CGX Cryptographic Module

Certificate details

Certificate ID #644
Status historical
Historical reason RNG SP800-131A Revision 1 Transition
Validation dates 03.04.2006
Standard FIPS 140-2
Security level 1
Type Software
Embodiment Multi-Chip Stand Alone
Caveat When operated in FIPS mode
Exceptions
  • EMI/EMC: Level 3
  • Design Assurance: Level 3
Description Based on SafeNet's 20 years of security expertise and the most widely deployed VPN software in the industry, the CGX Cryptographic Library provides a high-level software interface to SafeNet SafeXcel™ VPN acceleration chips, cards, and EmbeddedIP™ intellectual property. The CGX library can be used as an API to hardware accelerators or for compiling software implementations of the latest industry standard algorithms.
Tested configurations
  • Linux 2.4.18-3 and Solaris 8.2/02
Vendor SafeNet, Inc. http://www.safenet-inc.com
Lab COACT INC CAFE LAB
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Extracted keywords

Symmetric Algorithms
AES, RC5, DES, TDES, Triple-DES, HMAC
Asymmetric Algorithms
Diffie-Hellman
Hash functions
SHA-1, MD5, RIPEMD-128
Schemes
KA
Protocols
IPsec
Randomness
PRNG, RNG
Block cipher modes
ECB, CBC, CFB, OFB

Security level
Level 1, level 1
Side-channel analysis
timing attack

Automated analysis

Automated inference - use with caution

All attributes shown in this section (e.g., links between certificates, products, vendors, and known CVEs) are generated by automated heuristics and have not been reviewed by humans. These methods can produce false positives or false negatives and should not be treated as definitive without independent verification. This applies equally to the Cross-references section below. If you want to know more about how this data is computed and how reliable it is, see our documentation on automated analysis. If you believe any information here is inaccurate or harmful, please submit feedback.

No automatically derived data are available in this section.

Cross-references

No references are available for this certificate.

Processing updates

Feed
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 644,
  "dgst": "87e50b28705900bb",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "AES#329",
        "Triple-DES#393",
        "HMAC#148",
        "SHS#403",
        "RNG#49"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "-"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "FF": {
          "DH": {
            "Diffie-Hellman": 7
          }
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 2
        },
        "CFB": {
          "CFB": 1
        },
        "ECB": {
          "ECB": 2
        },
        "OFB": {
          "OFB": 1
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "IPsec": {
          "IPsec": 1
        }
      },
      "crypto_scheme": {
        "KA": {
          "KA": 2
        }
      },
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "# 49": 1,
          "#0": 1
        }
      },
      "fips_certlike": {
        "Certlike": {
          "Cert#148 HMAC": 1,
          "Cert#329 AES": 1,
          "Cert#403 SHS": 1,
          "HMAC-SHA-1": 2,
          "SHA-1": 5
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 1": 4,
          "level 1": 1
        }
      },
      "hash_function": {
        "MD": {
          "MD5": {
            "MD5": 3
          }
        },
        "RIPEMD": {
          "RIPEMD-128": 1
        },
        "SHA": {
          "SHA1": {
            "SHA-1": 5
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "PRNG": 4
        },
        "RNG": {
          "RNG": 2
        }
      },
      "side_channel_analysis": {
        "SCA": {
          "timing attack": 1
        }
      },
      "standard_id": {
        "FIPS": {
          "FIPS 140-2": 8,
          "FIPS 197": 1,
          "FIPS 198": 1,
          "FIPS 46-3": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 6
          },
          "RC": {
            "RC5": 1
          }
        },
        "DES": {
          "3DES": {
            "TDES": 2,
            "Triple-DES": 4
          },
          "DES": {
            "DES": 9
          }
        },
        "constructions": {
          "MAC": {
            "HMAC": 4
          }
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "policy_metadata": {
      "/Author": "chris",
      "/CreationDate": "D:20060309145309Z",
      "/Creator": "SafeNet CGX v3.21.1 Security Policy - Level 1_2.doc - Microsoft Word",
      "/ModDate": "D:20060403100943-04\u002700\u0027",
      "/Producer": "Acrobat PDFWriter 5.0 for Windows NT",
      "/Title": "SafeNet CGX v3.21.1 Security Policy - Level 1_2.doc",
      "pdf_file_size_bytes": 147605,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 20
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.InternalState",
    "module": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "source_hash": null,
      "txt_hash": null
    },
    "policy": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "source_hash": "a7438da3fba878a9c8f941e6e745e5feac1eed3289c4b185fa2b8f7acb1b8ecf",
      "txt_hash": "a7e961ce41795384f6c39b163afa6a4df0276bda3ffaa96b16305323135cc480"
    }
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "When operated in FIPS mode",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/140crt644.pdf",
    "date_sunset": null,
    "description": "Based on SafeNet\u0027s 20 years of security expertise and the most widely deployed VPN software in the industry, the CGX Cryptographic Library provides a high-level software interface to SafeNet SafeXcel\u2122 VPN acceleration chips, cards, and EmbeddedIP\u2122 intellectual property. The CGX library can be used as an API to hardware accelerators or for compiling software implementations of the latest industry standard algorithms.",
    "embodiment": "Multi-Chip Stand Alone",
    "exceptions": [
      "EMI/EMC: Level 3",
      "Design Assurance: Level 3"
    ],
    "fw_versions": null,
    "historical_reason": "RNG SP800-131A Revision 1 Transition",
    "hw_versions": null,
    "level": 1,
    "mentioned_certs": {},
    "module_name": "CGX Cryptographic Module",
    "module_type": "Software",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "historical",
    "sw_versions": "3.21.1",
    "tested_conf": [
      "Linux 2.4.18-3 and Solaris 8.2/02"
    ],
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2006-04-03",
        "lab": "COACT INC CAFE LAB",
        "validation_type": "Initial"
      }
    ],
    "vendor": "SafeNet, Inc.",
    "vendor_url": "http://www.safenet-inc.com"
  }
}