Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Citrix FIPS Cryptographic Module
Citrix FIPS Cryptographic Module
cert_id 2988 4628
dgst 0d46ebf59e025c23 a5ba595e5571c2a9
heuristics/algorithms AES#4397, CVL#1105, CVL#1102, KAS#1103, KAS#1102, ECDSA#1056, RSA#2379, DSA#1174, CVL#1104, Triple-DES#2371, DRBG#1417, KAS#1101, KAS#1104, HMAC#2923, KTS#4397, CVL#1106, CVL#1103, SHS#3626, CVL#1101 CVL#1103, Triple-DES#2371, DRBG#1417, ECDSA#1056, AES#4397, CVL#1105, HMAC#2923, CVL#1102, SHS#3626, KTS#4397, CVL#1101, RSA#2379, DSA#1174
heuristics/extracted_versions 2600, 5600, 2400 -
pdf_data/keywords/fips_cert_id
  • Cert:
    • # 2379: 1
    • #1: 2
    • #10: 2
    • #1101: 2
    • #1102: 2
    • #1103: 2
    • #1104: 1
    • #1106: 1
    • #19: 1
    • #3626: 1
    • #4: 1
    • #4397: 1
  • Cert:
    • # 2379: 1
    • #1: 2
    • #10: 1
    • #4: 1
    • #4397: 1
pdf_data/keywords/fips_certlike
  • Certlike:
    • AES #4397: 1
    • AES, 256: 1
    • CVL #1101: 2
    • CVL #1102: 2
    • CVL #1103: 2
    • Cert # AES: 1
    • Cert # DRBG: 1
    • Cert # RSA: 1
    • HMAC-SHA-1: 2
    • HMAC-SHA1: 2
    • PKCS #1: 4
    • PKCS#1: 2
    • PKCS1: 6
    • SHA-1: 7
    • SHA-2: 1
    • SHA-224: 6
    • SHA-256: 12
    • SHA-384: 8
    • SHA-512: 7
    • SHA-512 2923: 1
    • SHS Cert. #3626: 1
  • Certlike:
    • AES #4397: 1
    • AES, 256: 1
    • Cert # AES: 1
    • Cert # RSA: 1
    • HMAC-SHA-1: 2
    • HMAC-SHA1: 2
    • PKCS #1: 4
    • PKCS#1: 2
    • PKCS1: 6
    • SHA-1: 6
    • SHA-2: 1
    • SHA-224: 6
    • SHA-256: 12
    • SHA-384: 8
    • SHA-512: 7
    • SHA-512 2923: 1
pdf_data/keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 24
  • DES:
    • 3DES:
      • TDES: 3
      • Triple-DES: 7
    • DES:
      • DES: 2
  • constructions:
    • MAC:
      • CMAC: 9
      • HMAC: 8
  • AES_competition:
    • AES:
      • AES: 24
  • DES:
    • 3DES:
      • TDES: 2
      • Triple-DES: 9
  • constructions:
    • MAC:
      • CMAC: 5
      • HMAC: 8
pdf_data/keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 5
    • ECDH:
      • ECDH: 12
    • ECDSA:
      • ECDSA: 13
  • FF:
    • DH:
      • DH: 14
    • DSA:
      • DSA: 14
  • RSA:
    • RSA-1024: 1
  • ECC:
    • ECC:
      • ECC: 2
    • ECDH:
      • ECDH: 2
    • ECDSA:
      • ECDSA: 13
  • FF:
    • DH:
      • DH: 2
    • DSA:
      • DSA: 14
  • RSA:
    • RSA-1024: 1
pdf_data/keywords/hash_function
  • MD:
    • MD5:
      • MD5: 3
  • PBKDF:
    • PBKDF: 3
  • SHA:
    • SHA1:
      • SHA-1: 7
    • SHA2:
      • SHA-2: 1
      • SHA-224: 6
      • SHA-256: 12
      • SHA-384: 8
      • SHA-512: 8
  • MD:
    • MD5:
      • MD5: 2
  • PBKDF:
    • PBKDF: 3
  • SHA:
    • SHA1:
      • SHA-1: 6
    • SHA2:
      • SHA-2: 1
      • SHA-224: 6
      • SHA-256: 12
      • SHA-384: 8
      • SHA-512: 8
pdf_data/keywords/crypto_scheme
  • KA:
    • Key Agreement: 6
    • Key agreement: 1
  • MAC:
    • MAC: 6
  • MAC:
    • MAC: 6
pdf_data/keywords/crypto_protocol
  • SSH:
    • SSH: 9
  • TLS:
    • TLS:
      • TLS: 4
      • TLS 1.2: 1
  • SSH:
    • SSH: 7
  • TLS:
    • TLS:
      • TLS: 2
      • TLS 1.2: 1
pdf_data/keywords/cipher_mode
  • CBC:
    • CBC: 3
  • CCM:
    • CCM: 3
  • CTR:
    • CTR: 2
  • ECB:
    • ECB: 3
  • GCM:
    • GCM: 5
  • OFB:
    • OFB: 1
  • XTS:
    • XTS: 7
  • CBC:
    • CBC: 2
  • CCM:
    • CCM: 3
  • CTR:
    • CTR: 2
  • ECB:
    • ECB: 3
  • GCM:
    • GCM: 5
  • OFB:
    • OFB: 1
  • XTS:
    • XTS: 7
pdf_data/keywords/ecc_curve
  • NIST:
    • B-233: 2
    • B-283: 2
    • B-409: 2
    • B-571: 2
    • K-233: 3
    • K-283: 2
    • K-409: 1
    • K-571: 2
    • P-224: 6
    • P-256: 4
    • P-384: 6
    • P-512: 1
    • P-521: 4
  • NIST:
    • B-233: 1
    • B-283: 1
    • B-409: 1
    • B-571: 1
    • K-233: 2
    • K-283: 1
    • K-409: 1
    • K-571: 1
    • P-224: 4
    • P-256: 2
    • P-384: 2
    • P-521: 2
pdf_data/keywords/standard_id
  • FIPS:
    • FIPS 140-2: 40
    • FIPS 180-4: 1
    • FIPS 186-2: 1
    • FIPS 186-4: 6
    • FIPS 197: 6
    • FIPS 198-1: 1
  • NIST:
    • SP 800-132: 1
    • SP 800-133: 2
    • SP 800-20: 1
    • SP 800-38A: 1
    • SP 800-38B: 2
    • SP 800-38C: 1
    • SP 800-38D: 1
    • SP 800-38E: 1
    • SP 800-38F: 1
    • SP 800-56A: 3
    • SP 800-67: 2
    • SP 800-90A: 1
  • PKCS:
    • PKCS #1: 2
    • PKCS#1: 1
    • PKCS1: 3
  • FIPS:
    • FIPS 140-2: 38
    • FIPS 180-4: 1
    • FIPS 186-2: 1
    • FIPS 186-4: 6
    • FIPS 197: 6
    • FIPS 198-1: 1
  • NIST:
    • SP 800-132: 1
    • SP 800-133: 2
    • SP 800-20: 1
    • SP 800-38A: 1
    • SP 800-38B: 1
    • SP 800-38C: 1
    • SP 800-38D: 1
    • SP 800-38E: 1
    • SP 800-38F: 1
    • SP 800-67: 1
    • SP 800-90A: 1
  • PKCS:
    • PKCS #1: 2
    • PKCS#1: 1
    • PKCS1: 3
pdf_data/policy_metadata
  • /Author: Ben Tucker
  • /Category:
  • /Comments:
  • /Company: Citrix Systems, Inc.
  • /ContentTypeId: 0x0101008681CA60AFFFF04BA463888914031D79
  • /CreationDate: D:20210104171314-08'00'
  • /Creator: Acrobat PDFMaker 17 for Word
  • /Keywords:
  • /Manager:
  • /ModDate: D:20210104171322-08'00'
  • /Producer: Adobe PDF Library 15.0
  • /SourceModified: D:20210105011238
  • /Subject: FIPS 140-2 Security Policy
  • /Title: Citrix FIPS Cryptographic Module, FIPS 140-2 Security Policy
  • pdf_file_size_bytes: 787869
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 32
  • /Author: Ben Tucker
  • /Company:
  • /CreationDate: D:20231004113903-07'00'
  • /Creator: Acrobat PDFMaker 23 for Word
  • /ModDate: D:20231004113916-07'00'
  • /Producer: Adobe PDF Library 23.6.96
  • /SourceModified: D:20231004183847
  • /Title:
  • pdf_file_size_bytes: 926361
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 31
state/policy_pdf_hash Different Different
state/policy_txt_hash Different Different
web_data/certificate_pdf_url https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/AugConsolidatedCert.pdf https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/October 2023_011123_0711.pdf
web_data/date_sunset 29.09.2025
web_data/historical_reason SP 800-56Arev3 transition
web_data/hw_versions A, R, M, , v, 8, -, A, ,, , A, R, M, , v, 7, -, A, ,, , I, n, t, e, l, , C, o, r, e, , i, 7, , 4, t, h, , G, e, n, e, r, a, t, i, o, n, ,, , I, n, t, e, l, , C, o, r, e, , i, 7, , 6, t, h, , G, e, n, e, r, a, t, i, o, n, ,, , I, n, t, e, l, , C, o, r, e, , i, 7, , 8, t, h, , G, e, n, e, r, a, t, i, o, n, ,, , I, n, t, e, l, , X, e, o, n, , 5, 6, 0, 0, , s, e, r, i, e, s, ,, , I, n, t, e, l, , X, e, o, n, , E, 5, -, 2, 4, 0, 0, , v, 4, , s, e, r, i, e, s, ,, , I, n, t, e, l, , X, e, o, n, , E, 5, -, 2, 6, 0, 0, , v, 2, , s, e, r, i, e, s, ,, , I, n, t, e, l, , X, e, o, n, , E, 5, -, 2, 6, 0, 0, , v, 3, , s, e, r, i, e, s, , a, n, d, , I, n, t, e, l, , X, e, o, n, , E, 5, -, 2, 6, 0, 0, , v, 4, , s, e, r, i, e, s, A, R, M, , v, 8, -, A, ,, , A, R, M, , v, 7, -, A, ,, , I, n, t, e, l, , C, o, r, e, , i, 7, , 4, t, h, , G, e, n, e, r, a, t, i, o, n, ,, , I, n, t, e, l, , C, o, r, e, , i, 7, , 6, t, h, , G, e, n, e, r, a, t, i, o, n, ,, , I, n, t, e, l, , C, o, r, e, , i, 7, , 8, t, h, , G, e, n, e, r, a, t, i, o, n, ,, , I, n, t, e, l, , X, e, o, n, , 5, 6, x, x, , s, e, r, i, e, s, ,, , I, n, t, e, l, , X, e, o, n, , E, 5, -, 2, 4, x, x, , v, 2, , s, e, r, i, e, s, ,, , I, n, t, e, l, , X, e, o, n, , E, 5, -, , 2, 6, x, x, , v, 2, , s, e, r, i, e, s, ,, , I, n, t, e, l, , X, e, o, n, , E, 5, -, 2, 6, x, x, , v, 3, , s, e, r, i, e, s, , a, n, d, , I, n, t, e, l, , X, e, o, n, , E, 5, -, 2, 6, x, x, , v, 4, , s, e, r, i, e, s
web_data/status historical active
web_data/tested_conf Android 4.4 running on a Google Nexus 5 (LG D820) with PAA, Android 5 running on a Google Nexus 6 (Motorola Nexus 6 XT11003) with PAA, Android 6 running on a Google Nexus 6 (Motorola Nexus 6 XT11003) with PAA, Android 6 running on a Samsung Galaxy S6 (SM-G920T) with PAA, Android 7 running on a Google Nexus 5X (LG H790) with PAA, Android 7 running on a Google Nexus 6 (Motorola Nexus 6 XT11003) with PAA, Android 8 64bit running on a Google Pixel 2 with ARM v8-A with PAA, Android 9 running on a Google Pixel 2 with ARM v8-A with PAA, FreeBSD 8.4 32bit running on a Citrix NetScaler MPX-14000-FIPS with PAA, FreeBSD 8.4 64bit running on a Citrix NetScaler MPX-14000-FIPS with PAA, iOS 10 64bit running on an Apple 12.9-inch iPad Pro (A1584) with PAA, iOS 11 running on an iPhone X with ARM v8-A with PAA, Linux 3.10 64bit running on a CyberPowerPC GLC2460 with Intel Core i7 [8th Generation] with PAA, Linux 3.13 64bit running on a Lenovo 20EV002JUS with PAA, Linux 3.16 on ESXi 5 64bit running on a HP ProLiant DL2000 with PAA, Linux 3.16 on Hyper-V on Windows Server 2012 R2 64bit running on a HP ProLiant DL2000 with PAA, Linux 3.16 on XenServer 6 64bit running on a Dell PowerEdge C6100 with PAA, Linux 4.15 64bit running on a CyberPowerPC GLC2460 with Intel Core i7 [8th Generation with PAA, Linux 4.15 64bit running on a HPE ProLiant BL460c Gen9 with Intel Xeon E5-26XX v3 with PAA, Linux 4.15 64bit running on a HPE Proliant BL460c Gen9 with Intel Xeon E5-26XX v4 series with PAA, Linux 4.x on ESXi 5 64bit running on a HPE ProLiant BL460c Gen9 with Intel Xeon E5-26XX v4 series with PAA, Linux 4.x on Hyper-V on Windows Server 2012 R2 64bit running on a HPE ProLiant BL460c Gen9 with Intel Xeon E5-26XX v4 series with PAA, Linux 4.x on XenServer 7 64bit running on a Dell PowerEdge R320 with Intel Xeon E5-24XX v2 series with PAA, Linux 4.x on XenServer 7 64bit running on a HPE ProLiant BL460c Gen9 with Intel Xeon E5-26XX v4 series with PAA, Mac OS X 10.12 64bit running on an Apple Macbook Pro (A1398) with PAA, Mac OS X 10.13 64bit running on an Apple Mac Mini with Intel Corei7 [4th Generation] with PAA, NoTouch Desktop running on an N-computing RX-HDX for Citrix with ARM v8-A with PAA, ViewSonic Thin OS running on a ViewSonic VS16585 with PAA, Windows 10 32bit running on a Lenovo 20CD00B2US with PAA, Windows 10 64bit running on a CyberPowerPC GLC2460 with Intel Core i7 [8th Generation] with PAA, Windows 10 64bit running on a Lenovo 20EV002JUS with PAA, Windows 8.1 64bit running on a CyberPowerPC GLC2460 with Intel Corei7 [8th Generation] with PAA, Windows Server 2016 on HyperV on Windows Server 2016 64bit running on a HPE ProLiant BL460c Gen9 with Intel Xeon E5-26XX v3 series with PAA, Windows Server 2016 on HyperV on Windows Server 2016 64bit running on HPE Proliant BL460c Gen9 with Intel Xeon E5-26XX v4 series with PAA (single-user mode) Android 4.4 running on a Google Nexus 5 (LG D820) with ARM v7-A with PAA, Android 5 running on a Google Nexus 6 (Motorola Nexus 6 XT11003) with ARM v7-A with PAA, Android 6 running on a Google Nexus 6 (Motorola Nexus 6 XT11003) with ARM v7-A with PAA, Android 6 running on a Samsung Galaxy S6 (SM-G920T) with ARM v8-A with PAA, Android 7 running on a Google Nexus 5X (LG H790) with ARM v8-A with PAA, Android 7 running on a Google Nexus 6 (Motorola Nexus 6 XT11003) with ARM v7-A with PAA, Android 8 64bit running on a Google Pixel 2 with ARM v8-A with PAA, Android 9 running on a Google Pixel 2 with ARM v8-A with PAA, FreeBSD 8.4 32bit running on a Citrix NetScaler MPX-14000-FIPS with Intel Xeon E5-26xx v2 series with PAA, FreeBSD 8.4 64bit running on a Citrix NetScaler MPX-14000-FIPS with Intel Xeon E5-26xx v2 series with PAA, iOS 10 64bit running on an Apple 12.9-inch iPad Pro (A1584) with ARM v8-A with PAA, iOS 11 running on an iPhone X with ARM v8-A with PAA, Linux 3.10 64bit running on a CyberPowerPC GLC2460 with Intel Core i7 [8th Generation] with PAA, Linux 3.13 64bit running on a Lenovo 20EV002JUS Intel Core i7 [6th Generation] with PAA, Linux 3.16 on ESXi 5 64bit running on a HP ProLiant DL2000 with Intel Xeon 56xx series with PAA, Linux 3.16 on Hyper-V on Windows Server 2012 R2 64bit running on a HP ProLiant DL2000 with Intel Xeon 56xx series with PAA, Linux 3.16 on XenServer 6 64bit running on a Dell PowerEdge C6100 with Intel Xeon 56xx series with PAA, Linux 4.15 64bit running on a CyberPowerPC GLC2460 with Intel Core i7 [8th Generation] with PAA, Linux 4.15 64bit running on a HPE ProLiant BL460c Gen9 with Intel Xeon E5-26XX v3 with PAA, Linux 4.15 64bit running on a HPE Proliant BL460c Gen9 with Intel Xeon E5-26XX v4 series with PAA, Linux 4.x on ESXi 5 64bit running on a HPE ProLiant BL460c Gen9 with Intel Xeon E5-26XX v4 series with PAA, Linux 4.x on Hyper-V on Windows Server 2012 R2 64bit running on a HPE ProLiant BL460c Gen9 with Intel Xeon E5-26XX v4 series with PAA, Linux 4.x on XenServer 7 64bit running on a Dell PowerEdge R320 with Intel Xeon E5-24XX v2 series with PAA, Linux 4.x on XenServer 7 64bit running on a HPE ProLiant BL460c Gen9 with Intel Xeon E5-26XX v4 series with PAA, Mac OS X 10.12 64bit running on an Apple Macbook Pro (A1398) with Intel Core i7 [4th Generation] with PAA, Mac OS X 10.13 64bit running on an Apple Mac Mini with Intel Corei7 [4th Generation] with PAA, NoTouch Desktop running on an N-computing RX-HDX for Citrix with ARM v8-A with PAA, ViewSonic Thin OS running on a ViewSonic VS16585 with ARM v8-A with PAA, Windows 10 32bit running on a Lenovo 20CD00B2US with Intel Core i7 [4th Generation] with PAA, Windows 10 64bit running on a CyberPowerPC GLC2460 with Intel Core i7 [8th Generation] with PAA, Windows 10 64bit running on a Lenovo 20EV002JUS with Intel Core i7 [6th Generation] with PAA, Windows 8.1 64bit running on a CyberPowerPC GLC2460 with Intel Corei7 [8th Generation] with PAA, Windows Server 2016 on HyperV on Windows Server 2016 64bit running on a HPE ProLiant BL460c Gen9 with Intel Xeon E5-26XX v3 series with PAA, Windows Server 2016 on HyperV on Windows Server 2016 64bit running on HPE Proliant BL460c Gen9 with Intel Xeon E5-26XX v4 series with PAA (single-user mode)
web_data/validation_history
  • date: 10.08.2017
  • lab: UL VERIFICATION SERVICES INC
  • validation_type: Initial
  • date: 05.10.2023
  • lab: UL VERIFICATION SERVICES INC
  • validation_type: Initial