Security Builder FIPS Java Module

Certificate #2504

Webpage information

Status historical
Historical reason 186-2 transition
Validation dates 18.12.2015 , 22.01.2016
Standard FIPS 140-2
Security level 1
Type Software
Embodiment Multi-Chip Stand Alone
Caveat When operated in FIPS mode. The module generates cryptographic keys whose strengths are modified by available entropy
Exceptions
  • Physical Security: N/A
Description The Security Builder FIPS Java Module is a standards-based cryptographic toolkit written in Java. It supports optimized Elliptic Curve Cryptography and provides application developers with sophisticated tools to flexibly integrate encryption, digital signatures and other security mechanisms into Java-based applications. The Security Builder FIPS Java Module is intended for use by developers who want government level security and can also be used in conjunction with other Certicom developer toolkits including Security Builder PKI and Security Builder SSL.
Tested configurations
  • CentOS 7.0 with Java JRE 1.8.0 running on a Dell PowerEdge 2950 (single-user mode) [3]
  • Red Hat Linux AS 5.5 32-bit [1, 2]
  • Red Hat Linux AS 5.5 64-bit [1, 2]
  • Solaris 10 64-bit [1, 2]
  • Sun Java Runtime Environments (JRE) 1.5.0 and 1.6.0 running on Solaris 10 32-bit [1, 2]
  • Windows 2008 Server 64-bit [1, 2]
  • Windows Vista 32-bit [1, 2]
  • Windows Vista 64-bit [1, 2]
Vendor Certicom Corp.
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Symmetric Algorithms
AES, DES, Triple-DES, HMAC, HMAC-SHA-224, HMAC-SHA-256, HMAC-SHA-384, HMAC-SHA-512, CMAC
Asymmetric Algorithms
ECDH, ECDSA, ECIES, ECC, Diffie-Hellman, DSA
Hash functions
SHA-1, SHA-224, SHA-256, SHA-384, SHA-512, MD4, MD5
Schemes
Key Agreement
Protocols
SSL
Randomness
DUAL_EC DRBG, DRBG, RNG
Elliptic Curves
P-224, P-256, P-384, P-521, P-192, K-233, K-283, K-409, K-571, B-233, B-283, B-409, B-571, K-163, B-163, secp160r1, sect239k1
Block cipher modes
ECB, CBC, CTR, GCM, CCM

Security level
Level 1
Side-channel analysis
Timing Attack, Timing Attacks, Bleichenbacher attack

Standards
FIPS 140-2, FIPS PUB 140-2, FIPS 197, FIPS 180-4, FIPS 198-1, FIPS 186-4, FIPS 186-2, NIST SP 800-131A, NIST SP 800-90, SP 800-67, NIST SP 800-56A, NIST SP 800-56B, NIST SP 800-90A, PKCS #1, RFC 2268, RFC 1321, RFC 1115, RFC 2104

File metadata

Title Microsoft Word - SB_GSE_J_2_8_8_Security_Policy.doc
Creation date D:20160118204535Z00'00'
Modification date D:20160118204535Z00'00'
Pages 27
Creator Word
Producer Mac OS X 10.10.5 Quartz PDFContext

Heuristics

No heuristics are available for this certificate.

References

No references are available for this certificate.

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 2504,
  "dgst": "425d61997bf9249a",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "KAS#62",
        "AES#1411",
        "KAS#8",
        "Triple-DES#1954",
        "HMAC#2210",
        "SHS#1281",
        "ECDSA#702",
        "AES#3465",
        "DSA#978",
        "ECDSA#179",
        "DRBG#852",
        "SHS#2860",
        "Triple-DES#964",
        "HMAC#832",
        "DSA#455",
        "RSA#687",
        "KAS#61",
        "DRBG#52",
        "RSA#1776"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "-"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 1
          },
          "ECDH": {
            "ECDH": 1
          },
          "ECDSA": {
            "ECDSA": 9
          },
          "ECIES": {
            "ECIES": 3
          }
        },
        "FF": {
          "DH": {
            "Diffie-Hellman": 18
          },
          "DSA": {
            "DSA": 9
          }
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 6
        },
        "CCM": {
          "CCM": 3
        },
        "CTR": {
          "CTR": 2
        },
        "ECB": {
          "ECB": 6
        },
        "GCM": {
          "GCM": 5
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "TLS": {
          "SSL": {
            "SSL": 1
          }
        }
      },
      "crypto_scheme": {
        "KA": {
          "Key Agreement": 2
        }
      },
      "device_model": {},
      "ecc_curve": {
        "NIST": {
          "B-163": 1,
          "B-233": 1,
          "B-283": 1,
          "B-409": 1,
          "B-571": 1,
          "K-163": 1,
          "K-233": 1,
          "K-283": 1,
          "K-409": 1,
          "K-571": 1,
          "P-192": 2,
          "P-224": 2,
          "P-256": 2,
          "P-384": 2,
          "P-521": 2,
          "secp160r1": 1,
          "sect239k1": 1
        }
      },
      "eval_facility": {
        "EWA": {
          "EWA": 1
        }
      },
      "fips_cert_id": {
        "Cert": {
          "#1": 7,
          "#1281": 5,
          "#1411": 1,
          "#179": 1,
          "#455": 1,
          "#52": 1,
          "#687": 2,
          "#8": 3,
          "#832": 5,
          "#964": 1
        }
      },
      "fips_certlike": {
        "Certlike": {
          "#1776 RSA": 1,
          "#702 RSA": 1,
          "DSA 11": 1,
          "Diffie-Hellman 2": 1,
          "Diffie-Hellman 3": 1,
          "HMAC-SHA-1": 4,
          "HMAC-SHA-224": 4,
          "HMAC-SHA-256": 2,
          "HMAC-SHA-384": 4,
          "HMAC-SHA-512": 4,
          "HMAC-SHA256": 2,
          "HMACSHA-1": 1,
          "PKCS #1": 10,
          "RSA 2": 1,
          "RSA PKCS #1": 4,
          "SHA-1": 3,
          "SHA-224": 2,
          "SHA-256": 2,
          "SHA-384": 2,
          "SHA-512": 2
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 1": 4
        }
      },
      "hash_function": {
        "MD": {
          "MD4": {
            "MD4": 1
          },
          "MD5": {
            "MD5": 2
          }
        },
        "SHA": {
          "SHA1": {
            "SHA-1": 3
          },
          "SHA2": {
            "SHA-224": 2,
            "SHA-256": 2,
            "SHA-384": 2,
            "SHA-512": 2
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "DUAL_EC": {
          "DUAL_EC DRBG": 1
        },
        "PRNG": {
          "DRBG": 11
        },
        "RNG": {
          "RNG": 7
        }
      },
      "side_channel_analysis": {
        "SCA": {
          "Timing Attack": 1,
          "Timing Attacks": 1
        },
        "other": {
          "Bleichenbacher attack": 1
        }
      },
      "standard_id": {
        "FIPS": {
          "FIPS 140-2": 12,
          "FIPS 180-4": 5,
          "FIPS 186-2": 1,
          "FIPS 186-4": 2,
          "FIPS 197": 1,
          "FIPS 198-1": 5,
          "FIPS PUB 140-2": 6
        },
        "NIST": {
          "NIST SP 800-131A": 2,
          "NIST SP 800-56A": 4,
          "NIST SP 800-56B": 2,
          "NIST SP 800-90": 3,
          "NIST SP 800-90A": 1,
          "SP 800-67": 1
        },
        "PKCS": {
          "PKCS #1": 7
        },
        "RFC": {
          "RFC 1115": 1,
          "RFC 1321": 1,
          "RFC 2104": 1,
          "RFC 2268": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 8
          }
        },
        "DES": {
          "3DES": {
            "Triple-DES": 5
          },
          "DES": {
            "DES": 7
          }
        },
        "constructions": {
          "MAC": {
            "CMAC": 3,
            "HMAC": 3,
            "HMAC-SHA-224": 2,
            "HMAC-SHA-256": 1,
            "HMAC-SHA-384": 2,
            "HMAC-SHA-512": 2
          }
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "policy_metadata": {
      "/AAPL:Keywords": "[]",
      "/CreationDate": "D:20160118204535Z00\u002700\u0027",
      "/Creator": "Word",
      "/Keywords": "",
      "/ModDate": "D:20160118204535Z00\u002700\u0027",
      "/Producer": "Mac OS X 10.10.5 Quartz PDFContext",
      "/Title": "Microsoft Word - SB_GSE_J_2_8_8_Security_Policy.doc",
      "pdf_file_size_bytes": 396215,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 27
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
    "module_download_ok": true,
    "module_extract_ok": true,
    "policy_convert_ok": true,
    "policy_download_ok": true,
    "policy_extract_ok": true,
    "policy_json_hash": null,
    "policy_pdf_hash": "7c24956f70e1290b3e36d0c866249f2b9b57e3bf42096b7387e6b9654d62908a",
    "policy_txt_hash": "701c5bda86cfd24a26e4684013e333aa85a5d05c1a2399798371f3d2c565cd8a"
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "When operated in FIPS mode. The module generates cryptographic keys whose strengths are modified by available entropy",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/FIPS140ConsolidatedCertDec2015.pdf",
    "date_sunset": null,
    "description": "The Security Builder FIPS Java Module is a standards-based cryptographic toolkit written in Java. It supports optimized Elliptic Curve Cryptography and provides application developers with sophisticated tools to flexibly integrate encryption, digital signatures and other security mechanisms into Java-based applications. The Security Builder FIPS Java Module is intended for use by developers who want government level security and can also be used in conjunction with other Certicom developer toolkits including Security Builder PKI and Security Builder SSL.",
    "embodiment": "Multi-Chip Stand Alone",
    "exceptions": [
      "Physical Security: N/A"
    ],
    "fw_versions": null,
    "historical_reason": "186-2 transition",
    "hw_versions": null,
    "level": 1,
    "mentioned_certs": {},
    "module_name": "Security Builder FIPS Java Module",
    "module_type": "Software",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "historical",
    "sw_versions": "2.8 [1], 2.8.7 [2], 2.8.8 [3]",
    "tested_conf": [
      "CentOS 7.0 with Java JRE 1.8.0 running on a Dell PowerEdge 2950 (single-user mode) [3]",
      "Red Hat Linux AS \n5.5 32-bit [1, 2]",
      "Red Hat Linux AS 5.5 64-bit [1, 2]",
      "Solaris 10 64-bit [1, 2]",
      "Sun Java Runtime Environments (JRE) 1.5.0 and 1.6.0 running on Solaris 10 32-bit [1, 2]",
      "Windows 2008 \nServer 64-bit [1, 2]",
      "Windows Vista 32-bit [1, 2]",
      "Windows Vista 64-bit [1, 2]"
    ],
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2015-12-18",
        "lab": "EWA - Canada",
        "validation_type": "Initial"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2016-01-22",
        "lab": "EWA - Canada",
        "validation_type": "Update"
      }
    ],
    "vendor": "Certicom Corp.",
    "vendor_url": "http://www.certicom.com"
  }
}