Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Cohesity FIPS Object Module
Cohesity FIPS Object Module
cert_id 4656 4922
dgst 15e455ddba0cbf83 1d14f0f98b10889e
heuristics/algorithms HMAC#A2305, DSA#A2305, SHS#A2305, Triple-DES#A2305, DRBG#A2305, AES#A2305, ECDSA#A2305, RSA#A2305 {}
pdf_data/keywords/fips_cert_id
  • Cert:
    • #1: 1
pdf_data/keywords/fips_security_level
  • Level:
    • Level 1: 2
  • Level:
    • Level 1: 3
pdf_data/keywords/fips_certlike
  • Certlike:
    • AES GCM 256: 2
    • HMAC SHA- 224: 1
    • HMAC SHA- 256: 1
    • HMAC SHA-1: 1
    • HMAC SHA-384: 1
    • HMAC SHA-512: 1
    • HMAC-SHA-1: 12
    • HMAC-SHA-224: 2
    • HMAC-SHA-256: 4
    • HMAC-SHA-384: 2
    • HMAC-SHA-512: 4
    • PKCS #1: 2
    • PKCS#1: 4
    • PKCS1: 6
    • RSA 2048: 2
    • SHA- 224: 1
    • SHA- 256: 1
    • SHA- 512: 1
    • SHA-1: 23
    • SHA-1 2: 1
    • SHA-2: 11
    • SHA-224: 2
    • SHA-256: 4
    • SHA-384: 4
    • SHA-512: 4
    • SHS3: 1
  • Certlike:
    • PKCS 1: 4
    • SHA2: 1
    • SHA3: 1
pdf_data/keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 20
  • DES:
    • 3DES:
      • TDEA: 1
      • Triple-DES: 10
    • DES:
      • DES: 4
  • constructions:
    • MAC:
      • CMAC: 9
      • HMAC: 17
      • HMAC-SHA-224: 2
      • HMAC-SHA-256: 1
      • HMAC-SHA-384: 2
      • HMAC-SHA-512: 1
  • AES_competition:
    • AES:
      • AES: 10
    • CAST:
      • CAST: 73
  • constructions:
    • MAC:
      • CMAC: 6
      • HMAC: 19
      • KMAC: 7
pdf_data/keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 1
    • ECDSA:
      • ECDSA: 13
  • FF:
    • DH:
      • DH: 1
      • Diffie-Hellman: 1
    • DSA:
      • DSA: 13
  • RSA:
    • RSA 2048: 2
  • ECC:
    • ECC:
      • ECC: 8
    • ECDSA:
      • ECDSA: 23
    • EdDSA:
      • EdDSA: 4
  • FF:
    • DH:
      • DHE: 1
    • DSA:
      • DSA: 23
pdf_data/keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 24
    • SHA2:
      • SHA-2: 11
      • SHA-224: 2
      • SHA-256: 4
      • SHA-384: 4
      • SHA-512: 4
  • PBKDF:
    • PBKDF: 10
  • SHA:
    • SHA2:
      • SHA2: 1
    • SHA3:
      • SHA3: 1
  • SHAKE:
    • SHAKE128: 1
    • SHAKE256: 1
pdf_data/keywords/crypto_scheme
  • MAC:
    • MAC: 1
  • AEAD:
    • AEAD: 1
  • KA:
    • Key Agreement: 1
    • Key agreement: 17
  • MAC:
    • MAC: 16
pdf_data/keywords/crypto_protocol
  • TLS:
    • SSL:
      • SSL: 1
    • TLS:
      • TLS: 3
  • SSH:
    • SSH: 4
  • TLS:
    • TLS:
      • TLS: 3
      • TLS 1.2: 1
      • TLS 1.3: 1
      • TLS v1.2: 4
      • TLS v1.3: 5
pdf_data/keywords/randomness
  • DUAL_EC:
    • DUAL_EC_DRBG: 1
  • PRNG:
    • DRBG: 15
    • PRNG: 1
  • RNG:
    • RNG: 3
  • PRNG:
    • DRBG: 37
  • RNG:
    • RBG: 3
pdf_data/keywords/cipher_mode
  • CBC:
    • CBC: 1
  • CCM:
    • CCM: 4
  • CTR:
    • CTR: 2
  • ECB:
    • ECB: 5
  • GCM:
    • GCM: 7
  • OFB:
    • OFB: 1
  • XTS:
    • XTS: 1
  • CCM:
    • CCM: 1
  • CTR:
    • CTR: 3
  • GCM:
    • GCM: 3
pdf_data/keywords/ecc_curve
  • NIST:
    • B-163: 3
    • B-233: 5
    • B-283: 7
    • B-409: 7
    • B-571: 7
    • K-163: 3
    • K-233: 6
    • K-283: 7
    • K-409: 7
    • K-571: 7
    • P-192: 10
    • P-224: 12
    • P-256: 14
    • P-384: 14
    • P-521: 14
pdf_data/keywords/crypto_library
  • OpenSSL:
    • OpenSSL: 10
pdf_data/keywords/side_channel_analysis
  • SCA:
    • timing attacks: 2
pdf_data/keywords/tee_name
  • AMD:
    • PSP: 12
  • IBM:
    • SSC: 1
pdf_data/keywords/standard_id
  • FIPS:
    • FIPS 140: 6
    • FIPS 140-2: 21
    • FIPS 180-4: 2
    • FIPS 186-2: 6
    • FIPS 186-4: 7
    • FIPS 197: 2
    • FIPS 198-1: 2
    • FIPS PUB 140-2: 1
  • NIST:
    • NIST SP 800-131A: 2
    • SP 800-133: 1
    • SP 800-38: 1
    • SP 800-38B: 1
    • SP 800-38C: 1
    • SP 800-38D: 1
    • SP 800-67: 2
    • SP 800-90A: 3
  • PKCS:
    • PKCS #1: 1
    • PKCS#1: 2
    • PKCS1: 3
  • RFC:
    • RFC 5246: 1
    • RFC5288: 2
    • RFC5289: 2
  • FIPS:
    • FIPS 202: 6
  • ISO:
    • ISO/IEC 19790:2012: 3
  • PKCS:
    • PKCS 1: 2
  • RFC:
    • RFC 5288: 1
    • RFC 5647: 1
    • RFC 8446: 1
    • RFC7627: 4
    • RFC8446: 1
pdf_data/keywords/javacard_api_const
  • curves:
    • ED25519: 4
    • ED448: 4
pdf_data/policy_metadata
  • /Author: Rachel Shelby
  • /CreationDate: D:20241021144947-07'00'
  • /Creator: PScript5.dll Version 5.2.2
  • /ModDate: D:20241021144947-07'00'
  • /Producer: Acrobat Distiller 24.0 (Windows)
  • /Title: Microsoft Word - Cohesity FIPS 140-3 Security Policy_Output_TRD1_2024-10-21.docx
  • pdf_file_size_bytes: 687758
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 40
state/policy_pdf_hash Different Different
state/policy_txt_hash Different Different
web_data/caveat When operated in FIPS mode. No assurance of the minimum strength of generated keys No assurance of the minimum strength of generated SSPs (e.g., keys).
web_data/certificate_pdf_url https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/November 2023_111223_0648_signed.pdf
web_data/date_sunset 15.10.2025 10.07.2029
web_data/description The Cohesity FIPS Object Module provides FIPS 140-2 validated cryptographic functionality for Cohesity products and services. The Cohesity FIPS Object Module provides FIPS 140-3 validated cryptographic functionality for Cohesity products and services.
web_data/exceptions Physical Security: N/A, Mitigation of Other Attacks: N/A, , , Physical security: N/A, Non-invasive security: N/A, Life-cycle assurance: Level 3, Documentation requirements: N/A, Cryptographic module security policy: N/A
web_data/standard FIPS 140-2 FIPS 140-3
web_data/sw_versions 2.2.1
web_data/tested_conf CentOS 7.9 running on a HPE ProLiant DL360 G7 with an Intel Xeon X5670 with PAA, CentOS 7.9 running on a HPE ProLiant DL360 G7 with an Intel Xeon X5670 without PAA, Free BSD 13.1 running on an XRI-400 with an Intel Atom E3940 with PAA, Free BSD 13.1 running on an XRI-400 with an Intel Atom E3940 without PAA, macOS 12 (Monterey) running on an Apple Mac Mini 9,1 with an Apple M1, Windows Server 2012 R2 running on a Dell PowerEdge R420 with an Intel Xeon E5-2430 with PAA, Windows Server 2012 R2 running on a Dell PowerEdge R420 with an Intel Xeon E5-2430 without PAA (single-user mode) []
web_data/validation_history
  • date: 27.11.2023
  • lab: LEIDOS CSTL
  • validation_type: Initial
  • date: 18.12.2024
  • lab: DEKRA Certification, Inc.
  • validation_type: Initial
web_data/vendor_url http://www.cohesity.com/