142
Usage guidelines
Use this command in FIPS mode to derive a key for the third-party to determine whether the key
meets the CC/FIPS authentication requirements.
Examples
# Derive an ikev1 pre-shared key from an import file named ikev1_psk.req and save the key to an
export file named ikev1_psk.rsp.
<Sysname> system-view
[Sysname-probe] fips kdf ikev1 psk import ikev1_psk.req export ikev1_psk.rsp
New command: fips algorithm verify param
Use fips algorithm verify param to execute an algorithm test vector and generate a result file.
Syntax
fips algorithm verify param param
Views
System view
Predefined user roles
network-admin
Usage guidelines
Use this command in FIPS mode to execute an algorithm test vector and generate a result file for the
third-party to verify the result.
Examples
# Execute the DSA2 test vector in a file named 01-HP-MPC8544/DSA2/req/PQGGen.req, and
generate a result file named 01-HP-MPC8544/DSA2/resp/PQGGen.rsp.
<Sysname> system-view
[Sysname] fips algorithm verify fips_dssvs pqg 01-HP-MPC8544/DSA2/req/PQGGen.req
01-HP-MPC8544/DSA2/resp/PQGGen.rsp
Modified command: fips self-test
Syntax
fips self-test
Views
System view
Change description
Self-tests were added for the following algorithms:
3DES.
ECDH.