← Back to context

Comment by keepamovin

2 days ago

Does this mean TS is not FIPS 140-3 now?

It never was FIPS-approved and likely will never be. The wireguard protocol used by Tailscale uses ChaCha20 for encryption which is not FIPS approved.

  • Interesting. What is the FIPS version of wireguard?

    • There are some forks that are not compatible with regular wireguard, for example from wolfssl. Or just classic mTLS.