NSSCryptoModuleSpec/Section 7: Cryptographic Key Management: Difference between revisions
Jump to navigation
Jump to search
No edit summary |
mNo edit summary |
||
Line 6: | Line 6: | ||
Document Description | Document Description | ||
! | ! | ||
DTR | |||
Section | Section | ||
! | ! | ||
Line 13: | Line 13: | ||
Status | Status | ||
|- | |- | ||
| '''Specification of all aspects of key management; key material, key generation, key distribution, key entry & output, key storage, key destruction, key archiving | | '''Specification of all aspects of key management;'''<br> key material, key generation, key distribution, key entry & output, key storage, key destruction, key archiving.|| | ||
[http://wiki.mozilla.org/VE_07#VE.07.01.01 VE.07.01.01 ] | [http://wiki.mozilla.org/VE_07#VE.07.01.01 VE.07.01.01 ] <br> | ||
[http://wiki.mozilla.org/VE_07#VE.07.13.01 VE.07.13.01 ] | [http://wiki.mozilla.org/VE_07#VE.07.13.01 VE.07.13.01 ]<br> | ||
through<br> | |||
[http://wiki.mozilla.org/VE_07#VE.07.17.01 VE.07.17.01 ] | [http://wiki.mozilla.org/VE_07#VE.07.17.01 VE.07.17.01 ]<br> | ||
[http://wiki.mozilla.org/VE_07#VE.07.19.01 VE.07.19.01 ] | [http://wiki.mozilla.org/VE_07#VE.07.19.01 VE.07.19.01 ]<br> | ||
[http://wiki.mozilla.org/VE_07#VE.07.24.01 VE.07.24.01 ] | [http://wiki.mozilla.org/VE_07#VE.07.24.01 VE.07.24.01 ]<br> | ||
[http://wiki.mozilla.org/VE_07#VE.07.39.01 VE.07.39.01 ] | [http://wiki.mozilla.org/VE_07#VE.07.39.01 VE.07.39.01 ]<br> | ||
[http://wiki.mozilla.org/VE_07#VE.07.40.01 VE.07.40.01 ] | [http://wiki.mozilla.org/VE_07#VE.07.40.01 VE.07.40.01 ]<br> | ||
[http://wiki.mozilla.org/VE_07#VE.07.41.01 VE.07.41.01 ] | [http://wiki.mozilla.org/VE_07#VE.07.41.01 VE.07.41.01 ]<br> | ||
[http://wiki.mozilla.org/VE_07#VE.07.42.01 VE.07.42.01 ] | [http://wiki.mozilla.org/VE_07#VE.07.42.01 VE.07.42.01 ] | ||
|| [http://wiki.mozilla.org/VE_07KeyMgmt Key Management] | || [http://wiki.mozilla.org/VE_07KeyMgmt Key Management] | ||
Line 28: | Line 28: | ||
|- | |- | ||
| '''Description of key protection'''|| | | '''Description of key protection'''|| | ||
[http://wiki.mozilla.org/VE_07#VE.07.02.01 VE.07.02.01 ] | [http://wiki.mozilla.org/VE_07#VE.07.02.01 VE.07.02.01 ]<br> | ||
[http://wiki.mozilla.org/VE_07#VE.07.03.01 VE.07.03.01 ] | [http://wiki.mozilla.org/VE_07#VE.07.03.01 VE.07.03.01 ] | ||
|| [http://wiki.mozilla.org/VE_07KeyMgmt Key Management] | || [http://wiki.mozilla.org/VE_07KeyMgmt Key Management] | ||
|| draft | || draft | ||
|- | |- | ||
| '''Proof of FIPS approved key generation''' - Provide a validation certificate from a NIST- accredited laboratory.|| | | '''Proof of FIPS approved key generation''' -<br>Provide a validation certificate from a NIST- accredited laboratory.|| | ||
[http://wiki.mozilla.org/VE_07#VE.07.11.01 VE.07.11.01 ] | [http://wiki.mozilla.org/VE_07#VE.07.11.01 VE.07.11.01 ] | ||
|| [http://wiki.mozilla.org/VE_07KeyMgmt Key Generation] | || [http://wiki.mozilla.org/VE_07KeyMgmt Key Generation] | ||
|| draft | || draft | ||
|- | |- | ||
| '''Random number generator description'''|| [http://wiki.mozilla.org/VE_07#VE.07.09.01 VE.07.09.01 ] | | '''Random number generator description'''|| [http://wiki.mozilla.org/VE_07#VE.07.09.01 VE.07.09.01 ]<br> | ||
[http://wiki.mozilla.org/VE_07#VE.07.10.01 VE.07.10.01 ] | [http://wiki.mozilla.org/VE_07#VE.07.10.01 VE.07.10.01 ]<br> | ||
[http://wiki.mozilla.org/VE_07#VE.07.12.01 VE.07.12.01 ] | [http://wiki.mozilla.org/VE_07#VE.07.12.01 VE.07.12.01 ] | ||
|| [http://wiki.mozilla.org/VE_07KeyMgmt RNG] | || [http://wiki.mozilla.org/VE_07KeyMgmt RNG] | ||
Line 48: | Line 48: | ||
|| draft | || draft | ||
|- | |- | ||
| '''Proof/affirmation that key distribution is FIPS approved''' - Provide a validation certificate issued by a NIST-accredited laboratory or provide written affirmation that the key distribution technique is FIPS-approved. | | '''Proof/affirmation that key distribution is FIPS approved''' -<br>Provide a validation certificate issued by a NIST-accredited laboratory or provide written affirmation that the key distribution technique is FIPS-approved. | ||
|| || (N/A) | || || (N/A) | ||
|| draft | || draft | ||
Line 62: | Line 62: | ||
|- | |- | ||
| '''Manually distributed secret key procedures'''|| | | '''Manually distributed secret key procedures'''|| | ||
[http://wiki.mozilla.org/VE_07#VE.07.15.01 VE.07.15.01 ] | [http://wiki.mozilla.org/VE_07#VE.07.15.01 VE.07.15.01 ]<br> | ||
[http://wiki.mozilla.org/VE_07#VE.07.15.02 VE.07.15.02 ] | [http://wiki.mozilla.org/VE_07#VE.07.15.02 VE.07.15.02 ]<br> | ||
[http://wiki.mozilla.org/VE_07#VE.07.16.01 VE.07.16.01 ] | [http://wiki.mozilla.org/VE_07#VE.07.16.01 VE.07.16.01 ] | ||
|| (N/A) | || (N/A) | ||
Line 69: | Line 69: | ||
|- | |- | ||
| '''Key generation'''|| | | '''Key generation'''|| | ||
[http://wiki.mozilla.org/VE_07#VE.07.18.01 VE.07.18.01 ] | [http://wiki.mozilla.org/VE_07#VE.07.18.01 VE.07.18.01 ]<br> | ||
[http://wiki.mozilla.org/VE_07#VE.07.21.01 VE.07.21.01 ] | [http://wiki.mozilla.org/VE_07#VE.07.21.01 VE.07.21.01 ]<br> | ||
[http://wiki.mozilla.org/VE_07#VE.07.23.01 VE.07.23.01 ] | [http://wiki.mozilla.org/VE_07#VE.07.23.01 VE.07.23.01 ]<br> | ||
[http://wiki.mozilla.org/VE_07#VE.07.25.01 VE.07.25.01 ] | [http://wiki.mozilla.org/VE_07#VE.07.25.01 VE.07.25.01 ]<br> | ||
[http://wiki.mozilla.org/VE_07#VE.07.27.01 VE.07.27.01 ] | [http://wiki.mozilla.org/VE_07#VE.07.27.01 VE.07.27.01 ]<br> | ||
[http://wiki.mozilla.org/VE_07#VE.07.28.01 VE.07.28.01 ] | [http://wiki.mozilla.org/VE_07#VE.07.28.01 VE.07.28.01 ]<br> | ||
[http://wiki.mozilla.org/VE_07#VE.07.29.01 VE.07.29.01 ] | [http://wiki.mozilla.org/VE_07#VE.07.29.01 VE.07.29.01 ] | ||
|| (N/A) | || (N/A) |
Revision as of 21:26, 16 March 2006
This is a draft document
Document Description |
DTR Section |
Assessment |
Status |
---|---|---|---|
Specification of all aspects of key management; key material, key generation, key distribution, key entry & output, key storage, key destruction, key archiving. |
VE.07.01.01 |
Key Management | draft |
Description of key protection | Key Management | draft | |
Proof of FIPS approved key generation - Provide a validation certificate from a NIST- accredited laboratory. |
Key Generation | draft | |
Random number generator description | VE.07.09.01 |
RNG | draft |
Random number generator test | VE.07.08.01 | draft | |
Proof/affirmation that key distribution is FIPS approved - Provide a validation certificate issued by a NIST-accredited laboratory or provide written affirmation that the key distribution technique is FIPS-approved. |
(N/A) | draft | |
Documentation of means to ensure entity association of stored keys | Entity Association Assurance | draft | |
Manually distributed secret keys | (N/A) | draft | |
Manually distributed secret key procedures | (N/A) | draft | |
Key generation |
VE.07.18.01 |
(N/A) | draft |
Return to: NSSCryptoModuleSpec