Canonical Ltd. Ubuntu 22.04 GnuTLS Cryptographic Module

Certificate details

Certificate ID #4855
Status active
Validation dates 28.10.2024
Sunset date 27-10-2029
Standard FIPS 140-3
Security level 1
Type Software
Embodiment Multi-Chip Stand Alone
Caveat Interim validation. When operated in the approved mode. When installed, initialized, and configured as specified in section 11.1 of the Security Policy.
Exceptions
  • Physical security: N/A
  • Non-invasive security: N/A
  • Mitigation of other attacks: N/A
Description GnuTLS is a secure communications library implementing the TLS protocol. It provides a simple C language application programming interface to access the secure communications protocols as well as APIs to parse and write X.509, PKCS#12, and other required structures.
Tested configurations
  • Ubuntu 22.04 LTS (Jammy Jellyfish) running on Amazon Web Services (AWS) c6g.metal with AWS Graviton2 with PAA
  • Ubuntu 22.04 LTS (Jammy Jellyfish) running on Amazon Web Services (AWS) c6g.metal with AWS Graviton2 without PAA
  • Ubuntu 22.04 LTS (Jammy Jellyfish) running on IBM z15 with z15 with PAI
  • Ubuntu 22.04 LTS (Jammy Jellyfish) running on IBM z15 with z15 without PAI
  • Ubuntu 22.04 LTS (Jammy Jellyfish) running on Supermicro SYS-1019P-WTR with Intel® Xeon® Gold 6226 with PAA
  • Ubuntu 22.04 LTS (Jammy Jellyfish) running on Supermicro SYS-1019P-WTR with Intel® Xeon® Gold 6226 without PAA
Vendor Canonical Ltd. http://www.canonical.com
Lab atsec information security corporation
Algorithms
  • AES-CBCA3714
  • AES-CCMA3711
  • AES-CFB8A3717
  • AES-CMACA3714
  • AES-GCMA3713
  • AES-GMACA3667
  • AES-XTS Testing Revision 2.0A3668
  • Counter DRBGA3667
  • ECDSA KeyGen (FIPS186-4)A3667
  • ECDSA KeyVer (FIPS186-4)A3667
  • ECDSA SigGen (FIPS186-4)A3667
  • ECDSA SigVer (FIPS186-4)A3667
  • HMAC-SHA-1A3714
  • HMAC-SHA2-224A3714
  • HMAC-SHA2-256A3714
  • HMAC-SHA2-384A3714
  • HMAC-SHA2-512A3714
  • KAS-ECC-SSC Sp800-56Ar3A3667
  • KAS-FFC-SSC Sp800-56Ar3A3667
  • KDA HKDF Sp800-56Cr1A3666
  • KDF TLSA3667
  • PBKDFA3667
  • RSA KeyGen (FIPS186-4)A3667
  • RSA SigGen (FIPS186-4)A3667
  • RSA SigVer (FIPS186-4)A3667
  • Safe Primes Key GenerationA3667
  • SHA-1A3714
  • SHA2-224A3714
  • SHA2-256A3714
  • SHA2-384A3714
  • SHA2-512A3714
  • SHA3-224A3715
  • SHA3-256A3715
  • SHA3-384A3715
  • SHA3-512A3715
  • TLS v1.2 KDF RFC7627A3667
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Extracted keywords

Symmetric Algorithms
AES-256, AES-, AES, Twofish, Serpent, CAST, RC2, RC4, DES, Triple-DES, ChaCha20, Salsa20, Poly1305, Blowfish, Camellia, SEED, HMAC, CMAC
Asymmetric Algorithms
ECDH, ECDSA, ECC, Diffie-Hellman, DH, DSA
Hash functions
SHA-1, SHA-224, SHA-256, SHA-384, SHA-512, SHA3-224, SHA3-256, SHA3-384, SHA3-512, SHA-3, MD4, MD5, PBKDF, PBKDF2
Schemes
MAC, Key agreement, Key Agreement, AEAD
Protocols
SSH, TLS, TLS v1.2, TLSv1.0, TLS 1.0, TLS v1.3, TLS 1.2
Randomness
DRBG, RNG, RBG
Libraries
GnuTLS
Elliptic Curves
P-256, P-384, P-521, P-512
Block cipher modes
ECB, CBC, CTR, CFB, OFB, GCM, CCM, XTS
TLS cipher suites
TLS_DH_RSA_WITH_AES_128_CBC_SHA, TLS_DHE_RSA_WITH_AES_128_CBC_SHA, TLS_DH_RSA_WITH_AES_256_CBC_SHA, TLS_DHE_RSA_WITH_AES_256_CBC_SHA, TLS_DH_RSA_WITH_AES_128_CBC_SHA256, TLS_DHE_RSA_WITH_AES_128_CBC_SHA256, TLS_DH_RSA_WITH_AES_256_CBC_SHA256, TLS_DHE_RSA_WITH_AES_256_CBC_SHA256, TLS_PSK_WITH_AES_128_CBC_SHA, TLS_PSK_WITH_AES_256_CBC_SHA, TLS_DHE_RSA_WITH_AES_128_GCM_SHA256, TLS_DHE_RSA_WITH_AES_256_GCM_SHA384, TLS_DH_RSA_WITH_AES_128_GCM_SHA256, TLS_DH_RSA_WITH_AES_256_GCM_SHA384, TLS_ECDH_ECDSA_WITH_AES_128_CBC_SHA, TLS_ECDH_ECDSA_WITH_AES_256_CBC_SHA, TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA, TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA, TLS_ECDH_RSA_WITH_AES_128_CBC_SHA, TLS_ECDH_RSA_WITH_AES_256_CBC_SHA, TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA, TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA, TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256, TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384, TLS_ECDH_ECDSA_WITH_AES_128_CBC_SHA256, TLS_ECDH_ECDSA_WITH_AES_256_CBC_SHA384, TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256, TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384, TLS_ECDH_RSA_WITH_AES_128_CBC_SHA256, TLS_ECDH_RSA_WITH_AES_256_CBC_SHA384, TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256, TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384, TLS_ECDH_ECDSA_WITH_AES_128_GCM_SHA256, TLS_ECDH_ECDSA_WITH_AES_256_GCM_SHA384, TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256, TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384, TLS_ECDH_RSA_WITH_AES_128_GCM_SHA256, TLS_ECDH_RSA_WITH_AES_256_GCM_SHA384, TLS_DHE_RSA_WITH_AES_128_CCM, TLS_DHE_RSA_WITH_AES_256_CCM, TLS_DHE_RSA_WITH_AES_128_CCM_8, TLS_DHE_RSA_WITH_AES_256_CCM_8

Trusted Execution Environments
PSP, SSC

Security level
Level 1
Side-channel analysis
Fault Induction

Automated analysis

Automated inference - use with caution

All attributes shown in this section (e.g., links between certificates, products, vendors, and known CVEs) are generated by automated heuristics and have not been reviewed by humans. These methods can produce false positives or false negatives and should not be treated as definitive without independent verification. This applies equally to the Cross-references section below. If you want to know more about how this data is computed and how reliable it is, see our documentation on automated analysis. If you believe any information here is inaccurate or harmful, please submit feedback.

No automatically derived data are available in this section.

Cross-references

No references are available for this certificate.

Processing updates

Feed
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 4855,
  "dgst": "8415a191df554904",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "Safe Primes Key GenerationA3667",
        "#A3710",
        "KAS-FFC-SSC Sp800-56Ar3A3667",
        "#A3716",
        "SHA2-256A3714",
        "#A3668",
        "HMAC-SHA2-384A3714",
        "RSA SigGen (FIPS186-4)A3667",
        "AES-GCMA3713",
        "AES-GMACA3667",
        "RSA SigVer (FIPS186-4)A3667",
        "SHA3-384A3715",
        "AES-CCMA3711",
        "SHA2-512A3714",
        "PBKDFA3667",
        "ECDSA SigVer (FIPS186-4)A3667",
        "SHA2-384A3714",
        "HMAC-SHA2-224A3714",
        "SHA3-256A3715",
        "AES-XTS Testing Revision 2.0A3668",
        "SHA-1A3714",
        "#A3709",
        "TLS v1.2 KDF RFC7627A3667",
        "HMAC-SHA-1A3714",
        "AES-CBCA3714",
        "KDA HKDF Sp800-56Cr1A3666",
        "AES-CFB8A3717",
        "#A3714",
        "HMAC-SHA2-256A3714",
        "#A3711",
        "#A3666",
        "RSA KeyGen (FIPS186-4)A3667",
        "#A3717",
        "#A3715",
        "AES-CMACA3714",
        "ECDSA SigGen (FIPS186-4)A3667",
        "#A3713",
        "SHA3-224A3715",
        "HMAC-SHA2-512A3714",
        "ECDSA KeyGen (FIPS186-4)A3667",
        "ECDSA KeyVer (FIPS186-4)A3667",
        "KAS-ECC-SSC Sp800-56Ar3A3667",
        "SHA2-224A3714",
        "Counter DRBGA3667",
        "#A3669",
        "#A3712",
        "#A3708",
        "#A3670",
        "#A3665",
        "KDF TLSA3667",
        "#A3667",
        "SHA3-512A3715"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "22.04"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "br1_deviations": 0,
    "br1_tables": {
      "_type": "sec_certs.heuristics.br1.table_parsing.model.br1_tables.BR1Tables",
      "approved_algorithms": {
        "entries": [
          {
            "algorithm": "AES-CBC",
            "cavpCertName": "A3665",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38A"
          },
          {
            "algorithm": "AES-CCM",
            "cavpCertName": "A3665",
            "properties": "Key Length - 128, 256",
            "reference": "SP 800-38C"
          },
          {
            "algorithm": "AES-GCM",
            "cavpCertName": "A3665",
            "properties": "Direction - Decrypt, Encrypt IV Generation - External IV Generation Mode - 8.2.1 Key Length - 128, 256",
            "reference": "SP 800-38D"
          },
          {
            "algorithm": "HMAC-SHA-1",
            "cavpCertName": "A3665",
            "properties": "Key Length - Key Length: 112-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "HMAC-SHA2- 224",
            "cavpCertName": "A3665",
            "properties": "Key Length - Key Length: 112-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "HMAC-SHA2- 256",
            "cavpCertName": "A3665",
            "properties": "Key Length - Key Length: 112-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "HMAC-SHA2- 384",
            "cavpCertName": "A3665",
            "properties": "Key Length - Key Length: 112-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "HMAC-SHA2- 512",
            "cavpCertName": "A3665",
            "properties": "Key Length - Key Length: 112-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "SHA-1",
            "cavpCertName": "A3665",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 180-4"
          },
          {
            "algorithm": "SHA2-224",
            "cavpCertName": "A3665",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 180-4"
          },
          {
            "algorithm": "SHA2-256",
            "cavpCertName": "A3665",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 180-4"
          },
          {
            "algorithm": "SHA2-384",
            "cavpCertName": "A3665",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 180-4"
          },
          {
            "algorithm": "SHA2-512",
            "cavpCertName": "A3665",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 180-4"
          },
          {
            "algorithm": "AES-CBC",
            "cavpCertName": "A3667",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38A"
          },
          {
            "algorithm": "AES-CMAC",
            "cavpCertName": "A3667",
            "properties": "Direction - Generation, Verification Key Length - 128, 256",
            "reference": "SP 800-38B"
          },
          {
            "algorithm": "AES-GCM",
            "cavpCertName": "A3667",
            "properties": "Direction - Decrypt, Encrypt IV Generation - External IV Generation Mode - 8.2.1 Key Length - 128, 256",
            "reference": "SP 800-38D"
          },
          {
            "algorithm": "AES-GMAC",
            "cavpCertName": "A3667",
            "properties": "Direction - Decrypt, Encrypt IV Generation - External IV Generation Mode - 8.2.1 Key Length - 128, 256",
            "reference": "SP 800-38D"
          },
          {
            "algorithm": "Counter DRBG",
            "cavpCertName": "A3667",
            "properties": "Prediction Resistance - No Mode - AES-256 Derivation Function Enabled - No",
            "reference": "SP 800-90A Rev. 1"
          },
          {
            "algorithm": "ECDSA KeyGen (FIPS186-4)",
            "cavpCertName": "A3667",
            "properties": "Curve - P-256, P-384, P-521 Secret Generation Mode - Testing Candidates",
            "reference": "FIPS 186-4"
          },
          {
            "algorithm": "ECDSA KeyVer (FIPS186-4)",
            "cavpCertName": "A3667",
            "properties": "Curve - P-256, P-384, P-521",
            "reference": "FIPS 186-4"
          },
          {
            "algorithm": "ECDSA SigGen (FIPS186-4)",
            "cavpCertName": "A3667",
            "properties": "Component - No Curve - P-256, P-384, P-521 Hash Algorithm - SHA2-224, SHA2-256, SHA2-384, SHA2- 512",
            "reference": "FIPS 186-4"
          },
          {
            "algorithm": "ECDSA SigVer (FIPS186-4)",
            "cavpCertName": "A3667",
            "properties": "Component - No Curve - P-256, P-384, P-521 Hash Algorithm - SHA2-224, SHA2-256, SHA2-384, SHA2- 512",
            "reference": "FIPS 186-4"
          },
          {
            "algorithm": "HMAC-SHA-1",
            "cavpCertName": "A3667",
            "properties": "Key Length - Key Length: 112-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "HMAC-SHA2- 224",
            "cavpCertName": "A3667",
            "properties": "Key Length - Key Length: 112-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "HMAC-SHA2- 256",
            "cavpCertName": "A3667",
            "properties": "Key Length - Key Length: 112-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "HMAC-SHA2- 384",
            "cavpCertName": "A3667",
            "properties": "Key Length - Key Length: 112-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "HMAC-SHA2- 512",
            "cavpCertName": "A3667",
            "properties": "Key Length - Key Length: 112-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "KAS-ECC-SSC Sp800-56Ar3",
            "cavpCertName": "A3667",
            "properties": "Domain Parameter Generation Methods - P-256, P-384, P-521 Scheme - ephemeralUnified - KAS Role - initiator, responder",
            "reference": "SP 800-56A Rev. 3"
          },
          {
            "algorithm": "KAS-FFC-SSC Sp800-56Ar3",
            "cavpCertName": "A3667",
            "properties": "Domain Parameter Generation Methods - ffdhe2048, ffdhe3072, ffdhe4096, ffdhe6144, ffdhe8192, MODP- 2048, MODP-3072, MODP-4096, MODP-6144, MODP- 8192 Scheme - dhEphem - KAS Role - initiator, responder",
            "reference": "SP 800-56A Rev. 3"
          },
          {
            "algorithm": "KDF TLS (CVL)",
            "cavpCertName": "A3667",
            "properties": "TLS Version - v1.0/1.1",
            "reference": "SP 800-135 Rev. 1"
          },
          {
            "algorithm": "PBKDF",
            "cavpCertName": "A3667",
            "properties": "Iteration Count - Iteration Count: 10-1000 Increment 1 Password Length - Password Length: 8-128 Increment 1",
            "reference": "SP 800-132"
          },
          {
            "algorithm": "RSA KeyGen (FIPS186-4)",
            "cavpCertName": "A3667",
            "properties": "Key Generation Mode - B.3.2 Modulo - 2048, 3072, 4096 Hash Algorithm - SHA2-384 Primality Tests - Table C.2 Private Key Format - Standard",
            "reference": "FIPS 186-4"
          },
          {
            "algorithm": "RSA SigGen (FIPS186-4)",
            "cavpCertName": "A3667",
            "properties": "Signature Type - PKCS 1.5, PKCSPSS Modulo - 2048, 3072, 4096",
            "reference": "FIPS 186-4"
          },
          {
            "algorithm": "RSA SigVer (FIPS186-4)",
            "cavpCertName": "A3667",
            "properties": "Signature Type - PKCS 1.5, PKCSPSS Modulo - 2048, 3072, 4096",
            "reference": "FIPS 186-4"
          },
          {
            "algorithm": "Safe Primes Key Generation",
            "cavpCertName": "A3667",
            "properties": "Safe Prime Groups - ffdhe2048, ffdhe3072, ffdhe4096, ffdhe6144, ffdhe8192, MODP-2048, MODP-3072, MODP-4096, MODP-6144, MODP-8192",
            "reference": "SP 800-56A Rev. 3"
          },
          {
            "algorithm": "SHA-1",
            "cavpCertName": "A3667",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 180-4"
          },
          {
            "algorithm": "SHA2-224",
            "cavpCertName": "A3667",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 180-4"
          },
          {
            "algorithm": "SHA2-256",
            "cavpCertName": "A3667",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 180-4"
          },
          {
            "algorithm": "SHA2-384",
            "cavpCertName": "A3667",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 180-4"
          },
          {
            "algorithm": "SHA2-512",
            "cavpCertName": "A3667",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 180-4"
          },
          {
            "algorithm": "TLS v1.2 KDF RFC7627 (CVL)",
            "cavpCertName": "A3667",
            "properties": "Hash Algorithm - SHA2-256, SHA2-384",
            "reference": "SP 800-135 Rev. 1"
          },
          {
            "algorithm": "AES-CBC",
            "cavpCertName": "A3708",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38A"
          },
          {
            "algorithm": "AES-CCM",
            "cavpCertName": "A3708",
            "properties": "Key Length - 128, 256",
            "reference": "SP 800-38C"
          },
          {
            "algorithm": "AES-CMAC",
            "cavpCertName": "A3708",
            "properties": "Direction - Generation, Verification Key Length - 128, 256",
            "reference": "SP 800-38B"
          },
          {
            "algorithm": "AES-GCM",
            "cavpCertName": "A3708",
            "properties": "Direction - Decrypt, Encrypt IV Generation - External IV Generation Mode - 8.2.1 Key Length - 128, 256",
            "reference": "SP 800-38D"
          },
          {
            "algorithm": "AES-CBC",
            "cavpCertName": "A3709",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38A"
          },
          {
            "algorithm": "AES-GCM",
            "cavpCertName": "A3709",
            "properties": "Direction - Decrypt, Encrypt IV Generation - External IV Generation Mode - 8.2.1 Key Length - 128, 256",
            "reference": "SP 800-38D"
          },
          {
            "algorithm": "AES-CBC",
            "cavpCertName": "A3711",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38A"
          },
          {
            "algorithm": "AES-CCM",
            "cavpCertName": "A3711",
            "properties": "Key Length - 128, 256",
            "reference": "SP 800-38C"
          },
          {
            "algorithm": "AES-CMAC",
            "cavpCertName": "A3711",
            "properties": "Direction - Generation, Verification Key Length - 128, 256",
            "reference": "SP 800-38B"
          },
          {
            "algorithm": "AES-GCM",
            "cavpCertName": "A3711",
            "properties": "Direction - Decrypt, Encrypt IV Generation - External IV Generation Mode - 8.2.1 Key Length - 128, 256",
            "reference": "SP 800-38D"
          },
          {
            "algorithm": "AES-CBC",
            "cavpCertName": "A3712",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38A"
          },
          {
            "algorithm": "AES-GCM",
            "cavpCertName": "A3712",
            "properties": "Direction - Decrypt, Encrypt IV Generation - External IV Generation Mode - 8.2.1 Key Length - 128, 256",
            "reference": "SP 800-38D"
          },
          {
            "algorithm": "AES-CBC",
            "cavpCertName": "A3713",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38A"
          },
          {
            "algorithm": "AES-GCM",
            "cavpCertName": "A3713",
            "properties": "Direction - Decrypt, Encrypt IV Generation - External IV Generation Mode - 8.2.1 Key Length - 128, 256",
            "reference": "SP 800-38D"
          },
          {
            "algorithm": "AES-CBC",
            "cavpCertName": "A3714",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38A"
          },
          {
            "algorithm": "AES-CMAC",
            "cavpCertName": "A3714",
            "properties": "Direction - Generation, Verification Key Length - 128, 256",
            "reference": "SP 800-38B"
          },
          {
            "algorithm": "HMAC-SHA-1",
            "cavpCertName": "A3714",
            "properties": "Key Length - Key Length: 112-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "HMAC-SHA2- 224",
            "cavpCertName": "A3714",
            "properties": "Key Length - Key Length: 112-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "HMAC-SHA2- 256",
            "cavpCertName": "A3714",
            "properties": "Key Length - Key Length: 112-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "HMAC-SHA2- 384",
            "cavpCertName": "A3714",
            "properties": "Key Length - Key Length: 112-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "HMAC-SHA2- 512",
            "cavpCertName": "A3714",
            "properties": "Key Length - Key Length: 112-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "SHA-1",
            "cavpCertName": "A3714",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 180-4"
          },
          {
            "algorithm": "SHA2-224",
            "cavpCertName": "A3714",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 180-4"
          },
          {
            "algorithm": "SHA2-256",
            "cavpCertName": "A3714",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 180-4"
          },
          {
            "algorithm": "SHA2-384",
            "cavpCertName": "A3714",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 180-4"
          },
          {
            "algorithm": "SHA2-512",
            "cavpCertName": "A3714",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 180-4"
          },
          {
            "algorithm": "AES-CFB8",
            "cavpCertName": "A3670",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38A"
          },
          {
            "algorithm": "AES-CFB8",
            "cavpCertName": "A3716",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38A"
          },
          {
            "algorithm": "AES-CFB8",
            "cavpCertName": "A3717",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38A"
          },
          {
            "algorithm": "AES-XTS Testing Revision 2.0",
            "cavpCertName": "A3668",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 256",
            "reference": "SP 800-38E"
          },
          {
            "algorithm": "HMAC-SHA-1",
            "cavpCertName": "A3710",
            "properties": "Key Length - Key Length: 112-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "HMAC-SHA2- 224",
            "cavpCertName": "A3710",
            "properties": "Key Length - Key Length: 112-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "HMAC-SHA2- 256",
            "cavpCertName": "A3710",
            "properties": "Key Length - Key Length: 112-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "HMAC-SHA2- 384",
            "cavpCertName": "A3710",
            "properties": "Key Length - Key Length: 112-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "HMAC-SHA2- 512",
            "cavpCertName": "A3710",
            "properties": "Key Length - Key Length: 112-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "SHA-1",
            "cavpCertName": "A3710",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 180-4"
          },
          {
            "algorithm": "SHA2-224",
            "cavpCertName": "A3710",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 180-4"
          },
          {
            "algorithm": "SHA2-256",
            "cavpCertName": "A3710",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 180-4"
          },
          {
            "algorithm": "SHA2-384",
            "cavpCertName": "A3710",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 180-4"
          },
          {
            "algorithm": "SHA2-512",
            "cavpCertName": "A3710",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 180-4"
          },
          {
            "algorithm": "KDA HKDF Sp800-56Cr1",
            "cavpCertName": "A3666",
            "properties": "Derived Key Length - 2048 Shared Secret Length - Shared Secret Length: 224-65336 Increment 8 HMAC Algorithm - SHA2-224, SHA2-256, SHA2-384, SHA2-512",
            "reference": "SP 800-56C Rev. 2"
          },
          {
            "algorithm": "SHA3-224",
            "cavpCertName": "A3669",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 202"
          },
          {
            "algorithm": "SHA3-256",
            "cavpCertName": "A3669",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 202"
          },
          {
            "algorithm": "SHA3-384",
            "cavpCertName": "A3669",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 202"
          },
          {
            "algorithm": "SHA3-512",
            "cavpCertName": "A3669",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 202"
          },
          {
            "algorithm": "SHA3-224",
            "cavpCertName": "A3715",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 202"
          },
          {
            "algorithm": "SHA3-256",
            "cavpCertName": "A3715",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 202"
          },
          {
            "algorithm": "SHA3-384",
            "cavpCertName": "A3715",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 202"
          },
          {
            "algorithm": "SHA3-512",
            "cavpCertName": "A3715",
            "properties": "Message Length - Message Length: 0-65536 Increment 8 Large Message Sizes - 1, 2, 4, 8",
            "reference": "FIPS 202"
          }
        ],
        "found": true,
        "section": 2,
        "subsection": 5
      },
      "approved_services": {
        "entries": [
          {
            "description": "Generate AES and HMAC key",
            "indicator": "gnutls_fips140_get_opera tion_state() returns GNUTLS_FIPS140_OP_APP ROVED",
            "inputs": "Key size",
            "name": "Symmetri c key generatio n",
            "outputs": "Key",
            "rolesSspAccess": "Crypto Officer - AES key: G,R - HMAC key: G,R",
            "secFunImpl": "Determini stic random bit generatio n"
          },
          {
            "description": "Perform AES encryptio n",
            "indicator": "gnutls_fips140_get_opera tion_state() returns GNUTLS_FIPS140_OP_APP ROVED",
            "inputs": "Key, IV (for AEAD), Plainte xt",
            "name": "Symmetri c encryptio n",
            "outputs": "Ciphertext, MAC tag (for AEAD)",
            "rolesSspAccess": "Crypto Officer - AES key: W,E",
            "secFunImpl": "Symmetri c encryptio n"
          },
          {
            "description": "Perform AES decryptio n",
            "indicator": "gnutls_fips140_get_opera tion_state() returns GNUTLS_FIPS140_OP_APP ROVED",
            "inputs": "Key, IV (for AEAD), Ciphert ext, , MAC tag (for AEAD)",
            "name": "Symmetri c decryptio n",
            "outputs": "Plaintext",
            "rolesSspAccess": "Crypto Officer - AES key: W,E",
            "secFunImpl": "Symmetri c decryptio n"
          },
          {
            "description": "Generate RSA, DH, or ECDSA/E CDH key pairs",
            "indicator": "gnutls_fips140_get_opera tion_state() returns GNUTLS_FIPS140_OP_APP ROVED",
            "inputs": "RSA key size, Elliptic Curve, or Safe prime group",
            "name": "Asymmetr ic key generatio n",
            "outputs": "Key pair",
            "rolesSspAccess": "Crypto Officer - RSA public key: G,R - RSA private key: G,R - ECDSA public key: G,R - ECDSA private key: G,R - EC Diffie-",
            "secFunImpl": "Asymmetr ic key generatio n"
          },
          {
            "description": "",
            "indicator": "",
            "inputs": "",
            "name": "",
            "outputs": "",
            "rolesSspAccess": "Hellman public key: G,R - EC Diffie- Hellman private key: G,R - Diffie- Hellman public key: G,R - Diffie- Hellman private key: G,R - Intermed iate key generati on value: G,E,Z",
            "secFunImpl": ""
          },
          {
            "description": "Generate RSA or ECDSA signature",
            "indicator": "gnutls_fips140_get_opera tion_state() returns GNUTLS_FIPS140_OP_APP ROVED",
            "inputs": "Messag e, hash algorith m, private key",
            "name": "Digital signature generatio n",
            "outputs": "Digital signature",
            "rolesSspAccess": "Crypto Officer - RSA private key: W,E - ECDSA private key: W,E",
            "secFunImpl": "Digital signature generatio n"
          },
          {
            "description": "Verify RSA or ECDSA signature",
            "indicator": "gnutls_fips140_get_opera tion_state() returns GNUTLS_FIPS140_OP_APP ROVED",
            "inputs": "Messag e, signatu re, hash algorith m, public key",
            "name": "Digital signature verificatio n",
            "outputs": "Verificatio n result (success/fa ilure)",
            "rolesSspAccess": "Crypto Officer - RSA public key: W,E - ECDSA public key: W,E",
            "secFunImpl": "Digital signature verificatio n"
          },
          {
            "description": "Verify ECDSA public key",
            "indicator": "gnutls_fips140_get_opera tion_state() returns GNUTLS_FIPS140_OP_APP ROVED",
            "inputs": "ECDSA public key",
            "name": "Public key verificatio n",
            "outputs": "Verificatio n result (success/fa ilure)",
            "rolesSspAccess": "Crypto Officer - ECDSA public key: W,E",
            "secFunImpl": "Public key verificatio n"
          },
          {
            "description": "Generate random bitstrings",
            "indicator": "gnutls_fips140_get_opera tion_state() returns GNUTLS_FIPS140_OP_APP ROVED",
            "inputs": "Numbe r of bits",
            "name": "Random number generatio n",
            "outputs": "Random bytes",
            "rolesSspAccess": "Crypto Officer - Entropy input: W,E - DRBG seed: G,E - DRBG internal state: V",
            "secFunImpl": "Determini stic random bit generatio n"
          },
          {
            "description": "Descript ion",
            "indicator": "Indicator",
            "inputs": "Inputs",
            "name": "Name",
            "outputs": "Outputs",
            "rolesSspAccess": "SSP Access value,",
            "secFunImpl": "Security Functions"
          },
          {
            "description": "Compute SHA hashes",
            "indicator": "gnutls_fips140_get_opera tion_state() returns GNUTLS_FIPS140_OP_APP ROVED",
            "inputs": "Messag e",
            "name": "Message digest",
            "outputs": "Hash digest",
            "rolesSspAccess": "Crypto Officer",
            "secFunImpl": "Message digest"
          },
          {
            "description": "Compute AES- based CMAC or AES- based GMAC or HMAC",
            "indicator": "gnutls_fips140_get_opera tion_state() returns GNUTLS_FIPS140_OP_APP ROVED",
            "inputs": "Messag e, HMAC key or AES key",
            "name": "Message authentic ation code (MAC)",
            "outputs": "Message authenticat ion code (MAC)",
            "rolesSspAccess": "Crypto Officer - AES key: W,E - HMAC key: W,E",
            "secFunImpl": "Message authentic ation code (MAC)"
          },
          {
            "description": "Perform DH shared secret computa tion",
            "indicator": "gnutls_fips140_get_opera tion_state() returns GNUTLS_FIPS140_OP_APP ROVED",
            "inputs": "Diffie- Hellma n private key, Diffie- Hellma n public key from peer",
            "name": "Diffie- Hellman shared secret computati on",
            "outputs": "Shared secret",
            "rolesSspAccess": "Crypto Officer - Diffie- Hellman public key: W,E - Diffie- Hellman private key: W,E - Diffie- Hellman Shared secret:",
            "secFunImpl": "(Diffie- Hellman) shared secret computati on"
          },
          {
            "description": "Perform ECDH shared secret computa tion",
            "indicator": "gnutls_fips140_get_opera tion_state() returns GNUTLS_FIPS140_OP_APP ROVED",
            "inputs": "EC Diffie- Hellma n private key, EC Diffie- Hellma n public key from peer",
            "name": "EC Diffie- Hellman shared secret computati on",
            "outputs": "Shared secret",
            "rolesSspAccess": "Crypto Officer - EC Diffie- Hellman public key: W,E - EC Diffie- Hellman private key: W,E - EC Diffie- Hellman Shared secret: G,R",
            "secFunImpl": "(EC Diffie- Hellman) shared secret computati on"
          },
          {
            "description": "Perform key derivatio n",
            "indicator": "gnutls_fips140_get_opera tion_state() returns GNUTLS_FIPS140_OP_APP ROVED",
            "inputs": "Diffie- Hellma n shared secret or EC Diffie-",
            "name": "HMAC- based key derivation",
            "outputs": "HKDF derived key",
            "rolesSspAccess": "Crypto Officer - Diffie- Hellman Shared secret: W,E",
            "secFunImpl": "Key derivation"
          },
          {
            "description": "",
            "indicator": "",
            "inputs": "Hellma n shared secret",
            "name": "",
            "outputs": "",
            "rolesSspAccess": "- EC Diffie- Hellman Shared secret: W,E - HKDF derived key: G,R",
            "secFunImpl": ""
          },
          {
            "description": "Provide supporte d cipher suites in approved mode",
            "indicator": "gnutls_fips140_get_opera tion_state() returns GNUTLS_FIPS140_OP_APP ROVED",
            "inputs": "Cipher- suites (see Append ix A for the comple te list of valid cipher suites), Digital Certific ate, Public and Private Keys, Applica tion Data",
            "name": "Transport Layer Security (TLS) network protocol",
            "outputs": "Return codes and/or log messages, Application data",
            "rolesSspAccess": "Crypto Officer - RSA public key: W,E - ECDSA public key: W,E - Diffie- Hellman public key: W,E - Diffie- Hellman private key: W,E - EC Diffie- Hellman public key: W,E - EC Diffie- Hellman private key: W,E - TLS pre- master secret: G,E - TLS derived secret: G,E - TLS master secret: G,E - RSA private key: W,E - ECDSA private key: W,E",
            "secFunImpl": "Symmetri c encryptio n Symmetri c decryptio n Message authentic ation code (MAC) Digital signature generatio n Digital signature verificatio n (EC Diffie- Hellman) shared secret computati on (Diffie- Hellman) shared secret computati on Key derivation Key wrapping"
          },
          {
            "description": "Show module status",
            "indicator": "Implicit (always approved)",
            "inputs": "None",
            "name": "Show status",
            "outputs": "Return codes and/or log messages",
            "rolesSspAccess": "Crypto Officer",
            "secFunImpl": "None"
          },
          {
            "description": "Zeroize SSPs",
            "indicator": "Implicit (always approved)",
            "inputs": "Context containi ng SSPs",
            "name": "Zeroizatio n",
            "outputs": "None",
            "rolesSspAccess": "Crypto Officer - AES key: Z - HMAC key: Z - RSA public key: Z - RSA private key: Z - ECDSA public key: Z - ECDSA private key: Z - Diffie- Hellman public key: Z - Diffie- Hellman private key: Z - EC Diffie- Hellman public key: Z - EC Diffie- Hellman private key: Z - Diffie- Hellman Shared secret: Z - EC Diffie- Hellman Shared secret: Z - PBKDF passwor d or passphra se: Z",
            "secFunImpl": "None"
          },
          {
            "description": "",
            "indicator": "",
            "inputs": "",
            "name": "",
            "outputs": "",
            "rolesSspAccess": "- PBKDF derived key: Z - Entropy input: Z - DRBG seed: Z - DRBG internal state: V value, key: Z - TLS pre- master secret: Z - TLS master secret: Z - TLS derived secret: Z - Intermed iate key generati on value: Z - HKDF derived key: Z",
            "secFunImpl": ""
          },
          {
            "description": "Perform self-tests",
            "indicator": "Implicit (always approved)",
            "inputs": "Module reset",
            "name": "Self-tests",
            "outputs": "Result of self-tests (pass/fail)",
            "rolesSspAccess": "Crypto Officer",
            "secFunImpl": "None"
          },
          {
            "description": "Show module name and version",
            "indicator": "Implicit (always approved)",
            "inputs": "None",
            "name": "Show module name and version",
            "outputs": "Name and version informatio n",
            "rolesSspAccess": "Crypto Officer",
            "secFunImpl": "None"
          },
          {
            "description": "Perform key derivatio n",
            "indicator": "gnutls_fips140_get_opera tion_state() returns GNUTLS_FIPS140_OP_APP ROVED",
            "inputs": "TLS pre- master secret",
            "name": "TLS key derivation",
            "outputs": "TLS derived secret",
            "rolesSspAccess": "Crypto Officer - TLS pre- master secret: W,E - TLS master secret: G,E - TLS derived secret: G,R",
            "secFunImpl": "Key derivation"
          },
          {
            "description": "Perform key derivatio n",
            "indicator": "gnutls_fips140_get_opera tion_state() returns GNUTLS_FIPS140_OP_APP ROVED",
            "inputs": "PBKDF passwo rd or passphr ase",
            "name": "Password- based key derivation",
            "outputs": "PBKDF derived key",
            "rolesSspAccess": "Crypto Officer - PBKDF passwor d or passphra se: W,E - PBKDF derived key: G,R",
            "secFunImpl": "Key derivation"
          },
          {
            "description": "Perform DH key agreeme nt",
            "indicator": "gnutls_fips140_get_opera tion_state() returns GNUTLS_FIPS140_OP_APP ROVED",
            "inputs": "Diffie- Hellma n private key, Diffie- Hellma n public key from peer",
            "name": "Diffie- Hellman",
            "outputs": "HKDF derived key, TLS derived secret",
            "rolesSspAccess": "Crypto Officer - Diffie- Hellman public key: W,E - Diffie- Hellman private key: W,E - TLS derived secret: G,R - HKDF derived key: G,R",
            "secFunImpl": "Diffie- Hellman"
          },
          {
            "description": "Perform ECDH key agreeme nt",
            "indicator": "gnutls_fips140_get_opera tion_state() returns GNUTLS_FIPS140_OP_APP ROVED",
            "inputs": "EC Diffie- Hellma n private key, EC Diffie- Hellma n public key from peer",
            "name": "EC Diffie- Hellman",
            "outputs": "HKDF derived key, TLS derived secret",
            "rolesSspAccess": "Crypto Officer - EC Diffie- Hellman public key: W,E - EC Diffie- Hellman private key: W,E - TLS derived secret: G,R - HKDF derived key: G,R",
            "secFunImpl": "EC Diffie- Hellman"
          }
        ],
        "found": true,
        "section": 4,
        "subsection": 3
      },
      "authentication_methods": {
        "entries": [],
        "found": false,
        "section": 4,
        "subsection": 1
      },
      "cond_self_tests": {
        "entries": [
          {
            "algorithmOrTest": "AES-CBC (A3665)",
            "condition": "On module initialization",
            "details": "Encryption, Decryption",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "256-bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-CBC (A3667)",
            "condition": "On module initialization",
            "details": "Encryption, Decryption",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "256-bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-CBC (A3708)",
            "condition": "On module initialization",
            "details": "Encryption, Decryption",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "256-bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-CBC (A3709)",
            "condition": "On module initialization",
            "details": "Encryption, Decryption",
            "indicator": "Module becomes operational and services",
            "testMethod": "KAT",
            "testProps": "256-bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-CBC (A3711)",
            "condition": "On module initialization",
            "details": "Encryption, Decryption",
            "indicator": "for use Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "256-bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-CBC (A3712)",
            "condition": "On module initialization",
            "details": "Encryption, Decryption",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "256-bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-CBC (A3713)",
            "condition": "On module initialization",
            "details": "Encryption, Decryption",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "256-bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-CBC (A3714)",
            "condition": "On module initialization",
            "details": "Encryption, Decryption",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "256-bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-CFB8 (A3670)",
            "condition": "On module initialization",
            "details": "Encryption, Decryption",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "256-bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-CFB8 (A3716)",
            "condition": "On module initialization",
            "details": "Encryption, Decryption",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "256-bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-CFB8 (A3717)",
            "condition": "On module initialization",
            "details": "Encryption, Decryption",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "256-bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-GCM (A3665)",
            "condition": "On module initialization",
            "details": "Encryption, Decryption",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "256-bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-GCM (A3667)",
            "condition": "On module initialization",
            "details": "Encryption, Decryption",
            "indicator": "Module becomes operational",
            "testMethod": "KAT",
            "testProps": "256-bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-GCM (A3708)",
            "condition": "On module initialization",
            "details": "Encryption, Decryption",
            "indicator": "for use Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "256-bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-GCM (A3709)",
            "condition": "On module initialization",
            "details": "Encryption, Decryption",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "256-bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-GCM (A3711)",
            "condition": "On module initialization",
            "details": "Encryption, Decryption",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "256-bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-GCM (A3712)",
            "condition": "On module initialization",
            "details": "Encryption, Decryption",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "256-bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-GCM (A3713)",
            "condition": "On module initialization",
            "details": "Encryption, Decryption",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "256-bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-XTS Testing Revision 2.0 (A3668)",
            "condition": "On module initialization",
            "details": "Encryption, Decryption",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "256-bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "KAS-FFC-SSC Sp800-56Ar3 (A3667)",
            "condition": "On module initialization",
            "details": "Primitive \u0027Z\u0027 computation",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "3072-bit key and safe prime ffdhe3072",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "Counter DRBG (A3667)",
            "condition": "On module initialization",
            "details": "Random bit generation",
            "indicator": "Module becomes operational and services are available",
            "testMethod": "KAT",
            "testProps": "256-bit key without DF, without PR",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "KAS-ECC- SSC Sp800-",
            "condition": "On module initialization",
            "details": "Primitive \u0027Z\u0027 Computation",
            "indicator": "for use Module becomes",
            "testMethod": "KAT",
            "testProps": "P-256",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "56Ar3 (A3667)",
            "condition": "",
            "details": "",
            "indicator": "operational and services are available for use",
            "testMethod": "",
            "testProps": "",
            "type": ""
          },
          {
            "algorithmOrTest": "ECDSA SigGen (FIPS186-4) (A3667)",
            "condition": "On module initialization",
            "details": "Signature generation",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "P-256 using SHA2-256",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "ECDSA SigVer (FIPS186-4) (A3667)",
            "condition": "On module initialization",
            "details": "Signature verification",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "P-256 using SHA2-256",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "KDA HKDF Sp800-56Cr1 (A3666)",
            "condition": "On module initialization",
            "details": "Key derivation",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "HMAC- SHA2-256",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "HMAC-SHA- 1 (A3665)",
            "condition": "On module initialization",
            "details": "MAC generation",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA-1",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "HMAC-SHA- 1 (A3667)",
            "condition": "On module initialization",
            "details": "MAC generation",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA-1",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "HMAC-SHA- 1 (A3714)",
            "condition": "On module initialization",
            "details": "MAC generation",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA-1",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "HMAC-SHA- 1 (A3710)",
            "condition": "On module initialization",
            "details": "MAC generation",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA-1",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "HMAC- SHA2-224 (A3665)",
            "condition": "On module initialization",
            "details": "MAC generation",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA-224",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "HMAC- SHA2-224 (A3667)",
            "condition": "On module initialization",
            "details": "MAC generation",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA-224",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "HMAC- SHA2-224 (A3714)",
            "condition": "On module initialization",
            "details": "MAC generation",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA-224",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "HMAC- SHA2-224 (A3710)",
            "condition": "On module initialization",
            "details": "MAC generation",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA-224",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "HMAC- SHA2-256 (A3665)",
            "condition": "On module initialization",
            "details": "MAC generation",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA-256",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "HMAC- SHA2-256 (A3667)",
            "condition": "On module initialization",
            "details": "MAC generation",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA-256",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "HMAC- SHA2-256 (A3714)",
            "condition": "On module initialization",
            "details": "MAC generation",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA-256",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "HMAC- SHA2-256 (A3710)",
            "condition": "On module initialization",
            "details": "MAC generation",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA-256",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "HMAC- SHA2-384 (A3665)",
            "condition": "On module initialization",
            "details": "MAC generation",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA-384",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "HMAC- SHA2-384 (A3667)",
            "condition": "On module initialization",
            "details": "MAC generation",
            "indicator": "Module becomes operational and services",
            "testMethod": "KAT",
            "testProps": "SHA-384",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "HMAC- SHA2-384 (A3714)",
            "condition": "On module initialization",
            "details": "MAC generation",
            "indicator": "for use Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA-384",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "HMAC- SHA2-384 (A3710)",
            "condition": "On module initialization",
            "details": "MAC generation",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA-384",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "HMAC- SHA2-512 (A3665)",
            "condition": "On module initialization",
            "details": "MAC generation",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA-512",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "HMAC- SHA2-512 (A3667)",
            "condition": "On module initialization",
            "details": "MAC generation",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA-512",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "HMAC- SHA2-512 (A3714)",
            "condition": "On module initialization",
            "details": "MAC generation",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA-512",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "HMAC- SHA2-512 (A3710)",
            "condition": "On module initialization",
            "details": "MAC generation",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA-512",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "PBKDF (A3667)",
            "condition": "On module initialization",
            "details": "Key derivation",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "HMAC- SHA2-256",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "RSA SigGen (FIPS186-4) (A3667)",
            "condition": "On module initialization",
            "details": "Signature generation",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "2048-bit key using SHA2- 256",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "RSA SigVer (FIPS186-4) (A3667)",
            "condition": "On module initialization",
            "details": "Signature verification",
            "indicator": "Module becomes operational",
            "testMethod": "KAT",
            "testProps": "2048-bit key using SHA2- 256",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "SHA3-224 (A3669)",
            "condition": "On module initialization",
            "details": "Hash digest",
            "indicator": "for use Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA3-224",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "SHA3-224 (A3715)",
            "condition": "On module initialization",
            "details": "Hash digest",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA3-224",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "SHA3-256 (A3669)",
            "condition": "On module initialization",
            "details": "Hash digest",
            "indicator": "Module becomes operational and services are available",
            "testMethod": "KAT",
            "testProps": "SHA3-256",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "SHA3-256 (A3715)",
            "condition": "On module initialization",
            "details": "Hash digest",
            "indicator": "for use Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA3-256",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "SHA3-384 (A3669)",
            "condition": "On module initialization",
            "details": "Hash digest",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA3-384",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "SHA3-384 (A3715)",
            "condition": "On module initialization",
            "details": "Hash digest",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA3-384",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "SHA3-512 (A3669)",
            "condition": "On module initialization",
            "details": "Hash digest",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA3-512",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "SHA3-512 (A3715)",
            "condition": "On module initialization",
            "details": "Hash digest",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA3-512",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "TLS v1.2 KDF RFC7627 (A3667)",
            "condition": "On module initialization",
            "details": "Key derivation, using extended master secret",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "HMAC- SHA2-256",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "ECDSA KeyGen (FIPS186-4) (A3667)",
            "condition": "After every ECDSA and ECDH key generation",
            "details": "Signature generation and verification",
            "indicator": "Module remains operational and services remain available for use",
            "testMethod": "PCT",
            "testProps": "SHA2-256",
            "type": "PCT"
          },
          {
            "algorithmOrTest": "RSA KeyGen (FIPS186-4) (A3667)",
            "condition": "After every RSA key generation",
            "details": "Signature generation and verification",
            "indicator": "Module remains operational and services remain available for use",
            "testMethod": "PCT",
            "testProps": "SHA2-256",
            "type": "PCT"
          },
          {
            "algorithmOrTest": "Safe Primes Key Generation (A3667)",
            "condition": "After every Diffie- Hellman key generation",
            "details": "Modular exponentiation with private key",
            "indicator": "Module remains operational and services remain available for use",
            "testMethod": "PCT",
            "testProps": "Section 5.6.2.1.4 of SP800- 56Arev3",
            "type": "PCT"
          }
        ],
        "found": true,
        "section": 10,
        "subsection": 2
      },
      "error_states": {
        "entries": [
          {
            "conditions": "When the integrity test or KAT (not the DRBG KAT) fail; When the DRBG",
            "description": "Prevents any cryptographic related operations and data output",
            "indicator": "GNUTLS_E_SELF_TEST_ERROR (-400); GNUTLS_E_RANDOM_FAILED (-206); GNUTLS_E_PK_GENERATION_ERROR (- 403); GNUTLS_E_LIB_IN_ERROR_STATE (- 402)",
            "name": "Error State",
            "recoveryMethod": "Restarting the module"
          },
          {
            "conditions": "KAT fails; When a newly generated RSA, ECDSA, Diffie- Hellman or EC Diffie-Hellman key pair fails the PCT; When the module is in error state and caller requests cryptographic operations;",
            "description": "",
            "indicator": "",
            "name": "",
            "recoveryMethod": ""
          }
        ],
        "found": true,
        "section": 10,
        "subsection": 4
      },
      "mechanisms_actions": {
        "entries": [],
        "found": false,
        "section": 7,
        "subsection": 1
      },
      "modes_of_operation": {
        "entries": [
          {
            "description": "Automatically entered whenever an approved service is requested",
            "name": "Approved mode",
            "statusIndicator": "Equivalent to the indicator of the requested service",
            "type": "Approved"
          },
          {
            "description": "Automatically entered whenever a non-approved service is requested",
            "name": "Non-approved mode",
            "statusIndicator": "Equivalent to the indicator of the requested service",
            "type": "Non- Approved"
          }
        ],
        "found": true,
        "section": 2,
        "subsection": 4
      },
      "non_approved_allowed_NSC": {
        "entries": [
          {
            "caveat": "Only allowed as the PRF in TLSv1.0 and v1.1 per IG 2.4.A",
            "name": "MD5",
            "use": "Message digest used in TLS 1.0 / 1.1 KDF only for legacy use"
          }
        ],
        "found": true,
        "section": 2,
        "subsection": 5
      },
      "non_approved_allowed_algos": {
        "entries": [],
        "found": false,
        "section": 2,
        "subsection": 5
      },
      "non_approved_not_allowed": {
        "entries": [
          {
            "name": "Blowfish",
            "use": "Symmetric encryption; Symmetric decryption"
          },
          {
            "name": "Camellia",
            "use": "Symmetric encryption; Symmetric decryption"
          },
          {
            "name": "CAST",
            "use": "Symmetric encryption; Symmetric decryption"
          },
          {
            "name": "ChaCha20",
            "use": "Symmetric encryption; Symmetric decryption"
          },
          {
            "name": "Chacha20 and Poly1305",
            "use": "Authenticated encryption; Authenticated decryption"
          },
          {
            "name": "CMAC with Triple-DES",
            "use": "Message authentication code (MAC)"
          },
          {
            "name": "DES",
            "use": "Symmetric encryption; Symmetric decryption"
          },
          {
            "name": "Diffie-Hellman (with domain parameters other than safe primes)",
            "use": "Key agreement; Shared secret computation"
          },
          {
            "name": "DSA",
            "use": "Key generation; Domain parameter generation; Digital signature generation; Digital signature verification"
          },
          {
            "name": "ECDSA (with curves other than P-256, P-384, P-512)",
            "use": "Key generation; Public key verification"
          },
          {
            "name": "ECDSA (with curves other than P-256, P-384, P-512 or hash functions other than SHA2-224, SHA2-256, SHA2- 384, SHA2-512)",
            "use": "Digital signature generation; Digital signature verification"
          },
          {
            "name": "EC Diffie-Hellman (with curves other than P-256, P-384, P-512)",
            "use": "Key agreement; Shared secret computation"
          },
          {
            "name": "GMAC",
            "use": "Message authentication code (MAC)"
          },
          {
            "name": "GOST",
            "use": "Symmetric encryption; Symmetric decryption; Message digest"
          },
          {
            "name": "HMAC (with keys smaller than 112-bits)",
            "use": "Message authentication code (MAC)"
          },
          {
            "name": "HMAC (with GOST)",
            "use": "Message authentication code (MAC)"
          },
          {
            "name": "MD2, MD4, MD5",
            "use": "Message digest; Message authentication code (MAC)"
          },
          {
            "name": "PBKDF (with non-approved message digest algorithms or using input parameters not meeting requirements stated in section 2.7 of the security policy)",
            "use": "Key derivation"
          },
          {
            "name": "RC2, RC4",
            "use": "Symmetric encryption; Symmetric decryption"
          },
          {
            "name": "RMD160",
            "use": "Message digest; Message authentication code (MAC)"
          },
          {
            "name": "RSA (with keys smaller than 2048 bits or greater than 4096 bits)",
            "use": "Key generation"
          },
          {
            "name": "RSA (with keys smaller than 2048 bits or greater than 4096 bits and/or hash functions other than SHA2-224, SHA2-256, SHA2-384, SHA2-512)",
            "use": "Digital signature generation"
          },
          {
            "name": "RSA (with keys smaller than 1024 bits or greater than 4096 bits and/or hash functions other than SHA2-224, SHA2-256, SHA2-384, SHA2-512)",
            "use": "Digital signature verification"
          },
          {
            "name": "RSA (encapsulation and un-encapsulation with any key sizes)",
            "use": "Key encapsulation; Key un-encapsulation"
          },
          {
            "name": "Salsa20",
            "use": "Symmetric encryption; Symmetric decryption"
          },
          {
            "name": "SEED",
            "use": "Symmetric encryption; Symmetric decryption"
          },
          {
            "name": "Serpent",
            "use": "Symmetric encryption; Symmetric decryption"
          },
          {
            "name": "SRP",
            "use": "Key agreement"
          },
          {
            "name": "STREEBOG",
            "use": "Message digest; Message authentication code (MAC)"
          },
          {
            "name": "Triple-DES",
            "use": "Symmetric encryption; Symmetric decryption"
          },
          {
            "name": "Twofish",
            "use": "Symmetric encryption; Symmetric decryption"
          },
          {
            "name": "UMAC",
            "use": "Message authentication code (MAC)"
          },
          {
            "name": "Yarrow",
            "use": "Random number generation"
          },
          {
            "name": "AES-GCM (when not used in the context of the TLS protocol)",
            "use": "Symmetric encryption; Symmetric decryption"
          }
        ],
        "found": true,
        "section": 2,
        "subsection": 5
      },
      "non_approved_services": {
        "entries": [
          {
            "alg_accessed": "Blowfish Camellia CAST ChaCha20 DES Salsa20 SEED Serpent Triple-DES Twofish AES-GCM (when not used in the context of the TLS protocol) GOST RC2, RC4",
            "description": "Blowfish, Camellia, CAST, ChaCha20, DES, Salsa20, SEED, Serpent, Triple-DES, Twofish, AES-GCM (when not used in the context of the TLS protocol), GOST, RC2, RC4",
            "name": "Symmetric encryption; Symmetric decryption (non- approved)",
            "role": "CO"
          },
          {
            "alg_accessed": "Chacha20 and Poly1305",
            "description": "Chacha20 and Poly1305",
            "name": "Authenticated encryption; Authenticated decryption (non- approved)",
            "role": "CO"
          },
          {
            "alg_accessed": "HMAC (with GOST) HMAC (with keys smaller than 112-bits) UMAC CMAC with Triple-DES GMAC",
            "description": "HMAC (with GOST), HMAC (with keys smaller than 112-bits), UMAC, CMAC with Triple-DES, GMAC",
            "name": "Message authentication code (non-approved)",
            "role": "CO"
          },
          {
            "alg_accessed": "MD2, MD4, MD5 RMD160 STREEBOG GOST",
            "description": "MD2, MD4, MD5, RMD160, STREEBOG, GOST",
            "name": "Message digest (non-approved)",
            "role": "CO"
          },
          {
            "alg_accessed": "PBKDF (with non-approved message digest algorithms or using input parameters not meeting requirements stated in section 2.7 of the security policy)",
            "description": "PBKDF (with non-approved message digest algorithms or using input parameters not meeting requirements stated in section 2.7 of the security policy)",
            "name": "Key derivation (non-approved)",
            "role": "CO"
          },
          {
            "alg_accessed": "DSA",
            "description": "DSA",
            "name": "Domain parameter generation (non- approved)",
            "role": "CO"
          },
          {
            "alg_accessed": "ECDSA (with curves other than P-256, P-384, P-512)",
            "description": "ECDSA (with curves other than P-256, P- 384, P-512)",
            "name": "Public key verification (non- approved)",
            "role": "CO"
          },
          {
            "alg_accessed": "RSA (with keys smaller than 2048 bits or greater than 4096 bits) DSA ECDSA (with curves other than P-256, P-384, P-512)",
            "description": "RSA (with keys smaller than 2048 bits or greater than 4096 bits), DSA, ECDSA (with curves other than P-256, P-384, P- 512)",
            "name": "Key generation (non-approved)",
            "role": "CO"
          },
          {
            "alg_accessed": "RSA (with keys smaller than 1024 bits or greater than 4096 bits and/or hash functions other than SHA2-",
            "description": "RSA (with keys smaller than 1024 bits or greater than 4096 bits and/or hash functions other than SHA2-224, SHA2- 256, SHA2-384, SHA2-512), DSA, ECDSA",
            "name": "Digital signature verification (non- approved)",
            "role": "CO"
          },
          {
            "alg_accessed": "224, SHA2-256, SHA2-384, SHA2-512) DSA ECDSA (with curves other than P-256, P-384, P-512 or hash functions other than SHA2-224, SHA2-256, SHA2- 384, SHA2-512)",
            "description": "(with curves other than P-256, P-384, P- 512 or hash functions other than SHA2- 224, SHA2-256, SHA2-384, SHA2-512)",
            "name": "",
            "role": ""
          },
          {
            "alg_accessed": "RSA (with keys smaller than 2048 bits or greater than 4096 bits and/or hash functions other than SHA2- 224, SHA2-256, SHA2-384, SHA2-512) ECDSA (with curves other than P-256, P-384, P-512 or hash functions other than SHA2-224, SHA2-256, SHA2- 384, SHA2-512) DSA",
            "description": "RSA (with keys smaller than 2048 bits or greater than 4096 bits and/or hash functions other than SHA2-224, SHA2- 256, SHA2-384, SHA2-512), DSA, ECDSA (with curves other than P-256, P-384, P- 512 or hash functions other than SHA2- 224, SHA2-256, SHA2-384, SHA2-512)",
            "name": "Digital signature generation (non- approved)",
            "role": "CO"
          },
          {
            "alg_accessed": "SRP Diffie-Hellman (with domain parameters other than safe primes) EC Diffie-Hellman (with curves other than P-256, P- 384, P-512)",
            "description": "SRP, Diffie-Hellman (with domain parameters other than safe primes), EC Diffie-Hellman (with curves other than P-256, P-384, P-512)",
            "name": "Key agreement; Shared secret computation (non- approved)",
            "role": "CO"
          },
          {
            "alg_accessed": "RSA (encapsulation and un- encapsulation with any key sizes)",
            "description": "RSA (encapsulation and un- encapsulation with any key sizes)",
            "name": "Key encapsulation; Key un- encapsulation (non- approved)",
            "role": "CO"
          },
          {
            "alg_accessed": "Yarrow",
            "description": "Yarrow",
            "name": "Random number generation (non- approved)",
            "role": "CO"
          }
        ],
        "found": true,
        "section": 4,
        "subsection": 4
      },
      "ports_interfaces": {
        "entries": [
          {
            "data": "API input parameters, kernel I/O network or files on filesystem, TLS protocol input messages.",
            "logicalInterface": "Data Input",
            "physicalPort": "N/A"
          },
          {
            "data": "API output parameters, kernel I/O network or files on filesystem, TLS protocol output messages.",
            "logicalInterface": "Data Output",
            "physicalPort": "N/A"
          },
          {
            "data": "API function calls, API input parameters for control.",
            "logicalInterface": "Control Input",
            "physicalPort": "N/A"
          },
          {
            "data": "API return codes, API output parameters for status output.",
            "logicalInterface": "Status Output",
            "physicalPort": "N/A"
          }
        ],
        "found": true,
        "section": 3,
        "subsection": 1
      },
      "roles": {
        "entries": [
          {
            "authMethodList": "None",
            "name": "Crypto Officer",
            "operatorType": "Crypto Officer",
            "type": "Role"
          }
        ],
        "found": true,
        "section": 4,
        "subsection": 2
      },
      "security_levels": {
        "entries": [
          {
            "level": "1",
            "section": "1",
            "title": "General"
          },
          {
            "level": "1",
            "section": "2",
            "title": "Cryptographic module specification"
          },
          {
            "level": "1",
            "section": "3",
            "title": "Cryptographic module interfaces"
          },
          {
            "level": "1",
            "section": "4",
            "title": "Roles, services, and authentication"
          },
          {
            "level": "1",
            "section": "5",
            "title": "Software/Firmware security"
          },
          {
            "level": "1",
            "section": "6",
            "title": "Operational environment"
          },
          {
            "level": "N/A",
            "section": "7",
            "title": "Physical security"
          },
          {
            "level": "N/A",
            "section": "8",
            "title": "Non-invasive security"
          },
          {
            "level": "1",
            "section": "9",
            "title": "Sensitive security parameter management"
          },
          {
            "level": "1",
            "section": "10",
            "title": "Self-tests"
          },
          {
            "level": "1",
            "section": "11",
            "title": "Life-cycle assurance"
          },
          {
            "level": "N/A",
            "section": "12",
            "title": "Mitigation of other attacks"
          },
          {
            "level": "1",
            "section": "",
            "title": "Overall Level"
          }
        ],
        "found": true,
        "section": 1,
        "subsection": 2
      },
      "self_tests": {
        "entries": [
          {
            "algorithmOrTest": "HMAC-SHA2- 256 (A3665)",
            "details": "MAC tag computation and verification",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA2-256",
            "type": "SW/FW Integrity"
          },
          {
            "algorithmOrTest": "HMAC-SHA2- 256 (A3667)",
            "details": "MAC tag computation and verification",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA2-256",
            "type": "SW/FW Integrity"
          },
          {
            "algorithmOrTest": "HMAC-SHA2- 256 (A3714)",
            "details": "MAC tag computation and verification",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA2-256",
            "type": "SW/FW Integrity"
          },
          {
            "algorithmOrTest": "HMAC-SHA2- 256 (A3710)",
            "details": "MAC tag computation and verification",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA2-256",
            "type": "SW/FW Integrity"
          }
        ],
        "found": true,
        "section": 10,
        "subsection": 1
      },
      "ssp_io_methods": {
        "entries": [
          {
            "dest": "Cryptographic module",
            "distribution": "Manual",
            "entry": "Electronic",
            "format": "Plaintext",
            "name": "API input parameters",
            "sfiAlgo": "",
            "source": "Operator calling application (within TOEPP)"
          },
          {
            "dest": "Operator calling application (within TOEPP)",
            "distribution": "Manual",
            "entry": "Electronic",
            "format": "Plaintext",
            "name": "API output parameters",
            "sfiAlgo": "",
            "source": "Cryptographic module"
          }
        ],
        "found": true,
        "section": 9,
        "subsection": 2
      },
      "ssp_zeroization_methods": {
        "entries": [
          {
            "description": "Zeroizes the SSPs contained within the cipher handle.",
            "method": "Wipe and Free memory block allocated",
            "operatorId": "To zeroize AES keys, call gnutls_cipher_deinit() or gnutls_aead_cipher_deinit(); to zeroize HMAC keys, call gnutls_hmac_deinit(); to zeroize RSA or ECDSA public/private keys, call gnutls_privkey_deinit() or gnutls_x509_privkey_deinit() or gnutls_rsa_params_deinit(); to zeroize Diffie-Hellman public/private keys, call gnutls_dh_params_deinit() or gnutls_pk_params_clear(); to zeroize EC Diffie-Hellman public/private keys, call gnutls_pk_params_clear(); to zeroize (Diffie-Hellman) Shared secret or (EC Diffie-Hellman) Shared secret, call zeroize_key(); to zeroize entropy input, DRBG seed, or DRBG internal state, call gnutls_global_deinit(); to zeroize TLS pre- master secret, TLS master secret, TLS derived secret, or PBKDF derived key, call gnutls_deinit()",
            "rationale": "Memory occupied by SSPs is overwritten with zeroes and then it is released, which renders the SSP values irretrievable. The completion of the zeroization routine indicates that the zeroization has been completed"
          },
          {
            "description": "Automatically zeroized by the module when no longer needed",
            "method": "Automatic",
            "operatorId": "N/A",
            "rationale": "Memory occupied by SSPs is overwritten with zeroes, which renders the SSP values irretrievable."
          },
          {
            "description": "De-allocates the volatile memory used to store SSPs",
            "method": "Module Reset",
            "operatorId": "By unloading and reloading the module",
            "rationale": "Volatile memory used by the module is overwritten within nanoseconds when power is removed. The completion of module power-off indicates that the zeroization has been completed"
          }
        ],
        "found": true,
        "section": 9,
        "subsection": 3
      },
      "storage_areas": {
        "entries": [
          {
            "description": "Temporary storage for SSPs used by the module as part of service execution.",
            "name": "RAM",
            "persistance": "Dynamic"
          }
        ],
        "found": true,
        "section": 9,
        "subsection": 1
      },
      "tested_module_id_hw": {
        "entries": [],
        "found": false,
        "section": 2,
        "subsection": 2
      },
      "tested_module_id_hw_hy": {
        "entries": [],
        "found": false,
        "section": 2,
        "subsection": 2
      },
      "tested_module_id_sw_fw_hy": {
        "entries": [],
        "found": false,
        "section": 2,
        "subsection": 2
      },
      "tested_op_env_sw_fw_hy": {
        "entries": [
          {
            "hardwarePlatform": "Supermicro SYS- 1019P-WTR",
            "hypervisorHostOs": "N/A",
            "operatingSystem": "Ubuntu 22.04 LTS (Jammy Jellyfish)",
            "paa_pai": "Yes",
            "processors": "Intel\u00ae Xeon\u00ae Gold 6226",
            "version": "3.7.3- 4ubuntu1.2+Fips1.1"
          },
          {
            "hardwarePlatform": "Amazon Web Services (AWS) c6g.metal",
            "hypervisorHostOs": "N/A",
            "operatingSystem": "Ubuntu 22.04 LTS (Jammy Jellyfish)",
            "paa_pai": "Yes",
            "processors": "AWS Graviton2",
            "version": "3.7.3- 4ubuntu1.2+Fips1.1"
          },
          {
            "hardwarePlatform": "IBM z15",
            "hypervisorHostOs": "N/A",
            "operatingSystem": "Ubuntu 22.04 LTS (Jammy Jellyfish)",
            "paa_pai": "Yes",
            "processors": "z15",
            "version": "3.7.3- 4ubuntu1.2+Fips1.1"
          },
          {
            "hardwarePlatform": "Supermicro SYS- 1019P-WTR",
            "hypervisorHostOs": "N/A",
            "operatingSystem": "Ubuntu 22.04 LTS (Jammy Jellyfish)",
            "paa_pai": "No",
            "processors": "Intel\u00ae Xeon\u00ae Gold 6226",
            "version": "3.7.3- 4ubuntu1.2+Fips1.1"
          },
          {
            "hardwarePlatform": "Amazon Web Services (AWS) c6g.metal",
            "hypervisorHostOs": "N/A",
            "operatingSystem": "Ubuntu 22.04 LTS (Jammy Jellyfish)",
            "paa_pai": "No",
            "processors": "AWS Graviton2",
            "version": "3.7.3- 4ubuntu1.2+Fips1.1"
          },
          {
            "hardwarePlatform": "IBM z15",
            "hypervisorHostOs": "N/A",
            "operatingSystem": "Ubuntu 22.04 LTS (Jammy Jellyfish)",
            "paa_pai": "No",
            "processors": "z15",
            "version": "3.7.3- 4ubuntu1.2+Fips1.1"
          }
        ],
        "found": true,
        "section": 2,
        "subsection": 2
      },
      "vendor_affirmed_algos": {
        "entries": [
          {
            "algoPropList": "RSA:Asymmetric ECDSA:Asymmetric EC Diffie-Hellman :Asymmetric Safe primes:Asymmetric",
            "implName": "N/A",
            "name": "CKG (asymmetric)",
            "reference": "SP 800-133r2 section 4 example 1 without the use of V (refer to additional comment 2 of IG D.H)"
          },
          {
            "algoPropList": "AES:Symmetric HMAC:Symmetric",
            "implName": "N/A",
            "name": "CKG (symmetric)",
            "reference": "SP 800-133r2 section 4 example 1 without the use of V (refer to additional comment 2 of IG D.H)"
          }
        ],
        "found": true,
        "section": 2,
        "subsection": 5
      },
      "vendor_affirmed_op_env_sw_fw_hy": {
        "entries": [],
        "found": false,
        "section": 2,
        "subsection": 2
      }
    },
    "is_br1_format": true,
    "keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 1
          },
          "ECDH": {
            "ECDH": 4
          },
          "ECDSA": {
            "ECDSA": 57
          }
        },
        "FF": {
          "DH": {
            "DH": 4,
            "Diffie-Hellman": 45
          },
          "DSA": {
            "DSA": 8
          }
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 1
        },
        "CCM": {
          "CCM": 2
        },
        "CFB": {
          "CFB": 1
        },
        "CTR": {
          "CTR": 1
        },
        "ECB": {
          "ECB": 1
        },
        "GCM": {
          "GCM": 6
        },
        "OFB": {
          "OFB": 1
        },
        "XTS": {
          "XTS": 3
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {
        "GnuTLS": {
          "GnuTLS": 79
        }
      },
      "crypto_protocol": {
        "SSH": {
          "SSH": 1
        },
        "TLS": {
          "TLS": {
            "TLS": 73,
            "TLS 1.0": 1,
            "TLS 1.2": 2,
            "TLS v1.2": 15,
            "TLS v1.3": 1,
            "TLSv1.0": 1
          }
        }
      },
      "crypto_scheme": {
        "AEAD": {
          "AEAD": 4
        },
        "KA": {
          "Key Agreement": 3,
          "Key agreement": 4
        },
        "MAC": {
          "MAC": 47
        }
      },
      "device_model": {},
      "ecc_curve": {
        "NIST": {
          "P-256": 58,
          "P-384": 50,
          "P-512": 10,
          "P-521": 16
        }
      },
      "eval_facility": {
        "atsec": {
          "atsec": 78
        }
      },
      "fips_cert_id": {},
      "fips_certlike": {
        "Certlike": {
          "- PKCS 1": 2,
          "AES-256": 2,
          "HMAC-SHA- 1": 8,
          "HMAC-SHA-1": 32,
          "PKCS 1": 2,
          "PKCS#1": 2,
          "SHA-1": 16,
          "SHA-224": 4,
          "SHA-256": 4,
          "SHA-3": 5,
          "SHA-384": 4,
          "SHA-512": 4,
          "SHA2- 224": 3,
          "SHA2- 256": 4,
          "SHA2- 384": 3,
          "SHA2- 512": 2,
          "SHA2-224": 30,
          "SHA2-256": 44,
          "SHA2-384": 31,
          "SHA2-512": 26,
          "SHA3-224": 8,
          "SHA3-256": 8,
          "SHA3-384": 8,
          "SHA3-512": 8
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 1": 1
        }
      },
      "hash_function": {
        "MD": {
          "MD4": {
            "MD4": 3
          },
          "MD5": {
            "MD5": 4
          }
        },
        "PBKDF": {
          "PBKDF": 23,
          "PBKDF2": 3
        },
        "SHA": {
          "SHA1": {
            "SHA-1": 16
          },
          "SHA2": {
            "SHA-224": 4,
            "SHA-256": 4,
            "SHA-384": 4,
            "SHA-512": 4
          },
          "SHA3": {
            "SHA-3": 5,
            "SHA3-224": 8,
            "SHA3-256": 8,
            "SHA3-384": 8,
            "SHA3-512": 8
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 35
        },
        "RNG": {
          "RBG": 2,
          "RNG": 2
        }
      },
      "side_channel_analysis": {
        "FI": {
          "Fault Induction": 2
        }
      },
      "standard_id": {
        "FIPS": {
          "FIPS 140-3": 78,
          "FIPS 180-4": 20,
          "FIPS 186-4": 11,
          "FIPS 198-1": 20,
          "FIPS 202": 8,
          "FIPS PUB 140-3": 2,
          "FIPS140-3": 1,
          "FIPS180-4": 1,
          "FIPS186-4": 32,
          "FIPS197": 1,
          "FIPS198-1": 1,
          "FIPS202": 1
        },
        "NIST": {
          "SP 800-132": 1,
          "SP 800-135": 2,
          "SP 800-38A": 11,
          "SP 800-38B": 4,
          "SP 800-38C": 3,
          "SP 800-38D": 8,
          "SP 800-38E": 1,
          "SP 800-56A": 3,
          "SP 800-56C": 1,
          "SP 800-90A": 1
        },
        "PKCS": {
          "PKCS 1": 2,
          "PKCS#1": 1
        },
        "RFC": {
          "RFC3268": 4,
          "RFC3394": 1,
          "RFC3526": 1,
          "RFC4279": 2,
          "RFC4492": 8,
          "RFC5246": 4,
          "RFC5288": 5,
          "RFC5289": 16,
          "RFC5649": 1,
          "RFC6655": 4,
          "RFC7627": 14,
          "RFC7919": 1,
          "RFC8446": 5
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 23,
            "AES-": 3,
            "AES-256": 2
          },
          "CAST": {
            "CAST": 117
          },
          "RC": {
            "RC2": 3,
            "RC4": 3
          },
          "Serpent": {
            "Serpent": 3
          },
          "Twofish": {
            "Twofish": 3
          }
        },
        "DES": {
          "3DES": {
            "Triple-DES": 6
          },
          "DES": {
            "DES": 3
          }
        },
        "constructions": {
          "MAC": {
            "CMAC": 6,
            "HMAC": 26
          }
        },
        "djb": {
          "ChaCha": {
            "ChaCha20": 3
          },
          "Poly": {
            "Poly1305": 3
          },
          "Salsa": {
            "Salsa20": 3
          }
        },
        "miscellaneous": {
          "Blowfish": {
            "Blowfish": 3
          },
          "Camellia": {
            "Camellia": 3
          },
          "SEED": {
            "SEED": 3
          }
        }
      },
      "tee_name": {
        "AMD": {
          "PSP": 4
        },
        "IBM": {
          "SSC": 1
        }
      },
      "tls_cipher_suite": {
        "TLS": {
          "TLS_DHE_RSA_WITH_AES_128_CBC_SHA": 1,
          "TLS_DHE_RSA_WITH_AES_128_CBC_SHA256": 1,
          "TLS_DHE_RSA_WITH_AES_128_CCM": 1,
          "TLS_DHE_RSA_WITH_AES_128_CCM_8": 1,
          "TLS_DHE_RSA_WITH_AES_128_GCM_SHA256": 1,
          "TLS_DHE_RSA_WITH_AES_256_CBC_SHA": 1,
          "TLS_DHE_RSA_WITH_AES_256_CBC_SHA256": 1,
          "TLS_DHE_RSA_WITH_AES_256_CCM": 1,
          "TLS_DHE_RSA_WITH_AES_256_CCM_8": 1,
          "TLS_DHE_RSA_WITH_AES_256_GCM_SHA384": 1,
          "TLS_DH_RSA_WITH_AES_128_CBC_SHA": 1,
          "TLS_DH_RSA_WITH_AES_128_CBC_SHA256": 1,
          "TLS_DH_RSA_WITH_AES_128_GCM_SHA256": 1,
          "TLS_DH_RSA_WITH_AES_256_CBC_SHA": 1,
          "TLS_DH_RSA_WITH_AES_256_CBC_SHA256": 1,
          "TLS_DH_RSA_WITH_AES_256_GCM_SHA384": 1,
          "TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA": 1,
          "TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256": 1,
          "TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256": 1,
          "TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA": 1,
          "TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384": 1,
          "TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384": 1,
          "TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA": 1,
          "TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256": 1,
          "TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256": 1,
          "TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA": 1,
          "TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384": 1,
          "TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384": 1,
          "TLS_ECDH_ECDSA_WITH_AES_128_CBC_SHA": 1,
          "TLS_ECDH_ECDSA_WITH_AES_128_CBC_SHA256": 1,
          "TLS_ECDH_ECDSA_WITH_AES_128_GCM_SHA256": 1,
          "TLS_ECDH_ECDSA_WITH_AES_256_CBC_SHA": 1,
          "TLS_ECDH_ECDSA_WITH_AES_256_CBC_SHA384": 1,
          "TLS_ECDH_ECDSA_WITH_AES_256_GCM_SHA384": 1,
          "TLS_ECDH_RSA_WITH_AES_128_CBC_SHA": 1,
          "TLS_ECDH_RSA_WITH_AES_128_CBC_SHA256": 1,
          "TLS_ECDH_RSA_WITH_AES_128_GCM_SHA256": 1,
          "TLS_ECDH_RSA_WITH_AES_256_CBC_SHA": 1,
          "TLS_ECDH_RSA_WITH_AES_256_CBC_SHA384": 1,
          "TLS_ECDH_RSA_WITH_AES_256_GCM_SHA384": 1,
          "TLS_PSK_WITH_AES_128_CBC_SHA": 1,
          "TLS_PSK_WITH_AES_256_CBC_SHA": 1
        }
      },
      "vendor": {},
      "vulnerability": {}
    },
    "module_algorithms": {
      "_type": "Set",
      "elements": [
        "Safe Primes Key GenerationA3667",
        "KAS-FFC-SSC Sp800-56Ar3A3667",
        "SHA2-256A3714",
        "HMAC-SHA2-384A3714",
        "RSA SigGen (FIPS186-4)A3667",
        "AES-GCMA3713",
        "AES-GMACA3667",
        "RSA SigVer (FIPS186-4)A3667",
        "SHA3-384A3715",
        "AES-CCMA3711",
        "SHA2-512A3714",
        "PBKDFA3667",
        "ECDSA SigVer (FIPS186-4)A3667",
        "SHA2-384A3714",
        "HMAC-SHA2-224A3714",
        "SHA3-256A3715",
        "AES-XTS Testing Revision 2.0A3668",
        "SHA-1A3714",
        "TLS v1.2 KDF RFC7627A3667",
        "HMAC-SHA-1A3714",
        "AES-CBCA3714",
        "KDA HKDF Sp800-56Cr1A3666",
        "AES-CFB8A3717",
        "HMAC-SHA2-256A3714",
        "RSA KeyGen (FIPS186-4)A3667",
        "AES-CMACA3714",
        "ECDSA SigGen (FIPS186-4)A3667",
        "SHA3-224A3715",
        "HMAC-SHA2-512A3714",
        "ECDSA KeyGen (FIPS186-4)A3667",
        "ECDSA KeyVer (FIPS186-4)A3667",
        "KAS-ECC-SSC Sp800-56Ar3A3667",
        "SHA2-224A3714",
        "Counter DRBGA3667",
        "KDF TLSA3667",
        "SHA3-512A3715"
      ]
    },
    "policy_algorithms": {
      "_type": "Set",
      "elements": [
        "#A3710",
        "#A3716",
        "#A3666",
        "#A3668",
        "#A3717",
        "#A3715",
        "#A3669",
        "#A3709",
        "#A3712",
        "#A3708",
        "#A3670",
        "#A3665",
        "#A3713",
        "#A3714",
        "#A3667",
        "#A3711"
      ]
    },
    "policy_metadata": {
      "/Author": "Hawes, David J. (Fed)",
      "/CreationDate": "D:20241022142646+00\u002700\u0027",
      "/Creator": "Microsoft Word",
      "/ModDate": "D:20241022142646+00\u002700\u0027",
      "pdf_file_size_bytes": 975915,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-57pt1r5.pdf",
          "https://nvlpubs.nist.gov/nistpubs/FIPS/NIST.FIPS.202.pdf",
          "https://csrc.nist.gov/csrc/media/Projects/cryptographic-module-validation-program/documents/fips%20140-3/FIPS%20140-3%20IG.pdf",
          "https://csrc.nist.gov/publications/nistpubs/800-108/sp800-108.pdf",
          "https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-90B.pdf",
          "https://www.ietf.org/rfc/rfc3394.txt",
          "https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-52r2.pdf",
          "https://nvlpubs.nist.gov/nistpubs/FIPS/NIST.FIPS.180-4.pdf",
          "https://csrc.nist.gov/publications/fips/fips198-1/FIPS-198-1_final.pdf",
          "https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-131Ar2.pdf",
          "https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-56Ar3.pdf",
          "https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-38b.pdf",
          "https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-90Ar1.pdf",
          "https://nvlpubs.nist.gov/nistpubs/Legacy/SP/nistspecialpublication800-135r1.pdf",
          "https://nvlpubs.nist.gov/nistpubs/Legacy/SP/nistspecialpublication800-38e.pdf",
          "https://csrc.nist.gov/publications/fips/fips197/fips-197.pdf",
          "https://nvlpubs.nist.gov/nistpubs/Legacy/SP/nistspecialpublication800-38a.pdf",
          "https://www.ietf.org/rfc/rfc3447.txt",
          "https://www.ietf.org/rfc/rfc5649.txt",
          "https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-38G.pdf",
          "https://nvlpubs.nist.gov/nistpubs/Legacy/SP/nistspecialpublication800-38d.pdf",
          "https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-140B.pdf",
          "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/entropy/E60_PublicUse.pdf",
          "https://nvlpubs.nist.gov/nistpubs/Legacy/SP/nistspecialpublication800-132.pdf",
          "https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-133r2.pdf",
          "https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-38F.pdf",
          "https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-56Cr2.pdf",
          "https://csrc.nist.gov/publications/nistpubs/800-38E/nist-sp-800-38E.pdf",
          "https://nvlpubs.nist.gov/nistpubs/FIPS/NIST.FIPS.186-4.pdf",
          "https://nvlpubs.nist.gov/nistpubs/FIPS/NIST.FIPS.140-3.pdf",
          "https://nvlpubs.nist.gov/nistpubs/Legacy/SP/nistspecialpublication800-38c.pdf"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 77
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.InternalState",
    "module": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "source_hash": null,
      "txt_hash": null
    },
    "policy": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": "34f6752939c70a2abc6b94bf4c00c15b8df0327aaa1ce686008cf6e09752f6eb",
      "source_hash": "9e23ace1c1fdd4ff18db4378a360c36681fc260826b671db648d6228797bd7f9",
      "txt_hash": "e583a9cf50675a1dff5dfe1145d025755cd9f478ee955ba6022d99e3507f509e"
    }
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "Interim validation. When operated in the approved mode. When installed, initialized, and configured as specified in section 11.1 of the Security Policy.",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/October 2024_041124_0733 (1).pdf",
    "date_sunset": "2029-10-27",
    "description": "GnuTLS is a secure communications library implementing the TLS protocol. It provides a simple C language application programming interface to access the secure communications protocols as well as APIs to parse and write X.509, PKCS#12, and other required structures.",
    "embodiment": "Multi-Chip Stand Alone",
    "exceptions": [
      "Physical security: N/A",
      "Non-invasive security: N/A",
      "Mitigation of other attacks: N/A"
    ],
    "fw_versions": null,
    "historical_reason": null,
    "hw_versions": null,
    "level": 1,
    "mentioned_certs": {},
    "module_name": "Canonical Ltd. Ubuntu 22.04 GnuTLS Cryptographic Module",
    "module_type": "Software",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-3",
    "status": "active",
    "sw_versions": "3.7.3-4ubuntu1.2+Fips1.1",
    "tested_conf": [
      "Ubuntu 22.04 LTS (Jammy Jellyfish) running on Amazon Web Services (AWS) c6g.metal with AWS Graviton2 with PAA",
      "Ubuntu 22.04 LTS (Jammy Jellyfish) running on Amazon Web Services (AWS) c6g.metal with AWS Graviton2 without PAA",
      "Ubuntu 22.04 LTS (Jammy Jellyfish) running on IBM z15 with z15 with PAI",
      "Ubuntu 22.04 LTS (Jammy Jellyfish) running on IBM z15 with z15 without PAI",
      "Ubuntu 22.04 LTS (Jammy Jellyfish) running on Supermicro SYS-1019P-WTR with Intel\u00ae Xeon\u00ae Gold 6226 with PAA",
      "Ubuntu 22.04 LTS (Jammy Jellyfish) running on Supermicro SYS-1019P-WTR with Intel\u00ae Xeon\u00ae Gold 6226 without PAA"
    ],
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2024-10-28",
        "lab": "atsec information security corporation",
        "validation_type": "Initial"
      }
    ],
    "vendor": "Canonical Ltd.",
    "vendor_url": "http://www.canonical.com"
  }
}