NSSCryptoModuleSpec/Section 9: Self Tests: Difference between revisions

m
no edit summary
mNo edit summary
mNo edit summary
Line 44: Line 44:
||  
||  
'''Power-up Self Test''':
'''Power-up Self Test''':
[http://www.mozilla.org/projects/security/pki/nss/fips/nss-source/mozilla/security/nss/lib/softoken/fipstokn.c.dep.html#FC_Initialize 'PKCS#11 Initialization']:  
[http://www.mozilla.org/projects/security/pki/nss/fips/nss-source/mozilla/security/nss/lib/softoken/fipstokn.c.dep.html#FC_Initialize PKCS#11 Initialization]:  
As part of the PKCS#11 initialization of the  
As part of the PKCS#11 initialization of the  
FIPS-140-2 module, any error return
FIPS-140-2 module, any error return
Line 55: Line 55:
|
|
'''List of mandatory & optional self-tests  
'''List of mandatory & optional self-tests  
performed by the module''' - Provide a list
performed by the module'''  
of all self-tests, both mandatory and optional,
that the module can perform. This list must
include both power-up tests and conditional
tests.
||  
||  
[http://wiki.mozilla.org/VE_09#VE.09.07.01 VE.09.07.01 ]     
[http://wiki.mozilla.org/VE_09#VE.09.07.01 VE.09.07.01 ]     
||  
||  


[http://www.mozilla.org/projects/security/pki/nss/fips/nss-source/mozilla/security/nss/lib/softoken/fipstest.c.html
[http://www.mozilla.org/projects/security/pki/nss/fips/nss-source/mozilla/security/nss/lib/softoken/fipstest.c.html Power up Self Test Code]
Power up Self Test Code]


[[Power up SelfTest Design]]
[[Power up SelfTest Design]]
Line 102: Line 97:
|-
|-
|  
|  
'''Document cryptographic algorithm's known  
'''Cryptographic algorithm's known  
answer test''' The vendor shall document the
answer test'''  
indicator that the module outputs upon
successful completion indicator for the power-up self-tests.
successful completion of the power-up self-tests.
|| [http://wiki.mozilla.org/VE_09#VE.09.10.01 VE.09.10.01 ]     
|| [http://wiki.mozilla.org/VE_09#VE.09.10.01 VE.09.10.01 ]     
||
||
Line 116: Line 110:




[http://www.mozilla.org/projects/security/pki/nss/fips/nss-source/mozilla/security/nss/lib/softoken/fipstest.c.dep.html                      sftk_fips_RC2_PowerUpSelfTest]
[http://www.mozilla.org/projects/security/pki/nss/fips/nss-source/mozilla/security/nss/lib/softoken/fipstest.c.dep.html                      sftk_fips_RC2_PowerUpSelfTest]  


[http://www.mozilla.org/projects/security/pki/nss/fips/nss-source/mozilla/security/nss/lib/softoken/fipstest.c.dep.html                      sftk_fips_RC4_PowerUpSelfTest]
[http://www.mozilla.org/projects/security/pki/nss/fips/nss-source/mozilla/security/nss/lib/softoken/fipstest.c.dep.html                      sftk_fips_RC4_PowerUpSelfTest]  


[http://www.mozilla.org/projects/security/pki/nss/fips/nss-source/mozilla/security/nss/lib/softoken/fipstest.c.dep.html                      sftk_fips_DES_PowerUpSelfTest]
[http://www.mozilla.org/projects/security/pki/nss/fips/nss-source/mozilla/security/nss/lib/softoken/fipstest.c.dep.html                      sftk_fips_DES_PowerUpSelfTest]  


[http://www.mozilla.org/projects/security/pki/nss/fips/nss-source/mozilla/security/nss/lib/softoken/fipstest.c.dep.html                      sftk_fips_DES3_PowerUpSelfTest]
[http://www.mozilla.org/projects/security/pki/nss/fips/nss-source/mozilla/security/nss/lib/softoken/fipstest.c.dep.html                      sftk_fips_DES3_PowerUpSelfTest]


[http://www.mozilla.org/projects/security/pki/nss/fips/nss-source/mozilla/security/nss/lib/softoken/fipstest.c.dep.html                      sftk_fips_MD2_PowerUpSelfTest]
[http://www.mozilla.org/projects/security/pki/nss/fips/nss-source/mozilla/security/nss/lib/softoken/fipstest.c.dep.html                      sftk_fips_MD2_PowerUpSelfTest]  


[http://www.mozilla.org/projects/security/pki/nss/fips/nss-source/mozilla/security/nss/lib/softoken/fipstest.c.dep.html                      sftk_fips_MD5_PowerUpSelfTest]
[http://www.mozilla.org/projects/security/pki/nss/fips/nss-source/mozilla/security/nss/lib/softoken/fipstest.c.dep.html                      sftk_fips_MD5_PowerUpSelfTest]  


[http://www.mozilla.org/projects/security/pki/nss/fips/nss-source/mozilla/security/nss/lib/softoken/fipstest.c.dep.html                      sftk_fips_SHA1_PowerUpSelfTest]
[http://www.mozilla.org/projects/security/pki/nss/fips/nss-source/mozilla/security/nss/lib/softoken/fipstest.c.dep.html                      sftk_fips_SHA1_PowerUpSelfTest]
Line 240: Line 234:
||
||
|-
|-
| '''EDC for software integrity''' || [http://wiki.mozilla.org/VE_09#VE.09.24.01 VE.09.24.01 ] || (N/A) ||
| '''EDC for software integrity'''  
|| [http://wiki.mozilla.org/VE_09#VE.09.24.01 VE.09.24.01 ]  
|| (N/A) ||
|-
|-
| '''Critical Functions'''  
| '''Critical Functions'''  
|| [http://wiki.mozilla.org/VE_09#VE.09.27.01 VE.09.27.01 ]   
|| [http://wiki.mozilla.org/VE_09#VE.09.27.01 VE.09.27.01 ]   
||
||
 
Random Number Generator Self tests are the
RNG -  
[http://www.mozilla.org/projects/security/pki/nss/fips/nss-source/mozilla/security/nss/lib/freebl/prng_fips1861.c.dep.html#alg_fips186_1_x3_1 Continuous Pseudo-Random Number Self-Tests ]
||  
||  
|-
|-
Line 258: Line 254:
||
||
|-
|-
'''Verification of Digital Signatures'''
|
|  
'''Key transport method'''
'''Key transport method'''
||  
||  
Line 275: Line 270:
[http://wiki.mozilla.org/VE_09#VE.09.35.02 VE.09.35.02 ]  
[http://wiki.mozilla.org/VE_09#VE.09.35.02 VE.09.35.02 ]  
||
||
DSS signature see 09.22.03
[http://www.itl.nist.gov/fipspubs/fip186.htm Digital Signature Standard (DSS) ] see 09.22.01 to 09.22.03
||
||
|-
|-
219

edits