FIPS Design Assurance: Difference between revisions

Jump to navigation Jump to search
Line 18: Line 18:


===Components===
===Components===
All components of the NSS cryptographic module are contained within two libraries, softokn3 and freebl3, as described in [http://wiki.mozilla.org/FIPS_Module_Specification#Cryptographic_Module_Specification Section 1 ]. The combined role that is supported is realized entirely within these two libraries. Each of these libraries is shipped with a checksum file containing a DSA signature of the library file. When NSS is started up in FIPS mode, the module recomputes the SHA-1 hash of the library file and verifies the signature. Initialization fails if the signature is not valid.
All software components of the NSS cryptographic module are contained within two libraries, softokn3 and freebl3, as described in [http://wiki.mozilla.org/FIPS_Module_Specification#Cryptographic_Module_Specification Section 1 ]. The combined role that is supported is realized entirely within these two libraries. Each of these libraries is shipped with a checksum file containing a DSA signature of the library file. When NSS is started up in FIPS mode, the module recomputes the SHA-1 hash of the library file and verifies the signature. Initialization fails if the signature is not valid.


A list of software modules is [http://wiki.mozilla.org/FIPSmodule_list here ].
A list of software modules is [http://wiki.mozilla.org/FIPSmodule_list here ].
The hardware components of the NSS cryptographic module are the hardware components of a general purpose computer.


===Functions===
===Functions===
canmove, Confirmed users
937

edits

Navigation menu