NIST FIPS The NIST FIPS homepage is located at: http://csrc.nist.gov/publications/fips/ Listed below are NIST FIPS and associated documents having to do with Computer Security. Some of these FIPS are not available online, which can be ordered from the link provided below: http://csrc.nist.gov/publications/ordering-pubs.html#FIPs Key to different File formats / Extensions and program to use to view documents: .pdf can be viewed by using Adobe Acrobat Reader .wp can be viewed by using WordPerfect .doc can be viewed by using Microsoft Word .ps can be viewed by using Ghostscript or some other postscript program .htm(l) are webpages and can be viewed by using a Web browser (such as Netscape or Microsoft Explorer) .txt are ASCII text files and can be viewed by using a number of different applications such as a Web browser, a word processor, or Notepad/Wordpad. FIPS 31 June 1974, Guidelines for Automatic Data Processing Physical Security and Risk Management NOTE: The layout of the electronic version FIPS 31 is not an exact photocopy of the regular original hard-copy. All text and images are the same in the electronic version as the orginal hard-copy. The electronic version takes up more pages. FIPS 46-3 October 1999, Data Encryption Standard (DES); specifies the use of Triple DES FIPS 46-3.pdf (181,487 bytes) FIPS 48 April 1977, Guidelines on Evaluation of Techniques for Automated Personal Identification FIPS 73 June 1980, Guidelines for Security of Computer Applications FIPS 74 April 1981, Guidelines for Implementing and Using the NBS Data Encryption Standard Part 1 of 3 April 1981, Guidelines for Implementing and Using the NBS Data Encryption Standard Part 2 of 3 April 1981, Guidelines for Implementing and Using the NBS Data Encryption Standard Part 3 of 3 FIPS 81 December 1980, DES Modes of Operation (includes Change Notice 1) FIPS 83 September 1980, Guideline on User Authentication Techniques for Computer Network Access Control FIPS 87 March 1981, Guidelines for ADP Contingency Planning FIPS 102 September 1983, Guidelines for Computer Security Certification and Accreditation FIPS 112 May 1985, Password Usage (part 1 & 2) FIPS 113 May 1985, Computer Data Authentication FIPS 140-1 Jan. 1994, Security Requirements for Cryptographic Modules FIPS 140-2 June 2001, Security requirements for Cryptographic Modules FIPS 171 April 1992, Key Management Using ANSI X9.17 FIPS 180-1 April 1995, Secure Hash Standard FIPS 180-2 February 2004 -- A change notice for FIPS 180-2 has been attached that specifies SHA-224 and discusses truncation of the hash function output in order to provide interoperability. FIPS 181 October 1993, Automated Password Generator FIPS 185 February 1994, Escrowed Encryption Standard FIPS 186-2 January 2000, Digital Signature Standard (DSS) DRAFT October 2001 -- A change notice for FIPS 186-2, Digital Signature Standard (DSS) (.pdf file), has been made available that addresses key sizes and random number generation. This change notice replaces the item that was posted on August 3, 2001, Recommendations Regarding Federal Information Processing Standard (FIPS) 186-2, Digital Signature Standard (DSS). Comments and questions for this recommendation are requested and may be addressed to FIPS186@nist.gov. FIPS 188 September 1994, Standard Security Labels for Information Transfer FIPS 190 September 1994, Guideline for the Use of Advanced Authentication Technology Alternatives FIPS 191 November 1994, Guideline for The Analysis of Local Area Network Security FIPS 196 February 1997, Entity Authentication Using Public Key Cryptography FIPS 197 November 2001, Advanced Encryption Standard Federal Agencies should also see OMB guidance. FIPS 198 March 2002, The Keyed-Hash Message Authentication Code (HMAC) FIPS 199 February 2004, Standards for Security Categorization of Federal Information and Information Systems WITHDRAWN FIPS: FIPS 39 published Feb. 1976, Glossary for Computer Systems Security, withdrawn Apr. 1993. FIPS 41 published May 1975, Computer Security Guidelines for Implementing the Privacy Act of 1974, withdrawn Nov. 1998. FIPS 65 published August 1975, Guidelines for Automatic Data Processing Risk Analysis, withdrawn Aug. 1995. FIPS 88 published August 1981, Guideline on Integrity Assurance and Control in Database Administration, withdrawn Jul. 1997. FIPS 94 published Sept. 1983, Guideline on Electrical Power for ADP Installations, withdrawn Jul. 1997. FIPS 101 published June 1983, Guidelines for Life Cycle Validation, Verification, and Testing of Computer Software, withdrawn Feb. 2000. FIPS 139 published August 1983, Interoperability and Security Requirements for Use of the Data Encryption Standard in the Physical Layer of Data Communications, withdrawn Feb. 2000. FIPS 141 published April 1985, Interoperability and Security Requirements for Use of the Data Encryption Standard with CCITT Group 3 Facsimile Equipment, withdrawn Feb. 2000.