NSSCryptoModuleSpec/Section 7: Cryptographic Key Management: Difference between revisions

From MozillaWiki
Jump to navigation Jump to search
No edit summary
mNo edit summary
Line 6: Line 6:
Document Description
Document Description
!
!
  DTR  
DTR  
Section
Section
!
!
Line 13: Line 13:
Status
Status
|-
|-
| '''Specification of all aspects of key management; key material, key generation, key distribution, key entry & output, key storage, key destruction, key archiving'''||
| '''Specification of all aspects of key management;'''<br> key material, key generation, key distribution, key entry & output, key storage, key destruction, key archiving.||
[http://wiki.mozilla.org/VE_07#VE.07.01.01 VE.07.01.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.01.01 VE.07.01.01 ] <br>
[http://wiki.mozilla.org/VE_07#VE.07.13.01 VE.07.13.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.13.01 VE.07.13.01 ]<br>
thru
through<br>
[http://wiki.mozilla.org/VE_07#VE.07.17.01 VE.07.17.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.17.01 VE.07.17.01 ]<br>
[http://wiki.mozilla.org/VE_07#VE.07.19.01 VE.07.19.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.19.01 VE.07.19.01 ]<br>
[http://wiki.mozilla.org/VE_07#VE.07.24.01 VE.07.24.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.24.01 VE.07.24.01 ]<br>
[http://wiki.mozilla.org/VE_07#VE.07.39.01 VE.07.39.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.39.01 VE.07.39.01 ]<br>
[http://wiki.mozilla.org/VE_07#VE.07.40.01 VE.07.40.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.40.01 VE.07.40.01 ]<br>
[http://wiki.mozilla.org/VE_07#VE.07.41.01 VE.07.41.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.41.01 VE.07.41.01 ]<br>
[http://wiki.mozilla.org/VE_07#VE.07.42.01 VE.07.42.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.42.01 VE.07.42.01 ]
|| [http://wiki.mozilla.org/VE_07KeyMgmt Key Management]
|| [http://wiki.mozilla.org/VE_07KeyMgmt Key Management]
Line 28: Line 28:
|-
|-
| '''Description of key protection'''||
| '''Description of key protection'''||
[http://wiki.mozilla.org/VE_07#VE.07.02.01 VE.07.02.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.02.01 VE.07.02.01 ]<br>
[http://wiki.mozilla.org/VE_07#VE.07.03.01 VE.07.03.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.03.01 VE.07.03.01 ]
|| [http://wiki.mozilla.org/VE_07KeyMgmt Key Management]
|| [http://wiki.mozilla.org/VE_07KeyMgmt Key Management]
|| draft
|| draft
|-
|-
| '''Proof of FIPS approved key generation''' - Provide a validation certificate from a NIST- accredited laboratory.||  
| '''Proof of FIPS approved key generation''' -<br>Provide a validation certificate from a NIST- accredited laboratory.||  
[http://wiki.mozilla.org/VE_07#VE.07.11.01 VE.07.11.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.11.01 VE.07.11.01 ]
|| [http://wiki.mozilla.org/VE_07KeyMgmt Key Generation]
|| [http://wiki.mozilla.org/VE_07KeyMgmt Key Generation]
|| draft
|| draft
|-
|-
| '''Random number generator description'''|| [http://wiki.mozilla.org/VE_07#VE.07.09.01 VE.07.09.01 ]
| '''Random number generator description'''|| [http://wiki.mozilla.org/VE_07#VE.07.09.01 VE.07.09.01 ]<br>
[http://wiki.mozilla.org/VE_07#VE.07.10.01 VE.07.10.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.10.01 VE.07.10.01 ]<br>
[http://wiki.mozilla.org/VE_07#VE.07.12.01 VE.07.12.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.12.01 VE.07.12.01 ]
|| [http://wiki.mozilla.org/VE_07KeyMgmt RNG]
|| [http://wiki.mozilla.org/VE_07KeyMgmt RNG]
Line 48: Line 48:
|| draft
|| draft
|-
|-
| '''Proof/affirmation that key distribution is FIPS approved''' - Provide a validation certificate issued by a NIST-accredited laboratory or provide written affirmation that the key distribution technique is FIPS-approved.
| '''Proof/affirmation that key distribution is FIPS approved''' -<br>Provide a validation certificate issued by a NIST-accredited laboratory or provide written affirmation that the key distribution technique is FIPS-approved.
|| || (N/A)
|| || (N/A)
|| draft
|| draft
Line 62: Line 62:
|-
|-
| '''Manually distributed secret key procedures'''||
| '''Manually distributed secret key procedures'''||
[http://wiki.mozilla.org/VE_07#VE.07.15.01 VE.07.15.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.15.01 VE.07.15.01 ]<br>
[http://wiki.mozilla.org/VE_07#VE.07.15.02 VE.07.15.02 ]
[http://wiki.mozilla.org/VE_07#VE.07.15.02 VE.07.15.02 ]<br>
[http://wiki.mozilla.org/VE_07#VE.07.16.01 VE.07.16.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.16.01 VE.07.16.01 ]
|| (N/A)
|| (N/A)
Line 69: Line 69:
|-
|-
| '''Key generation'''||  
| '''Key generation'''||  
[http://wiki.mozilla.org/VE_07#VE.07.18.01 VE.07.18.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.18.01 VE.07.18.01 ]<br>
[http://wiki.mozilla.org/VE_07#VE.07.21.01 VE.07.21.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.21.01 VE.07.21.01 ]<br>
[http://wiki.mozilla.org/VE_07#VE.07.23.01 VE.07.23.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.23.01 VE.07.23.01 ]<br>
[http://wiki.mozilla.org/VE_07#VE.07.25.01 VE.07.25.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.25.01 VE.07.25.01 ]<br>
[http://wiki.mozilla.org/VE_07#VE.07.27.01 VE.07.27.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.27.01 VE.07.27.01 ]<br>
[http://wiki.mozilla.org/VE_07#VE.07.28.01 VE.07.28.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.28.01 VE.07.28.01 ]<br>
[http://wiki.mozilla.org/VE_07#VE.07.29.01 VE.07.29.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.29.01 VE.07.29.01 ]
|| (N/A)
|| (N/A)

Revision as of 21:26, 16 March 2006

This is a draft document

Document Description

DTR Section

Assessment

Status

Specification of all aspects of key management;
key material, key generation, key distribution, key entry & output, key storage, key destruction, key archiving.

VE.07.01.01
VE.07.13.01
through
VE.07.17.01
VE.07.19.01
VE.07.24.01
VE.07.39.01
VE.07.40.01
VE.07.41.01
VE.07.42.01

Key Management draft
Description of key protection

VE.07.02.01
VE.07.03.01

Key Management draft
Proof of FIPS approved key generation -
Provide a validation certificate from a NIST- accredited laboratory.

VE.07.11.01

Key Generation draft
Random number generator description VE.07.09.01

VE.07.10.01
VE.07.12.01

RNG draft
Random number generator test VE.07.08.01 draft
Proof/affirmation that key distribution is FIPS approved -
Provide a validation certificate issued by a NIST-accredited laboratory or provide written affirmation that the key distribution technique is FIPS-approved.
(N/A) draft
Documentation of means to ensure entity association of stored keys

VE.07.13.01

Entity Association Assurance draft
Manually distributed secret keys (N/A) draft
Manually distributed secret key procedures

VE.07.15.01
VE.07.15.02
VE.07.16.01

(N/A) draft
Key generation

VE.07.18.01
VE.07.21.01
VE.07.23.01
VE.07.25.01
VE.07.27.01
VE.07.28.01
VE.07.29.01

(N/A) draft

Return to: NSSCryptoModuleSpec