{"_type": "sec_certs.sample.fips.FIPSCertificate", "dgst": "b797d397acb6b79e", "cert_id": 5388, "web_data": {"_type": "sec_certs.sample.fips.FIPSCertificate.WebData", "module_name": "BIG-IP Tenant Cryptographic Module", "validation_history": [{"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry", "date": "2026-07-09", "validation_type": "Initial", "lab": "atsec information security corporation"}], "vendor_url": "f5.com", "vendor": "F5, Inc.", "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/July 2026_040826_0807.pdf", "module_type": "Firmware", "standard": "FIPS 140-3", "status": "active", "level": 2, "caveat": "When operated in approved mode. The tamper evident labels contained in F5-ADD-BIG-FIPS140 kit and installed as indicated in the Security Policy section 7. No assurance of minimum security of SSPs (e.g., keys, bit strings) that are externally loaded, or of SSPs established with externally loaded SSPs.", "exceptions": ["Operational environment: N/A", "Non-invasive security: N/A", "Mitigation of other attacks: N/A"], "embodiment": "MultiChipStand", "description": "BIG-IP Tenant Cryptographic Module, Application Delivery Controller and Firewall software running on running on F5 hardware and the underlying platform layer.", "tested_conf": null, "hw_versions": null, "fw_versions": null, "sw_versions": null, "mentioned_certs": {}, "historical_reason": null, "date_sunset": "2031-07-08", "revoked_reason": null, "revoked_link": null}, "pdf_data": {"_type": "sec_certs.sample.fips.FIPSCertificate.PdfData", "keywords": {"fips_cert_id": {"Cert": {"#1": 6}}, "fips_security_level": {"Level": {"Level 2": 3, "Level 1": 1}}, "fips_certlike": {"Certlike": {"HMAC-SHA-1": 10, "HMAC-SHA-384": 4, "HMAC-SHA- 1": 2, "SHA2-256": 10, "SHA2-384": 10, "SHA2-512": 6, "SHA-1": 5, "SHA2- 224": 1, "SHA2-224": 3, "SHA3-256": 1, "SHA2- 256": 2, "SHA-256": 2, "SHA-3": 1, "PKCS #1": 8, "PKCS#1": 2, "AES-256": 7, "AES-128": 1, "AES-192": 2, "DRBG 384": 1}}, "vendor": {}, "eval_facility": {"atsec": {"atsec": 2}}, "symmetric_crypto": {"AES_competition": {"AES": {"AES-256": 7, "AES-128": 1, "AES-192": 2, "AES": 9}, "CAST": {"CAST": 33}}, "DES": {"DES": {"DES": 1}, "3DES": {"Triple-DES": 4, "TDES": 1, "TDEA": 1}}, "miscellaneous": {"Camellia": {"Camellia": 2}, "SEED": {"SEED": 2}}, "constructions": {"MAC": {"HMAC": 11, "HMAC-SHA-384": 2, "CMAC": 2}}}, "asymmetric_crypto": {"ECC": {"ECDH": {"ECDH": 2}, "ECDSA": {"ECDSA": 102}, "EdDSA": {"EdDSA": 3}, "ECC": {"ECC": 11}}, "FF": {"DH": {"Diffie-Hellman": 12, "DH": 2}, "DSA": {"DSA": 4}}}, "pq_crypto": {}, "hash_function": {"SHA": {"SHA1": {"SHA-1": 5}, "SHA2": {"SHA-256": 2}, "SHA3": {"SHA3-256": 1, "SHA-3": 1}}}, "crypto_scheme": {"MAC": {"MAC": 4}, "KEX": {"Key Exchange": 2}, "KA": {"Key agreement": 3, "Key Agreement": 1}}, "crypto_protocol": {"SSH": {"SSH": 243, "SSHv2": 2}, "TLS": {"SSL": {"SSL": 2}, "TLS": {"TLS v1.2": 5, "TLS": 368, "TLS 1.2": 4}}, "IKE": {"IKEv2": 1}, "IPsec": {"IPsec": 2}}, "randomness": {"PRNG": {"DRBG": 27}, "RNG": {"RNG": 2, "RBG": 2}}, "cipher_mode": {"ECB": {"ECB": 1}, "CBC": {"CBC": 1}, "CTR": {"CTR": 3}, "CFB": {"CFB": 1}, "OFB": {"OFB": 1}, "GCM": {"GCM": 3}, "CCM": {"CCM": 2}, "XTS": {"XTS": 2}}, "ecc_curve": {"NIST": {"P-256": 40, "P-384": 38}, "Edwards": {"Ed25519": 2}}, "crypto_engine": {}, "tls_cipher_suite": {}, "crypto_library": {}, "vulnerability": {}, "side_channel_analysis": {}, "device_model": {}, "tee_name": {"AMD": {"PSP": 7}, "IBM": {"SSC": 1}}, "os_name": {}, "cplc_data": {}, "ic_data_group": {}, "standard_id": {"FIPS": {"FIPS 140-3": 98, "FIPS PUB 140-3": 2, "FIPS186-5": 24, "FIPS 186-5": 11, "FIPS 198-1": 3, "FIPS 180-4": 2, "FIPS 197": 2, "FIPS140-3": 1, "FIPS180-4": 1, "FIPS186-4": 1, "FIPS197": 1, "FIPS198-1": 1, "FIPS202": 1}, "NIST": {"SP 800-38A": 3, "SP 800-38C": 2, "SP 800-38D": 2, "SP 800-90A": 2, "SP 800-56A": 4, "SP 800-135": 2, "SP 800-140F": 1}, "PKCS": {"PKCS #1": 4, "PKCS#1": 1}, "RFC": {"RFC7627": 3, "RFC5288": 1, "RFC 5288": 1, "RFC 4253": 1, "RFC 6668": 1, "RFC3394": 1, "RFC5649": 1}}, "javacard_version": {}, "javacard_api_const": {}, "javacard_packages": {}, "certification_process": {}}, "policy_metadata": {"pdf_file_size_bytes": 1114880, "pdf_is_encrypted": false, "pdf_number_of_pages": 95, "/Producer": "Microsoft\u00ae Word for Microsoft 365", "/Creator": "Microsoft\u00ae Word for Microsoft 365", "/CreationDate": "D:20260709070833-04'00'", "/ModDate": "D:20260709070833-04'00'", "pdf_hyperlinks": {"_type": "Set", "elements": ["https://support.f5.com/csp/article/K7752", "http://csrc.nist.gov/publications/nistpubs/800-38a/sp800-38a.pdf", "http://www.ietf.org/rfc/rfc5649.txt", "https://csrc.nist.gov/projects/cryptographic-module-validation-program/entropy-validations/certificate/74", "http://csrc.nist.gov/publications/fips/fips198-1/FIPS-198-1_final.pdf", "http://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-38F.pdf", "http://csrc.nist.gov/publications/nistpubs/800-67-Rev1/SP-800-67-Rev1.pdf", "http://www.ietf.org/rfc/rfc3394.txt", "http://nvlpubs.nist.gov/nistpubs/Legacy/SP/nistspecialpublication800-38c.pdf", "https://csrc.nist.gov/Projects/cryptographic-module-validation-program/fips-140-3-ig-announcements", "http://www.atsec.com/", "http://nvlpubs.nist.gov/nistpubs/FIPS/NIST.FIPS.202.pdf", "http://csrc.nist.gov/publications/nistpubs/800-38E/nist-sp-800-38E.pdf", "http://csrc.nist.gov/publications/fips/fips197/fips-197.pdf", "http://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-57pt1r4.pdf", "http://nvlpubs.nist.gov/nistpubs/Legacy/SP/nistspecialpublication800-135r1.pdf", "http://nvlpubs.nist.gov/nistpubs/FIPS/NIST.FIPS.180-4.pdf", "https://www.f5.com/", "http://www.ietf.org/rfc/rfc3447.txt", "http://nvlpubs.nist.gov/nistpubs/FIPS/NIST.FIPS.186-4.pdf", "http://csrc.nist.gov/publications/nistpubs/800-38B/SP_800-38B.pdf", "http://csrc.nist.gov/publications/nistpubs/800-38D/SP-800-38D.pdf", "http://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-38G.pdf"]}}}, "heuristics": {"_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics", "algorithms": {"_type": "Set", "elements": ["HMAC-SHA2-384A7018", "SHA2-256A7018", "AES-CBCA7018", "ECDSA KeyVer (FIPS186-5)A7018", "ECDSA SigVer (FIPS186-5)A7018", "Safe Primes Key VerificationA7018", "Safe Primes Key GenerationA7018", "ECDSA SigGen (FIPS186-5)A7018", "HMAC-SHA2-256A7018", "AES-CTRA7017", "RSA SigVer (FIPS186-5)A7018", "Counter DRBGA7018", "KAS-FFC-SSC Sp800-56Ar3A7018", "KAS-ECC-SSC Sp800-56Ar3A7018", "KDF SSHA7017", "AES-GCMA7018", "AES-CCMA7018", "RSA SigGen (FIPS186-5)A7018", "SHA2-384A7018", "TLS v1.2 KDF RFC7627A7018", "RSA KeyGen (FIPS186-5)A7017", "HMAC-SHA-1A7017", "ECDSA KeyGen (FIPS186-5)A7018"]}, "extracted_versions": {"_type": "Set", "elements": ["-"]}, "cpe_matches": null, "verified_cpe_matches": null, "related_cves": null, "policy_prunned_references": {"_type": "Set", "elements": []}, "module_prunned_references": {"_type": "Set", "elements": []}, "policy_processed_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "module_processed_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "direct_transitive_cves": null, "indirect_transitive_cves": null}, "state": {"_type": "sec_certs.sample.fips.InternalState", "module": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": null, "txt_hash": null, "json_hash": null}, "policy": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": "b46cb9b8f9b873e5685d6bae3e578994744781d07314f6f9e0ad1183383fcaa9", "txt_hash": "52b338786d6da50607c3968fd79b72c2e807ed5425584a7ffa8bbebd5e486c1b", "json_hash": null}}}