Adds LMS Signature Verification
wolfSSL is adding verification-only LMS support to wolfProvider for OpenSSL applications. LMS is a stateful hash-based signature system standardized in RFC 8554 and NIST SP 800-208, making it useful for long-lived signing hierarchies and post-quantum verification. The integration accepts OpenSSL-compatible raw XDR public keys and uses wolfCrypt’s LMS verification APIs underneath the provider interface. What […]
Read MoreMore TagUpcoming Webinar: Preparing Connected Devices for the EU Cyber Resilience Act
The EU Cyber Resilience Act (CRA) will introduce new security and maintenance expectations for connected devices sold into the EU market, including requirements around secure development, vulnerability handling, firmware integrity, and long-term support. For engineering teams, these requirements will directly impact how devices are designed, updated, documented, and maintained throughout their lifecycle. Join us on […]
Read MoreMore TagwolfProvider 1.2.2 Now Available
wolfProvider version 1.2.2 is now available. As an OpenSSL 3.x provider, wolfProvider routes cryptographic operations through the wolfCrypt FIPS 140-3 module, allowing existing OpenSSL applications to gain a FIPS-validated cryptographic core without modifying any application code. This release introduces native Windows support, PKCS#8 private-key encryption, FIPS build hardening, and a high severity security fix for […]
Read MoreMore TagKeys From Silicon: SRAM PUF-Backed fTPM 2.0 for Embedded Systems
Where should the root key live? Flash can be read, fuses are limited, and a discrete TPM adds cost and board space. This webinar shows how wolfPUF and wolfTPM eliminate the need to store the firmware TPM’s NV integrity key as a secret on the device. wolfPUF reconstructs a device-unique key from the power-on state […]
Read MoreMore TagLUKS is now FIPS 140-3 Tested & Available with wolfCrypt FIPS
LUKS (Linux Unified Key Setup) is the standard disk encryption format used to protect data at rest on Linux systems. FIPS 140-3 support is available for LUKS with wolfCrypt FIPS, tested for use with encrypted Linux storage environments. wolfCrypt FIPS provides a lightweight cryptographic module for security-focused deployments. This helps organizations secure sensitive data on […]
Read MoreMore TagwolfProvider Adds SLH-DSA Post-Quantum Signatures
wolfSSL is adding SLH-DSA support to wolfProvider, bringing the FIPS 205 stateless hash-based signature standard to OpenSSL applications. The integration uses wolfCrypt underneath wolfProvider, so applications can use SLH-DSA through the OpenSSL provider interface while retaining wolfSSL’s portable cryptographic implementation. What is Included All 12 SLH-DSA SHA2 and SHAKE parameter sets. Key management, import/export, signing, […]
Read MoreMore Tag
