# Test de poker fips 140 2

FIPS 140-1: The test is passed if 9,654 < X < 10,346. FIPS 140-2: The test is passed if 9,725 < X < 10,275. The poker test. Divide the 20,000 bit stream into 5,000 consecutive 4 bit segments. Count and store the number of occurrences of the 16 possible 4 bit values. Denote f(i)as the number of each 4 bit value i, where 0 ≤ i ≤ 15.

Federal Information Processing Standards (FIPS) 140-2 publication for cryptographic modules specifies four statistical tests for randomness.

## The FIPS 140 Publication Series coordinates the requirements and standards from cryptography modules for hardware and software, and in order to achieve FIPS 140-2 validation, cryptographic modules are subjected to rigorous testing by independent, accredited test facilities.The validation testing for today’s announcement was performed by atsec

The FIPS 140-2 test issued by the American National Institute of Standards includes the Poker test: Divide a sequence of 20,000 into 5,000 consecutive 4-bit segments.

### FIPS 140-2 is the de-facto standard to certify cryptography implemented in ICT products. This certification is “table stakes” to sell into most US Federal accounts. FIPS 140-2 has also proliferated into other verticals, like healthcare (HIPAA) and the financial industry.

For FIPS 140-2, the monobit test is EXPECTED to fail about 1 out of every 9662 runs with a perfect random source. For 5,734,339 runs, we would expect about 593.5 failures which is very close to the actual number of failures of 595. Similarly, a certain number of failures is expected for each of the tests (except for the continuous run obviously).

FIPS 140-2 testing is still available until September 21, 2021, creating an overlapping transition period of one year. FIPS 140-2 test reports that remain in the CMVP queue will still be granted validations after that date, but all FIPS 140-2 validations will be moved to the Historical List on September 21, 2026 regardless of their actual final validation date.

The FIPS 140-2 standard is an information technology security accreditation program for cryptographic modules produced by private sector vendors looking to have their products certified for use in US government departments and regulated industries such as healthcare and finance.

FIPS (Federal Information Processing Standard) 140-2 is the benchmark for validating the effectiveness of cryptographic hardware. If a product has a FIPS 140-2 certificate you know that it has been tested and formally validated by the U.S. and Canadian Governments. Although FIPS 140-2 is a U.S./Canadian Federal standard, FIPS 140-2 compliance has been widely adopted around the world in both governmental and non-governmental sectors as a practical security benchmark and realistic best practice.

### STATISTICAL TEST SUITE OF FIPS PUB 140-2 In the documentation of FIPS PUB 140-2, statistical random number generator tests are defined as follows: If statistical random number generator tests are required, a cryptographic module employing RNGs (Random Number Generators) shall perform the following statistical tests for randomness. A single bit stream of 20,000 consecutive bits of output from RNG shall be subjected to mono bit test, poker test, runs test and long runs test.

D.1 About the FIPS 140 Settings. This appendix describes how to configure Oracle Database for the Federal Information Processing Standard (FIPS), for the current standard, 140-2, and for 140-1.To verify the current status of the certification, you can find information at the Computer Security Resource Center (CSRC) Web site address from the National Institute of Standards and Technology:

FIPS 140 (Federal Information Processing Standardization 140)는 암호화 모듈에 대한 보안 요구 사항을 규정하는 미국 연방 정보 처리 표준이다. 가장 최신버전은 2001년 5월 25일에 나온 FIPS 140-2

Derived Test Requirements (concluded) All FIPS 140-2 requirements will be included in the DTR as assertions Provides for one-to-one correspondence between the FIPS and the DTR Each assertion will include requirements levied on the Cryptographic module vendor Tester of the cryptographic module Modules tested against FIPS 140-2 will use the

FIPS 140-2 testing is still available until September 21, 2021, creating an overlapping transition period of one year. FIPS 140-2 test reports that remain in the CMVP queue will still be granted validations after that date, but all FIPS 140-2 validations will be moved to the Historical List on September 21, 2026 regardless of their actual final validation date.

## 17 Mar 2014 FIPS 140-2: The test is passed if 9,725 < X < 10,275. The poker test. Divide the 20,000 bit stream into 5,000 consecutive 4 bit segments. Count

Security Requirements for Cryptographic Modules (FIPS PUB 140-2) The test is passed if 9,725 < X < 10,275 . The poker test: Divide the 20,000 bit stream into 5,000 consecutive 4 bit segments.

