PreVeil Cryptographic Module based on the OpenSSL FIPS Provider

Certificate details

Certificate ID #5145
Status active
Validation dates 26.01.2026
Sunset date 10-03-2030
Standard FIPS 140-3
Security level 1
Type Software
Embodiment Multi-Chip Stand Alone
Caveat When operated in approved mode. No assurance of the minimum strength of generated SSPs (e.g., keys).
Exceptions
  • Physical security: N/A
  • Non-invasive security: N/A
  • Life-cycle assurance: Level 3
Description The PreVeil Cryptographic Module based on the OpenSSL FIPS Provider is a software library providing a C-language application program interface (API) for use by applications that require cryptographic functionality
Vendor PreVeil, Inc http://www.preveil.com
Lab Lightship Security, Inc.
Algorithms
  • AES-CBC-CS1A3548
  • AES-CBC-CS2A3548
  • AES-CBC-CS3A3548
  • AES-CBCA3548
  • AES-CCMA3548
  • AES-CFB128A3548
  • AES-CFB1A3548
  • AES-CFB8A3548
  • AES-CMACA3548
  • AES-CTRA3548
  • AES-ECBA3548
  • AES-GCMA3548
  • AES-GMACA3548
  • AES-KWA3548
  • AES-KWPA3548
  • AES-OFBA3548
  • AES-XTS Testing Revision 2.0A3548
  • Counter DRBGA3548
  • DSA KeyGen (FIPS186-4)A3548
  • DSA PQGGen (FIPS186-4)A3548
  • DSA PQGVer (FIPS186-4)A3548
  • DSA SigGen (FIPS186-4)A3548
  • DSA SigVer (FIPS186-4)A3548
  • ECDSA KeyGen (FIPS186-4)A3548
  • ECDSA KeyVer (FIPS186-4)A3548
  • ECDSA SigGen (FIPS186-4)A3548
  • ECDSA SigVer (FIPS186-4)A3548
  • Hash DRBGA3548
  • HMAC DRBGA3548
  • HMAC-SHA-1A3548
  • HMAC-SHA2-224A3548
  • HMAC-SHA2-256A3548
  • HMAC-SHA2-384A3548
  • HMAC-SHA2-512/224A3548
  • HMAC-SHA2-512/256A3548
  • HMAC-SHA2-512A3548
  • HMAC-SHA3-224A3548
  • HMAC-SHA3-256A3548
  • HMAC-SHA3-384A3548
  • HMAC-SHA3-512A3548
  • KAS-ECC CDH-Component SP800-56Ar3A3548
  • KAS-ECC-SSC Sp800-56Ar3A3548
  • KAS-FFC-SSC Sp800-56Ar3A3548
  • KAS-IFC-SSCA3548
  • KDA HKDF SP800-56Cr2A3548
  • KDA OneStep SP800-56Cr2A3548
  • KDA TwoStep SP800-56Cr2A3548
  • KDF ANS 9.42A3548
  • KDF ANS 9.63A3548
  • KDF KMAC Sp800-108r1A3548
  • KDF SP800-108A3548
  • KDF SSHA3548
  • KMAC-128A3548
  • KMAC-256A3548
  • KTS-IFCA3548
  • PBKDFA3548
  • RSA KeyGen (FIPS186-4)A3548
  • RSA SigGen (FIPS186-4)A3548
  • RSA Signature PrimitiveA3548
  • RSA SigVer (FIPS186-4)A3548
  • Safe Primes Key GenerationA3548
  • Safe Primes Key VerificationA3548
  • SHA-1A3548
  • SHA2-224A3548
  • SHA2-256A3548
  • SHA2-384A3548
  • SHA2-512/224A3548
  • SHA2-512/256A3548
  • SHA2-512A3548
  • SHA3-224A3548
  • SHA3-256A3548
  • SHA3-384A3548
  • SHA3-512A3548
  • SHAKE-128A3548
  • SHAKE-256A3548
  • TLS v1.2 KDF RFC7627A3548
  • TLS v1.3 KDFA3548
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Extracted keywords

Symmetric Algorithms
AES-128, AES-192, AES-256, AES, AES-, AES128, CAST, Triple-DES, HMAC, KMAC, CMAC
Asymmetric Algorithms
RSA-OAEP, ECDSA, ECC, DHE, DSA
Hash functions
SHA-1, SHA1, SHA2, SHA3-224, SHA3-256, SHA3-384, SHA3-512, SHA3, SHA-3, SHAKE256, SHAKE128, PBKDF, PBKDF2
Schemes
MAC, Key exchange, Key Exchange, Key Agreement, AEAD
Protocols
SSH, SSHv2, TLS 1.2, TLS v1.2, TLS v1.3, TLS 1.3, TLS
Randomness
DRBG, RBG
Libraries
OpenSSL
Elliptic Curves
P-224, P-256, P-384, P-521, P-192, B-233, B-283, B-409, B-571, K-233, K-409, K-571, B-163, K-283, K-163, Ed448, Ed25519
Block cipher modes
ECB, CBC, CTR, CFB, OFB, GCM, CCM, XTS

JavaCard API constants
X25519, X448
Trusted Execution Environments
PSP, SSC
Vendor
Microsoft, Microsoft Corporation

Security level
Level 1
Side-channel analysis
timing attacks

Automated analysis

Automated inference - use with caution

All attributes shown in this section (e.g., links between certificates, products, vendors, and known CVEs) are generated by automated heuristics and have not been reviewed by humans. These methods can produce false positives or false negatives and should not be treated as definitive without independent verification. This applies equally to the Cross-references section below. If you want to know more about how this data is computed and how reliable it is, see our documentation on automated analysis. If you believe any information here is inaccurate or harmful, please submit feedback.

No automatically derived data are available in this section.

Cross-references

No references are available for this certificate.

Processing updates

Feed
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 5145,
  "dgst": "766af62a6275002e",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "KDA OneStep SP800-56Cr2A3548",
        "HMAC-SHA3-512A3548",
        "AES-CTRA3548",
        "AES-ECBA3548",
        "AES-KWA3548",
        "KDA TwoStep SP800-56Cr2A3548",
        "AES-CFB128A3548",
        "KAS-IFC-SSCA3548",
        "SHA3-224A3548",
        "KTS-IFCA3548",
        "RSA SigGen (FIPS186-4)A3548",
        "RSA Signature PrimitiveA3548",
        "SHA2-384A3548",
        "AES-CBC-CS1A3548",
        "KDF SP800-108A3548",
        "HMAC-SHA2-384A3548",
        "AES-CBCA3548",
        "RSA KeyGen (FIPS186-4)A3548",
        "KMAC-256A3548",
        "SHA3-256A3548",
        "RSA SigVer (FIPS186-4)A3548",
        "Counter DRBGA3548",
        "ECDSA KeyGen (FIPS186-4)A3548",
        "AES-CMACA3548",
        "KMAC-128A3548",
        "AES-GMACA3548",
        "HMAC-SHA2-512/256A3548",
        "SHA3-512A3548",
        "KDA HKDF SP800-56Cr2A3548",
        "SHA2-224A3548",
        "KDF KMAC Sp800-108r1A3548",
        "ECDSA KeyVer (FIPS186-4)A3548",
        "SHA2-512/224A3548",
        "ECDSA SigVer (FIPS186-4)A3548",
        "ECDSA SigGen (FIPS186-4)A3548",
        "DSA SigGen (FIPS186-4)A3548",
        "HMAC-SHA-1A3548",
        "HMAC-SHA2-512/224A3548",
        "TLS v1.2 KDF RFC7627A3548",
        "AES-XTS Testing Revision 2.0A3548",
        "AES-KWPA3548",
        "HMAC-SHA3-384A3548",
        "DSA PQGVer (FIPS186-4)A3548",
        "PBKDFA3548",
        "SHA-1A3548",
        "Safe Primes Key VerificationA3548",
        "AES-CBC-CS3A3548",
        "HMAC-SHA2-224A3548",
        "AES-CFB8A3548",
        "AES-OFBA3548",
        "Hash DRBGA3548",
        "AES-CCMA3548",
        "HMAC DRBGA3548",
        "HMAC-SHA3-256A3548",
        "KDF ANS 9.63A3548",
        "SHA2-512A3548",
        "KAS-ECC CDH-Component SP800-56Ar3A3548",
        "DSA PQGGen (FIPS186-4)A3548",
        "AES-GCMA3548",
        "KDF ANS 9.42A3548",
        "KDF SSHA3548",
        "TLS v1.3 KDFA3548",
        "SHA2-256A3548",
        "AES-CFB1A3548",
        "HMAC-SHA3-224A3548",
        "HMAC-SHA2-256A3548",
        "AES-CBC-CS2A3548",
        "SHAKE-256A3548",
        "DSA KeyGen (FIPS186-4)A3548",
        "SHA2-512/256A3548",
        "SHAKE-128A3548",
        "Safe Primes Key GenerationA3548",
        "#A3548",
        "DSA SigVer (FIPS186-4)A3548",
        "KAS-ECC-SSC Sp800-56Ar3A3548",
        "SHA3-384A3548",
        "KAS-FFC-SSC Sp800-56Ar3A3548",
        "HMAC-SHA2-512A3548"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "-"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "br1_deviations": 0,
    "br1_tables": {
      "_type": "sec_certs.heuristics.br1.table_parsing.model.br1_tables.BR1Tables",
      "approved_algorithms": {
        "entries": [
          {
            "algorithm": "AES-CBC",
            "cavpCertName": "A3548",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38A"
          },
          {
            "algorithm": "AES-CBC-CS1",
            "cavpCertName": "A3548",
            "properties": "Direction - decrypt, encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38A"
          },
          {
            "algorithm": "AES-CBC-CS2",
            "cavpCertName": "A3548",
            "properties": "Direction - decrypt, encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38A"
          },
          {
            "algorithm": "AES-CBC-CS3",
            "cavpCertName": "A3548",
            "properties": "Direction - decrypt, encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38A"
          },
          {
            "algorithm": "AES-CCM",
            "cavpCertName": "A3548",
            "properties": "Key Length - 128, 192, 256",
            "reference": "SP 800-38C"
          },
          {
            "algorithm": "AES-CFB1",
            "cavpCertName": "A3548",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38A"
          },
          {
            "algorithm": "AES-CFB128",
            "cavpCertName": "A3548",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38A"
          },
          {
            "algorithm": "AES-CFB8",
            "cavpCertName": "A3548",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38A"
          },
          {
            "algorithm": "AES-CMAC",
            "cavpCertName": "A3548",
            "properties": "Direction - Generation, Verification Key Length - 128, 192, 256",
            "reference": "SP 800-38B"
          },
          {
            "algorithm": "AES-CTR",
            "cavpCertName": "A3548",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38A"
          },
          {
            "algorithm": "AES-ECB",
            "cavpCertName": "A3548",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38A"
          },
          {
            "algorithm": "AES-GCM",
            "cavpCertName": "A3548",
            "properties": "Direction - Decrypt, Encrypt IV Generation - External, Internal IV Generation Mode - 8.2.1 Key Length - 128, 192, 256",
            "reference": "SP 800-38D"
          },
          {
            "algorithm": "AES-GMAC",
            "cavpCertName": "A3548",
            "properties": "Direction - Decrypt, Encrypt IV Generation - External, Internal IV Generation Mode - 8.2.1 Key Length - 128, 192, 256",
            "reference": "SP 800-38D"
          },
          {
            "algorithm": "AES-KW",
            "cavpCertName": "A3548",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38F"
          },
          {
            "algorithm": "AES-KWP",
            "cavpCertName": "A3548",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38F"
          },
          {
            "algorithm": "AES-OFB",
            "cavpCertName": "A3548",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38A"
          },
          {
            "algorithm": "AES-XTS Testing Revision 2.0",
            "cavpCertName": "A3548",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 256",
            "reference": "SP 800-38E"
          },
          {
            "algorithm": "Counter DRBG",
            "cavpCertName": "A3548",
            "properties": "Prediction Resistance - Yes Mode - AES-128, AES-192, AES-256 Derivation Function Enabled - No, Yes",
            "reference": "SP 800-90A Rev. 1"
          },
          {
            "algorithm": "DSA KeyGen (FIPS186-4)",
            "cavpCertName": "A3548",
            "properties": "L - 2048, 3072 N - 224, 256",
            "reference": "FIPS 186-4"
          },
          {
            "algorithm": "DSA PQGGen (FIPS186-4)",
            "cavpCertName": "A3548",
            "properties": "L - 2048, 3072 N - 224, 256",
            "reference": "FIPS 186-4"
          },
          {
            "algorithm": "",
            "cavpCertName": "",
            "properties": "Hash Algorithm - SHA2-224, SHA2-256, SHA2- 384, SHA2-512, SHA2-512/224, SHA2-512/256",
            "reference": ""
          },
          {
            "algorithm": "DSA PQGVer (FIPS186-4)",
            "cavpCertName": "A3548",
            "properties": "L - 1024, 2048, 3072 N - 160, 224, 256 Hash Algorithm - SHA-1, SHA2-224, SHA2- 256, SHA2-384, SHA2-512, SHA2-512/224, SHA2-512/256",
            "reference": "FIPS 186-4"
          },
          {
            "algorithm": "DSA SigGen (FIPS186-4)",
            "cavpCertName": "A3548",
            "properties": "L - 2048, 3072 N - 224, 256 Hash Algorithm - SHA2-224, SHA2-256, SHA2- 384, SHA2-512, SHA2-512/224, SHA2-512/256",
            "reference": "FIPS 186-4"
          },
          {
            "algorithm": "DSA SigVer (FIPS186-4)",
            "cavpCertName": "A3548",
            "properties": "L - 1024, 2048, 3072 N - 160, 224, 256 Hash Algorithm - SHA-1, SHA2-224, SHA2- 256, SHA2-384, SHA2-512, SHA2-512/224, SHA2-512/256",
            "reference": "FIPS 186-4"
          },
          {
            "algorithm": "ECDSA KeyGen (FIPS186-4)",
            "cavpCertName": "A3548",
            "properties": "Curve - B-233, B-283, B-409, B-571, K-233, K- 283, K-409, K-571, P-224, P-256, P-384, P-521 Secret Generation Mode - Testing Candidates",
            "reference": "FIPS 186-4"
          },
          {
            "algorithm": "ECDSA KeyVer (FIPS186-4)",
            "cavpCertName": "A3548",
            "properties": "Curve - B-163, B-233, B-283, B-409, B-571, K- 163, K-233, K-283, K-409, K-571, P-192, P- 224, P-256, P-384, P-521",
            "reference": "FIPS 186-4"
          },
          {
            "algorithm": "ECDSA SigGen (FIPS186-4)",
            "cavpCertName": "A3548",
            "properties": "Component - No, Yes Curve - B-233, B-283, B-409, B-571, K-233, K- 283, K-409, K-571, P-224, P-256, P-384, P-521 Hash Algorithm - SHA2-224, SHA2-256, SHA2- 384, SHA2-512, SHA2-512/224, SHA2- 512/256, SHA3-224, SHA3-256, SHA3-384, SHA3-512",
            "reference": "FIPS 186-4"
          },
          {
            "algorithm": "ECDSA SigVer (FIPS186-4)",
            "cavpCertName": "A3548",
            "properties": "Component - No, Yes Curve - B-163, B-233, B-283, B-409, B-571, K- 163, K-233, K-283, K-409, K-571, P-192, P- 224, P-256, P-384, P-521 Hash Algorithm - SHA-1, SHA2-224, SHA2- 256, SHA2-384, SHA2-512, SHA2-512/224, SHA2-512/256, SHA3-224, SHA3-256, SHA3- 384, SHA3-512",
            "reference": "FIPS 186-4"
          },
          {
            "algorithm": "Hash DRBG",
            "cavpCertName": "A3548",
            "properties": "Prediction Resistance - Yes Mode - SHA-1, SHA2-224, SHA2-256, SHA2- 384, SHA2-512, SHA2-512/224, SHA2- 512/256, SHA3-256, SHA3-512",
            "reference": "SP 800-90A Rev. 1"
          },
          {
            "algorithm": "HMAC DRBG",
            "cavpCertName": "A3548",
            "properties": "Prediction Resistance - Yes Mode - SHA-1, SHA2-224, SHA2-256, SHA2- 384, SHA2-512, SHA2-512/224, SHA2- 512/256, SHA3-256, SHA3-512",
            "reference": "SP 800-90A Rev. 1"
          },
          {
            "algorithm": "HMAC-SHA-1",
            "cavpCertName": "A3548",
            "properties": "Key Length - Key Length: 8-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "HMAC-SHA2-224",
            "cavpCertName": "A3548",
            "properties": "Key Length - Key Length: 8-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "HMAC-SHA2-256",
            "cavpCertName": "A3548",
            "properties": "Key Length - Key Length: 8-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "HMAC-SHA2-384",
            "cavpCertName": "A3548",
            "properties": "Key Length - Key Length: 8-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "HMAC-SHA2-512",
            "cavpCertName": "A3548",
            "properties": "Key Length - Key Length: 8-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "HMAC-SHA2- 512/224",
            "cavpCertName": "A3548",
            "properties": "Key Length - Key Length: 8-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "HMAC-SHA2- 512/256",
            "cavpCertName": "A3548",
            "properties": "Key Length - Key Length: 8-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "HMAC-SHA3-224",
            "cavpCertName": "A3548",
            "properties": "Key Length - Key Length: 8-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "HMAC-SHA3-256",
            "cavpCertName": "A3548",
            "properties": "Key Length - Key Length: 8-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "HMAC-SHA3-384",
            "cavpCertName": "A3548",
            "properties": "Key Length - Key Length: 8-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "HMAC-SHA3-512",
            "cavpCertName": "A3548",
            "properties": "Key Length - Key Length: 8-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "KAS-ECC CDH- Component SP800-56Ar3 (CVL)",
            "cavpCertName": "A3548",
            "properties": "Curve - B-233, B-283, B-409, B-571, K-233, K- 283, K-409, K-571, P-224, P-256, P-384, P-521",
            "reference": "SP 800-56A Rev. 3"
          },
          {
            "algorithm": "KAS-ECC-SSC Sp800-56Ar3",
            "cavpCertName": "A3548",
            "properties": "Domain Parameter Generation Methods - B- 233, B-283, B-409, B-571, K-233, K-283, K- 409, K-571, P-224, P-256, P-384, P-521 Scheme - ephemeralUnified - KAS Role - initiator, responder",
            "reference": "SP 800-56A Rev. 3"
          },
          {
            "algorithm": "KAS-FFC-SSC Sp800-56Ar3",
            "cavpCertName": "A3548",
            "properties": "Domain Parameter Generation Methods - FB, FC, ffdhe2048, ffdhe3072, ffdhe4096, ffdhe6144, ffdhe8192, MODP-2048, MODP- 3072, MODP-4096, MODP-6144, MODP-8192 Scheme - dhEphem - KAS Role - initiator, responder",
            "reference": "SP 800-56A Rev. 3"
          },
          {
            "algorithm": "KAS-IFC-SSC",
            "cavpCertName": "A3548",
            "properties": "Modulo - 2048, 3072, 4096, 6144, 8192 Key Generation Methods - rsakpg1-basic, rsakpg1-crt, rsakpg1-prime-factor, rsakpg2- basic, rsakpg2-crt, rsakpg2-prime-factor Scheme - KAS1 - KAS Role - initiator, responder KAS2 - KAS Role - initiator, responder",
            "reference": "SP 800-56A Rev. 3"
          },
          {
            "algorithm": "KDA HKDF SP800-56Cr2",
            "cavpCertName": "A3548",
            "properties": "Derived Key Length - 2048 Shared Secret Length - Shared Secret Length:",
            "reference": "SP 800-56C Rev. 2"
          },
          {
            "algorithm": "",
            "cavpCertName": "",
            "properties": "224-8192 Increment 8 HMAC Algorithm - SHA-1, SHA2-224, SHA2- 256, SHA2-384, SHA2-512, SHA2-512/224, SHA2-512/256, SHA3-224, SHA3-256, SHA3- 384, SHA3-512",
            "reference": ""
          },
          {
            "algorithm": "KDA OneStep SP800-56Cr2",
            "cavpCertName": "A3548",
            "properties": "Derived Key Length - 2048 Shared Secret Length - Shared Secret Length: 224-8192 Increment 8",
            "reference": "SP 800-56C Rev. 2"
          },
          {
            "algorithm": "KDA TwoStep SP800-56Cr2",
            "cavpCertName": "A3548",
            "properties": "MAC Salting Methods - default, random KDF Mode - feedback Derived Key Length - 2048 Shared Secret Length - Shared Secret Length: 224-8192 Increment 8",
            "reference": "SP 800-56C Rev. 2"
          },
          {
            "algorithm": "KDF ANS 9.42 (CVL)",
            "cavpCertName": "A3548",
            "properties": "KDF Type - DER Hash Algorithm - SHA-1, SHA2-224, SHA2- 256, SHA2-384, SHA2-512, SHA2-512/224, SHA2-512/256, SHA3-224, SHA3-256, SHA3- 384, SHA3-512 Key Data Length - Key Data Length: 8-4096 Increment 8",
            "reference": "SP 800-135 Rev. 1"
          },
          {
            "algorithm": "KDF ANS 9.63 (CVL)",
            "cavpCertName": "A3548",
            "properties": "Hash Algorithm - SHA2-224, SHA2-256, SHA2- 384, SHA2-512 Key Data Length - Key Data Length: 128, 4096",
            "reference": "SP 800-135 Rev. 1"
          },
          {
            "algorithm": "KDF KMAC Sp800-108r1",
            "cavpCertName": "A3548",
            "properties": "Derived Key Length - Derived Key Length: 112- 4096 Increment 8",
            "reference": "SP 800-108 Rev. 1"
          },
          {
            "algorithm": "KDF SP800-108",
            "cavpCertName": "A3548",
            "properties": "KDF Mode - Counter, Feedback Supported Lengths - Supported Lengths: 8, 72, 128, 776, 3456, 4096",
            "reference": "SP 800-108 Rev. 1"
          },
          {
            "algorithm": "KDF SSH (CVL)",
            "cavpCertName": "A3548",
            "properties": "Cipher - AES-128, AES-192, AES-256 Hash Algorithm - SHA-1, SHA2-224, SHA2- 256, SHA2-384, SHA2-512",
            "reference": "SP 800-135 Rev. 1"
          },
          {
            "algorithm": "KMAC-128",
            "cavpCertName": "A3548",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Key Data Length - Key Data Length: 128-1024 Increment 8",
            "reference": "SP 800-185"
          },
          {
            "algorithm": "KMAC-256",
            "cavpCertName": "A3548",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Key Data Length - Key Data Length: 128-1024 Increment 8",
            "reference": "SP 800-185"
          },
          {
            "algorithm": "KTS-IFC",
            "cavpCertName": "A3548",
            "properties": "Modulo - 2048, 3072, 4096, 6144 Key Generation Methods - rsakpg1-basic, rsakpg1-crt, rsakpg1-prime-factor, rsakpg2- basic, rsakpg2-crt, rsakpg2-prime-factor Scheme - KTS-OAEP-basic - KAS Role - initiator, responder Key Transport Method - Key Length - 1024",
            "reference": "SP 800-56B Rev. 2"
          },
          {
            "algorithm": "PBKDF",
            "cavpCertName": "A3548",
            "properties": "Iteration Count - Iteration Count: 1-10000 Increment 1 Password Length - Password Length: 8-128 Increment 8",
            "reference": "SP 800-132"
          },
          {
            "algorithm": "RSA KeyGen (FIPS186-4)",
            "cavpCertName": "A3548",
            "properties": "Key Generation Mode - B.3.3, B.3.6 Modulo - 2048, 3072, 4096 Primality Tests - Table C.2, Table C.3 Private Key Format - Standard",
            "reference": "FIPS 186-4"
          },
          {
            "algorithm": "RSA SigGen (FIPS186-4)",
            "cavpCertName": "A3548",
            "properties": "Signature Type - ANSI X9.31, PKCS 1.5, PKCSPSS Modulo - 2048, 3072, 4096",
            "reference": "FIPS 186-4"
          },
          {
            "algorithm": "RSA Signature Primitive (CVL)",
            "cavpCertName": "A3548",
            "properties": "Private Key Format - CRT",
            "reference": "FIPS 186-4"
          },
          {
            "algorithm": "RSA SigVer (FIPS186-4)",
            "cavpCertName": "A3548",
            "properties": "Signature Type - ANSI X9.31, PKCS 1.5, PKCSPSS Modulo - 1024, 2048, 3072, 4096",
            "reference": "FIPS 186-4"
          },
          {
            "algorithm": "Safe Primes Key Generation",
            "cavpCertName": "A3548",
            "properties": "Safe Prime Groups - ffdhe2048, ffdhe3072, ffdhe4096, ffdhe6144, ffdhe8192, MODP-2048, MODP-3072, MODP-4096, MODP-6144, MODP-8192",
            "reference": "SP 800-56A Rev. 3"
          },
          {
            "algorithm": "Safe Primes Key Verification",
            "cavpCertName": "A3548",
            "properties": "Safe Prime Groups - ffdhe2048, ffdhe3072, ffdhe4096, ffdhe6144, ffdhe8192, MODP-2048, MODP-3072, MODP-4096, MODP-6144, MODP-8192",
            "reference": "SP 800-56A Rev. 3"
          },
          {
            "algorithm": "SHA-1",
            "cavpCertName": "A3548",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 180-4"
          },
          {
            "algorithm": "SHA2-224",
            "cavpCertName": "A3548",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 180-4"
          },
          {
            "algorithm": "SHA2-256",
            "cavpCertName": "A3548",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 180-4"
          },
          {
            "algorithm": "SHA2-384",
            "cavpCertName": "A3548",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 180-4"
          },
          {
            "algorithm": "SHA2-512",
            "cavpCertName": "A3548",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 180-4"
          },
          {
            "algorithm": "SHA2-512/224",
            "cavpCertName": "A3548",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 180-4"
          },
          {
            "algorithm": "SHA2-512/256",
            "cavpCertName": "A3548",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 180-4"
          },
          {
            "algorithm": "SHA3-224",
            "cavpCertName": "A3548",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 202"
          },
          {
            "algorithm": "SHA3-256",
            "cavpCertName": "A3548",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 202"
          },
          {
            "algorithm": "SHA3-384",
            "cavpCertName": "A3548",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 202"
          },
          {
            "algorithm": "SHA3-512",
            "cavpCertName": "A3548",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 202"
          },
          {
            "algorithm": "SHAKE-128",
            "cavpCertName": "A3548",
            "properties": "Output Length - Output Length: 16-65536 Increment 8",
            "reference": "FIPS 202"
          },
          {
            "algorithm": "SHAKE-256",
            "cavpCertName": "A3548",
            "properties": "Output Length - Output Length: 16-65536 Increment 8",
            "reference": "FIPS 202"
          },
          {
            "algorithm": "TLS v1.2 KDF RFC7627 (CVL)",
            "cavpCertName": "A3548",
            "properties": "Hash Algorithm - SHA2-256, SHA2-384, SHA2- 512",
            "reference": "SP 800-135 Rev. 1"
          },
          {
            "algorithm": "TLS v1.3 KDF (CVL)",
            "cavpCertName": "A3548",
            "properties": "HMAC Algorithm - SHA2-256, SHA2-384 KDF Running Modes - DHE, PSK, PSK-DHE",
            "reference": "SP 800-135 Rev. 1"
          }
        ],
        "found": true,
        "section": 2,
        "subsection": 5
      },
      "approved_services": {
        "entries": [
          {
            "description": "Module initialization",
            "indicator": "FIPS_O K",
            "inputs": "Core handle, dispatch in and out, provider context",
            "name": "Initialize",
            "outputs": "Initializatio n status (1 = pass, 0 = fail)",
            "rolesSspAccess": "Crypto Officer - DRBG_E I: G,W,E,Z - DRBG_S tate: G - Software Integrity key: E",
            "secFunImpl": "Random Number Generatio n"
          },
          {
            "description": "Show status; Core operations dispatched by FIPS provider: Metadata (Gettable parameters; Get parameters; Get capabilities); Query; Self- test",
            "indicator": "FIPS_O K",
            "inputs": "Provider context, paramete rs types (array), capability , callback pointer and argument s, operation ID",
            "name": "Core (all except Teardown) (Show Status, Show Version)",
            "outputs": "Parameter types (array) with: Name, Version, BuildInfo, Status, SecurityCh ecks; Status return, TLS group capabilities , Null or array of available operations",
            "rolesSspAccess": "Crypto Officer",
            "secFunImpl": "None"
          },
          {
            "description": "Run the self- test sequence",
            "indicator": "FIPS_O K",
            "inputs": "Provider context",
            "name": "Core: Perform self-tests",
            "outputs": "Status (1 = pass, 0 = fail)",
            "rolesSspAccess": "Crypto Officer",
            "secFunImpl": "Perform self-tests (All) Software Integrity Test"
          },
          {
            "description": "Uninstantiate the module; includes Zeroise",
            "indicator": "FIPS_O K",
            "inputs": "Provider context",
            "name": "Core: Teardown (Perform zeroisation)",
            "outputs": "None",
            "rolesSspAccess": "Crypto Officer - DS_SGK : Z - DS_SVK: Z - GKP_Pri vate: Z - GKP_Pu blic: Z - KAS_Pri vate: Z - KAS_Pu blic: Z - KAS_SS: Z - KD_DKM : Z - KH_Key: Z - KTS_KD K: Z - KTS_KE K: Z - KTS_SS: Z - DRBG_E I: Z -",
            "secFunImpl": "None"
          },
          {
            "description": "",
            "indicator": "",
            "inputs": "",
            "name": "",
            "outputs": "",
            "rolesSspAccess": "DRBG_S eed: Z - DRBG_S tate: Z - SC_EDK : Z - Software Integrity key: Z",
            "secFunImpl": ""
          },
          {
            "description": "Encapsulate or decapsulate key material on behalf of the calling process (does not establish keys into the module)",
            "indicator": "[KTS- IFC: RSA, 4, (2048, 3072, 4096, 6144, 8192)]",
            "inputs": "Encapsul ate: Key struct (KTS_KD K); Decapsul ate (KTS_KE K)",
            "name": "Asymmetric cipher (Key Transport) (Perform approved security functions)",
            "outputs": "Status return; KTS_SS",
            "rolesSspAccess": "Crypto Officer - KTS_KD K: E - KTS_KE K: E - KTS_SS: R",
            "secFunImpl": "KTS-4"
          },
          {
            "description": "Encrypt or decrypt data, including AEAD modes (CCM, GCM) and key wrap (KW, KWP) (CSPs are passed in by the calling process or generated within the module)",
            "indicator": "[AES- ECB: AES- 128- ECB, AES- 192- ECB, AES- 256- ECB]; [AES- CBC: AES- 128- CBC, AES- 192- CBC, AES- 256- CBC]; [AES- CBC- CS:",
            "inputs": "SC_EDK and KH_Key (for key wrapping ); flags",
            "name": "Cipher (Encryption/Dec ryption and Key Wrapping) (Perform approved security functions)",
            "outputs": "Status return. Plaintext or ciphertext data, or wrapped key",
            "rolesSspAccess": "Crypto Officer - SC_EDK : E - KH_Key: E",
            "secFunImpl": "Symmetri c Encryptio n and Decryptio n Keyed Hash KTS-1 KTS-2 KTS-3 Cryptogra phic Key Generatio n (CKG) Cryptogra phic Key Generatio n (CKG) - AES XTS KTS-5"
          },
          {
            "description": "",
            "indicator": "AES- 128- CBC- CTS, AES- 192- CBC- CTS, AES- 256- CBC- CTS]; [AES- OFB: AES- 128- OFB, AES- 192- OFB, AES- 256- OFB]; [AES- CFB1: AES- 128- CFB1, AES- 192- CFB1, AES- 256- CFB1]; [AES- CFB8: AES- 128- CFB8, AES- 192- CFB8, AES- 256- CFB8]; [AES- CFB128: AES-",
            "inputs": "",
            "name": "",
            "outputs": "",
            "rolesSspAccess": "",
            "secFunImpl": ""
          },
          {
            "description": "",
            "indicator": "128- CFB, AES- 192- CFB, AES- 256- CFB]; [AES- CTR: AES- 128- CTR, AES- 192- CTR, AES- 256- CTR]; [AES- CCM: AES- 128- CCM, AES- 192- CCM, AES- 256- CCM]; [AES- GCM: AES- 128- GCM, AES- 192- GCM, AES- 256- GCM]; [AES- XTS: AES- 128- XTS, AES- 256-",
            "inputs": "",
            "name": "",
            "outputs": "",
            "rolesSspAccess": "",
            "secFunImpl": ""
          },
          {
            "description": "",
            "indicator": "XTS]; [AES- KW, KWP: AES- 128- WRAP, AES- 256- WRAP]",
            "inputs": "",
            "name": "",
            "outputs": "",
            "rolesSspAccess": "",
            "secFunImpl": ""
          },
          {
            "description": "Derive keying material",
            "indicator": "[PBKDF: PBKDF2 , (SHA- 1, SHA2- 224, SHA2- 256, SHA2- 384, SHA2- 512, SHA2- 512/224, SHA2- 512/256, SHA3- 224, SHA3- 256, SHA3- 384, SHA3- 512)]; [TLS1- PRF, (SHA2- 256, SHA2- 384, SHA2- 512)]; [TLS13- KDF, (SHA2- 256, SHA2- 384)];",
            "inputs": "KAS_SS; flags",
            "name": "Key derivation (Perform approved security functions)",
            "outputs": "Status return; KD_DKM",
            "rolesSspAccess": "Crypto Officer - KAS_SS: W,E - KD_DKM : G,R - KTS_SS: W,E - PBKDF Passwor d: W,E,Z",
            "secFunImpl": "Key Derivatio n"
          },
          {
            "description": "",
            "indicator": "[X963- KDF, (SHA2- 224, SHA2- 256, SHA2- 384, SHA2- 512)]; [X942KD F-ASNI, (SHA1, SHA2- 224, SHA2- 256, SHA2- 384, SHA2- 512, SHA2- 512/224, SHA2- 512/256, SHA3- 224, SHA3- 256, SHA3- 384, SHA3- 512)]; [NIST SP 800- 108r1 KDF KMAC: KBKDF, (KMAC- 128, KMAC- 256)]; [NIST SP 800- 108r1 KDF: KBKDF,",
            "inputs": "",
            "name": "",
            "outputs": "",
            "rolesSspAccess": "",
            "secFunImpl": ""
          },
          {
            "description": "",
            "indicator": "MAC: CMAC, Cipher: AES- 128- CBC, AES- 192- CBC, AES- 256- CBC, MAC: HMAC- SHA1, HMAC- SHA2- 224, HMAC- SHA2- 256, HMAC- SHA2- 384, HMAC- SHA2- 256, HMAC- SHA2- 384, HMAC- SHA2- 512, HMAC- SHA2- 512/224, HMAC- SHA2- 512/256, HMAC- SHA3- 224, HMAC- SHA3- 256, HMAC- SHA3- 384,",
            "inputs": "",
            "name": "",
            "outputs": "",
            "rolesSspAccess": "",
            "secFunImpl": ""
          },
          {
            "description": "",
            "indicator": "HMAC- SHA3- 512]; [KDF SSH: SSHKD F, (SHA1, SHA2- 224, SHA2- 256, SHA2- 384, SHA2- 512)]; [OneSte p KDF: SSKDF, (SHA1, SHA2- 224, SHA2- 256, SHA2- 384, SHA2- 512, SHA2- 512/224, SHA2- 512/256, SHA3- 224, SHA3- 256, SHA3- 384, SHA3- 512, HMAC- SHA1, HMAC- SHA2- 224, HMAC- SHA2- 256,",
            "inputs": "",
            "name": "",
            "outputs": "",
            "rolesSspAccess": "",
            "secFunImpl": ""
          },
          {
            "description": "",
            "indicator": "HMAC- SHA2- 384, HMAC- SHA2- 512, HMAC- SHA2- 512/224, HMAC- SHA2- 512/256, SHA3- 224, SHA3- 256, SHA3- 384, SHA3- 512, KMAC- 128, KMAC- 256)]; [TwoSte p KDF: HKDF, MAC: HMAC, (SHA1, SHA2- 224, SHA2- 256, SHA2- 384, SHA2- 512, SHA2- 512/224, SHA2- 512/256, SHA3- 224, SHA3- 256, SHA3- 384,",
            "inputs": "",
            "name": "",
            "outputs": "",
            "rolesSspAccess": "",
            "secFunImpl": ""
          },
          {
            "description": "",
            "indicator": "SHA3- 512]; [HKDF: HKDF, MAC: HMAC, (SHA1, SHA2- 224, SHA2- 256, SHA2- 384, SHA2- 512, SHA2- 512/224, SHA2- 512/256, SHA3- 224, SHA3- 256, SHA3- 384, SHA3- 512];",
            "inputs": "",
            "name": "",
            "outputs": "",
            "rolesSspAccess": "",
            "secFunImpl": ""
          },
          {
            "description": "Perform key agreement primitives on behalf of the calling process (does not establish keys into the module)",
            "indicator": "[KAS- FFC- SSC: DHX]; [KAS- ECC- SSC: EC]",
            "inputs": "Key structs (KAS_Pri vate and KAS_Pu blic); flags",
            "name": "Key exchange (Perform approved security functions)",
            "outputs": "Status return; KAS_SS",
            "rolesSspAccess": "Crypto Officer - KAS_Pri vate: E - KAS_Pu blic: E - KAS_SS: G",
            "secFunImpl": "KAS-1 KAS-2 KAS-3 KAS ECC CDH Compone nt"
          },
          {
            "description": "Generate asymmetric key pairs",
            "indicator": "[SafePri mes: DHX]; [RSA KeyGen: RSA, (2048, 3072, 4096)]; [ECDSA",
            "inputs": "ECDSA: curve identifier. DSA/RS A: modulus size",
            "name": "Key management (Perform approved security functions)",
            "outputs": "Status return; Key struct (GKP_Priv ate, GKP_Publi c)",
            "rolesSspAccess": "Crypto Officer - GKP_Pri vate: G - GKP_Pu blic: G",
            "secFunImpl": "Asymmet ric Key Pair Generatio n"
          },
          {
            "description": "",
            "indicator": "KeyGen: EC]; [DSA KeyGen: DSA, (L=2048, N=28, 32), (L=3072, N=32)]",
            "inputs": "",
            "name": "",
            "outputs": "",
            "rolesSspAccess": "",
            "secFunImpl": ""
          },
          {
            "description": "Generate or verify data integrity. (CSPs are passed in by the calling process or generated within the module)",
            "indicator": "[HMAC: HMAC- SHA1, HMAC- SHA2- 224, HMAC- SHA2- 256, HMAC- SHA2- 384, HMAC- SHA2- 512, HMAC- SHA2- 512/224, HMAC- SHA2- 512/256, HMAC- SHA3- 224, HMAC- SHA3- 256, HMAC- SHA3- 384, HMAC- SHA3- 512]; [CMAC]; [KMAC: KMAC- 128, KMAC-",
            "inputs": "KH_Key",
            "name": "Message authentication (Perform approved security functions)",
            "outputs": "Status return; Tag value",
            "rolesSspAccess": "Crypto Officer - KH_Key: E",
            "secFunImpl": "Keyed Hash Cryptogra phic Key Generatio n (CKG)"
          },
          {
            "description": "",
            "indicator": "256]; [GMAC: AES- 128- GCM, AES- 192- GCM, AES- 256- GCM]",
            "inputs": "",
            "name": "",
            "outputs": "",
            "rolesSspAccess": "",
            "secFunImpl": ""
          },
          {
            "description": "Generate a message digest",
            "indicator": "[SHA-1, SHA2- 224, SHA2- 256, SHA2- 384, SHA2- 512, SHA2- 512/224, SHA2- 512/256, SHA3- 224, SHA3- 256, SHA3- 384, SHA3- 512, SHAKE- 128, SHAKE- 256]",
            "inputs": "Message ; flags",
            "name": "Message digest (Perform approved security functions)",
            "outputs": "Status return; Hash value",
            "rolesSspAccess": "Crypto Officer",
            "secFunImpl": "Message Digest"
          },
          {
            "description": "Generate random bits using the DRBG",
            "indicator": "[Hash DRBG: HASH- DRBG, (SHA1, SHA2- 256, SHA2- 512)]; [HMAC- DRBG, (SHA1,",
            "inputs": "DRBG struct (RBG State); DRBG_E I",
            "name": "Random (Perform approved security functions)",
            "outputs": "Status return; Random value",
            "rolesSspAccess": "Crypto Officer - DRBG_E I: E - DRBG_S eed: E - DRBG_S tate: E",
            "secFunImpl": "Random Number Generatio n"
          },
          {
            "description": "",
            "indicator": "SHA2- 256, SHA2- 512)]; [CTR- DRBG, (AES- 128- CTR, AES- 192- CTR, AES- 256-",
            "inputs": "",
            "name": "",
            "outputs": "",
            "rolesSspAccess": "",
            "secFunImpl": ""
          },
          {
            "description": "Generate or verify digital signatures (SSPs are passed in by the calling process)",
            "indicator": "CTR)] [RSA SigGen: RSA, (2048, 3072, 4096), (SHA2- 224, SHA2- 256, SHA2- 384, SHA2- 512, SHA2- 512/224, SHA2- 512/256) ]; [RSA SigVer: RSA, (1024, 2048, 3072, 4096), (SHA1, SHA2- 224, SHA2- 256, SHA2- 384, SHA2-",
            "inputs": "Sign: Key struct (DS_SG K); message ; Verify: signature value; Key struct (DS_SV K); flags; sizes",
            "name": "Signature (Perform approved security functions)",
            "outputs": "Status return; Signature value",
            "rolesSspAccess": "Crypto Officer - DS_SGK : E - DS_SVK: E",
            "secFunImpl": "RSA Digital Signature Generatio n and Verificatio n ECDSA Signature Generatio n and Signature Verificatio n DSA Digital Signature Generatio n and Verificatio n RSA Signature Primitive"
          },
          {
            "description": "",
            "indicator": "512, SHA2- 512/224, SHA2- 512/256) ]; [RSA Signatur e Primitive : RSA, 2048, hash algorith m: (null)]; [ECDSA SigGen: EC, (SHA2- 224, SHA2- 256, SHA2- 384, SHA2- 512, SHA3- 224, SHA3- 256, SHA3- 384, SHA3- 512)]; [ECDSA SigVer: EC, (SHA1, SHA2- 224, SHA2- 256, SHA2- 384, SHA2- 512, SHA2- 512/224,",
            "inputs": "",
            "name": "",
            "outputs": "",
            "rolesSspAccess": "",
            "secFunImpl": ""
          },
          {
            "description": "",
            "indicator": "SHA2- 512/256) ]; [ECDSA SigGen Compon ent]: EC, hash: (null)]; [DSA, PQGGe n: DSA, (L= 2048, N=28, SHA2- 224, SHA2- 256, SHA2- 384, SHA2- 512, SHA2- 512/224, SHA2- 512/256) , (L=2048, 3072, N=32, =SHA2- 256, SHA2- 384, SHA2- 512, SHA2- 512/256) ]; [DSA PQGVer : DSA, N=20 bytes, 28 bytes, 32 bytes];",
            "inputs": "",
            "name": "",
            "outputs": "",
            "rolesSspAccess": "",
            "secFunImpl": ""
          },
          {
            "description": "",
            "indicator": "[DSA, SigGen: DSA, (L= 2048, 3072), (N=28, 32), (SHA2- 224, SHA2- 256, SHA2- 384, SHA2- 512, SHA2- 512/224, SHA2- 512/256) ]; [DSA, SigVer: DSA, (L=1024, N=20), (L=2048, N=28, 32), (L=3072, N=28, 32), (SHA1, SHA2- 224, SHA2- 256, SHA2- 384, SHA2- 512, SHA2- 512/224, SHA2- 512/256) ]",
            "inputs": "",
            "name": "",
            "outputs": "",
            "rolesSspAccess": "",
            "secFunImpl": ""
          },
          {
            "description": "*The core Teardown operation",
            "indicator": "ZERO_ OK",
            "inputs": "Memory pointer",
            "name": "Zeroise (Perform zeroisation)",
            "outputs": "Void",
            "rolesSspAccess": "Crypto Officer -",
            "secFunImpl": "None"
          },
          {
            "description": "zeroizes all Module scope SSPs *Call stack cleanup is the duty of the application *Restarting the general- purpose computer clears all SSPs in RAM *OPENSSL_cl eanse provides zeroisation of SSPs managed by the caller; See the notes below this table for additional explanation",
            "indicator": "",
            "inputs": "",
            "name": "",
            "outputs": "",
            "rolesSspAccess": "DS_SGK : Z - DS_SVK: Z - GKP_Pri vate: Z - GKP_Pu blic: Z - KAS_Pri vate: Z - KAS_Pu blic: Z - KAS_SS: Z - KD_DKM : Z - KH_Key: Z - KTS_KD K: Z - KTS_KE K: Z - KTS_SS: Z - DRBG_E I: Z - DRBG_S eed: Z - DRBG_S tate: Z - SC_EDK : Z -",
            "secFunImpl": ""
          },
          {
            "description": "",
            "indicator": "",
            "inputs": "",
            "name": "",
            "outputs": "",
            "rolesSspAccess": "Software Integrity key: Z",
            "secFunImpl": ""
          }
        ],
        "found": true,
        "section": 4,
        "subsection": 3
      },
      "authentication_methods": {
        "entries": [],
        "found": false,
        "section": 4,
        "subsection": 1
      },
      "cond_self_tests": {
        "entries": [
          {
            "algorithmOrTest": "AES-ECB (A3548)",
            "condition": "On reloading the module",
            "details": "Decrypt",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "Key Length: 128 bits",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-GCM (A3548)",
            "condition": "On reloading the module",
            "details": "Encrypt",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "Key Length: 256 bits",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-GCM (A3548)",
            "condition": "On reloading the module",
            "details": "Decrypt",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "Key Length: 256 bits",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "Counter DRBG (A3548)",
            "condition": "On reloading the module",
            "details": "Generate, Reseed, Instantiate functions",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "AES CTR (128 bits) with derivation function",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "DSA SigGen (FIPS186- 4) (A3548)",
            "condition": "On reloading the module",
            "details": "Sign",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "Modulus: 2048 bits; Hash: SHA2-384",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "DSA SigVer (FIPS186- 4) (A3548)",
            "condition": "On reloading the module",
            "details": "Verify",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "Modulus: 2048 bits; Hash: SHA2-384",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "ECDSA SigGen (FIPS186- 4) (A3548)",
            "condition": "On reloading the module",
            "details": "Sign",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "Curve: P- 224; Hash: SHA2-512",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "ECDSA SigVer (FIPS186- 4) (A3548)",
            "condition": "On reloading the module",
            "details": "Verify",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "Curve: P- 224; Hash: SHA2-512",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "Hash DRBG (A3548)",
            "condition": "On reloading the module",
            "details": "Generate, Reseed,",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "PRF: SHA2-256",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "",
            "condition": "",
            "details": "Instantiate functions",
            "indicator": "",
            "testMethod": "",
            "testProps": "",
            "type": ""
          },
          {
            "algorithmOrTest": "HMAC DRBG (A3548)",
            "condition": "On reloading the module",
            "details": "Generate, Reseed, Instantiate functions",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "PRF: HMAC- SHA-1",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "HMAC- SHA2-256 (A3548)",
            "condition": "Performed prior to the software integrity test",
            "details": "HMAC tag Generation",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "PRF: SHA2-256",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "KAS- ECC-SSC Sp800- 56Ar3 (A3548)",
            "condition": "On reloading the module",
            "details": "Key Agreement - Shared Secret Computation",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "Scheme: Ephemeral Unified, Curve: P- 256",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "KAS-FFC- SSC Sp800- 56Ar3 (A3548)",
            "condition": "On reloading the module",
            "details": "Key Agreement - Shared Secret Computation",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "Scheme: dhEphem; Modulus: L = 2048 bits, N = 256 bit",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "KAS-IFC- SSC (A3548)",
            "condition": "On reloading the module",
            "details": "Key Agreement - Shared Secret Computation",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "Schemes: Basic, CRT, Modulus: L = 2048 bits",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "KDF SP800- 108 (A3548)",
            "condition": "On reloading the module",
            "details": "Counter Mode (HMAC- SHA2-256).",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "Mode: Counter, PRF: HMAC- SHA2-256",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "KDA OneStep SP800- 56Cr2 (A3548)",
            "condition": "On reloading the module",
            "details": "Key Derivation",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "Auxiliary Function, H = SHA2- 224",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "KDA TwoStep SP800- 56Cr2 (A3548)",
            "condition": "On reloading the module",
            "details": "Key Derivation",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "Auxiliary Function, H = HMAC- SHA2-256",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "KTS-IFC (A3548)",
            "condition": "On reloading the module",
            "details": "Encrypt",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "Schemes: Basic Modulus: L = 2048 bits",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "KTS-IFC (A3548)",
            "condition": "On reloading the module",
            "details": "Decrypt",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "Schemes: Basic, CRT,",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "",
            "condition": "",
            "details": "",
            "indicator": "",
            "testMethod": "",
            "testProps": "Modulus: L = 2048 bits",
            "type": ""
          },
          {
            "algorithmOrTest": "PBKDF (A3548)",
            "condition": "On reloading the module",
            "details": "Key Derivation",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "Derivation of the Master Key (MK), PRF: SHA2-256",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "RSA SigGen (FIPS186- 4) (A3548)",
            "condition": "On reloading the module",
            "details": "Sign",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "Scheme: PKCS#1, Modulus: L = 2048, Hash: SHA2-256",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "RSA SigVer (FIPS186- 4) (A3548)",
            "condition": "On reloading the module",
            "details": "Verify",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "Scheme: PKCS#1, Modulus: L = 2048, Hash: SHA2-256",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "SHA-1 (A3548)",
            "condition": "On reloading the module",
            "details": "Hash",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "SHA-1",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "SHA2-512 (A3548)",
            "condition": "On reloading the module",
            "details": "Hash",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "SHA2-512",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "SHA3-256 (A3548)",
            "condition": "On reloading the module",
            "details": "Hash",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "SHA3-256",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "KDF ANS 9.42 (A3548)",
            "condition": "On reloading the module",
            "details": "Key Derivation",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "PRFs: AES KW (128 bits), SHA-1",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "KDF ANS 9.63 (A3548)",
            "condition": "On reloading the module",
            "details": "Key Derivation",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "PRF: SHA2-256",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "KDF SSH (A3548)",
            "condition": "On reloading the module",
            "details": "Key Derivation",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "PRF: SHA- 1",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "TLS v1.2 KDF RFC7627 (A3548)",
            "condition": "On reloading the module",
            "details": "Key Derivation",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "PRF: SHA2-256",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "TLS v1.3 KDF (A3548)",
            "condition": "On reloading the module",
            "details": "Key Derivation",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "PRF: SHA2-256",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "RSA KeyGen (FIPS186- 4) (A3548)",
            "condition": "On generating keys for Key Transport (KTS IFC)/Key Agreement (KAS IFC)/Signature",
            "details": "Key Generation",
            "indicator": "FIPS_OK",
            "testMethod": "PCT",
            "testProps": "Performed post key generation",
            "type": "PCT"
          },
          {
            "algorithmOrTest": "",
            "condition": "Generation/Signature Verification",
            "details": "",
            "indicator": "",
            "testMethod": "",
            "testProps": "",
            "type": ""
          },
          {
            "algorithmOrTest": "ECDSA KeyGen (FIPS186- 4) (A3548)",
            "condition": "On generating keys for Key Agreement (KAS ECC)/Signature Generation/Signature Verification",
            "details": "Key Generation",
            "indicator": "FIPS_OK",
            "testMethod": "PCT",
            "testProps": "Performed post key generation",
            "type": "PCT"
          },
          {
            "algorithmOrTest": "DSA KeyGen (FIPS186- 4) (A3548)",
            "condition": "On generating keys for Key Agreement (KAS FFC)/Signature Generation/Signature Verification",
            "details": "Key Generation",
            "indicator": "FIPS_OK",
            "testMethod": "PCT",
            "testProps": "Performed post key generation",
            "type": "PCT"
          },
          {
            "algorithmOrTest": "ECDSA SigGen (FIPS186- 4) (A3548)",
            "condition": "On reloading the module",
            "details": "Sign",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "Curve: K- 233; Hash: SHA2-512",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "ECDSA SigVer (FIPS186- 4) (A3548)",
            "condition": "On reloading the module",
            "details": "Verify",
            "indicator": "FIPS_OK",
            "testMethod": "KAT",
            "testProps": "Curve: K- 233; Hash: SHA2-512",
            "type": "CAST"
          }
        ],
        "found": true,
        "section": 10,
        "subsection": 2
      },
      "error_states": {
        "entries": [
          {
            "conditions": "If one of the KATs or if the Softwar e Integrit y Test fails, the Module enters the self-test failure error state",
            "description": "*The error state is persistent and no services are available *All attempts to use the Module\u0027s services result in the return of a non-zero error code, PROV_R_FIPS_MODULE_IN_ ERROR_STATE",
            "indicator": "PROV_R_FIPS_MODULE_IN_ ERROR_STATE",
            "name": "ERR OR STA TE",
            "recoveryMethod": "To recove r from an error state, reload the Modul e into memo ry"
          }
        ],
        "found": true,
        "section": 10,
        "subsection": 4
      },
      "mechanisms_actions": {
        "entries": [],
        "found": false,
        "section": 7,
        "subsection": 1
      },
      "modes_of_operation": {
        "entries": [
          {
            "description": "The module must be installed and configured per instructions provided in Section 11 of this document and the module is in the Approved mode by default as a result. The installation of the Module as described in Section 11 results in the settings described below this",
            "name": "Approved mode",
            "statusIndicator": "fips=yes",
            "type": "Approved"
          },
          {
            "description": "table, which are required for operation in the Approved mode",
            "name": "",
            "statusIndicator": "",
            "type": ""
          },
          {
            "description": "The module is in the Approved mode of operation by default. Use of the non-Approved Algorithms Not Allowed in the Approved Mode will place the module in the non-approved mode of operation.",
            "name": "Non- Approved mode",
            "statusIndicator": "fips=no",
            "type": "Non- Approved"
          }
        ],
        "found": true,
        "section": 2,
        "subsection": 4
      },
      "non_approved_allowed_NSC": {
        "entries": [],
        "found": false,
        "section": 2,
        "subsection": 5
      },
      "non_approved_allowed_algos": {
        "entries": [
          {
            "algoPropList": "AES (Any non-authenticated mode), (Cert.#A3548):Symmetric key unwrapping",
            "implName": "OpenSSL Project OpenSSL 3.x FIPS Provider",
            "name": "AES",
            "reference": "Per IG D.G Additional Comment 5"
          }
        ],
        "found": true,
        "section": 2,
        "subsection": 5
      },
      "non_approved_not_allowed": {
        "entries": [
          {
            "name": "Triple-DES",
            "use": "Provides 3-Key ECB and CBC mode, but indicated as fips=no, Encryption, Decryption"
          },
          {
            "name": "Ed448",
            "use": "SHAKE256, Ed448 provides 224 bits of security, Digital Signature Generation"
          },
          {
            "name": "Ed25519",
            "use": "SHA2-512, Ed25519 provides 128 bits of security, Digital Signature Generation"
          },
          {
            "name": "X448",
            "use": "Provides 224 bits of security, Key Agreement"
          },
          {
            "name": "X25519",
            "use": "Provides 128 bits of security, Key Agreement"
          },
          {
            "name": "ECDSA SigVer Component",
            "use": "Provides between 80 and 256 bits for security, Curves: B-163, B-233, B-283, B-409, B-571, K-163, K-233, K-283, K-409, K-571, P-192, P- 224, P-256, P-384, P-521, Digital Signature Verification"
          },
          {
            "name": "FIPS 186-2 RSA SigGen/SigVer",
            "use": "Provides \u003e= 80 bits of security, RSA signature generation/verification per FIPS 186-2"
          },
          {
            "name": "FIPS 186-2 RSA KeyGen",
            "use": "Provides \u003e= 112 bits of security, RSA key generation per FIPS 186-2"
          },
          {
            "name": "X942KDF- CONCAT",
            "use": "Usage of X942KDF-CONCAT with PRF SHA-1, SHA2-512/224, SHA2- 512/256, SHA3-224, SHA3-256, SHA3-384, SHA3-512, SHAKE128, SHAKE256, KECCAK-KMAC128 and KECCAK-KMAC256"
          },
          {
            "name": "X963KDF",
            "use": "Usage of X963KDF with PRF SHA-1, SHA2-512/224, SHA2-512/256, SHA3-224, SHA3-256, SHA3-384, SHA3-512, SHAKE128, SHAKE256, KECCAK-KMAC128 and KECCAK-KMAC256"
          },
          {
            "name": "HKDF",
            "use": "Provides \u003c 112 bits of security, Usage of HKDF with key length less than 112 bits"
          },
          {
            "name": "OneStep KDF",
            "use": "Usage of OneStep KDF with PRF SHAKE128, SHAKE256"
          },
          {
            "name": "HMAC",
            "use": "Provides \u003c 112 bits of security, Usage of HMAC with key length less than 112 bits for MAC generation"
          },
          {
            "name": "Hash and HMAC DRBG",
            "use": "Usage of Hash and HMAC DRBGs with PRFs SHA2-224, SHA2-384, SHA2-512/224 and SHA2-512/256"
          }
        ],
        "found": true,
        "section": 2,
        "subsection": 5
      },
      "non_approved_services": {
        "entries": [
          {
            "alg_accessed": "Ed448 Ed25519 FIPS 186-2 RSA SigGen/SigVer",
            "description": "Generate or verify digital signatures (SSPs are passed in by the calling process)",
            "name": "Signature",
            "role": "Crypto Officer"
          },
          {
            "alg_accessed": "X448 X25519",
            "description": "Perform key agreement primitives on behalf of the calling process",
            "name": "Key Exchange",
            "role": "Crypto Officer"
          },
          {
            "alg_accessed": "",
            "description": "(does not establish keys into the module)",
            "name": "",
            "role": ""
          },
          {
            "alg_accessed": "Triple-DES",
            "description": "Encrypt or decrypt data (CSPs are passed in by the calling process)",
            "name": "Cipher (Encryption/Decryption)",
            "role": "Crypto Officer"
          },
          {
            "alg_accessed": "ECDSA SigVer Component",
            "description": "Verify ECDSA digital signatures (SSPs are passed in by the calling process)",
            "name": "ECDSA SigVer Component",
            "role": "Crypto Officer"
          },
          {
            "alg_accessed": "X942KDF- CONCAT X963KDF HKDF OneStep KDF",
            "description": "Derive keys (key derivation key passed in by the calling process)",
            "name": "Key Derivation",
            "role": "Crypto Officer"
          },
          {
            "alg_accessed": "FIPS 186-2 RSA KeyGen",
            "description": "Generate RSA public/private key pair per FIPS 186-2",
            "name": "Key Generation",
            "role": "Crypto Officer"
          },
          {
            "alg_accessed": "HMAC",
            "description": "Generate HMAC using key length less than 112 bits",
            "name": "Keyed Hash",
            "role": "Crypto Officer"
          },
          {
            "alg_accessed": "Hash and HMAC DRBG",
            "description": "Generate random bits using the non-approved Hash and HMAC DRBGs with PRFs SHA2-224, SHA2-384, SHA2-512/224 and SHA2-512/256",
            "name": "Random",
            "role": "Crypto Officer"
          }
        ],
        "found": true,
        "section": 4,
        "subsection": 4
      },
      "ports_interfaces": {
        "entries": [
          {
            "data": "API entry point: stack frame including non-sensitive parameters",
            "logicalInterface": "Control Input",
            "physicalPort": "N/A"
          },
          {
            "data": "API call parameters passed by reference or value for cryptographic service input",
            "logicalInterface": "Data Input",
            "physicalPort": "N/A"
          },
          {
            "data": "API return value: enumerated status resulting from call execution",
            "logicalInterface": "Status Output",
            "physicalPort": "N/A"
          },
          {
            "data": "API call parameters passed by reference for cryptographic service output",
            "logicalInterface": "Data Output",
            "physicalPort": "N/A"
          }
        ],
        "found": true,
        "section": 3,
        "subsection": 1
      },
      "roles": {
        "entries": [
          {
            "authMethodList": "None",
            "name": "Crypto Officer",
            "operatorType": "Crypto Officer",
            "type": "Role"
          }
        ],
        "found": true,
        "section": 4,
        "subsection": 2
      },
      "security_levels": {
        "entries": [
          {
            "level": "1",
            "section": "1",
            "title": "General"
          },
          {
            "level": "1",
            "section": "2",
            "title": "Cryptographic module specification"
          },
          {
            "level": "1",
            "section": "3",
            "title": "Cryptographic module interfaces"
          },
          {
            "level": "1",
            "section": "4",
            "title": "Roles, services, and authentication"
          },
          {
            "level": "1",
            "section": "5",
            "title": "Software/Firmware security"
          },
          {
            "level": "1",
            "section": "6",
            "title": "Operational environment"
          },
          {
            "level": "N/A",
            "section": "7",
            "title": "Physical security"
          },
          {
            "level": "N/A",
            "section": "8",
            "title": "Non-invasive security"
          },
          {
            "level": "1",
            "section": "9",
            "title": "Sensitive security parameter management"
          },
          {
            "level": "1",
            "section": "10",
            "title": "Self-tests"
          },
          {
            "level": "3",
            "section": "11",
            "title": "Life-cycle assurance"
          },
          {
            "level": "1",
            "section": "12",
            "title": "Mitigation of other attacks"
          },
          {
            "level": "1",
            "section": "",
            "title": "Overall Level"
          }
        ],
        "found": true,
        "section": 1,
        "subsection": 2
      },
      "self_tests": {
        "entries": [
          {
            "algorithmOrTest": "HMAC-SHA2- 256 (A3548)",
            "details": "MAC (HMAC- SHA2-256, A3548)",
            "indicator": "Success: All self- tests passed (as expected)",
            "testMethod": "KAT",
            "testProps": "Key Length: 256 bits",
            "type": "SW/FW Integrity"
          }
        ],
        "found": true,
        "section": 10,
        "subsection": 1
      },
      "ssp_io_methods": {
        "entries": [
          {
            "dest": "Module",
            "distribution": "Manual",
            "entry": "Electroni c",
            "format": "Plaintex t",
            "name": "CALL STACK (API) INPUT PARAMETER S",
            "sfiAlgo": "",
            "source": "Calling application"
          },
          {
            "dest": "Calling application",
            "distribution": "Manual",
            "entry": "Electroni c",
            "format": "Plaintex t",
            "name": "CALL STACK (API) OUTPUT PARAMETER S",
            "sfiAlgo": "",
            "source": "Module"
          },
          {
            "dest": "Stored in the module\u0027s configuratio n file",
            "distribution": "N/A",
            "entry": "N/A",
            "format": "Plaintex t",
            "name": "Stored at manufacture",
            "sfiAlgo": "",
            "source": "Manufacture r"
          }
        ],
        "found": true,
        "section": 9,
        "subsection": 2
      },
      "ssp_zeroization_methods": {
        "entries": [
          {
            "description": "Zeroisation of SSPs managed by the caller",
            "method": "OPENSSL_cleanse",
            "operatorId": "Module initiated",
            "rationale": "The OPENSSL_cleanse provides zeroisation of SSPs managed by the caller"
          },
          {
            "description": "Temporary copies of CSPs are zeroised within the relevant function for the scope within which they are used",
            "method": "cleared after use",
            "operatorId": "Module initiated",
            "rationale": "CSPs with a lifetime associated with an OpenSSL object will be zeroized when reinitialized"
          },
          {
            "description": "This operation triggers Module uninstantiation",
            "method": "Teardown",
            "operatorId": "Operator initiated",
            "rationale": "CSPs with a lifetime associated with the Module are zeroised on Module uninstantiation"
          },
          {
            "description": "RAM (memory) is used for temporary storage of SSPs",
            "method": "Restarting the general-purpose computer",
            "operatorId": "Operator initiated",
            "rationale": "Restarting the general- purpose computer clears all SSPs in RAM"
          }
        ],
        "found": true,
        "section": 9,
        "subsection": 3
      },
      "storage_areas": {
        "entries": [
          {
            "description": "Temporary, plaintext storage",
            "name": "RAM",
            "persistance": "Dynamic"
          },
          {
            "description": "Persistent, plaintext storage",
            "name": "Stored in the module\u0027s configuration file",
            "persistance": "Static"
          }
        ],
        "found": true,
        "section": 9,
        "subsection": 1
      },
      "tested_module_id_hw": {
        "entries": [],
        "found": false,
        "section": 2,
        "subsection": 2
      },
      "tested_module_id_hw_hy": {
        "entries": [],
        "found": false,
        "section": 2,
        "subsection": 2
      },
      "tested_module_id_sw_fw_hy": {
        "entries": [
          {
            "features": "fips.so for Unix/Linux platforms",
            "integrityTest": "HMAC-SHA2-256",
            "packageFileName": "fips.so",
            "swFwVersion": "3.1.2"
          },
          {
            "features": "fips.dll for Windows platforms",
            "integrityTest": "HMAC-SHA2-256",
            "packageFileName": "fips.dll",
            "swFwVersion": "3.1.2"
          },
          {
            "features": "fips.dylib for Mac platforms",
            "integrityTest": "HMAC-SHA2-256",
            "packageFileName": "fips.dylib",
            "swFwVersion": "3.1.2"
          }
        ],
        "found": true,
        "section": 2,
        "subsection": 2
      },
      "tested_op_env_sw_fw_hy": {
        "entries": [
          {
            "hardwarePlatform": "Dell Inspiron 7573",
            "hypervisorHostOs": "N/A",
            "operatingSystem": "Ubuntu Linux 22.04.1 Server",
            "paa_pai": "No",
            "processors": "Intel i7- 8550U",
            "version": "3.1.2"
          },
          {
            "hardwarePlatform": "Dell Inspiron 7573",
            "hypervisorHostOs": "N/A",
            "operatingSystem": "Ubuntu Linux 22.04.1 Server",
            "paa_pai": "Yes",
            "processors": "Intel i7- 8550U",
            "version": "3.1.2"
          },
          {
            "hardwarePlatform": "Dell Inspiron 7573",
            "hypervisorHostOs": "N/A",
            "operatingSystem": "Debian 11.5",
            "paa_pai": "No",
            "processors": "Intel i7- 8550U",
            "version": "3.1.2"
          },
          {
            "hardwarePlatform": "Dell Inspiron 7573",
            "hypervisorHostOs": "N/A",
            "operatingSystem": "Debian 11.5",
            "paa_pai": "Yes",
            "processors": "Intel i7- 8550U",
            "version": "3.1.2"
          },
          {
            "hardwarePlatform": "Dell Inspiron 7591 2 in 1",
            "hypervisorHostOs": "N/A",
            "operatingSystem": "FreeBSD 13.1",
            "paa_pai": "No",
            "processors": "Intel i7- 10510U",
            "version": "3.1.2"
          },
          {
            "hardwarePlatform": "Dell Inspiron 7591 2 in 1",
            "hypervisorHostOs": "N/A",
            "operatingSystem": "FreeBSD 13.1",
            "paa_pai": "Yes",
            "processors": "Intel i7- 10510U",
            "version": "3.1.2"
          },
          {
            "hardwarePlatform": "Dell Inspiron 7591 2 in 1",
            "hypervisorHostOs": "N/A",
            "operatingSystem": "Windows 10 Pro",
            "paa_pai": "No",
            "processors": "Intel i7- 10510U",
            "version": "3.1.2"
          },
          {
            "hardwarePlatform": "Dell Inspiron 7591 2 in 1",
            "hypervisorHostOs": "N/A",
            "operatingSystem": "Windows 10 Pro",
            "paa_pai": "Yes",
            "processors": "Intel i7- 10510U",
            "version": "3.1.2"
          },
          {
            "hardwarePlatform": "Apple M1 Mac Mini",
            "hypervisorHostOs": "N/A",
            "operatingSystem": "macOS 11.5.2",
            "paa_pai": "No",
            "processors": "M1",
            "version": "3.1.2"
          },
          {
            "hardwarePlatform": "Apple M1 Mac Mini",
            "hypervisorHostOs": "N/A",
            "operatingSystem": "macOS 11.5.2",
            "paa_pai": "Yes",
            "processors": "M1",
            "version": "3.1.2"
          },
          {
            "hardwarePlatform": "Apple i7 Mac Mini",
            "hypervisorHostOs": "N/A",
            "operatingSystem": "macOS 11.5.2",
            "paa_pai": "No",
            "processors": "Intel i7",
            "version": "3.1.2"
          },
          {
            "hardwarePlatform": "Apple i7 Mac Mini",
            "hypervisorHostOs": "N/A",
            "operatingSystem": "macOS 11.5.2",
            "paa_pai": "Yes",
            "processors": "Intel i7",
            "version": "3.1.2"
          }
        ],
        "found": true,
        "section": 2,
        "subsection": 2
      },
      "vendor_affirmed_algos": {
        "entries": [
          {
            "algoPropList": "Key Size, Key Strength:L = 2048/N = 224 (s = 112), L = 2048/N = 256 (s = 112) L = 3072/N = 256 (s = 128) Mode/Method:PQGGen using SHA3",
            "implName": "OpenSSL Project OpenSSL 3.x FIPS Provider",
            "name": "DSA PQGGen [FIPS 186- 4]",
            "reference": "Vendor affirmed per IG C.C and IG C.B Resolution (bullet point #3)"
          },
          {
            "algoPropList": "Key Size, Key Strength:L = 1024/N = 160 (s \u003c 112) L = 2048/N = 224 (s = 112), L = 2048/N = 256 (s = 112) L = 3072/N = 256 (s = 128) Mode/Method:PQGVer using SHA3",
            "implName": "OpenSSL Project OpenSSL 3.x FIPS Provider",
            "name": "DSA PQGVer [FIPS 186- 4]",
            "reference": "Vendor affirmed per IG C.C and IG C.B Resolution (bullet point #3)"
          },
          {
            "algoPropList": "Key Size, Key Strength:L = 2048/N = 224 (s = 112), L = 2048/N = 256 (s = 112) L = 3072/N = 256 (s = 128) Mode/Method:SigGen using SHA3",
            "implName": "OpenSSL Project OpenSSL 3.x FIPS Provider",
            "name": "DSA SigGen [FIPS 186- 4]",
            "reference": "Vendor affirmed per IG C.C and IG C.B Resolution (bullet point #3)"
          },
          {
            "algoPropList": "Key Size, Key Strength:L = 1024/N = 160 (s \u003c 112) L = 2048/N = 224 (s = 112), L = 2048/N = 256 (s = 112) L = 3072/N = 256 (s = 128)",
            "implName": "OpenSSL Project OpenSSL 3.x FIPS Provider",
            "name": "DSA SigVer [FIPS186- 4]",
            "reference": "Vendor affirmed per IG C.C and IG C.B Resolution (bullet point #3)"
          },
          {
            "algoPropList": "Mode/Method:SigVer using SHA3",
            "implName": "",
            "name": "",
            "reference": ""
          },
          {
            "algoPropList": "Key Type :Asymmetric",
            "implName": "N/A",
            "name": "CKG - Section 4 and 5.1",
            "reference": "NIST SP800-133r2 Section 4: Using the Output of a Random Bit Generator; Section 5.1: Key Pairs for Digital Signature Schemes"
          },
          {
            "algoPropList": "Key Type:Asymmetric",
            "implName": "N/A",
            "name": "CKG - Section 4 and 5.2",
            "reference": "NIST SP800-133r2 Section 4: Using the Output of a Random Bit Generator; Section 5.2: Key Pairs for Key Establishment"
          },
          {
            "algoPropList": "Key Type:Symmetric",
            "implName": "N/A",
            "name": "CKG - Section 4 and Section 6.1",
            "reference": "NIST SP800-133r2 Section 4: Using the Output of a Random Bit Generator; Section 6.1: Direct Generation of Symmetric Keys"
          },
          {
            "algoPropList": "Key Type:Symmetric",
            "implName": "N/A",
            "name": "CKG - Section 6.2",
            "reference": "NIST SP 800-133r2 Section 6.2: Derivation of Symmetric keys"
          },
          {
            "algoPropList": "Key Type:Symmetric",
            "implName": "N/A",
            "name": "CKG - Section 6.3",
            "reference": "NIST SP 800-133rev2, Section 6.3: Symmetric Keys Produced by Combining Multiple Keys and Other Data"
          },
          {
            "algoPropList": "Key Type:Symmetric",
            "implName": "N/A",
            "name": "CKG - Section 4",
            "reference": "NIST SP800-133r2 Section 4: Using the Output of a Random Bit Random bits returned to the calling application"
          }
        ],
        "found": true,
        "section": 2,
        "subsection": 5
      },
      "vendor_affirmed_op_env_sw_fw_hy": {
        "entries": [],
        "found": false,
        "section": 2,
        "subsection": 2
      }
    },
    "is_br1_format": true,
    "keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 5
          },
          "ECDSA": {
            "ECDSA": 42
          }
        },
        "FF": {
          "DH": {
            "DHE": 1
          },
          "DSA": {
            "DSA": 56
          }
        },
        "RSA": {
          "RSA-OAEP": 2
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 7
        },
        "CCM": {
          "CCM": 5
        },
        "CFB": {
          "CFB": 3
        },
        "CTR": {
          "CTR": 10
        },
        "ECB": {
          "ECB": 4
        },
        "GCM": {
          "GCM": 13
        },
        "OFB": {
          "OFB": 3
        },
        "XTS": {
          "XTS": 8
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {
        "OpenSSL": {
          "OpenSSL": 122
        }
      },
      "crypto_protocol": {
        "SSH": {
          "SSH": 10,
          "SSHv2": 1
        },
        "TLS": {
          "TLS": {
            "TLS": 6,
            "TLS 1.2": 3,
            "TLS 1.3": 1,
            "TLS v1.2": 5,
            "TLS v1.3": 5
          }
        }
      },
      "crypto_scheme": {
        "AEAD": {
          "AEAD": 1
        },
        "KA": {
          "Key Agreement": 9
        },
        "KEX": {
          "Key Exchange": 2,
          "Key exchange": 1
        },
        "MAC": {
          "MAC": 9
        }
      },
      "device_model": {},
      "ecc_curve": {
        "Edwards": {
          "Ed25519": 2,
          "Ed448": 3
        },
        "NIST": {
          "B-163": 5,
          "B-233": 12,
          "B-283": 15,
          "B-409": 15,
          "B-571": 16,
          "K-163": 4,
          "K-233": 19,
          "K-283": 17,
          "K-409": 18,
          "K-571": 19,
          "P-192": 14,
          "P-224": 28,
          "P-256": 34,
          "P-384": 32,
          "P-521": 36
        }
      },
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "#3": 4
        }
      },
      "fips_certlike": {
        "Certlike": {
          "AES CTR (128": 1,
          "AES- 256": 1,
          "AES-128": 3,
          "AES-192": 4,
          "AES-256": 4,
          "AES128": 1,
          "DRBG 128": 1,
          "DRBG 2": 1,
          "HMAC- SHA-1": 2,
          "HMAC- SHA1": 3,
          "HMAC-SHA-1": 8,
          "HMAC-SHA2": 2,
          "HMAC-SHA3": 2,
          "PKCS 1": 8,
          "PKCS#1": 4,
          "SHA- 1": 2,
          "SHA-1": 27,
          "SHA-3": 2,
          "SHA1": 13,
          "SHA2": 1,
          "SHA2- 224": 21,
          "SHA2- 256": 36,
          "SHA2- 384": 35,
          "SHA2- 512": 27,
          "SHA2-224": 29,
          "SHA2-256": 38,
          "SHA2-384": 25,
          "SHA2-512": 35,
          "SHA2512": 1,
          "SHA3": 11,
          "SHA3- 224": 10,
          "SHA3- 256": 14,
          "SHA3- 384": 14,
          "SHA3- 512": 12,
          "SHA3-224": 14,
          "SHA3-256": 20,
          "SHA3-384": 12,
          "SHA3-512": 19
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 1": 2
        }
      },
      "hash_function": {
        "PBKDF": {
          "PBKDF": 14,
          "PBKDF2": 1
        },
        "SHA": {
          "SHA1": {
            "SHA-1": 27,
            "SHA1": 13
          },
          "SHA2": {
            "SHA2": 1
          },
          "SHA3": {
            "SHA-3": 2,
            "SHA3": 11,
            "SHA3-224": 14,
            "SHA3-256": 20,
            "SHA3-384": 12,
            "SHA3-512": 19
          }
        },
        "SHAKE": {
          "SHAKE128": 4,
          "SHAKE256": 5
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {
        "curves": {
          "X25519": 2,
          "X448": 2
        }
      },
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 40
        },
        "RNG": {
          "RBG": 3
        }
      },
      "side_channel_analysis": {
        "SCA": {
          "timing attacks": 2
        }
      },
      "standard_id": {
        "FIPS": {
          "FIPS 140-3": 99,
          "FIPS 180-4": 7,
          "FIPS 186-2": 6,
          "FIPS 186-4": 18,
          "FIPS 198-1": 11,
          "FIPS 202": 7,
          "FIPS140-3": 3,
          "FIPS186-4": 44,
          "FIPS198-1": 3
        },
        "NIST": {
          "NIST SP 800-108": 1,
          "NIST SP 800-132": 3,
          "SP 800-108": 3,
          "SP 800-132": 1,
          "SP 800-135": 5,
          "SP 800-185": 2,
          "SP 800-38A": 10,
          "SP 800-38B": 1,
          "SP 800-38C": 1,
          "SP 800-38D": 3,
          "SP 800-38E": 1,
          "SP 800-38F": 5,
          "SP 800-56A": 6,
          "SP 800-56B": 1,
          "SP 800-56C": 3,
          "SP 800-90A": 3
        },
        "PKCS": {
          "PKCS 1": 4,
          "PKCS#1": 2
        },
        "RFC": {
          "RFC 7627": 1,
          "RFC4252": 1,
          "RFC4253": 1,
          "RFC5647": 1,
          "RFC7627": 4,
          "RFC8446": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 30,
            "AES-": 57,
            "AES-128": 3,
            "AES-192": 4,
            "AES-256": 4,
            "AES128": 1
          },
          "CAST": {
            "CAST": 66
          }
        },
        "DES": {
          "3DES": {
            "Triple-DES": 2
          }
        },
        "constructions": {
          "MAC": {
            "CMAC": 6,
            "HMAC": 31,
            "KMAC": 7
          }
        }
      },
      "tee_name": {
        "AMD": {
          "PSP": 4
        },
        "IBM": {
          "SSC": 6
        }
      },
      "tls_cipher_suite": {},
      "vendor": {
        "Microsoft": {
          "Microsoft": 1,
          "Microsoft Corporation": 1
        }
      },
      "vulnerability": {}
    },
    "module_algorithms": {
      "_type": "Set",
      "elements": [
        "KDA OneStep SP800-56Cr2A3548",
        "HMAC-SHA3-512A3548",
        "AES-CTRA3548",
        "AES-ECBA3548",
        "AES-KWA3548",
        "KDA TwoStep SP800-56Cr2A3548",
        "AES-CFB128A3548",
        "KAS-IFC-SSCA3548",
        "SHA3-224A3548",
        "KTS-IFCA3548",
        "RSA SigGen (FIPS186-4)A3548",
        "RSA Signature PrimitiveA3548",
        "SHA2-384A3548",
        "AES-CBC-CS1A3548",
        "KDF SP800-108A3548",
        "HMAC-SHA2-384A3548",
        "AES-CBCA3548",
        "RSA KeyGen (FIPS186-4)A3548",
        "KMAC-256A3548",
        "SHA3-256A3548",
        "RSA SigVer (FIPS186-4)A3548",
        "Counter DRBGA3548",
        "ECDSA KeyGen (FIPS186-4)A3548",
        "AES-CMACA3548",
        "KMAC-128A3548",
        "AES-GMACA3548",
        "HMAC-SHA2-512/256A3548",
        "SHA3-512A3548",
        "KDA HKDF SP800-56Cr2A3548",
        "SHA2-224A3548",
        "KDF KMAC Sp800-108r1A3548",
        "ECDSA KeyVer (FIPS186-4)A3548",
        "SHA2-512/224A3548",
        "ECDSA SigVer (FIPS186-4)A3548",
        "ECDSA SigGen (FIPS186-4)A3548",
        "DSA SigGen (FIPS186-4)A3548",
        "HMAC-SHA-1A3548",
        "HMAC-SHA2-512/224A3548",
        "TLS v1.2 KDF RFC7627A3548",
        "AES-XTS Testing Revision 2.0A3548",
        "AES-KWPA3548",
        "HMAC-SHA3-384A3548",
        "DSA PQGVer (FIPS186-4)A3548",
        "PBKDFA3548",
        "SHA-1A3548",
        "Safe Primes Key VerificationA3548",
        "AES-CBC-CS3A3548",
        "HMAC-SHA2-224A3548",
        "AES-CFB8A3548",
        "AES-OFBA3548",
        "Hash DRBGA3548",
        "AES-CCMA3548",
        "HMAC DRBGA3548",
        "HMAC-SHA3-256A3548",
        "KDF ANS 9.63A3548",
        "SHA2-512A3548",
        "KAS-ECC CDH-Component SP800-56Ar3A3548",
        "DSA PQGGen (FIPS186-4)A3548",
        "AES-GCMA3548",
        "KDF ANS 9.42A3548",
        "KDF SSHA3548",
        "TLS v1.3 KDFA3548",
        "SHA2-256A3548",
        "AES-CFB1A3548",
        "HMAC-SHA3-224A3548",
        "HMAC-SHA2-256A3548",
        "AES-CBC-CS2A3548",
        "SHAKE-256A3548",
        "DSA KeyGen (FIPS186-4)A3548",
        "SHA2-512/256A3548",
        "SHAKE-128A3548",
        "Safe Primes Key GenerationA3548",
        "DSA SigVer (FIPS186-4)A3548",
        "KAS-ECC-SSC Sp800-56Ar3A3548",
        "SHA3-384A3548",
        "KAS-FFC-SSC Sp800-56Ar3A3548",
        "HMAC-SHA2-512A3548"
      ]
    },
    "policy_algorithms": {
      "_type": "Set",
      "elements": [
        "#A3548"
      ]
    },
    "policy_metadata": {
      "/Author": "scroux",
      "/CreationDate": "D:20260124074513-05\u002700\u0027",
      "/Creator": "PScript5.dll Version 5.2.2",
      "/ModDate": "D:20260124074513-05\u002700\u0027",
      "/Producer": "Acrobat Distiller 25.0 (Windows)",
      "/Title": "Microsoft Word - TID-32-0272-0000-RCM2-PreVeil_Inc-260120-V1_140sp",
      "pdf_file_size_bytes": 518781,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 89
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.InternalState",
    "module": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "source_hash": null,
      "txt_hash": null
    },
    "policy": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": "f47860eae569622d56b6ec2e9c054a2f4251762d0c5d478b7cf6554d72f6e324",
      "source_hash": "bf59abd79dbf68f952b1a011ad72ac1e6cb188692c4c1d636b4d33d00e655667",
      "txt_hash": "7d775f34e5d1ef46b7495c68eb0104d68210f467497031e4497d705c2818e2b0"
    }
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "When operated in approved mode. No assurance of the minimum strength of generated SSPs (e.g., keys).",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/January 2026_250226_0720.pdf",
    "date_sunset": "2030-03-10",
    "description": "The PreVeil Cryptographic Module based on the OpenSSL FIPS Provider is a software library providing a C-language application program interface (API) for use by applications that require cryptographic functionality",
    "embodiment": "Multi-Chip Stand Alone",
    "exceptions": [
      "Physical security: N/A",
      "Non-invasive security: N/A",
      "Life-cycle assurance: Level 3"
    ],
    "fw_versions": null,
    "historical_reason": null,
    "hw_versions": null,
    "level": 1,
    "mentioned_certs": {},
    "module_name": "PreVeil Cryptographic Module based on the OpenSSL FIPS Provider",
    "module_type": "Software",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-3",
    "status": "active",
    "sw_versions": null,
    "tested_conf": null,
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2026-01-26",
        "lab": "Lightship Security, Inc.",
        "validation_type": "Initial"
      }
    ],
    "vendor": "PreVeil, Inc",
    "vendor_url": "http://www.preveil.com"
  }
}