This page was not yet optimized for use on mobile
devices.
VMware NSS Cryptographic Module
Certificate #2155
Webpage information
Security policy
Symmetric Algorithms
AES, RC4, DES, Triple-DES, TDES, TDEA, SEED, HMACAsymmetric Algorithms
ECDH, ECDSA, Diffie-Hellman, DH, DSAHash functions
SHA-1, SHA-256, SHA-384, SHA-512Schemes
Key Exchange, Key exchange, Key agreement, Key AgreementProtocols
IKE, IPsec, VPNRandomness
DRBG, RNGLibraries
NSSBlock cipher modes
ECB, CBCSecurity level
Level 1Standards
FIPS 140-2, SP 800-90A, SP 800-90, SP 800-131A, PKCS23, PKCS #1File metadata
| Title | 1B - FIPS 140-2 vShield IPsec Crypto Module Security Policy |
|---|---|
| Author | jschultz |
| Creation date | D:20140417155129-04'00' |
| Modification date | D:20140417155129-04'00' |
| Pages | 26 |
| Creator | PDFCreator Version 1.7.2 |
| Producer | GPL Ghostscript 9.10 |
References
Incoming- 2180 - historical - VMware Kernel Cryptographic Module
Heuristics
No heuristics are available for this certificate.
References
Loading...
Updates Feed
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate was first processed.
Raw data
{
"_type": "sec_certs.sample.fips.FIPSCertificate",
"cert_id": 2155,
"dgst": "6ae2718959c46e34",
"heuristics": {
"_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
"algorithms": {
"_type": "Set",
"elements": [
"AES#2700",
"RSA#1398",
"HMAC#1681",
"DRBG#443",
"SHS#2267",
"Triple-DES#1619",
"DSA#821"
]
},
"cpe_matches": null,
"direct_transitive_cves": null,
"extracted_versions": {
"_type": "Set",
"elements": [
"-"
]
},
"indirect_transitive_cves": null,
"module_processed_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": {
"_type": "Set",
"elements": [
"2180"
]
},
"directly_referencing": null,
"indirectly_referenced_by": {
"_type": "Set",
"elements": [
"2180"
]
},
"indirectly_referencing": null
},
"module_prunned_references": {
"_type": "Set",
"elements": []
},
"policy_processed_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": {
"_type": "Set",
"elements": [
"2180"
]
},
"directly_referencing": null,
"indirectly_referenced_by": {
"_type": "Set",
"elements": [
"2180"
]
},
"indirectly_referencing": null
},
"policy_prunned_references": {
"_type": "Set",
"elements": []
},
"related_cves": null,
"verified_cpe_matches": null
},
"pdf_data": {
"_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
"keywords": {
"asymmetric_crypto": {
"ECC": {
"ECDH": {
"ECDH": 2
},
"ECDSA": {
"ECDSA": 2
}
},
"FF": {
"DH": {
"DH": 9,
"Diffie-Hellman": 6
},
"DSA": {
"DSA": 20
}
}
},
"certification_process": {},
"cipher_mode": {
"CBC": {
"CBC": 4
},
"ECB": {
"ECB": 4
}
},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {
"NSS": {
"NSS": 60
}
},
"crypto_protocol": {
"IKE": {
"IKE": 3
},
"IPsec": {
"IPsec": 18
},
"VPN": {
"VPN": 6
}
},
"crypto_scheme": {
"KA": {
"Key Agreement": 2,
"Key agreement": 2
},
"KEX": {
"Key Exchange": 5,
"Key exchange": 2
}
},
"device_model": {},
"ecc_curve": {},
"eval_facility": {},
"fips_cert_id": {
"Cert": {
"#1": 2
}
},
"fips_certlike": {
"Certlike": {
"DES7": 1,
"DRBG 443": 1,
"DRBG11": 1,
"DSA31": 1,
"HMAC SHA-1": 1,
"PKCS #1": 2,
"PKCS23": 2,
"RSA9": 1,
"SHA-1": 6,
"SHA-256": 4,
"SHA-384": 4,
"SHA-512": 2,
"SHA-512 1681": 1,
"SHA-512 2267": 1,
"SHA8": 1,
"SHS15": 1
}
},
"fips_security_level": {
"Level": {
"Level 1": 4
}
},
"hash_function": {
"SHA": {
"SHA1": {
"SHA-1": 6
},
"SHA2": {
"SHA-256": 4,
"SHA-384": 4,
"SHA-512": 4
}
}
},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {
"PRNG": {
"DRBG": 25
},
"RNG": {
"RNG": 1
}
},
"side_channel_analysis": {},
"standard_id": {
"FIPS": {
"FIPS 140-2": 17
},
"NIST": {
"SP 800-131A": 1,
"SP 800-90": 3,
"SP 800-90A": 4
},
"PKCS": {
"PKCS #1": 1,
"PKCS23": 1
}
},
"symmetric_crypto": {
"AES_competition": {
"AES": {
"AES": 12
},
"RC": {
"RC4": 1
}
},
"DES": {
"3DES": {
"TDEA": 1,
"TDES": 2,
"Triple-DES": 6
},
"DES": {
"DES": 3
}
},
"constructions": {
"MAC": {
"HMAC": 5
}
},
"miscellaneous": {
"SEED": {
"SEED": 1
}
}
},
"tee_name": {},
"tls_cipher_suite": {},
"vendor": {},
"vulnerability": {}
},
"policy_metadata": {
"/Author": "jschultz",
"/CreationDate": "D:20140417155129-04\u002700\u0027",
"/Creator": "PDFCreator Version 1.7.2",
"/Keywords": "",
"/ModDate": "D:20140417155129-04\u002700\u0027",
"/Producer": "GPL Ghostscript 9.10",
"/Subject": "",
"/Title": "1B - FIPS 140-2 vShield IPsec Crypto Module Security Policy",
"pdf_file_size_bytes": 1161705,
"pdf_hyperlinks": {
"_type": "Set",
"elements": []
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 26
}
},
"state": {
"_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
"module_download_ok": true,
"module_extract_ok": true,
"policy_convert_ok": true,
"policy_download_ok": true,
"policy_extract_ok": true,
"policy_json_hash": null,
"policy_pdf_hash": "167ec71cf2032d820ec47e0c816b55e026bce19f69658eda19dec99def19586c",
"policy_txt_hash": "3d107389f5397a4e4b0e89214beb49353aef4acf4b2e780341e97f527eb9c84c"
},
"web_data": {
"_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
"caveat": "When installed, initialized and configured as specified in the Security Policy Section 3 and operated in FIPS mode. The module generates cryptographic keys whose strengths are modified by available entropy. No assurance of the minimum strength of generated keys.",
"certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/FIPS140ConsolidatedCertList0041.pdf",
"date_sunset": null,
"description": "The VMware NSS Cryptographic Module is a software cryptographic library that provides FIPS 140-2 validated network security services to VMware products.",
"embodiment": "Multi-Chip Stand Alone",
"exceptions": [
"Physical Security: N/A",
"Mitigation of Other Attacks: N/A"
],
"fw_versions": null,
"historical_reason": "Moved to historical list due to sunsetting",
"hw_versions": null,
"level": 1,
"mentioned_certs": {},
"module_name": "VMware NSS Cryptographic Module",
"module_type": "Software",
"revoked_link": null,
"revoked_reason": null,
"standard": "FIPS 140-2",
"status": "historical",
"sw_versions": "1.0",
"tested_conf": [
"VMware vCloud Networking and Security 5.5.0a Edge OS on VMware vSphere Hypervisor (ESXi) 5.5 running on HP ProLiant DL380e Gen8 Server with PAA",
"VMware vCloud Networking and Security 5.5.0a Edge OS on VMware vSphere Hypervisor (ESXi) 5.5 running on HP ProLiant DL380e Gen8 Server without PAA (single-user mode)"
],
"validation_history": [
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2014-05-14",
"lab": "CGI Information Systems \u0026 Management Consultants Inc",
"validation_type": "Initial"
}
],
"vendor": "VMware, Inc.",
"vendor_url": "http://www.vmware.com"
}
}