CGX Cryptographic Module

Certificate #392

Webpage information

Status historical
Historical reason Moved to historical list due to sunsetting
Validation dates 10.03.2004 , 19.10.2004
Standard FIPS 140-2
Security level 1
Type Software
Embodiment Multi-Chip Stand Alone
Caveat When operated in FIPS mode
Exceptions
  • EMI/EMC: Level 3
  • Design Assurance: Level 3
Description Based on SafeNet's 20 years of security expertise and the most widely deployed VPN software in the industry, the CGX Cryptographic Library provides a high-level software interface to SafeNet SafeXcel™ VPN acceleration chips, cards, and EmbeddedIP™ intellectual property. The CGX library can be used as an API to hardware accelerators or for compiling software implementations of the latest industry standard algorithms. Containing over forty cryptographic commands, the CGX library can provide a total security solution in either software or hardware.
Tested configurations
  • MS Windows 9x, 2000 NT 4.0, XP (single user mode)
Vendor SafeNet, Inc.
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Symmetric Algorithms
AES, RC5, DES, TDES, HMAC
Asymmetric Algorithms
DH, Diffie-Hellman, DSA
Hash functions
SHA-1, MD5, RIPEMD-128
Protocols
IKE, IPsec
Randomness
PRNG, RNG
Block cipher modes
ECB, CBC, CFB, OFB

Trusted Execution Environments
SE
Vendor
Microsoft

Security level
Level 1, level 1
Side-channel analysis
timing attack

Standards
FIPS 140-2, FIPS 81, FIPS 46-3, FIPS 197, FIPS 186-1, FIPS 180-1, FIPS 198

File metadata

Title CGX Version 3.18 Security Policy_Approved - Level 1.doc
Author Chris
Creation date D:20040224083107Z
Modification date D:20040310160930-05'00'
Pages 22
Creator CGX Version 3.18 Security Policy_Approved - Level 1.doc - Microsoft Word
Producer Acrobat PDFWriter 5.0 for Windows NT

Heuristics

No heuristics are available for this certificate.

References

No references are available for this certificate.

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 392,
  "dgst": "6ea2fdb3399f4d2e",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "SHA-1#30",
        "DSA#30",
        "HMAC-SHA-1#30",
        "Triple-DES#11",
        "AES#75"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "-"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "FF": {
          "DH": {
            "DH": 1,
            "Diffie-Hellman": 7
          },
          "DSA": {
            "DSA": 10
          }
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 3
        },
        "CFB": {
          "CFB": 2
        },
        "ECB": {
          "ECB": 3
        },
        "OFB": {
          "OFB": 2
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "IKE": {
          "IKE": 1
        },
        "IPsec": {
          "IPsec": 3
        }
      },
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "#0": 1,
          "#72": 1
        }
      },
      "fips_certlike": {
        "Certlike": {
          "Cert #72 DES": 1,
          "Cert#75 AES": 1,
          "HMAC-SHA-1": 4,
          "SHA-1": 4
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 1": 21,
          "level 1": 1
        }
      },
      "hash_function": {
        "MD": {
          "MD5": {
            "MD5": 3
          }
        },
        "RIPEMD": {
          "RIPEMD-128": 1
        },
        "SHA": {
          "SHA1": {
            "SHA-1": 4
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "PRNG": 3
        },
        "RNG": {
          "RNG": 2
        }
      },
      "side_channel_analysis": {
        "SCA": {
          "timing attack": 1
        }
      },
      "standard_id": {
        "FIPS": {
          "FIPS 140-2": 9,
          "FIPS 180-1": 1,
          "FIPS 186-1": 1,
          "FIPS 197": 1,
          "FIPS 198": 1,
          "FIPS 46-3": 2,
          "FIPS 81": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 5
          },
          "RC": {
            "RC5": 3
          }
        },
        "DES": {
          "3DES": {
            "TDES": 3
          },
          "DES": {
            "DES": 9
          }
        },
        "constructions": {
          "MAC": {
            "HMAC": 6
          }
        }
      },
      "tee_name": {
        "IBM": {
          "SE": 3
        }
      },
      "tls_cipher_suite": {},
      "vendor": {
        "Microsoft": {
          "Microsoft": 2
        }
      },
      "vulnerability": {}
    },
    "policy_metadata": {
      "/Author": "Chris",
      "/CreationDate": "D:20040224083107Z",
      "/Creator": "CGX Version 3.18 Security Policy_Approved -  Level 1.doc - Microsoft Word",
      "/ModDate": "D:20040310160930-05\u002700\u0027",
      "/Producer": "Acrobat PDFWriter 5.0 for Windows NT",
      "/Title": "CGX Version 3.18 Security Policy_Approved -  Level 1.doc",
      "pdf_file_size_bytes": 107795,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 22
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
    "module_download_ok": true,
    "module_extract_ok": true,
    "policy_convert_ok": true,
    "policy_download_ok": true,
    "policy_extract_ok": true,
    "policy_json_hash": null,
    "policy_pdf_hash": "792fa3e0d84e0655ffd7205c6bc8c539a9e10b152ce545fa07474b8ecccc1d81",
    "policy_txt_hash": "03e5840d42ecfca85d37ed4ef7405ca2c36cf8dbdfd9592c9826416b024f9b97"
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "When operated in FIPS mode",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/140crt392.pdf",
    "date_sunset": null,
    "description": "Based on SafeNet\u0027s 20 years of security expertise and the most widely deployed VPN software in the industry, the CGX Cryptographic Library provides a high-level software interface to SafeNet SafeXcel\u2122 VPN acceleration chips, cards, and EmbeddedIP\u2122 intellectual property. The CGX library can be used as an API to hardware accelerators or for compiling software implementations of the latest industry standard algorithms. Containing over forty cryptographic commands, the CGX library can provide a total security solution in either software or hardware.",
    "embodiment": "Multi-Chip Stand Alone",
    "exceptions": [
      "EMI/EMC: Level 3",
      "Design Assurance: Level 3"
    ],
    "fw_versions": null,
    "historical_reason": "Moved to historical list due to sunsetting",
    "hw_versions": null,
    "level": 1,
    "mentioned_certs": {},
    "module_name": "CGX Cryptographic Module",
    "module_type": "Software",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "historical",
    "sw_versions": "3.18",
    "tested_conf": [
      "MS Windows 9x, 2000 NT 4.0, XP (single user mode)"
    ],
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2004-03-10",
        "lab": "COACT INC CAFE LAB",
        "validation_type": "Initial"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2004-10-19",
        "lab": "",
        "validation_type": "Update"
      }
    ],
    "vendor": "SafeNet, Inc.",
    "vendor_url": "http://www.safenet-inc.com"
  }
}