FIPS Module Specification: Difference between revisions

Jump to navigation Jump to search
No edit summary
Line 28: Line 28:
<b>Note</b>: Filename extensions depend upon the target operating environment. For some CPUs libfreebl3 is distributed in more than one variant. The optimal version is selected at run time.
<b>Note</b>: Filename extensions depend upon the target operating environment. For some CPUs libfreebl3 is distributed in more than one variant. The optimal version is selected at run time.


The database code of the NSS module (Berkeley DB 1.85, in mozilla/dbm and mozilla/security/nss/lib/softoken/dbmshim.c) is excluded from the security requirements of FIPS 140-2 because security relevant information such as secret and private keys is always encrypted before being stored in the database.
The database code of the NSS module (Berkeley DB 1.85, in mozilla/dbm and mozilla/security/nss/lib/softoken/dbmshim.c) is excluded from the security requirements of FIPS 140-2 because the security-related information stored in the databases is either encrypted (e.g., secret and private cryptographic keys) or digitally signed (e.g., certificates and CRLs).


The NSS module depends on the following libraries outside the cryptographic boundary.
The NSS module depends on the following libraries outside the cryptographic boundary.
canmove, Confirmed users
937

edits

Navigation menu