This page was not yet optimized for use on mobile
devices.
Oracle OpenSSL FIPS Object Module
Certificate #3335
Webpage information
| Status | historical |
|---|---|
| Historical reason | Moved to historical list due to sunsetting |
| Validation dates | 03.12.2018 , 18.07.2019 , 29.04.2020 , 23.10.2020 , 02.03.2021 , 17.05.2021 , 03.08.2021 , 29.07.2022 |
| Standard | FIPS 140-2 |
| Security level | 1 |
| Type | Software |
| Embodiment | Multi-Chip Stand Alone |
| Caveat | When operated in FIPS mode. No assurance of the minimum strength of generated keys. |
| Exceptions |
|
| Description | Oracle OpenSSL FIPS Object Module is a software library providing a C language application program interface (API) for use by processes that require cryptographic services. It is implemented in products such as Oracle Solaris 11, Oracle Integrated Lights Out Manager (ILOM), and Oracle ZFS Storage Appliance. |
| Tested configurations |
|
| Vendor | Oracle Corporation |
| References | This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates. |
Security policy
Symmetric Algorithms
AES-128, AES-192, AES-256, AES, TDES, Triple-DES, TDEA, HMAC, CMACAsymmetric Algorithms
ECDH, ECDSA, ECC, Diffie-Hellman, DH, DSAHash functions
SHA-1, SHA1, SHA-224, SHA-384, SHA-512, SHA-256, SHA256, SHA-2, SHA2Schemes
Key AgreementProtocols
TLSRandomness
DRBGLibraries
OpenSSLElliptic Curves
P-224, P-384, P-192, P-256, P-521, K-233, K-409, B-233, B-409, B-163, K-283, K-571Block cipher modes
ECB, CBC, CTR, CFB, OFB, GCM, CCM, XTSSecurity level
Level 1, level 1Standards
FIPS 140-2, FIPS 197, FIPS 180-4, FIPS 198, FIPS 186-2, FIPS 186-4, FIPS 198-1, SP 800-90A, SP 800-133, SP 800-67, SP 800-38A, SP 800-38B, SP 800-38C, SP 800-38D, SP 800-38E, SP 800-56C, SP 800-135, NIST SP 800-38D, SP 800-56A, SP 800-89, SP 800-131A, PKCS#1, RFC 5288, RFC 5246File metadata
| Creation date | D:20220728174322-07'00' |
|---|---|
| Modification date | D:20220728174322-07'00' |
| Pages | 29 |
| Creator | Microsoft® Word for Microsoft 365 |
| Producer | Microsoft® Word for Microsoft 365 |
References
IncomingHeuristics
No heuristics are available for this certificate.
References
Loading...
Updates Feed
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate was first processed.
Raw data
{
"_type": "sec_certs.sample.fips.FIPSCertificate",
"cert_id": 3335,
"dgst": "0457c48d8fc39719",
"heuristics": {
"_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
"algorithms": {
"_type": "Set",
"elements": [
"AES#A2511",
"AES#A861",
"SHS#A2514",
"HMAC#A2511",
"ECDSA#C1651",
"ECDSA#1449",
"RSA#A2514",
"DSA#A2511",
"HMAC#C1651",
"AES#5445",
"HMAC#A861",
"HMAC#A2514",
"DSA#A861",
"AES#A2514",
"DRBG#A861",
"SHS#4364",
"AES#C1651",
"SHS#A861",
"ECDSA#A2511",
"RSA#2921",
"RSA#A861",
"DSA#A2514",
"SHS#C1651",
"Triple-DES#A2514",
"Triple-DES#A2511",
"DRBG#2129",
"RSA#C1651",
"DSA#C1651",
"Triple-DES#2735",
"DSA#1400",
"ECDSA#A2514",
"ECDSA#A861",
"DRBG#A2514",
"HMAC#3603",
"Triple-DES#A861",
"RSA#A2511",
"Triple-DES#C1651",
"SHS#A2511",
"DRBG#A2511",
"DRBG#C1651"
]
},
"cpe_matches": null,
"direct_transitive_cves": {
"_type": "Set",
"elements": [
"CVE-2017-3623",
"CVE-1999-0046",
"CVE-2016-2334"
]
},
"extracted_versions": {
"_type": "Set",
"elements": [
"-"
]
},
"indirect_transitive_cves": {
"_type": "Set",
"elements": [
"CVE-2017-3623",
"CVE-1999-0046",
"CVE-2016-2334"
]
},
"module_processed_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": {
"_type": "Set",
"elements": [
"3503"
]
},
"directly_referencing": null,
"indirectly_referenced_by": {
"_type": "Set",
"elements": [
"4015",
"3638",
"3503",
"4024",
"3569"
]
},
"indirectly_referencing": null
},
"module_prunned_references": {
"_type": "Set",
"elements": []
},
"policy_processed_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": {
"_type": "Set",
"elements": [
"4178",
"4142"
]
},
"directly_referencing": null,
"indirectly_referenced_by": {
"_type": "Set",
"elements": [
"4178",
"4142"
]
},
"indirectly_referencing": null
},
"policy_prunned_references": {
"_type": "Set",
"elements": []
},
"related_cves": null,
"verified_cpe_matches": null
},
"pdf_data": {
"_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
"keywords": {
"asymmetric_crypto": {
"ECC": {
"ECC": {
"ECC": 2
},
"ECDH": {
"ECDH": 1
},
"ECDSA": {
"ECDSA": 15
}
},
"FF": {
"DH": {
"DH": 6,
"Diffie-Hellman": 4
},
"DSA": {
"DSA": 16
}
}
},
"certification_process": {},
"cipher_mode": {
"CBC": {
"CBC": 3
},
"CCM": {
"CCM": 4
},
"CFB": {
"CFB": 3
},
"CTR": {
"CTR": 1
},
"ECB": {
"ECB": 3
},
"GCM": {
"GCM": 7
},
"OFB": {
"OFB": 1
},
"XTS": {
"XTS": 5
}
},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {
"OpenSSL": {
"OpenSSL": 41
}
},
"crypto_protocol": {
"TLS": {
"TLS": {
"TLS": 2
}
}
},
"crypto_scheme": {
"KA": {
"Key Agreement": 1
}
},
"device_model": {},
"ecc_curve": {
"NIST": {
"B-163": 2,
"B-233": 2,
"B-409": 2,
"K-233": 2,
"K-283": 1,
"K-409": 1,
"K-571": 1,
"P-192": 6,
"P-224": 4,
"P-256": 2,
"P-384": 2,
"P-521": 2
}
},
"eval_facility": {
"Acumen": {
"Acumen Security": 1
}
},
"fips_cert_id": {},
"fips_certlike": {
"Certlike": {
"# A2514": 1,
"AES 128/ 192/256": 1,
"AES 128/192/256": 1,
"AES GCM3": 1,
"AES, 256": 1,
"AES-128": 3,
"AES-128 128": 1,
"AES-192": 2,
"AES-256": 2,
"AES-256 256": 1,
"DRBG1": 1,
"HMAC SHA-1": 1,
"HMAC-SHA-1": 28,
"HMAC-SHA1": 2,
"PKCS#1": 2,
"SHA- 256": 2,
"SHA-1": 19,
"SHA-1 128": 1,
"SHA-1, 224": 18,
"SHA-2": 3,
"SHA-2 (224": 2,
"SHA-224": 15,
"SHA-256": 3,
"SHA-384": 5,
"SHA-512": 4,
"SHA-512 256": 1,
"SHA1": 2,
"SHA2": 1,
"SHA256": 2
}
},
"fips_security_level": {
"Level": {
"Level 1": 1,
"level 1": 1
}
},
"hash_function": {
"SHA": {
"SHA1": {
"SHA-1": 38,
"SHA1": 2
},
"SHA2": {
"SHA-2": 5,
"SHA-224": 16,
"SHA-256": 3,
"SHA-384": 5,
"SHA-512": 5,
"SHA2": 1,
"SHA256": 2
}
}
},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {
"PRNG": {
"DRBG": 18
}
},
"side_channel_analysis": {},
"standard_id": {
"FIPS": {
"FIPS 140-2": 17,
"FIPS 180-4": 2,
"FIPS 186-2": 4,
"FIPS 186-4": 8,
"FIPS 197": 2,
"FIPS 198": 1,
"FIPS 198-1": 1
},
"NIST": {
"NIST SP 800-38D": 1,
"SP 800-131A": 1,
"SP 800-133": 1,
"SP 800-135": 1,
"SP 800-38A": 2,
"SP 800-38B": 2,
"SP 800-38C": 2,
"SP 800-38D": 2,
"SP 800-38E": 1,
"SP 800-56A": 2,
"SP 800-56C": 1,
"SP 800-67": 1,
"SP 800-89": 1,
"SP 800-90A": 4
},
"PKCS": {
"PKCS#1": 1
},
"RFC": {
"RFC 5246": 1,
"RFC 5288": 1
}
},
"symmetric_crypto": {
"AES_competition": {
"AES": {
"AES": 19,
"AES-128": 4,
"AES-192": 3,
"AES-256": 3
}
},
"DES": {
"3DES": {
"TDEA": 1,
"TDES": 1,
"Triple-DES": 7
}
},
"constructions": {
"MAC": {
"CMAC": 15,
"HMAC": 7
}
}
},
"tee_name": {},
"tls_cipher_suite": {},
"vendor": {},
"vulnerability": {}
},
"policy_metadata": {
"/CreationDate": "D:20220728174322-07\u002700\u0027",
"/Creator": "Microsoft\u00ae Word for Microsoft 365",
"/ModDate": "D:20220728174322-07\u002700\u0027",
"/Producer": "Microsoft\u00ae Word for Microsoft 365",
"pdf_file_size_bytes": 682093,
"pdf_hyperlinks": {
"_type": "Set",
"elements": [
"http://csrc.nist.gov/publications/fips/fips197/fips-197.pdf",
"http://csrc.nist.gov/publications/fips/fips186-3/fips_186-3.pdf",
"https://csrc.nist.gov/Projects/Cryptographic-Algorithm-Validation-Program/Validation/Validation-List/TDES#2735",
"https://csrc.nist.gov/Projects/Cryptographic-Algorithm-Validation-Program/Validation/Validation-List/ECDSA#1449",
"https://csrc.nist.gov/Projects/Cryptographic-Algorithm-Validation-Program/Validation/Validation-List/DSA#1400",
"https://github.com/oracle/solaris-openssl-fips/",
"https://csrc.nist.gov/Projects/Cryptographic-Algorithm-Validation-Program/Validation/Validation-List/AES#5445",
"http://www.oracle.com/",
"https://csrc.nist.gov/Projects/Cryptographic-Algorithm-Validation-Program/Validation/Validation-List/SHS#4364",
"http://csrc.nist.gov/publications/nistpubs/800-67/SP800-67.pdf",
"https://linux-git.us.oracle.com/oraclelinux/oracle-openssl-fips/tree/OpenSSL_2.0.13_OracleFIPS_1.1",
"http://csrc.nist.gov/publications/nistpubs/800-89/SP-800-89_November2006.pdf",
"https://tools.ietf.org/html/rfc5288",
"http://www.intel.com/support/processors/sb/CS-030123.htm?wapkw=sse2",
"http://csrc.nist.gov/publications/nistpubs/800-38D/SP-800-38D.pdf",
"http://csrc.nist.gov/publications/fips/fips180-3/fips180-3_final.pdf",
"https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=32292",
"http://csrc.nist.gov/publications/nistpubs/800-90/SP800-90revised_March2007.pdf",
"http://www.arm.com/products/processors/technologies/neon.php",
"https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?product=13352",
"http://csrc.nist.gov/publications/fips/fips140-2/fips1402.pdf",
"http://csrc.nist.gov/publications/nistpubs/800-131A/sp800-131A.pdf",
"https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=35125",
"https://github.com/oracle/solaris-openssl-fips/releases/download/v1.0/OpenSSL_2.0.13_OracleFIPS_1.0.tar.gz",
"https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=35122",
"https://csrc.nist.gov/projects/cryptographic-module-validation-program",
"http://csrc.nist.gov/publications/fips/fips198-1/FIPS-198-1_final.pdf",
"http://csrc.nist.gov/publications/nistpubs/800-56A/SP800-56A_Revision1_Mar08-2007.pdf",
"https://csrc.nist.gov/Projects/Cryptographic-Algorithm-Validation-Program/Validation/Validation-List/DRBG#2129",
"https://csrc.nist.gov/Projects/Cryptographic-Algorithm-Validation-Program/Validation/Validation-List/RSA#2921",
"https://csrc.nist.gov/Projects/Cryptographic-Algorithm-Validation-Program/Validation/Validation-List/HMAC#3603",
"https://tools.ietf.org/html/rfc5246"
]
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 29
}
},
"state": {
"_type": "sec_certs.sample.fips.InternalState",
"module": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"json_hash": null,
"source_hash": null,
"txt_hash": null
},
"policy": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"json_hash": null,
"source_hash": "2b005153baa0d4995c55d796cea80dfef422400357723b3b8f637e2f3edb972c",
"txt_hash": "d2f34b43c629eba0c560ff43132b7b9d030380f4d9d1fbea0c8fe07934b93225"
}
},
"web_data": {
"_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
"caveat": "When operated in FIPS mode. No assurance of the minimum strength of generated keys.",
"certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/Dec2018Cert.pdf",
"date_sunset": null,
"description": "Oracle OpenSSL FIPS Object Module is a software library providing a C language application program interface (API) for use by processes that require cryptographic services. It is implemented in products such as Oracle Solaris 11, Oracle Integrated Lights Out Manager (ILOM), and Oracle ZFS Storage Appliance.",
"embodiment": "Multi-Chip Stand Alone",
"exceptions": [
"Roles, Services, and Authentication: Level 2",
"Physical Security: N/A",
"Design Assurance: Level 3",
"Mitigation of Other Attacks: N/A"
],
"fw_versions": null,
"historical_reason": "Moved to historical list due to sunsetting",
"hw_versions": null,
"level": 1,
"mentioned_certs": {},
"module_name": "Oracle OpenSSL FIPS Object Module",
"module_type": "Software",
"revoked_link": null,
"revoked_reason": null,
"standard": "FIPS 140-2",
"status": "historical",
"sw_versions": "OpenSSL_2.0.13_OracleFIPS_1.0; OpenSSL_2.0.13_OracleFIPS_1.1; OpenSSL_2.0.13_OracleFIPS_1.2",
"tested_conf": [
"Oracle ILOM OS v5.1 running on AST2600 Server Management Processor with Oracle ILOM SP v6 (ARM v7) without PAA",
"Oracle\u00ae ILOM OS v3.0 running on Emulex Pilot-4 Orion mainboard with Oracle\u00ae ILOM SP v2 (ARM v5) without PAA",
"Oracle\u00ae ILOM OS v3.0 running on Oracle X5-2 server with Oracle\u00ae ILOM SP v3 (ARM v7) with PAA",
"Oracle\u00ae ILOM OS v3.0 running on Oracle X5-2 server with Oracle\u00ae ILOM SP v3 (ARM v7) without PAA",
"Oracle\u00ae ILOM OS v4.0 running on AST2400 Server Management Processor with Oracle\u00ae ILOM SP v4 (ARM v9) without PAA",
"Oracle\u00ae ILOM OS v5.0 running on AST2520 Server Management Processor with Oracle\u00ae ILOM SP v5 (ARM v11) without PAA",
"Oracle\u00ae Linux 7.6 64 bit running on Oracle\u00ae X7-2 Server with AMD\u00ae EPYC\u00ae 7551 with PAA",
"Oracle\u00ae Linux 7.6 64 bit running on Oracle\u00ae X7-2 Server with AMD\u00ae EPYC\u00ae 7551 without PAA",
"Oracle\u00ae Linux 7.6 64 bit running on Oracle\u00ae X7-2 Server with Intel\u00ae Xeon\u00ae Silver 4114 with PAA",
"Oracle\u00ae Linux 7.6 64 bit running on Oracle\u00ae X7-2 Server with Intel\u00ae Xeon\u00ae Silver 4114 without PAA",
"Oracle\u00ae Linux 7.8 64 bit running on Marvell MIPS III 64-bit (T73) without PAA",
"Oracle\u00ae Linux 7.8 64 bit running on Marvell ThunderX2 (ARM 8.1) without PAA",
"Oracle\u00ae Solaris 11.4 running on Oracle S7-2L with an Oracle\u00ae SPARC S7 without PAA",
"Oracle\u00ae Solaris 11.4 running on Oracle S7-2L with Oracle\u00ae SPARC S7 with PAA",
"Oracle\u00ae Solaris 11.4 running on Oracle X5-2 server with Intel Xeon E5-2600 with PAA",
"Oracle\u00ae Solaris 11.4 running on Oracle X5-2 server with Intel Xeon E5-2600 without PAA",
"Oracle\u00ae Solaris 11.4 running on Oracle\u00ae SPARC T8 server with SPARC M8 with PAA",
"Oracle\u00ae Solaris 11.4 running on Oracle\u00ae SPARC T8 server with SPARC M8 without PAA",
"Oracle\u00ae Solaris 11.4 running on Oracle\u00ae X8-2 server with Intel Xeon Gold 5200 series with PAA",
"Oracle\u00ae Solaris 11.4 running on Oracle\u00ae X8-2 server with Intel Xeon Gold 5200 series without PAA",
"Oracle\u00ae ZFS Storage OS 8.8 running on Oracle\u00ae ZFS Storage ZS5-2 with Intel Xeon E5 with PAA",
"Oracle\u00ae ZFS Storage OS 8.8 running on Oracle\u00ae ZFS Storage ZS5-2 with Intel Xeon E5 without PAA",
"Oracle\u00ae ZFS Storage OS 8.8 running on Oracle\u00ae ZFS Storage ZS5-4 with Intel Xeon E7",
"Oracle\u00ae ZFS Storage OS 8.8 running on Oracle\u00ae ZFS Storage ZS5-4 with Intel Xeon E7 without PAA",
"Windows Server 2019 on VMWare ESXi 6.0 running on Oracle Server E2-2C with AMD\u00ae EPYC\u00ae 7742 with PAA",
"Windows Server 2019 on VMWare ESXi 6.0 running on Oracle Server E2-2C with AMD\u00ae EPYC\u00ae 7742 without PAA",
"Windows Server 2019 on VMWare ESXi 6.0 running on Oracle Server E2-2C with Intel\u00ae Xeon\u00ae CPU ES-2695 v4 with PAA",
"Windows Server 2019 on VMWare ESXi 6.0 running on Oracle Server E2-2C with Intel\u00ae Xeon\u00ae CPU ES-2695 v4 without PAA (single-user mode)"
],
"validation_history": [
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2018-12-03",
"lab": "Acumen Security",
"validation_type": "Initial"
},
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2019-07-18",
"lab": "Acumen Security",
"validation_type": "Update"
},
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2020-04-29",
"lab": "Acumen Security",
"validation_type": "Update"
},
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2020-10-23",
"lab": "Acumen Security",
"validation_type": "Update"
},
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2021-03-02",
"lab": "Acumen Security",
"validation_type": "Update"
},
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2021-05-17",
"lab": "Acumen Security",
"validation_type": "Update"
},
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2021-08-03",
"lab": "Acumen Security",
"validation_type": "Update"
},
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2022-07-29",
"lab": "Acumen Security",
"validation_type": "Update"
}
],
"vendor": "Oracle Corporation",
"vendor_url": "http://www.oracle.com"
}
}