Vormetric Data Security Manager Virtual Appliance Module

Certificate #2735

Webpage information

Status historical
Historical reason Moved to historical list due to sunsetting
Validation dates 02.09.2016
Standard FIPS 140-2
Security level 1
Type Software
Embodiment Multi-Chip Stand Alone
Caveat When operated in FIPS mode. The protocol SSH shall not be used when operated in FIPS mode
Exceptions
  • Roles, Services, and Authentication: Level 3
  • Physical Security: N/A
  • Cryptographic Key Management: Level 3
  • Design Assurance: Level 3
  • Mitigation of Other Attacks: N/A
Description The Vormetric Data Security Virtual Appliance Module is a multi-chip standalone cryptographic module. The Vormetric Data Security Virtual Appliance Module is the central point of management for the Vormetric Data Security product. It manages keys and policies, and controls Vormetric Transparent Encryption Agents. These agents contain the Vormetric Encryption Expert Cryptographic Module, which has been validated separately from this module.
Tested configurations
  • Centos 5.11 (64-bit) on VMware ESXi 5.5.0 running on a Supermicro X9DAX (single-user mode)
Vendor Vormetric, Inc.
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Symmetric Algorithms
AES, AES-256, AES-128, DES, 3DES, Triple-DES, ARIA, HMAC, HMAC-SHA-384, HMAC-SHA-256
Asymmetric Algorithms
RSA 2048, RSA-1024, RSA-4096, RSA 1024, RSA 4096, ECDHE, ECDSA, DH
Hash functions
SHA-1, SHA-256, SHA-384, MD5
Schemes
Key Exchange
Protocols
SSH, TLS, TLS 1.2
Randomness
DRBG, RNG
Libraries
OpenSSL
Elliptic Curves
P-384, P-256
Block cipher modes
CBC
TLS cipher suites
TLS_RSA_WITH_AES_256_CBC_SHA, TLS_RSA_WITH_AES_128_CBC_SHA, TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256, TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384, TLS_RSA_WITH_3DES_EDE_CBC_SHA

Security level
Level 1, Level 3, level 1

Standards
FIPS 140-2, FIPS 186-4, NIST SP 800-90A, SP 800-90A, PKCS#1

File metadata

Title Virtual DSM Security Policy
Author [email protected]
Creation date D:20160824230223-07'00'
Modification date D:20160824230223-07'00'
Pages 19
Creator Microsoft® Word 2016
Producer Microsoft® Word 2016

Heuristics

No heuristics are available for this certificate.

References

No references are available for this certificate.

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 2735,
  "dgst": "93f606bd517c88c2",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "SHS#2949",
        "DRBG#951",
        "ECDSA#751",
        "CVL#643",
        "SHS#3041",
        "CVL#612",
        "KTS#3621",
        "AES#3621",
        "RSA#1866",
        "HMAC#2375",
        "SHS#2950",
        "KTS#2375",
        "AES#3588",
        "HMAC#2288",
        "HMAC#2287"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "-"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECDH": {
            "ECDHE": 1
          },
          "ECDSA": {
            "ECDSA": 16
          }
        },
        "FF": {
          "DH": {
            "DH": 8
          }
        },
        "RSA": {
          "RSA 1024": 1,
          "RSA 2048": 4,
          "RSA 4096": 1,
          "RSA-1024": 1,
          "RSA-4096": 1
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 6
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {
        "OpenSSL": {
          "OpenSSL": 8
        }
      },
      "crypto_protocol": {
        "SSH": {
          "SSH": 3
        },
        "TLS": {
          "TLS": {
            "TLS": 39,
            "TLS 1.2": 1
          }
        }
      },
      "crypto_scheme": {
        "KEX": {
          "Key Exchange": 1
        }
      },
      "device_model": {},
      "ecc_curve": {
        "NIST": {
          "P-256": 4,
          "P-384": 18
        }
      },
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "#1866": 1,
          "#2375": 1,
          "#3588": 1,
          "#3621": 1,
          "#951": 1
        }
      },
      "fips_certlike": {
        "Certlike": {
          "AES #3621": 1,
          "AES 128": 1,
          "AES 256": 4,
          "AES cert #3588": 1,
          "AES-128": 1,
          "AES-256": 2,
          "DRBG cert #951": 1,
          "HMAC #2375": 2,
          "HMAC SHA-256": 1,
          "HMAC-SHA- 256": 2,
          "HMAC-SHA-1": 4,
          "HMAC-SHA-256": 10,
          "HMAC-SHA-384": 8,
          "HMAC-SHA1": 2,
          "PKCS#1": 2,
          "RSA 1024": 1,
          "RSA 2048": 4,
          "RSA 4096": 1,
          "SHA-1": 2,
          "SHA-256": 7,
          "SHA-384": 3
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 1": 4,
          "Level 3": 1,
          "level 1": 1
        }
      },
      "hash_function": {
        "MD": {
          "MD5": {
            "MD5": 1
          }
        },
        "SHA": {
          "SHA1": {
            "SHA-1": 2
          },
          "SHA2": {
            "SHA-256": 7,
            "SHA-384": 3
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 28
        },
        "RNG": {
          "RNG": 3
        }
      },
      "side_channel_analysis": {},
      "standard_id": {
        "FIPS": {
          "FIPS 140-2": 10,
          "FIPS 186-4": 8
        },
        "NIST": {
          "NIST SP 800-90A": 23,
          "SP 800-90A": 1
        },
        "PKCS": {
          "PKCS#1": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 14,
            "AES-128": 1,
            "AES-256": 2
          }
        },
        "DES": {
          "3DES": {
            "3DES": 1,
            "Triple-DES": 3
          },
          "DES": {
            "DES": 1
          }
        },
        "constructions": {
          "MAC": {
            "HMAC": 4,
            "HMAC-SHA-256": 5,
            "HMAC-SHA-384": 4
          }
        },
        "miscellaneous": {
          "ARIA": {
            "ARIA": 4
          }
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {
        "TLS": {
          "TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256": 1,
          "TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384": 1,
          "TLS_RSA_WITH_3DES_EDE_CBC_SHA": 1,
          "TLS_RSA_WITH_AES_128_CBC_SHA": 1,
          "TLS_RSA_WITH_AES_256_CBC_SHA": 1
        }
      },
      "vendor": {},
      "vulnerability": {}
    },
    "policy_metadata": {
      "/Author": "[email protected]",
      "/CreationDate": "D:20160824230223-07\u002700\u0027",
      "/Creator": "Microsoft\u00ae Word 2016",
      "/ModDate": "D:20160824230223-07\u002700\u0027",
      "/Producer": "Microsoft\u00ae Word 2016",
      "/Title": "Virtual DSM Security Policy",
      "pdf_file_size_bytes": 537880,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "http://www.vormetric.com/",
          "http://csrc.nist.gov/groups/STM/cmvp/index.html"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 19
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
    "module_download_ok": true,
    "module_extract_ok": true,
    "policy_convert_ok": true,
    "policy_download_ok": true,
    "policy_extract_ok": true,
    "policy_json_hash": null,
    "policy_pdf_hash": "3441fde6a1f8385b6f24fd3dec06a4f9eb4b09e0edb025335c4027be7d0eece9",
    "policy_txt_hash": "c897771472c3aa0f5a34736015931c28892ca7ca36ac6082e92f3ed2c7ea4a74"
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "When operated in FIPS mode. The protocol SSH shall not be used when operated in FIPS mode",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/FIPS140ConsolidatedCertSept2016.pdf",
    "date_sunset": null,
    "description": "The Vormetric Data Security Virtual Appliance Module is a multi-chip standalone cryptographic module. The Vormetric Data Security Virtual Appliance Module is the central point of management for the Vormetric Data Security product. It manages keys and policies, and controls Vormetric Transparent Encryption Agents. These agents contain the Vormetric Encryption Expert Cryptographic Module, which has been validated separately from this module.",
    "embodiment": "Multi-Chip Stand Alone",
    "exceptions": [
      "Roles, Services, and Authentication: Level 3",
      "Physical Security: N/A",
      "Cryptographic Key Management: Level 3",
      "Design Assurance: Level 3",
      "Mitigation of Other Attacks: N/A"
    ],
    "fw_versions": null,
    "historical_reason": "Moved to historical list due to sunsetting",
    "hw_versions": null,
    "level": 1,
    "mentioned_certs": {},
    "module_name": "Vormetric Data Security Manager Virtual Appliance Module",
    "module_type": "Software",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "historical",
    "sw_versions": "5.3.0",
    "tested_conf": [
      "Centos 5.11 (64-bit) on VMware ESXi 5.5.0 running on a \tSupermicro X9DAX (single-user mode)"
    ],
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2016-09-02",
        "lab": "CYGNACOM SOLUTIONS INC",
        "validation_type": "Initial"
      }
    ],
    "vendor": "Vormetric, Inc.",
    "vendor_url": "http://www.vormetric.com"
  }
}