Hi, How can run drbg test vectors provided by NIST to validate the response of the random output for the various algorithms on NSS.
Rgds Shruthi From: Vasantharangan, Shruthi M. Sent: Wednesday, 25 July, 2012 5:01 PM To: dev-tech-crypto@lists.mozilla.org Subject: RandomNumberGenerator that is FIPS2complaint HI, I am using the NSS Cryptographic Module document to use the random number generator for FIPS2 random number. If I use the FC_GetFunctionList fpr PK11_GenerateRandom and initialise with slotid as 0, then is the Mode set to FIPS level2 ? NSS Cryptographic Module Version 3.11.4 FIPS 140-2 Non-Proprietary Security Policy Level 1 and 2 Validation Thanks for your help Shruthi From: Vasantharangan, Shruthi M. Sent: Tuesday, 24 July, 2012 2:20 PM To: dev-tech-crypto@lists.mozilla.org<mailto:dev-tech-crypto@lists.mozilla.org> Subject: RandomNumberGenerator that is FIPS2complaint Hi, We require a random number generator that's FIPS2 complaint on RedHat Linux 5.6. In the linux rpm for NSS nss-3.12.8-1.el5. I find random generation api's in pkcs11f.h. If I use them can I be sure that the random data generated is FIPS2 complaint? What is the api to set NSS in FIPS Mode? pk11pub.h:SECStatus PK11_GenerateRandom(unsigned char *data,int len); Rgds Shruthi _____________________________________________________ This electronic message and any files transmitted with it contains information from iDirect, which may be privileged, proprietary and/or confidential. It is intended solely for the use of the individual or entity to whom they are addressed. If you are not the original recipient or the person responsible for delivering the email to the intended recipient, be advised that you have received this email in error, and that any use, dissemination, forwarding, printing, or copying of this email is strictly prohibited. If you received this email in error, please delete it and immediately notify the sender. _____________________________________________________ -- dev-tech-crypto mailing list dev-tech-crypto@lists.mozilla.org https://lists.mozilla.org/listinfo/dev-tech-crypto