[Pki-devel] Fwd: [pki-devel][PATCH] 0026-NISTSP8000-feature.patch

John Magne jmagne at redhat.com
Tue Mar 17 05:59:10 UTC 2015


CFU's comments addressed.

Filled in the missing sanity checks on the TPS side cfu commented about.

Tested with scp01 and scp02 tokens, also with sym key changeover.

Made sure we pass both the KDD and CUID down to symkey.

Testing has shown that the KDD and CUID are really different,
so no need to abort the operation if they are not the same.


----- Forwarded Message -----
From: "John Magne" <jmagne at redhat.com>
To: "pki-devel" <pki-devel at redhat.com>
Sent: Friday, March 13, 2015 7:17:07 PM
Subject: [pki-devel][PATCH] 0025-NISTSP8000-feature.patch

NISTSP8000 feature.

Implementation of the nistSP800 dervication feature.
Works for both supported scp01 cards and scp02 cards.
During the various session key and key upgrade functions, the nist derivation code is being called.

Tested with gemalto 64k for scp01 and sc650 for scp02.
Tested symmetric key changeover for both tokens.

Logs verified the nist functions being called for derivation instead of the current calls.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0026-NISTSP8000-feature.patch
Type: text/x-patch
Size: 75114 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/pki-devel/attachments/20150317/0e453541/attachment.bin>


More information about the Pki-devel mailing list