This week's book giveaway is in the Clojure forum.
We're giving away four copies of Clojure in Action and have Amit Rathore and Francis Avila on-line!
See this thread for details.
Win a copy of Clojure in Action this week in the Clojure forum!
  • Post Reply
  • Bookmark Topic Watch Topic
  • New Topic

Does java.security.MessageDigest use the NSS libraries provided by Mozilla?

 
Ravi Danum
Ranch Hand
Posts: 104
  • 0
  • Mark post as helpful
  • send pies
  • Quote
  • Report post to moderator

Hello,

I want to use the Mozilla JSS security software that accesses the NSS libraries.

The problem is that some of the JSS classes have been deprecated in favor of the java JCE classes, for example MessageDigest should be used instead of JSSMessageDigest.

Does java.security.MessageDigest use the NSS libaries?

Thanks in advance.

-ravi


 
Tim Moores
Bartender
Posts: 2500
10
  • 0
  • Mark post as helpful
  • send pies
  • Quote
  • Report post to moderator
Why does it matter? What's so special about the NSS libraries?
 
Ravi Danum
Ranch Hand
Posts: 104
  • 0
  • Mark post as helpful
  • send pies
  • Quote
  • Report post to moderator

They are FIPS compliant. FIPS is a government regulation.

-ravi
 
Tim Moores
Bartender
Posts: 2500
10
  • 0
  • Mark post as helpful
  • send pies
  • Quote
  • Report post to moderator
Cryptographic algorithms are standardized - SHA-2 is the same everywhere, as is AES.
 
Ravi Danum
Ranch Hand
Posts: 104
  • 0
  • Mark post as helpful
  • send pies
  • Quote
  • Report post to moderator


There is a FIPS validation which Network Security Services (NSS) has completed for its PKCS#11 module.

I'm just learning about it now, so I don't have all the answers.

Mozilla provides both JSS, a java wrapper to NSS as well as NSS c libraries.

Here's a website that explains JSS:

https://developer.mozilla.org/En/JSS

On this page you will find the following statement:

When NSS is put in FIPS mode, JSS ensures FIPS compliance by ensuring that all cryptographic operations are performed by the NSS cryptographic module.

-ravi




 
Ravi Danum
Ranch Hand
Posts: 104
  • 0
  • Mark post as helpful
  • send pies
  • Quote
  • Report post to moderator

An explanation of FIPS can be found here:

https://developer.mozilla.org/en/NSS/FIPS_Mode_-_an_explanation



-ravi
 
I agree. Here's the link: http://aspose.com/file-tools
  • Post Reply
  • Bookmark Topic Watch Topic
  • New Topic