https://github.com/gsa/piv-conformance
Tool to verify conformance to the PIV data model per most recent releases of FIPS 201 and associated publications
https://github.com/gsa/piv-conformance
algorithm fips201-2 identification-cards integrated-circuit-cards iso piv piv-cards sp800-73-4 sp800-76-2 sp800-78-4
Last synced: about 1 month ago
JSON representation
Tool to verify conformance to the PIV data model per most recent releases of FIPS 201 and associated publications
- Host: GitHub
- URL: https://github.com/gsa/piv-conformance
- Owner: GSA
- License: other
- Created: 2017-11-01T15:09:26.000Z (over 8 years ago)
- Default Branch: master
- Last Pushed: 2025-01-06T21:40:20.000Z (about 1 year ago)
- Last Synced: 2025-01-20T12:09:55.978Z (about 1 year ago)
- Topics: algorithm, fips201-2, identification-cards, integrated-circuit-cards, iso, piv, piv-cards, sp800-73-4, sp800-76-2, sp800-78-4
- Language: HTML
- Homepage:
- Size: 201 MB
- Stars: 26
- Watchers: 23
- Forks: 14
- Open Issues: 6
-
Metadata Files:
- Readme: README.md
- License: LICENSE.md
Awesome Lists containing this project
README
# piv-conformance
Tool to verify conformance to the PIV data model on PIV cards per current releases of FIPS 201 and associated publications
## References ##
### FIPS Publications ###
- [FIPS 140 Federal Information Processing Standards Publication FIPS 140-2, Security Requirements for
Cryptographic Modules](https://doi.org/10.6028/NIST.FIPS.140-2)
- [FIPS 201 Federal Information Processing Standard 201-2, Personal Identity Verification (PIV) of Federal Employees and Contractors](https://doi.org/10.6028/NIST.FIPS.201-2)
### ISO/IEC Publications ###
- ISO/IEC 17043, Conformity assessment � General requirements for proficiency testing, 2010
- ISO/IEC 10373 Identification Cards�Test Methods. Part 1�Standard for General Characteristic Test of Identification Cards, ISO, 1998. Part 3�Standard for Integrated Circuit Cards with Contacts and Related Interface Devices, ISO, 2001. Part 6�Standard for Proximity Card Support in Identification Cards, ISO, 2001
- ISO/IEC 7816, Identification Cards�Integrated Circuits with Contacts, Parts 1-6, ISO
- ISO/IEC 14443-1:2000, Identification Cards�Contactless Integrated Circuit(s) Cards�Proximity Cards, ISO, 2000
### NIST Special Publications ###
- [SP800-73 Interfaces for Personal Identity Verification](https://doi.org/10.6028/NIST.SP.800-73-4)
- [SP800-76 Biometric Specifications for Personal Identity Verification](https://doi.org/10.6028/NIST.SP.800-76-2)
- [SP800-78 Cryptographic Algorithms and Key Sizes for Personal Identity Verification](https://doi.org/10.6028/NIST.SP.800-78-4)
- [SP800-85A PIV Card Application and Middleware Interface Test Guidelines (SP 800-73-4 Compliance)](https://doi.org/10.6028/NIST.SP.800-85A-4)
- [SP800-85B PIV Data Model Test Guidelines (DRAFT)](https://csrc.nist.gov/CSRC/media/Publications/sp/800-85b/4/draft/documents/sp800_85b-4_draft.pdf)
- [SP800-96 PIV Card to Reader Interoperability Guidelines](https://doi.org/10.6028/NIST.SP.800-96)
- [SP800-116 A Recommendation for the Use of PIV Credentials in Physical Access Control Systems (PACS)](https://doi.org/10.6028/NIST.SP.800-116)
### RFCs ###
- [RFC 3370 Cryptographic Message Syntax (CMS) Algorithms](https://tools.ietf.org/html/rfc3370)
- [RFC 3447 Public-Key Cryptography Standards (PKCS) #1: RSA 1233 Cryptography Specifications Version 2.1](https://tools.ietf.org/html/rfc3447)
- [RFC 4122 A Universally Unique IDentifier (UUID) URN Namespace](https://tools.ietf.org/html/rfc4122)
- [RFC 5280 Internet X.509 Public Key Infrastructure Certificate and Certificate Revocation List (CRL) Profile](https://www.ietf.org/rfc/rfc5280.txt)
- [RFC 5480 Elliptic Curve Cryptography Subject Public Key Information](https://tools.ietf.org/html/rfc5480)
- [RFC 5652 Cryptographic Message Syntax (CMS)](https://tools.ietf.org/html/rfc5652)
- [RFC 5754 Using SHA2 Algorithms with Cryptographic Message Syntax](https://tools.ietf.org/html/rfc5754)
- [RFC 6960 X.509 Internet Public Key Infrastructure Online Certificate Status Protocol - OCSP](https://tools.ietf.org/html/rfc6960)
### Other Publications, Memoranda, or Documents ###
- [HSPD-12 Policy for a Common Identification Standard for Federal Employees and Contractors, August 2004](http://www.dhs.gov/homeland-security-presidential-directive-12)
- [OMB 11-11 Mandatory Use of Personal Identity Verification (PIV) Credentials](https://www.whitehouse.gov/sites/whitehouse.gov/files/omb/memoranda/2011/m11-11.pdf)
- [X.509 Certificate Policy For The U.S. Federal PKI Common Policy Framework](http://www.idmanagement.gov/fpki-x509-cert-policy-common/)
- [X.509 Certificate and Certificate Revocation List (CRL) Extensions Profile for the Shared Service Providers (SSP) Program](https://www.idmanagement.gov/fpki-cert-profile-ssp/)
- [Certificate Policy for the Federal Bridge Certification Authority (FBCA)](https://www.idmanagement.gov/fpki-x509-cert-policy-fbca/)
- [PIV Interoperability for Issuers (PIV-I)](https://www.idmanagement.gov/piv-i-for-issuers/)