NSSCryptoModuleSpec/Section 7: Cryptographic Key Management: Difference between revisions

no edit summary
No edit summary
No edit summary
Line 16: Line 16:
[http://wiki.mozilla.org/VE_07#VE.07.09.01 VE.07.09.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.09.01 VE.07.09.01 ]
thru
thru
[http://wiki.mozilla.org/VE_07#VE.07.11.01 VE.07.11.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.17.01 VE.07.17.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.17.01 VE.07.17.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.19.01 VE.07.19.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.19.01 VE.07.19.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.24.01 VE.07.24.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.39.01 VE.07.39.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.40.01 VE.07.40.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.41.01 VE.07.41.01 ]
|| [http://wiki.mozilla.org/VE_07KeyMgmt Key Management]||
|| [http://wiki.mozilla.org/VE_07KeyMgmt Key Management]||
|-
|-
Line 24: Line 27:
[http://wiki.mozilla.org/VE_07#VE.07.02.01 VE.07.02.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.02.01 VE.07.02.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.03.01 VE.07.03.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.03.01 VE.07.03.01 ]
|| [http://wiki.mozilla.org/VE_07KeyMgmt Key Management]||
|-
| '''Proof of FIPS approved key generation''' - Provide a validation certificate from a NIST- accredited laboratory.||
[http://wiki.mozilla.org/VE_07#VE.07.11.01 VE.07.11.01 ]
|| ||
|| ||
|-
| '''Proof of FIPS approved key generation''' - Provide a validation certificate from a NIST- accredited laboratory.|| || ||
|-
|-
| '''Random number generator test''' - Provide 20, 000 consecutive bits from the random number generator for statistical testing per section 4.11 of FIPS PUB 140-1.|| [http://wiki.mozilla.org/VE_07#VE.07.08.01 VE.07.08.01 ] || ||
| '''Random number generator test''' - Provide 20, 000 consecutive bits from the random number generator for statistical testing per section 4.11 of FIPS PUB 140-1.|| [http://wiki.mozilla.org/VE_07#VE.07.08.01 VE.07.08.01 ] || ||
|-
|-
| '''Proof/affirmation that key distribution is FIPS approved''' - Provide a validation certificate issued by a NIST-accredited laboratory or provide written affirmation that the key distribution technique is FIPS-approved.|| [http://wiki.mozilla.org/VE_07#VE.07.08.01 VE.07.08.01 ] || ||
| '''Proof/affirmation that key distribution is FIPS approved''' - Provide a validation certificate issued by a NIST-accredited laboratory or provide written affirmation that the key distribution technique is FIPS-approved.
|| || (N/A) ||
|-
|-
| '''Documentation of means to ensure entity association of stored keys''' - Describe the mechanisms or procedures used to ensure that each key will be associated with the correct entity (i.e. person, group or process) to which the keys will be assigned.||
| '''Documentation of means to ensure entity association of stored keys''' - Describe the mechanisms or procedures used to ensure that each key will be associated with the correct entity (i.e. person, group or process) to which the keys will be assigned.||
Line 37: Line 43:
|-
|-
| '''Manually distributed secret keys''' - Indicate the form in which the keys are entered or output (plaintext, split knowledge procedures, encrypted form)
| '''Manually distributed secret keys''' - Indicate the form in which the keys are entered or output (plaintext, split knowledge procedures, encrypted form)
|| || ||
|| || (N/A) ||
|-
|-
| '''Manually distributed secret key procedures''' - Indicate the form in which the keys are entered or output (using split knowledge procedures, encrypted form) If split knowledge procedures, specify separate operator auentication for each key component.||
| '''Manually distributed secret key procedures''' - Indicate the form in which the keys are entered or output (using split knowledge procedures, encrypted form) If split knowledge procedures, specify separate operator auentication for each key component.||
Line 45: Line 51:
|| (N/A)  ||
|| (N/A)  ||
|-
|-
| || [http://wiki.mozilla.org/VE_07#VE.07.18.01 VE.07.18.01 ] || (N/A) ||
| ||  
|-
[http://wiki.mozilla.org/VE_07#VE.07.18.01 VE.07.18.01 ]
| || [http://wiki.mozilla.org/VE_07#VE.07.21.01 VE.07.21.01 ] || ||
[http://wiki.mozilla.org/VE_07#VE.07.21.01 VE.07.21.01 ]
|-
[http://wiki.mozilla.org/VE_07#VE.07.23.01 VE.07.23.01 ]
| || [http://wiki.mozilla.org/VE_07#VE.07.23.01 VE.07.23.01 ] || (N/A) ||
[http://wiki.mozilla.org/VE_07#VE.07.25.01 VE.07.25.01 ]
|-
[http://wiki.mozilla.org/VE_07#VE.07.27.01 VE.07.27.01 ]
| || [http://wiki.mozilla.org/VE_07#VE.07.24.01 VE.07.24.01 ] || ||
[http://wiki.mozilla.org/VE_07#VE.07.28.01 VE.07.28.01 ]
|-
[http://wiki.mozilla.org/VE_07#VE.07.29.01 VE.07.29.01 ]
| || [http://wiki.mozilla.org/VE_07#VE.07.25.01 VE.07.25.01 ] || ||
|| (N/A) ||
|-
| || [http://wiki.mozilla.org/VE_07#VE.07.27.01 VE.07.27.01 ] || (N/A) ||
|-
| || [http://wiki.mozilla.org/VE_07#VE.07.28.01 VE.07.28.01 ] || ||
|-
| || [http://wiki.mozilla.org/VE_07#VE.07.29.01 VE.07.29.01 ] || ||
|-
| || [http://wiki.mozilla.org/VE_07#VE.07.39.01 VE.07.39.01 ] || ||
|-
| || [http://wiki.mozilla.org/VE_07#VE.07.40.01 VE.07.40.01 ] || ||
|-
|-
| || [http://wiki.mozilla.org/VE_07#VE.07.41.01 VE.07.41.01 ] || ||
|}
|}


Return to: [[NSSCryptoModuleSpec]]
Return to: [[NSSCryptoModuleSpec]]
198

edits