This page was not yet optimized for use on mobile devices.
Canonical Ltd. Ubuntu 22.04 Kernel Crypto API Cryptographic Module
Certificate details
| Certificate ID | #4894 |
|---|---|
| Status | historical |
| Historical reason | Replaced by certificate #5491 |
| Validation dates | 21.11.2024 |
| Standard | FIPS 140-3 |
| Security level | 1 |
| Type | Software |
| Embodiment | Multi-Chip Stand Alone |
| Caveat | Interim validation. When operated in approved mode. When installed, initialized and configured as specified in Section 11.1 of the Security Policy. |
| Exceptions |
|
| Description | The Linux kernel crypto API implementation provides cryptographic services to Linux kernel space software components and user space via the AF_ALG interface. |
| Tested configurations |
|
| Vendor | Canonical Ltd. http://www.canonical.com |
| Lab | atsec information security corporation |
| Algorithms |
|
| References | This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates. |
Security policy
Extracted keywords
Symmetric Algorithms
AES, AES-, CAST, HMAC, CMACAsymmetric Algorithms
ECDH, ECDSA, ECC, Diffie-Hellman, DHHash functions
SHA-1, SHA-512, SHA-256, SHA-384, SHA3-224, SHA3-256, SHA3-384, SHA3-512, SHA-3, SHA3, PBKDF2Schemes
MAC, Key Exchange, Key AgreementProtocols
TLS, IKEv2, IKE, IPsecRandomness
DRBG, RNG, RBGElliptic Curves
P-384, P-256, P-521Block cipher modes
ECB, CBC, CTR, CFB, OFB, GCM, CCM, XTSTrusted Execution Environments
PSP, SSCSecurity level
Level 1Standards
FIPS 140-3, FIPS PUB 140-3, FIPS 198-1, FIPS 180-4, FIPS186-4, FIPS 186-4, FIPS 202, FIPS180-4, FIPS202, FIPS 1864, FIPS 186-5, FIPS 197, SP 800-38A, SP 800-90A, SP 800-56A, SP 800-38C, SP 800-38B, SP 800-38D, SP 800-38E, SP 800-38F, SP 800-90B, PKCS#1, RFC 4106, RFC 7296, RFC 7919, RFC 3526Cross-references
Incoming- 4911 - historical - Canonical Ltd. Ubuntu 22.04 Strongswan Cryptographic Module
Automated analysis
Automated inference - use with caution
All attributes shown in this section (e.g., links between certificates, products, vendors, and known CVEs) are generated by automated heuristics and have not been reviewed by humans. These methods can produce false positives or false negatives and should not be treated as definitive without independent verification. This applies equally to the Cross-references section below. If you want to know more about how this data is computed and how reliable it is, see our documentation on automated analysis. If you believe any information here is inaccurate or harmful, please submit feedback.No automatically derived data are available in this section.
Cross-references
Loading...
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate was first processed.
{
"_type": "sec_certs.sample.fips.FIPSCertificate",
"cert_id": 4894,
"dgst": "cf358d1c9b1875c6",
"heuristics": {
"_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
"algorithms": {
"_type": "Set",
"elements": [
"#A3853",
"SHA2-256A3858",
"AES-GMACA3854",
"#A3845",
"#A3841",
"RSA SigVer (FIPS186-4)A3852",
"ECDSA KeyGen (FIPS186-4)A3813",
"AES-CFB128A3854",
"#A3837",
"#A3823",
"#A3816",
"#A3848",
"#A3817",
"HMAC-SHA2-224A3858",
"Safe Primes Key GenerationA3812",
"HMAC-SHA2-256A3858",
"AES-CTRA3857",
"SHA3-224A3839",
"#A3855",
"#A3858",
"SHA3-512A3839",
"AES-CCMA3854",
"#A3832",
"AES-CBC-CS3A3854",
"HMAC DRBGA3856",
"SHA2-384A3858",
"SHA2-224A3858",
"#A3840",
"#A3834",
"AES-KWA3854",
"SHA-1A3853",
"HMAC-SHA-1A3853",
"AES-CBCA3857",
"Hash DRBGA3856",
"#A3844",
"#A3818",
"#A3819",
"SHA3-256A3839",
"AES-CMACA3854",
"#A3814",
"#A3847",
"#A3822",
"#A3843",
"#A3849",
"Counter DRBGA3856",
"HMAC-SHA2-512A3858",
"#A3821",
"#A3852",
"#A3846",
"#A3854",
"HMAC-SHA3-512A3839",
"#A3826",
"AES-XTS Testing Revision 2.0A3857",
"AES-OFBA3854",
"SHA2-512A3858",
"HMAC-SHA2-384A3858",
"#A3831",
"#A3828",
"#A3824",
"#A3829",
"#A3838",
"HMAC-SHA3-256A3839",
"#A3813",
"#A3857",
"#A3830",
"#A3839",
"KAS-ECC-SSC Sp800-56Ar3A3813",
"AES-ECBA3857",
"AES-GCMA3856",
"#A3842",
"#A3836",
"#A3827",
"#A3820",
"HMAC-SHA3-224A3839",
"#A3812",
"#A3850",
"KAS-FFC-SSC Sp800-56Ar3A3812",
"#A3825",
"#A3815",
"#A3856",
"#A3833",
"SHA3-384A3839",
"#A3851",
"HMAC-SHA3-384A3839"
]
},
"cpe_matches": null,
"direct_transitive_cves": null,
"extracted_versions": {
"_type": "Set",
"elements": [
"22.04"
]
},
"indirect_transitive_cves": null,
"module_processed_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": {
"_type": "Set",
"elements": [
"4911"
]
},
"directly_referencing": null,
"indirectly_referenced_by": {
"_type": "Set",
"elements": [
"4911"
]
},
"indirectly_referencing": null
},
"module_prunned_references": {
"_type": "Set",
"elements": []
},
"policy_processed_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": {
"_type": "Set",
"elements": [
"4911"
]
},
"directly_referencing": null,
"indirectly_referenced_by": {
"_type": "Set",
"elements": [
"4911"
]
},
"indirectly_referencing": null
},
"policy_prunned_references": {
"_type": "Set",
"elements": []
},
"related_cves": null,
"verified_cpe_matches": null
},
"pdf_data": {
"_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
"br1_deviations": 0,
"br1_tables": {
"_type": "sec_certs.heuristics.br1.table_parsing.model.br1_tables.BR1Tables",
"approved_algorithms": {
"entries": [],
"found": false,
"section": 2,
"subsection": 5
},
"approved_services": {
"entries": [
{
"description": "Compute a message digest",
"indicator": "crypto_shash_init returns 0",
"inputs": "Message",
"name": "Message Digest",
"outputs": "Digest Value",
"rolesSspAccess": "CO",
"secFunImpl": "Message Digest with SHA"
},
{
"description": "Encrypt a plaintext",
"indicator": "crypto_skcipher_setkey returns 0",
"inputs": "AES Key, plaintext",
"name": "Encryption",
"outputs": "Ciphertex t",
"rolesSspAccess": "CO - AES Key: W,E",
"secFunImpl": "Encryption and Decryption with AES"
},
{
"description": "Decrypt a ciphertext",
"indicator": "crypto_skcipher_setkey returns 0",
"inputs": "AES Key, cipherte xt",
"name": "Decryption",
"outputs": "Plaintext",
"rolesSspAccess": "CO - AES Key: W,E",
"secFunImpl": "Encryption and Decryption with AES"
},
{
"description": "Encrypt a plaintext",
"indicator": "For all except AES GCM: crypto_aead_setkey returns 0; For AES GCM: crypto_aead_get_flags(tfm) has the CRYPTO_ALG_FIPS140_COMP LIANT flag set",
"inputs": "AES Key, IV, plaintext",
"name": "Authenticat ed Encryption",
"outputs": "Ciphertex t, MAC tag",
"rolesSspAccess": "CO - AES Key: W,E",
"secFunImpl": "Authenticat ed Encryption and Authenticat ed Decryption with AES- CCM Authenticat ed Encryption with AES- GCM Authenticat ed Encryption and Authenticat ed"
},
{
"description": "Decrypt a ciphertext",
"indicator": "For all except AES GCM: crypto_aead_setkey returns 0; For AES GCM: crypto_aead_get_flags(tfm) has the CRYPTO_ALG_FIPS140_COMP LIANT flag set",
"inputs": "AES key, IV, MAC tag, cipherte xt",
"name": "Authenticat ed Decryption",
"outputs": "Plaintext or failure",
"rolesSspAccess": "CO - AES Key: W,E",
"secFunImpl": "HMAC Authenticat ed Encryption and Authenticat ed Decryption with AES- CCM Authenticat ed Decryption with AES- GCM Authenticat ed Encryption and Authenticat ed Decryption with AES- CBC or AES- CTR with"
},
{
"description": "Compute a MAC tag",
"indicator": "crypto_shash_init returns 0",
"inputs": "AES Key or HMAC key, message",
"name": "Message Authenticati on",
"outputs": "MAC tag",
"rolesSspAccess": "CO - AES Key: W,E - HMAC Key: W,E",
"secFunImpl": "HMAC Message Authenticati on with AES or HMAC"
},
{
"description": "Generate random bytes",
"indicator": "crypto_rng_get_bytes returns 0",
"inputs": "Output length",
"name": "Random Number Generation",
"outputs": "Random bytes",
"rolesSspAccess": "CO - Entropy Input (IG D.L): W,E - DRBG Seed (IG D.L): G,E - DRBG Internal State (V, Key) (IG D.L): G,W,E - DRBG Internal State (V, C) (IG D.L): G,W,E",
"secFunImpl": "Random Number Generation with HMAC DRBG, Hash DRBG or Counter DRBG"
},
{
"description": "Compute a shared secret",
"indicator": "crypto_kpp_compute_shared_ secret returns 0",
"inputs": "DH private key, DH public key or EC private key, EC public key",
"name": "Shared Secret Computatio n",
"outputs": "Shared secret",
"rolesSspAccess": "CO - DH Public Key: W,E - DH Private Key: W,E - EC Public Key: W,E - EC Private Key: W,E - Shared Secret: G,R",
"secFunImpl": "Shared Secret Computatio n with KAS- FFC-SSC or KAS-ECC- SSC"
},
{
"description": "Generate a key pair",
"indicator": "crypto_kpp_set_secret and crypto_kpp_generate_public_ key return 0",
"inputs": "Safe Primes: Group; ECDSA: Curve",
"name": "Key Pair Generation",
"outputs": "Safe Primes: DH private key, DH public key; ECDSA: EC private key, EC public key",
"rolesSspAccess": "CO - Intermedia te Key Generatio n Value: G,E,Z - DH Public Key: G,R - DH Private Key: G,R - EC Public Key: G,R - EC Private Key: G,R",
"secFunImpl": "Key Pair Generation with ECDSA or Safe Primes"
},
{
"description": "Compute an EDC (crc32, crct10dif)",
"indicator": "None",
"inputs": "Message",
"name": "Error Detection Code",
"outputs": "EDC",
"rolesSspAccess": "CO",
"secFunImpl": "None"
},
{
"description": "Compress data (deflate, lz4, lz4hc, lzo, zlib- deflate, zstd)",
"indicator": "None",
"inputs": "Data",
"name": "Compressio n",
"outputs": "Compress ed data",
"rolesSspAccess": "CO",
"secFunImpl": "None"
},
{
"description": "Use the kernel to perform various non- cryptograp hic",
"indicator": "None",
"inputs": "Identifie r, various argumen ts",
"name": "Generic System Call",
"outputs": "Various return values",
"rolesSspAccess": "CO",
"secFunImpl": "None"
},
{
"description": "operations Return the module name and version",
"indicator": "None",
"inputs": "N/A",
"name": "Show Version",
"outputs": "Module name and version",
"rolesSspAccess": "CO",
"secFunImpl": "None"
},
{
"description": "Zeroize all SSPs",
"indicator": "None",
"inputs": "Any SSP",
"name": "Zeroization",
"outputs": "N/A",
"rolesSspAccess": "CO - AES Key: Z - HMAC Key: Z - Shared Secret: Z - Entropy Input (IG D.L): Z - DRBG Seed (IG D.L): Z - DRBG Internal State (V, Key) (IG D.L): Z - DRBG Internal State (V, C) (IG D.L): Z - DH Public Key: Z - DH Private Key: Z - EC Public Key: Z - EC Private Key: Z - Intermedia te Key Generatio n Value: Z",
"secFunImpl": "None"
}
],
"found": true,
"section": 4,
"subsection": 3
},
"authentication_methods": {
"entries": [],
"found": false,
"section": 4,
"subsection": 1
},
"cond_self_tests": {
"entries": [
{
"algorithmOrTest": "AES-ECB (A3812)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3813)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3814)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3820)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3821)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3822)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3824)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3825)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3829)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3830)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3831)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3832)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3833)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3834)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3840)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3841)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3842)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3843)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3844)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3845)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3853)",
"condition": "Test runs at power-on",
"details": "Encryption",
"indicator": "Module becomes operational and",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "",
"condition": "before the integrity test",
"details": "",
"indicator": "services are available for use",
"testMethod": "",
"testProps": "",
"type": ""
},
{
"algorithmOrTest": "AES-ECB (A3854)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3855)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3856)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3857)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3812)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3813)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3814)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3820)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3821)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3822)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3824)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3825)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3829)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3830)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3831)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3832)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3833)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3834)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3840)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3841)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3842)",
"condition": "Test runs at power-on",
"details": "Decryption",
"indicator": "Module becomes operational and",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "",
"condition": "before the integrity test",
"details": "",
"indicator": "services are available for use",
"testMethod": "",
"testProps": "",
"type": ""
},
{
"algorithmOrTest": "AES-ECB (A3843)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3844)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3845)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3853)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3854)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3855)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3856)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-ECB (A3857)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CBC (A3814)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CBC (A3822)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CBC (A3829)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CBC (A3832)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CBC (A3840)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CBC (A3843)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CBC (A3853)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CBC (A3854)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CBC (A3857)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CBC (A3814)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CBC (A3822)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CBC (A3829)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CBC (A3832)",
"condition": "Test runs at power-on",
"details": "Decryption",
"indicator": "Module becomes operational and",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "",
"condition": "before the integrity test",
"details": "",
"indicator": "services are available for use",
"testMethod": "",
"testProps": "",
"type": ""
},
{
"algorithmOrTest": "AES-CBC (A3840)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CBC (A3843)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CBC (A3853)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CBC (A3854)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CBC (A3857)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CBC-CS3 (A3819)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CBC-CS3 (A3828)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CBC-CS3 (A3838)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CBC-CS3 (A3849)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CBC-CS3 (A3853)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CBC-CS3 (A3854)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CBC-CS3 (A3819)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CBC-CS3 (A3828)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CBC-CS3 (A3838)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CBC-CS3 (A3849)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CBC-CS3 (A3853)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CBC-CS3 (A3854)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CFB128 (A3817)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CFB128 (A3826)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CFB128 (A3836)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CFB128 (A3847)",
"condition": "Test runs at power-on",
"details": "Encryption",
"indicator": "Module becomes operational and",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "",
"condition": "before the integrity test",
"details": "",
"indicator": "services are available for use",
"testMethod": "",
"testProps": "",
"type": ""
},
{
"algorithmOrTest": "AES-CFB128 (A3854)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CFB128 (A3817)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CFB128 (A3826)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CFB128 (A3836)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CFB128 (A3847)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CFB128 (A3854)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CTR (A3814)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CTR (A3822)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CTR (A3829)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CTR (A3832)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CTR (A3840)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CTR (A3843)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CTR (A3853)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CTR (A3854)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CTR (A3857)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CTR (A3814)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CTR (A3822)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CTR (A3829)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CTR (A3832)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CTR (A3840)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CTR (A3843)",
"condition": "Test runs at power-on",
"details": "Decryption",
"indicator": "Module becomes operational and",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "",
"condition": "before the integrity test",
"details": "",
"indicator": "services are available for use",
"testMethod": "",
"testProps": "",
"type": ""
},
{
"algorithmOrTest": "AES-CTR (A3853)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CTR (A3854)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CTR (A3857)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CCM (A3814)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 128-bit IVs, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CCM (A3822)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 128-bit IVs, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CCM (A3829)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 128-bit IVs, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CCM (A3832)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 128-bit IVs, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CCM (A3843)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 128-bit IVs, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CCM (A3853)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 128-bit IVs, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CCM (A3854)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 128-bit IVs, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CCM (A3814)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 128-bit IVs, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CCM (A3822)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 128-bit IVs, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CCM (A3829)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 128-bit IVs, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CCM (A3832)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 128-bit IVs, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CCM (A3843)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 128-bit IVs, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CCM (A3853)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 128-bit IVs, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CCM (A3854)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 128-bit IVs, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3814)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3820)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3821)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3822)",
"condition": "Test runs at power-on",
"details": "Encryption",
"indicator": "Module becomes operational and",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "",
"condition": "before the integrity test",
"details": "",
"indicator": "services are available for use",
"testMethod": "",
"testProps": "",
"type": ""
},
{
"algorithmOrTest": "AES-GCM (A3824)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3825)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3829)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3830)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3831)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3832)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3833)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3834)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3840)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3841)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3842)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3843)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3844)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3845)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3854)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3855)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3856)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3814)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3820)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3821)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3822)",
"condition": "Test runs at power-on",
"details": "Decryption",
"indicator": "Module becomes operational and",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "",
"condition": "before the integrity test",
"details": "",
"indicator": "services are available for use",
"testMethod": "",
"testProps": "",
"type": ""
},
{
"algorithmOrTest": "AES-GCM (A3824)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3825)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3829)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3830)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3831)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3832)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3833)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3834)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3840)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3841)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3842)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3843)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3844)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3845)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3854)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3855)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-GCM (A3856)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, 96-bit (internal IV), decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-OFB (A3818)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-OFB (A3827)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-OFB (A3837)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-OFB (A3848)",
"condition": "Test runs at power-on",
"details": "Encryption",
"indicator": "Module becomes operational and",
"testMethod": "KAT",
"testProps": "128 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "Algorithm or Test",
"condition": "",
"details": "Conditions",
"indicator": "Details",
"testMethod": "Test Method",
"testProps": "Test Properties",
"type": "Test Type Indicator"
},
{
"algorithmOrTest": "",
"condition": "",
"details": "before the integrity test",
"indicator": "",
"testMethod": "",
"testProps": "",
"type": "services are available for use"
},
{
"algorithmOrTest": "AES-OFB (A3854)",
"condition": "",
"details": "Test runs at power-on before the integrity test",
"indicator": "Encryption",
"testMethod": "KAT",
"testProps": "128 bit keys, encrypt",
"type": "CAST Module becomes operational and services are available for use"
},
{
"algorithmOrTest": "AES-OFB (A3818)",
"condition": "",
"details": "Test runs at power-on before the integrity test",
"indicator": "Decryption",
"testMethod": "KAT",
"testProps": "128 bit keys, decrypt",
"type": "CAST Module becomes operational and services are available for use"
},
{
"algorithmOrTest": "AES-OFB (A3827)",
"condition": "",
"details": "Test runs at power-on before the integrity test",
"indicator": "Decryption",
"testMethod": "KAT",
"testProps": "128 bit keys, decrypt",
"type": "CAST Module becomes operational and services are available for use"
},
{
"algorithmOrTest": "AES-OFB (A3837)",
"condition": "",
"details": "Test runs at power-on before the integrity test",
"indicator": "Decryption",
"testMethod": "KAT",
"testProps": "128 bit keys, decrypt",
"type": "CAST Module becomes operational and services are available for use"
},
{
"algorithmOrTest": "AES-OFB (A3848)",
"condition": "",
"details": "Test runs at power-on before the integrity test",
"indicator": "Decryption",
"testMethod": "KAT",
"testProps": "128 bit keys, decrypt",
"type": "CAST Module becomes operational and services are available for use"
},
{
"algorithmOrTest": "AES-OFB (A3854)",
"condition": "",
"details": "Test runs at power-on before the integrity test",
"indicator": "Decryption",
"testMethod": "KAT",
"testProps": "128 bit keys, decrypt",
"type": "CAST Module becomes operational and services are available for use"
},
{
"algorithmOrTest": "AES-XTS Testing Revision 2.0 (A3814)",
"condition": "",
"details": "Test runs at power-on before the integrity test",
"indicator": "Encryption",
"testMethod": "KAT",
"testProps": "128 and 256 bit keys, encrypt",
"type": "CAST Module becomes operational and services are available for use"
},
{
"algorithmOrTest": "AES-XTS Testing Revision 2.0 (A3822)",
"condition": "",
"details": "Test runs at power-on before the integrity test",
"indicator": "Encryption",
"testMethod": "KAT",
"testProps": "128 and 256 bit keys, encrypt",
"type": "CAST Module becomes operational and services are available for use CAST"
},
{
"algorithmOrTest": "AES-XTS Testing Revision 2.0 (A3829)",
"condition": "",
"details": "Test runs at power-on before the integrity test",
"indicator": "Encryption",
"testMethod": "KAT",
"testProps": "128 and 256 bit keys, encrypt",
"type": "Module becomes operational and services are available for use"
},
{
"algorithmOrTest": "AES-XTS Testing Revision 2.0 (A3832)",
"condition": "",
"details": "Test runs at power-on before the integrity test",
"indicator": "Encryption",
"testMethod": "KAT",
"testProps": "128 and 256 bit keys, encrypt",
"type": "CAST Module becomes operational and services are available for use"
},
{
"algorithmOrTest": "AES-XTS Testing Revision 2.0 (A3840)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 and 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-XTS Testing Revision 2.0 (A3843)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 and 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-XTS Testing Revision 2.0 (A3853)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 and 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-XTS Testing Revision 2.0 (A3854)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 and 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-XTS Testing Revision 2.0 (A3857)",
"condition": "Test runs at power-on before the integrity test",
"details": "Encryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 and 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-XTS Testing Revision 2.0 (A3814)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 and 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-XTS Testing Revision 2.0 (A3822)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 and 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-XTS Testing Revision 2.0 (A3829)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 and 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-XTS Testing Revision 2.0 (A3832)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 and 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-XTS Testing Revision 2.0 (A3840)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 and 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-XTS Testing",
"condition": "Test runs at power-on",
"details": "Decryption",
"indicator": "Module becomes operational and",
"testMethod": "KAT",
"testProps": "128 and 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "Revision 2.0 (A3843)",
"condition": "before the integrity test",
"details": "",
"indicator": "services are available for use",
"testMethod": "",
"testProps": "",
"type": ""
},
{
"algorithmOrTest": "AES-XTS Testing Revision 2.0 (A3853)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 and 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-XTS Testing Revision 2.0 (A3854)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 and 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-XTS Testing Revision 2.0 (A3857)",
"condition": "Test runs at power-on before the integrity test",
"details": "Decryption",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 and 256 bit keys, decrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CMAC (A3814)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 and 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CMAC (A3822)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 and 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CMAC (A3829)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 and 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CMAC (A3832)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 and 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CMAC (A3843)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 and 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CMAC (A3853)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 and 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "AES-CMAC (A3854)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128 and 256 bit keys, encrypt",
"type": "CAST"
},
{
"algorithmOrTest": "SHA-1 (A3812)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA-1",
"type": "CAST"
},
{
"algorithmOrTest": "SHA-1 (A3813)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are",
"testMethod": "KAT",
"testProps": "SHA-1",
"type": "CAST"
},
{
"algorithmOrTest": "SHA-1 (A3814)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "available for use Module becomes operational and services are",
"testMethod": "KAT",
"testProps": "SHA-1",
"type": "CAST"
},
{
"algorithmOrTest": "SHA-1 (A3832)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "available for use Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA-1",
"type": "CAST"
},
{
"algorithmOrTest": "SHA-1 (A3850)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA-1",
"type": "CAST"
},
{
"algorithmOrTest": "SHA-1 (A3851)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA-1",
"type": "CAST"
},
{
"algorithmOrTest": "SHA-1 (A3852)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA-1",
"type": "CAST"
},
{
"algorithmOrTest": "SHA-1 (A3853)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA-1",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-224 (A3812)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-224",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-224 (A3813)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-224",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-224 (A3814)",
"condition": "Test runs at power-on",
"details": "Message digest",
"indicator": "Module becomes operational and",
"testMethod": "KAT",
"testProps": "SHA2-224",
"type": "CAST"
},
{
"algorithmOrTest": "",
"condition": "before the integrity test",
"details": "",
"indicator": "services are available for use",
"testMethod": "",
"testProps": "",
"type": ""
},
{
"algorithmOrTest": "SHA2-224 (A3832)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-224",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-224 (A3850)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-224",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-224 (A3851)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-224",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-224 (A3852)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-224",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-224 (A3853)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-224",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-224 (A3857)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-224",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-224 (A3858)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-224",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-256 (A3812)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-256 (A3813)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-256 (A3814)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-256 (A3832)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-256 (A3850)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are",
"testMethod": "KAT",
"testProps": "SHA2-256",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-256 (A3851)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "available for use Module becomes operational and services are",
"testMethod": "KAT",
"testProps": "SHA2-256",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-256 (A3852)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-256 (A3853)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-256 (A3857)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-256 (A3858)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-384 (A3812)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-384",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-384 (A3813)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-384",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-384 (A3814)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are",
"testMethod": "KAT",
"testProps": "SHA2-384",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-384 (A3832)",
"condition": "Test runs at power-on",
"details": "Message digest",
"indicator": "Module becomes operational and",
"testMethod": "KAT",
"testProps": "SHA2-384",
"type": "CAST"
},
{
"algorithmOrTest": "",
"condition": "before the integrity test",
"details": "",
"indicator": "services are available for use",
"testMethod": "",
"testProps": "",
"type": ""
},
{
"algorithmOrTest": "SHA2-384 (A3850)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-384",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-384 (A3851)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-384",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-384 (A3852)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-384",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-384 (A3858)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-384",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-512 (A3812)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-512",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-512 (A3813)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-512",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-512 (A3814)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-512",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-512 (A3832)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-512",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-512 (A3850)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-512",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-512 (A3851)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-512",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-512 (A3852)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-512",
"type": "CAST"
},
{
"algorithmOrTest": "SHA2-512 (A3858)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are",
"testMethod": "KAT",
"testProps": "SHA2-512",
"type": "CAST"
},
{
"algorithmOrTest": "SHA3-224 (A3816)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "available for use Module becomes operational and services are",
"testMethod": "KAT",
"testProps": "SHA3-224",
"type": "CAST"
},
{
"algorithmOrTest": "SHA3-224 (A3839)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "available for use Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA3-224",
"type": "CAST"
},
{
"algorithmOrTest": "SHA3-256 (A3816)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA3-256",
"type": "CAST"
},
{
"algorithmOrTest": "SHA3-256 (A3839)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA3-256",
"type": "CAST"
},
{
"algorithmOrTest": "SHA3-384 (A3816)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA3-384",
"type": "CAST"
},
{
"algorithmOrTest": "SHA3-384 (A3839)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA3-384",
"type": "CAST"
},
{
"algorithmOrTest": "SHA3-512 (A3816)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA3-512",
"type": "CAST"
},
{
"algorithmOrTest": "SHA3-512 (A3839)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message digest",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA3-512",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA-1 (A3812)",
"condition": "Test runs at power-on",
"details": "Message authentication",
"indicator": "Module becomes operational and",
"testMethod": "KAT",
"testProps": "SHA-1",
"type": "CAST"
},
{
"algorithmOrTest": "",
"condition": "before the integrity test",
"details": "",
"indicator": "services are available for use",
"testMethod": "",
"testProps": "",
"type": ""
},
{
"algorithmOrTest": "HMAC-SHA-1 (A3813)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA-1",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA-1 (A3814)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA-1",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA-1 (A3832)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA-1",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA-1 (A3850)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA-1",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA-1 (A3851)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA-1",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA-1 (A3852)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA-1",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA-1 (A3853)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA-1",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 224 (A3812)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-224",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 224 (A3813)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-224",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 224 (A3814)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-224",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 224 (A3832)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-224",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 224 (A3850)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-224",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 224 (A3851)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-224",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 224 (A3852)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-224",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 224 (A3853)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-224",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 224 (A3857)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-224",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 224 (A3858)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-224",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 256 (A3812)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 256 (A3813)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 256 (A3814)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 256 (A3832)",
"condition": "Test runs at power-on",
"details": "Message authentication",
"indicator": "Module becomes operational and",
"testMethod": "KAT",
"testProps": "SHA2-256",
"type": "CAST"
},
{
"algorithmOrTest": "",
"condition": "before the integrity test",
"details": "",
"indicator": "services are available for use",
"testMethod": "",
"testProps": "",
"type": ""
},
{
"algorithmOrTest": "HMAC-SHA2- 256 (A3850)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 256 (A3851)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 256 (A3852)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 256 (A3853)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 256 (A3857)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 256 (A3858)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 384 (A3812)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-384",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 384 (A3813)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-384",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 384 (A3814)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-384",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 384 (A3832)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-384",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 384 (A3850)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-384",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 384 (A3851)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are",
"testMethod": "KAT",
"testProps": "SHA2-384",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 384 (A3852)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "available for use Module becomes operational and services are",
"testMethod": "KAT",
"testProps": "SHA2-384",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 384 (A3858)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "available for use Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-384",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 512 (A3812)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-512",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 512 (A3813)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-512",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 512 (A3814)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-512",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 512 (A3832)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-512",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 512 (A3850)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-512",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 512 (A3851)",
"condition": "Test runs at power-on before the integrity test",
"details": "Message authentication",
"indicator": "Module becomes operational and services are",
"testMethod": "KAT",
"testProps": "SHA2-512",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC-SHA2- 512 (A3852)",
"condition": "Test runs at power-on",
"details": "Message authentication",
"indicator": "Module becomes operational and",
"testMethod": "KAT",
"testProps": "SHA2-512",
"type": "CAST"
},
{
"algorithmOrTest": "Algorithm or Test",
"condition": "",
"details": "Conditions",
"indicator": "Details",
"testMethod": "Test Method Test Type",
"testProps": "Test Properties",
"type": "Indicator"
},
{
"algorithmOrTest": "",
"condition": "",
"details": "before the integrity test",
"indicator": "",
"testMethod": "",
"testProps": "",
"type": "services are available for use"
},
{
"algorithmOrTest": "HMAC-SHA2- 512 (A3858)",
"condition": "",
"details": "Test runs at power-on before the integrity test",
"indicator": "Message authentication",
"testMethod": "KAT",
"testProps": "SHA2-512",
"type": "CAST Module becomes operational and services are available for use"
},
{
"algorithmOrTest": "HMAC-SHA3- 224 (A3816)",
"condition": "",
"details": "Test runs at power-on before the integrity test",
"indicator": "Message authentication",
"testMethod": "KAT",
"testProps": "SHA3-224",
"type": "CAST Module becomes operational and services are available for use"
},
{
"algorithmOrTest": "HMAC-SHA3- 224 (A3839)",
"condition": "",
"details": "Test runs at power-on before the integrity test",
"indicator": "Message authentication",
"testMethod": "KAT",
"testProps": "SHA3-224",
"type": "CAST Module becomes operational and services are available for use"
},
{
"algorithmOrTest": "HMAC-SHA3- 256 (A3816)",
"condition": "",
"details": "Test runs at power-on before the integrity test",
"indicator": "Message authentication",
"testMethod": "KAT",
"testProps": "SHA3-256",
"type": "CAST Module becomes operational and services are available for use"
},
{
"algorithmOrTest": "HMAC-SHA3- 256 (A3839)",
"condition": "",
"details": "Test runs at power-on before the integrity test",
"indicator": "Message authentication",
"testMethod": "KAT",
"testProps": "SHA3-256",
"type": "CAST Module becomes operational and services are available for use"
},
{
"algorithmOrTest": "HMAC-SHA3- 384 (A3816)",
"condition": "",
"details": "Test runs at power-on before the integrity test",
"indicator": "Message authentication",
"testMethod": "KAT",
"testProps": "SHA3-384",
"type": "CAST Module becomes operational and services are available for use"
},
{
"algorithmOrTest": "HMAC-SHA3- 384 (A3839)",
"condition": "",
"details": "Test runs at power-on before the integrity test",
"indicator": "Message authentication",
"testMethod": "KAT",
"testProps": "SHA3-384",
"type": "CAST Module becomes operational and services are available for use"
},
{
"algorithmOrTest": "HMAC-SHA3- 512 (A3816)",
"condition": "",
"details": "Test runs at power-on before the integrity test",
"indicator": "Message authentication",
"testMethod": "KAT",
"testProps": "SHA3-512",
"type": "CAST Module becomes operational and services are available for use"
},
{
"algorithmOrTest": "HMAC-SHA3- 512 (A3839)",
"condition": "",
"details": "Test runs at power-on before the integrity test",
"indicator": "Message authentication",
"testMethod": "KAT CAST",
"testProps": "SHA3-512",
"type": "Module becomes operational and services are available for use"
},
{
"algorithmOrTest": "Counter DRBG (A3812)",
"condition": "",
"details": "Test runs at power-on before the integrity test",
"indicator": "SP800-90Arev1 health test",
"testMethod": "KAT CAST",
"testProps": "128, 192, 256 bit keys, with/without PR",
"type": "Module becomes operational and services are"
},
{
"algorithmOrTest": "Counter DRBG (A3813)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Counter DRBG (A3814)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Counter DRBG (A3820)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Counter DRBG (A3821)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Counter DRBG (A3822)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Counter DRBG (A3824)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Counter DRBG (A3825)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Counter DRBG (A3829)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Counter DRBG (A3830)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Counter DRBG (A3831)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Counter DRBG (A3832)",
"condition": "Test runs at power-on",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "",
"condition": "before the integrity test",
"details": "",
"indicator": "services are available for use",
"testMethod": "",
"testProps": "",
"type": ""
},
{
"algorithmOrTest": "Counter DRBG (A3833)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Counter DRBG (A3834)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Counter DRBG (A3840)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Counter DRBG (A3841)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Counter DRBG (A3842)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Counter DRBG (A3843)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Counter DRBG (A3844)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Counter DRBG (A3845)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Counter DRBG (A3854)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Counter DRBG (A3855)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Counter DRBG (A3856)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "128, 192, 256 bit keys, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Hash DRBG (A3812)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256 With/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Hash DRBG (A3813)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256 With/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Hash DRBG (A3814)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256 With/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Hash DRBG (A3820)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256 With/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Hash DRBG (A3821)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256 With/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Hash DRBG (A3822)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256 With/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Hash DRBG (A3824)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256 With/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Hash DRBG (A3825)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256 With/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Hash DRBG (A3830)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256 With/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Hash DRBG (A3831)",
"condition": "Test runs at power-on",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and",
"testMethod": "KAT",
"testProps": "SHA2-256 With/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "",
"condition": "before the integrity test",
"details": "",
"indicator": "services are available for use",
"testMethod": "",
"testProps": "",
"type": ""
},
{
"algorithmOrTest": "Hash DRBG (A3832)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256 With/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Hash DRBG (A3833)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256 With/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Hash DRBG (A3834)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256 With/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Hash DRBG (A3840)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256 With/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Hash DRBG (A3841)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256 With/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Hash DRBG (A3842)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256 With/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Hash DRBG (A3843)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256 With/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Hash DRBG (A3844)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256 With/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Hash DRBG (A3845)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256 With/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Hash DRBG (A3850)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256 With/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Hash DRBG (A3851)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256 With/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Hash DRBG (A3852)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256 With/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Hash DRBG (A3855)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256 With/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "Hash DRBG (A3856)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "SHA2-256 With/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC DRBG (A3812)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "HMAC-SHA2-256, HMAC-SHA2-512, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC DRBG (A3813)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "HMAC-SHA2-256, HMAC-SHA2-512, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC DRBG (A3814)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "HMAC-SHA2-256, HMAC-SHA2-512, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC DRBG (A3820)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "HMAC-SHA2-256, HMAC-SHA2-512, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC DRBG (A3821)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "HMAC-SHA2-256, HMAC-SHA2-512, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC DRBG (A3822)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "HMAC-SHA2-256, HMAC-SHA2-512, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC DRBG (A3824)",
"condition": "Test runs at power-on",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and",
"testMethod": "KAT",
"testProps": "HMAC-SHA2-256, HMAC-SHA2-512, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "",
"condition": "before the integrity test",
"details": "",
"indicator": "services are available for use",
"testMethod": "",
"testProps": "",
"type": ""
},
{
"algorithmOrTest": "HMAC DRBG (A3825)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "HMAC-SHA2-256, HMAC-SHA2-512, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC DRBG (A3830)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "HMAC-SHA2-256, HMAC-SHA2-512, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC DRBG (A3831)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "HMAC-SHA2-256, HMAC-SHA2-512, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC DRBG (A3832)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "HMAC-SHA2-256, HMAC-SHA2-512, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC DRBG (A3833)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "HMAC-SHA2-256, HMAC-SHA2-512, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC DRBG (A3834)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "HMAC-SHA2-256, HMAC-SHA2-512, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC DRBG (A3840)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "HMAC-SHA2-256, HMAC-SHA2-512, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC DRBG (A3841)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "HMAC-SHA2-256, HMAC-SHA2-512, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC DRBG (A3842)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "HMAC-SHA2-256, HMAC-SHA2-512, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC DRBG (A3843)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "HMAC-SHA2-256, HMAC-SHA2-512, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC DRBG (A3844)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "HMAC-SHA2-256, HMAC-SHA2-512, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC DRBG (A3845)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "HMAC-SHA2-256, HMAC-SHA2-512, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC DRBG (A3850)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "HMAC-SHA2-256, HMAC-SHA2-512, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC DRBG (A3851)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "HMAC-SHA2-256, HMAC-SHA2-512, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC DRBG (A3852)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "HMAC-SHA2-256, HMAC-SHA2-512, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC DRBG (A3855)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "HMAC-SHA2-256, HMAC-SHA2-512, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "HMAC DRBG (A3856)",
"condition": "Test runs at power-on before the integrity test",
"details": "SP800-90Arev1 health test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "HMAC-SHA2-256, HMAC-SHA2-512, with/without PR",
"type": "CAST"
},
{
"algorithmOrTest": "KAS-ECC-SSC Sp800-56Ar3 (A3813)",
"condition": "Test runs at power-on before the integrity test",
"details": "Shared secret computation",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "P-256, P-384 curves",
"type": "CAST"
},
{
"algorithmOrTest": "KAS-FFC-SSC Sp800-56Ar3 (A3812)",
"condition": "Test runs at power-on before the integrity test",
"details": "Shared secret computation",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "ffdhe2048",
"type": "CAST"
},
{
"algorithmOrTest": "RSA SigVer (FIPS186-4) (A3814)",
"condition": "Test runs at power-on before the integrity test",
"details": "Digital signature verification",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "PKCS#1 v1.5 with 2048 bit key and SHA2-256",
"type": "CAST"
},
{
"algorithmOrTest": "RSA SigVer (FIPS186-4) (A3832)",
"condition": "Test runs at power-on",
"details": "Digital signature verification",
"indicator": "Module becomes operational and",
"testMethod": "KAT",
"testProps": "PKCS#1 v1.5 with 2048 bit key and SHA2-256",
"type": "CAST"
},
{
"algorithmOrTest": "",
"condition": "before the integrity test",
"details": "",
"indicator": "services are available for use",
"testMethod": "",
"testProps": "",
"type": ""
},
{
"algorithmOrTest": "RSA SigVer (FIPS186-4) (A3850)",
"condition": "Test runs at power-on before the integrity test",
"details": "Digital signature verification",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "PKCS#1 v1.5 with 2048 bit key and SHA2-256",
"type": "CAST"
},
{
"algorithmOrTest": "RSA SigVer (FIPS186-4) (A3851)",
"condition": "Test runs at power-on before the integrity test",
"details": "Digital signature verification",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "PKCS#1 v1.5 with 2048 bit key and SHA2-256",
"type": "CAST"
},
{
"algorithmOrTest": "RSA SigVer (FIPS186-4) (A3852)",
"condition": "Test runs at power-on before the integrity test",
"details": "Digital signature verification",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "KAT",
"testProps": "PKCS#1 v1.5 with 2048 bit key and SHA2-256",
"type": "CAST"
},
{
"algorithmOrTest": "Safe Primes Key Generation (A3812)",
"condition": "Key pair generation",
"details": "Signature generation \u0026 verification",
"indicator": "Successful key pair generation",
"testMethod": "PCT",
"testProps": "ffdhe2048, ffdhe3072, ffdhe4096, ffdhe6144, ffdhe8192, Section 5.6.1.1.4 Testing Candidates",
"type": "PCT"
},
{
"algorithmOrTest": "ECDSA KeyGen (FIPS186-4) (A3813)",
"condition": "Key pair generation",
"details": "Signature generation \u0026 verification",
"indicator": "Successful key pair generation",
"testMethod": "PCT",
"testProps": "SHA2-256, P-256, P- 384 curves, Appendix B.4.2 Testing Candidates",
"type": "PCT"
},
{
"algorithmOrTest": "Entropy Source",
"condition": "Entropy source initialization",
"details": "Entropy source startup test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "RCT",
"testProps": "1024 samples",
"type": "CAST"
},
{
"algorithmOrTest": "Entropy Source",
"condition": "Entropy source initialization",
"details": "Entropy source startup test",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "APT",
"testProps": "1024 samples",
"type": "CAST"
},
{
"algorithmOrTest": "Entropy Source",
"condition": "Continuously",
"details": "Entropy source continuous test",
"indicator": "Entropy source is operational",
"testMethod": "RCT",
"testProps": "Continuously",
"type": "CAST"
},
{
"algorithmOrTest": "Entropy Source",
"condition": "Continuously",
"details": "Entropy source continuous test",
"indicator": "Entropy source is operational",
"testMethod": "APT",
"testProps": "Continuously",
"type": "CAST"
}
],
"found": true,
"section": 10,
"subsection": 2
},
"error_states": {
"entries": [
{
"conditions": "Any self-test failure",
"description": "The Linux kernel immediately stops executing",
"indicator": "Kernel Panic",
"name": "Error State",
"recoveryMethod": "Restart of the module"
}
],
"found": true,
"section": 10,
"subsection": 4
},
"mechanisms_actions": {
"entries": [],
"found": false,
"section": 7,
"subsection": 1
},
"modes_of_operation": {
"entries": [
{
"description": "Automatically entered whenever an approved service is requested",
"name": "Approved mode",
"statusIndicator": "Equivalent to the indicator of the requested service defined in section 4.3",
"type": "Approved"
},
{
"description": "Automatically entered whenever a non-approved service is requested",
"name": "Non-approved mode",
"statusIndicator": "Equivalent to the indicator of the requested service defined in section 4.3",
"type": "Non- Approved"
}
],
"found": true,
"section": 2,
"subsection": 4
},
"non_approved_allowed_NSC": {
"entries": [],
"found": false,
"section": 2,
"subsection": 5
},
"non_approved_allowed_algos": {
"entries": [],
"found": false,
"section": 2,
"subsection": 5
},
"non_approved_not_allowed": {
"entries": [
{
"name": "AES-GCM with external IV",
"use": "Encryption"
},
{
"name": "KBKDF (libkcapi)",
"use": "Key derivation"
},
{
"name": "HKDF (libkcapi)",
"use": "Key derivation"
},
{
"name": "PBKDF2 (libkcapi)",
"use": "Password-based key derivation"
},
{
"name": "RSA",
"use": "Encryption primitive; Decryption primitive"
},
{
"name": "RSA with PKCS#1 v1.5 padding",
"use": "Signature generation (pre-hashed message); Signature verification (pre-hashed message); Key encapsulation; Key un-encapsulation"
}
],
"found": true,
"section": 2,
"subsection": 5
},
"non_approved_services": {
"entries": [
{
"alg_accessed": "AES-GCM with external IV",
"description": "Encryption",
"name": "AES-GCM with external IV",
"role": "CO"
},
{
"alg_accessed": "KBKDF (libkcapi)",
"description": "Key derivation",
"name": "KBKDF (libkcapi)",
"role": "CO"
},
{
"alg_accessed": "HKDF (libkcapi)",
"description": "Key derivation",
"name": "HKDF (libkcapi)",
"role": "CO"
},
{
"alg_accessed": "PBKDF2 (libkcapi)",
"description": "Password-based key derivation",
"name": "PBKDF2 (libkcapi)",
"role": "CO"
},
{
"alg_accessed": "RSA",
"description": "Encryption primitive; Decryption primitive",
"name": "RSA",
"role": "CO"
},
{
"alg_accessed": "RSA with PKCS#1 v1.5 padding",
"description": "Signature generation (pre-hashed message); Signature verification (pre-hashed message); Key encapsulation; Key un-encapsulation",
"name": "RSA with PKCS#1 v1.5 padding",
"role": "CO"
}
],
"found": true,
"section": 4,
"subsection": 4
},
"ports_interfaces": {
"entries": [
{
"data": "API data input parameters, AF_ALG type sockets",
"logicalInterface": "Data Input",
"physicalPort": "N/A"
},
{
"data": "API output parameters, AF_ALG type sockets",
"logicalInterface": "Data Output",
"physicalPort": "N/A"
},
{
"data": "API function calls, API control input parameters, AF_ALG type sockets, kernel command line",
"logicalInterface": "Control Input",
"physicalPort": "N/A"
},
{
"data": "API return values, AF_ALG type sockets, kernel logs",
"logicalInterface": "Status Output",
"physicalPort": "N/A"
}
],
"found": true,
"section": 3,
"subsection": 1
},
"roles": {
"entries": [],
"found": false,
"section": 4,
"subsection": 2
},
"security_levels": {
"entries": [],
"found": false,
"section": 1,
"subsection": 2
},
"self_tests": {
"entries": [
{
"algorithmOrTest": "HMAC-SHA2- 256 (A3812)",
"details": "Used for libkcapi",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "Message Authentication",
"testProps": "128-bit key",
"type": "SW/FW Integrity"
},
{
"algorithmOrTest": "HMAC-SHA2- 256 (A3813)",
"details": "Used for libkcapi",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "Message Authentication",
"testProps": "128-bit key",
"type": "SW/FW Integrity"
},
{
"algorithmOrTest": "HMAC-SHA2- 256 (A3814)",
"details": "Used for libkcapi",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "Message Authentication",
"testProps": "128-bit key",
"type": "SW/FW Integrity"
},
{
"algorithmOrTest": "HMAC-SHA2- 256 (A3832)",
"details": "Used for libkcapi",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "Message Authentication",
"testProps": "128-bit key",
"type": "SW/FW Integrity"
},
{
"algorithmOrTest": "HMAC-SHA2- 256 (A3850)",
"details": "Used for libkcapi",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "Message Authentication",
"testProps": "128-bit key",
"type": "SW/FW Integrity"
},
{
"algorithmOrTest": "HMAC-SHA2- 256 (A3851)",
"details": "Used for libkcapi",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "Message Authentication",
"testProps": "128-bit key",
"type": "SW/FW Integrity"
},
{
"algorithmOrTest": "HMAC-SHA2- 256 (A3852)",
"details": "Used for libkcapi",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "Message Authentication",
"testProps": "128-bit key",
"type": "SW/FW Integrity"
},
{
"algorithmOrTest": "HMAC-SHA2- 256 (A3853)",
"details": "Used for libkcapi",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "Message Authentication",
"testProps": "128-bit key",
"type": "SW/FW Integrity"
},
{
"algorithmOrTest": "HMAC-SHA2- 256 (A3857)",
"details": "Used for libkcapi",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "Message Authentication",
"testProps": "128-bit key",
"type": "SW/FW Integrity"
},
{
"algorithmOrTest": "HMAC-SHA2- 256 (A3858)",
"details": "Used for libkcapi",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "Message Authentication",
"testProps": "128-bit key",
"type": "SW/FW Integrity"
},
{
"algorithmOrTest": "HMAC-SHA2- 512 (A3812)",
"details": "Used for kernel and sha512hmac binaries",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "Message Authentication",
"testProps": "128-bit key",
"type": "SW/FW Integrity"
},
{
"algorithmOrTest": "HMAC-SHA2- 512 (A3813)",
"details": "Used for kernel and sha512hmac binaries",
"indicator": "Module becomes operational and",
"testMethod": "Message Authentication",
"testProps": "128-bit key",
"type": "SW/FW Integrity"
},
{
"algorithmOrTest": "",
"details": "",
"indicator": "services are available for use",
"testMethod": "",
"testProps": "",
"type": ""
},
{
"algorithmOrTest": "HMAC-SHA2- 512 (A3814)",
"details": "Used for kernel and sha512hmac binaries",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "Message Authentication",
"testProps": "128-bit key",
"type": "SW/FW Integrity"
},
{
"algorithmOrTest": "HMAC-SHA2- 512 (A3832)",
"details": "Used for kernel and sha512hmac binaries",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "Message Authentication",
"testProps": "128-bit key",
"type": "SW/FW Integrity"
},
{
"algorithmOrTest": "HMAC-SHA2- 512 (A3850)",
"details": "Used for kernel and sha512hmac binaries",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "Message Authentication",
"testProps": "128-bit key",
"type": "SW/FW Integrity"
},
{
"algorithmOrTest": "HMAC-SHA2- 512 (A3851)",
"details": "Used for kernel and sha512hmac binaries",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "Message Authentication",
"testProps": "128-bit key",
"type": "SW/FW Integrity"
},
{
"algorithmOrTest": "HMAC-SHA2- 512 (A3852)",
"details": "Used for kernel and sha512hmac binaries",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "Message Authentication",
"testProps": "128-bit key",
"type": "SW/FW Integrity"
},
{
"algorithmOrTest": "HMAC-SHA2- 512 (A3858)",
"details": "Used for kernel and sha512hmac binaries",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "Message Authentication",
"testProps": "128-bit key",
"type": "SW/FW Integrity"
},
{
"algorithmOrTest": "RSA SigVer (FIPS186-4) (A3814)",
"details": "Used for kernel crypto object files",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "Signature Verification",
"testProps": "4096-bit key with SHA-512",
"type": "SW/FW Integrity"
},
{
"algorithmOrTest": "RSA SigVer (FIPS186-4) (A3832)",
"details": "Used for kernel crypto object files",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "Signature Verification",
"testProps": "4096-bit key with SHA-512",
"type": "SW/FW Integrity"
},
{
"algorithmOrTest": "RSA SigVer (FIPS186-4) (A3850)",
"details": "Used for kernel crypto object files",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "Signature Verification",
"testProps": "4096-bit key with SHA-512",
"type": "SW/FW Integrity"
},
{
"algorithmOrTest": "RSA SigVer (FIPS186-4) (A3851)",
"details": "Used for kernel crypto object files",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "Signature Verification",
"testProps": "4096-bit key with SHA-512",
"type": "SW/FW Integrity"
},
{
"algorithmOrTest": "RSA SigVer (FIPS186-4) (A3852)",
"details": "Used for kernel crypto object files",
"indicator": "Module becomes operational and services are available for use",
"testMethod": "Signature Verification",
"testProps": "4096-bit key with SHA-512",
"type": "SW/FW Integrity"
}
],
"found": true,
"section": 10,
"subsection": 1
},
"ssp_io_methods": {
"entries": [
{
"dest": "Cryptographic module",
"distribution": "Manual",
"entry": "Electronic",
"format": "Plaintext",
"name": "API input parameters; AF_ALG_type sockets (input)",
"sfiAlgo": "",
"source": "Operator calling application (TOEPP)"
},
{
"dest": "Operator calling application (TOEPP)",
"distribution": "Manual",
"entry": "Electronic",
"format": "Plaintext",
"name": "API output parameters; AF_ALG type sockets (output)",
"sfiAlgo": "",
"source": "Cryptographic module"
}
],
"found": true,
"section": 9,
"subsection": 2
},
"ssp_zeroization_methods": {
"entries": [
{
"description": "Zeroizes the SSPs contained within the cipher handle",
"method": "Free cipher handle",
"operatorId": "By calling the appropriate zeroization functions: AES key: crypto_free_skcipher and crypto_free_aead; HMAC key: crypto_free_shash and crypto_free_ahash; Internal state: crypto_free_rng; DH public \u0026 private key: crypto_free_kpp; EC public \u0026 private key: crypto_free_kpp",
"rationale": "Memory occupied by SSPs is overwritten with zeroes, which renders the SSP values irretrievable"
},
{
"description": "Automatically zeroized by the module when no longer needed",
"method": "Automatic",
"operatorId": "N/A",
"rationale": "Memory occupied by SSPs is overwritten with zeroes, which renders the SSP values irretrievable."
},
{
"description": "De-allocates the volatile memory used to store SSPs",
"method": "Remove power from the module",
"operatorId": "By removing power",
"rationale": "Volatile memory used by the module is overwritten within nanoseconds when power is removed."
}
],
"found": true,
"section": 9,
"subsection": 3
},
"storage_areas": {
"entries": [
{
"description": "Temporary storage for SSPs used by the Dynamic module as part of service execution",
"name": "RAM",
"persistance": "Dynamic"
}
],
"found": true,
"section": 9,
"subsection": 1
},
"tested_module_id_hw": {
"entries": [],
"found": false,
"section": 2,
"subsection": 2
},
"tested_module_id_hw_hy": {
"entries": [],
"found": false,
"section": 2,
"subsection": 2
},
"tested_module_id_sw_fw_hy": {
"entries": [
{
"features": "N/A",
"integrityTest": "HMAC SHA-512",
"packageFileName": "/boot/vmlinuz-5.15.0-73-fips; /run/mnt/kernel/kernel.efi",
"swFwVersion": "5.15.0-73-fips"
},
{
"features": "N/A",
"integrityTest": "RSA signature verification",
"packageFileName": "*.ko files in /usr/lib/modules/5.15.0-73- fips/kernel/crypto/; *.ko files in /usr/lib/modules/5.15.0-73- fips/kernel/arch/x86/crypto/; *.ko files in /usr/lib/modules/5.15.0-73- fips/kernel/arch/arm64/crypto/; *.ko files in /usr/lib/modules/5.15.0-73- fips/kernel/arch/s390/crypto/",
"swFwVersion": "5.15.0-73-fips"
},
{
"features": "N/A",
"integrityTest": "HMAC SHA-256 (/usr/lib/*-linux- gnu/libkcapi.so.1.4.0); HMAC SHA-512 (/usr/bin/sha512hmac)",
"packageFileName": "/usr/lib/*-linux- gnu/libkcapi.so.1.4.0; /usr/bin/sha512hmac",
"swFwVersion": "1.4.0- 1ubuntu0.1~Fips1"
}
],
"found": true,
"section": 2,
"subsection": 2
},
"tested_op_env_sw_fw_hy": {
"entries": [
{
"hardwarePlatform": "Supermicro SYS-1019P- WTR",
"hypervisorHostOs": "N/A",
"operatingSystem": "Ubuntu 22.04 LTS 64-bit",
"paa_pai": "Yes",
"processors": "Intel(R) Xeon(R) Gold 6226",
"version": "5.15.0-73- fips"
},
{
"hardwarePlatform": "Supermicro SYS-1019P- WTR",
"hypervisorHostOs": "N/A",
"operatingSystem": "Ubuntu 22.04 LTS 64-bit",
"paa_pai": "No",
"processors": "Intel(R) Xeon(R) Gold 6226",
"version": "5.15.0-73- fips"
},
{
"hardwarePlatform": "Supermicro SYS-1019P- WTR",
"hypervisorHostOs": "N/A",
"operatingSystem": "Ubuntu Core 22 64-bit",
"paa_pai": "Yes",
"processors": "Intel(R) Xeon(R) Gold 6226",
"version": "5.15.0-73- fips"
},
{
"hardwarePlatform": "Supermicro SYS-1019P- WTR",
"hypervisorHostOs": "N/A",
"operatingSystem": "Ubuntu Core 22 64-bit",
"paa_pai": "No",
"processors": "Intel(R) Xeon(R) Gold 6226",
"version": "5.15.0-73- fips"
},
{
"hardwarePlatform": "Amazon Web Services (AWS) c6g.metal",
"hypervisorHostOs": "N/A",
"operatingSystem": "Ubuntu 22.04 LTS 64-bit",
"paa_pai": "Yes",
"processors": "AWS Graviton2",
"version": "5.15.0-73- fips"
},
{
"hardwarePlatform": "Amazon Web Services (AWS) c6g.metal",
"hypervisorHostOs": "N/A",
"operatingSystem": "Ubuntu 22.04 LTS 64-bit",
"paa_pai": "No",
"processors": "AWS Graviton2",
"version": "5.15.0-73- fips"
},
{
"hardwarePlatform": "Amazon Web Services (AWS) c6g.metal",
"hypervisorHostOs": "N/A",
"operatingSystem": "Ubuntu Core 22 64-bit",
"paa_pai": "Yes",
"processors": "AWS Graviton2",
"version": "5.15.0-73- fips"
},
{
"hardwarePlatform": "Amazon Web Services (AWS) c6g.metal",
"hypervisorHostOs": "N/A",
"operatingSystem": "Ubuntu Core 22 64-bit",
"paa_pai": "No",
"processors": "AWS Graviton2",
"version": "5.15.0-73- fips"
},
{
"hardwarePlatform": "IBM z15",
"hypervisorHostOs": "N/A",
"operatingSystem": "Ubuntu 22.04 LTS 64-bit",
"paa_pai": "Yes",
"processors": "IBM z15",
"version": "5.15.0-73- fips"
},
{
"hardwarePlatform": "IBM z15",
"hypervisorHostOs": "N/A",
"operatingSystem": "Ubuntu 22.04 LTS 64-bit",
"paa_pai": "No",
"processors": "IBM z15",
"version": "5.15.0-73- fips"
}
],
"found": true,
"section": 2,
"subsection": 2
},
"vendor_affirmed_algos": {
"entries": [
{
"algoPropList": "Key Type:Asymmetric ECC Curves:P-256, P-384 (strength of 128, 192 bits) DH groups:ffdhe2048, ffdhe3072, ffdhe4096, ffdhe6144, ffdhe8192 (strength of 112-200 bits)",
"implName": "N/A",
"name": "ECC and DH CKG",
"reference": "SP800-133r2, section 4 (without XOR)"
}
],
"found": true,
"section": 2,
"subsection": 5
},
"vendor_affirmed_op_env_sw_fw_hy": {
"entries": [],
"found": false,
"section": 2,
"subsection": 2
}
},
"is_br1_format": true,
"keywords": {
"asymmetric_crypto": {
"ECC": {
"ECC": {
"ECC": 3
},
"ECDH": {
"ECDH": 3
},
"ECDSA": {
"ECDSA": 16
}
},
"FF": {
"DH": {
"DH": 25,
"Diffie-Hellman": 7
}
}
},
"certification_process": {},
"cipher_mode": {
"CBC": {
"CBC": 5
},
"CCM": {
"CCM": 6
},
"CFB": {
"CFB": 1
},
"CTR": {
"CTR": 5
},
"ECB": {
"ECB": 3
},
"GCM": {
"GCM": 16
},
"OFB": {
"OFB": 3
},
"XTS": {
"XTS": 8
}
},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {},
"crypto_protocol": {
"IKE": {
"IKE": 1,
"IKEv2": 2
},
"IPsec": {
"IPsec": 7
},
"TLS": {
"TLS": {
"TLS": 2
}
}
},
"crypto_scheme": {
"KA": {
"Key Agreement": 1
},
"KEX": {
"Key Exchange": 2
},
"MAC": {
"MAC": 7
}
},
"device_model": {},
"ecc_curve": {
"NIST": {
"P-256": 10,
"P-384": 16,
"P-521": 2
}
},
"eval_facility": {
"atsec": {
"atsec": 106
}
},
"fips_cert_id": {},
"fips_certlike": {
"Certlike": {
"DRBG 1": 1,
"HMAC SHA-1": 1,
"HMAC SHA-256": 3,
"HMAC SHA-384": 1,
"HMAC SHA-512": 6,
"HMAC-SHA-1": 74,
"PKCS#1": 20,
"SHA -512": 1,
"SHA-1": 57,
"SHA-256": 3,
"SHA-3": 2,
"SHA-384": 1,
"SHA-512": 12,
"SHA2-224": 62,
"SHA2-256": 98,
"SHA2-384": 54,
"SHA2-512": 54,
"SHA3": 1,
"SHA3-224": 13,
"SHA3-256": 13,
"SHA3-384": 13,
"SHA3-512": 12
}
},
"fips_security_level": {
"Level": {
"Level 1": 1
}
},
"hash_function": {
"PBKDF": {
"PBKDF2": 4
},
"SHA": {
"SHA1": {
"SHA-1": 59
},
"SHA2": {
"SHA-256": 3,
"SHA-384": 1,
"SHA-512": 12
},
"SHA3": {
"SHA-3": 2,
"SHA3": 1,
"SHA3-224": 13,
"SHA3-256": 13,
"SHA3-384": 13,
"SHA3-512": 13
}
}
},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {
"PRNG": {
"DRBG": 272
},
"RNG": {
"RBG": 1,
"RNG": 1
}
},
"side_channel_analysis": {},
"standard_id": {
"FIPS": {
"FIPS 140-3": 109,
"FIPS 180-4": 43,
"FIPS 186-4": 10,
"FIPS 186-5": 2,
"FIPS 1864": 1,
"FIPS 197": 1,
"FIPS 198-1": 50,
"FIPS 202": 9,
"FIPS PUB 140-3": 2,
"FIPS180-4": 1,
"FIPS186-4": 39,
"FIPS202": 1
},
"NIST": {
"SP 800-38A": 59,
"SP 800-38B": 8,
"SP 800-38C": 8,
"SP 800-38D": 28,
"SP 800-38E": 11,
"SP 800-38F": 5,
"SP 800-56A": 3,
"SP 800-90A": 67,
"SP 800-90B": 1
},
"PKCS": {
"PKCS#1": 10
},
"RFC": {
"RFC 3526": 1,
"RFC 4106": 3,
"RFC 7296": 2,
"RFC 7919": 1
}
},
"symmetric_crypto": {
"AES_competition": {
"AES": {
"AES": 44,
"AES-": 7
},
"CAST": {
"CAST": 760
}
},
"constructions": {
"MAC": {
"CMAC": 4,
"HMAC": 118
}
}
},
"tee_name": {
"AMD": {
"PSP": 2
},
"IBM": {
"SSC": 8
}
},
"tls_cipher_suite": {},
"vendor": {},
"vulnerability": {}
},
"module_algorithms": {
"_type": "Set",
"elements": [
"SHA3-512A3839",
"KAS-ECC-SSC Sp800-56Ar3A3813",
"AES-CMACA3854",
"AES-ECBA3857",
"AES-GCMA3856",
"SHA2-256A3858",
"AES-CCMA3854",
"AES-GMACA3854",
"AES-CBC-CS3A3854",
"HMAC DRBGA3856",
"Counter DRBGA3856",
"HMAC-SHA2-512A3858",
"SHA2-384A3858",
"SHA2-224A3858",
"RSA SigVer (FIPS186-4)A3852",
"ECDSA KeyGen (FIPS186-4)A3813",
"AES-KWA3854",
"HMAC-SHA3-512A3839",
"AES-CFB128A3854",
"SHA-1A3853",
"AES-XTS Testing Revision 2.0A3857",
"HMAC-SHA-1A3853",
"AES-OFBA3854",
"AES-CBCA3857",
"HMAC-SHA3-224A3839",
"SHA2-512A3858",
"HMAC-SHA2-384A3858",
"Hash DRBGA3856",
"HMAC-SHA2-224A3858",
"KAS-FFC-SSC Sp800-56Ar3A3812",
"Safe Primes Key GenerationA3812",
"HMAC-SHA2-256A3858",
"AES-CTRA3857",
"SHA3-224A3839",
"HMAC-SHA3-256A3839",
"SHA3-384A3839",
"HMAC-SHA3-384A3839",
"SHA3-256A3839"
]
},
"policy_algorithms": {
"_type": "Set",
"elements": [
"#A3853",
"#A3814",
"#A3832",
"#A3842",
"#A3847",
"#A3822",
"#A3843",
"#A3849",
"#A3845",
"#A3841",
"#A3836",
"#A3827",
"#A3840",
"#A3820",
"#A3834",
"#A3821",
"#A3852",
"#A3846",
"#A3854",
"#A3826",
"#A3837",
"#A3823",
"#A3816",
"#A3848",
"#A3831",
"#A3812",
"#A3817",
"#A3850",
"#A3844",
"#A3828",
"#A3818",
"#A3824",
"#A3829",
"#A3825",
"#A3815",
"#A3838",
"#A3819",
"#A3855",
"#A3856",
"#A3813",
"#A3833",
"#A3851",
"#A3857",
"#A3830",
"#A3858",
"#A3839"
]
},
"policy_metadata": {
"/Author": "Hawes, David J. (Fed)",
"/CreationDate": "D:20241108150450-06\u002700\u0027",
"/Creator": "Microsoft\u00ae Word for Microsoft 365",
"/ModDate": "D:20241108150450-06\u002700\u0027",
"/Producer": "Microsoft\u00ae Word for Microsoft 365",
"pdf_file_size_bytes": 1491836,
"pdf_hyperlinks": {
"_type": "Set",
"elements": [
"https://nvlpubs.nist.gov/nistpubs/FIPS/NIST.FIPS.202.pdf",
"https://datatracker.ietf.org/doc/html/rfc4106",
"https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-90B.pdf",
"https://nvlpubs.nist.gov/nistpubs/FIPS/NIST.FIPS.186-5.pdf",
"https://nvlpubs.nist.gov/nistpubs/FIPS/NIST.FIPS.180-4.pdf",
"https://csrc.nist.gov/Projects/cryptographic-module-validation-program/fips-140-3-ig-announcements",
"https://csrc.nist.gov/publications/fips/fips198-1/FIPS-198-1_final.pdf",
"https://csrc.nist.gov/publications/nistpubs/800-38D/SP-800-38D.pdf",
"https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-56Ar3.pdf",
"https://datatracker.ietf.org/doc/html/rfc7296",
"https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-90Ar1.pdf",
"https://csrc.nist.gov/publications/nistpubs/800-38B/SP_800-38B.pdf",
"https://csrc.nist.gov/publications/fips/fips197/fips-197.pdf",
"https://www.ietf.org/rfc/rfc3447.txt",
"https://csrc.nist.gov/publications/nistpubs/800-38a/sp800-38a.pdf",
"https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-133r2.pdf",
"https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-38F.pdf",
"https://www.ietf.org/rfc/rfc3526.txt",
"https://nvlpubs.nist.gov/nistpubs/Legacy/SP/nistspecialpublication800-38a-add.pdf",
"https://csrc.nist.gov/publications/nistpubs/800-38E/nist-sp-800-38E.pdf",
"https://nvlpubs.nist.gov/nistpubs/FIPS/NIST.FIPS.186-4.pdf",
"https://nvlpubs.nist.gov/nistpubs/FIPS/NIST.FIPS.140-3.pdf",
"https://nvlpubs.nist.gov/nistpubs/Legacy/SP/nistspecialpublication800-38c.pdf"
]
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 103
}
},
"state": {
"_type": "sec_certs.sample.fips.InternalState",
"module": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"json_hash": null,
"source_hash": null,
"txt_hash": null
},
"policy": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"json_hash": "34806bcea82e904993aa11694a85ae24c399e27f4f2eb38854a504ff699be692",
"source_hash": "4799dc616c2c7882fb0779ffe7084da77f61a83d3c6a3074cda28dd9ecc2c4c0",
"txt_hash": "0b8f5e12be446452b1aeb11fbcb214224148a0a0189423083904a527aa8f9cae"
}
},
"web_data": {
"_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
"caveat": "Interim validation. When operated in approved mode. When installed, initialized and configured as specified in Section 11.1 of the Security Policy.",
"certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/November 2024_021224_0125.pdf",
"date_sunset": null,
"description": "The Linux kernel crypto API implementation provides cryptographic services to Linux kernel space software components and user space via the AF_ALG interface.",
"embodiment": "Multi-Chip Stand Alone",
"exceptions": [
"Physical security: N/A",
"Non-invasive security: N/A",
"Mitigation of other attacks: N/A"
],
"fw_versions": null,
"historical_reason": "Replaced by certificate #5491",
"hw_versions": null,
"level": 1,
"mentioned_certs": {},
"module_name": "Canonical Ltd. Ubuntu 22.04 Kernel Crypto API Cryptographic Module",
"module_type": "Software",
"revoked_link": null,
"revoked_reason": null,
"standard": "FIPS 140-3",
"status": "historical",
"sw_versions": "5.15.0-73-fips",
"tested_conf": [
"Ubuntu 22.04 LTS 64-bit running on Amazon Web Services (AWS) c6g.metal with AWS Graviton2 with PAA",
"Ubuntu 22.04 LTS 64-bit running on Amazon Web Services (AWS) c6g.metal with AWS Graviton2 without PAA",
"Ubuntu 22.04 LTS 64-bit running on IBM z15 with IBM z15 with PAI",
"Ubuntu 22.04 LTS 64-bit running on IBM z15 with IBM z15 without PAI",
"Ubuntu 22.04 LTS 64-bit running on Supermicro SYS-1019P-WTR with Intel(R) Xeon(R) Gold 6226 with PAA",
"Ubuntu 22.04 LTS 64-bit running on Supermicro SYS-1019P-WTR with Intel(R) Xeon(R) Gold 6226 without PAA",
"Ubuntu Core 22 64-bit running on Amazon Web Services (AWS) c6g.metal with AWS Graviton2 with PAA",
"Ubuntu Core 22 64-bit running on Amazon Web Services (AWS) c6g.metal with AWS Graviton2 without PAA",
"Ubuntu Core 22 64-bit running on Supermicro SYS-1019P-WTR with Intel(R) Xeon(R) Gold 6226 with PAA",
"Ubuntu Core 22 64-bit running on Supermicro SYS-1019P-WTR with Intel(R) Xeon(R) Gold 6226 without PAA"
],
"validation_history": [
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2024-11-21",
"lab": "atsec information security corporation",
"validation_type": "Initial"
}
],
"vendor": "Canonical Ltd.",
"vendor_url": "http://www.canonical.com"
}
}