{"_type": "sec_certs.sample.fips.FIPSCertificate", "dgst": "2c7faf8d14fde249", "cert_id": 5414, "web_data": {"_type": "sec_certs.sample.fips.FIPSCertificate.WebData", "module_name": "NetScaler MPX", "validation_history": [{"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry", "date": "2026-07-14", "validation_type": "Initial", "lab": "Lightship Security, Inc."}], "vendor_url": "http://www.cloud.com", "vendor": "Cloud Software Group", "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/July 2026_040826_0807.pdf", "module_type": "Hardware", "standard": "FIPS 140-3", "status": "active", "level": 2, "caveat": "When installed, initialized and configured as specified in Section 11 of the Security Policy. The tamper-evident seals are installed/applied as indicated in the Security Policy.", "exceptions": ["Roles, services, and authentication: Level 3", "Operational environment: N/A", "Non-invasive security: N/A", "Mitigation of other attacks: N/A"], "embodiment": "MultiChipStand", "description": "The Cloud NetScaler product line optimizes delivery of applications over the Internet and private networks. The NetScaler MPX is an Application Delivery Controller (ADC) that performs application-specific traffic analysis to intelligently distribute, optimize, and secure L4-L7 network traffic for web applications. All these capabilities are combined into a single, integrated appliance for increased productivity, with a lower overall total cost of ownership.", "tested_conf": null, "hw_versions": null, "fw_versions": null, "sw_versions": null, "mentioned_certs": {}, "historical_reason": null, "date_sunset": "2029-10-10", "revoked_reason": null, "revoked_link": null}, "pdf_data": {"_type": "sec_certs.sample.fips.FIPSCertificate.PdfData", "keywords": {"fips_cert_id": {}, "fips_security_level": {"Level": {"Level 2": 3, "Level 1": 1, "Level 3": 1, "level 2": 2}}, "fips_certlike": {"Certlike": {"HMAC-SHA-1": 18, "HMAC SHA-1": 5, "SHA2-256": 38, "SHA2-384": 23, "SHA2-512": 27, "SHA-1": 28, "SHA2-224": 19, "SHA2- 512": 1, "SHA3-256": 4, "SHA-512": 1, "RSA 2048": 1, "- PKCS 1": 7, "AES-256": 2, "AES-128": 1, "AES-192": 1, "AES GCM IV (96": 7, "PKCS 1": 7}}, "vendor": {}, "eval_facility": {}, "symmetric_crypto": {"AES_competition": {"AES": {"AES-256": 2, "AES-128": 1, "AES-192": 1, "AES": 131}, "CAST": {"CAST": 110}}, "DES": {"DES": {"DES": 1}}, "constructions": {"MAC": {"HMAC": 70}}}, "asymmetric_crypto": {"RSA": {"RSA 2048": 1}, "ECC": {"ECDH": {"ECDH": 38}, "ECDSA": {"ECDSA": 65}, "ECC": {"ECC": 1}}, "FF": {"DH": {"Diffie-Hellman": 6, "DHE": 1, "DH": 46}}}, "pq_crypto": {}, "hash_function": {"SHA": {"SHA1": {"SHA-1": 28}, "SHA2": {"SHA-512": 1}, "SHA3": {"SHA3-256": 4}}, "MD": {"MD5": {"MD5": 2}}, "PBKDF": {"PBKDF": 8}}, "crypto_scheme": {"MAC": {"MAC": 22}, "KA": {"Key Agreement": 51, "Key agreement": 3}}, "crypto_protocol": {"SSH": {"SSH": 115}, "TLS": {"SSL": {"SSL": 7}, "TLS": {"TLS": 223, "TLS v1.2": 22, "TLS v1.3": 9, "TLS 1.2": 2, "TLS 1.3": 3}}, "IKE": {"IKEv1": 10, "IKEv2": 7, "IKE": 7}, "IPsec": {"IPsec": 10}}, "randomness": {"PRNG": {"DRBG": 119}, "RNG": {"RNG": 3}}, "cipher_mode": {"ECB": {"ECB": 1}, "CBC": {"CBC": 2}, "CTR": {"CTR": 46}, "GCM": {"GCM": 24}}, "ecc_curve": {"NIST": {"P-224": 46, "P-256": 58, "P-384": 46, "P-521": 44}}, "crypto_engine": {}, "tls_cipher_suite": {}, "crypto_library": {}, "vulnerability": {}, "side_channel_analysis": {"FI": {"DFA": 20}}, "device_model": {}, "tee_name": {"AMD": {"PSP": 10}}, "os_name": {}, "cplc_data": {}, "ic_data_group": {}, "standard_id": {"FIPS": {"FIPS 140-3": 13, "FIPS 13": 3, "FIPS186-4": 59, "FIPS 186-4": 20, "FIPS 198-1": 14, "FIPS 180-4": 14, "FIPS186-5": 11, "FIPS 186-5": 13, "FIPS186-2": 2, "FIPS 202": 1}, "NIST": {"SP 800-38A": 5, "SP 800-38D": 3, "SP 800-90A": 2, "SP 800-56A": 6, "SP 800-135": 11, "SP 800-56B": 2, "SP 800-132": 1, "SP 800-108": 1, "SP 800-133": 2, "NIST SP 800-107": 5, "NIST SP 800-38D": 2, "NIST SP 800-133": 2, "NIST SP 800-56A": 2, "NIST SP 800-56B": 1, "NIST SP 800-52": 2}, "PKCS": {"PKCS 1": 7}, "RFC": {"RFC7627": 17, "RFC 5288": 1, "RFC 8446": 1}, "ISO": {"ISO/IEC 19790": 8, "ISO/IEC 19790:2012": 1}}, "javacard_version": {}, "javacard_api_const": {}, "javacard_packages": {}, "certification_process": {}}, "policy_metadata": {"pdf_file_size_bytes": 1860554, "pdf_is_encrypted": false, "pdf_number_of_pages": 87, "/Producer": "Microsoft\u00ae Word for Microsoft 365", "/Creator": "Microsoft\u00ae Word for Microsoft 365", "/CreationDate": "D:20260713121355-04'00'", "/ModDate": "D:20260713121355-04'00'", "pdf_hyperlinks": {"_type": "Set", "elements": ["https://docs.citrix.com/en-us/citrix-adc/current-release/licensing.html", "https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?product=16473", "https://docs.citrix.com/en-us/citrix-adc/current-release/system/authentication-and-authorization-for-system-user/external-user-authentication.html", "https://docs.citrix.com/en-us/citrix-adc/current-release/clustering.html", "http://csrc.nist.gov/groups/STM/cmvp", "file:///C:/Users/djohnson/AppData/Local/Microsoft/Windows/INetCache/Content.Outlook/FE93EPOI/www.cloud.com", "https://support.citrix.com/article/CTX122521", "https://docs.citrix.com/en-us/citrix-adc/12-1/getting-started-with-citrix-adc/install-hardware.html", "https://docs.citrix.com/en-us/citrix-adc/current-release/getting-started-with-citrix-adc.html", "https://docs.citrix.com/en-us/citrix-adc-secure-deployment.html", "mailto:info@corsec.com", "https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?product=16042", "https://docs.citrix.com/en-us/citrix-hardware-platforms/mpx/mpx-hardware-software-compatibility-matrix.html", "https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?product=16474", "http://www.cloud.com/", "https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=36554", "https://docs.citrix.com/en-us/citrix-hardware-platforms/mpx/preparing-for-installation.html", "http://www.corsec.com/", "https://csrc.nist.gov/Projects/cryptographic-module-validation-program/Validated-Modules/Search"]}}}, "heuristics": {"_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics", "algorithms": {"_type": "Set", "elements": ["KAS-FFC-SSC Sp800-56Ar3A3942", "ECDSA KeyVer (FIPS186-4)A3944", "ECDSA SigVer (FIPS186-5)A3944", "AES-CBCA3944", "PBKDFA3942", "SHA3-256A3513", "ECDSA KeyGen (FIPS186-5)A3944", "AES-CTRA3942", "Safe Primes Key GenerationA3942", "KDF IKEv1A3942", "SHA2-512A3944", "RSA SigVer (FIPS186-2)A3943", "SHA-1A3944", "HMAC-SHA2-384A3944", "HMAC-SHA2-224A3944", "HMAC-SHA2-256A3944", "KDF IKEv2A3942", "SHA2-224A3944", "AES-GCMA3944", "TLS v1.3 KDFA3943", "RSA KeyGen (FIPS186-4)A3942", "KDF SP800-108A3943", "RSA SigGen (FIPS186-5)A3944", "ECDSA SigVer (FIPS186-4)A3944", "KAS-ECC-SSC Sp800-56Ar3A3944", "KDF SNMPA3942", "RSA SigVer (FIPS186-5)A3944", "ECDSA SigGen (FIPS186-5)A3944", "KDF SSHA3942", "ECDSA KeyGen (FIPS186-4)A3944", "TLS v1.2 KDF RFC7627A3944", "SHA2-384A3944", "SHA2-256A3944", "RSA SigGen (FIPS186-4)A3944", "RSA SigVer (FIPS186-4)A3944", "Safe Primes Key VerificationA3942", "Counter DRBGA3942", "HMAC-SHA2-512A3944", "AES-CFB128A3942", "ECDSA KeyVer (FIPS186-5)A3944", "Hash DRBGA3943", "KDF TLSA3944", "HMAC-SHA-1A3944", "KTS-IFCA3943", "ECDSA SigGen (FIPS186-4)A3944"]}, "extracted_versions": {"_type": "Set", "elements": ["-"]}, "cpe_matches": null, "verified_cpe_matches": null, "related_cves": null, "policy_prunned_references": {"_type": "Set", "elements": []}, "module_prunned_references": {"_type": "Set", "elements": []}, "policy_processed_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "module_processed_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "direct_transitive_cves": null, "indirect_transitive_cves": null}, "state": {"_type": "sec_certs.sample.fips.InternalState", "module": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": null, "txt_hash": null, "json_hash": null}, "policy": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": "599e70f5a47c7c9fac6d3fd29d66cd7499e766f6938132f17e384fb3a40e45af", "txt_hash": "b5964c39421c6a65d60765a5170803ef08c3bc478828bf041a6275111643b43c", "json_hash": null}}}