HP TippingPoint Crypto Core NSS

Certificate details

Certificate ID #2394
Status historical
Historical reason Moved to historical list in accordance with SP800-131A Revision 1 Transition (AES/TDES key wrapping)
Validation dates 15.06.2015
Standard FIPS 140-2
Security level 1
Type Software
Embodiment Multi-Chip Stand Alone
Caveat When operated in FIPS mode and when obtained, installed, and initialized as specified in Section 5 of the provided Security Policy. For Red Hat Linux 6.2, Section 5 also specifies the precise RPM file containing this module. The integrity of the RPM is automatically verified during the installation and the Crypto officer shall not install the RPM file if the RPM tool indicates an integrity error. For CentOS 5.6 the module is compiled from source available from Mozilla. Any deviation from the specified verification, installation and initialization procedures will result in a non FIPS 140-2 compliant module. The module generates cryptographic keys whose strengths are modified by available entropy
Exceptions
  • Physical Security: N/A
  • Design Assurance: Level 2
Description The HP TippingPoint Crypto Core NSS is a software library which provides FIPS 140-2 approved cryptographic algorithms and services for HP TippingPoint security products.
Tested configurations
  • CentOS 5.6 64-bit running on an Intel Xeon E5-2620v3
  • CentOS 5.6 64-bit running on an Intel Xeon E5-2690v3 (single-user mode)
  • Red Hat Enterprise Linux v6.2 32-bit running on an Intel Core i7 system
  • Red Hat Enterprise Linux v6.2 64-bit running on an Intel Core i7 system with PAA
  • Red Hat Enterprise Linux v6.2 64-bit running on an Intel Core i7 system without PAA
Vendor Hewlett-Packard TippingPoint http://www.TippingPoint.com
Lab Leidos Accredited Testing & Evaluation (AT&E) Lab
Algorithms
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Extracted keywords

Symmetric Algorithms
AES, RC2, RC4, DES, SEED, HMAC
Asymmetric Algorithms
ECC, DSA
Hash functions
SHA1, SHA256, SHA512, MD5
Schemes
MAC
Protocols
TLS
Randomness
DRBG
Libraries
NSS
Block cipher modes
ECB, CBC

Security level
Level 1
Side-channel analysis
Timing attacks, Timing attack, timing attacks, Timing Attacks

Cross-references

Outgoing
  • 1837 - historical - NSS Cryptographic Module

Automated analysis

Automated inference - use with caution

All attributes shown in this section (e.g., links between certificates, products, vendors, and known CVEs) are generated by automated heuristics and have not been reviewed by humans. These methods can produce false positives or false negatives and should not be treated as definitive without independent verification. This applies equally to the Cross-references section below. If you want to know more about how this data is computed and how reliable it is, see our documentation on automated analysis. If you believe any information here is inaccurate or harmful, please submit feedback.

No automatically derived data are available in this section.

Cross-references

Loading...

Processing updates

Feed
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 2394,
  "dgst": "456d12e33d0edb0e",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "HMAC#1145",
        "#1675",
        "DSA#602",
        "DRBG#165",
        "DRBG#743",
        "#1872",
        "AES#3285",
        "HMAC#2082",
        "#1908",
        "#3285",
        "#1240",
        "#2082",
        "DSA#942",
        "SHS#2723",
        "#602",
        "#979",
        "#1682",
        "AES#1908",
        "Triple-DES#1240",
        "RSA#979",
        "#942",
        "#743",
        "RSA#1682",
        "#2723",
        "SHS#1675",
        "Triple-DES#1872",
        "#165",
        "#1145"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "-"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": {
        "_type": "Set",
        "elements": [
          "1837"
        ]
      },
      "indirectly_referenced_by": null,
      "indirectly_referencing": {
        "_type": "Set",
        "elements": [
          "1837"
        ]
      }
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": [
        "1837"
      ]
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "br1_deviations": 44,
    "br1_tables": null,
    "is_br1_format": false,
    "keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 1
          }
        },
        "FF": {
          "DSA": {
            "DSA": 12
          }
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 2
        },
        "ECB": {
          "ECB": 2
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {
        "NSS": {
          "NSS": 103
        }
      },
      "crypto_protocol": {
        "TLS": {
          "TLS": {
            "TLS": 11
          }
        }
      },
      "crypto_scheme": {
        "MAC": {
          "MAC": 1
        }
      },
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "# 11": 1,
          "#1": 2,
          "#11": 16,
          "#12": 1,
          "#1240": 1,
          "#1837": 1,
          "#1872": 1,
          "#1908": 1,
          "#3285": 1,
          "#5": 1
        }
      },
      "fips_certlike": {
        "Certlike": {
          "AES 1908": 1,
          "DES 1240": 1,
          "DRBG 165": 1,
          "DSA 602": 1,
          "HMAC - SHA1": 1,
          "HMAC - SHA256": 1,
          "HMAC - SHA348": 1,
          "HMAC - SHA512": 1,
          "HMAC 1145": 2,
          "PKCS #1": 4,
          "PKCS #11": 32,
          "RSA 979": 1,
          "SHA - 1": 2,
          "SHA - 256": 4,
          "SHA - 384": 2,
          "SHA - 512": 2,
          "SHA -1": 2,
          "SHA -1 KAT, 18": 1,
          "SHA -256": 4,
          "SHA -384": 2,
          "SHA -386": 1,
          "SHA -512": 3,
          "SHA1": 1,
          "SHA256": 1,
          "SHA348": 1,
          "SHA512": 1,
          "SHS 1675": 1
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 1": 3
        }
      },
      "hash_function": {
        "MD": {
          "MD5": {
            "MD5": 1
          }
        },
        "SHA": {
          "SHA1": {
            "SHA1": 1
          },
          "SHA2": {
            "SHA256": 1,
            "SHA512": 1
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 8
        }
      },
      "side_channel_analysis": {
        "SCA": {
          "Timing Attacks": 2,
          "Timing attack": 1,
          "Timing attacks": 1,
          "timing attacks": 3
        }
      },
      "standard_id": {
        "FIPS": {
          "FIPS 140": 11,
          "FIPS 180": 1,
          "FIPS 186": 1,
          "FIPS 197": 1,
          "FIPS 198": 1,
          "FIPS 46": 1,
          "FIPS PUB 140": 1
        },
        "PKCS": {
          "PKCS # 11": 1,
          "PKCS #1": 2,
          "PKCS #11": 16
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 11
          },
          "RC": {
            "RC2": 1,
            "RC4": 1
          }
        },
        "DES": {
          "DES": {
            "DES": 14
          }
        },
        "constructions": {
          "MAC": {
            "HMAC": 11
          }
        },
        "miscellaneous": {
          "SEED": {
            "SEED": 1
          }
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "module_algorithms": {
      "_type": "Set",
      "elements": [
        "HMAC#1145",
        "Triple-DES#1240",
        "SHS#2723",
        "RSA#979",
        "DSA#602",
        "DRBG#165",
        "DRBG#743",
        "SHS#1675",
        "AES#3285",
        "HMAC#2082",
        "RSA#1682",
        "Triple-DES#1872",
        "DSA#942",
        "AES#1908"
      ]
    },
    "policy_algorithms": {
      "_type": "Set",
      "elements": [
        "#1675",
        "#602",
        "#942",
        "#979",
        "#2723",
        "#743",
        "#1240",
        "#1872",
        "#1908",
        "#3285",
        "#1682",
        "#2082",
        "#165",
        "#1145"
      ]
    },
    "policy_metadata": {
      "/Author": "noltinge",
      "/CreationDate": "D:20150521141235-04\u002700\u0027",
      "/Creator": "PScript5.dll Version 5.2.2",
      "/ModDate": "D:20150521141235-04\u002700\u0027",
      "/Producer": "Acrobat Distiller 11.0 (Windows)",
      "/Title": "Microsoft Word - HP TippingPoint NSS 3.12.9.1 Security Policy.docx",
      "pdf_file_size_bytes": 387868,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 34
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.InternalState",
    "module": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "source_hash": null,
      "txt_hash": null
    },
    "policy": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": "70d79f32e118b1ea926f2ac29c88c0876d216f25be6e15043775a0407a767b3e",
      "source_hash": "f11296198b087cf720e58e8ada141003b9cc68d72114032b5f5129f110698117",
      "txt_hash": "9483b767e8959ce65bbb6ecc79ff051696e667e3de8f9199ae20bf84d31951fa"
    }
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "When operated in FIPS mode and when obtained, installed, and initialized as specified in Section 5 of the provided Security Policy. For Red Hat Linux 6.2, Section 5 also specifies the precise RPM file containing this module. The integrity of the RPM is automatically verified during the installation and the Crypto officer shall not install the RPM file if the RPM tool indicates an integrity error. For CentOS 5.6 the module is compiled from source available from Mozilla. Any deviation from the specified verification, installation and initialization procedures will result in a non FIPS 140-2 compliant module. The module generates cryptographic keys whose strengths are modified by available entropy",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/FIPS140ConsolidatedCertList0054.pdf",
    "date_sunset": null,
    "description": "The HP TippingPoint Crypto Core NSS is a software library which provides FIPS 140-2 approved cryptographic algorithms and services for HP TippingPoint security products.",
    "embodiment": "Multi-Chip Stand Alone",
    "exceptions": [
      "Physical Security: N/A",
      "Design Assurance: Level 2"
    ],
    "fw_versions": null,
    "historical_reason": "Moved to historical list in accordance with SP800-131A Revision 1 Transition (AES/TDES key wrapping)",
    "hw_versions": null,
    "level": 1,
    "mentioned_certs": {},
    "module_name": "HP TippingPoint Crypto Core NSS",
    "module_type": "Software",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "historical",
    "sw_versions": "3.12.9.1",
    "tested_conf": [
      "CentOS 5.6 64-bit running on an Intel Xeon E5-2620v3",
      "CentOS 5.6 64-bit running on an Intel Xeon E5-2690v3 (single-user mode)",
      "Red Hat Enterprise Linux v6.2 32-bit running on an Intel Core i7 system",
      "Red Hat Enterprise Linux v6.2 64-bit running on an Intel Core i7 system with PAA",
      "Red Hat Enterprise Linux v6.2 64-bit running on an Intel Core i7 system without PAA"
    ],
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2015-06-15",
        "lab": "Leidos Accredited Testing \u0026 Evaluation (AT\u0026E) Lab",
        "validation_type": "Initial"
      }
    ],
    "vendor": "Hewlett-Packard TippingPoint",
    "vendor_url": "http://www.TippingPoint.com"
  }
}