RSA BSAFE® Crypto-Kernel

Certificate #1159

Webpage information

Status historical
Historical reason Moved to historical list due to sunsetting
Validation dates 29.07.2009 , 20.08.2010 , 07.09.2010 , 12.02.2016
Standard FIPS 140-2
Security level 1
Type Software
Embodiment Multi-Chip Stand Alone
Caveat When operated in FIPS mode
Description RSA BSAFE® Crypto-Kernel is a cryptographic library from RSA, The Security Division of EMC, to provide symmetric encryption, hashing, and message authentication code creation, in the operating system kernel. It provides Advanced Encryption Standard (AES) cipher, SHA-256 message digest, and HMAC capabilities.
Tested configurations
  • Windows Server 2003 SP2 (Itanium 2) [1]
  • Windows Server 2003 SP2 (x64 AMD Athlon X2) [2] (single-user mode)
  • Windows Server 2003 SP2 (x86 Celeron) [1]
Vendor RSA, The Security Division of EMC
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Symmetric Algorithms
AES, DES, HMAC, HMAC-SHA-256
Hash functions
SHA-1, SHA-256, SHA-224, SHA-384, SHA-512, SHA-2
Schemes
MAC
Block cipher modes
ECB, CBC, XTS

Vendor
Microsoft

Security level
Level 1

Standards
FIPS 140-2, FIPS PUB 140-2, FIPS 140

File metadata

Title RSA BSAFE Crypto-Kernel 1.3.1 and 1.3.1.1 Security Policy
Author RSA
Creation date D:20090401162914Z
Modification date D:20100804103835+10'00'
Pages 14
Creator FrameMaker 9.0
Producer Acrobat Distiller 7.0 (Windows)

Heuristics

No heuristics are available for this certificate.

References

No references are available for this certificate.

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 1159,
  "dgst": "118a91dd9d8f92a0",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "SHS#1028",
        "HMAC#617",
        "AES#1105",
        "HMAC#835",
        "AES#1415",
        "SHS#1285"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "-"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {},
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 4
        },
        "ECB": {
          "ECB": 4
        },
        "XTS": {
          "XTS": 5
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {
        "MAC": {
          "MAC": 6
        }
      },
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "fips_cert_id": {},
      "fips_certlike": {
        "Certlike": {
          "AES (128": 1,
          "Certificate AES": 1,
          "HMAC-SHA-1": 4,
          "HMAC-SHA-1 617": 1,
          "HMAC-SHA-1 617 and 835": 1,
          "HMAC-SHA-256": 6,
          "HMAC-SHA-256 617": 1,
          "SHA-1": 3,
          "SHA-1 1028 and 1285": 1,
          "SHA-2": 1,
          "SHA-224": 1,
          "SHA-256": 4,
          "SHA-384": 1,
          "SHA-512": 1
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 1": 4
        }
      },
      "hash_function": {
        "SHA": {
          "SHA1": {
            "SHA-1": 4
          },
          "SHA2": {
            "SHA-2": 1,
            "SHA-224": 1,
            "SHA-256": 5,
            "SHA-384": 1,
            "SHA-512": 1
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {},
      "standard_id": {
        "FIPS": {
          "FIPS 140": 1,
          "FIPS 140-2": 19,
          "FIPS PUB 140-2": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 12
          }
        },
        "DES": {
          "DES": {
            "DES": 1
          }
        },
        "constructions": {
          "MAC": {
            "HMAC": 8,
            "HMAC-SHA-256": 4
          }
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "Microsoft": {
          "Microsoft": 3
        }
      },
      "vulnerability": {}
    },
    "policy_metadata": {
      "/Author": "RSA",
      "/CreationDate": "D:20090401162914Z",
      "/Creator": "FrameMaker 9.0",
      "/ModDate": "D:20100804103835+10\u002700\u0027",
      "/Producer": "Acrobat Distiller 7.0 (Windows)",
      "/Title": "RSA BSAFE Crypto-Kernel 1.3.1 and 1.3.1.1 Security Policy",
      "pdf_file_size_bytes": 133000,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "mailto:[email protected]",
          "http://www.rsa.com/rsalabs/node.asp?id=2152",
          "http://www.rsa.com",
          "https://knowledge.rsasecurity.com/",
          "http://www.rsa.com/node.asp?id=1067",
          "http://www.rsa.com/",
          "http://csrc.nist.gov/groups/STM/cmvp/index.html",
          "http://www.rsa.com/node.asp?id=1204",
          "https://knowledge.rsasecurity.com",
          "http://www.rsa.com./node.asp?id=1067",
          "http://csrc.nist.gov/groups/STM/cmvp/documents/fips140-2/FIPS1402IG.pdf"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 14
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
    "module_download_ok": true,
    "module_extract_ok": true,
    "policy_convert_ok": true,
    "policy_download_ok": true,
    "policy_extract_ok": true,
    "policy_json_hash": null,
    "policy_pdf_hash": "c71b2cace8d2889151cf3128279bdb7f77ca3edb6addca3e7b6fc3dc9c11a4c2",
    "policy_txt_hash": "7dc9376e6598a666c56caa3bcce6bb5a6dca6c93538676432d26fcccf311b0b2"
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "When operated in FIPS mode",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/140crt1159.pdf",
    "date_sunset": null,
    "description": "RSA BSAFE\u00ae Crypto-Kernel is a cryptographic library from RSA, The Security Division of EMC, to provide symmetric encryption, hashing, and message authentication code creation, in the operating system kernel. It provides Advanced Encryption Standard (AES) cipher, SHA-256 message digest, and HMAC capabilities.",
    "embodiment": "Multi-Chip Stand Alone",
    "exceptions": null,
    "fw_versions": null,
    "historical_reason": "Moved to historical list due to sunsetting",
    "hw_versions": null,
    "level": 1,
    "mentioned_certs": {},
    "module_name": "RSA BSAFE\u00ae Crypto-Kernel",
    "module_type": "Software",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "historical",
    "sw_versions": "1.3.1 [1] and 1.3.1.1 [2]",
    "tested_conf": [
      "Windows Server 2003 SP2 (Itanium 2) [1]",
      "Windows Server 2003 SP2 (x64 AMD Athlon X2) [2] (single-user mode)",
      "Windows Server 2003 SP2 (x86 Celeron) [1]"
    ],
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2009-07-29",
        "lab": "SAIC-VA",
        "validation_type": "Initial"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2010-08-20",
        "lab": "",
        "validation_type": "Update"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2010-09-07",
        "lab": "SAIC-VA",
        "validation_type": "Update"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2016-02-12",
        "lab": "Leidos Accredited Testing \u0026 Evaluation (AT\u0026E) Lab",
        "validation_type": "Update"
      }
    ],
    "vendor": "RSA, The Security Division of EMC",
    "vendor_url": "http://www.rsa.com"
  }
}