Hello,

I need NSS FIPS certification. I have got testvectors from testlab and I
have a question whether utility fipstest supports RSA2 test. Form the
testlab I got information that RSA is not supported for new validation.

Testvector RSA2:
# CAVS 17.8
# "FIPS186-4 - SigGen RSA PKCS#1 Ver 1.5" information for  "B+B NSS CM"
# Combinations selected: Mod Size 2048 with SHA-256 SHA-384 SHA-512
# NOTE: (IF APPLICABLE) Section mod = 4096 is ONLY allowed for FIPS186-2
SigGen testing for use with CMVP 1SUB, 2SUB and 4SUB report submissions.
NOTE: Salt lengths > SHA lengths is ONLY allowed for FIPS186-2 SigGenPSS
testing for use with CMVP 1SUB, 2SUB and 4SUB report submissions.
# Generated on Fri Jun 26 14:06:27 2015

[mod = 2048]

SHAAlg = SHA256
Msg =
9e8fbfd0ac1d2c88ce1d3c68360755d50b767a520f37123c80a0ebb73c237ee828237565d1056ae9548bf24d7c5ddab32be9b005fb6d859e2452f246a1bc59648e5f6d6fd594f5a609accd0192842d670b592d21e8de898f5c8ca2197a3ac6699aedb1d7fef15425b529d56dc0a3d657746ffa8f1fb2a577eef604190ec44e5f

...

Response from fipstest:

# CAVS 17.8
# "FIPS186-4 - SigGen RSA PKCS#1 Ver 1.5" information for "B+B NSS CM"
# Combinations selected: Mod Size 2048 with SHA-256 SHA-384 SHA-512
# NOTE: (IF APPLICABLE) Section mod = 4096 is ONLY allowed for FIPS186-2
SigGen testing for use with CMVP 1SUB, 2SUB and 4SUB report submissions.

# Generated on Fri Jun 26 14:06:27 2015

[mod = 2048]

n =
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

e = 010001
SHAAlg = SHA256
ERROR: RSA_HashSign failed

Thank you very much
Jiri




--
View this message in context: 
http://mozilla.6506.n7.nabble.com/RSA2-CAVP-test-tp341756.html
Sent from the Mozilla - Cryptography mailing list archive at Nabble.com.
-- 
dev-tech-crypto mailing list
dev-tech-crypto@lists.mozilla.org
https://lists.mozilla.org/listinfo/dev-tech-crypto

Reply via email to