On 07/25/2012 02:32 PM, Vasantharangan, Shruthi M. wrote:
Hi, How can run drbg test vectors provided by NIST to validate the response of the random output for the various algorithms on NSS.Rgds Shruthi
Softoken 3.11.4 uses the DSA RNG and not the DRBG (that would be RHEL 6 and Softoken 3.12.9).
The test vectors were ran internally with some version of fipstest, not necessarily the one shipping with the system (most likely not shipping with the system).
Are you trying to do a reval for some reason? For most cases, you simply need to refer to the FIPS validation (http://csrc.nist.gov/groups/STM/cmvp/documents/140-1/140val-all.htm#814) and the algorithm validation cert (http://csrc.nist.gov/groups/STM/cavp/documents/rng/rngval.html#208) [ see also 755 and 608 ].
bob
-- dev-tech-crypto mailing list [email protected] https://lists.mozilla.org/listinfo/dev-tech-crypto

