On Tue, 24 Mar 2020, Wewegama, Kavinda wrote: > I have used ECDSA successfully with X.509 certificates *without* FIPS mode enabled. There are issues, however, when FIPS mode is enabled: https://github.com/libreswan/libreswan/issues/318 Thanks for the report, I will look into it. Paul