[Dnssec-deployment] SCA6000 users [Re: SUN SCA6000 FIPS 140 certification]

SM sm at resistor.net
Mon Mar 28 18:02:10 EDT 2011


Hi Paul,
At 10:32 28-03-2011, Paul Hoffman wrote:
>We disagree here. FIPS 140 shows that the device does its 
>cryptography correctly when the device is set to be in FIPS mode. 
>Many devices that are not FIPS-certified can be shown to be 
>cryptographically correct, and many FIPS-certified devices cannot 
>easily be run in FIPS mode.

It's a means to show that the device has been validated.  The same 
goes for Common Criteria EAL.   The compliance preempts some questions.

Regards,
-sm 



More information about the Dnssec-deployment mailing list