[32124] in Kerberos

home help back first fref pref prev next nref lref last post

AES-CTS, SHA-96bit in Kerberos are FIPS 140-2 Compliant ?

daemon@ATHENA.MIT.EDU (Kerberos Athena)
Fri Mar 5 22:00:16 2010

MIME-Version: 1.0
Date: Sat, 6 Mar 2010 12:00:10 +0900
Message-ID: <ba58c9371003051900o7588eb43l8a200122e65c8a27@mail.gmail.com>
From: Kerberos Athena <athena.kerberos@gmail.com>
To: kerberos@mit.edu
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

Hi

Does anyone know AES-CTS and SHA-96bit (mandatory cipher suites for
Kerberos) are FIPS 140-2 compliant or not ?

AES-CBS and SHA1 (160bit) are listed in the NIST FIPS140-2 approved
crypto/hash list,
but AES-CTS and SHA-96bit are NOT listed in the list.

In case of Windows Vista/7/Sever 2k8, Kerberos is FIPS140-2 compliant and
AES128/256-CTS-SHA-96 is available in FIPS140-2 compliant mode.

Regards,
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post