{"_type": "sec_certs.sample.fips.FIPSCertificate", "dgst": "7ddcb477f73010cf", "cert_id": 5413, "web_data": {"_type": "sec_certs.sample.fips.FIPSCertificate.WebData", "module_name": "TuxCare NSS Cryptographic Module", "validation_history": [{"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry", "date": "2026-07-14", "validation_type": "Initial", "lab": "atsec information security corporation"}], "vendor_url": "http://www.tuxcare.com", "vendor": "Cloud Linux Software, Inc. d/b/a TuxCare", "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/July 2026_040826_0807.pdf", "module_type": "Software", "standard": "FIPS 140-3", "status": "active", "level": 1, "caveat": "When operated in approved mode and installed, initialized and configured as specified in Section 11 of the Security Policy. No assurance of minimum security of SSPs (e.g., keys, bit strings) that are externally loaded, or of SSPs established with externally loaded SSPs.", "exceptions": ["Physical security: N/A", "Non-invasive security: N/A"], "embodiment": "MultiChipStand", "description": "TuxCare NSS Cryptographic Module consists of the Softoken and Freebl libraries offering various cryptographic mechanisms.", "tested_conf": null, "hw_versions": null, "fw_versions": null, "sw_versions": null, "mentioned_certs": {}, "historical_reason": null, "date_sunset": "2031-07-13", "revoked_reason": null, "revoked_link": null}, "pdf_data": {"_type": "sec_certs.sample.fips.FIPSCertificate.PdfData", "keywords": {"fips_cert_id": {}, "fips_security_level": {"Level": {"Level 1": 3}}, "fips_certlike": {"Certlike": {"HMAC-SHA-256": 2, "SHA-1": 23, "SHA2-224": 10, "SHA2-256": 18, "SHA2-384": 11, "SHA2- 512": 4, "SHA2-512": 9, "SHA-224": 5, "SHA-256": 6, "SHA-384": 3, "SHA-512": 3, "SHA3-256": 1, "SHA- 256": 1, "SHA2- 256": 2, "SHA2- 384": 2, "SHA-3": 1, "PKCS#5": 6, "PKCS#7": 2, "PKCS#11": 2, "PKCS#12": 6, "- PKCS 1": 2, "PKCS#1": 14, "PKCS 1": 2}}, "vendor": {}, "eval_facility": {"atsec": {"atsec": 2}}, "symmetric_crypto": {"AES_competition": {"AES": {"AES": 62}, "CAST": {"CAST": 93}, "RC": {"RC2": 3, "RC4": 3}}, "DES": {"DES": {"DES": 5}, "3DES": {"Triple-DES": 5}}, "djb": {"ChaCha": {"ChaCha20": 3}, "Poly": {"Poly1305": 1}}, "miscellaneous": {"Camellia": {"Camellia": 5}, "SEED": {"SEED": 5}}, "constructions": {"MAC": {"HMAC": 18, "HMAC-SHA-256": 1, "CBC-MAC": 2, "CMAC": 8}}}, "asymmetric_crypto": {"RSA": {"RSA-OAEP": 3}, "ECC": {"ECDSA": {"ECDSA": 38}, "ECC": {"ECC": 1}}, "FF": {"DH": {"Diffie-Hellman": 8}, "DSA": {"DSA": 6}}}, "pq_crypto": {}, "hash_function": {"SHA": {"SHA1": {"SHA-1": 23}, "SHA2": {"SHA-224": 5, "SHA-256": 6, "SHA-384": 3, "SHA-512": 3}, "SHA3": {"SHA3-256": 1, "SHA-3": 1}}, "MD": {"MD5": {"MD5": 13}}, "PBKDF": {"PBKDF2": 19, "PBKDF": 4}}, "crypto_scheme": {"MAC": {"MAC": 13}, "KEX": {"Key Exchange": 2}, "KA": {"Key Agreement": 3}}, "crypto_protocol": {"TLS": {"SSL": {"SSL": 2}, "TLS": {"TLS": 37, "TLS v1.2": 4, "TLS 1.2": 15, "TLS 1.3": 4}}, "IKE": {"IKEv2": 18, "IKEv1": 2, "IKE": 12}}, "randomness": {"PRNG": {"DRBG": 26}, "RNG": {"RNG": 1, "RBG": 2}}, "cipher_mode": {"ECB": {"ECB": 1}, "CBC": {"CBC": 2}, "CTR": {"CTR": 1}, "GCM": {"GCM": 14}}, "ecc_curve": {"NIST": {"P-256": 22, "P-384": 8, "P-521": 16}, "Edwards": {"Ed25519": 2}}, "crypto_engine": {}, "tls_cipher_suite": {}, "crypto_library": {"NSS": {"NSS": 78}}, "vulnerability": {}, "side_channel_analysis": {"SCA": {"Timing attacks": 1, "timing attack": 1, "timing attacks": 1}}, "device_model": {}, "tee_name": {"AMD": {"PSP": 7}, "IBM": {"SSC": 2}}, "os_name": {}, "cplc_data": {}, "ic_data_group": {}, "standard_id": {"FIPS": {"FIPS 140-3": 85, "FIPS PUB 140-3": 2, "FIPS186-5": 26, "FIPS 186-5": 9, "FIPS 198-1": 9, "FIPS186-2": 2, "FIPS 186-4": 4, "FIPS186-4": 2, "FIPS 180-4": 9, "FIPS 197": 3, "FIPS 186-2": 3, "FIPS 202": 1}, "NIST": {"SP 800-132": 7, "SP 800-56B": 10, "SP 800-38A": 10, "SP 800-38B": 3, "SP 800-38D": 5, "SP 800-38F": 5, "SP 800-90A": 5, "SP 800-56A": 10, "SP 800-56C": 1, "SP 800-135": 3, "SP 800-108": 2, "SP 800-52": 3, "SP 800-133": 3}, "PKCS": {"PKCS#5": 3, "PKCS#7": 1, "PKCS#11": 1, "PKCS#12": 3, "PKCS 1": 2, "PKCS#1": 7}, "RFC": {"RFC7627": 3, "RFC 5288": 2, "RFC 8446": 3, "RFC 3526": 2, "RFC 7919": 2, "RFC 7627": 2}, "X509": {"X.509": 1}}, "javacard_version": {}, "javacard_api_const": {"curves": {"X25519": 4}}, "javacard_packages": {}, "certification_process": {}}, "policy_metadata": {"pdf_file_size_bytes": 899452, "pdf_is_encrypted": false, "pdf_number_of_pages": 72, "/Producer": "Microsoft\u00ae Word for Microsoft 365", "/Creator": "Microsoft\u00ae Word for Microsoft 365", "/CreationDate": "D:20260713081252-04'00'", "/ModDate": "D:20260713081252-04'00'", "pdf_hyperlinks": {"_type": "Set", "elements": ["https://doi.org/10.6028/NIST.FIPS.180-4", "https://www.ietf.org/rfc/rfc3526.txt", "https://doi.org/10.6028/NIST.SP.800-56Ar3", "https://www.ietf.org/rfc/rfc5288.txt", "https://doi.org/10.6028/NIST.SP.800-133r2", "https://csrc.nist.gov/files/pubs/fips/186-2/final/docs/fips186-2.pdf", "https://doi.org/10.6028/NIST.SP.800-38B", "https://www.ietf.org/rfc/rfc8446.txt", "https://csrc.nist.gov/csrc/media/Projects/cryptographic-module-validation-program/documents/fips%20140-3/FIPS%20140-3%20IG.pdf", "https://doi.org/10.6028/NIST.SP.800-90Ar1", "https://doi.org/10.6028/NIST.SP.800-38A-Add", "https://nvlpubs.nist.gov/nistpubs/FIPS/NIST.FIPS.140-3.pdf", "https://doi.org/10.6028/NIST.SP.800-135r1", "https://doi.org/10.6028/NIST.FIPS.186-5", "https://doi.org/10.6028/NIST.SP.800-56Br2", "https://doi.org/10.6028/NIST.FIPS.202", "https://doi.org/10.6028/NIST.SP.800-132", "https://doi.org/10.6028/NIST.SP.800-108r1-upd1", "https://doi.org/10.6028/NIST.SP.800-38A", "https://doi.org/10.6028/NIST.FIPS.186-4", "https://www.rfc-editor.org/rfc/rfc8017.txt", "https://doi.org/10.6028/NIST.SP.800-38F", "https://doi.org/10.6028/NIST.SP.800-52r2", "https://doi.org/10.6028/NIST.FIPS.198-1", "https://doi.org/10.6028/NIST.FIPS.197-upd1", "https://www.ietf.org/rfc/rfc7919.txt"]}}}, "heuristics": {"_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics", "algorithms": {"_type": "Set", "elements": ["AES-CMACA7041", "RSA KeyGen (FIPS186-5)A7039", "HMAC-SHA2-224A7043", "KDF SP800-108A7039", "KAS-FFC-SSC Sp800-56Ar3A7039", "SHA2-256A7043", "Safe Primes Key GenerationA7039", "KAS-ECC-SSC Sp800-56Ar3A7039", "Hash DRBGA7039", "ECDSA SigGen (FIPS186-5)A7039", "KDF IKEv2A7040", "RSA SigVer (FIPS186-2)A7039", "AES-CBC-CS1A7041", "SHA2-224A7043", "AES-KWA7041", "TLS v1.2 KDF RFC7627A7039", "HMAC-SHA2-512A7043", "RSA SigVer (FIPS186-5)A7039", "SHA2-512A7043", "AES-CBCA7041", "ECDSA KeyGen (FIPS186-5)A7039", "SHA2-384A7043", "HMAC-SHA2-384A7043", "RSA SigGen (FIPS186-5)A7039", "PBKDFA7039", "AES-GCMA7042", "ECDSA SigVer (FIPS186-5)A7039", "AES-ECBA7041", "HMAC-SHA2-256A7043", "AES-KWPA7041", "KTS-IFCA7039", "AES-CTRA7041", "KDA HKDF SP800-56Cr2A7038", "RSA SigVer (FIPS186-4)A7039"]}, "extracted_versions": {"_type": "Set", "elements": ["-"]}, "cpe_matches": null, "verified_cpe_matches": null, "related_cves": null, "policy_prunned_references": {"_type": "Set", "elements": []}, "module_prunned_references": {"_type": "Set", "elements": []}, "policy_processed_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "module_processed_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "direct_transitive_cves": null, "indirect_transitive_cves": null}, "state": {"_type": "sec_certs.sample.fips.InternalState", "module": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": null, "txt_hash": null, "json_hash": null}, "policy": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": "5b375e765f7a14ef37cc89c72b8a33d8f6bc6499a60882d2a1253285e0408b2d", "txt_hash": "8d467dd93a4c39f9c5f898ceac83824adfccf332c67d7b5809a5dfe429c83509", "json_hash": null}}}