Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Ubuntu 20.04 OpenSSL Cryptographic Module
Ubuntu 20.04 OpenSSL Cryptographic Module
cert_id 4292 3966
dgst bcdc35b056897c27 e41bb15d9efcd5aa
heuristics/algorithms CVL#A1545, Triple-DES#A1519, DRBG#A1529, CVL#A1547, Triple-DES#A1520, CVL#A1532, Triple-DES#A1533, AES#A1531, KTS-RSA#A1544, Triple-DES#A1526, SHS#A1546, AES#A1527, ECDSA#A1524, RSA#A1532, DSA#A1545, AES#A1521, AES#A1535, RSA#A1546, SHS#A1547, ECDSA#A1525, AES#A1549, SHA-3#A1525, ECDSA#A1547, KAS-SSC#A1550, KTS#A1546, HMAC#A1523, AES#A1533, KTS-RSA#A1532, CVL#A1546, AES#A1539, ECDSA#A1523, AES#A1537, PBKDF#A1547, DRBG#A1530, KAS#A1544, DSA#A1546, KAS-SSC#A1547, AES#A1530, CVL#A1519, PBKDF#A1534, RSA#A1547, KAS-SSC#A1544, PBKDF#A1524, KTS#A1544, KTS-RSA#A1545, PBKDF#A1546, AES#A1541, ECDSA#A1544, RSA#A1545, KTS#A1532, HMAC#A1532, AES#A1543, PBKDF#A1523, KTS#A1526, AES#A1522, DSA#A1547, SHA-3#A1523, RSA#A1544, PBKDF#A1545, KAS-SSC#A1546, ECDSA#A1545, SHA-3#A1534, AES#A1538, ECDSA#A1534, AES#A1519, CVL#A1522, DRBG#A1528, SHS#A1532, KTS#A1545, CVL#A1544, PBKDF#A1525, SHA-3#A1524, HMAC#A1546, CVL#A1520, SHS#A1544, DSA#A1544, KTS#A1547, PBKDF#A1544, Triple-DES#A1522, ECDSA#A1532, DRBG#A1527, HMAC#A1525, KTS-RSA#A1546, AES#A1540, HMAC#A1547, KAS#A1546, Triple-DES#A1521, AES#A1542, ECDSA#A1546, AES#A1528, AES#A1529, DSA#A1532, KTS-RSA#A1547, HMAC#A1545, KAS#A1545, HMAC#A1544, AES#A1548, KAS-SSC#A1532, CVL#A1533, HMAC#A1524, AES#A1520, KAS-SSC#A1545, PBKDF#A1532, HMAC#A1534, CVL#A1521, KAS#A1532, SHS#A1545, KAS#A1547, KDA#A1516, KAS#A1550, AES#A1536 CVL#A531, DRBG#A522, ECDSA#A529, DRBG#A523, HMAC#A532, HMAC#A516, CVL#A520, Triple-DES#A518, SHA-3#A517, PBKDF#A517, ECDSA#A517, AES#A528, DSA#A530, AES#A527, CVL#A530, AES#A523, KAS#A531, KTS#A525, PBKDF#A532, AES#A526, DSA#A529, KTS#A531, RSA#A531, SHS#A532, PBKDF#A515, CVL#A529, SHS#A531, DRBG#A524, KAS#A530, KTS#A530, KTS#A517, DSA#A531, CVL#A519, AES#A535, AES#A534, HMAC#A515, Triple-DES#A521, AES#A519, HMAC#A517, SHA-3#A516, SHS#A529, CVL#A521, KAS-SSC#A531, RSA#A530, SHS#A530, AES#A524, ECDSA#A516, AES#A537, KAS-SSC#A529, PBKDF#A531, AES#A533, KTS#A529, Triple-DES#A520, KTS#A516, Triple-DES#A525, KAS-SSC#A539, KAS#A532, SHA-3#A515, ECDSA#A530, RSA#A529, PBKDF#A529, AES#A520, CVL#A518, AES#A521, AES#A522, AES#A536, Triple-DES#A519, KAS#A539, ECDSA#A531, ECDSA#A515, HMAC#A531, PBKDF#A530, AES#A518, KAS-SSC#A532, KAS-SSC#A530, HMAC#A530, CVL#A532, RSA#A532, DSA#A532, AES#A538, KTS#A515, PBKDF#A516, HMAC#A529, KAS#A529, KTS#A532, ECDSA#A532
heuristics/module_processed_references/directly_referenced_by {} 4046
heuristics/module_processed_references/indirectly_referenced_by {} 4046
heuristics/policy_processed_references/directly_referenced_by 4928 4046
heuristics/policy_processed_references/indirectly_referenced_by 4928 4046
pdf_data/keywords/fips_security_level
  • Level:
    • Level 1: 3
    • level 1: 3
  • Level:
    • Level 1: 3
    • level 1: 2
pdf_data/keywords/fips_certlike
  • Certlike:
    • AES-128: 4
    • AES-192: 4
    • AES-256: 5
    • AES-GCM 128: 2
    • HMAC SHA-1: 2
    • HMAC-SHA-1: 2
    • HMAC-SHA-256: 4
    • HMAC-SHA1: 4
    • PKCS#1: 2
    • SHA- 224: 2
    • SHA- 256: 5
    • SHA- 384: 3
    • SHA- 512: 1
    • SHA-/512: 1
    • SHA-1: 24
    • SHA-224: 26
    • SHA-256: 46
    • SHA-3: 8
    • SHA-384: 29
    • SHA-512: 23
    • SHA-512 1024: 4
    • SHA-512 160: 2
    • SHA-512 2048: 4
    • SHA2- 256: 1
    • SHA2- 384: 1
    • SHA2- 512: 1
    • SHA3-224: 18
    • SHA3-256: 17
    • SHA3-384: 20
    • SHA3-512: 13
    • SHA3-512 1024: 2
    • SHA3-512 2048: 2
  • Certlike:
    • AES-128: 2
    • AES-192: 2
    • AES-256: 3
    • HMAC SHA-1: 1
    • HMAC- SHA-1: 1
    • HMAC-SHA-256: 4
    • PKCS#1: 6
    • SHA 3: 2
    • SHA-1: 18
    • SHA-14: 1
    • SHA-224: 12
    • SHA-256: 26
    • SHA-3: 2
    • SHA-384: 13
    • SHA-512: 12
    • SHA-512 1024: 2
    • SHA-512 2048: 2
    • SHA2- 224: 1
    • SHA2- 256: 1
    • SHA2-256: 2
    • SHA2-384: 3
    • SHA2-512: 3
    • SHA3: 1
    • SHA3-224: 9
    • SHA3-256: 8
    • SHA3-384: 10
    • SHA3-512: 6
    • SHA3-512 1024: 1
    • SHA3-512 2048: 1
pdf_data/keywords/eval_facility
  • atsec:
    • atsec: 59
  • atsec:
    • atsec: 55
pdf_data/keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 63
      • AES-128: 4
      • AES-192: 4
      • AES-256: 5
    • CAST:
      • CAST: 2
      • CAST5: 2
    • RC:
      • RC2: 2
      • RC4: 2
  • DES:
    • 3DES:
      • TDEA: 1
      • Triple-DES: 42
    • DES:
      • DES: 6
  • constructions:
    • MAC:
      • CMAC: 10
      • HMAC: 27
      • HMAC-SHA-256: 2
  • djb:
    • ChaCha:
      • ChaCha20: 2
    • Poly:
      • Poly1305: 2
  • miscellaneous:
    • ARIA:
      • ARIA: 2
    • Blowfish:
      • Blowfish: 2
    • Camellia:
      • Camellia: 2
    • SEED:
      • SEED: 2
    • SM4:
      • SM4: 2
  • AES_competition:
    • AES:
      • AES: 61
      • AES-: 1
      • AES-128: 2
      • AES-192: 2
      • AES-256: 3
    • CAST:
      • CAST: 2
      • CAST5: 2
    • RC:
      • RC2: 2
      • RC4: 2
  • DES:
    • 3DES:
      • TDEA: 1
      • TDES: 2
      • Triple-DES: 36
    • DES:
      • DES: 6
  • constructions:
    • MAC:
      • CMAC: 7
      • HMAC: 27
      • HMAC-SHA-256: 2
  • djb:
    • ChaCha:
      • ChaCha20: 2
    • Poly:
      • Poly1305: 2
  • miscellaneous:
    • ARIA:
      • ARIA: 2
    • Blowfish:
      • Blowfish: 2
    • Camellia:
      • Camellia: 2
    • SEED:
      • SEED: 2
    • SM4:
      • SM4: 2
pdf_data/keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 5
    • ECDSA:
      • ECDSA: 29
  • FF:
    • DH:
      • Diffie-Hellman: 37
    • DSA:
      • DSA: 33
  • RSA:
    • RSA-OAEP: 2
  • ECC:
    • ECC:
      • ECC: 4
    • ECDSA:
      • ECDSA: 29
  • FF:
    • DH:
      • DH: 2
      • Diffie-Hellman: 42
    • DSA:
      • DSA: 34
pdf_data/keywords/hash_function
  • BLAKE:
    • Blake2: 2
  • MD:
    • MD4:
      • MD4: 2
    • MD5:
      • MD5: 7
  • PBKDF:
    • PBKDF: 6
    • PBKDF2: 7
  • SHA:
    • SHA1:
      • SHA-1: 24
    • SHA2:
      • SHA-224: 28
      • SHA-256: 46
      • SHA-384: 29
      • SHA-512: 33
    • SHA3:
      • SHA-3: 8
      • SHA3-224: 19
      • SHA3-256: 17
      • SHA3-384: 20
      • SHA3-512: 17
  • SHAKE:
    • SHAKE128: 1
    • SHAKE256: 1
  • BLAKE:
    • Blake2: 2
  • MD:
    • MD4:
      • MD4: 2
    • MD5:
      • MD5: 7
  • PBKDF:
    • PBKDF: 6
    • PBKDF2: 6
  • SHA:
    • SHA1:
      • SHA-1: 18
    • SHA2:
      • SHA-224: 13
      • SHA-256: 26
      • SHA-384: 13
      • SHA-512: 16
    • SHA3:
      • SHA-3: 2
      • SHA3: 1
      • SHA3-224: 9
      • SHA3-256: 8
      • SHA3-384: 10
      • SHA3-512: 8
  • SHAKE:
    • SHAKE128: 1
    • SHAKE256: 1
pdf_data/keywords/crypto_scheme
  • KA:
    • Key Agreement: 7
  • KEX:
    • Key Exchange: 1
  • MAC:
    • MAC: 10
  • KA:
    • Key Agreement: 5
  • KEX:
    • Key Exchange: 1
  • MAC:
    • MAC: 8
pdf_data/keywords/crypto_protocol
  • IKE:
    • IKE: 4
    • IKEv2: 1
  • SSH:
    • SSH: 12
  • TLS:
    • DTLS:
      • DTLS: 2
    • SSL:
      • SSL v3.0: 1
      • SSLv2.0: 1
    • TLS:
      • TLS: 64
      • TLS v1.0: 3
      • TLSv1.0: 1
      • TLSv1.2: 2
      • TLSv1.3: 5
  • IKE:
    • IKE: 4
    • IKEv2: 1
  • SSH:
    • SSH: 8
  • TLS:
    • DTLS:
      • DTLS: 2
    • SSL:
      • SSL v3.0: 1
      • SSLv2.0: 1
    • TLS:
      • TLS: 72
      • TLS v1.0: 2
      • TLS v1.3: 1
      • TLSv1.0: 1
      • TLSv1.2: 2
      • TLSv1.3: 1
pdf_data/keywords/randomness
  • PRNG:
    • DRBG: 30
  • PRNG:
    • DRBG: 29
    • PRNG: 1
  • RNG:
    • RNG: 1
pdf_data/keywords/cipher_mode
  • CBC:
    • CBC: 11
  • CCM:
    • CCM: 5
  • CFB:
    • CFB: 1
  • CTR:
    • CTR: 3
  • ECB:
    • ECB: 9
  • GCM:
    • GCM: 19
  • OFB:
    • OFB: 5
  • XTS:
    • XTS: 6
  • CBC:
    • CBC: 7
  • CCM:
    • CCM: 5
  • CFB:
    • CFB: 1
  • CTR:
    • CTR: 2
  • ECB:
    • ECB: 7
  • GCM:
    • GCM: 10
  • OFB:
    • OFB: 3
  • XTS:
    • XTS: 5
pdf_data/keywords/ecc_curve
  • NIST:
    • B-163: 6
    • B-233: 10
    • B-283: 10
    • B-409: 10
    • B-571: 10
    • K-163: 6
    • K-233: 10
    • K-283: 10
    • K-409: 10
    • K-571: 10
    • P-192: 12
    • P-224: 20
    • P-256: 24
    • P-384: 20
    • P-521: 20
  • NIST:
    • B-163: 4
    • B-233: 5
    • B-283: 5
    • B-409: 5
    • B-571: 5
    • K-163: 4
    • K-233: 3
    • K-283: 5
    • K-409: 5
    • K-571: 5
    • P-192: 8
    • P-224: 10
    • P-256: 14
    • P-384: 10
    • P-521: 10
pdf_data/keywords/crypto_library
  • OpenSSL:
    • OpenSSL: 98
  • OpenSSL:
    • OpenSSL: 83
pdf_data/keywords/tee_name
  • IBM:
    • SSC: 4
  • IBM:
    • SSC: 1
pdf_data/keywords/standard_id
  • FIPS:
    • FIPS 140-2: 70
    • FIPS 186-4: 2
    • FIPS 198-1: 4
    • FIPS PUB 140-2: 2
    • FIPS140-2: 1
    • FIPS180-4: 13
    • FIPS186-4: 13
    • FIPS197: 11
    • FIPS198-1: 3
    • FIPS202: 7
  • PKCS:
    • PKCS#1: 1
  • RFC:
    • RFC 3526: 1
    • RFC 7919: 2
    • RFC2246: 7
    • RFC3268: 13
    • RFC3526: 3
    • RFC4253: 1
    • RFC4279: 10
    • RFC4346: 3
    • RFC4492: 10
    • RFC5116: 5
    • RFC5246: 14
    • RFC5288: 14
    • RFC5289: 8
    • RFC5487: 13
    • RFC5489: 6
    • RFC6655: 13
    • RFC7251: 5
    • RFC7296: 1
    • RFC7919: 1
  • FIPS:
    • FIPS 140-2: 64
    • FIPS 186-4: 2
    • FIPS 198-1: 2
    • FIPS PUB 140-2: 2
    • FIPS140-2: 1
    • FIPS180-4: 7
    • FIPS186-4: 7
    • FIPS197: 2
    • FIPS198-1: 2
    • FIPS202: 4
  • NIST:
    • SP 800-132: 3
    • SP 800-135: 1
    • SP 800-56A: 1
    • SP 800-57: 1
  • PKCS:
    • PKCS#1: 3
  • RFC:
    • RFC 3526: 1
    • RFC 7919: 2
    • RFC2246: 7
    • RFC3268: 13
    • RFC3526: 2
    • RFC4253: 1
    • RFC4279: 10
    • RFC4346: 3
    • RFC4492: 10
    • RFC5116: 5
    • RFC5246: 14
    • RFC5288: 14
    • RFC5289: 8
    • RFC5487: 13
    • RFC5489: 6
    • RFC6655: 13
    • RFC7251: 5
    • RFC7296: 1
pdf_data/policy_metadata
  • /CreationDate: D:20220501012630Z00'00'
  • /Creator: Word
  • /ModDate: D:20220501012630Z00'00'
  • /Producer: macOS Version 10.15.7 (Build 19H15) Quartz PDFContext
  • /Title: Microsoft Word - UbuntuOpenSSL-SecurityPolicy.doc
  • pdf_file_size_bytes: 979379
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 57
  • /CreationDate: D:20210622204027Z00'00'
  • /Creator: Word
  • /ModDate: D:20210622204027Z00'00'
  • /Producer: macOS Version 11.4 (Build 20F71) Quartz PDFContext
  • /Title: Microsoft Word - UbuntuOpenSSL-SecurityPolicy_v1.2.doc
  • pdf_file_size_bytes: 947267
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 53
state/policy_pdf_hash Different Different
state/policy_txt_hash Different Different
web_data/caveat When operated in FIPS mode When operated in FIPS mode. The module generates cryptographic keys whose strengths are modified by available entropy
web_data/certificate_pdf_url https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/September 2022_031022_0652_signed.pdf https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/July 2021_020821_0740_signed.pdf
web_data/date_sunset 21.09.2026 05.07.2026
web_data/sw_versions 3.1 3.0
web_data/tested_conf Supermicro SYS-1019P-WTR with Intel Xeon Gold 6226 CPU without PAA, Ubuntu 20.04 LTS 64-bit running on IBM z15 with z15 with PAI, Ubuntu 20.04 LTS 64-bit running on IBM z15 with z15 without PAI (single-user mode), Ubuntu 20.04 LTS 64-bit running on Supermicro SYS-1019P-WTR with Intel Xeon Gold 6226 CPU with PAA Ubuntu 20.04 LTS 64-bit running on Supermicro SYS-1019P-WTR with Intel Xeon Gold 6226 CPU with PAA, Ubuntu 20.04 LTS 64-bit running on Supermicro SYS-1019P-WTR with Intel Xeon Gold 6226 CPU without PAA (single-user mode), ,
web_data/validation_history
  • date: 06.09.2022
  • lab: ATSEC INFORMATION SECURITY CORP
  • validation_type: Initial
  • date: 06.07.2021
  • lab: ATSEC INFORMATION SECURITY CORP
  • validation_type: Initial