FIPS自己テストについて
暗号化モジュールは、セキュリティルールを適用して、FIPS 動作モードでジュニパーネットワークス Junosオペレーティングシステム(Junos OS)を実行しているデバイスが、FIPS 140-3 レベル 2 のセキュリティ要件を満たしていることを確認します。FIPS用に承認された暗号アルゴリズムの出力を検証し、一部のシステムモジュールの整合性をテストするために、デバイスは以下の一連の既知の回答テスト(KAT)自己テストを実行します。
-
kernel_kats- カーネル暗号ルーチン用のKAT -
md_kats—libmd と libc の KAT -
openssl_kats—OpenSSL暗号実装用KAT -
quicksec_7_0_kats—Quicksec_7_0Toolkit暗号化実装のためのKAT -
srxpfe_kats—SRXパケット転送エンジン用KAT
-
srxpfe_kats—SRXパケット転送エンジン用KAT
KATセルフテストは、デバイスでFIPSモードが有効になっている場合、起動時と再起動時に自動的に実行されます。条件付きセルフテストも自動的に実行され、デジタル署名されたソフトウェアパッケージ、生成された乱数、RSAおよびECDSAキーペア、および手動で入力されたキーを検証します。
KATが正常に完了すると、システムログ(syslog)ファイルが更新され、実行されたテストが表示されます。
デバイスがKATに失敗した場合、デバイスは詳細をシステムログファイルに書き込み、FIPSエラー状態(パニック)に入り、再起動します。
file show /var/log/messagesコマンドは、システムログを表示します。
再起動完了後、通常の操作を続行します。エラーが発生した場合は、ジュニパーネットワークス技術支援センター(JTAC)にお問い合わせください。
FIPSセルフテストを設定するには、管理者権限が必要です。デバイスは、FIPS モード ソフトウェアで評価済みバージョンの Junos OS を実行している必要があります。
この例では、FIPS セルフテストは、毎週水曜日の午前 9:00 に米国ニューヨーク市で実行されます。
デバイス上で電源投入時の自己テストの実行
暗号化モジュールの電源を入れるたびに、モジュールは、暗号化アルゴリズムがまだ正しく動作していること、および機密データが損傷していないかどうかをテストします。電源投入時の自己テストは、モジュールの電源を入れ直すことにより、オンデマンドで実行されます。デバイスの電源を入れるかリセットすると、モジュールは以下のセルフテストを実行します。モジュールによる暗号化の使用の前に、すべてのKATが正常に完了する必要があります。いずれかのKATに障害が発生すると、モジュールは重大障害エラー状態になります。モジュールは、電源オン時の自己テストを実行している間、SRX1500、SRX1600、SRX2300、SRX4XXX、およびvSRXデバイスについて、以下のステータス出力を表示します。Initializing Verified Exec: uhub1: 2 ports with 2 removable, self powered random: randomdev_wait_until_seeded unblock wait uhub0: 2 ports with 2 removable, self powered ugen1.2: <vendor 0x8087 product 0x8002> at usbus1 uhub2 on uhub0 uhub2: <vendor 0x8087 product 0x8002, class 9/0, rev 2.00/0.05, addr 2> on usbus1 uhub2: 8 ports with 8 removable, self powered random: randomdev_wait_until_seeded unblock wait random: Entropy start-up health tests performed on 1024 samples passed. random: HMAC-DRBG with SHA2-512 chosen random: unblocking device. random: HMAC-DRBG: instantiated with 1024 primary SW events, 384 secondary SW Shannons, 418 HW Shannons FIPS veriexec ECDSA Verify Known Answer Test: Passed Verified os-kernel-prd-x86-64-20241104 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Enforcing Verified Exec: Verified os-libs-15-x86-64-20241104 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Mounting os-libs-15-x86-64-20241104.1ed86e6_builder_bsd15_244 Verified os-runtime-x86-64-20241104 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Mounting os-runtime-x86-64-20241104.1ed86e6_builder_bsd15_244 Verified os-package-20241014 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Mounting os-package-20241014.220147_builder_main ** /dev/gpt/config FILE SYSTEM CLEAN; SKIPPING CHECKS clean, 406092 free (60 frags, 50754 blocks, 0.0% fragmentation) @ 1737544464 [2025-01-22 11:14:24 UTC] verify pending ... Verified jmrt-base-x86-64-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified jinsight-x86-32-24.9 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified fips-mode-x86-64-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified jmrt-test-x86-64-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified dsa-x86-64-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified jdocs-x86-32-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified jphone-home-x86-32-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-daemons-srx-x86-64-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified jsd-x86-32-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-dp-crypto-support-srx-x86-32-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-daemons-x86-64-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-km-x86-32-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-libs-compat32-x86-64-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified jtpm2-x86-32-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-openconfig-x86-32-24.9 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-l2-rsi-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-libs-srx-x86-64-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-libs-compat32-srx-x86-64-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-libs-srxtvp-x86-64-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-routing-compat32-x86-64-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-platform-srx-x86-32-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-platform-x86-32-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-modules-x86-64-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-runtime-srxtvp-x86-32-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-probe-x86-64-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-net-mtx-prd-x86-64-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-routing-controller-external-x86-64-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-routing-scripts-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-routing-lsys-x86-64-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-libs-x86-64-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-runtime-x86-32-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-vmguest-x86-64-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-routing-aggregated-x86-64-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-pppoe-x86-32-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-support-x86-32-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified jweb-srxtvp-x86-32-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified os-kernel-prd-x86-64-20241104 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-runtime-srx-x86-32-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified os-boot-junos-ve-x86-64-20241104 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified os-crypto-x86-64-20241104 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-routing-mpls-oam-basic-x86-64-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-schedtrace-x86-64-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-sysmond-lite-x86-64-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified os-runtime-x86-64-20241104 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-statesync-pub-sub-x86-32-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified os-vmguest-x86-64-20241104 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified os-compat32-x86-64-20241104 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified os-modules-net-x86-64-20241104 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified junos-net-prd-x86-64-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified os-package-20241014 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified os-libs-15-x86-64-20241104 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified os-zoneinfo-20241104 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified na-telemetry-x86-32-24.9 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified ssh-tunneld-x86-32-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified py-extensions-x86-32-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified os-libs-compat32-15-x86-64-20241104 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Verified py-base-x86-32-20241219 signed by PackageProductionECP256_2024 method ECDSA256+SHA256 @ 1737544465 [2025-01-22 11:14:25 UTC] verify done ** /dev/gpt/var ** Last Mounted on /.mount/var ** Phase 1 - Check Blocks and Sizes ** Phase 2 - Check Pathnames ** Phase 3 - Check Connectivity ** Phase 4 - Check Reference Counts ** Phase 5 - Check Cyl groups 1493 files, 1934657 used, 1719516 free (692 frags, 214853 blocks, 0.0% fragmentation) ***** FILE SYSTEM IS CLEAN ***** @ 1737544466 [2025-01-22 11:14:26 UTC] activating Verified jail-runtime signed by PackageProductionECP256_2024 method ECDSA256+SHA256 kern.activate_pending_set: 0 -> 1 NOTE: 'pending' set now 'active' @ 1737544471 [2025-01-22 11:14:31 UTC] mount start @ 1737544471 [2025-01-22 11:14:31 UTC] junos 24.4R1.9 Mounting junos-modules-x86-64-20241219.060016_builder_junos_244_r1 Mounting os-libs-compat32-15-x86-64-20241104.1ed86e6_builder_bsd15_244 Mounting os-vmguest-x86-64-20241104.1ed86e6_builder_bsd15_244 Mounting os-compat32-x86-64-20241104.1ed86e6_builder_bsd15_244 Mounting py-extensions-x86-32-20241219.060016_builder_junos_244_r1 Mounting junos-libs-srx-x86-64-20241219.060016_builder_junos_244_r1 Mounting py-base-x86-32-20241219.060016_builder_junos_244_r1 Mounting junos-libs-srxtvp-x86-64-20241219.060016_builder_junos_244_r1 Mounting os-crypto-x86-64-20241104.1ed86e6_builder_bsd15_244 Mounting junos-net-prd-x86-64-20241219.060016_builder_junos_244_r1 Mounting junos-libs-x86-64-20241219.060016_builder_junos_244_r1 Mounting os-zoneinfo-20241104.1ed86e6_builder_bsd15_244 Mounting junos-daemons-srx-x86-64-20241219.060016_builder_junos_244_r1 Mounting junos-vmguest-x86-64-20241219.060016_builder_junos_244_r1 Mounting junos-libs-compat32-x86-64-20241219.060016_builder_junos_244_r1 Mounting junos-daemons-x86-64-20241219.060016_builder_junos_244_r1 Mounting junos-libs-compat32-srx-x86-64-20241219.060016_builder_junos_244_r1 Mounting junos-runtime-x86-32-20241219.060016_builder_junos_244_r1 Mounting junos-runtime-srx-x86-32-20241219.060016_builder_junos_244_r1 Starting watchdog daemon ... Mounting junos-sysmond-lite-x86-64-20241219.060016_builder_junos_244_r1 Mounting dsa-x86-64-20241219.060016_builder_junos_244_r1 Mounting ssh-tunneld-x86-32-20241219.060016_builder_junos_244_r1 Mounting na-telemetry-x86-32-24.4R1.9 Mounting junos-support-x86-32-20241219.060016_builder_junos_244_r1 Mounting junos-routing-lsys-x86-64-20241219.060016_builder_junos_244_r1 Mounting junos-schedtrace-x86-64-20241219.060016_builder_junos_244_r1 Mounting junos-routing-aggregated-x86-64-20241219.060016_builder_junos_244_r1 Mounting junos-routing-controller-external-x86-64-20241219.060016_builder_junos_244_r1 Mounting junos-km-x86-32-20241219.060016_builder_junos_244_r1 Mounting junos-probe-x86-64-20241219.060016_builder_junos_244_r1 Mounting junos-routing-scripts-20241219.060016_builder_junos_244_r1 Mounting fips-mode-x86-64-20241219.060016_builder_junos_244_r1 Mounting junos-platform-x86-32-20241219.060016_builder_junos_244_r1 Mounting jphone-home-x86-32-20241219.060016_builder_junos_244_r1 Mounting junos-dp-crypto-support-srx-x86-32-20241219.060016_builder_junos_244_r1 Mounting junos-openconfig-x86-32-24.4R1.9 Mounting junos-routing-compat32-x86-64-20241219.060016_builder_junos_244_r1 Mounting junos-routing-mpls-oam-basic-x86-64-20241219.060016_builder_junos_244_r1 Mounting junos-l2-rsi-20241219.060016_builder_junos_244_r1 Mounting jdocs-x86-32-20241219.060016_builder_junos_244_r1 Mounting junos-pppoe-x86-32-20241219.060016_builder_junos_244_r1 Mounting jmrt-base-x86-64-20241219.060016_builder_junos_244_r1 Mounting jtpm2-x86-32-20241219.060016_builder_junos_244_r1 Mounting jsd-x86-32-20241219.060016_builder_junos_244_r1-jet-1 Mounting jinsight-x86-32-24.4R1.9 Mounting junos-platform-srx-x86-32-20241219.060016_builder_junos_244_r1 Mounting jmrt-test-x86-64-20241219.060016_builder_junos_244_r1 Mounting junos-runtime-srxtvp-x86-32-20241219.060016_builder_junos_244_r1 @ 1737544509 [2025-01-22 11:15:09 UTC] mount done Junosprocfs mounted on /junosproc. Removing /etc/malloc.conf kern.coredump_devctl: 0 -> 1 Starting devd. Detected data disk Initialize /var subdirs... Mounting shared partition /var/host .. Detected swap drive Enable swap *** Creating PVIDb..\n 1394+0 records in 1394+0 records out 724880 bytes transferred in 0.018299 secs (39612879 bytes/sec) Copied libschema-filter-dd.tlv to /opt/lib/dd/filter\n Executing the Junos host files signature script Verified manifest signed by PackageDevelopmentECP256_2024 method ECDSA256+SHA256 *** Mounting Host disks ... @ 1737544512 [2025-01-22 11:15:12 UTC] vmguest: setup ... ERROR: cannot find: jsim-pfe usage: /usr/sbin/pkg add <pkg> ... where <pkg> is a directory or compressed tar file /usr/sbin/pkg: package fips-mode-x86-64-20241219.060016_builder_junos_244_r1 is already installed Checking platform support for: srxtvp Attempting to add missing junos-modules-srxtvp Verified junos-modules-srxtvp signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Adding junos-modules-srxtvp-x86-64-20241219.060016_builder_junos_244_r1 ... The package junos-modules-srxtvp-x86-64-20241219.060016_builder_junos_244_r1 is now active Attempting to add missing junos-appsecure-tvp Verified junos-appsecure-tvp signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Adding junos-appsecure-tvp-x86-32-20241219.060016_builder_junos_244_r1 ... The package junos-appsecure-tvp-x86-32-20241219.060016_builder_junos_244_r1 is now active Attempting to add missing junos-casbd Verified junos-casbd signed by PackageProductionECP256_2024 method ECDSA256+SHA256 Adding junos-casbd-x86-32-20241219.060016_builder_junos_244_r1 ... The package junos-casbd-x86-32-20241219.060016_builder_junos_244_r1 is now active Mounting junos-modules-srxtvp-x86-64-20241219.060016_builder_junos_244_r1 Mounting junos-casbd-x86-32-20241219.060016_builder_junos_244_r1 Mounting junos-appsecure-tvp-x86-32-20241219.060016_builder_junos_244_r1 VirtFS based install is not enabled. VirtIO PCI 9P Transport adapter is not present @ 1737544524 [2025-01-22 11:15:24 UTC] mountlate start Mounting junos-statesync-pub-sub-x86-32-20241219.060016_builder_junos_244_r1 @ 1737544529 [2025-01-22 11:15:29 UTC] mountlate done Prefetching /usr/sbin/rpd ... Prefetching /usr/libexec64/rpd ... Prefetching /usr/sbin/lacpd ... Prefetching /usr/sbin/chassisd ... kern.module_path: /packages/sets/pending/boot/os-vmguest/;/packages/sets/pending/boot/os-crypto/;/packages/sets/pending/boot/netstack/;/packages/sets/pending/boot/junos-statesync-pub-sub/;/packages/sets/pending/boot/os-modules-net/;/packages/sets/pending/boot/junos-net-platform/;/packages/sets/pending/boot/junos-modules/;/packages/sets/pending/boot/os-kernel/ -> /modules;/modules/ifpfe_drv;/modules/ifpfe_media;/modules/peertype;/modules/platform Loading JUNOS chassis module chassis_init_hw_chassis_startup_time: chassis startup time 0.000000, shared: 0x7ffffffffdc0, base: 0x7ffffffff000, offset: 0xdc0 IPsec: Initialized Security Association Processing. Loading the SLB driver Loading the Protobuf-C module hgcommdev0: <HGCOMMDEV For Host VM communication> port 0xc000-0xc0ff mem 0xfeb94000-0xfeb94fff at device 22.0 on pci0 hgcommdev0: hgcommdev: registers at 0xfffff800feb94000 pci-hgcomdev module loadedNo core dumps found. bcmsdk_5_9_x kld Loading BCMSDK module..... Invoking jdid_diag_mode_setup.sh on junos @ 1737544538 [2025-01-22 11:15:38 UTC] mgd start Creating initial configuration: ... mgd: Running FIPS Self-tests random: HMAC-DRBG with SHA2-512 chosen sysctl_warn_reuse: can't re-use a leaf (kern.random.hmac-drbg.hash)! mgd: Testing kernel KATS: mgd: NIST 800-90 HMAC DRBG Known Answer Test: Passed mgd: HMAC-SHA1 Known Answer Test: Passed mgd: HMAC-SHA2-256 Known Answer Test: Passed mgd: SHA-2-384 Known Answer Test: Passed mgd: SHA-2-512 Known Answer Test: Passed mgd: AES128-CMAC Known Answer Test: Passed mgd: AES-CBC Known Answer Test: Passed mgd: Testing MACSec KATS: mgd: AES128-CMAC Known Answer Test: Passed mgd: AES256-CMAC Known Answer Test: Passed mgd: AES-ECB Known Answer Test: Passed mgd: AES-KEYWRAP Known Answer Test: Passed mgd: KBKDF Known Answer Test: Passed mgd: Testing libmd KATS: mgd: HMAC-SHA1 Known Answer Test: Passed mgd: HMAC-SHA2-256 Known Answer Test: Passed mgd: SHA-2-512 Known Answer Test: Passed mgd: Testing OpenSSL KATS: mgd: FIPS ECDSA Known Answer Test: Passed mgd: FIPS ECDH Known Answer Test: Passed mgd: HMAC-SHA1 Known Answer Test: Passed mgd: HMAC-SHA2-224 Known Answer Test: Passed mgd: HMAC-SHA2-256 Known Answer Test: Passed mgd: HMAC-SHA2-384 Known Answer Test: Passed mgd: HMAC-SHA2-512 Known Answer Test: Passed mgd: AES-CBC Known Answer Test: Passed mgd: AES-GCM Known Answer Test: Passed mgd: RSA-ENC Known Answer Test: Passed mgd: RSA-SIGN Known Answer Test: Passed mgd: KDF-IKE-V1 Known Answer Test: Passed mgd: KDF-SSH-SHA256 Known Answer Test: Passed mgd: KDF-TLS12-PRF Known Answer Test: Passed mgd: KDF-TLS13-KDF-EXTRACT Known Answer Test: Passed mgd: KDF-TLS13-KDF-EXPAND Known Answer Test: Passed mgd: KDF-X942 Known Answer Test: Passed mgd: KDF-X963 Known Answer Test: Passed mgd: KAS-ECC-EPHEM-UNIFIED-NOKC Known Answer Test: Passed mgd: KAS-FFC-EPHEM-NOKC Known Answer Test: Passed mgd: Testing QuickSec 7.0 KATS: mgd: HMAC-SHA1 Known Answer Test: Passed mgd: HMAC-SHA2-224 Known Answer Test: Passed mgd: HMAC-SHA2-256 Known Answer Test: Passed mgd: HMAC-SHA2-384 Known Answer Test: Passed mgd: HMAC-SHA2-512 Known Answer Test: Passed mgd: AES-CBC Known Answer Test: Passed mgd: AES-GCM Known Answer Test: Passed mgd: SSH-RSA-ENC Known Answer Test: Passed mgd: SSH-RSA-SIGN Known Answer Test: Passed mgd: SSH-ECDSA-SIGN Known Answer Test: Passed mgd: KDF-IKE-V1 Known Answer Test: Passed mgd: KDF-IKE-V2 Known Answer Test: Passed mgd: Testing QuickSec KATS: mgd: HMAC-SHA1 Known Answer Test: Passed mgd: HMAC-SHA2-224 Known Answer Test: Passed mgd: HMAC-SHA2-256 Known Answer Test: Passed mgd: HMAC-SHA2-384 Known Answer Test: Passed mgd: HMAC-SHA2-512 Known Answer Test: Passed mgd: AES-CBC Known Answer Test: Passed mgd: AES-GCM Known Answer Test: Passed mgd: SSH-RSA-ENC Known Answer Test: Passed mgd: SSH-RSA-SIGN Known Answer Test: Passed mgd: KDF-IKE-V1 Known Answer Test: Passed mgd: KDF-IKE-V2 Known Answer Test: Passed mgd: Testing SSH IPsec KATS: mgd: HMAC-SHA1 Known Answer Test: Passed mgd: HMAC-SHA2-256 Known Answer Test: Passed mgd: AES-CBC Known Answer Test: Passed mgd: SSH-RSA-ENC Known Answer Test: Passed mgd: SSH-RSA-SIGN Known Answer Test: Passed mgd: KDF-IKE-V1 Known Answer Test: Passed mgd: Testing file integrity: mgd: File integrity Known Answer Test: Passed mgd: Testing crypto integrity: mgd: Crypto integrity Known Answer Test: Passed mgd: Expect an eMAC/veriexec: no fingerprint (file=/sbin/kats/cannot-exec fsid=206 fileid=49356 gen=1 uid=0 pid=34097 ppid=34067 gppid=34065)xec Authentication error... mgd: /sbin/kats/run-tests: /sbin/kats/cannot-exec: Authentication error mgd: FIPS Self-tests Passed