FIPS Design Assurance: Difference between revisions

Line 16: Line 16:


===Delivery===
===Delivery===
NSS cryptographic module releases are available from mozilla.org's [https://ftp.mozilla.org/pub/mozilla.org/security/nss/releases/ secure download site] as compressed (gzipped) tar files or zip files. The site uses the HTTPS protocol (HTTP over TLS) for delivering the NSS cryptographic module. The SSL server certificate of the site has a 1024-bit RSA public key and is issued by the following chain of CAs:
NSS cryptographic module releases are available from mozilla.org's [https://ftp.mozilla.org/pub/mozilla.org/security/nss/releases/ secure download site] as compressed (gzipped) tar files or zip files. The site uses the HTTPS protocol (HTTP over TLS) to maintain security when delivering the NSS cryptographic module to authorized operators. The TLS server certificate of the site has a 1024-bit RSA public key and is issued by the following chain of certification authorities (CAs):
* '''GlobalSign Root CA''' of GlobalSign nv-sa, Belgium. 2048-bit RSA public key.
* '''GlobalSign Root CA''' of GlobalSign nv-sa, Belgium. 2048-bit RSA public key.
* '''GlobalSign RootSign Partners CA''' of GlobalSign nv-sa, Belgium. 2048-bit RSA public key.
* '''GlobalSign RootSign Partners CA''' of GlobalSign nv-sa, Belgium. 2048-bit RSA public key.
canmove, Confirmed users
937

edits