Hello, I need NSS FIPS certification. I have got testvectors from testlab and I have a question whether utility fipstest supports RSA2 test. Form the testlab I got information that RSA is not supported for new validation.
Testvector RSA2: # CAVS 17.8 # "FIPS186-4 - SigGen RSA PKCS#1 Ver 1.5" information for "B+B NSS CM" # Combinations selected: Mod Size 2048 with SHA-256 SHA-384 SHA-512 # NOTE: (IF APPLICABLE) Section mod = 4096 is ONLY allowed for FIPS186-2 SigGen testing for use with CMVP 1SUB, 2SUB and 4SUB report submissions. NOTE: Salt lengths > SHA lengths is ONLY allowed for FIPS186-2 SigGenPSS testing for use with CMVP 1SUB, 2SUB and 4SUB report submissions. # Generated on Fri Jun 26 14:06:27 2015 [mod = 2048] SHAAlg = SHA256 Msg = 9e8fbfd0ac1d2c88ce1d3c68360755d50b767a520f37123c80a0ebb73c237ee828237565d1056ae9548bf24d7c5ddab32be9b005fb6d859e2452f246a1bc59648e5f6d6fd594f5a609accd0192842d670b592d21e8de898f5c8ca2197a3ac6699aedb1d7fef15425b529d56dc0a3d657746ffa8f1fb2a577eef604190ec44e5f ... Response from fipstest: # CAVS 17.8 # "FIPS186-4 - SigGen RSA PKCS#1 Ver 1.5" information for "B+B NSS CM" # Combinations selected: Mod Size 2048 with SHA-256 SHA-384 SHA-512 # NOTE: (IF APPLICABLE) Section mod = 4096 is ONLY allowed for FIPS186-2 SigGen testing for use with CMVP 1SUB, 2SUB and 4SUB report submissions. # Generated on Fri Jun 26 14:06:27 2015 [mod = 2048] n = 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 e = 010001 SHAAlg = SHA256 ERROR: RSA_HashSign failed Thank you very much Jiri -- View this message in context: http://mozilla.6506.n7.nabble.com/RSA2-CAVP-test-tp341756.html Sent from the Mozilla - Cryptography mailing list archive at Nabble.com. -- dev-tech-crypto mailing list dev-tech-crypto@lists.mozilla.org https://lists.mozilla.org/listinfo/dev-tech-crypto