Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Citrix ADC VPX
Citrix ADC VPX
cert_id 3732 4098
dgst 1db2269b74d1467a cae3f2d4f75f1834
heuristics/algorithms HMAC#C843, RSA#C843, AES#C844, AES#C842, SHS#C843, ECDSA#C843, DRBG#C845, DRBG#C842, CVL#C853, CVL#C842, ECDSA#C842, CVL#C843, SHS#C842, AES#C843, RSA#C842, Triple-DES#C842, CVL#C854, HMAC#C842, DRBG#C843, CVL#C855, CVL#C856, AES#C845 ECDSA#C1918, CVL#C1919, CVL#C1918, AES#C1917, SHS#C1918, CVL#C853, DRBG#C1918, ECDSA#C1917, RSA#C1917, RSA#C1918, RSA#A606, HMAC#C1917, DRBG#C1917, AES#C1918, CVL#C854, SHS#C1917, HMAC#C1918, CVL#C855, Triple-DES#C1918, CVL#C1917
heuristics/policy_processed_references/directly_referencing {} 4556
heuristics/policy_processed_references/indirectly_referencing {} 3637, 4556
heuristics/policy_prunned_references {} 4556
pdf_data/keywords/fips_cert_id
  • Cert:
    • #4556: 1
    • #853: 1
pdf_data/keywords/fips_certlike
  • Certlike:
    • AES GCM IV 96: 1
    • AES GCM IV63: 1
    • AES encrypt KAT75: 1
    • AES25: 1
    • CVL31: 1
    • DRBG33: 1
    • Diffie-Hellman 33: 1
    • HMAC SHA-1: 3
    • HMAC SHA-256: 2
    • HMAC38: 2
    • RSA 2048: 1
    • RSA36: 1
    • SHA- 256: 2
    • SHA- 512: 2
    • SHA- 512 160: 1
    • SHA-1: 10
    • SHA-224: 2
    • SHA-256: 8
    • SHA-384: 4
    • SHA-512: 5
    • SHA-512 160: 1
    • SHS40: 1
  • Certlike:
    • AES CBC encrypt KAT95: 1
    • AES GCM IV82: 1
    • AES25: 1
    • CVL31: 1
    • DRBG 2: 1
    • DRBG34: 1
    • Diffie-Hellman 34: 1
    • Diffie-Hellman 45: 1
    • Diffie-Hellman 54: 1
    • HMAC SHA-1: 3
    • HMAC SHA-256: 3
    • HMAC37: 2
    • RSA 2048: 1
    • RSA55: 1
    • SHA- 256: 2
    • SHA- 512: 2
    • SHA- 512 160: 1
    • SHA-1: 10
    • SHA-224: 2
    • SHA-256: 11
    • SHA-384: 4
    • SHA-512: 5
    • SHA-512 160: 1
    • SHS59: 1
pdf_data/keywords/vendor
  • Microsoft:
    • Microsoft: 3
  • Microsoft:
    • Microsoft: 4
pdf_data/keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 44
  • DES:
    • 3DES:
      • TDES: 1
      • Triple-DES: 5
    • DES:
      • DES: 2
  • constructions:
    • MAC:
      • HMAC: 21
  • AES_competition:
    • AES:
      • AES: 49
  • DES:
    • 3DES:
      • TDES: 1
      • Triple-DES: 6
    • DES:
      • DES: 2
  • constructions:
    • MAC:
      • HMAC: 22
pdf_data/keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 4
    • ECDH:
      • ECDH: 9
    • ECDSA:
      • ECDSA: 13
  • FF:
    • DH:
      • DH: 16
      • Diffie-Hellman: 4
  • RSA:
    • RSA 2048: 1
  • ECC:
    • ECC:
      • ECC: 6
    • ECDH:
      • ECDH: 13
    • ECDSA:
      • ECDSA: 13
  • FF:
    • DH:
      • DH: 26
      • Diffie-Hellman: 7
  • RSA:
    • RSA 2048: 1
pdf_data/keywords/hash_function
  • MD:
    • MD5:
      • MD5: 2
  • PBKDF:
    • PBKDF2: 9
  • SHA:
    • SHA1:
      • SHA-1: 10
    • SHA2:
      • SHA-224: 2
      • SHA-256: 8
      • SHA-384: 4
      • SHA-512: 6
  • MD:
    • MD5:
      • MD5: 2
  • PBKDF:
    • PBKDF: 12
  • SHA:
    • SHA1:
      • SHA-1: 10
    • SHA2:
      • SHA-224: 2
      • SHA-256: 11
      • SHA-384: 4
      • SHA-512: 6
pdf_data/keywords/crypto_scheme
  • KEX:
    • Key Exchange: 2
  • KA:
    • Key Agreement: 1
    • Key agreement: 2
  • KEX:
    • Key Exchange: 2
pdf_data/keywords/crypto_protocol
  • IKE:
    • IKE: 10
    • IKEv1: 1
  • IPsec:
    • IPsec: 8
  • SSH:
    • SSH: 77
  • TLS:
    • SSL:
      • SSL: 7
    • TLS:
      • TLS: 111
      • TLS 1.2: 1
      • TLS v1.2: 1
  • IKE:
    • IKE: 10
    • IKEv1: 1
  • IPsec:
    • IPsec: 8
  • SSH:
    • SSH: 81
  • TLS:
    • SSL:
      • SSL: 7
    • TLS:
      • TLS: 116
      • TLS 1.2: 1
      • TLS v1.2: 1
pdf_data/keywords/randomness
  • PRNG:
    • DRBG: 119
  • PRNG:
    • DRBG: 122
pdf_data/keywords/cipher_mode
  • CBC:
    • CBC: 4
  • CTR:
    • CTR: 53
  • GCM:
    • GCM: 27
  • CBC:
    • CBC: 11
  • CTR:
    • CTR: 54
  • GCM:
    • GCM: 27
pdf_data/keywords/ecc_curve
  • NIST:
    • P-224: 10
    • P-256: 14
    • P-384: 10
    • P-521: 6
  • NIST:
    • P-224: 14
    • P-256: 18
    • P-384: 14
    • P-521: 8
pdf_data/keywords/crypto_library
  • OpenSSL:
    • OpenSSL: 4
  • OpenSSL:
    • OpenSSL: 3
pdf_data/keywords/standard_id
  • FIPS:
    • FIPS 140-2: 11
    • FIPS PUB 140-2: 1
    • FIPS PUB 180-4: 2
    • FIPS PUB 186-2: 1
    • FIPS PUB 186-4: 4
    • FIPS PUB 197: 2
    • FIPS PUB 198-1: 2
  • NIST:
    • NIST SP 800-132: 2
    • NIST SP 800-133: 3
    • NIST SP 800-38D: 3
    • NIST SP 800-52: 1
    • NIST SP 800-67: 1
    • SP 800-90A: 5
  • RFC:
    • RFC 5246: 1
    • RFC 5288: 1
  • FIPS:
    • FIPS 140-2: 14
    • FIPS PUB 140-2: 1
    • FIPS PUB 180-4: 2
    • FIPS PUB 186-4: 5
    • FIPS PUB 197: 2
    • FIPS PUB 198-1: 2
  • NIST:
    • NIST SP 800-132: 2
    • NIST SP 800-133: 3
    • NIST SP 800-38D: 3
    • NIST SP 800-52: 1
    • NIST SP 800-67: 1
    • NIST SP 800-90A: 3
  • RFC:
    • RFC 5246: 1
    • RFC94: 1
pdf_data/policy_metadata
state/policy_pdf_hash Different Different
state/policy_txt_hash Different Different
web_data/caveat When installed, initialized and configured as specified in Section [3.1.3] of the Security Policy. The module generates cryptographic keys whose strengths are modified by available entropy When operated in FIPS mode. The module generates cryptographic keys whose strengths are modified by available entropy
web_data/certificate_pdf_url https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/October 2020_021120_0702_signed.pdf https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/December 2021_020122_0905_signed.pdf
web_data/date_sunset 21.09.2026
web_data/historical_reason SP 800-56Arev3 transition
web_data/status historical active
web_data/sw_versions 12.1.51.152 12.1.55.180
web_data/validation_history
  • date: 22.10.2020
  • lab: Lightship Security, Inc.
  • validation_type: Initial
  • date: 12.12.2021
  • lab: Lightship Security, Inc.
  • validation_type: Initial