This page was not yet optimized for use on mobile
devices.
SUSE Linux Enterprise Server 12 - Kernel Crypto API Cryptographic Module
Certificate #2549
Webpage information
Security policy
Symmetric Algorithms
AES, AES-, AES-192, Twofish, Serpent, CAST5, DES, Triple-DES, TDES, TDEA, Salsa20, Blowfish, SEED, HMAC, HMAC-SHA-256, HMAC-SHA-224, HMAC-SHA-512, CMACHash functions
SHA-1, SHA-256, SHA-384, SHA-512, SHA-224, MD4, MD5, RIPEMDSchemes
MACProtocols
IKEv2Randomness
DRBG, RNGLibraries
OpenSSLBlock cipher modes
ECB, CBC, CTR, GCM, CCM, LRW, XEX, XTSSecurity level
level 1, Level 1Standards
FIPS 140-2, FIPS 197, FIPS 186-4, FIPS 180-4, FIPS 198, FIPS180-4, FIPS186-4, FIPS197, FIPS198-1, SP 800-67, SP 800-38A, SP 800-38C, SP 800-38E, SP 800-38D, SP 800-90A, PKCS#1, PKCS #1, RFC4106, RFC 6071, RFC 7296File metadata
| Title | FIPS 140-2 Non-Proprietary Security Policy |
|---|---|
| Keywords | FIPS 140-2 |
| Author | Traci Porter |
| Creation date | D:20151216181752-06'00' |
| Pages | 26 |
| Creator | Writer |
| Producer | LibreOffice 4.4 |
References
Outgoing- 2484 - historical - SUSE Linux Enterprise Server 12 - StrongSwan Cryptographic Module
- 2435 - historical - SUSE Linux Enterprise Server 12 - OpenSSL Module
- 3099 - historical - SUSE Linux Enterprise Server - Kernel Crypto API Cryptographic Module
Heuristics
No heuristics are available for this certificate.
References
Loading...
Updates Feed
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate was first processed.
Raw data
{
"_type": "sec_certs.sample.fips.FIPSCertificate",
"cert_id": 2549,
"dgst": "3921a7d7066d4666",
"heuristics": {
"_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
"algorithms": {
"_type": "Set",
"elements": [
"HMAC#2083",
"SHS#2727",
"DRBG#746",
"HMAC#2086",
"SHS#2724",
"DRBG#744",
"AES#3287",
"DRBG#747",
"AES#3286",
"SHS#2725",
"AES#3288",
"Triple-DES#1873",
"RSA#1687",
"HMAC#2084",
"DRBG#745",
"HMAC#2085",
"SHS#2726",
"AES#3297",
"AES#3298"
]
},
"cpe_matches": null,
"direct_transitive_cves": null,
"extracted_versions": {
"_type": "Set",
"elements": [
"12"
]
},
"indirect_transitive_cves": null,
"module_processed_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": {
"_type": "Set",
"elements": [
"2435",
"2484"
]
},
"indirectly_referenced_by": null,
"indirectly_referencing": {
"_type": "Set",
"elements": [
"2435",
"3038",
"2484"
]
}
},
"module_prunned_references": {
"_type": "Set",
"elements": [
"2435",
"2484"
]
},
"policy_processed_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": {
"_type": "Set",
"elements": [
"3099"
]
},
"directly_referencing": {
"_type": "Set",
"elements": [
"2435",
"2484"
]
},
"indirectly_referenced_by": {
"_type": "Set",
"elements": [
"3099"
]
},
"indirectly_referencing": {
"_type": "Set",
"elements": [
"4646",
"3788",
"1628",
"4623",
"2015",
"3199",
"675",
"2645",
"3090",
"3480",
"4647",
"2648",
"2507",
"2017",
"674",
"3771",
"3789",
"3195",
"2484",
"3194",
"3769",
"2646",
"3091",
"3045",
"3651",
"3196",
"2439",
"2016",
"3043",
"3197",
"1537",
"1127",
"3089",
"2435",
"3770",
"3042",
"586",
"3644",
"3198",
"3096",
"3114",
"3059",
"4588",
"1823",
"2014",
"3615",
"1538",
"4595",
"4645",
"3038",
"2481",
"676",
"1930",
"1536",
"3768",
"4594",
"2505",
"3044",
"4622"
]
}
},
"policy_prunned_references": {
"_type": "Set",
"elements": [
"2435",
"2484"
]
},
"related_cves": null,
"verified_cpe_matches": null
},
"pdf_data": {
"_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
"keywords": {
"asymmetric_crypto": {},
"certification_process": {},
"cipher_mode": {
"CBC": {
"CBC": 8
},
"CCM": {
"CCM": 6
},
"CTR": {
"CTR": 7
},
"ECB": {
"ECB": 7
},
"GCM": {
"GCM": 11
},
"LRW": {
"LRW": 3
},
"XEX": {
"XEX": 1
},
"XTS": {
"XTS": 8
}
},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {
"OpenSSL": {
"OpenSSL": 9
}
},
"crypto_protocol": {
"IKE": {
"IKEv2": 3
}
},
"crypto_scheme": {
"MAC": {
"MAC": 1
}
},
"device_model": {},
"ecc_curve": {},
"eval_facility": {
"atsec": {
"atsec": 28
}
},
"fips_cert_id": {
"Cert": {
"#1": 1,
"#1687": 1,
"#1873": 1,
"#2083": 1,
"#2084": 1,
"#2085": 1,
"#2086": 1,
"#2435": 3,
"#2484": 2,
"#2724": 1,
"#2725": 1,
"#2726": 1,
"#2727": 1,
"#3286": 2,
"#3287": 3,
"#3288": 3,
"#3297": 3,
"#3298": 3,
"#744": 3,
"#745": 3,
"#746": 2,
"#747": 3
}
},
"fips_certlike": {
"Certlike": {
"AES-192": 2,
"Cert. #1687 SHS": 1,
"Cert. #1873 AES": 1,
"Cert. #3298 RSA": 1,
"Cert. #745 HMAC": 1,
"HMAC-SHA- 384": 2,
"HMAC-SHA-1": 2,
"HMAC-SHA-224": 2,
"HMAC-SHA-256": 10,
"HMAC-SHA-512": 2,
"PKCS #1": 2,
"PKCS#1": 4,
"SHA- 224": 1,
"SHA- 512 Cert. #2084": 1,
"SHA- 512 Cert. #2086": 1,
"SHA- 512 Cert. #2725": 1,
"SHA- 512 Cert. #2727": 1,
"SHA-1": 10,
"SHA-224": 9,
"SHA-256": 18,
"SHA-384": 18,
"SHA-512": 1,
"SHA-512 Cert. #1687": 1,
"SHA-512 Cert. #2083": 1,
"SHA-512 Cert. #2085": 1,
"SHA-512 Cert. #2724": 1,
"SHA-512 Cert. #2726": 1,
"SHA-512 Cert. #744": 2,
"SHA-512 Cert. #745": 2,
"SHA-512 Cert. #746": 2,
"SHA-512 Cert. #747": 2
}
},
"fips_security_level": {
"Level": {
"Level 1": 1,
"level 1": 3
}
},
"hash_function": {
"MD": {
"MD4": {
"MD4": 2
},
"MD5": {
"MD5": 2
}
},
"RIPEMD": {
"RIPEMD": 2
},
"SHA": {
"SHA1": {
"SHA-1": 10
},
"SHA2": {
"SHA-224": 9,
"SHA-256": 18,
"SHA-384": 18,
"SHA-512": 14
}
}
},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {
"PRNG": {
"DRBG": 6
},
"RNG": {
"RNG": 5
}
},
"side_channel_analysis": {},
"standard_id": {
"FIPS": {
"FIPS 140-2": 43,
"FIPS 180-4": 1,
"FIPS 186-4": 1,
"FIPS 197": 1,
"FIPS 198": 1,
"FIPS180-4": 1,
"FIPS186-4": 1,
"FIPS197": 1,
"FIPS198-1": 1
},
"NIST": {
"SP 800-38A": 1,
"SP 800-38C": 1,
"SP 800-38D": 1,
"SP 800-38E": 1,
"SP 800-67": 1,
"SP 800-90A": 6
},
"PKCS": {
"PKCS #1": 1,
"PKCS#1": 2
},
"RFC": {
"RFC 6071": 1,
"RFC 7296": 1,
"RFC4106": 5
}
},
"symmetric_crypto": {
"AES_competition": {
"AES": {
"AES": 28,
"AES-": 1,
"AES-192": 2
},
"CAST": {
"CAST5": 2
},
"Serpent": {
"Serpent": 3
},
"Twofish": {
"Twofish": 3
}
},
"DES": {
"3DES": {
"TDEA": 1,
"TDES": 2,
"Triple-DES": 7
},
"DES": {
"DES": 4
}
},
"constructions": {
"MAC": {
"CMAC": 8,
"HMAC": 13,
"HMAC-SHA-224": 1,
"HMAC-SHA-256": 5,
"HMAC-SHA-512": 1
}
},
"djb": {
"Salsa": {
"Salsa20": 2
}
},
"miscellaneous": {
"Blowfish": {
"Blowfish": 2
},
"SEED": {
"SEED": 2
}
}
},
"tee_name": {},
"tls_cipher_suite": {},
"vendor": {},
"vulnerability": {}
},
"policy_metadata": {
"/Author": "Traci Porter",
"/CreationDate": "D:20151216181752-06\u002700\u0027",
"/Creator": "Writer",
"/Keywords": "FIPS 140-2",
"/Producer": "LibreOffice 4.4",
"/Title": "FIPS 140-2 Non-Proprietary Security Policy",
"pdf_file_size_bytes": 228692,
"pdf_hyperlinks": {
"_type": "Set",
"elements": [
"http://csrc.nist.gov/groups/STM/cmvp/",
"http://www.suse.com/",
"http://csrc.nist.gov/",
"https://github.com/mkerrisk/man-pages"
]
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 26
}
},
"state": {
"_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
"module_download_ok": true,
"module_extract_ok": true,
"policy_convert_ok": true,
"policy_download_ok": true,
"policy_extract_ok": true,
"policy_json_hash": null,
"policy_pdf_hash": "843bc89a5ce73881501575f0307f9ab7c9644f1d3b360b2f23750f7ae8143092",
"policy_txt_hash": "d5e8fd67b70f63cf50057ac2b55a996bf98cfdfef6ffac5390bb329100018566"
},
"web_data": {
"_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
"caveat": "When operated in FIPS mode with module SUSE Linux Enterprise Server 12 - OpenSSL Module v2.0 validated to FIPS 140-2 under Cert. #2435 operating in FIPS mode and with module SUSE Linux Enterprise Server 12 - StrongSwan Cryptographic Module version 1.0 validated to FIPS 140-2 under Cert. #2484 operating in FIPS mode",
"certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/FIPS140ConsolidatedCertJan2016.pdf",
"date_sunset": null,
"description": "SUSE Kernel Crypto API module provides cryptographic services to the Linux operating system kernel.",
"embodiment": "Multi-Chip Stand Alone",
"exceptions": [
"Physical Security: N/A",
"Mitigation of Other Attacks: N/A"
],
"fw_versions": null,
"historical_reason": "Moved to historical list due to sunsetting",
"hw_versions": null,
"level": 1,
"mentioned_certs": {
"2435": 1,
"2484": 1
},
"module_name": "SUSE Linux Enterprise Server 12 - Kernel Crypto API Cryptographic Module",
"module_type": "Software",
"revoked_link": null,
"revoked_reason": null,
"standard": "FIPS 140-2",
"status": "historical",
"sw_versions": "1.0",
"tested_conf": [
"SUSE Linux Enterprise Server 12 operating on HP ProLiant DL320e Generation 8 with PAA",
"SUSE Linux Enterprise Server 12 operating on HP ProLiant DL320e Generation 8 without PAA (single-user mode)"
],
"validation_history": [
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2016-01-29",
"lab": "atsec information security corporation",
"validation_type": "Initial"
}
],
"vendor": "SUSE, LLC",
"vendor_url": "http://www.suse.com"
}
}