NSSCryptoModuleSpec/Section 7: Cryptographic Key Management: Difference between revisions

no edit summary
mNo edit summary
No edit summary
Line 13: Line 13:
Status
Status
|-
|-
| '''Specification of all aspects of key management;'''<br> key material, key generation, key distribution, key entry & output, key storage, key destruction, key archiving.||
| '''Specification of all aspects of key management;'''<br> key material, key generation, key establishment, key entry and output, key storage, and key zeroization.||
[http://wiki.mozilla.org/VE_07#VE.07.01.01 VE.07.01.01 ]  <br>
[http://wiki.mozilla.org/VE_07#VE.07.01.01 VE.07.01.01 ]  <br>
[http://wiki.mozilla.org/VE_07#VE.07.13.01 VE.07.13.01 ]<br>
[http://wiki.mozilla.org/VE_07#VE.07.13.01 VE.07.13.01 ]<br>
Line 48: Line 48:
|| draft
|| draft
|-
|-
| '''Proof/affirmation that key distribution is FIPS approved''' -<br>Provide a validation certificate issued by a NIST-accredited laboratory or provide written affirmation that the key distribution technique is FIPS-approved.
| '''Proof/affirmation that key establishment is FIPS approved''' -<br>Provide documentation stating that the key establishment technique is FIPS-approved.
|| || (N/A)
|| [http://wiki.mozilla.org/VE_07#VE.07.17.01 VE.07.17.01 ]
|| The following FIPS Approved key establishment techniques listed in Annex D to FIPS PUB  140-2 are used: Diffie-Hellman (key agreement) and Key Wrapping using RSA keys.
|| draft
|| draft
|-
|-
Line 57: Line 58:
|| draft
|| draft
|-
|-
| '''Manually distributed secret keys'''
| '''Output of intermediate key generation values'''||
|| || (N/A)
[http://wiki.mozilla.org/VE_07#VE.07.15.01 VE.07.15.01 ]<br>
[http://wiki.mozilla.org/VE_07#VE.07.15.02 VE.07.15.02 ]
|| No intermediate key generation values are output from the cryptographic module upon completion of the key generation process.
|| draft
|| draft
|-
|-
| '''Manually distributed secret key procedures'''||
| '''Key generation methods employed by the cryptographic module'''||
[http://wiki.mozilla.org/VE_07#VE.07.15.01 VE.07.15.01 ]<br>
[http://wiki.mozilla.org/VE_07#VE.07.15.02 VE.07.15.02 ]<br>
[http://wiki.mozilla.org/VE_07#VE.07.16.01 VE.07.16.01 ]
[http://wiki.mozilla.org/VE_07#VE.07.16.01 VE.07.16.01 ]
|| (N/A)
|| (N/A)
canmove, Confirmed users
937

edits