{"_type": "sec_certs.sample.fips.FIPSCertificate", "dgst": "77b8f4d1dca2d16d", "cert_id": 5401, "web_data": {"_type": "sec_certs.sample.fips.FIPSCertificate.WebData", "module_name": "Palo Alto Networks Core Crypto Module", "validation_history": [{"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry", "date": "2026-07-13", "validation_type": "Initial", "lab": "Leidos Accredited Testing & Evaluation (AT&E) Lab"}], "vendor_url": "http://www.paloaltonetworks.com/", "vendor": "Palo Alto Networks", "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/July 2026_040826_0807.pdf", "module_type": "Software", "standard": "FIPS 140-3", "status": "active", "level": 1, "caveat": "When installed, initialized and configured as specified in Section 11.1 of the Security Policy. The module generates SSPs (e.g., keys) whose strengths are modified by available entropy. No assurance of minimum security of SSPs (e.g., keys, bit strings) that are externally loaded, or of SSPs established with externally loaded SSPs", "exceptions": ["Physical security: N/A", "Non-invasive security: N/A", "Mitigation of other attacks: N/A"], "embodiment": "MultiChipStand", "description": "The Palo Alto Networks Core Crypto Module is a software cryptographic module that can run on various environments.", "tested_conf": null, "hw_versions": null, "fw_versions": null, "sw_versions": null, "mentioned_certs": {}, "historical_reason": null, "date_sunset": "2029-07-25", "revoked_reason": null, "revoked_link": null}, "pdf_data": {"_type": "sec_certs.sample.fips.FIPSCertificate.PdfData", "keywords": {"fips_cert_id": {"Cert": {"#2138": 1, "#2541": 1, "#2": 2}}, "fips_security_level": {"Level": {"Level 1": 2}}, "fips_certlike": {"Certlike": {"HMAC-SHA-256": 2, "HMAC- SHA-256": 1, "SHA2-224": 6, "SHA2-256": 14, "SHA2-384": 12, "SHA2-512": 8, "SHA-1": 10, "SHA-256": 3, "SHA2- 256": 4, "SHA2- 384": 4, "SHA2- 512": 4, "RSA 2048": 3, "- PKCS 1": 2, "PKCS 1": 6, "AES-256": 7, "AES 256": 2, "AES (128": 1, "AES-GCM 96": 1}}, "vendor": {"Microsoft": {"Microsoft": 9}}, "eval_facility": {}, "symmetric_crypto": {"AES_competition": {"AES": {"AES-256": 7, "AES": 24, "AES-": 14}, "CAST": {"CAST": 76}}, "constructions": {"MAC": {"HMAC": 13, "HMAC-SHA-256": 1, "CBC-MAC": 10}}}, "asymmetric_crypto": {"RSA": {"RSA 2048": 3}, "ECC": {"ECDH": {"ECDHE": 2}, "ECDSA": {"ECDSA": 66}, "ECC": {"ECC": 12}}, "FF": {"DH": {"DHE": 6}, "DSA": {"DSA": 1}}}, "pq_crypto": {}, "hash_function": {"SHA": {"SHA1": {"SHA-1": 10}, "SHA2": {"SHA-256": 3}}}, "crypto_scheme": {"MAC": {"MAC": 5}, "KA": {"Key Agreement": 4}}, "crypto_protocol": {"TLS": {"TLS": {"TLS v1.2": 6, "TLSv1.2": 61, "TLS": 76}}}, "randomness": {"PRNG": {"DRBG": 63}, "RNG": {"RNG": 1, "RBG": 2}}, "cipher_mode": {"ECB": {"ECB": 4}, "CBC": {"CBC": 2}, "CTR": {"CTR": 4}, "GCM": {"GCM": 21}}, "ecc_curve": {"NIST": {"P-256": 24, "P-384": 32, "P-521": 30}}, "crypto_engine": {}, "tls_cipher_suite": {"TLS": {"TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256": 1, "TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384": 1, "TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256": 1, "TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384": 1}}, "crypto_library": {}, "vulnerability": {}, "side_channel_analysis": {}, "device_model": {}, "tee_name": {"AMD": {"PSP": 5}, "IBM": {"SSC": 4}}, "os_name": {}, "cplc_data": {}, "ic_data_group": {}, "standard_id": {"FIPS": {"FIPS 140-3": 6, "FIPS186-4": 25, "FIPS 186-4": 15, "FIPS 198-1": 4, "FIPS 180-4": 10, "FIPS 186-2": 1, "FIPS 186-5": 1, "FIPS186": 1}, "NIST": {"SP 800-38A": 2, "SP 800-38D": 3, "SP 800-90A": 2, "SP 800-56A": 10, "SP 800-135": 2, "SP 800-38F": 1, "SP 800-90B": 1}, "PKCS": {"PKCS 1": 4}, "RFC": {"RFC7627": 2, "RFC 5288": 1, "RFC 5246": 1}}, "javacard_version": {}, "javacard_api_const": {}, "javacard_packages": {}, "certification_process": {}}, "policy_metadata": {"pdf_file_size_bytes": 888280, "pdf_is_encrypted": false, "pdf_number_of_pages": 61, "/Producer": "Microsoft\u00ae Word for Microsoft 365", "/Creator": "Microsoft\u00ae Word for Microsoft 365", "/CreationDate": "D:20260713122411-04'00'", "/ModDate": "D:20260713122411-04'00'", "pdf_hyperlinks": {"_type": "Set", "elements": ["http://libcrypto.so/"]}}}, "heuristics": {"_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics", "algorithms": {"_type": "Set", "elements": ["TLS v1.2 KDF RFC7627A4207", "HMAC-SHA2-384A4207", "ECDSA SigGen (FIPS186-4)A4207", "Safe Primes Key GenerationA4207", "SHA2-256A4207", "AES-CBCA4207", "ECDSA KeyGen (FIPS186-4)A4207", "KAS-ECC-SSC Sp800-56Ar3A4207", "RSA KeyGen (FIPS186-4)A4206", "KAS-FFC-SSC Sp800-56Ar3A4207", "SHA2-384A4207", "SHA2-512A4207", "ECDSA KeyVer (FIPS186-4)A4207", "Safe Primes Key VerificationA4207", "RSA SigGen (FIPS186-4)A4207", "ECDSA SigVer (FIPS186-4)A4207", "SHA-1A4207", "SHA2-224A4207", "AES-GCMA4207", "HMAC-SHA2-256A4207", "RSA SigVer (FIPS186-4)A4207", "Counter DRBGA4207"]}, "extracted_versions": {"_type": "Set", "elements": ["-"]}, "cpe_matches": null, "verified_cpe_matches": null, "related_cves": null, "policy_prunned_references": {"_type": "Set", "elements": ["2541", "2138"]}, "module_prunned_references": {"_type": "Set", "elements": []}, "policy_processed_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": {"_type": "Set", "elements": ["2541", "2138"]}, "indirectly_referencing": {"_type": "Set", "elements": ["2541", "2138"]}}, "module_processed_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "direct_transitive_cves": null, "indirect_transitive_cves": null}, "state": {"_type": "sec_certs.sample.fips.InternalState", "module": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": null, "txt_hash": null, "json_hash": null}, "policy": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": "690d2ad857cb47aa4d711d82bd852b505b470230557dec82f99407b83229477e", "txt_hash": "5a6a317e2b1dd1fc9a9b3f8c70c272d8a80660fe4fc4a49734e2b429e967ea45", "json_hash": null}}}