Amazon Linux 2 GnuTLS Cryptographic Module

Certificate #3643

Webpage information

Status historical
Historical reason SP 800-56Arev3 transition - replaced by certificate #4472
Validation dates 20.04.2020
Standard FIPS 140-2
Security level 1
Type Software
Embodiment Multi-Chip Stand Alone
Caveat When operated in FIPS mode. When installed, initialized and configured as specified in Section 10.1 of the Security Policy.
Exceptions
  • Physical Security: N/A
Description The Amazon Linux 2 GnuTLS Cryptographic Module implements general purpose cryptographic algorithms and network protocols.
Tested configurations
  • Amazon Linux 2 running on Amazon EC2 i3.metal with Intel Xeon E5 with PAA
  • Amazon Linux 2 running on Amazon EC2 i3.metal with Intel Xeon E5 without PAA (single-user mode)
Vendor Amazon Web Services, Inc.
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Symmetric Algorithms
AES, AES-128, AES-, AES-256, Twofish, Serpent, CAST-, CAST128, RC2, RC4, DES, Triple-DES, TDEA, Salsa20, Blowfish, Camellia, GOST 28147-89, HMAC
Asymmetric Algorithms
ECDH, ECDSA, ECC, Diffie-Hellman, DH, DHE, DSA
Hash functions
SHA-1, SHA2, SHA3, MD4, MD5, RIPEMD160, PBKDF2
Schemes
MAC, Key Exchange, Key Agreement, Key agreement
Protocols
TLS, TLS v1.2, DTLS, IKE
Randomness
PRNG, DRBG, RNG
Libraries
Nettle, GnuTLS
Elliptic Curves
P-256, P-384, P-521
Block cipher modes
ECB, CBC, CTR, GCM

Security level
Level 1
Side-channel analysis
timing attacks, Timing Attacks

Standards
FIPS 140-2, FIPS 140, FIPS 186-4, FIPS197, FIPS186-4, FIPS198-1, FIPS180-4, FIPS140-2, FIPS PUB 140-2, SP 800-90A, NIST SP 800-90A, NIST SP 800-135, SP 800-52, PKCS#11, PKCS#1, RFC5246, RFC4347, RFC 5764, RFC4357, RFC5288, RFC3711, RFC5764, X.509

File metadata

Title FIPS 140-2 Non-Proprietary Security Policy
Author Marcos Portnoi
Creation date D:20200306142644-06'00'
Modification date D:20200306142644-06'00'
Pages 39
Creator Microsoft® Word for Office 365
Producer Microsoft® Word for Office 365

Heuristics

Automated inference - use with caution

All attributes shown in this section (e.g., links between certificates, products, vendors, and known CVEs) are generated by automated heuristics and have not been reviewed by humans. These methods can produce false positives or false negatives and should not be treated as definitive without independent verification. For details on our data sources and inference methods, see our methodology. If you believe any information here is inaccurate or harmful, please submit feedback.

CPE matches

References

No references are available for this certificate.

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 3643,
  "dgst": "6678394ac11e55af",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "AES#C790",
        "RSA#C792",
        "HMAC#C792",
        "ECDSA#C792",
        "AES#C792",
        "AES#C791",
        "SHS#C792",
        "SHS#C790",
        "AES#C789",
        "Triple-DES#C792",
        "KTS#C792",
        "DSA#C792",
        "CVL#C792",
        "DRBG#C792"
      ]
    },
    "cpe_matches": {
      "_type": "Set",
      "elements": [
        "cpe:2.3:o:amazon:amazon_linux:2.0.20230404.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20221103.3:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20231020.1:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20220912.1:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20250603.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20240610.1:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20250201.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20250414.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20250804.1:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20220218.3:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20220207.1:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20250428.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20240412.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20250902.3:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20240719.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20240620.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20230504.1:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20230320.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20211223.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20220218.1:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20250113.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20231206.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20220805.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20220719.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20240521.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20240709.1:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20241001.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20250610.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20211201.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20241014.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20230307.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20250915.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20240109.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20230628.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20231012.1:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20250728.1:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.202200419.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20221004.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20231218.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20250328.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20250123.4:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20250116.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20220606.1.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20240223.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20250623.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20231116.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20230926.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20241113.1:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20240306.2:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20210813.1:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20240329.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20240124.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20241217.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20241031.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20220316.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20240503.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20220310.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20211005.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20230221.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20230906.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20250808.1:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20250220.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20230912.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20230822.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20211103.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20230808.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20240809.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20250512.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20230530.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20221210.1:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20211001.1:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20240529.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20220426.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20230404.1:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20250305.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20230612.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20240916.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20250527.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20250108.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20220121.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20250721.2:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20250321.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20250818.2:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20210721.2:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20210701.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20230719.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20240318.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20231018.2:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20250707.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.202200406.1:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20240903.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20230418.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20230207.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20230119.1:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20250605.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20240816.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20250405.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20231101.0:*:*:*:*:*:*:*",
        "cpe:2.3:o:amazon:amazon_linux:2.0.20230515.0:*:*:*:*:*:*:*"
      ]
    },
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "2"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 4
          },
          "ECDH": {
            "ECDH": 1
          },
          "ECDSA": {
            "ECDSA": 32
          }
        },
        "FF": {
          "DH": {
            "DH": 1,
            "DHE": 1,
            "Diffie-Hellman": 40
          },
          "DSA": {
            "DSA": 31
          }
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 9
        },
        "CTR": {
          "CTR": 1
        },
        "ECB": {
          "ECB": 1
        },
        "GCM": {
          "GCM": 9
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {
        "GnuTLS": {
          "GnuTLS": 46
        },
        "Nettle": {
          "Nettle": 4
        }
      },
      "crypto_protocol": {
        "IKE": {
          "IKE": 1
        },
        "TLS": {
          "DTLS": {
            "DTLS": 3
          },
          "TLS": {
            "TLS": 49,
            "TLS v1.2": 2
          }
        }
      },
      "crypto_scheme": {
        "KA": {
          "Key Agreement": 7,
          "Key agreement": 6
        },
        "KEX": {
          "Key Exchange": 1
        },
        "MAC": {
          "MAC": 7
        }
      },
      "device_model": {},
      "ecc_curve": {
        "NIST": {
          "P-256": 20,
          "P-384": 16,
          "P-521": 16
        }
      },
      "eval_facility": {
        "atsec": {
          "atsec": 40
        }
      },
      "fips_cert_id": {},
      "fips_certlike": {
        "Certlike": {
          "AES- 256": 1,
          "AES-128": 1,
          "AES-256": 3,
          "AES-GCM 128": 1,
          "AES2": 1,
          "Cert# AES": 1,
          "HMAC 128": 2,
          "HMAC 192": 2,
          "HMAC-SHA-1": 4,
          "PKCS#1": 2,
          "PKCS#11": 4,
          "SHA-1": 7,
          "SHA2": 2,
          "SHA2-224": 9,
          "SHA2-256": 15,
          "SHA2-384": 14,
          "SHA2-512": 9,
          "SHA2-512 1024": 1,
          "SHA2-512 112": 1,
          "SHA2-512 2048 and 3072": 1,
          "SHA3": 2
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 1": 4
        }
      },
      "hash_function": {
        "MD": {
          "MD4": {
            "MD4": 2
          },
          "MD5": {
            "MD5": 3
          }
        },
        "PBKDF": {
          "PBKDF2": 2
        },
        "RIPEMD": {
          "RIPEMD160": 2
        },
        "SHA": {
          "SHA1": {
            "SHA-1": 7
          },
          "SHA2": {
            "SHA2": 2
          },
          "SHA3": {
            "SHA3": 2
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 28,
          "PRNG": 1
        },
        "RNG": {
          "RNG": 6
        }
      },
      "side_channel_analysis": {
        "SCA": {
          "Timing Attacks": 1,
          "timing attacks": 2
        }
      },
      "standard_id": {
        "FIPS": {
          "FIPS 140": 2,
          "FIPS 140-2": 54,
          "FIPS 186-4": 7,
          "FIPS PUB 140-2": 1,
          "FIPS140-2": 1,
          "FIPS180-4": 2,
          "FIPS186-4": 4,
          "FIPS197": 5,
          "FIPS198-1": 4
        },
        "NIST": {
          "NIST SP 800-135": 1,
          "NIST SP 800-90A": 1,
          "SP 800-52": 1,
          "SP 800-90A": 1
        },
        "PKCS": {
          "PKCS#1": 1,
          "PKCS#11": 2
        },
        "RFC": {
          "RFC 5764": 1,
          "RFC3711": 1,
          "RFC4347": 2,
          "RFC4357": 2,
          "RFC5246": 3,
          "RFC5288": 2,
          "RFC5764": 1
        },
        "X509": {
          "X.509": 3
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 29,
            "AES-": 2,
            "AES-128": 1,
            "AES-256": 3
          },
          "CAST": {
            "CAST-": 1,
            "CAST128": 1
          },
          "RC": {
            "RC2": 2,
            "RC4": 2
          },
          "Serpent": {
            "Serpent": 2
          },
          "Twofish": {
            "Twofish": 2
          }
        },
        "DES": {
          "3DES": {
            "TDEA": 1,
            "Triple-DES": 16
          },
          "DES": {
            "DES": 5
          }
        },
        "constructions": {
          "MAC": {
            "HMAC": 26
          }
        },
        "djb": {
          "Salsa": {
            "Salsa20": 1
          }
        },
        "miscellaneous": {
          "Blowfish": {
            "Blowfish": 2
          },
          "Camellia": {
            "Camellia": 2
          },
          "GOST": {
            "GOST 28147-89": 1
          }
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "policy_metadata": {
      "/Author": "Marcos Portnoi",
      "/CreationDate": "D:20200306142644-06\u002700\u0027",
      "/Creator": "Microsoft\u00ae Word for Office 365",
      "/ModDate": "D:20200306142644-06\u002700\u0027",
      "/Producer": "Microsoft\u00ae Word for Office 365",
      "/Title": "FIPS 140-2 Non-Proprietary Security Policy",
      "pdf_file_size_bytes": 725359,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "https://tools.ietf.org/html/rfc3711",
          "http://nvlpubs.nist.gov/nistpubs/Legacy/SP/nistspecialpublication800-135r1.pdf",
          "http://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-90Ar1.pdf",
          "https://tools.ietf.org/html/rfc4357",
          "https://gnutls.org/manual/html_node/Error-codes.html",
          "https://tools.ietf.org/html/rfc4347",
          "https://tools.ietf.org/html/rfc5246",
          "http://nvlpubs.nist.gov/nistpubs/FIPS/NIST.FIPS.186-4.pdf",
          "http://csrc.nist.gov/publications/fips/fips140-2/fips1402.pdf",
          "https://tools.ietf.org/html/rfc5288",
          "https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?product=11144",
          "https://dl.acm.org/citation.cfm?id=1251354",
          "https://csrc.nist.gov/CSRC/media/Projects/cryptographic-module-validation-program/documents/fips140-2/FIPS1402IG.pdf",
          "https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?product=11143",
          "http://nvlpubs.nist.gov/nistpubs/FIPS/NIST.FIPS.180-4.pdf",
          "http://csrc.nist.gov/publications/fips/fips197/fips-197.pdf",
          "https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?product=11145",
          "http://csrc.nist.gov/publications/nistpubs/800-38a/sp800-38a.pdf",
          "https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-67r2.pdf",
          "http://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-52r1.pdf",
          "https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?product=11146",
          "https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-131Ar2.pdf",
          "http://csrc.nist.gov/publications/fips/fips198-1/FIPS-198-1_final.pdf",
          "https://tools.ietf.org/rfc/rfc8017.txt",
          "http://csrc.nist.gov/publications/nistpubs/800-56A/SP800-56A_Revision1_Mar08-2007.pdf",
          "https://tools.ietf.org/html/rfc5764"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 39
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
    "module_download_ok": true,
    "module_extract_ok": true,
    "policy_convert_ok": true,
    "policy_download_ok": true,
    "policy_extract_ok": true,
    "policy_json_hash": null,
    "policy_pdf_hash": "830b87f48c6c07e9f427a9957ec2dce94e09e822a81c785d3c46c10d67bed794",
    "policy_txt_hash": "8773995ced64428d89d567a33736086d1f63755f9d79ad7110aefb1e9bc4440f"
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "When operated in FIPS mode. When installed, initialized and configured as specified in Section 10.1 of the Security Policy.",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/April 2020_010520_0717.pdf",
    "date_sunset": null,
    "description": "The Amazon Linux 2 GnuTLS Cryptographic Module implements general purpose cryptographic algorithms and network protocols.",
    "embodiment": "Multi-Chip Stand Alone",
    "exceptions": [
      "Physical Security: N/A"
    ],
    "fw_versions": null,
    "historical_reason": "SP 800-56Arev3 transition - replaced by certificate #4472",
    "hw_versions": null,
    "level": 1,
    "mentioned_certs": {},
    "module_name": "Amazon Linux 2 GnuTLS Cryptographic Module",
    "module_type": "Software",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "historical",
    "sw_versions": "1.0",
    "tested_conf": [
      "Amazon Linux 2 running on Amazon EC2 i3.metal with Intel Xeon E5 with PAA",
      "Amazon Linux 2 running on Amazon EC2 i3.metal with Intel Xeon E5 without PAA (single-user mode)"
    ],
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2020-04-20",
        "lab": "atsec information security corporation",
        "validation_type": "Initial"
      }
    ],
    "vendor": "Amazon Web Services, Inc.",
    "vendor_url": "http://aws.amazon.com"
  }
}