Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Juniper OpenSSL Cryptographic Module
Juniper OpenSSL Cryptographic Module
cert_id 4509 4131
dgst 55c5de31ec754ba4 aafee1a675603cc4
heuristics/algorithms ECDSA#A650, DRBG#A650, HMAC#A650, KTS#A650, CVL#A650, AES#A2017, AES#A650, KTS#A2017, RSA#A650, SHS#A2017, SHS#A650 ECDSA#A650, DRBG#A650, HMAC#A650, KTS#A650, CVL#A650, AES#A2017, AES#A650, AES#A653, RSA#A650, DSA#A650, Triple-DES#A650, SHS#A2017, SHS#A650
heuristics/module_processed_references/directly_referenced_by {} 4214
heuristics/module_processed_references/indirectly_referenced_by {} 4214
heuristics/policy_processed_references/directly_referenced_by {} 4214
heuristics/policy_processed_references/indirectly_referenced_by {} 4214
pdf_data/keywords/fips_certlike
  • Certlike:
    • AES-128: 1
    • AES-192: 1
    • AES-256: 2
    • DSA5: 1
    • HMAC 14: 2
    • HMAC SHA-1: 2
    • HMAC- SHA-512: 1
    • HMAC-SHA-1: 2
    • HMAC-SHA-224: 2
    • HMAC-SHA-256: 4
    • HMAC-SHA-384: 2
    • PKCS#1: 3
    • RSA PKCS#1: 1
    • SHA 256: 2
    • SHA- 384: 1
    • SHA-1: 17
    • SHA-2: 2
    • SHA-224: 11
    • SHA-256: 19
    • SHA-384: 13
    • SHA-512: 13
    • SHA-512 1024: 2
    • SHA-512 112: 1
    • SHA-512 2048: 1
  • Certlike:
    • AES GCM 128: 1
    • AES-128: 1
    • AES-192: 1
    • AES-256: 2
    • HMAC 128: 2
    • HMAC 192: 2
    • HMAC SHA-1: 2
    • HMAC- SHA-512: 1
    • HMAC-SHA-1: 2
    • HMAC-SHA-224: 2
    • HMAC-SHA-256: 4
    • HMAC-SHA-384: 2
    • PKCS#1: 3
    • RSA PKCS#1: 1
    • SHA 256: 2
    • SHA- 384: 1
    • SHA-1: 20
    • SHA-2: 2
    • SHA-224: 16
    • SHA-256: 26
    • SHA-384: 13
    • SHA-512: 12
    • SHA-512 1024: 2
    • SHA-512 112: 1
    • SHA-512 2048: 2
pdf_data/keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 48
      • AES-128: 1
      • AES-192: 1
      • AES-256: 2
    • CAST:
      • CAST: 1
    • RC:
      • RC2: 1
      • RC4: 1
      • RC5: 1
  • DES:
    • 3DES:
      • TDEA: 1
      • Triple-DES: 15
    • DES:
      • DES: 3
  • constructions:
    • MAC:
      • CMAC: 8
      • HMAC: 21
      • HMAC-SHA-224: 1
      • HMAC-SHA-256: 2
      • HMAC-SHA-384: 1
  • miscellaneous:
    • Blowfish:
      • Blowfish: 1
    • Camellia:
      • Camellia: 1
    • IDEA:
      • IDEA: 1
    • SEED:
      • SEED: 1
  • AES_competition:
    • AES:
      • AES: 53
      • AES-128: 1
      • AES-192: 1
      • AES-256: 2
    • CAST:
      • CAST: 1
    • RC:
      • RC2: 1
      • RC4: 1
      • RC5: 1
  • DES:
    • 3DES:
      • TDEA: 1
      • TDES: 1
      • Triple-DES: 29
    • DES:
      • DES: 4
  • constructions:
    • MAC:
      • CMAC: 10
      • HMAC: 25
      • HMAC-SHA-224: 1
      • HMAC-SHA-256: 2
      • HMAC-SHA-384: 1
  • miscellaneous:
    • Blowfish:
      • Blowfish: 1
    • Camellia:
      • Camellia: 1
    • IDEA:
      • IDEA: 1
    • SEED:
      • SEED: 1
pdf_data/keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 3
    • ECDSA:
      • ECDSA: 30
  • FF:
    • DH:
      • Diffie-Hellman: 11
    • DSA:
      • DSA: 13
  • ECC:
    • ECC:
      • ECC: 7
    • ECDSA:
      • ECDSA: 29
  • FF:
    • DH:
      • DH: 1
      • Diffie-Hellman: 41
    • DSA:
      • DSA: 32
pdf_data/keywords/hash_function
  • MD:
    • MD4:
      • MD4: 1
    • MD5:
      • MD5: 2
  • SHA:
    • SHA1:
      • SHA-1: 17
    • SHA2:
      • SHA-2: 2
      • SHA-224: 11
      • SHA-256: 19
      • SHA-384: 13
      • SHA-512: 17
  • Whirpool:
    • Whirpool: 1
  • MD:
    • MD4:
      • MD4: 1
    • MD5:
      • MD5: 6
  • SHA:
    • SHA1:
      • SHA-1: 20
    • SHA2:
      • SHA-2: 2
      • SHA-224: 16
      • SHA-256: 26
      • SHA-384: 13
      • SHA-512: 17
  • Whirpool:
    • Whirpool: 1
pdf_data/keywords/crypto_scheme
  • KA:
    • Key Agreement: 5
    • Key agreement: 2
  • KEX:
    • Key Exchange: 1
  • MAC:
    • MAC: 5
  • KA:
    • Key Agreement: 12
    • Key agreement: 1
  • KEX:
    • Key Exchange: 2
  • MAC:
    • MAC: 8
pdf_data/keywords/crypto_protocol
  • SSH:
    • SSH: 3
  • TLS:
    • DTLS:
      • DTLS: 2
    • TLS:
      • TLS: 28
      • TLS v1.0: 2
  • IKE:
    • IKE: 1
  • SSH:
    • SSH: 6
  • TLS:
    • DTLS:
      • DTLS: 2
    • SSL:
      • SSL v3.0: 1
      • SSLv2.0: 1
    • TLS:
      • TLS: 66
      • TLS v1.0: 2
      • TLSv1.2: 1
pdf_data/keywords/randomness
  • PRNG:
    • DRBG: 26
    • PRNG: 2
  • RNG:
    • RNG: 1
  • PRNG:
    • DRBG: 29
    • PRNG: 2
  • RNG:
    • RNG: 1
pdf_data/keywords/cipher_mode
  • CBC:
    • CBC: 5
  • CCM:
    • CCM: 5
  • CFB:
    • CFB: 1
  • CTR:
    • CTR: 2
  • ECB:
    • ECB: 3
  • GCM:
    • GCM: 7
  • OFB:
    • OFB: 2
  • XTS:
    • XTS: 7
  • CBC:
    • CBC: 9
  • CCM:
    • CCM: 5
  • CFB:
    • CFB: 1
  • CTR:
    • CTR: 2
  • ECB:
    • ECB: 5
  • GCM:
    • GCM: 10
  • OFB:
    • OFB: 3
  • XTS:
    • XTS: 7
pdf_data/keywords/ecc_curve
  • NIST:
    • P-192: 5
    • P-224: 7
    • P-256: 10
    • P-384: 8
    • P-521: 8
    • curve P-192: 1
    • curve P-224: 1
  • NIST:
    • P-192: 7
    • P-224: 13
    • P-256: 18
    • P-384: 14
    • P-521: 14
    • curve P-192: 1
    • curve P-224: 1
pdf_data/keywords/tls_cipher_suite
  • TLS:
    • TLS_DHE_DSS_WITH_3DES_EDE_CBC_SHA: 1
    • TLS_DHE_DSS_WITH_AES_128_CBC_SHA: 1
    • TLS_DHE_DSS_WITH_AES_128_CBC_SHA256: 1
    • TLS_DHE_DSS_WITH_AES_128_GCM_SHA256: 1
    • TLS_DHE_DSS_WITH_AES_256_CBC_SHA: 1
    • TLS_DHE_DSS_WITH_AES_256_CBC_SHA256: 1
    • TLS_DHE_DSS_WITH_AES_256_GCM_SHA384: 1
    • TLS_DHE_RSA_WITH_3DES_EDE_CBC_SHA: 1
    • TLS_DHE_RSA_WITH_AES_128_CBC_SHA: 1
    • TLS_DHE_RSA_WITH_AES_128_CBC_SHA256: 1
    • TLS_DHE_RSA_WITH_AES_128_CCM: 1
    • TLS_DHE_RSA_WITH_AES_128_CCM_8: 1
    • TLS_DHE_RSA_WITH_AES_128_GCM_SHA256: 1
    • TLS_DHE_RSA_WITH_AES_256_CBC_SHA: 1
    • TLS_DHE_RSA_WITH_AES_256_CBC_SHA256: 1
    • TLS_DHE_RSA_WITH_AES_256_CCM: 1
    • TLS_DHE_RSA_WITH_AES_256_CCM_8: 1
    • TLS_DHE_RSA_WITH_AES_256_GCM_SHA384: 1
    • TLS_DH_DSS_WITH_AES_128_CBC_SHA: 1
    • TLS_DH_DSS_WITH_AES_128_CBC_SHA256: 1
    • TLS_DH_DSS_WITH_AES_128_GCM_SHA256: 1
    • TLS_DH_DSS_WITH_AES_256_CBC_SHA: 1
    • TLS_DH_DSS_WITH_AES_256_CBC_SHA256: 1
    • TLS_DH_DSS_WITH_AES_256_GCM_SHA384: 1
    • TLS_DH_RSA_WITH_AES_128_CBC_SHA: 1
    • TLS_DH_RSA_WITH_AES_128_CBC_SHA256: 1
    • TLS_DH_RSA_WITH_AES_128_GCM_SHA256: 1
    • TLS_DH_RSA_WITH_AES_256_CBC_SHA: 1
    • TLS_DH_RSA_WITH_AES_256_CBC_SHA256: 1
    • TLS_DH_RSA_WITH_AES_256_GCM_SHA384: 1
    • TLS_ECDHE_ECDSA_WITH_3DES_EDE_CBC_SHA: 1
    • TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA: 1
    • TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256: 1
    • TLS_ECDHE_ECDSA_WITH_AES_128_CCM: 1
    • TLS_ECDHE_ECDSA_WITH_AES_128_CCM_8: 1
    • TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256: 1
    • TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA: 1
    • TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384: 1
    • TLS_ECDHE_ECDSA_WITH_AES_256_CCM: 1
    • TLS_ECDHE_ECDSA_WITH_AES_256_CCM_8: 1
    • TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384: 1
    • TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA: 1
    • TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA: 1
    • TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256: 1
    • TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256: 1
    • TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA: 1
    • TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384: 1
    • TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384: 1
    • TLS_PSK_WITH_3DES_EDE_CBC_SHA: 1
    • TLS_PSK_WITH_AES_128_CBC_SHA: 1
    • TLS_PSK_WITH_AES_256_CBC_SHA: 1
    • TLS_RSA_WITH_3DES_EDE_CBC_SHA: 1
    • TLS_RSA_WITH_AES_128_CBC_SHA: 1
    • TLS_RSA_WITH_AES_128_CBC_SHA256: 1
    • TLS_RSA_WITH_AES_128_CCM: 1
    • TLS_RSA_WITH_AES_128_CCM_8: 1
    • TLS_RSA_WITH_AES_128_GCM_SHA256: 1
    • TLS_RSA_WITH_AES_256_CBC_SHA: 1
    • TLS_RSA_WITH_AES_256_CBC_SHA256: 1
    • TLS_RSA_WITH_AES_256_CCM: 1
    • TLS_RSA_WITH_AES_256_CCM_8: 1
    • TLS_RSA_WITH_AES_256_GCM_SHA384: 1
pdf_data/keywords/crypto_library
  • OpenSSL:
    • OpenSSL: 36
  • OpenSSL:
    • OpenSSL: 43
pdf_data/keywords/standard_id
  • FIPS:
    • FIPS 140-2: 10
    • FIPS 186-4: 1
    • FIPS PUB 140-2: 2
    • FIPS140-2: 1
    • FIPS180-4: 2
    • FIPS186-4: 11
    • FIPS197: 2
    • FIPS198-1: 2
  • NIST:
    • SP 800-57: 1
  • PKCS:
    • PKCS#1: 2
  • RFC:
    • RFC2246: 1
    • RFC3268: 1
    • RFC4279: 1
    • RFC4346: 1
    • RFC4492: 1
    • RFC5116: 1
    • RFC5246: 1
    • RFC5288: 1
    • RFC5487: 1
    • RFC6655: 1
    • RFC7251: 1
  • FIPS:
    • FIPS 140-2: 10
    • FIPS 186-4: 2
    • FIPS PUB 140-2: 2
    • FIPS140-2: 1
    • FIPS180-4: 2
    • FIPS186-4: 17
    • FIPS197: 2
    • FIPS198-1: 2
  • NIST:
    • SP 800-57: 1
  • PKCS:
    • PKCS#1: 2
  • RFC:
    • RFC2246: 7
    • RFC3268: 13
    • RFC4253: 1
    • RFC4279: 10
    • RFC4346: 3
    • RFC4492: 10
    • RFC5116: 5
    • RFC5246: 14
    • RFC5288: 14
    • RFC5289: 8
    • RFC5487: 13
    • RFC5489: 6
    • RFC6655: 13
    • RFC7251: 5
    • RFC7296: 1
pdf_data/policy_metadata
state/policy_pdf_hash Different Different
state/policy_txt_hash Different Different
web_data/certificate_pdf_url https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/May 2023_010623_0642.pdf https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/January 2022_010222_0702_signed.pdf
web_data/date_sunset 21.09.2026
web_data/historical_reason None SP 800-56Arev3 transition - replaced by certificate #4509
web_data/status active historical
web_data/validation_history
  • date: 05.05.2023
  • lab: ATSEC INFORMATION SECURITY CORP
  • validation_type: Initial
  • date: 13.01.2022
  • lab: ATSEC INFORMATION SECURITY CORP
  • validation_type: Initial