{"_type": "sec_certs.sample.fips.FIPSCertificate", "dgst": "096500d44885b4df", "cert_id": 5430, "web_data": {"_type": "sec_certs.sample.fips.FIPSCertificate.WebData", "module_name": "CiscoSSL FIPS Provider", "validation_history": [{"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry", "date": "2026-07-21", "validation_type": "Initial", "lab": "Acumen Security"}], "vendor_url": "https://www.cisco.com/", "vendor": "Cisco Systems, Inc", "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/July 2026_040826_0807.pdf", "module_type": "Firmware", "standard": "FIPS 140-3", "status": "active", "level": 1, "caveat": "When operated in approved mode. No assurance of the minimum strength of generated SSPs (e.g., keys). No assurance of minimum security of SSPs (e.g., keys, bit strings) that are externally loaded, or of SSPs established with externally loaded SSPs", "exceptions": ["Non-invasive security: N/A"], "embodiment": "MultiChipStand", "description": "The CiscoSSL FIPS Provider is a firmware library that provides cryptographic services to a vast array of Cisco's networking and collaboration products. The module is comprised of a single object module file called fips.so.", "tested_conf": null, "hw_versions": null, "fw_versions": null, "sw_versions": null, "mentioned_certs": {}, "historical_reason": null, "date_sunset": "2029-11-17", "revoked_reason": null, "revoked_link": null}, "pdf_data": {"_type": "sec_certs.sample.fips.FIPSCertificate.PdfData", "keywords": {"fips_cert_id": {"Cert": {"#1": 2, "#3": 1}}, "fips_security_level": {"Level": {"Level 1": 5, "level 1": 2}}, "fips_certlike": {"Certlike": {"HMAC- SHA-1": 2, "HMAC-SHA-1": 8, "HMAC-SHA3": 2, "SHA2-256": 59, "SHA2-224": 30, "SHA2-384": 34, "SHA2-512": 36, "SHA-1": 38, "SHA2- 224": 4, "SHA2- 256": 7, "SHA2- 384": 4, "SHA2- 512": 6, "SHA3- 224": 4, "SHA3- 256": 10, "SHA3- 384": 6, "SHA3- 512": 4, "SHA3-224": 6, "SHA3-384": 4, "SHA3-512": 6, "SHA3-256": 8, "SHA-2": 2, "SHA-3": 2, "SHA3": 3, "SHA1": 2, "SHA512": 1, "PKCS 1": 8, "AES-128": 6, "AES-192": 4, "AES-256": 4, "AES- 1": 1}}, "vendor": {"Cisco": {"Cisco Systems, Inc": 76, "Cisco Systems": 1, "Cisco": 11}}, "eval_facility": {}, "symmetric_crypto": {"AES_competition": {"AES": {"AES-": 45, "AES-128": 6, "AES-192": 4, "AES-256": 4, "AES": 35}, "CAST": {"CAST": 73}}, "DES": {"3DES": {"TDES": 10}}, "constructions": {"MAC": {"HMAC": 30, "KMAC": 7, "CMAC": 16}}}, "asymmetric_crypto": {"ECC": {"ECDH": {"ECDH": 1}, "ECDSA": {"ECDSA": 51}, "EdDSA": {"EdDSA": 6}, "ECC": {"ECC": 6}}, "FF": {"DH": {"Diffie-Hellman": 6, "DHE": 2, "DH": 31}, "DSA": {"DSA": 53}}}, "pq_crypto": {}, "hash_function": {"SHA": {"SHA1": {"SHA-1": 38, "SHA1": 2}, "SHA2": {"SHA512": 1, "SHA-2": 2}, "SHA3": {"SHA3-224": 6, "SHA3-384": 4, "SHA3-512": 6, "SHA3-256": 8, "SHA-3": 2, "SHA3": 3}}, "PBKDF": {"PBKDF": 12, "PBKDF2": 2}}, "crypto_scheme": {"MAC": {"MAC": 57}, "KA": {"Key Agreement": 5}}, "crypto_protocol": {"SSH": {"SSH": 8, "SSHv2": 4}, "TLS": {"TLS": {"TLS": 4, "TLS v1.2": 7, "TLS v1.3": 10, "TLS 1.2": 6, "TLS 1.3": 2}}, "IKE": {"IKEv2": 10, "IKE": 1}}, "randomness": {"PRNG": {"DRBG": 33}, "RNG": {"RBG": 3}}, "cipher_mode": {"ECB": {"ECB": 4}, "CBC": {"CBC": 6}, "CTR": {"CTR": 4}, "OFB": {"OFB": 2}, "GCM": {"GCM": 15}, "CCM": {"CCM": 2}, "XTS": {"XTS": 4}}, "ecc_curve": {"NIST": {"P-256": 38, "P-384": 26, "P-521": 24}, "Edwards": {"Ed25519": 1, "Ed448": 1}}, "crypto_engine": {}, "tls_cipher_suite": {}, "crypto_library": {"OpenSSL": {"OpenSSL": 2}}, "vulnerability": {}, "side_channel_analysis": {"SCA": {"side-channel": 1, "timing attacks": 2}}, "device_model": {}, "tee_name": {"AMD": {"PSP": 7}, "IBM": {"SSC": 12}}, "os_name": {}, "cplc_data": {}, "ic_data_group": {}, "standard_id": {"FIPS": {"FIPS 140-3": 30, "FIPS PUB 140-3": 1, "FIPS18": 24, "FIPS 186-4": 26, "FIPS 198-1": 22, "FIPS 180-4": 14, "FIPS 202": 12, "FIPS186-4": 30}, "NIST": {"SP 800-140B": 1, "NIST SP 800-133": 3, "SP 800-56A": 4, "SP 800-56B": 4, "SP 800-52": 1, "SP 800-38D": 1, "SP 800-132": 2, "SP 800-38E": 1, "SP 800-133": 4, "SP 800-131A": 1, "SP 800-90A": 3, "SP 800-38F": 1}, "PKCS": {"PKCS 1": 4}, "RFC": {"RFC762": 2, "RFC 5288": 1, "RFC 5246": 1, "RFC 7296": 1, "RFC5282": 1, "RFC 8446": 1, "RFC8446": 2, "RFC7627": 4}, "ISO": {"ISO/IEC 19790": 4}}, "javacard_version": {}, "javacard_api_const": {"curves": {"ED25519": 7, "ED448": 7, "X25519": 4, "X448": 3}}, "javacard_packages": {}, "certification_process": {}}, "policy_metadata": {"pdf_file_size_bytes": 886888, "pdf_is_encrypted": false, "pdf_number_of_pages": 74, "/Producer": "Microsoft\u00ae Word for Microsoft 365", "/Creator": "Microsoft\u00ae Word for Microsoft 365", "/CreationDate": "D:20260709134600-04'00'", "/ModDate": "D:20260709134600-04'00'", "pdf_hyperlinks": {"_type": "Set", "elements": []}}}, "heuristics": {"_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics", "algorithms": {"_type": "Set", "elements": ["SHA2-384A3252", "SHA3-384A3252", "SHA2-512A3252", "KDA OneStep SP800-56Cr2A3252", "SHA-1A3252", "AES-CBCA3252", "AES-XTS Testing Revision 2.0A3252", "ECDSA SigGen (FIPS186-4)A3252", "HMAC-SHA3-256A3252", "SHA3-512A3252", "HMAC-SHA2-224A3252", "DSA SigVer (FIPS186-4)A3252", "KDF ANS 9.42A3252", "AES-CFB8A3252", "KAS-IFC-SSCA3252", "AES-CBC-CS3A3252", "AES-KWA3252", "SHAKE-256A3252", "KDF SSHA3252", "TDES-CBCA3252", "HMAC DRBGA3252", "AES-ECBA3252", "PBKDFA3252", "KAS-ECC CDH-Component SP800-56Ar3A3252", "SHA3-256A3252", "AES-GMACA3252", "KDF ANS 9.63A3252", "RSA KeyGen (FIPS186-4)A3252", "KDF SRTPA3252", "SHA2-512/256A3252", "KDF SNMPA3252", "AES-CFB1A3252", "HMAC-SHA3-224A3252", "Hash DRBGA3252", "HMAC-SHA3-512A3252", "SHAKE-128A3252", "Safe Primes Key VerificationA3252", "HMAC-SHA2-512/224A3252", "KMAC-128A3252", "KDA HKDF SP800-56Cr2A3252", "DSA KeyGen (FIPS186-4)A3252", "KDF SP800-108A3252", "RSA SigVer (FIPS186-4)A3252", "ECDSA KeyVer (FIPS186-4)A3252", "DSA PQGVer (FIPS186-4)A3252", "ECDSA SigVer (FIPS186-4)A3252", "AES-CBC-CS2A3252", "HMAC-SHA-1A3252", "RSA SigGen (FIPS186-4)A3252", "AES-CFB128A3252", "ECDSA KeyGen (FIPS186-4)A3252", "TDES-ECBA3252", "SHA2-224A3252", "SHA3-224A3252", "KDF IKEv2A3252", "HMAC-SHA2-512/256A3252", "HMAC-SHA2-512A3252", "KTS-IFCA3252", "TLS v1.2 KDF RFC7627A3252", "KAS-FFC-SSC Sp800-56Ar3A3252", "AES-OFBA3252", "DSA SigGen (FIPS186-4)A3252", "AES-CMACA3252", "AES-GCMA3252", "Safe Primes Key GenerationA3252", "SHA2-512/224A3252", "HMAC-SHA3-384A3252", "RSA Signature PrimitiveA3252", "DSA PQGGen (FIPS186-4)A3252", "AES-CCMA3252", "TDES-CMACA3252", "KAS-ECC-SSC Sp800-56Ar3A3252", "AES-CTRA3252", "SHA2-256A3252", "AES-KWPA3252", "AES-CBC-CS1A3252", "KMAC-256A3252", "HMAC-SHA2-384A3252", "KDA TwoStep SP800-56Cr2A3252", "TLS v1.3 KDFA3252", "Counter DRBGA3252", "HMAC-SHA2-256A3252"]}, "extracted_versions": {"_type": "Set", "elements": ["-"]}, "cpe_matches": null, "verified_cpe_matches": null, "related_cves": null, "policy_prunned_references": {"_type": "Set", "elements": []}, "module_prunned_references": {"_type": "Set", "elements": []}, "policy_processed_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "module_processed_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "direct_transitive_cves": null, "indirect_transitive_cves": null}, "state": {"_type": "sec_certs.sample.fips.InternalState", "module": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": null, "txt_hash": null, "json_hash": null}, "policy": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": "33678dd82b81b8d9a10171d96e9c0301161042288aa344d2709c268ed7b10a3e", "txt_hash": "f79e260a6a1c029d438cef50979092e2cd607d2a3c2f4789077eaaa4feb1b207", "json_hash": null}}}