On 04/17/2013 06:38 PM, bratchan...@gmail.com wrote:
Hi,
The fipstest.c does not seem to support the scenario with prediction resistance
= true . The case statement for function drbg has to change if prediction
resistance is true and also the NIST request file has an additional parameter
EntrophyInputPR in case of [Prediction resistance = true ] scenario and this is
not even parsed by fipstest.c .
Please refer the document
http://csrc.nist.gov/groups/STM/cavp/documents/drbg/DRBGVS.pdf
The NSS drbg does not support all the cases that NIST can test. NSS
itself does not use prediction resistance, only the reseed, so you don't
actually need to test it.
bob
--
dev-tech-crypto mailing list
dev-tech-crypto@lists.mozilla.org
https://lists.mozilla.org/listinfo/dev-tech-crypto