canmove, Confirmed users, Bureaucrats and Sysops emeriti
960
edits
No edit summary |
m (GPHemsley moved page Section 7: Cryptographic Key Management to NSSCryptoModuleSpec/Section 7: Cryptographic Key Management without leaving a redirect: NSSCryptoModuleSpec page) |
||
(16 intermediate revisions by one other user not shown) | |||
Line 13: | Line 13: | ||
Status | Status | ||
|- | |- | ||
| '''Specification of all aspects of key management;'''<br> | | '''Specification of all aspects of key management;'''<br> key generation, key establishment, key entry and output, key storage, and key zeroization.|| | ||
[http://wiki.mozilla.org/VE_07#VE.07. | [http://wiki.mozilla.org/VE_07#VE.07.03.01 VE.07.03.01 ] <br> | ||
[http://wiki.mozilla.org/VE_07#VE.07.13.01 VE.07.13.01 ]<br> | [http://wiki.mozilla.org/VE_07#VE.07.13.01 VE.07.13.01 ]<br> | ||
through<br> | through<br> | ||
Line 22: | Line 22: | ||
[http://wiki.mozilla.org/VE_07#VE.07.39.01 VE.07.39.01 ]<br> | [http://wiki.mozilla.org/VE_07#VE.07.39.01 VE.07.39.01 ]<br> | ||
[http://wiki.mozilla.org/VE_07#VE.07.40.01 VE.07.40.01 ]<br> | [http://wiki.mozilla.org/VE_07#VE.07.40.01 VE.07.40.01 ]<br> | ||
[http://wiki.mozilla.org/VE_07#VE.07.41.01 VE.07.41.01 ] | [http://wiki.mozilla.org/VE_07#VE.07.41.01 VE.07.41.01 ] | ||
[http://wiki.mozilla.org/ | || [http://wiki.mozilla.org/VE_07KeyMgmt Key Management]<br> [http://wiki.mozilla.org/VE_07KeyMgmt#Key_Zeroization Key Zeroization] | ||
|| draft | || draft | ||
|- | |- | ||
| '''Description of key protection'''|| | | '''Description of key protection'''|| | ||
[http://wiki.mozilla.org/VE_07#VE.07. | [http://wiki.mozilla.org/VE_07#VE.07.01.01 VE.07.01.01 ]<br> | ||
[http://wiki.mozilla.org/VE_07#VE.07. | [http://wiki.mozilla.org/VE_07#VE.07.02.01 VE.07.02.01 ] | ||
|| [http://wiki.mozilla.org/VE_07KeyMgmt Key Management] | || [http://wiki.mozilla.org/VE_07KeyMgmt Key Management] | ||
|| draft | || draft | ||
|- | |- | ||
| '''Proof of FIPS approved key generation''' | | '''Proof of FIPS approved key generation'''|| | ||
[http://wiki.mozilla.org/VE_07#VE.07.11.01 VE.07.11.01 ] | [http://wiki.mozilla.org/VE_07#VE.07.11.01 VE.07.11.01 ] | ||
|| [http://wiki.mozilla.org/VE_07KeyMgmt Key Generation] | || [http://wiki.mozilla.org/VE_07KeyMgmt#Key_Generation Key Generation] | ||
|| draft | || draft | ||
|- | |- | ||
| ''' | | '''Security of key generation method'''|| | ||
[http://wiki.mozilla.org/VE_07#VE.07.13.01 VE.07.13.01 ] | |||
[http://wiki.mozilla.org/VE_07#VE.07. | || [http://wiki.mozilla.org/VE_07KeyMgmt#Key_Generation Key Generation] | ||
|| [http://wiki.mozilla.org/VE_07KeyMgmt | |||
|| draft | || draft | ||
|- | |- | ||
| ''' | | '''Random number generator description'''|| [http://wiki.mozilla.org/VE_07#VE.07.08.01 VE.07.08.01 ]<br> [http://wiki.mozilla.org/VE_07#VE.07.09.01 VE.07.09.01 ]<br> [http://wiki.mozilla.org/VE_07#VE.07.10.01 VE.07.10.01 ] | ||
|| [http://wiki.mozilla.org/VE_07KeyMgmt#Random_Number_Generator RNG] | |||
|| | |||
|| draft | || draft | ||
|- | |- | ||
| '''Documentation of means to ensure entity association of stored keys'''|| | | '''Documentation of means to ensure entity association of stored keys'''|| | ||
[http://wiki.mozilla.org/VE_07#VE.07. | [http://wiki.mozilla.org/VE_07#VE.07.39.01 VE.07.39.01 ] | ||
|| [http://wiki.mozilla.org/VE_07KeyMgmt Entity Association Assurance] | || [http://wiki.mozilla.org/VE_07KeyMgmt#Entity_Association_Assurance Entity Association Assurance] | ||
|| draft | || draft | ||
|- | |- | ||
Line 66: | Line 59: | ||
| '''Key generation methods employed by the cryptographic module'''|| | | '''Key generation methods employed by the cryptographic module'''|| | ||
[http://wiki.mozilla.org/VE_07#VE.07.16.01 VE.07.16.01 ] | [http://wiki.mozilla.org/VE_07#VE.07.16.01 VE.07.16.01 ] | ||
|| | || [http://wiki.mozilla.org/VE_07KeyMgmt#Key_Generation Key Generation] | ||
|| draft | || draft | ||
|- | |- | ||
| '''Key | | '''Key establishment''' | ||
[http://wiki.mozilla.org/VE_07#VE.07.18.01 VE.07.18.01 ]<br> | || [http://wiki.mozilla.org/VE_07#VE.07.17.01 VE.07.17.01 ]<br> [http://wiki.mozilla.org/VE_07#VE.07.18.01 VE.07.18.01 ]<br> [http://wiki.mozilla.org/VE_07#VE.07.19.01 VE.07.19.01 ]<br> [http://wiki.mozilla.org/VE_07#VE.07.21.01 VE.07.21.01 ]<br> | ||
[http://wiki.mozilla.org/VE_07#VE.07.21.01 VE.07.21.01 ]<br> | || [http://wiki.mozilla.org/VE_07KeyMgmt#Key_Establishment_Techniques Key Establishment Techniques] | ||
[http://wiki.mozilla.org/VE_07#VE.07.23.01 VE.07.23.01 ]<br> | || draft | ||
[http://wiki.mozilla.org/VE_07#VE.07. | |- | ||
| '''Key entry and output methods'''|| | |||
[http://wiki.mozilla.org/VE_07#VE.07.23.01 VE.07.23.01 ]<br> [http://wiki.mozilla.org/VE_07#VE.07.24.01 VE.07.24.01 ]<br> | |||
[http://wiki.mozilla.org/VE_07#VE.07.27.01 VE.07.27.01 ]<br> | [http://wiki.mozilla.org/VE_07#VE.07.27.01 VE.07.27.01 ]<br> | ||
[http://wiki.mozilla.org/VE_07#VE.07.28.01 VE.07.28.01 ]<br> | [http://wiki.mozilla.org/VE_07#VE.07.28.01 VE.07.28.01 ]<br> [http://wiki.mozilla.org/VE_07#VE.07.29.01 VE.07.29.01 ] | ||
[http://wiki.mozilla.org/VE_07#VE.07.29.01 VE.07.29.01 ] | || [http://wiki.mozilla.org/VE_07KeyMgmt#Key_Entry_and_Output_Methods Key Entry and Output Methods] | ||
|| | || draft | ||
|- | |||
| '''Documentation of means to ensure entity association of entered or output keys'''|| | |||
[http://wiki.mozilla.org/VE_07#VE.07.25.01 VE.07.25.01 ] | |||
|| [http://wiki.mozilla.org/VE_07KeyMgmt#Entity_Association_Assurance Entity Association Assurance] | |||
|| draft | |||
|- | |||
| '''Manual key entry test'''|| | |||
[http://wiki.mozilla.org/VE_09#VE.09.40.01 VE.09.40.01 ]<br> | |||
[http://wiki.mozilla.org/VE_09#VE.09.40.02 VE.09.40.02 ] | |||
|| N/A. Manual key entry and output methods are not employed by the cryptographic module. | |||
|| draft | || draft | ||
|- | |- |