This page was not yet optimized for use on mobile devices.
Citrix FIPS Cryptographic Module
Certificate #4628
Webpage information ?
Security policy ?
Symmetric Algorithms
AES, Triple-DES, TDES, HMAC, CMACAsymmetric Algorithms
RSA-1024, ECDH, ECDSA, ECC, DH, DSAHash functions
SHA-1, SHA-224, SHA-256, SHA-384, SHA-512, SHA-2, MD5, PBKDFSchemes
MACProtocols
SSH, TLS, TLS 1.2Randomness
DRBG, RNGElliptic Curves
P-224, P-256, P-384, P-521, K-233, K-283, K-409, K-571, B-233, B-283, B-409, B-571Block cipher modes
ECB, CBC, CTR, OFB, GCM, CCM, XTSVendor
SamsungSecurity level
level 1, Level 1Standards
FIPS 140-2, FIPS 197, FIPS 186-4, FIPS 198-1, FIPS 186-2, FIPS 180-4, SP 800-133, SP 800-38A, SP 800-38B, SP 800-38C, SP 800-38D, SP 800-38E, SP 800-38F, SP 800-90A, SP 800-67, SP 800-20, SP 800-132, PKCS #1, PKCS1, PKCS#1File metadata
Author | Ben Tucker |
---|---|
Creation date | D:20231004113903-07'00' |
Modification date | D:20231004113916-07'00' |
Pages | 31 |
Creator | Acrobat PDFMaker 23 for Word |
Producer | Adobe PDF Library 23.6.96 |
Heuristics ?
No heuristics are available for this certificate.
References ?
No references are available for this certificate.
Updates ?
-
06.11.2023 The certificate data changed.
Certificate changed
The web extraction data was updated.
- The certificate_pdf_url property was set to
https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/October 2023_011123_0711.pdf
.
- The certificate_pdf_url property was set to
-
01.11.2023 The certificate was first processed.
New certificate
A new FIPS 140 certificate with the product name was processed.
Raw data
{
"_type": "sec_certs.sample.fips.FIPSCertificate",
"cert_id": 4628,
"dgst": "a5ba595e5571c2a9",
"heuristics": {
"_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
"algorithms": {
"_type": "Set",
"elements": [
"DRBG#1417",
"RSA#2379",
"SHS#3626",
"ECDSA#1056",
"HMAC#2923",
"CVL#1105",
"Triple-DES#2371",
"CVL#1101",
"AES#4397",
"CVL#1103",
"DSA#1174",
"KTS#4397",
"CVL#1102"
]
},
"cpe_matches": null,
"direct_transitive_cves": null,
"extracted_versions": {
"_type": "Set",
"elements": [
"-"
]
},
"indirect_transitive_cves": null,
"module_processed_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": null,
"indirectly_referenced_by": null,
"indirectly_referencing": null
},
"module_prunned_references": {
"_type": "Set",
"elements": []
},
"policy_processed_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": null,
"indirectly_referenced_by": null,
"indirectly_referencing": null
},
"policy_prunned_references": {
"_type": "Set",
"elements": []
},
"related_cves": null,
"verified_cpe_matches": null
},
"pdf_data": {
"_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
"keywords": {
"asymmetric_crypto": {
"ECC": {
"ECC": {
"ECC": 2
},
"ECDH": {
"ECDH": 2
},
"ECDSA": {
"ECDSA": 13
}
},
"FF": {
"DH": {
"DH": 2
},
"DSA": {
"DSA": 14
}
},
"RSA": {
"RSA-1024": 1
}
},
"certification_process": {},
"cipher_mode": {
"CBC": {
"CBC": 2
},
"CCM": {
"CCM": 3
},
"CTR": {
"CTR": 2
},
"ECB": {
"ECB": 3
},
"GCM": {
"GCM": 5
},
"OFB": {
"OFB": 1
},
"XTS": {
"XTS": 7
}
},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {},
"crypto_protocol": {
"SSH": {
"SSH": 7
},
"TLS": {
"TLS": {
"TLS": 2,
"TLS 1.2": 1
}
}
},
"crypto_scheme": {
"MAC": {
"MAC": 6
}
},
"device_model": {},
"ecc_curve": {
"NIST": {
"B-233": 1,
"B-283": 1,
"B-409": 1,
"B-571": 1,
"K-233": 2,
"K-283": 1,
"K-409": 1,
"K-571": 1,
"P-224": 4,
"P-256": 2,
"P-384": 2,
"P-521": 2
}
},
"eval_facility": {},
"fips_cert_id": {
"Cert": {
"# 2379": 1,
"#1": 2,
"#10": 1,
"#4": 1,
"#4397": 1
}
},
"fips_certlike": {
"Certlike": {
"AES #4397": 1,
"AES, 256": 1,
"Cert # AES": 1,
"Cert # RSA": 1,
"HMAC-SHA-1": 2,
"HMAC-SHA1": 2,
"PKCS #1": 4,
"PKCS#1": 2,
"PKCS1": 6,
"SHA-1": 6,
"SHA-2": 1,
"SHA-224": 6,
"SHA-256": 12,
"SHA-384": 8,
"SHA-512": 7,
"SHA-512 2923": 1
}
},
"fips_security_level": {
"Level": {
"Level 1": 4,
"level 1": 1
}
},
"hash_function": {
"MD": {
"MD5": {
"MD5": 2
}
},
"PBKDF": {
"PBKDF": 3
},
"SHA": {
"SHA1": {
"SHA-1": 6
},
"SHA2": {
"SHA-2": 1,
"SHA-224": 6,
"SHA-256": 12,
"SHA-384": 8,
"SHA-512": 8
}
}
},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {
"PRNG": {
"DRBG": 19
},
"RNG": {
"RNG": 3
}
},
"side_channel_analysis": {},
"standard_id": {
"FIPS": {
"FIPS 140-2": 38,
"FIPS 180-4": 1,
"FIPS 186-2": 1,
"FIPS 186-4": 6,
"FIPS 197": 6,
"FIPS 198-1": 1
},
"NIST": {
"SP 800-132": 1,
"SP 800-133": 2,
"SP 800-20": 1,
"SP 800-38A": 1,
"SP 800-38B": 1,
"SP 800-38C": 1,
"SP 800-38D": 1,
"SP 800-38E": 1,
"SP 800-38F": 1,
"SP 800-67": 1,
"SP 800-90A": 1
},
"PKCS": {
"PKCS #1": 2,
"PKCS#1": 1,
"PKCS1": 3
}
},
"symmetric_crypto": {
"AES_competition": {
"AES": {
"AES": 24
}
},
"DES": {
"3DES": {
"TDES": 2,
"Triple-DES": 9
}
},
"constructions": {
"MAC": {
"CMAC": 5,
"HMAC": 8
}
}
},
"tee_name": {},
"tls_cipher_suite": {},
"vendor": {
"Samsung": {
"Samsung": 1
}
},
"vulnerability": {}
},
"policy_metadata": {
"/Author": "Ben Tucker",
"/Company": "",
"/CreationDate": "D:20231004113903-07\u002700\u0027",
"/Creator": "Acrobat PDFMaker 23 for Word",
"/ModDate": "D:20231004113916-07\u002700\u0027",
"/Producer": "Adobe PDF Library 23.6.96",
"/SourceModified": "D:20231004183847",
"/Title": "",
"pdf_file_size_bytes": 926361,
"pdf_hyperlinks": {
"_type": "Set",
"elements": []
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 31
}
},
"state": {
"_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
"module_download_ok": true,
"module_extract_ok": true,
"policy_convert_garbage": false,
"policy_convert_ok": true,
"policy_download_ok": true,
"policy_extract_ok": true,
"policy_pdf_hash": "7eab61e813f4581631dcab85470666c04803fbbd8950d6f68f17a036227e68f8",
"policy_txt_hash": "c99cee36b3dc0be546da7d57fdae874877faa27c06329e5d4763ac5cf7d2fc0b"
},
"web_data": {
"_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
"caveat": "When operated in FIPS Mode. No assurance of the minimum strength of generated keys",
"certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/October 2023_011123_0711.pdf",
"date_sunset": "2025-09-29",
"description": "The Citrix FIPS Cryptographic Module is a software toolkit which provides various cryptographic functions to support the Citrix product portfolio.",
"embodiment": "Multi-Chip Stand Alone",
"exceptions": [
"Mitigation of Other Attacks: N/A"
],
"fw_versions": null,
"historical_reason": null,
"hw_versions": "ARM v8-A, ARM v7-A, Intel Core i7 4th Generation, Intel Core i7 6th Generation, Intel Core i7 8th Generation, Intel Xeon 56xx series, Intel Xeon E5-24xx v2 series, Intel Xeon E5- 26xx v2 series, Intel Xeon E5-26xx v3 series and Intel Xeon E5-26xx v4 series",
"level": 1,
"mentioned_certs": {},
"module_name": "Citrix FIPS Cryptographic Module",
"module_type": "Software-Hybrid",
"revoked_link": null,
"revoked_reason": null,
"standard": "FIPS 140-2",
"status": "active",
"sw_versions": "1.0, 1.0.1 and 1.0.2",
"tested_conf": [
"Android 4.4 running on a Google Nexus 5 (LG D820) with ARM v7-A with PAA",
"Android 5 running on a Google Nexus 6 (Motorola Nexus 6 XT11003) with ARM v7-A with PAA",
"Android 6 running on a Google Nexus 6 (Motorola Nexus 6 XT11003) with ARM v7-A with PAA",
"Android 6 running on a Samsung Galaxy S6 (SM-G920T) with ARM v8-A with PAA",
"Android 7 running on a Google Nexus 5X (LG H790) with ARM v8-A with PAA",
"Android 7 running on a Google Nexus 6 (Motorola Nexus 6 XT11003) with ARM v7-A with PAA",
"Android 8 64bit running on a Google Pixel 2 with ARM v8-A with PAA",
"Android 9 running on a Google Pixel 2 with ARM v8-A with PAA",
"FreeBSD 8.4 32bit running on a Citrix NetScaler MPX-14000-FIPS with Intel Xeon E5-26xx v2 series with PAA",
"FreeBSD 8.4 64bit running on a Citrix NetScaler MPX-14000-FIPS with Intel Xeon E5-26xx v2 series with PAA",
"iOS 10 64bit running on an Apple 12.9-inch iPad Pro (A1584) with ARM v8-A with PAA",
"iOS 11 running on an iPhone X with ARM v8-A with PAA",
"Linux 3.10 64bit running on a CyberPowerPC GLC2460 with Intel Core i7 [8th Generation] with PAA",
"Linux 3.13 64bit running on a Lenovo 20EV002JUS Intel Core i7 [6th Generation] with PAA",
"Linux 3.16 on ESXi 5 64bit running on a HP ProLiant DL2000 with Intel Xeon 56xx series with PAA",
"Linux 3.16 on Hyper-V on Windows Server 2012 R2 64bit running on a HP ProLiant DL2000 with Intel Xeon 56xx series with PAA",
"Linux 3.16 on XenServer 6 64bit running on a Dell PowerEdge C6100 with Intel Xeon 56xx series with PAA",
"Linux 4.15 64bit running on a CyberPowerPC GLC2460 with Intel Core i7 [8th Generation] with PAA",
"Linux 4.15 64bit running on a HPE ProLiant BL460c Gen9 with Intel Xeon E5-26XX v3 with PAA",
"Linux 4.15 64bit running on a HPE Proliant BL460c Gen9 with Intel Xeon E5-26XX v4 series with PAA",
"Linux 4.x on ESXi 5 64bit running on a HPE ProLiant BL460c Gen9 with Intel Xeon E5-26XX v4 series with PAA",
"Linux 4.x on Hyper-V on Windows Server 2012 R2 64bit running on a HPE ProLiant BL460c Gen9 with Intel Xeon E5-26XX v4 series with PAA",
"Linux 4.x on XenServer 7 64bit running on a Dell PowerEdge R320 with Intel Xeon E5-24XX v2 series with PAA",
"Linux 4.x on XenServer 7 64bit running on a HPE ProLiant BL460c Gen9 with Intel Xeon E5-26XX v4 series with PAA",
"Mac OS X 10.12 64bit running on an Apple Macbook Pro (A1398) with Intel Core i7 [4th Generation] with PAA",
"Mac OS X 10.13 64bit running on an Apple Mac Mini with Intel Corei7 [4th Generation] with PAA",
"NoTouch Desktop running on an N-computing RX-HDX for Citrix with ARM v8-A with PAA",
"ViewSonic Thin OS running on a ViewSonic VS16585 with ARM v8-A with PAA",
"Windows 10 32bit running on a Lenovo 20CD00B2US with Intel Core i7 [4th Generation] with PAA",
"Windows 10 64bit running on a CyberPowerPC GLC2460 with Intel Core i7 [8th Generation] with PAA",
"Windows 10 64bit running on a Lenovo 20EV002JUS with Intel Core i7 [6th Generation] with PAA",
"Windows 8.1 64bit running on a CyberPowerPC GLC2460 with Intel Corei7 [8th Generation] with PAA",
"Windows Server 2016 on HyperV on Windows Server 2016 64bit running on a HPE ProLiant BL460c Gen9 with Intel Xeon E5-26XX v3 series with PAA",
"Windows Server 2016 on HyperV on Windows Server 2016 64bit running on HPE Proliant BL460c Gen9 with Intel Xeon E5-26XX v4 series with PAA (single-user mode)"
],
"validation_history": [
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2023-10-05",
"lab": "UL VERIFICATION SERVICES INC",
"validation_type": "Initial"
}
],
"vendor": "Citrix Systems, Inc.",
"vendor_url": "http://www.citrix.com"
}
}