Printer Friendly
The Free Library
14,557,847 articles and books
Member login
User name  
Password 
 
Join us Forgot password?

NIST'S CRYPTOGRAPHIC MODULE VALIDATION PROGRAM ADDS WEB ACCESS FOR SECURITY POLICIES.


In April 2001, NIST (National Institute of Standards & Technology, Washington, DC, www.nist.gov) The standards-defining agency of the U.S. government, formerly the National Bureau of Standards. It is one of three agencies that fall under the Technology Administration (www.technology.  updated its Cryptographic Module Validation Module (CMVP CMVP Cryptographic Module Validation Program (NIST/CSE)
CMVP Certified Measurement and Verification Professional
) web pages to allow convenient user access to all of the Federal Information Processing Standard Federal Information Processing Standards (FIPS) are publicly announced standards developed by the United States Federal government for use by all non-military government agencies and by government contractors.  (FIPS) 140-1 validated cryptographic module security policies. Making this information available online streamlines and reduces internal workload in fulfilling requests for distribution of non-electronic security policies.

A security policy is included in the documentation provided by a vendor for each validated cryptographic module. There are two major reasons for developing and following a precise cryptographic module security policy:

* To provide a specification of the cryptographic security that will allow individuals and organizations to determine whether a cryptographic module as implemented satisfies a stated security policy; and

* To describe to individuals and organizations the capabilities, protection, and access rights provided by the cryptographic module, thereby allowing an assessment of whether the module will adequately serve the individual or organizational security requirements.

The FIPS 140-1 Validated Modules List has become a "Who's Who" of cryptographic and information technology vendors and developers from the U.S., Canada, and abroad. The list contains a complete range of security levels and a broad spectrum of product types, now including PDAs in addition to secure radios, Internet browsers, VPN devices, PC Postage equipment, cryptographic accelerators, and secure tokens.

The CMVP is a joint effort between NIST and the Communications Security Establishment Noun 1. Communications Security Establishment - Canadian agency that gathers communications intelligence and assist law enforcement and security agencies
CSE

international intelligence agency - an intelligence agency outside the United States
 (CSE (Certified Systems Engineer) See Microsoft certification. ) of the Government of Canada The Government of Canada is the federal government of Canada. The powers and structure of the federal government are set out in the Constitution of Canada.

In modern Canadian use, the term "government" (or "federal government") refers broadly to the cabinet of the day and
. NIST and CSE serve as the validation authorities for the program. The web site is http://csrc.nist.gov/cryptval.
COPYRIGHT 2001 National Institute of Standards and Technology
No portion of this article can be reproduced without the express written permission from the copyright holder.
Copyright 2001, Gale Group. All rights reserved. Gale Group is a Thomson Corporation Company.

 Reader Opinion

Title:

Comment:



 

Article Details
Printer friendly Cite/link Email Feedback
Title Annotation:National Institute of Standards and Technology
Publication:Journal of Research of the National Institute of Standards and Technology
Article Type:Brief Article
Geographic Code:1USA
Date:May 1, 2001
Words:247
Previous Article:NON-LINEAR OPTICAL CHARACTERIZATION OF GALLIUM NITRIDE AIDS MATERIAL IMPROVEMENT.(Brief Article)
Next Article:NIST WEB METRICS TESTBED RELEASED.(National Institute of Standards and Technology)(Brief Article)
Topics:



Related Articles
NIST'S CRYPTOGRAPHIC MODULE VALIDATION PROGRAM VALIDATES 100TH CRYPTOGRAPHIC MODULE.(Brief Article)
FEDERAL CIO COUNCIL PROMOTES NIST GUIDELINES TO FEDERAL AGENCIES.(National Institute of Standards and Technology)(Brief Article)
NIST'S CRYPTOGRAPHIC MODULE VALIDATION PROGRAM ADDS FIFTH TESTING LABORATORY.(National Institute of Standards and Technology)(Brief Article)
NIST'S CRYPTOGRAPHIC MODULE VALIDATION PROGRAM ADDS FIRST PDA DEVICE.(National Instititue of Standards and Technology)(Brief Article)
New security standard for federal agencies effective in November. (News Briefs).(Brief Article)
NIST offers online metrology resource for electronics manufacturers. (News Briefs).(Brief Article)
NIST's Cryptographic Module Validation Program achieves major milestones. (News Briefs).(Brief Article)
NIST reports measurable success of Advanced Encryption Standard. (News Briefs).(National Institute of Standards and Technology)(Brief Article)
Logica awarded first approved crypto IT security testing lab outside North America.
NIST validates 100th Advanced Encryption Standard implementation.(General Developments)

Terms of use | Copyright © 2009 Farlex, Inc. | Feedback | For webmasters | Submit articles