Java Crypto Module

Certificate #2611

Webpage information

Status historical
Historical reason Moved to historical list due to sunsetting
Validation dates 07.04.2016 , 20.06.2016 , 13.03.2017
Standard FIPS 140-2
Security level 1
Type Software
Embodiment Multi-Chip Stand Alone
Caveat When operated in FIPS mode. The module generates cryptographic keys whose strengths are modified by available entropy. No assurance of the minimum strength of generated keys.
Exceptions
  • Physical Security: N/A
  • Mitigation of Other Attacks: N/A
Description The Java Crypto Module provides cryptographic functions for SilentOS from Silent Circle.
Tested configurations
  • Windows Server 2012 with Java Runtime Environment (JRE) v1.7.0_17 running on OEM PowerEdge R420 (single-user mode)
Vendor Silent Circle
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Symmetric Algorithms
AES, AES-128, AES128, Rijndael, Twofish, Serpent, CAST5, RC2, RC4, RC6, DES, Triple-DES, TDES, ChaCha, Salsa, XSalsa20, Grain128, IDEA, Blowfish, Camellia, SEED, HMAC, HMAC-SHA-512, CMAC
Asymmetric Algorithms
RSA 2048, RSA 1024, ECDH, ECDSA, DH, Diffie-Hellman, DSA
Hash functions
SHA-1, SHA1, SHA-512, SHA-224, SHA-256, SHA-384, MD4, MD5
Schemes
MAC, Key Agreement, Key agreement
Protocols
SSL, TLS, TLS v1.0
Randomness
PRNG, DRBG, RNG
Block cipher modes
ECB, CBC, CTR, CFB, OFB, GCM, CCM

Security level
Level 1

Standards
FIPS 140-2, FIPS 140, FIPS 186-4, FIPS 186-2, SP 800-90A, PKCS12, PKCS1, RFC3211, RFC3394

File metadata

Title Security Policy
Subject Java Crypto Module
Author SafeLogic
Creation date D:20170308155448-05'00'
Modification date D:20170308155448-05'00'
Pages 21
Creator Microsoft® Word 2016
Producer Microsoft® Word 2016

Heuristics

No heuristics are available for this certificate.

References

No references are available for this certificate.

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 2611,
  "dgst": "cc41d80b1697c04d",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "AES#3192",
        "SHS#2637",
        "HMAC#2011",
        "RSA#1622",
        "DSA#914",
        "DRBG#668",
        "Triple-DES#1818",
        "ECDSA#583"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "-"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECDH": {
            "ECDH": 2
          },
          "ECDSA": {
            "ECDSA": 8
          }
        },
        "FF": {
          "DH": {
            "DH": 11,
            "Diffie-Hellman": 8
          },
          "DSA": {
            "DSA": 12
          }
        },
        "RSA": {
          "RSA 1024": 1,
          "RSA 2048": 1
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 3
        },
        "CCM": {
          "CCM": 2
        },
        "CFB": {
          "CFB": 1
        },
        "CTR": {
          "CTR": 3
        },
        "ECB": {
          "ECB": 5
        },
        "GCM": {
          "GCM": 2
        },
        "OFB": {
          "OFB": 4
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "TLS": {
          "SSL": {
            "SSL": 1
          },
          "TLS": {
            "TLS": 1,
            "TLS v1.0": 1
          }
        }
      },
      "crypto_scheme": {
        "KA": {
          "Key Agreement": 1,
          "Key agreement": 1
        },
        "MAC": {
          "MAC": 1
        }
      },
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "fips_cert_id": {},
      "fips_certlike": {
        "Certlike": {
          "AES-128": 1,
          "AES128, 192": 1,
          "AES2": 1,
          "Certificate AES": 1,
          "DRBG2": 1,
          "DSA 1024": 1,
          "DSA 2048": 1,
          "DSA2": 1,
          "HMAC SHA-256": 1,
          "HMAC SHA-512": 1,
          "HMAC SHA1": 1,
          "HMAC-SHA-512": 2,
          "HMAC-SHA512": 2,
          "PKCS1": 2,
          "PKCS12": 2,
          "RSA 1024": 1,
          "RSA 2048": 1,
          "RSA2": 1,
          "SHA-1": 8,
          "SHA-224": 7,
          "SHA-256": 7,
          "SHA-32": 1,
          "SHA-384": 2,
          "SHA-512": 15,
          "SHA-512 1622": 1,
          "SHA-512 2011": 1,
          "SHA-512 2637": 1,
          "SHA-512 914": 1,
          "SHA1": 1,
          "SHS6": 1
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 1": 2
        }
      },
      "hash_function": {
        "MD": {
          "MD4": {
            "MD4": 1
          },
          "MD5": {
            "MD5": 1
          }
        },
        "SHA": {
          "SHA1": {
            "SHA-1": 9,
            "SHA1": 1
          },
          "SHA2": {
            "SHA-224": 7,
            "SHA-256": 7,
            "SHA-384": 2,
            "SHA-512": 19
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {
        "com": {
          "com.safelogic.cryptocomply.jce.provider": 1
        }
      },
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 16,
          "PRNG": 1
        },
        "RNG": {
          "RNG": 3
        }
      },
      "side_channel_analysis": {},
      "standard_id": {
        "FIPS": {
          "FIPS 140": 3,
          "FIPS 140-2": 17,
          "FIPS 186-2": 2,
          "FIPS 186-4": 3
        },
        "NIST": {
          "SP 800-90A": 4
        },
        "PKCS": {
          "PKCS1": 1,
          "PKCS12": 1
        },
        "RFC": {
          "RFC3211": 1,
          "RFC3394": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 7,
            "AES-128": 1,
            "AES128": 1
          },
          "CAST": {
            "CAST5": 1
          },
          "RC": {
            "RC2": 2,
            "RC4": 1,
            "RC6": 1
          },
          "Rijndael": {
            "Rijndael": 1
          },
          "Serpent": {
            "Serpent": 1
          },
          "Twofish": {
            "Twofish": 1
          }
        },
        "DES": {
          "3DES": {
            "TDES": 3,
            "Triple-DES": 8
          },
          "DES": {
            "DES": 3
          }
        },
        "LWC_competition": {
          "Grain": {
            "Grain128": 1
          }
        },
        "constructions": {
          "MAC": {
            "CMAC": 1,
            "HMAC": 13,
            "HMAC-SHA-512": 1
          }
        },
        "djb": {
          "ChaCha": {
            "ChaCha": 1
          },
          "Salsa": {
            "Salsa": 1,
            "XSalsa20": 1
          }
        },
        "miscellaneous": {
          "Blowfish": {
            "Blowfish": 1
          },
          "Camellia": {
            "Camellia": 1
          },
          "IDEA": {
            "IDEA": 1
          },
          "SEED": {
            "SEED": 2
          }
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "policy_metadata": {
      "/Author": "SafeLogic",
      "/CreationDate": "D:20170308155448-05\u002700\u0027",
      "/Creator": "Microsoft\u00ae Word 2016",
      "/ModDate": "D:20170308155448-05\u002700\u0027",
      "/Producer": "Microsoft\u00ae Word 2016",
      "/Subject": "Java Crypto Module",
      "/Title": "Security Policy",
      "pdf_file_size_bytes": 1111370,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "http://www.oracle.com/technetwork/java/javase/downloads/jce-7-download-432124.html",
          "http://www.safelogic.com/",
          "http://www.silentcircle.com/",
          "http://csrc.nist.gov/groups/STM/cmvp/index.html"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 21
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
    "module_download_ok": true,
    "module_extract_ok": true,
    "policy_convert_ok": true,
    "policy_download_ok": true,
    "policy_extract_ok": true,
    "policy_json_hash": null,
    "policy_pdf_hash": "2949b37f49dcca6a25c7d13f37f4dab215aa07681c021835cdb5a2af8b9af518",
    "policy_txt_hash": "392acc32c9f6368083498d901806d56ea5e172571021dc666cb1b56117768e3d"
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "When operated in FIPS mode. The module generates cryptographic keys whose strengths are modified by available entropy. No assurance of the minimum strength of generated keys.",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/FIPS140ConsolidatedCertApril2016.pdf",
    "date_sunset": null,
    "description": "The Java Crypto Module provides cryptographic functions for SilentOS from Silent Circle.",
    "embodiment": "Multi-Chip Stand Alone",
    "exceptions": [
      "Physical Security: N/A",
      "Mitigation of Other Attacks: N/A"
    ],
    "fw_versions": null,
    "historical_reason": "Moved to historical list due to sunsetting",
    "hw_versions": null,
    "level": 1,
    "mentioned_certs": {},
    "module_name": "Java Crypto Module",
    "module_type": "Software",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "historical",
    "sw_versions": "1.0",
    "tested_conf": [
      "Windows Server 2012 with Java Runtime Environment (JRE) v1.7.0_17 running on OEM PowerEdge R420 (single-user mode)"
    ],
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2016-04-07",
        "lab": "Acumen Security",
        "validation_type": "Initial"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2016-06-20",
        "lab": "Acumen Security",
        "validation_type": "Update"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2017-03-13",
        "lab": "Acumen Security",
        "validation_type": "Update"
      }
    ],
    "vendor": "Silent Circle",
    "vendor_url": "http://www.silentcircle.com"
  }
}