OpenSSL FIPS Object Module

Certificate #1051

Webpage information

Status historical
Historical reason RNG SP800-131A Revision 1 Transition
Validation dates 17.11.2008 , 20.11.2009 , 08.12.2010 , 12.05.2011 , 07.03.2012 , 14.03.2012 , 29.05.2012 , 21.06.2012
Standard FIPS 140-2
Security level 1
Type Software
Embodiment Multi-Chip Stand Alone
Caveat When built, installed, protected and initialized as assumed by the Crypto Officer role and as specified in the provided Security Policy. Appendix B of the provided Security Policy specifies the actual distribution tar file containing the source code of this module. There shall be no additions, deletions or alterations to the tar file contents as used during module build. The distribution tar file, shall be verified as specified in Appendix B of the provided Security Policy. Installation and protection shall be completed as specified in Appendix A of the provided Security Policy. Initialization shall be invoked as per Section 2.3 of the provided Security Policy. Any deviation from specified verification, protection, installation and initialization procedures will result in a FIPS 140-2 non-compliant module.
Description The OpenSSL FIPS Object Module is a cryptographic library that can be downloaded from www.openssl.org/source/
Tested configurations
  • µClinux Kernel Version 2.4.32 (gcc Compiler Version 3.4.4)
  • Android 2.2 (gcc Compiler Version 4.4.0)
  • Apple iOS 5.0 (gcc Compiler Version 4.2.1)
  • Apple OS X 11 32 bit (gcc Compiler Version 4.2.1)
  • Apple OS X 11 64 bit (gcc Compiler Version 4.2.1) (single-user mode)
  • OpenSuSE Linux 32-bit Version 10.2 (gcc Compiler Version 4.1.2 20061115 prerelease)
  • OpenSuSE Linux 64-bit Version 10.2 (gcc Compiler Version 4.1.2 20061115 prerelease)
  • VxWorks 6.7 (gcc Compiler Version 4.1.2)
  • Wind River 1.4 (gcc Compiler Version 3.4.4)
  • Wind River 4.0 (gcc Compiler Version 4.4.1)
  • Windows XP Pro SP2 32 bit (Microsoft Visual C++ version 8)
  • Windows XP Pro SP2 64 bit (Microsoft Visual C++ version 8)
Vendor Open Source Software Institute
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Symmetric Algorithms
AES, TDES, Triple-DES, HMAC, HMAC-SHA-224, HMAC-SHA-256, HMAC-SHA-384, HMAC-SHA-512
Asymmetric Algorithms
DH, Diffie-Hellman, DSA
Hash functions
SHA-1, SHA1, SHA-224, SHA-256, SHA-384, SHA-512, SHA-2
Randomness
PRNG, RNG
Libraries
OpenSSL

Vendor
Microsoft, Microsoft Corporation

Security level
Level 1, level 1

Standards
FIPS 140-2, PKCS #1

File metadata

Author CPUBuilders Customer
Creation date D:20120612193603-04'00'
Pages 21
Creator Writer
Producer LibreOffice 3.4

References

Incoming
  • 1879 - historical - PoliWall-CCF M10 [1], M50 [2], G01 [3] and G10 [4] Series Security Appliance

Heuristics

No heuristics are available for this certificate.

References

Loading...

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 1051,
  "dgst": "11382b8de6b4b042",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "RSA#999",
        "DSA#637",
        "SHS#1362",
        "DSA#512",
        "RSA#745",
        "RNG#1053",
        "SHS#723",
        "SHS#1698",
        "AES#695",
        "HMAC#373",
        "RNG#1018",
        "RSA#323",
        "SHS#1435",
        "DSA#264",
        "RSA#804",
        "HMAC#957",
        "AES#1933",
        "Triple-DES#627",
        "AES#1630",
        "Triple-DES#1297",
        "HMAC#892",
        "HMAC#1167",
        "DSA#616",
        "RNG#407",
        "RNG#873",
        "HMAC#1216",
        "DSA#475",
        "AES#1534",
        "RNG#826",
        "AES#2011",
        "SHS#1761",
        "Triple-DES#1011",
        "Triple-DES#1259",
        "Triple-DES#1066",
        "RSA#1040"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "-"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": {
        "_type": "Set",
        "elements": [
          "1879"
        ]
      },
      "directly_referencing": null,
      "indirectly_referenced_by": {
        "_type": "Set",
        "elements": [
          "1879"
        ]
      },
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "FF": {
          "DH": {
            "DH": 1,
            "Diffie-Hellman": 3
          },
          "DSA": {
            "DSA": 8
          }
        }
      },
      "certification_process": {},
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {
        "OpenSSL": {
          "OpenSSL": 15
        }
      },
      "crypto_protocol": {},
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "#1": 1,
          "#1011": 1,
          "#1018": 1,
          "#1040": 1,
          "#1051": 1,
          "#1053": 1,
          "#1066": 1,
          "#1167": 5,
          "#1216": 5,
          "#1259": 1,
          "#1297": 1,
          "#1362": 5,
          "#1435": 5,
          "#1534": 1,
          "#1630": 1,
          "#1698": 5,
          "#1761": 5,
          "#1933": 1,
          "#2011": 1,
          "#264": 1,
          "#323": 1,
          "#373": 5,
          "#407": 1,
          "#475": 1,
          "#512": 1,
          "#616": 1,
          "#627": 1,
          "#637": 1,
          "#695": 1,
          "#723": 5,
          "#745": 1,
          "#804": 1,
          "#826": 1,
          "#873": 1,
          "#892": 5,
          "#957": 5,
          "#999": 1
        }
      },
      "fips_certlike": {
        "Certlike": {
          "AES #695": 1,
          "AES KAT 2": 1,
          "DSA #264": 1,
          "HMAC SHA-1": 1,
          "HMAC-SHA-1": 28,
          "HMAC-SHA-1 #373": 2,
          "HMAC-SHA-224": 2,
          "HMAC-SHA-256": 2,
          "HMAC-SHA-384": 2,
          "HMAC-SHA-512": 2,
          "HMAC-SHA1": 2,
          "HMAC-SHA224 #373": 2,
          "HMAC-SHA256 #373": 2,
          "HMAC-SHA384 #373": 2,
          "HMAC-SHA512 #373": 2,
          "PKCS #1": 2,
          "SHA-1": 3,
          "SHA-1 #723": 1,
          "SHA-1 KAT3": 1,
          "SHA-2": 1,
          "SHA-224": 1,
          "SHA-256": 2,
          "SHA-384": 2,
          "SHA-512 #723": 1,
          "SHA-512 KAT1": 1,
          "SHA1": 1
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 1": 1,
          "level 1": 3
        }
      },
      "hash_function": {
        "SHA": {
          "SHA1": {
            "SHA-1": 5,
            "SHA1": 1
          },
          "SHA2": {
            "SHA-2": 1,
            "SHA-224": 2,
            "SHA-256": 2,
            "SHA-384": 2,
            "SHA-512": 2
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "PRNG": 4
        },
        "RNG": {
          "RNG": 1
        }
      },
      "side_channel_analysis": {},
      "standard_id": {
        "FIPS": {
          "FIPS 140-2": 32
        },
        "PKCS": {
          "PKCS #1": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 8
          }
        },
        "DES": {
          "3DES": {
            "TDES": 3,
            "Triple-DES": 2
          }
        },
        "constructions": {
          "MAC": {
            "HMAC": 10,
            "HMAC-SHA-224": 1,
            "HMAC-SHA-256": 1,
            "HMAC-SHA-384": 1,
            "HMAC-SHA-512": 1
          }
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "Microsoft": {
          "Microsoft": 3,
          "Microsoft Corporation": 1
        }
      },
      "vulnerability": {}
    },
    "policy_metadata": {
      "/Author": "CPUBuilders Customer",
      "/CreationDate": "D:20120612193603-04\u002700\u0027",
      "/Creator": "Writer",
      "/Producer": "LibreOffice 3.4",
      "pdf_file_size_bytes": 399888,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "http://opensslfoundation.com/testing/validation-1.2/source/openssl-fips-1.2.tar.gz",
          "http://oss-institute.org/",
          "http://opensslfoundation.com/testing/validation-1.2/source/openssl-fips-1.2.2.tar.gz",
          "http://openssl.org/",
          "http://www.infogard.com/",
          "mailto:[email protected]",
          "http://www.domusitsl.com/",
          "http://www.oss-institute.org/",
          "mailto:[email protected]",
          "file:///opt/export/%25local/OSF/FIPS140_Object_Module/Docs/SecurityPolicy/Released/www.openssl.org",
          "http://www.openssl.org/source/openssl-fips-1.2.crossbuild.diff.gz",
          "mailto:[email protected]",
          "http://csrc.nist.gov/cryptval/",
          "http://www.openssl.org/source/",
          "http://www.openssl.org/source/openssl-fips-1.2.4.tar.gz",
          "http://cvs.openssl.org/"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 21
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
    "module_download_ok": true,
    "module_extract_ok": true,
    "policy_convert_ok": true,
    "policy_download_ok": true,
    "policy_extract_ok": true,
    "policy_json_hash": null,
    "policy_pdf_hash": "e2f5fd1c40d1ece6677b310a7257c618e29cfaf89e6c3141fb225ed13841bae7",
    "policy_txt_hash": "291100b0dfe813eaaeae4ab374edcedfb47a4adeafba0a2adffcbc5f5418e3f9"
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "When built, installed, protected and initialized as assumed by the Crypto Officer role and as specified in the provided Security Policy. Appendix B of the provided Security Policy specifies the actual distribution tar file containing the source code of this module. There shall be no additions, deletions or alterations to the tar file contents as used during module build. The distribution tar file, shall be verified as specified in Appendix B of the provided Security Policy. Installation and protection shall be completed as specified in Appendix A of the provided Security Policy. Initialization shall be invoked as per Section 2.3 of the provided Security Policy. Any deviation from specified verification, protection, installation and initialization procedures will result in a FIPS 140-2 non-compliant module.",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/140crt1051.pdf",
    "date_sunset": null,
    "description": "The OpenSSL FIPS Object Module is a cryptographic library that can be downloaded from www.openssl.org/source/",
    "embodiment": "Multi-Chip Stand Alone",
    "exceptions": null,
    "fw_versions": null,
    "historical_reason": "RNG SP800-131A Revision 1 Transition",
    "hw_versions": null,
    "level": 1,
    "mentioned_certs": {},
    "module_name": "OpenSSL FIPS Object Module",
    "module_type": "Software",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "historical",
    "sw_versions": "1.2, 1.2.1, 1.2.2, 1.2.3 or 1.2.4",
    "tested_conf": [
      "\u00b5Clinux Kernel Version 2.4.32 (gcc Compiler Version 3.4.4)",
      "Android 2.2 (gcc Compiler Version 4.4.0)",
      "Apple iOS 5.0 (gcc Compiler Version 4.2.1)",
      "Apple OS X 11 32 bit (gcc Compiler Version 4.2.1)",
      "Apple OS X 11 64 bit (gcc Compiler Version 4.2.1) (single-user mode)",
      "OpenSuSE Linux 32-bit Version 10.2 (gcc Compiler Version 4.1.2 20061115 prerelease)",
      "OpenSuSE Linux 64-bit Version 10.2 (gcc Compiler Version 4.1.2 20061115 prerelease)",
      "VxWorks 6.7 (gcc Compiler Version 4.1.2)",
      "Wind River 1.4 (gcc Compiler Version 3.4.4)",
      "Wind River 4.0 (gcc Compiler Version 4.4.1)",
      "Windows XP Pro SP2 32 bit (Microsoft Visual C++ version 8)",
      "Windows XP Pro SP2 64 bit (Microsoft Visual C++ version 8)"
    ],
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2008-11-17",
        "lab": "DOMUS",
        "validation_type": "Initial"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2009-11-20",
        "lab": "",
        "validation_type": "Update"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2010-12-08",
        "lab": "UL Verification Services, Inc.",
        "validation_type": "Update"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2011-05-12",
        "lab": "UL Verification Services, Inc.",
        "validation_type": "Update"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2012-03-07",
        "lab": "UL Verification Services, Inc.",
        "validation_type": "Update"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2012-03-14",
        "lab": "UL Verification Services, Inc.",
        "validation_type": "Update"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2012-05-29",
        "lab": "SAIC-VA",
        "validation_type": "Update"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2012-06-21",
        "lab": "UL Verification Services, Inc.",
        "validation_type": "Update"
      }
    ],
    "vendor": "Open Source Software Institute",
    "vendor_url": "http://www.oss-institute.org"
  }
}