On 07/25/2012 02:32 PM, Vasantharangan, Shruthi M. wrote:
Hi,
    How can run drbg test vectors provided by NIST to validate the response of 
the random output for the various algorithms on NSS.

Rgds
Shruthi

Softoken 3.11.4 uses the DSA RNG and not the DRBG (that would be RHEL 6 and Softoken 3.12.9).

The test vectors were ran internally with some version of fipstest, not necessarily the one shipping with the system (most likely not shipping with the system).

Are you trying to do a reval for some reason? For most cases, you simply need to refer to the FIPS validation (http://csrc.nist.gov/groups/STM/cmvp/documents/140-1/140val-all.htm#814) and the algorithm validation cert (http://csrc.nist.gov/groups/STM/cavp/documents/rng/rngval.html#208) [ see also 755 and 608 ].

bob


-- 
dev-tech-crypto mailing list
dev-tech-crypto@lists.mozilla.org
https://lists.mozilla.org/listinfo/dev-tech-crypto

Reply via email to