{"_type": "sec_certs.sample.fips.FIPSCertificate", "dgst": "5050ad1713516785", "cert_id": 4981, "web_data": {"_type": "sec_certs.sample.fips.FIPSCertificate.WebData", "module_name": "Covidence FIPS Provider for OpenSSL 3", "validation_history": [{"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry", "date": "2025-03-03", "validation_type": "Initial", "lab": "Acumen Security"}, {"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry", "date": "2025-07-09", "validation_type": "Update", "lab": "Acumen Security"}], "vendor_url": "http://www.covidence.com", "vendor": "Covidence A/S", "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/March 2025_010425_0326.pdf", "module_type": "Software", "standard": "FIPS 140-3", "status": "active", "level": 1, "caveat": "No assurance of the minimum strength of generated SSPs (e.g., keys).", "exceptions": ["Physical security: N/A", "Non-invasive security: N/A", "Life-cycle assurance: Level 3"], "embodiment": "Multi-Chip Stand Alone", "description": "The Covidence FIPS Provider for OpenSSL 3 Module is a software library providing a C-language application program interface (API) for use by applications that require cryptographic functionality.", "tested_conf": null, "hw_versions": null, "fw_versions": null, "sw_versions": null, "mentioned_certs": {}, "historical_reason": null, "date_sunset": "2029-07-10", "revoked_reason": null, "revoked_link": null}, "pdf_data": {"_type": "sec_certs.sample.fips.FIPSCertificate.PdfData", "keywords": {"fips_cert_id": {}, "fips_security_level": {"Level": {"Level 1": 2}}, "fips_certlike": {"Certlike": {"HMAC - SHA2": 22, "HMAC - SHA - 1": 3, "HMAC - SHA3": 12, "HMAC -SHA2": 1, "SHA2 - 256": 32, "SHA - 1": 16, "SHA2 - 224": 17, "SHA2 - 384": 20, "SHA2 - 512": 24, "SHA2": 32, "SHA3 - 224": 7, "SHA3 - 256": 10, "SHA3 - 384": 6, "SHA3 - 512": 8, "SHA -3": 3, "SHA3 -256": 2, "SHA3 -512": 2, "SHA -1": 1, "SHA2 -224": 1, "SHA2 -256": 1, "SHA2 -384": 1, "SHA2 -512": 1, "SHA3": 1, "SHA3 -224": 1, "SHA3 -384": 1, "PKCS 1": 4, "AES - 128": 6, "AES - 192": 5, "AES - 256": 5, "AES -128": 1, "AES -192": 1, "AES -256": 1, "AES - GCM 256": 2}}, "vendor": {"NXP": {"NXP": 3}}, "eval_facility": {}, "symmetric_crypto": {"AES_competition": {"AES": {"AES": 92}, "CAST": {"CAST": 73}}, "constructions": {"MAC": {"HMAC": 59, "KMAC": 13, "CMAC": 11}}}, "asymmetric_crypto": {"ECC": {"ECDSA": {"ECDSA": 23}, "EdDSA": {"EdDSA": 4}, "ECC": {"ECC": 15}}, "FF": {"DH": {"DHE": 2}, "DSA": {"DSA": 23}}}, "pq_crypto": {}, "hash_function": {"SHA": {"SHA2": {"SHA2": 135}, "SHA3": {"SHA3": 39}}, "SHAKE": {"SHAKE128": 1, "SHAKE256": 1}, "PBKDF": {"PBKDF": 10}}, "crypto_scheme": {"MAC": {"MAC": 16}, "KA": {"Key agreement": 16, "Key Agreement": 1}, "AEAD": {"AEAD": 1}}, "crypto_protocol": {"SSH": {"SSH": 4, "SSHv2": 2}, "TLS": {"TLS": {"TLS v1.2": 4, "TLS v1.3": 5, "TLS 1.3": 1, "TLS": 3, "TLS 1.2": 1}}}, "randomness": {"PRNG": {"DRBG": 37}, "RNG": {"RBG": 3}}, "cipher_mode": {"ECB": {"ECB": 7}, "CBC": {"CBC": 12}, "CTR": {"CTR": 6}, "OFB": {"OFB": 3}, "GCM": {"GCM": 10}, "CCM": {"CCM": 4}, "XTS": {"XTS": 7}}, "ecc_curve": {}, "crypto_engine": {}, "tls_cipher_suite": {}, "crypto_library": {"OpenSSL": {"OpenSSL": 50}}, "vulnerability": {}, "side_channel_analysis": {"SCA": {"timing attacks": 2}}, "device_model": {}, "tee_name": {"AMD": {"PSP": 12}, "IBM": {"SSC": 18}}, "os_name": {}, "cplc_data": {}, "ic_data_group": {}, "standard_id": {"FIPS": {"FIPS 140": 60, "FIPS186": 46, "FIPS 186": 19, "FIPS 198": 11, "FIPS 180": 7, "FIPS 202": 6}, "PKCS": {"PKCS 1": 2}, "RFC": {"RFC7627": 4, "RFC 5288": 1, "RFC 5647": 1, "RFC 8446": 1, "RFC8446": 1}, "ISO": {"ISO/IEC 19790:2012": 3}}, "javacard_version": {}, "javacard_api_const": {"curves": {"ED25519": 4, "ED448": 4}}, "javacard_packages": {}, "certification_process": {}}, "policy_metadata": {"pdf_file_size_bytes": 722034, "pdf_is_encrypted": false, "pdf_number_of_pages": 39, "/Author": "Rachel Shelby", "/CreationDate": "D:20250318114128-07'00'", "/Creator": "PScript5.dll Version 5.2.2", "/ModDate": "D:20250318114128-07'00'", "/Producer": "Acrobat Distiller 25.0 (Windows)", "/Title": "Microsoft Word - Covidence FIPS 140-3 Security Policy_Output_V1.1.docx", "pdf_hyperlinks": {"_type": "Set", "elements": []}}, "module_algorithms": {"_type": "Set", "elements": ["AES-CBC-CS1A6591", "KDA HKDF SP800-56Cr2A6591", "DSA SigGen (FIPS186-4)A6591", "SHA2-384A6591", "KAS-ECC-SSC Sp800-56Ar3A6591", "SHA3-512A6591", "SHA2-512/256A6591", "SHA2-512/224A6591", "AES-CBC-CS3A6591", "KDA TwoStep SP800-56Cr2A6591", "RSA KeyGen (FIPS186-4)A6591", "RSA Signature PrimitiveA6591", "Safe Primes Key VerificationA6591", "KDF ANS 9.63A6591", "AES-CFB1A6591", "KMAC-128A6591", "HMAC-SHA-1A6591", "HMAC-SHA3-512A6591", "EDDSA SigGenA6591", "HMAC-SHA2-512A6591", "KDF SP800-108A6591", "KTS-IFCA6591", "RSA SigGen (FIPS186-4)A6591", "TLS v1.3 KDFA6591", "ECDSA SigVer (FIPS186-4)A6591", "KAS-FFC-SSC Sp800-56Ar3A6591", "HMAC-SHA2-384A6591", "DSA PQGVer (FIPS186-4)A6591", "AES-CCMA6591", "SHA3-224A6591", "RSA SigVer (FIPS186-5)A6591", "KDA OneStep SP800-56Cr2A6591", "DSA PQGGen (FIPS186-4)A6591", "AES-GMACA6591", "EDDSA KeyVerA6591", "KDF SSHA6591", "HMAC-SHA2-512/256A6591", "Counter DRBGA6591", "AES-CFB128A6591", "HMAC-SHA2-512/224A6591", "RSA SigGen (FIPS186-5)A6591", "ECDSA KeyVer (FIPS186-4)A6591", "SHA-1A6591", "Hash DRBGA6591", "AES-OFBA6591", "AES-XTS Testing Revision 2.0A6591", "SHA3-384A6591", "SHA2-512A6591", "SHA2-224A6591", "HMAC-SHA3-224A6591", "DSA SigVer (FIPS186-4)A6591", "HMAC-SHA2-256A6591", "SHAKE-256A6591", "RSA SigVer (FIPS186-4)A6591", "SHA3-256A6591", "HMAC-SHA3-384A6591", "ECDSA KeyGen (FIPS186-4)A6591", "KAS-IFC-SSCA6591", "PBKDFA6591", "AES-CMACA6591", "KDF ANS 9.42A6591", "KAS-ECC CDH-Component SP800-56Ar3A6591", "AES-KWPA6591", "AES-CFB8A6591", "EDDSA KeyGenA6591", "KMAC-256A6591", "SHA2-256A6591", "HMAC DRBGA6591", "HMAC-SHA3-256A6591", "ECDSA SigGen (FIPS186-4)A6591", "Safe Primes Key GenerationA6591", "AES-ECBA6591", "AES-KWA6591", "AES-CTRA6591", "TLS v1.2 KDF RFC7627A6591", "DSA KeyGen (FIPS186-4)A6591", "SHAKE-128A6591", "AES-GCMA6591", "AES-CBC-CS2A6591", "AES-CBCA6591", "EDDSA SigVerA6591", "HMAC-SHA2-224A6591"]}, "policy_algorithms": {"_type": "Set", "elements": ["#A6591"]}, "is_br1_format": true, "br1_deviations": 0, "br1_tables": {"_type": "sec_certs.heuristics.br1.table_parsing.model.br1_tables.BR1Tables", "security_levels": {"section": 1, "subsection": 2, "found": true, "entries": [{"section": "1", "title": "General", "level": "1"}, {"section": "2", "title": "Cryptographic module specification", "level": "1"}, {"section": "3", "title": "Cryptographic module interfaces", "level": "1"}, {"section": "4", "title": "Roles, services, and authentication", "level": "1"}, {"section": "5", "title": "Software/Firmware security", "level": "1"}, {"section": "6", "title": "Operational environment", "level": "1"}, {"section": "7", "title": "Physical security", "level": "N/A"}, {"section": "8", "title": "Non - invasive security", "level": "N/A"}, {"section": "9", "title": "Sensitive security parameter management", "level": "1"}, {"section": "10", "title": "Self - tests", "level": "1"}, {"section": "11", "title": "Life - cycle assurance", "level": "3"}, {"section": "12", "title": "Mitigation of other attacks", "level": "1"}, {"section": "", "title": "Overall Level", "level": "1"}]}, "tested_module_id_hw": {"section": 2, "subsection": 2, "found": false, "entries": []}, "tested_module_id_sw_fw_hy": {"section": 2, "subsection": 2, "found": true, "entries": [{"packageFileName": "fips.so", "swFwVersion": "3.0.10 with KP_1.2", "features": "N/A", "integrityTest": "HMAC - SHA2 - 256 #A6591 over the complete module file image"}]}, "tested_module_id_hw_hy": {"section": 2, "subsection": 2, "found": false, "entries": []}, "tested_op_env_sw_fw_hy": {"section": 2, "subsection": 2, "found": true, "entries": [{"operatingSystem": "Linux 3.17", "hardwarePlatform": "Oculus NxtGen", "processors": "NXP i.MX53", "paa_pai": "No", "hypervisorHostOs": "", "version": "3.0.10 with KP_1.2"}, {"operatingSystem": "Linux 6.1.1", "hardwarePlatform": "Oculus 5", "processors": "NXP i.MX 8M Plus", "paa_pai": "No", "hypervisorHostOs": "", "version": "3.0.10 with KP_1.2"}, {"operatingSystem": "Linux 6.1.1", "hardwarePlatform": "Oculus 5", "processors": "NXP i.MX 8M Plus", "paa_pai": "Yes", "hypervisorHostOs": "", "version": "3.0.10 with KP_1.2"}]}, "vendor_affirmed_op_env_sw_fw_hy": {"section": 2, "subsection": 2, "found": false, "entries": []}, "modes_of_operation": {"section": 2, "subsection": 4, "found": true, "entries": [{"name": "Nominal", "description": "Approved mode of operation", "type": "Approved", "statusIndicator": ""}]}, "approved_algorithms": {"section": 2, "subsection": 5, "found": true, "entries": [{"algorithm": "AES - CBC", "cavpCertName": "A6591", "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256", "reference": "SP 800 - 38A"}, {"algorithm": "AES - CBC - CS1", "cavpCertName": "A6591", "properties": "Direction - decrypt, encrypt Key Length - 128, 192, 256", "reference": "SP 800 - 38A"}, {"algorithm": "AES - CBC - CS2", "cavpCertName": "A6591", "properties": "Direction - decrypt, encrypt Key Length - 128, 192, 256", "reference": "SP 800 - 38A"}, {"algorithm": "AES - CBC - CS3", "cavpCertName": "A6591", "properties": "Direction - decrypt, encrypt Key Length - 128, 192, 256", "reference": "SP 800 - 38A"}, {"algorithm": "AES - CCM", "cavpCertName": "A6591", "properties": "Key Length - 128, 192, 256", "reference": "SP 800 - 38C"}, {"algorithm": "AES - CFB1", "cavpCertName": "A6591", "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256", "reference": "SP 800 - 38A"}, {"algorithm": "AES - CFB128", "cavpCertName": "A6591", "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256", "reference": "SP 800 - 38A"}, {"algorithm": "AES - CFB8", "cavpCertName": "A6591", "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256", "reference": "SP 800 - 38A"}, {"algorithm": "AES - CTR", "cavpCertName": "A6591", "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256", "reference": "SP 800 - 38A"}, {"algorithm": "AES - ECB", "cavpCertName": "A6591", "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256", "reference": "SP 800 - 38A"}, {"algorithm": "AES - GCM", "cavpCertName": "A6591", "properties": "Direction - Decrypt, Encrypt IV Generation - External, Internal IV Generation Mode - 8.2.1 Key Length - 128, 192, 256", "reference": "SP 800 - 38D"}, {"algorithm": "AES - KW", "cavpCertName": "A6591", "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256", "reference": "SP 800 - 38F"}, {"algorithm": "AES - KWP", "cavpCertName": "A6591", "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256", "reference": "SP 800 - 38F"}, {"algorithm": "AES - OFB", "cavpCertName": "A6591", "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256", "reference": "SP 800 - 38A"}, {"algorithm": "AES - XTS Testing Revision 2.0", "cavpCertName": "A6591", "properties": "Direction - Decrypt, Encrypt Key Length - 128, 256", "reference": "SP 800 - 38E"}, {"algorithm": "KAS - ECC CDH - Component SP800 - 56Ar3 (CVL)", "cavpCertName": "A6591", "properties": "Curve - B - 233, B - 283, B - 409, B - 571, K - 233, K - 283, K - 409, K - 571, P - 224, P - 256, P - 384, P - 521", "reference": "SP 800 - 56A Rev. 3"}, {"algorithm": "KAS - ECC - SSC Sp800 - 56Ar3", "cavpCertName": "A6591", "properties": "Domain Parameter Generation Methods - B - 233, B - 283, B - 409, B - 571, K - 233, K - 283, K - 409, K - 571, P - 224, P - 256, P - 384, P - 521 Scheme - ephemeralUnified - KAS Role - initiator, responder", "reference": "SP 800 - 56A Rev. 3"}, {"algorithm": "KAS - FFC - SSC Sp800 - 56Ar3", "cavpCertName": "A6591", "properties": "Domain Parameter Generation Methods - FB, FC, ffdhe2048, ffdhe3072, ffdhe4096, ffdhe6144, ffdhe8192, modp - 2048, modp - 3072, modp - 4096, modp - 6144, modp - 8192 Scheme - dhEphem - KAS Role - initiator, responder", "reference": "SP 800 - 56A Rev. 3"}, {"algorithm": "KAS - IFC - SSC", "cavpCertName": "A6591", "properties": "Modulo - 2048, 3072, 4096, 6144, 8192 Key Generation Methods - rsakpg1 - basic, rsakpg1 - crt, rsakpg1 - prime - factor, rsakpg2 - basic, rsakpg2 - crt, rsakpg2 - prime - factor Scheme - KAS1 - KAS Role - initiator, responder Scheme - KAS2 - KAS Role - initiator, responder", "reference": "SP 800 - 56A Rev. 3"}, {"algorithm": "KDA HKDF SP800 - 56Cr2", "cavpCertName": "A6591", "properties": "Derived Key Length - 2048 Shared Secret Length - Shared Secret Length: 224 - 8192 Increment 8 HMAC Algorithm - SHA - 1, SHA2 - 224, SHA2 - 256, SHA2 - 384, SHA2 - 512, SHA2 - 512/224, SHA2 - 512/256, SHA3 - 224, SHA3 - 256, SHA3 - 384, SHA3 - 512", "reference": "SP 800 - 56C Rev. 2"}, {"algorithm": "KDA OneStep SP800 - 56Cr2", "cavpCertName": "A6591", "properties": "Derived Key Length - 2048 Shared Secret Length - Shared Secret Length: 224 - 8192 Increment 8", "reference": "SP 800 - 56C Rev. 2"}, {"algorithm": "KDA TwoStep SP800 - 56Cr2", "cavpCertName": "A6591", "properties": "MAC Salting Methods - default, random KDF Mode - feedback Derived Key Length - 2048 Shared Secret Length - Shared Secret Length: 224 - 8192 Increment 8", "reference": "SP 800 - 56C Rev. 2"}, {"algorithm": "KDF ANS 9.42 (CVL)", "cavpCertName": "A6591", "properties": "KDF Type - DER Hash Algorithm - SHA - 1, SHA2 - 224, SHA2 - 256, SHA2 - 384, SHA2 - 512, SHA2 - 512/224, SHA2 - 512/256, SHA3 - 224, SHA3 - 256, SHA3 - 384, SHA3 - 512 Key Data Length - Key Data Length: 8 - 4096 Increment 8", "reference": "SP 800 - 135 Rev. 1"}, {"algorithm": "KDF ANS 9.63 (CVL)", "cavpCertName": "A6591", "properties": "Hash Algorithm - SHA2 - 224, SHA2 - 256, SHA2 - 384, SHA2 - 512 Key Data Length - Key Data Length: 128, 4096", "reference": "SP 800 - 135 Rev. 1"}, {"algorithm": "KDF SP800 - 108", "cavpCertName": "A6591", "properties": "KDF Mode - Counter, Feedback Supported Lengths - Supported Lengths: 8, 72, 128, 776, 3456, 4096", "reference": "SP 800 - 108 Rev. 1"}, {"algorithm": "KDF SSH (CVL)", "cavpCertName": "A6591", "properties": "Cipher - AES - 128, AES - 192, AES - 256 Hash Algorithm - SHA - 1, SHA2 - 224, SHA2 - 256, SHA2 - 384, SHA2 - 512", "reference": "SP 800 - 135 Rev. 1"}, {"algorithm": "PBKDF", "cavpCertName": "A6591", "properties": "Iteration Count - Iteration Count: 1 - 10000 Increment 1 Password Length - Password Length: 8 - 128 Increment 8", "reference": "SP 800 - 132"}, {"algorithm": "TLS v1.2 KDF RFC7627 (CVL)", "cavpCertName": "A6591", "properties": "Hash Algorithm - SHA2 - 256, SHA2 - 384, SHA2 - 512", "reference": "SP 800 - 135 Rev. 1"}, {"algorithm": "TLS v1.3 KDF (CVL)", "cavpCertName": "A6591", "properties": "HMAC Algorithm - SHA2 - 256, SHA2 - 384 KDF Running Modes - DHE, PSK, PSK - DHE", "reference": "SP 800 - 135 Rev. 1"}, {"algorithm": "DSA KeyGen (FIPS186 - 4)", "cavpCertName": "A6591", "properties": "L - 2048, 3072 N - 224, 256", "reference": "FIPS 186 - 4"}, {"algorithm": "DSA PQGGen (FIPS186 - 4)", "cavpCertName": "A6591", "properties": "L - 2048, 3072 N - 224, 256 Hash Algorithm - SHA2 - 224, SHA2 - 256, SHA2 - 384, SHA2 - 512, SHA2 - 512/224, SHA2 - 512/256", "reference": "FIPS 186 - 4"}, {"algorithm": "DSA PQGVer (FIPS186 - 4)", "cavpCertName": "A6591", "properties": "L - 1024, 2048, 3072 N - 160, 224, 256 Hash Algorithm - SHA - 1, SHA2 - 224, SHA2 - 256, SHA2 - 384, SHA2 - 512, SHA2 - 512/224, SHA2 - 512/256", "reference": "FIPS 186 - 4"}, {"algorithm": "ECDSA KeyGen (FIPS186 - 4)", "cavpCertName": "A6591", "properties": "Curve - B - 233, B - 283, B - 409, B - 571, K - 233, K - 283, K - 409, K - 571, P - 224, P - 256, P - 384, P - 521 Secret Generation Mode - Testing Candidates", "reference": "FIPS 186 - 4"}, {"algorithm": "ECDSA KeyVer (FIPS186 - 4)", "cavpCertName": "A6591", "properties": "Curve - B - 163, B - 233, B - 283, B - 409, B - 571, K - 163, K - 233, K - 283, K - 409, K - 571, P - 192, P - 224, P - 256, P - 384, P - 521", "reference": "FIPS 186 - 4"}, {"algorithm": "EDDSA KeyGen", "cavpCertName": "A6591", "properties": "Curve - ED - 25519, ED - 448", "reference": "FIPS 186 - 5"}, {"algorithm": "EDDSA KeyVer", "cavpCertName": "A6591", "properties": "Curve - ED - 25519, ED - 448", "reference": "FIPS 186 - 5"}, {"algorithm": "Safe Primes Key Generation", "cavpCertName": "A6591", "properties": "Safe Prime Groups - ffdhe2048, ffdhe3072, ffdhe4096, ffdhe6144, ffdhe8192, modp - 2048, modp - 3072, modp - 4096, modp - 6144, modp - 8192", "reference": "SP 800 - 56A Rev. 3"}, {"algorithm": "Safe Primes Key Verification", "cavpCertName": "A6591", "properties": "Safe Prime Groups - ffdhe2048, ffdhe3072, ffdhe4096, ffdhe6144, ffdhe8192, modp - 2048, modp - 3072, modp - 4096, modp - 6144, modp - 8192", "reference": "SP 800 - 56A Rev. 3"}, {"algorithm": "RSA KeyGen (FIPS186 - 4)", "cavpCertName": "A6591", "properties": "Key Generation Mode - B.3.3 Modulo - 2048, 3072, 4096 Primality Tests - Table C.2 Private Key Format - Standard", "reference": "FIPS 186 - 4"}, {"algorithm": "KTS - IFC", "cavpCertName": "A6591", "properties": "Modulo - 2048, 3072, 4096, 6144 Key Generation Methods - rsakpg1 - basic, rsakpg1 - crt, rsakpg1 - prime - factor, rsakpg2 - basic, rsakpg2 - crt, rsakpg2 - prime - factor Scheme - KTS - OAEP - basic - KAS Role - initiator, responder Key Transport Method - Key Length - 1024", "reference": "SP 800 - 56B Rev. 2"}, {"algorithm": "AES - CMAC", "cavpCertName": "A6591", "properties": "Direction - Generation, Verification Key Length - 128, 192, 256", "reference": "SP 800 - 38B"}, {"algorithm": "AES - GMAC", "cavpCertName": "A6591", "properties": "Direction - Decrypt, Encrypt IV Generation - External, Internal IV Generation Mode - 8.2.1 Key Length - 128, 192, 256", "reference": "SP 800 - 38D"}, {"algorithm": "HMAC - SHA - 1", "cavpCertName": "A6591", "properties": "Key Length - Key Length: 112 - 2048 Increment 8", "reference": "FIPS 198 - 1"}, {"algorithm": "HMAC - SHA2 - 224", "cavpCertName": "A6591", "properties": "Key Length - Key Length: 112 - 2048 Increment 8", "reference": "FIPS 198 - 1"}, {"algorithm": "HMAC - SHA2 - 256", "cavpCertName": "A6591", "properties": "Key Length - Key Length: 112 - 2048 Increment 8", "reference": "FIPS 198 - 1"}, {"algorithm": "HMAC - SHA2 - 384", "cavpCertName": "A6591", "properties": "Key Length - Key Length: 112 - 2048 Increment 8", "reference": "FIPS 198 - 1"}, {"algorithm": "HMAC - SHA2 - 512", "cavpCertName": "A6591", "properties": "Key Length - Key Length: 112 - 2048 Increment 8", "reference": "FIPS 198 - 1"}, {"algorithm": "HMAC - SHA2 - 512/224", "cavpCertName": "A6591", "properties": "Key Length - Key Length: 112 - 2048 Increment 8", "reference": "FIPS 198 - 1"}, {"algorithm": "HMAC - SHA2 - 512/256", "cavpCertName": "A6591", "properties": "Key Length - Key Length: 112 - 2048 Increment 8", "reference": "FIPS 198 - 1"}, {"algorithm": "HMAC - SHA3 - 224", "cavpCertName": "A6591", "properties": "Key Length - Key Length: 112 - 2048 Increment 8", "reference": "FIPS 198 - 1"}, {"algorithm": "HMAC - SHA3 - 256", "cavpCertName": "A6591", "properties": "Key Length - Key Length: 112 - 2048 Increment 8", "reference": "FIPS 198 - 1"}, {"algorithm": "HMAC - SHA3 - 384", "cavpCertName": "A6591", "properties": "Key Length - Key Length: 112 - 2048 Increment 8", "reference": "FIPS 198 - 1"}, {"algorithm": "HMAC - SHA3 - 512", "cavpCertName": "A6591", "properties": "Key Length - Key Length: 112 - 2048 Increment 8", "reference": "FIPS 198 - 1"}, {"algorithm": "KMAC - 128", "cavpCertName": "A6591", "properties": "Message Length - Message Length: 0 - 65536 Increment 8 Key Data Length - Key Data Length: 128 - 1024 Increment 8", "reference": "SP 800 - 185"}, {"algorithm": "KMAC - 256", "cavpCertName": "A6591", "properties": "Message Length - Message Length: 0 - 65536 Increment 8 Key Data Length - Key Data Length: 128 - 1024 Increment 8", "reference": "SP 800 - 185"}, {"algorithm": "SHA - 1", "cavpCertName": "A6591", "properties": "Message Length - Message Length: 0 - 65528 Increment 8", "reference": "FIPS 180 - 4"}, {"algorithm": "SHA2 - 224", "cavpCertName": "A6591", "properties": "Message Length - Message Length: 0 - 65528 Increment 8", "reference": "FIPS 180 - 4"}, {"algorithm": "SHA2 - 256", "cavpCertName": "A6591", "properties": "Message Length - Message Length: 0 - 65528 Increment 8", "reference": "FIPS 180 - 4"}, {"algorithm": "SHA2 - 384", "cavpCertName": "A6591", "properties": "Message Length - Message Length: 0 - 65528 Increment 8", "reference": "FIPS 180 - 4"}, {"algorithm": "SHA2 - 512", "cavpCertName": "A6591", "properties": "Message Length - Message Length: 0 - 65528 Increment 8", "reference": "FIPS 180 - 4"}, {"algorithm": "SHA2 - 512/224", "cavpCertName": "A6591", "properties": "Message Length - Message Length: 0 - 65528 Increment 8", "reference": "FIPS 180 - 4"}, {"algorithm": "SHA2 - 512/256", "cavpCertName": "A6591", "properties": "Message Length - Message Length: 0 - 65528 Increment 8", "reference": "FIPS 180 - 4"}, {"algorithm": "SHA3 - 224", "cavpCertName": "A6591", "properties": "Message Length - Message Length: 0 - 65536 Increment 8", "reference": "FIPS 202"}, {"algorithm": "SHA3 - 256", "cavpCertName": "A6591", "properties": "Message Length - Message Length: 0 - 65536 Increment 8", "reference": "FIPS 202"}, {"algorithm": "SHA3 - 384", "cavpCertName": "A6591", "properties": "Message Length - Message Length: 0 - 65536 Increment 8", "reference": "FIPS 202"}, {"algorithm": "SHA3 - 512", "cavpCertName": "A6591", "properties": "Message Length - Message Length: 0 - 65536 Increment 8", "reference": "FIPS 202"}, {"algorithm": "SHAKE - 128", "cavpCertName": "A6591", "properties": "Output Length - Output Length: 16 - 65536 Increment 8", "reference": "FIPS 202"}, {"algorithm": "SHAKE - 256", "cavpCertName": "A6591", "properties": "Output Length - Output Length: 16 - 65536 Increment 8", "reference": "FIPS 202"}, {"algorithm": "Counter DRBG", "cavpCertName": "A6591", "properties": "Prediction Resistance - Yes Mode - AES - 128, AES - 192, AES - 256 Derivation Function Enabled - No, Yes", "reference": "SP 800 - 90A Rev. 1"}, {"algorithm": "Hash DRBG", "cavpCertName": "A6591", "properties": "Prediction Resistance - Yes Mode - SHA - 1, SHA2 - 224, SHA2 - 256, SHA2 - 384, SHA2 - 512, SHA2 - 512/224, SHA2 - 512/256", "reference": "SP 800 - 90A Rev. 1"}, {"algorithm": "HMAC DRBG", "cavpCertName": "A6591", "properties": "Prediction Resistance - Yes Mode - SHA - 1, SHA2 - 224, SHA2 - 256, SHA2 - 384, SHA2 - 512, SHA2 - 512/224, SHA2 - 512/256", "reference": "SP 800 - 90A Rev. 1"}, {"algorithm": "ECDSA SigGen (FIPS186 - 4)", "cavpCertName": "A6591", "properties": "Component - No Curve - B - 233, B - 283, B - 409, B - 571, K - 233, K - 283, K - 409, K - 571, P - 224, P - 256, P - 384, P - 521 Hash Algorithm - SHA2 - 224, SHA2 - 256, SHA2 - 384, SHA2 - 512, SHA2 - 512/224, SHA2 - 512/256", "reference": "FIPS 186 - 4"}, {"algorithm": "ECDSA SigVer (FIPS186 - 4)", "cavpCertName": "A6591", "properties": "Component - No Curve - B - 163, B - 233, B - 283, B - 409, B - 571, K - 163, K - 233, K - 283, K - 409, K - 571, P - 192, P - 224, P - 256, P - 384, P - 521 Hash Algorithm - SHA - 1, SHA2 - 224, SHA2 - 256, SHA2 - 384, SHA2 - 512, SHA2 - 512/224, SHA2 - 512/256", "reference": "FIPS 186 - 4"}, {"algorithm": "DSA SigGen (FIPS186 - 4)", "cavpCertName": "A6591", "properties": "L - 2048, 3072 N - 224, 256 Hash Algorithm - SHA2 - 224, SHA2 - 256, SHA2 - 384, SHA2 - 512, SHA2 - 512/224, SHA2 - 512/256", "reference": "FIPS 186 - 4"}, {"algorithm": "DSA SigVer (FIPS186 - 4)", "cavpCertName": "A6591", "properties": "L - 1024, 2048, 3072 N - 160, 224, 256 Hash Algorithm - SHA - 1, SHA2 - 224, SHA2 - 256, SHA2 - 384, SHA2 - 512, SHA2 - 512/224, SHA2 - 512/256", "reference": "FIPS 186 - 4"}, {"algorithm": "EDDSA SigGen", "cavpCertName": "A6591", "properties": "Curve - ED - 25519, ED - 448", "reference": "FIPS 186 - 5"}, {"algorithm": "EDDSA SigVer", "cavpCertName": "A6591", "properties": "Curve - ED - 25519, ED - 448", "reference": "FIPS 186 - 5"}, {"algorithm": "RSA SigGen (FIPS186 - 4)", "cavpCertName": "A6591", "properties": "Signature Type - ANSI X9.31, PKCS 1.5, PKCSPSS Modulo - 2048, 3072, 4096", "reference": "FIPS 186 - 4"}, {"algorithm": "RSA SigGen (FIPS186 - 5)", "cavpCertName": "A6591", "properties": "Modulo - 2048, 3072, 4096 Signature Type - pkcs1v1.5, pss", "reference": "FIPS 186 - 5"}, {"algorithm": "RSA Signature Primitive (CVL)", "cavpCertName": "A6591", "properties": "Private Key Format - crt", "reference": "FIPS 186 - 4"}, {"algorithm": "RSA SigVer (FIPS186 - 4)", "cavpCertName": "A6591", "properties": "Signature Type - ANSI X9.31, PKCS 1.5, PKCSPSS Modulo - 1024, 2048, 3072, 4096", "reference": "FIPS 186 - 4"}, {"algorithm": "RSA SigVer (FIPS186 - 5)", "cavpCertName": "A6591", "properties": "Modulo - 2048, 3072, 4096 Signature Type - pkcs1v1.5, pss", "reference": "FIPS 186 - 5"}]}, "vendor_affirmed_algos": {"section": 2, "subsection": 5, "found": true, "entries": [{"name": "CKG Section 4", "algoPropList": "", "implName": "Covidence FIPS Provider for OpenSSL 3", "reference": "NIST, SP 800 - 133 Rev. 2"}, {"name": "CKG Section 5", "algoPropList": "", "implName": "Covidence FIPS Provider for OpenSSL 3", "reference": "NIST, SP 800 - 133 Rev. 2"}, {"name": "CKG Section 6.2", "algoPropList": "", "implName": "Covidence FIPS Provider for OpenSSL 3", "reference": "NIST, SP 800 - 133 Rev. 2"}, {"name": "Hash DRBG with SHA3 - 256, SHA3 - 512", "algoPropList": "", "implName": "Covidence FIPS Provider for OpenSSL 3", "reference": "NIST, SP 800 - 90A Rev. 1"}, {"name": "HMAC DRBG with SHA3 - 256, SHA3 - 512", "algoPropList": "", "implName": "Covidence FIPS Provider for OpenSSL 3", "reference": "NIST, SP 800 - 90A Rev. 1"}]}, "non_approved_allowed_algos": {"section": 2, "subsection": 5, "found": false, "entries": []}, "non_approved_allowed_NSC": {"section": 2, "subsection": 5, "found": false, "entries": []}, "non_approved_not_allowed": {"section": 2, "subsection": 5, "found": false, "entries": []}, "ports_interfaces": {"section": 3, "subsection": 1, "found": true, "entries": [{"physicalPort": "N/A (API - input)", "logicalInterface": "Control Input Data Input", "data": "API input: stack frame including non - sensitive parameters."}, {"physicalPort": "N/A (API - output)", "logicalInterface": "Data Output Status Output", "data": "API output: output parameters and return value resulting from call execution."}]}, "authentication_methods": {"section": 4, "subsection": 1, "found": false, "entries": []}, "roles": {"section": 4, "subsection": 2, "found": true, "entries": [{"name": "CO", "type": "Role", "operatorType": "CO", "authMethodList": ""}]}, "approved_services": {"section": 4, "subsection": 3, "found": true, "entries": [{"name": "Cipher", "description": "Encrypt or decrypt data, including AEAD modes (CCM, GCM).", "indicator": "FIPS_OK", "inputs": "Encryption or decryption key; plaintext or ciphertext data; flags.", "outputs": "Status return. Plaintext or ciphertext data.", "secFunImpl": "Cipher (Unauth) Cipher (Auth)", "rolesSspAccess": "CO - SC_EDK_AES: W,E - SC_EDK_XTS: W,E"}, {"name": "Get capabilities", "description": "Reports information on the requested capabilities.", "indicator": "FIPS_OK", "inputs": "Provider context, capability, callback pointer and arguments.", "outputs": "Description of capabilities.", "secFunImpl": "", "rolesSspAccess": ""}, {"name": "Initialize", "description": "Module initialization, including instantiation of the opaque (managed within the module) Counter DRBG instance.", "indicator": "FIPS_OK", "inputs": "Core handle, dispatch in and out, provider context.", "outputs": "Initialization status (1 = pass, 0 = fail).", "secFunImpl": "Random MAC HMAC", "rolesSspAccess": "CO - DRBG_EI: W,E,Z - DRBG_Seed: G,E,Z - DRBG_Key: G,W,E - DRBG_V: G,W,E"}, {"name": "Key agreement", "description": "Perform key agreement primitives on behalf of the calling process (does not establish keys into the module).", "indicator": "FIPS_OK", "inputs": "Key structs (key agreement keys); flags.", "outputs": "Status return; key agreement shared secret.", "secFunImpl": "CKG Section 5 Key agreement", "rolesSspAccess": "CO - KAS_Private_ECC: W,E - KAS_Public_ECC: W,E - KAS_Private_FFC: W,E - KAS_Public_FFC: W,E - KAS_Private_IFC: W,E - KAS_Public_IFC: W,E - KAS_SS_ECC: G,R - KAS_SS_FFC: G,R - KAS_SS_IFC: G,R"}, {"name": "Key derivation", "description": "Derive keying material from a shared secret.", "indicator": "FIPS_OK", "inputs": "Key agreement shared secret; flags.", "outputs": "Status return; derived keying material.", "secFunImpl": "Key derivation CKG Section 6.2", "rolesSspAccess": "CO - KD_DKM_KDF: G,R - KD_PW_PBKDF: W,E - KD_DKM_PBKDF: G,R - KD_SK: W,E"}, {"name": "Key management", "description": "Generate asymmetric key pairs.", "indicator": "FIPS_OK", "inputs": "ECDSA, EdDSA: curve identifier. DSA, RSA: domain parameter targets.", "outputs": "Status return; general digital signature private and public keys.", "secFunImpl": "Key management ECC Key management Edwards Key management FFC Key management IFC CKG Section 4", "rolesSspAccess": "CO - DRBG_C: G,W,E - DRBG_Key: W,G,E - DRBG_V: W,G,E - GKP_Private_ECC: G,R - GKP_Public_ECC: G,R - GKP_Private_Edwards: G,R - GKP_Public_Edwards: G,R - GKP_Private_FFC: G,R - GKP_Public_FFC: G,R - GKP_Private_IFC: G,R - GKP_Public_IFC: G,R"}, {"name": "Key transport", "description": "Encapsulate or decapsulate key material on behalf of the calling process.", "indicator": "FIPS_OK", "inputs": "Key encapsulation/ decapsulation key or Key wrap/unwrap key.", "outputs": "Status return; key transport shared secret.", "secFunImpl": "CKG Section 5 Key transport KTS (Cipher w/ CMAC, GMAC, HMAC, KMAC) KTS (AES KW, KWP)", "rolesSspAccess": "CO - KTS_KDK_IFC: W,E - KTS_KEK_IFC: W,E - KTS_SS_IFC: G,R"}, {"name": "Message authentication", "description": "Generate or verify data integrity.", "indicator": "FIPS_OK", "inputs": "Keyed hash key.", "outputs": "Status return; MAC output value.", "secFunImpl": "MAC AES (CMAC, GMAC) MAC HMAC MAC KMAC (XOF)", "rolesSspAccess": "CO - KH_Key_AES - CMAC: W,E - KH_Key_AES - GMAC: W,E - KH_Key_HMAC: W,E - KH_Key_KMAC: W,E"}, {"name": "Message digest", "description": "Generate a message digest.", "indicator": "FIPS_OK", "inputs": "Message; flags.", "outputs": "Status return; Hash output value.", "secFunImpl": "Message Digest Message Digest (XOF SHAKE)", "rolesSspAccess": ""}, {"name": "Query", "description": "Report available crypto operations.", "indicator": "FIPS_OK", "inputs": "Provider context, operation ID.", "outputs": "Array of available operations.", "secFunImpl": "", "rolesSspAccess": ""}, {"name": "Random", "description": "Generate random bits using the DRBG.", "indicator": "FIPS_OK", "inputs": "DRBG struct (RBG State); DRBG_Seed.", "outputs": "Status return; Random value.", "secFunImpl": "Random CKG Section 4", "rolesSspAccess": "CO - DRBG_C: W,E - DRBG_EI: W,E,Z - DRBG_Seed: G,E,Z - DRBG_Key: W,E - DRBG_V: W,E"}, {"name": "Self - test", "description": "Perform the self - test sequence.", "indicator": "FIPS_OK", "inputs": "Provider context.", "outputs": "Status (1 = pass, 0 = fail).", "secFunImpl": "", "rolesSspAccess": ""}, {"name": "Show module name and versioning information", "description": "Return module name and versioning information.", "indicator": "FIPS_OK", "inputs": "Provider context, parameter types (array).", "outputs": "Parameter types (array) with: Name, Version.", "secFunImpl": "", "rolesSspAccess": ""}, {"name": "Show status", "description": "OpenSSL core metadata (Gettable parameters; Get parameters).", "indicator": "FIPS_OK", "inputs": "Provider context, parameter types (array).", "outputs": "Parameter types with: BuildInfo, Status, SecurityChecks; Status return.", "secFunImpl": "", "rolesSspAccess": ""}, {"name": "Signature", "description": "Generate or verify digital signatures. (SSPs are passed in by the calling process.)", "indicator": "FIPS_OK", "inputs": "Sign: signing key; message. Verify: signature value; flags; sizes.", "outputs": "Status return; Signature value.", "secFunImpl": "CKG Section 5 Signature DSA Signature ECDSA Signature EDDSA Signature RSA", "rolesSspAccess": "CO - DS_SGK_ECC: W,E - DS_SVK_ECC: W,E - DS_SGK_Edwards: W,E - DS_SVK_Edwards: W,E - DS_SGK_FFC: W,E - DS_SVK_FFC: W,E - DS_SGK_IFC: W,E - DS_SVK_IFC: W,E"}, {"name": "Teardown", "description": "Uninstantiate the module; zeroizes internal CTR DRBG state (DRBG_Key, DRBG_V).", "indicator": "FIPS_OK", "inputs": "Provider context.", "outputs": "None.", "secFunImpl": "", "rolesSspAccess": "CO - DRBG_Key: Z - DRBG_V: Z"}, {"name": "Zeroize", "description": "Zeroization of allocated key structures using openssl_cleanse.", "indicator": "FIPS_OK", "inputs": "Memory pointer.", "outputs": "Void.", "secFunImpl": "", "rolesSspAccess": "CO - DRBG_C: Z - DRBG_EI: Z - DRBG_Key: Z - DRBG_Seed: Z - DRBG_V: Z - DS_SGK_ECC: Z - DS_SGK_Edwards: Z - DS_SGK_FFC: Z - DS_SGK_IFC: Z - DS_SVK_ECC: Z - DS_SVK_Edwards: Z - DS_SVK_FFC: Z - DS_SVK_IFC: Z - GKP_Private_ECC: Z - GKP_Private_Edwards: - GKP_Private_FFC: Z"}, {"name": "", "description": "", "indicator": "", "inputs": "", "outputs": "", "secFunImpl": "", "rolesSspAccess": "- GKP_Private_IFC: Z - GKP_Public_ECC: Z - GKP_Public_Edwards: Z - GKP_Public_FFC: Z - GKP_Public_IFC: Z - KAS_Private_ECC: Z - KAS_Private_FFC: Z - GKP_Private_ECC: Z - KAS_Private_IFC: Z - KAS_Public_ECC: Z - KAS_Public_FFC: Z - KAS_Public_IFC: Z - KAS_SS_ECC: Z - KD_DKM_KDF: Z - KD_DKM_PBKDF: Z - KD_SK: Z - KH_Key_AES - CMAC: Z - KH_Key_AES - GMAC: Z - KH_Key_HMAC: Z - KH_Key_KMAC: Z - KTS_KDK_IFC: Z - KTS_KEK_IFC: Z - KTS_SS_IFC: Z - KAS_SS_ECC: Z - SC_EDK_AES: Z - SC_EDK_XTS: Z"}]}, "non_approved_services": {"section": 4, "subsection": 4, "found": false, "entries": []}, "mechanisms_actions": {"section": 7, "subsection": 1, "found": false, "entries": []}, "storage_areas": {"section": 9, "subsection": 1, "found": true, "entries": [{"name": "RAM", "description": "R: Random access memory", "persistance": "Dynamic"}]}, "ssp_io_methods": {"section": 9, "subsection": 2, "found": true, "entries": [{"name": "I", "source": "Calling process", "dest": "Call stack (API) input parameters", "format": "Plaintext", "distribution": "Manual", "entry": "Electronic", "sfiAlgo": ""}, {"name": "O", "source": "Call stack (API) output parameters", "dest": "Calling process", "format": "Plaintext", "distribution": "Manual", "entry": "Electronic", "sfiAlgo": ""}]}, "ssp_zeroization_methods": {"section": 9, "subsection": 3, "found": true, "entries": [{"method": "C", "description": "C (Cleanse): Caller invocation of openssl_cleanse.", "rationale": "Overwrites with zeros", "operatorId": "Caller invocation of openssl_cleanse"}, {"method": "T", "description": "T (Teardown): Module unload - invokes cleanse internally.", "rationale": "Overwrites with zeros", "operatorId": "Occurs when module is unloaded"}]}, "self_tests": {"section": 10, "subsection": 1, "found": false, "entries": []}, "cond_self_tests": {"section": 10, "subsection": 2, "found": true, "entries": [{"algorithmOrTest": "AES - ECB", "testProps": "128 - bit", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "Encrypt", "condition": "Performed on module load."}, {"algorithmOrTest": "AES - ECB", "testProps": "128 - bit", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "Decrypt", "condition": "Performed on module load."}, {"algorithmOrTest": "AES - GCM", "testProps": "256 - bit", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "Encrypt", "condition": "Performed on module load."}, {"algorithmOrTest": "AES - GCM", "testProps": "256 - bit", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "Decrypt", "condition": "Performed on module load."}, {"algorithmOrTest": "Counter DRBG", "testProps": "AES - 128 with derivation function", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "Instantiate, Generate, Reseed", "condition": "Performed on module load."}, {"algorithmOrTest": "DSA SigGen (FIPS186 - 4)", "testProps": "2048 - bit with SHA2 - 384", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "Sign", "condition": "Performed on module load."}, {"algorithmOrTest": "DSA SigVer (FIPS186 - 4)", "testProps": "2048 - bit with SHA2 - 384", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "Verify", "condition": "Performed on module load."}, {"algorithmOrTest": "ECDSA SigGen (FIPS186 - 4)", "testProps": "P - 224 with SHA2 - 512", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "Sign", "condition": "Performed on module load."}, {"algorithmOrTest": "ECDSA SigVer (FIPS186 - 4)", "testProps": "P - 224 with SHA2 - 512", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "Verify", "condition": "Performed on module load."}, {"algorithmOrTest": "EDDSA ED448 SigGen", "testProps": "Edwards448 SigGen with SHA2 - 256", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "Sign", "condition": "Performed on module load."}, {"algorithmOrTest": "EDDSA ED448 SigVer", "testProps": "Edwards448 SigVer with SHA2 - 256", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "Verify", "condition": "Performed on module load."}, {"algorithmOrTest": "EDDSA ED25519 SigGen", "testProps": "Edwards25519 SigGen with SHA2 - 512", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "Sign", "condition": "Performed on module load."}, {"algorithmOrTest": "EDDSA ED25519 SigVer", "testProps": "Edwards25519 SigVer with SHA2 - 512", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "Verify", "condition": "Performed on module load."}, {"algorithmOrTest": "Hash DRBG", "testProps": "SHA2 - 256", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "Instantiate, Generate, Reseed", "condition": "Performed on module load."}, {"algorithmOrTest": "HMAC DRBG", "testProps": "SHA - 1", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "Instantiate, Generate, Reseed", "condition": "Performed on module load."}, {"algorithmOrTest": "HMAC - SHA2 - 256 SHA2 - 256 with a 256 - bit key", "testProps": "HMAC - SHA2 - 256 SHA2 - 256 with a 256 - bit key", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "Generate", "condition": "Performed on module load."}, {"algorithmOrTest": "KAS - ECC - SSC Sp800 - 56Ar3", "testProps": "P - 256", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "Ephemeral Unified Shared Secret (Z) Computation", "condition": "Performed on module load."}, {"algorithmOrTest": "KAS - FFC - SSC Sp800 - 56Ar3", "testProps": "L=2048/N=256", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "dhEphem Shared Secret (Z) Computation", "condition": "Performed on module load."}, {"algorithmOrTest": "KAS - IFC - SSC", "testProps": "k=2048", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "SP 800 - 56B Rev. 2 Section 8.2.2 RSA Primitive Computation", "condition": "Performed on module load."}, {"algorithmOrTest": "KAS - KDF OneStep SP800 - 56Cr2", "testProps": "SHA2 - 224", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "SP 800 - 56C Rev. 2 Section 4 OneStep KDF (AKA OpenSSL single - step or SS - KDF)", "condition": "Performed on module load."}, {"algorithmOrTest": "KAS - KDF TwoStep SP800 - 56Cr2", "testProps": "SHA2 - 256", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "SP 800 - 56C Rev. 2 Section 5 TwoStep KDF (HKDF variant)", "condition": "Performed on module load."}, {"algorithmOrTest": "KDF ANS 9.42", "testProps": "Fixed input KAT", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "SP 800 - 135 Rev. 1 Section 5.1 ANSI X9.42 - 2001 KDF KAT", "condition": "Performed on module load."}, {"algorithmOrTest": "KDF ANS 9.63", "testProps": "Fixed input KAT", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "SP 800 - 135 Rev. 1 Section 5.1 X9.63 - 2001 KDF KAT", "condition": "Performed on module load."}, {"algorithmOrTest": "KDF SP800 - 108", "testProps": "HMAC - SHA2 - 256", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "SP 800 - 108 Rev. 1 Section 4.1 KAT for a Counter Mode KDF", "condition": "Performed on module load."}, {"algorithmOrTest": "KDF SSH", "testProps": "Fixed input KAT", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "SP 800 - 135 Rev. 1 Section 5.2 SSHv2 KDF KAT", "condition": "Performed on module load."}, {"algorithmOrTest": "KTS - IFC", "testProps": "k=2048", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "SP 800 - 56B Rev. 2 Decrypt for CRT", "condition": "Performed on module load."}, {"algorithmOrTest": "KTS - IFC", "testProps": "k=2048", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "SP 800 - 56B Rev. 2 Encrypt for Basic", "condition": "Performed on module load."}, {"algorithmOrTest": "KTS - IFC", "testProps": "k=2048", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "SP 800 - 56B Rev. 2 Decrypt for Basic", "condition": "Performed on module load."}, {"algorithmOrTest": "PBKDF", "testProps": "SHA2 - 256, 24 - byte password, 36 - byte salt, iteration count of 4096", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "SP 800 - 132 Section 5.3 KAT of Master Key derivation", "condition": "Performed on module load."}, {"algorithmOrTest": "RSA SigGen (FIPS186 - 4)", "testProps": "k=2048 with SHA2 - 256", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "Sign", "condition": "Performed on module load."}, {"algorithmOrTest": "RSA SigVer (FIPS186 - 4)", "testProps": "k=2048 with SHA2 - 256", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "Verify", "condition": "Performed on module load."}, {"algorithmOrTest": "SHA - 1", "testProps": "SHA - 1", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "Simple SHA KAT", "condition": "Performed on module load."}, {"algorithmOrTest": "SHA2 - 512", "testProps": "SHA2 - 512", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "Simple SHA KAT", "condition": "Performed on module load."}, {"algorithmOrTest": "SHA3 - 256", "testProps": "SHA3 - 256", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "Simple SHA KAT", "condition": "Performed on module load."}, {"algorithmOrTest": "TLS v1.2 KDF RFC7627", "testProps": "Fixed input KAT", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "SP 800 - 135 Rev. 1 Section 4.2.2 TLS 1.2 KAT", "condition": "Performed on module load."}, {"algorithmOrTest": "TLS v1.3 KDF", "testProps": "Fixed input KAT", "testMethod": "KAT", "type": "CAST", "indicator": "FIPS_OK", "details": "RFC8446 Section 7.1 TLS v1.3 KDF KAT", "condition": "Performed on module load."}, {"algorithmOrTest": "DSA KeyGen (FIPS186 - 4)", "testProps": "PCT performed using the generated key pair", "testMethod": "PCT", "type": "PCT", "indicator": "FIPS_OK", "details": "Sign, Verify", "condition": "Performed on FFC (DSA, KAS - FFC - SSC) key pair generation, prior to returning the key pair on conclusion of the call."}, {"algorithmOrTest": "ECDSA KeyGen (FIPS186 - 4)", "testProps": "PCT performed using the generated key pair", "testMethod": "PCT", "type": "PCT", "indicator": "FIPS_OK", "details": "Sign, Verify", "condition": "Performed on ECC (ECDSA) key pair generation, prior to returning the key pair on conclusion of the call."}, {"algorithmOrTest": "EDDSA KeyGen", "testProps": "PCT performed using the generated key pair", "testMethod": "PCT", "type": "PCT", "indicator": "FIPS_OK", "details": "Sign, Verify", "condition": "Performed on Edwards (EdDSA) key pair generation, prior to returning the key pair on conclusion of the call."}, {"algorithmOrTest": "RSA KeyGen (FIPS186 - 4)", "testProps": "PCT performed using the generated key pair", "testMethod": "PCT", "type": "PCT", "indicator": "FIPS_OK", "details": "Sign, Verify", "condition": "Performed on IFC (RSA, KAS - IFC - SSC, KTS - IFC) key pair generation, prior to returning the key pair on conclusion of the call."}]}, "error_states": {"section": 10, "subsection": 4, "found": true, "entries": [{"name": "Self - test failure", "description": "The self - test failure error state", "conditions": "If one of the KATs fails or integrity test fails", "recoveryMethod": "Reload the Module into memory", "indicator": "PROV_R_FIPS_MODULE_IN_ERROR_STATE"}]}}}, "heuristics": {"_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics", "algorithms": {"_type": "Set", "elements": ["AES-CBC-CS1A6591", "KDA HKDF SP800-56Cr2A6591", "DSA SigGen (FIPS186-4)A6591", "SHA2-384A6591", "KAS-ECC-SSC Sp800-56Ar3A6591", "SHA3-512A6591", "SHA2-512/256A6591", "SHA2-512/224A6591", "AES-CBC-CS3A6591", "KDA TwoStep SP800-56Cr2A6591", "RSA KeyGen (FIPS186-4)A6591", "RSA Signature PrimitiveA6591", "Safe Primes Key VerificationA6591", "KDF ANS 9.63A6591", "AES-CFB1A6591", "KMAC-128A6591", "HMAC-SHA-1A6591", "HMAC-SHA3-512A6591", "EDDSA SigGenA6591", "HMAC-SHA2-512A6591", "KDF SP800-108A6591", "KTS-IFCA6591", "RSA SigGen (FIPS186-4)A6591", "#A6591", "TLS v1.3 KDFA6591", "ECDSA SigVer (FIPS186-4)A6591", "KAS-FFC-SSC Sp800-56Ar3A6591", "HMAC-SHA2-384A6591", "DSA PQGVer (FIPS186-4)A6591", "AES-CCMA6591", "SHA3-224A6591", "RSA SigVer (FIPS186-5)A6591", "KDA OneStep SP800-56Cr2A6591", "DSA PQGGen (FIPS186-4)A6591", "AES-GMACA6591", "EDDSA KeyVerA6591", "KDF SSHA6591", "HMAC-SHA2-512/256A6591", "Counter DRBGA6591", "AES-CFB128A6591", "HMAC-SHA2-512/224A6591", "RSA SigGen (FIPS186-5)A6591", "ECDSA KeyVer (FIPS186-4)A6591", "Hash DRBGA6591", "SHA-1A6591", "AES-OFBA6591", "AES-XTS Testing Revision 2.0A6591", "SHA3-384A6591", "SHA2-512A6591", "SHA2-224A6591", "HMAC-SHA3-224A6591", "DSA SigVer (FIPS186-4)A6591", "HMAC-SHA2-256A6591", "SHAKE-256A6591", "RSA SigVer (FIPS186-4)A6591", "SHA3-256A6591", "HMAC-SHA3-384A6591", "ECDSA KeyGen (FIPS186-4)A6591", "KAS-IFC-SSCA6591", "PBKDFA6591", "KDF ANS 9.42A6591", "AES-CMACA6591", "KAS-ECC CDH-Component SP800-56Ar3A6591", "AES-KWPA6591", "AES-CFB8A6591", "EDDSA KeyGenA6591", "KMAC-256A6591", "SHA2-256A6591", "HMAC DRBGA6591", "HMAC-SHA3-256A6591", "ECDSA SigGen (FIPS186-4)A6591", "Safe Primes Key GenerationA6591", "AES-ECBA6591", "AES-KWA6591", "AES-CTRA6591", "TLS v1.2 KDF RFC7627A6591", "DSA KeyGen (FIPS186-4)A6591", "SHAKE-128A6591", "AES-GCMA6591", "AES-CBC-CS2A6591", "AES-CBCA6591", "EDDSA SigVerA6591", "HMAC-SHA2-224A6591"]}, "extracted_versions": {"_type": "Set", "elements": ["3"]}, "cpe_matches": null, "verified_cpe_matches": null, "related_cves": null, "policy_prunned_references": {"_type": "Set", "elements": []}, "module_prunned_references": {"_type": "Set", "elements": []}, "policy_processed_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "module_processed_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "direct_transitive_cves": null, "indirect_transitive_cves": null}, "state": {"_type": "sec_certs.sample.fips.InternalState", "module": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": null, "txt_hash": null, "json_hash": null}, "policy": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": "446033943793347b8efae0ba63980e20ed2724b8715ad09df1523f254f1069f7", "txt_hash": "5e42bfc026d6865ce614d7490b5b21a483d55e5129b8f0cc2d592f3639e85a2c", "json_hash": "f3bd4d8cd0e4323384034361ea70880258b98ba7e9161cb92b633380e19ce757"}}}