[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: FIPS-140 required?



Richard Barnes <rbarnes@xxxxxxx> writes:

> Dan,
>
> I think that our goal should be to create protocols that do not
> present significant barriers to FIPS 140 accreditation of
> implementations.  This is not only an issue for US Government users;
> FIPS 140 accreditation is commonly used in the private sector as proof
> that a vendor's security module has strong security properties.

This sounds right to me.

-Ekr