RSA BSAFE® Crypto-J JSAFE and JCE Software Module

Certificate #2057

Webpage information

Status historical
Historical reason Revocation due to CVE-2019-3738
Validation dates 13.12.2013 , 03.07.2014 , 12.02.2016 , 10.05.2016
Standard FIPS 140-2
Security level 1
Type Software
Embodiment Multi-Chip Stand Alone
Caveat When operated in FIPS mode. The module generates cryptographic keys whose strengths are modified by available entropy. No assurance of the minimum strength of generated keys
Exceptions
  • Design Assurance: Level 3
Description RSA BSAFE® Crypto-J security software is designed to help protect sensitive data as it is stored using strong encryption techniques to provide a persistent level of protection. It supports a wide range of industry standard encryption algorithms offering Java developers the flexibility to choose the option most appropriate to meet their requirements.
Tested configurations
  • JRE 6.0 on Android 2.2 ARM (32-bit) running on Lenovo® Thinkpad® T61 (single-user mode)
  • Oracle® JRE 7.0 on Microsoft® Windows 7™ (64-bit) running on Dell™ Dimension C521
Vendor RSA, The Security Division of EMC
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Symmetric Algorithms
AES, RC2, RC5, RC4, DES, Triple-DES, 3DES, TDES, HMAC
Asymmetric Algorithms
ECDH, ECDSA, ECIES, ECC, Diffie-Hellman, DH, DSA
Hash functions
SHA1, SHA-1, SHA-256, SHA-384, SHA-512, SHA-224, SHA2, SHA-2, MD4, MD5, RIPEMD160, PBKDF2, PBKDF
Schemes
MAC, Key Agreement
Protocols
TLS
Randomness
PRNG, DRBG, RNG
Elliptic Curves
P-192, P-224, P-256, P-384, P-521, B-163, B-233, B-283, B-409, B-571, K-163, K-233, K-283, K-409, K-571
Block cipher modes
ECB, CBC, CTR, CFB, OFB, GCM, CCM, XTS

Vendor
Microsoft

Security level
Level 1, Level 2
Side-channel analysis
timing attack

Standards
FIPS 140-2, FIPS PUB 140-2, FIPS 186-2, FIPS 186-3, SP 800-90A, PKCS #1

File metadata

Title RSA BSAFE Crypto-J JSAFE and JCE Software Module Security Policy Level 1
Author RSA, The Security Division of EMC
Creation date D:20100527131853Z
Modification date D:20160429135735+10'00'
Pages 33
Creator FrameMaker 11.0.2
Producer Acrobat Distiller 10.1.5 (Windows)

References

Incoming
  • 3082 - historical - Symantec Java Cryptographic Module

Heuristics

No heuristics are available for this certificate.

References

Loading...

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 2057,
  "dgst": "7b9b55714e6c4def",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "Triple-DES#1408",
        "RSA#1154",
        "HMAC#1378",
        "DSA#701",
        "CVL#39",
        "AES#2249",
        "ECDSA#357",
        "SHS#1938",
        "DRBG#273"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "-"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": {
        "_type": "Set",
        "elements": [
          "3082"
        ]
      },
      "directly_referencing": null,
      "indirectly_referenced_by": {
        "_type": "Set",
        "elements": [
          "3082"
        ]
      },
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": {
        "_type": "Set",
        "elements": [
          "3082"
        ]
      },
      "directly_referencing": null,
      "indirectly_referenced_by": {
        "_type": "Set",
        "elements": [
          "3082"
        ]
      },
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 3
          },
          "ECDH": {
            "ECDH": 3
          },
          "ECDSA": {
            "ECDSA": 12
          },
          "ECIES": {
            "ECIES": 2
          }
        },
        "FF": {
          "DH": {
            "DH": 6,
            "Diffie-Hellman": 9
          },
          "DSA": {
            "DSA": 22
          }
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 4
        },
        "CCM": {
          "CCM": 1
        },
        "CFB": {
          "CFB": 3
        },
        "CTR": {
          "CTR": 1
        },
        "ECB": {
          "ECB": 3
        },
        "GCM": {
          "GCM": 3
        },
        "OFB": {
          "OFB": 3
        },
        "XTS": {
          "XTS": 1
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "TLS": {
          "TLS": {
            "TLS": 10
          }
        }
      },
      "crypto_scheme": {
        "KA": {
          "Key Agreement": 1
        },
        "MAC": {
          "MAC": 4
        }
      },
      "device_model": {},
      "ecc_curve": {
        "NIST": {
          "B-163": 1,
          "B-233": 1,
          "B-283": 1,
          "B-409": 1,
          "B-571": 1,
          "K-163": 1,
          "K-233": 1,
          "K-283": 1,
          "K-409": 1,
          "K-571": 1,
          "P-192": 2,
          "P-224": 2,
          "P-256": 2,
          "P-384": 2,
          "P-521": 2
        }
      },
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "#1": 1,
          "Certificate 6": 1
        }
      },
      "fips_certlike": {
        "Certlike": {
          "DRBG 273": 1,
          "DSA 701": 1,
          "HMAC-SHA1": 2,
          "PKCS #1": 2,
          "SHA- 384": 1,
          "SHA-1": 4,
          "SHA-2": 1,
          "SHA-224": 1,
          "SHA-256": 4,
          "SHA-384": 2,
          "SHA-512": 2,
          "SHA-512 1938": 1,
          "SHA-512 39": 1,
          "SHA1": 3,
          "SHA2": 2
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 1": 43,
          "Level 2": 1
        }
      },
      "hash_function": {
        "MD": {
          "MD4": {
            "MD4": 2
          },
          "MD5": {
            "MD5": 3
          }
        },
        "PBKDF": {
          "PBKDF": 5,
          "PBKDF2": 1
        },
        "RIPEMD": {
          "RIPEMD160": 1
        },
        "SHA": {
          "SHA1": {
            "SHA-1": 4,
            "SHA1": 3
          },
          "SHA2": {
            "SHA-2": 1,
            "SHA-224": 1,
            "SHA-256": 4,
            "SHA-384": 2,
            "SHA-512": 4,
            "SHA2": 2
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {
        "com": {
          "com.rsa": 2,
          "com.rsa.crypto": 9,
          "com.rsa.crypto.jcm": 2
        }
      },
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 23,
          "PRNG": 1
        },
        "RNG": {
          "RNG": 3
        }
      },
      "side_channel_analysis": {
        "SCA": {
          "timing attack": 1
        }
      },
      "standard_id": {
        "FIPS": {
          "FIPS 140-2": 34,
          "FIPS 186-2": 3,
          "FIPS 186-3": 11,
          "FIPS PUB 140-2": 1
        },
        "NIST": {
          "SP 800-90A": 1
        },
        "PKCS": {
          "PKCS #1": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 13
          },
          "RC": {
            "RC2": 1,
            "RC4": 1,
            "RC5": 2
          }
        },
        "DES": {
          "3DES": {
            "3DES": 1,
            "TDES": 1,
            "Triple-DES": 19
          },
          "DES": {
            "DES": 5
          }
        },
        "constructions": {
          "MAC": {
            "HMAC": 21
          }
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "Microsoft": {
          "Microsoft": 1
        }
      },
      "vulnerability": {}
    },
    "policy_metadata": {
      "/Author": "RSA, The Security Division of EMC",
      "/CreationDate": "D:20100527131853Z",
      "/Creator": "FrameMaker 11.0.2",
      "/ModDate": "D:20160429135735+10\u002700\u0027",
      "/Producer": "Acrobat Distiller 10.1.5 (Windows)",
      "/Title": "RSA BSAFE Crypto-J JSAFE and JCE Software Module Security Policy Level 1",
      "pdf_file_size_bytes": 418248,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "http://www.rsa.com/node.aspx?id=1319",
          "http://csrc.nist.gov/groups/STM/index/html",
          "http://csrc.nist.gov/publications/nistpubs/800-132/nist-sp800-132.pdf",
          "http://www.rsa.com/node.aspx?id=1204",
          "http://csrc.nist.gov/publications/nistpubs/800-131A/sp800-131A.pdf",
          "http://www.rsa.com/",
          "http://csrc.nist.gov/groups/STM/cmvp/documents/fips140-2/FIPS1402IG.pdf"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 33
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
    "module_download_ok": true,
    "module_extract_ok": true,
    "policy_convert_ok": true,
    "policy_download_ok": true,
    "policy_extract_ok": true,
    "policy_json_hash": null,
    "policy_pdf_hash": "547a163f8e876e6e080f8c92411fcc1fff140c235b20b3756885c58ec55c68bc",
    "policy_txt_hash": "7cce6e23f63b6d490c997563ecb42b6621ca65d93bc311d491fe3111a0f1b7c5"
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "When operated in FIPS mode. The module generates cryptographic keys whose strengths are modified by available entropy. No assurance of the minimum strength of generated keys",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/FIPS140ConsolidatedCertList0036.pdf",
    "date_sunset": null,
    "description": "RSA BSAFE\u00ae Crypto-J security software is designed to help protect sensitive data as it is stored using strong encryption techniques to provide a persistent level of protection. It supports a wide range of industry standard encryption algorithms offering Java developers the flexibility to choose the option most appropriate to meet their requirements.",
    "embodiment": "Multi-Chip Stand Alone",
    "exceptions": [
      "Design Assurance: Level 3"
    ],
    "fw_versions": null,
    "historical_reason": "Revocation due to CVE-2019-3738",
    "hw_versions": null,
    "level": 1,
    "mentioned_certs": {},
    "module_name": "RSA BSAFE\u00ae Crypto-J JSAFE and JCE Software Module",
    "module_type": "Software",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "historical",
    "sw_versions": "6.1or 6.1.1.0.1",
    "tested_conf": [
      "JRE 6.0 on Android 2.2 ARM (32-bit) running on Lenovo\u00ae Thinkpad\u00ae T61 (single-user mode)",
      "Oracle\u00ae JRE 7.0 on Microsoft\u00ae Windows 7\u2122 (64-bit) running on Dell\u2122 Dimension C521"
    ],
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2013-12-13",
        "lab": "Leidos Accredited Testing \u0026 Evaluation (AT\u0026E) Lab",
        "validation_type": "Initial"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2014-07-03",
        "lab": "Leidos Accredited Testing \u0026 Evaluation (AT\u0026E) Lab",
        "validation_type": "Update"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2016-02-12",
        "lab": "Leidos Accredited Testing \u0026 Evaluation (AT\u0026E) Lab",
        "validation_type": "Update"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2016-05-10",
        "lab": "Leidos Accredited Testing \u0026 Evaluation (AT\u0026E) Lab",
        "validation_type": "Update"
      }
    ],
    "vendor": "RSA, The Security Division of EMC",
    "vendor_url": "http://www.rsa.com"
  }
}