Lgorithm Implementations - Oracle StorageTek T10000D Manual

Non-proprietary security policy
Table of Contents

Advertisement

Algorithm
HMAC SHA-1 (OKM Agent implementation)
36
RSA 2048-bit PKCS
#1 v1.5 Signature Verification
RSA 2048-bit PKCS #1 v1.5 Signature Generation
RSA 2048-bit FIPS 186-4 Key Generation
Elliptic-Curve P-256 (ECDSA) Key Pair Generation
Elliptic-Curve P-256(ECDSA) Signature Generation
TLS 1.0 and 1.1 Key Derivation
Note: The TLS protocol has not been reviewed or
tested by the CAVP and CMVP
SSH Key Derivation
Note: The SSH protocol has not been reviewed or
tested by the CAVP and CMVP
SP800-90A CTR DRBG
2.7.2 Encryption Disabled Cryptographic Algorithm Implementations
The Encryption Disabled Approved Mode utilizes a subset of the cryptographic
algorithms listed in Table 6. A list of cryptographic algorithms used by the
module while operating in the Encryption Disabled Mode is provided as Table 7.
Table 7 – FIPS-Approved Algorithms in StorageTek T10000D Tape Drive (Encryption Disabled Mode)
Algorithm
37
38
AES
256-bit ECB
mode
36
PKCS – Public Key Cryptographic Standard
37
AES – Advanced Encryption System
38
ECB – Electronic Code Book
39
SP – Special Publication
This document may be freely reproduced and distributed whole and intact including this Copyright notice.
Provide keyed message authentication when
creating the challenge responses as part of the
certificate service of the OKM. Used with
SHA-1 (Cert # 3330)
Verifies the signature of a new firmware image
to be loaded onto the ETD; Used with SHA-
256 (Cert # 3330)
Performs session establishment in support of
SSH.
Performs Key Generation in support of SSH
Performs Key Generation in support of SSH
with NIST curve P-256
Performs session establishment in support of
SSH, with NIST curve P-256
TLS 1.0 and 1.1 Key Derivation (SP800-135
rev1; Section 4.2.1); Used with SHA-1 (Cert #
3331) and DRBG (Cert # 1209)
SSH Key Derivation (SP800-135 rev1; Section
5.2)
Generates random numbers for nonces and
keys for multiple services including TLS, SSH,
and OKM
Provides encryption for multiple services
including with the SP
(Cert # 1209)
© Copyright 2017 Oracle Corporation
Implementation Description
Implementation Description
39
800-90A CTR
Certificate
Number
2642
2074
2074
2074
905
905
867
866
1209
Certificate
Number
40
DRBG
4039
Page 28 of 51

Advertisement

Table of Contents
loading

Table of Contents