{"_type": "sec_certs.sample.fips.FIPSCertificate", "dgst": "d540bb71097dd07c", "cert_id": 5452, "web_data": {"_type": "sec_certs.sample.fips.FIPSCertificate.WebData", "module_name": "Rocky Linux 9 Kernel Cryptographic API", "validation_history": [{"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry", "date": "2026-07-29", "validation_type": "Initial", "lab": "atsec information security corporation"}], "vendor_url": "https://ciq.com", "vendor": "Ctrl IQ, Inc.", "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/July 2026_040826_0807.pdf", "module_type": "Software", "standard": "FIPS 140-3", "status": "active", "level": 1, "caveat": "When operated in approved mode. No assurance of minimum security of SSPs (e.g., keys, bit strings) that are externally loaded, or of SSPs established with externally loaded SSPs.", "exceptions": ["Physical security: N/A", "Non-invasive security: N/A", "Mitigation of other attacks: N/A"], "embodiment": "MultiChipStand", "description": "The Rocky Linux 9 Kernel Cryptographic API provides a C language API for use by other (kernel space and user space) processes that require cryptographic functionality.", "tested_conf": null, "hw_versions": null, "fw_versions": null, "sw_versions": null, "mentioned_certs": {}, "historical_reason": null, "date_sunset": "2031-07-28", "revoked_reason": null, "revoked_link": null}, "pdf_data": {"_type": "sec_certs.sample.fips.FIPSCertificate.PdfData", "keywords": {"fips_cert_id": {}, "fips_security_level": {"Level": {"Level 1": 2}}, "fips_certlike": {"Certlike": {"HMAC-SHA-1": 6, "HMAC- SHA-1": 2, "SHA-3": 5, "SHA2-256": 16, "SHA2-512": 17, "SHA-1": 19, "SHA2-224": 11, "SHA2-384": 11, "SHA3-224": 4, "SHA3-256": 5, "SHA3-384": 4, "SHA3-512": 4, "SHA2- 256": 3, "SHA-512": 1, "- PKCS 1": 1, "RSA PKCS#1": 8, "PKCS#1": 14, "AES-128": 2, "AES-192": 1, "AES-256": 2, "AES-CBC 128, 192": 2, "AES-CTR 128": 2, "AES-GCM 128": 2, "AES-CMAC 128": 1, "AES- 192": 1, "PKCS 1": 1}}, "vendor": {}, "eval_facility": {"atsec": {"atsec": 53}}, "symmetric_crypto": {"AES_competition": {"AES": {"AES": 25, "AES-128": 2, "AES-192": 1, "AES-256": 2, "AES-": 7}, "CAST": {"CAST": 175}}, "constructions": {"MAC": {"HMAC": 16, "CMAC": 2}}}, "asymmetric_crypto": {"ECC": {"ECDSA": {"ECDSA": 4}}, "FF": {"DH": {"Diffie-Hellman": 4, "DH": 20}}}, "pq_crypto": {}, "hash_function": {"SHA": {"SHA1": {"SHA-1": 19}, "SHA2": {"SHA-512": 1}, "SHA3": {"SHA-3": 5, "SHA3-224": 4, "SHA3-256": 5, "SHA3-384": 4, "SHA3-512": 4}}, "PBKDF": {"PBKDF2": 2}}, "crypto_scheme": {"MAC": {"MAC": 8}, "KA": {"Key Agreement": 1}}, "crypto_protocol": {"IKE": {"IKEv2": 1}, "IPsec": {"IPsec": 7}}, "randomness": {"PRNG": {"DRBG": 27}, "RNG": {"RNG": 2, "RBG": 8}}, "cipher_mode": {"ECB": {"ECB": 1}, "CBC": {"CBC": 2}, "CTR": {"CTR": 1}, "CFB": {"CFB": 1}, "OFB": {"OFB": 1}, "GCM": {"GCM": 8}, "CCM": {"CCM": 2}, "XTS": {"XTS": 7}}, "ecc_curve": {}, "crypto_engine": {}, "tls_cipher_suite": {}, "crypto_library": {}, "vulnerability": {}, "side_channel_analysis": {}, "device_model": {}, "tee_name": {"AMD": {"PSP": 3}, "IBM": {"SSC": 2}}, "os_name": {}, "cplc_data": {}, "ic_data_group": {}, "standard_id": {"FIPS": {"FIPS 140-3": 61, "FIPS PUB 140-3": 2, "FIPS 198-1": 10, "FIPS186-4": 2, "FIPS 186-4": 2, "FIPS186-5": 6, "FIPS 186-5": 2, "FIPS 180-4": 6, "FIPS 202": 5, "FIPS 197": 1}, "NIST": {"SP 800-38A": 7, "SP 800-38C": 2, "SP 800-38B": 2, "SP 800-38D": 4, "SP 800-38E": 3, "SP 800-90A": 3, "SP 800-56A": 2, "SP 800-90B": 1}, "PKCS": {"PKCS 1": 1, "PKCS#1": 11}, "RFC": {"RFC 4106": 3, "RFC 7296": 1}, "ISO": {"ISO/IEC 24759": 2, "ISO/IEC 19790": 2}}, "javacard_version": {}, "javacard_api_const": {}, "javacard_packages": {}, "certification_process": {}}, "policy_metadata": {"pdf_file_size_bytes": 702706, "pdf_is_encrypted": false, "pdf_number_of_pages": 53, "/Producer": "Microsoft\u00ae Word for Microsoft 365", "/Creator": "Microsoft\u00ae Word for Microsoft 365", "/CreationDate": "D:20260727074900-04'00'", "/ModDate": "D:20260727074900-04'00'", "pdf_hyperlinks": {"_type": "Set", "elements": ["https://doi.org/10.6028/NIST.SP.800-38B", "https://doi.org/10.6028/NIST.SP.800-90B", "https://doi.org/10.6028/NIST.SP.800-38D", "https://doi.org/10.6028/NIST.SP.800-38A", "https://doi.org/10.6028/NIST.FIPS.197-upd1", "https://doi.org/10.6028/NIST.SP.800-140Br1", "https://doi.org/10.6028/NIST.FIPS.198-1", "https://doi.org/10.6028/NIST.FIPS.140-3", "https://doi.org/10.6028/NIST.SP.800-133r2", "https://doi.org/10.6028/NIST.FIPS.180-4", "https://doi.org/10.6028/NIST.SP.800-38C", "https://doi.org/10.6028/NIST.SP.800-56Ar3", "https://doi.org/10.6028/NIST.SP.800-38A-Add", "https://doi.org/10.6028/NIST.FIPS.202", "https://doi.org/10.6028/NIST.SP.800-38E", "https://doi.org/10.6028/NIST.FIPS.186-5", "https://nvlpubs.nist.gov/nistpubs/FIPS/NIST.FIPS.186-4.pdf", "https://doi.org/10.17487/RFC4106", "https://doi.org/10.6028/NIST.SP.800-90Ar1", "https://csrc.nist.gov/CSRC/media/Projects/cryptographic-module-validation-program/documents/fips%20140-3/FIPS%20140-3%20IG.pdf", "https://doi.org/10.17487/RFC8017"]}}, "module_algorithms": {"_type": "Set", "elements": ["AES-CTRA7410", "SHA-1A7415", "AES-CBC-CS3A7410", "RSA SigVer (FIPS186-5)A7403", "Safe Primes Key GenerationA7403", "SHA2-224A7415", "SHA2-256A7415", "SHA3-384A7403", "HMAC-SHA-1A7415", "AES-CCMA7410", "AES-OFBA7410", "SHA3-512A7403", "RSA SigVer (FIPS186-4)A7403", "AES-CBCA7410", "AES-GMACA7410", "SHA3-224A7403", "HMAC-SHA3-256A7403", "HMAC DRBGA7415", "SHA2-512A7415", "HMAC-SHA2-384A7415", "HMAC-SHA3-224A7403", "AES-CFB128A7410", "Counter DRBGA7412", "HMAC-SHA3-384A7403", "Hash DRBGA7415", "AES-ECBA7412", "HMAC-SHA2-512A7415", "KAS-FFC-SSC Sp800-56Ar3A7403", "AES-XTS Testing Revision 2.0A7410", "AES-CMACA7410", "AES-GCMA7412", "HMAC-SHA2-224A7415", "HMAC-SHA3-512A7403", "SHA2-384A7415", "HMAC-SHA2-256A7415", "SHA3-256A7403"]}, "policy_algorithms": {"_type": "Set", "elements": ["#A7407", "#A7412", "#A7413", "#A7403", "#A7406", "#A7408", "#A7410", "#A7405", "#A7414", "#A7409", "#A7411", "#A7415"]}, "is_br1_format": true, "br1_deviations": 0, "br1_tables": {"_type": "sec_certs.heuristics.br1.table_parsing.model.br1_tables.BR1Tables", "security_levels": {"section": 1, "subsection": 2, "found": true, "entries": [{"section": "1", "title": "General", "level": "1"}, {"section": "2", "title": "Cryptographic module specification", "level": "1"}, {"section": "3", "title": "Cryptographic module interfaces", "level": "1"}, {"section": "4", "title": "Roles, services, and authentication", "level": "1"}, {"section": "5", "title": "Software/Firmware security", "level": "1"}, {"section": "6", "title": "Operational environment", "level": "1"}, {"section": "7", "title": "Physical security", "level": "N/A"}, {"section": "8", "title": "Non-invasive security", "level": "N/A"}, {"section": "9", "title": "Sensitive security parameter management", "level": "1"}, {"section": "10", "title": "Self-tests", "level": "1"}, {"section": "11", "title": "Life-cycle assurance", "level": "1"}, {"section": "12", "title": "Mitigation of other attacks", "level": "N/A"}, {"section": "", "title": "Overall Level", "level": "1"}]}, "tested_module_id_hw": {"section": 2, "subsection": 2, "found": false, "entries": []}, "tested_module_id_sw_fw_hy": {"section": 2, "subsection": 2, "found": false, "entries": []}, "tested_module_id_hw_hy": {"section": 2, "subsection": 2, "found": false, "entries": []}, "tested_op_env_sw_fw_hy": {"section": 2, "subsection": 2, "found": true, "entries": [{"operatingSystem": "Rocky Linux 9", "hardwarePlatform": "SuperMicro SuperServer 5039MS", "processors": "Intel Kaby Lake Xeon E3-1270 v6", "paa_pai": "Yes", "hypervisorHostOs": "N/A", "version": "kernel: rocky9.20260721; libkcapi: 1.4.0-2.el9"}, {"operatingSystem": "Rocky Linux 9", "hardwarePlatform": "SuperMicro SuperServer 5039MS", "processors": "Intel Kaby Lake Xeon E3-1270 v6", "paa_pai": "No", "hypervisorHostOs": "N/A", "version": "kernel: rocky9.20260721; libkcapi: 1.4.0-2.el9"}]}, "vendor_affirmed_op_env_sw_fw_hy": {"section": 2, "subsection": 2, "found": false, "entries": []}, "modes_of_operation": {"section": 2, "subsection": 4, "found": true, "entries": [{"name": "Approved mode", "description": "Automatically entered whenever an approved service is requested", "type": "Approved", "statusIndicator": "Mapped to approved service indicator in Section 4.3 for all approved algorithms except AES GCM: respective approved service function returns indicator 0; For AES GCM: crypto_aead_get_flags(tfm) has the CRYPTO_TFM_FIPS_COMPLIANCE flag set"}, {"name": "Non- approved mode", "description": "Automatically entered whenever a non-approved service is requested", "type": "Non- Approved", "statusIndicator": "No service indicator required for non-approved services per IG 2.4.C"}]}, "approved_algorithms": {"section": 2, "subsection": 5, "found": true, "entries": [{"algorithm": "AES-CBC", "cavpCertName": "A7403, A7407, A7410", "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256", "reference": "SP 800-38A"}, {"algorithm": "AES-CBC-CS3", "cavpCertName": "A7403, A7407, A7410", "properties": "Direction - decrypt, encrypt Key Length - 128, 192, 256", "reference": "SP 800-38A"}, {"algorithm": "AES-CCM", "cavpCertName": "A7403, A7410", "properties": "Key Length - 128, 192, 256", "reference": "SP 800-38C"}, {"algorithm": "AES-CFB128", "cavpCertName": "A7403, A7410", "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256", "reference": "SP 800-38A"}, {"algorithm": "AES-CMAC", "cavpCertName": "A7403, A7410", "properties": "Direction - Generation Key Length - 128, 192, 256", "reference": "SP 800-38B"}, {"algorithm": "AES-CTR", "cavpCertName": "A7403, A7407, A7410", "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256", "reference": "SP 800-38A"}, {"algorithm": "AES-ECB", "cavpCertName": "A7403, A7405, A7406, A7407, A7408, A7409, A7410, A7411, A7412", "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256", "reference": "SP 800-38A"}, {"algorithm": "AES-GCM", "cavpCertName": "A7403, A7406, A7407, A7409, A7410, A7412", "properties": "Direction - Decrypt, Encrypt IV Generation - External Key Length - 128, 192, 256", "reference": "SP 800-38D"}, {"algorithm": "AES-GCM", "cavpCertName": "A7405, A7408, A7411", "properties": "Direction - Decrypt, Encrypt IV Generation - Internal IV Generation Mode - 8.2.1 Key Length - 128, 192, 256", "reference": "SP 800-38D"}, {"algorithm": "AES-GMAC", "cavpCertName": "A7403, A7410", "properties": "Direction - Decrypt, Encrypt IV Generation - External Key Length - 128, 192, 256", "reference": "SP 800-38D"}, {"algorithm": "AES-OFB", "cavpCertName": "A7403, A7410", "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256", "reference": "SP 800-38A"}, {"algorithm": "AES-XTS Testing Revision 2.0", "cavpCertName": "A7403, A7407, A7410", "properties": "Direction - Decrypt, Encrypt Key Length - 128, 256", "reference": "SP 800-38E"}, {"algorithm": "Counter DRBG", "cavpCertName": "A7403, A7405, A7406, A7407, A7408, A7409, A7410, A7411, A7412", "properties": "Prediction Resistance - No, Yes Mode - AES-128, AES-192, AES-256 Derivation Function Enabled - Yes", "reference": "SP 800-90A Rev. 1"}, {"algorithm": "Hash DRBG", "cavpCertName": "A7403, A7413, A7414, A7415", "properties": "Prediction Resistance - No, Yes Mode - SHA-1, SHA2-256, SHA2-512", "reference": "SP 800-90A Rev. 1"}, {"algorithm": "HMAC DRBG", "cavpCertName": "A7403, A7413, A7414, A7415", "properties": "Prediction Resistance - No, Yes Mode - SHA-1, SHA2-256, SHA2-512", "reference": "SP 800-90A Rev. 1"}, {"algorithm": "HMAC-SHA-1", "cavpCertName": "A7403, A7413, A7414, A7415", "properties": "Key Length - Key Length: 112-524288 Increment 8", "reference": "FIPS 198-1"}, {"algorithm": "HMAC-SHA2- 224", "cavpCertName": "A7403, A7413, A7414, A7415", "properties": "Key Length - Key Length: 112-524288 Increment 8", "reference": "FIPS 198-1"}, {"algorithm": "HMAC-SHA2- 256", "cavpCertName": "A7403, A7413, A7414, A7415", "properties": "Key Length - Key Length: 112-524288 Increment 8", "reference": "FIPS 198-1"}, {"algorithm": "HMAC-SHA2- 384", "cavpCertName": "A7403, A7413, A7414, A7415", "properties": "Key Length - Key Length: 112-524288 Increment 8", "reference": "FIPS 198-1"}, {"algorithm": "HMAC-SHA2- 512", "cavpCertName": "A7403, A7413, A7414, A7415", "properties": "Key Length - Key Length: 112-524288 Increment 8", "reference": "FIPS 198-1"}, {"algorithm": "HMAC-SHA3- 224", "cavpCertName": "A7403", "properties": "Key Length - Key Length: 112-524288 Increment 8", "reference": "FIPS 198-1"}, {"algorithm": "HMAC-SHA3- 256", "cavpCertName": "A7403", "properties": "Key Length - Key Length: 112-524288 Increment 8", "reference": "FIPS 198-1"}, {"algorithm": "HMAC-SHA3- 384", "cavpCertName": "A7403", "properties": "Key Length - Key Length: 112-524288 Increment 8", "reference": "FIPS 198-1"}, {"algorithm": "HMAC-SHA3- 512", "cavpCertName": "A7403", "properties": "Key Length - Key Length: 112-524288 Increment 8", "reference": "FIPS 198-1"}, {"algorithm": "KAS-FFC-SSC Sp800-56Ar3", "cavpCertName": "A7403", "properties": "Domain Parameter Generation Methods ffdhe2048, ffdhe3072, ffdhe4096, ffdhe6144, ffdhe8192 Scheme - dhEphem - KAS Role - initiator, responder", "reference": "SP 800-56A Rev. 3"}, {"algorithm": "RSA SigVer (FIPS186-4)", "cavpCertName": "A7403", "properties": "Signature Type - PKCS 1.5 Modulo - 2048, 3072, 4096", "reference": "FIPS 186-4"}, {"algorithm": "RSA SigVer (FIPS186-5)", "cavpCertName": "A7403", "properties": "Modulo - 2048, 3072, 4096 Signature Type - pkcs1v1.5", "reference": "FIPS 186-5"}, {"algorithm": "Safe Primes Key Generation", "cavpCertName": "A7403", "properties": "Safe Prime Groups - ffdhe2048, ffdhe3072, ffdhe4096, ffdhe6144, ffdhe8192", "reference": "SP 800-56A Rev. 3"}, {"algorithm": "SHA-1", "cavpCertName": "A7403, A7413, A7414, A7415", "properties": "Message Length - Message Length: 0- 65536 Increment 8 Large Message Sizes - 1, 2", "reference": "FIPS 180-4"}, {"algorithm": "SHA2-224", "cavpCertName": "A7403, A7413, A7414, A7415", "properties": "Message Length - Message Length: 0- 65536 Increment 8 Large Message Sizes - 1, 2", "reference": "FIPS 180-4"}, {"algorithm": "SHA2-256", "cavpCertName": "A7403, A7413, A7414, A7415", "properties": "Message Length - Message Length: 0- 65536 Increment 8 Large Message Sizes - 1, 2", "reference": "FIPS 180-4"}, {"algorithm": "SHA2-384", "cavpCertName": "A7403, A7413, A7414, A7415", "properties": "Message Length - Message Length: 0- 65536 Increment 8 Large Message Sizes - 1, 2", "reference": "FIPS 180-4"}, {"algorithm": "SHA2-512", "cavpCertName": "A7403, A7413, A7414, A7415", "properties": "Message Length - Message Length: 0- 65536 Increment 8 Large Message Sizes - 1, 2", "reference": "FIPS 180-4"}, {"algorithm": "SHA3-224", "cavpCertName": "A7403", "properties": "Message Length - Message Length: 0- 65536 Increment 8 Large Message Sizes - 1, 2", "reference": "FIPS 202"}, {"algorithm": "SHA3-256", "cavpCertName": "A7403", "properties": "Message Length - Message Length: 0- 65536 Increment 8 Large Message Sizes - 1, 2", "reference": "FIPS 202"}, {"algorithm": "SHA3-384", "cavpCertName": "A7403", "properties": "Message Length - Message Length: 0- 65536 Increment 8 Large Message Sizes - 1, 2", "reference": "FIPS 202"}, {"algorithm": "SHA3-512", "cavpCertName": "A7403", "properties": "Message Length - Message Length: 0- 65536 Increment 8 Large Message Sizes - 1, 2", "reference": "FIPS 202"}]}, "vendor_affirmed_algos": {"section": 2, "subsection": 5, "found": true, "entries": [{"name": "Asymmetric Cryptographic Key Generation (CKG)", "algoPropList": "Key type:Asymmetric", "implName": "N/A", "reference": "SP 800-133r2, Section 4, Example 1"}]}, "non_approved_allowed_algos": {"section": 2, "subsection": 5, "found": false, "entries": []}, "non_approved_allowed_NSC": {"section": 2, "subsection": 5, "found": false, "entries": []}, "non_approved_not_allowed": {"section": 2, "subsection": 5, "found": true, "entries": [{"name": "AES-GCM with external IV", "use": "Encryption with external IV (not compliant to FIPS 140-3 IG C.H)"}, {"name": "KBKDF in libkcapi", "use": "Key derivation with implementation not tested by CAVP"}, {"name": "HKDF in libkcapi", "use": "Key derivation with implementation not tested by CAVP"}, {"name": "PBKDF2 in libkcapi", "use": "Password-based Key derivation with implementation not tested by CAVP"}, {"name": "RSA PKCS#1 v1.5 with pre- hashed message", "use": "Signature generation(pre-hashed message) primitive; Signature verification(pre-hashed message) primitive"}, {"name": "RSA PKCS#1 v1.5", "use": "Key encapsulation / un-encapsulation"}, {"name": "RSA primitive", "use": "Encryption primitive; Decryption primitive (not compliant to SP 800- 56Br2)"}, {"name": "ECDSA with pre-hashed message", "use": "Signature generation(pre-hashed message) primitive; Signature verification(pre-hashed message) primitive"}]}, "ports_interfaces": {"section": 3, "subsection": 1, "found": true, "entries": [{"physicalPort": "N/A", "logicalInterface": "Data Input", "data": "API data input parameters, AF_ALG type input sockets"}, {"physicalPort": "N/A", "logicalInterface": "Data Output", "data": "API data output parameters, AF_ALG type output sockets, /proc/sys/crypto virtual files"}, {"physicalPort": "N/A", "logicalInterface": "Control Input", "data": "API function calls, API control input parameters, AF_ALG type input sockets, kernel command line arguments"}, {"physicalPort": "N/A", "logicalInterface": "Status Output", "data": "API return values, AF_ALG type output sockets, kernel logs"}]}, "authentication_methods": {"section": 4, "subsection": 1, "found": false, "entries": []}, "roles": {"section": 4, "subsection": 2, "found": true, "entries": [{"name": "Crypto Officer", "type": "Role", "operatorType": "Crypto Officer", "authMethodList": "None"}]}, "approved_services": {"section": 4, "subsection": 3, "found": true, "entries": [{"name": "Encryptio n", "description": "Encrypt a plaintext", "indicator": "crypto_skcipher_setkey returns 0", "inputs": "AES key, plaintext, IV (if required)", "outputs": "Cipherte xt", "secFunImpl": "Encryption", "rolesSspAccess": "Crypto Officer - AES key: W,E"}, {"name": "Decryptio n", "description": "Decrypt a ciphertext", "indicator": "crypto_skcipher_setkey returns 0", "inputs": "AES key, ciphertext , IV (if required)", "outputs": "Plaintext", "secFunImpl": "Decryptio n", "rolesSspAccess": "Crypto Officer - AES key: W,E"}, {"name": "Authentic ated encryption", "description": "Encrypt and authentica te a plaintext", "indicator": "For all except AES GCM: crypto_aead_setkey returns 0; For AES GCM: crypto_aead_get_flags(tfm) has the CRYPTO_TFM_FIPS_COM PLIANCE flag set", "inputs": "AES key, plaintext, IV (CCM/GC M)", "outputs": "Cipherte xt, MAC tag (CCM/G CM)", "secFunImpl": "Authentica ted encryption", "rolesSspAccess": "Crypto Officer - AES key: W,E - GCM IV: G,R,E"}, {"name": "Authentic ated decryption", "description": "Decrypt and authentica te a ciphertext", "indicator": "crypto_aead_setkey returns 0", "inputs": "AES key, ciphertext , IV (CCM/GC M), MAC tag (CCM/GC M)", "outputs": "Plaintext or failure", "secFunImpl": "Authentica ted decryption", "rolesSspAccess": "Crypto Officer - AES key: W,E - GCM IV: W,E"}, {"name": "Message digest", "description": "Compute a message digest", "indicator": "crypto_shash_init returns 0", "inputs": "Message", "outputs": "Digest value", "secFunImpl": "Message digest", "rolesSspAccess": "Crypto Officer"}, {"name": "Message authentica tion", "description": "Compute a MAC tag", "indicator": "crypto_shash_init returns 0", "inputs": "AES key or HMAC key, message", "outputs": "MAC tag", "secFunImpl": "Message authentica tion", "rolesSspAccess": "Crypto Officer - AES key: W,E - HMAC key: W,E"}, {"name": "Random number generation", "description": "Generate random bytes", "indicator": "crypto_rng_get_bytes returns 0", "inputs": "Output length", "outputs": "Random bytes", "secFunImpl": "Random Number Generation with CTR_DRB G Random Number Generation with HMAC_D RBG Random Number Generation with Hash_DRB G", "rolesSspAccess": "Crypto Officer - Entropy input: G,E,Z - CTR_DRB G Seed (IG D.L): G,E - Hash_DRB G Seed (IG D.L): G,E - HMAC_D RBG Seed (IG D.L): G,E - CTR_DRB G Internal State (V, Key) (IG D.L): G,W,E - Hash_DRB G Internal State (V, C) (IG D.L): G,W,E - HMAC_D RBG Internal State (V, Key) (IG"}, {"name": "", "description": "", "indicator": "", "inputs": "", "outputs": "", "secFunImpl": "", "rolesSspAccess": "D.L): G,W,E"}, {"name": "Random number generation using entropy source", "description": "Generate entropy from a dedicated instance of Jitter RNG", "indicator": "crypto_rng_get_bytes returns 0", "inputs": "Output length", "outputs": "Random bytes", "secFunImpl": "", "rolesSspAccess": "Crypto Officer"}, {"name": "Shared secret computati on", "description": "Compute a shared secret", "indicator": "crypto_kpp_compute_share d_secret returns 0", "inputs": "Owner private key, peer public key", "outputs": "Shared secret", "secFunImpl": "Shared secret computatio n", "rolesSspAccess": "Crypto Officer - DH private key: W,E - DH public key: W,E - Shared secret: G,R"}, {"name": "Key pair generation", "description": "Generate a key pair", "indicator": "crypto_kpp_set_secret and crypto_kpp_generate_public _key return 0", "inputs": "Group", "outputs": "Key pair", "secFunImpl": "Key pair generation", "rolesSspAccess": "Crypto Officer - DH private key: G,R - DH public key: G,R - Intermedia te key generation value: G,E,Z"}, {"name": "Error detection code", "description": "Compute an EDC (crc32, crc32c, crct10dif)", "indicator": "None", "inputs": "Message", "outputs": "EDC", "secFunImpl": "None", "rolesSspAccess": "Crypto Officer"}, {"name": "Compressi on", "description": "Compress data (deflate, lz4, lz4hc, lzo, zlib- deflate, zstd)", "indicator": "None", "inputs": "Data", "outputs": "Compress ed data", "secFunImpl": "None", "rolesSspAccess": "Crypto Officer"}, {"name": "Generic system call", "description": "Use the kernel to perform various non- cryptogra phic operations", "indicator": "None", "inputs": "Identifier, various argument s", "outputs": "Various return values", "secFunImpl": "None", "rolesSspAccess": "Crypto Officer"}, {"name": "Show version", "description": "Return the module name and version informatio n", "indicator": "None", "inputs": "N/A", "outputs": "Module name and version", "secFunImpl": "None", "rolesSspAccess": "Crypto Officer"}, {"name": "Show status", "description": "Return the module status", "indicator": "None", "inputs": "N/A", "outputs": "Module status", "secFunImpl": "None", "rolesSspAccess": "Crypto Officer"}, {"name": "Self-test", "description": "Perform the CASTs and integrity tests", "indicator": "None", "inputs": "N/A", "outputs": "Pass/fail", "secFunImpl": "Encryption Decryptio n Authentica ted encryption Authentica ted decryption Message digest Message authentica tion Random Number Generation with CTR_DRB G Random Number Generation with HMAC_D RBG", "rolesSspAccess": "Crypto Officer"}, {"name": "", "description": "", "indicator": "", "inputs": "", "outputs": "", "secFunImpl": "Random Number Generation with Hash_DRB G Shared secret computatio n Signature verificatio n with RSA Signature verificatio n with RSA (legacy use) Key pair generation", "rolesSspAccess": ""}, {"name": "Zeroizatio n", "description": "Zeroize SSPs", "indicator": "None", "inputs": "Any SSP", "outputs": "N/A", "secFunImpl": "None", "rolesSspAccess": "Crypto Officer - AES key: Z - HMAC key: Z - Shared secret: Z - Entropy input: Z - CTR_DRB G Seed (IG D.L): Z - Hash_DRB G Seed (IG D.L): Z - HMAC_D RBG Seed (IG D.L): Z -"}, {"name": "", "description": "", "indicator": "", "inputs": "", "outputs": "", "secFunImpl": "", "rolesSspAccess": "CTR_DRB G Internal State (V, Key) (IG D.L): Z - Hash_DRB G Internal State (V, C) (IG D.L): Z - HMAC_D RBG Internal State (V, Key) (IG D.L): Z - DH public key: Z - DH private key: Z - Intermedia te key generation value: Z"}]}, "non_approved_services": {"section": 4, "subsection": 4, "found": true, "entries": [{"name": "AES-GCM with external", "description": "Encrypt and authenticate a plaintext IV", "alg_accessed": "AES-GCM with external", "role": "Crypto"}, {"name": "IV encryption", "description": "using AES-GCM with an external", "alg_accessed": "IV", "role": "Officer"}, {"name": "Key derivation", "description": "Derive a key from a key-derivation key, shared secret, or password", "alg_accessed": "KBKDF in libkcapi HKDF in libkcapi PBKDF2 in libkcapi", "role": "Crypto Officer"}, {"name": "Pre-hashed message signature generation", "description": "Generate a digital signature for a pre- hashed message", "alg_accessed": "RSA PKCS#1 v1.5 with pre-hashed message ECDSA with pre-hashed message", "role": "Crypto Officer"}, {"name": "Pre-hashed message signature verification", "description": "Verify a digital signature for a pre- hashed message", "alg_accessed": "RSA PKCS#1 v1.5 with pre-hashed message ECDSA with pre-hashed message", "role": "Crypto Officer"}, {"name": "Key encapsulation", "description": "Key encapsulation using RSA PKCS#1 v1.5", "alg_accessed": "RSA PKCS#1 v1.5", "role": "Crypto Officer"}, {"name": "Key un-encapsulation", "description": "Key un-encapsulation using RSA PKCS#1 v1.5", "alg_accessed": "RSA PKCS#1 v1.5", "role": "Crypto Officer"}, {"name": "Encryption primitive", "description": "Compute the RSA encryption primitive", "alg_accessed": "RSA primitive", "role": "Crypto Officer"}, {"name": "Decryption primitive", "description": "Compute the RSA decryption primitive", "alg_accessed": "RSA primitive", "role": "Crypto Officer"}]}, "mechanisms_actions": {"section": 7, "subsection": 1, "found": false, "entries": []}, "storage_areas": {"section": 9, "subsection": 1, "found": true, "entries": [{"name": "Module RAM", "description": "Temporary storage for SSPs used by the module as part of service execution", "persistance": "Dynamic"}]}, "ssp_io_methods": {"section": 9, "subsection": 2, "found": true, "entries": [{"name": "API input parameters", "source": "Operator calling application (TOEPP)", "dest": "Module RAM", "format": "Plaintext", "distribution": "Manual", "entry": "Electronic", "sfiAlgo": ""}, {"name": "AF_ALG type input sockets", "source": "Operator calling application (TOEPP)", "dest": "Module RAM", "format": "Plaintext", "distribution": "Manual", "entry": "Electronic", "sfiAlgo": ""}, {"name": "API output parameters", "source": "Module RAM", "dest": "Operator calling application (TOEPP)", "format": "Plaintext", "distribution": "Manual", "entry": "Electronic", "sfiAlgo": ""}, {"name": "AF_ALG type output sockets", "source": "Module RAM", "dest": "Operator calling application (TOEPP)", "format": "Plaintext", "distribution": "Manual", "entry": "Electronic", "sfiAlgo": ""}]}, "ssp_zeroization_methods": {"section": 9, "subsection": 3, "found": true, "entries": [{"method": "Free cipher handle", "description": "Zeroizes the SSPs contained within the cipher handle", "rationale": "Memory occupied by SSPs is overwritten with zeroes, which renders the SSP values irretrievable. The completion of the zeroization routine indicates that the zeroization procedure succeeded.", "operatorId": "By calling the appropriate zeroization functions: AES key: crypto_free_skcipher and crypto_free_aead; HMAC key: crypto_free_shash and crypto_free_ahash; Entropy input: crypto_free_rng; DRBG seed: crypto_free_rng; DRBG internal state: crypto_free_rng; DH public key & DH private key: crypto_free_kpp"}, {"method": "Remove power from the module", "description": "De-allocates the volatile memory used to store SSPs", "rationale": "Volatile memory used by the module is overwritten within nanoseconds when power is removed. Module power off indicates that the zeroization procedure succeeded.", "operatorId": "By removing power"}, {"method": "Automatic", "description": "Automatically zeroized by the module when no longer needed", "rationale": "Memory occupied by SSPs is overwritten with zeroes, which renders the SSP values irretrievable.", "operatorId": "N/A"}]}, "self_tests": {"section": 10, "subsection": 1, "found": true, "entries": [{"algorithmOrTest": "RSA SigVer (FIPS186-5) (A7403)", "testProps": "3072-bit key with SHA2- 256", "testMethod": "Signature verification with RSA", "type": "SW/FW Integrity", "indicator": "Module becomes operational and services are available for use", "details": "Integrity test for kernel object files"}, {"algorithmOrTest": "HMAC- SHA2-256 (A7403)", "testProps": "128-bit key", "testMethod": "Message authentication", "type": "SW/FW Integrity", "indicator": "Module becomes operational and services are available for use", "details": "Integrity test for sha512hmac binary and libkcapi binary"}, {"algorithmOrTest": "HMAC- SHA2-512 (A7403)", "testProps": "128-bit key", "testMethod": "Message authentication", "type": "SW/FW Integrity", "indicator": "Module becomes operational and services are available for use", "details": "Integrity test for kernel binary"}]}, "cond_self_tests": {"section": 10, "subsection": 2, "found": true, "entries": [{"algorithmOrTest": "AES-CBC", "testProps": "128, 192, 256- bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Encryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-CBC", "testProps": "128, 192, 256- bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Decryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-CBC (A7407)", "testProps": "128, 192, 256- bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Encryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-CBC (A7407)", "testProps": "128, 192, 256- bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Decryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-CBC (A7410)", "testProps": "128, 192, 256- bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Encryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-CBC (A7410)", "testProps": "128, 192, 256- bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Decryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-CBC- CS3", "testProps": "128-bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Encryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-CBC- CS3", "testProps": "128-bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Decryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-CBC- CS3 (A7407)", "testProps": "128-bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Encryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-CBC- CS3 (A7407)", "testProps": "128-bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Decryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-CCM", "testProps": "128, 192, 256- bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Encryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-CCM", "testProps": "128, 192, 256- bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Decryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-CCM (A7410)", "testProps": "128, 192, 256- bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Encryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-CCM (A7410)", "testProps": "128, 192, 256- bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Decryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES- CFB128", "testProps": "128, 192, 256- bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Encryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES- CFB128", "testProps": "128, 192, 256- bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Decryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES- CFB128 (A7410)", "testProps": "128, 192, 256- bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Encryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES- CFB128 (A7410)", "testProps": "128, 192, 256- bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Decryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-CTR", "testProps": "128, 192, 256- bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Encryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-CTR", "testProps": "128, 192, 256- bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Decryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-CTR (A7407)", "testProps": "128, 192, 256- bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Encryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-CTR (A7407)", "testProps": "128, 192, 256- bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Decryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-ECB", "testProps": "128, 192, 256- bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Encryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-ECB", "testProps": "128, 192, 256- bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Decryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-ECB (A7407)", "testProps": "128, 192, 256- bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Encryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-ECB (A7407)", "testProps": "128, 192, 256- bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Decryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-GCM", "testProps": "128, 192, 256- bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Encryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-GCM", "testProps": "128, 192, 256- bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Decryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-GCM (A7409)", "testProps": "128, 192, 256- bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Encryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-GCM (A7409)", "testProps": "128, 192, 256- bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Decryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-OFB", "testProps": "128-bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Encryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-OFB", "testProps": "128-bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Decryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-OFB (A7410)", "testProps": "128-bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Encryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-OFB (A7410)", "testProps": "128-bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Decryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-XTS Testing Revision 2.0", "testProps": "256, 512-bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Encryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-XTS Testing Revision 2.0", "testProps": "256, 512-bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Decryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-XTS Testing Revision 2.0 (A7407)", "testProps": "256, 512-bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Encryption", "condition": "Module initialization"}, {"algorithmOrTest": "AES-XTS Testing Revision 2.0 (A7407)", "testProps": "256, 512-bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Decryption", "condition": "Module initialization"}, {"algorithmOrTest": "SHA-1 (A7403)", "testProps": "0-8184-bit messages", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message digest", "condition": "Module initialization"}, {"algorithmOrTest": "SHA-1 (A7413)", "testProps": "0-8184-bit messages", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message digest", "condition": "Module initialization"}, {"algorithmOrTest": "SHA-1 (A7414)", "testProps": "0-8184-bit messages", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message digest", "condition": "Module initialization"}, {"algorithmOrTest": "SHA-1 (A7415)", "testProps": "0-8184-bit messages", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message digest", "condition": "Module initialization"}, {"algorithmOrTest": "SHA2-224 (A7403)", "testProps": "0-8184-bit messages", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message digest", "condition": "Module initialization"}, {"algorithmOrTest": "SHA2-224 (A7413)", "testProps": "0-8184-bit messages", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message digest", "condition": "Module initialization"}, {"algorithmOrTest": "SHA2-224 (A7414)", "testProps": "0-8184-bit messages", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message digest", "condition": "Module initialization"}, {"algorithmOrTest": "SHA2-224 (A7415)", "testProps": "0-8184-bit messages", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message digest", "condition": "Module initialization"}, {"algorithmOrTest": "SHA2-256 (A7403)", "testProps": "0-8184-bit messages", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message digest", "condition": "Module initialization"}, {"algorithmOrTest": "SHA2-256 (A7413)", "testProps": "0-8184-bit messages", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message digest", "condition": "Module initialization"}, {"algorithmOrTest": "SHA2-256 (A7414)", "testProps": "0-8184-bit messages", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message digest", "condition": "Module initialization"}, {"algorithmOrTest": "SHA2-256 (A7415)", "testProps": "0-8184-bit messages", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message digest", "condition": "Module initialization"}, {"algorithmOrTest": "SHA2-384 (A7403)", "testProps": "0-8184-bit messages", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message digest", "condition": "Module initialization"}, {"algorithmOrTest": "SHA2-384 (A7413)", "testProps": "0-8184-bit messages", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message digest", "condition": "Module initialization"}, {"algorithmOrTest": "SHA2-384 (A7414)", "testProps": "0-8184-bit messages", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message digest", "condition": "Module initialization"}, {"algorithmOrTest": "SHA2-384 (A7415)", "testProps": "0-8184-bit messages", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message digest", "condition": "Module initialization"}, {"algorithmOrTest": "SHA2-512 (A7403)", "testProps": "0-8184-bit messages", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message digest", "condition": "Module initialization"}, {"algorithmOrTest": "SHA2-512 (A7413)", "testProps": "0-8184-bit messages", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message digest", "condition": "Module initialization"}, {"algorithmOrTest": "SHA2-512 (A7414)", "testProps": "0-8184-bit messages", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message digest", "condition": "Module initialization"}, {"algorithmOrTest": "SHA2-512 (A7415)", "testProps": "0-8184-bit messages", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message digest", "condition": "Module initialization"}, {"algorithmOrTest": "SHA3-224 (A7403)", "testProps": "0-8184-bit messages", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message digest", "condition": "Module initialization"}, {"algorithmOrTest": "SHA3-256 (A7403)", "testProps": "0-8184-bit messages", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message digest", "condition": "Module initialization"}, {"algorithmOrTest": "SHA3-384 (A7403)", "testProps": "0-8184-bit messages", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message digest", "condition": "Module initialization"}, {"algorithmOrTest": "SHA3-512 (A7403)", "testProps": "0-8184-bit messages", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message digest", "condition": "Module initialization"}, {"algorithmOrTest": "AES-CMAC", "testProps": "128, 256-bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message authentication", "condition": "Module initialization"}, {"algorithmOrTest": "AES-CMAC (A7410)", "testProps": "128, 256-bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message authentication", "condition": "Module initialization"}, {"algorithmOrTest": "HMAC- SHA-1", "testProps": "32-64-bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message authentication", "condition": "Module initialization"}, {"algorithmOrTest": "HMAC- SHA-1 (A7415)", "testProps": "32-64-bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message authentication", "condition": "Module initialization"}, {"algorithmOrTest": "HMAC- SHA2-224", "testProps": "32-1048-bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message authentication", "condition": "Module initialization"}, {"algorithmOrTest": "HMAC- SHA2-224 (A7415)", "testProps": "32-1048-bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message authentication", "condition": "Module initialization"}, {"algorithmOrTest": "HMAC- SHA2-256", "testProps": "32-64-bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message authentication", "condition": "Module initialization"}, {"algorithmOrTest": "HMAC- SHA2-256 (A7415)", "testProps": "32-64-bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message authentication", "condition": "Module initialization"}, {"algorithmOrTest": "HMAC- SHA2-384", "testProps": "32-1048-bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message authentication", "condition": "Module initialization"}, {"algorithmOrTest": "HMAC- SHA2-384 (A7415)", "testProps": "32-1048-bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message authentication", "condition": "Module initialization"}, {"algorithmOrTest": "HMAC- SHA2-512", "testProps": "32-1048-bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message authentication", "condition": "Module initialization"}, {"algorithmOrTest": "HMAC- SHA2-512 (A7415)", "testProps": "32-1048-bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message authentication", "condition": "Module initialization"}, {"algorithmOrTest": "HMAC- SHA3-224 (A7403)", "testProps": "32-1048-bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message authentication", "condition": "Module initialization"}, {"algorithmOrTest": "HMAC- SHA3-256 (A7403)", "testProps": "32-1048-bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message authentication", "condition": "Module initialization"}, {"algorithmOrTest": "HMAC- SHA3-384 (A7403)", "testProps": "32-1048-bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message authentication", "condition": "Module initialization"}, {"algorithmOrTest": "HMAC- SHA3-512 (A7403)", "testProps": "32-1048-bit keys", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Message authentication", "condition": "Module initialization"}, {"algorithmOrTest": "Counter DRBG", "testProps": "AES-128, AES- 192, AES-256 with/without prediction resistance", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "SP 800-90Ar1 (instantiate, reseed, generate) health test", "condition": "Module initialization"}, {"algorithmOrTest": "Hash DRBG", "testProps": "SHA-1, SHA2- 256, SHA2-512 with/without prediction resistance", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "SP 800-90Ar1 (instantiate, reseed, generate) health test", "condition": "Module initialization"}, {"algorithmOrTest": "HMAC DRBG", "testProps": "SHA-1, SHA2- 256, SHA2-512 with/without prediction resistance", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "SP 800-90Ar1 (instantiate, reseed, generate) health test", "condition": "Module initialization"}, {"algorithmOrTest": "KAS-FFC- SSC Sp800- 56Ar3 (A7403)", "testProps": "ffdhe2048", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Shared secret computation", "condition": "Module initialization"}, {"algorithmOrTest": "RSA SigVer (FIPS186-5) (A7403)", "testProps": "PKCS#1 v1.5 with SHA-512 and 4096-bit key", "testMethod": "KAT", "type": "CAST", "indicator": "Module is operational", "details": "Signature verification with RSA", "condition": "Module initialization"}, {"algorithmOrTest": "Safe Primes Key Generation (A7403)", "testProps": "N/A", "testMethod": "PCT", "type": "PCT", "indicator": "Key pair generation is successful", "details": "SP 800-56Ar3 Section 5.6.2.1.4", "condition": "Key pair generation"}, {"algorithmOrTest": "Entropy source", "testProps": "Cutoff C = 325; Windows size = 512", "testMethod": "APT", "type": "CAST", "indicator": "Entropy source is operational", "details": "Entropy source start-up test on 1024 samples", "condition": "Entropy source initialization"}, {"algorithmOrTest": "Entropy source", "testProps": "Cutoff C = 31", "testMethod": "RCT", "type": "CAST", "indicator": "Entropy source is operational", "details": "Entropy source start-up test on 1024 samples", "condition": "Entropy source initialization"}, {"algorithmOrTest": "Entropy source", "testProps": "Cutoff C = 355; Windows size = 512", "testMethod": "APT", "type": "CAST", "indicator": "jent_kcapi_random returns 0", "details": "Entropy source continuous test", "condition": "Continuously as entropy is requested"}, {"algorithmOrTest": "Entropy source", "testProps": "Cutoff C = 61", "testMethod": "RCT", "type": "CAST", "indicator": "jent_kcapi_random returns 0", "details": "Entropy source continuous test", "condition": "Continuously as entropy is requested"}]}, "error_states": {"section": 10, "subsection": 4, "found": true, "entries": [{"name": "Error", "description": "The Linux kernel immediately stops executing", "conditions": "Any self-test failure", "recoveryMethod": "Restart of the module", "indicator": "Kernel panic"}]}}}, "heuristics": {"_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics", "algorithms": {"_type": "Set", "elements": ["AES-CTRA7410", "#A7412", "#A7413", "SHA-1A7415", "AES-CBC-CS3A7410", "RSA SigVer (FIPS186-5)A7403", "Safe Primes Key GenerationA7403", "SHA2-224A7415", "#A7406", "SHA2-256A7415", "SHA3-384A7403", "HMAC-SHA-1A7415", "#A7414", "#A7403", "AES-CCMA7410", "#A7415", "AES-OFBA7410", "SHA3-512A7403", "RSA SigVer (FIPS186-4)A7403", "AES-CBCA7410", "AES-GMACA7410", "SHA3-224A7403", "#A7408", "#A7410", "#A7409", "HMAC-SHA3-256A7403", "HMAC DRBGA7415", "SHA2-512A7415", "HMAC-SHA2-384A7415", "HMAC-SHA3-224A7403", "AES-CFB128A7410", "#A7407", "Counter DRBGA7412", "HMAC-SHA3-384A7403", "Hash DRBGA7415", "AES-ECBA7412", "#A7405", "HMAC-SHA2-512A7415", "#A7411", "KAS-FFC-SSC Sp800-56Ar3A7403", "AES-XTS Testing Revision 2.0A7410", "AES-CMACA7410", "AES-GCMA7412", "HMAC-SHA2-224A7415", "HMAC-SHA3-512A7403", "SHA2-384A7415", "HMAC-SHA2-256A7415", "SHA3-256A7403"]}, "extracted_versions": {"_type": "Set", "elements": ["9"]}, "cpe_matches": null, "verified_cpe_matches": null, "related_cves": null, "policy_prunned_references": {"_type": "Set", "elements": []}, "module_prunned_references": {"_type": "Set", "elements": []}, "policy_processed_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "module_processed_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "direct_transitive_cves": null, "indirect_transitive_cves": null}, "state": {"_type": "sec_certs.sample.fips.InternalState", "module": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": null, "txt_hash": null, "json_hash": null}, "policy": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": "1ada63ec7d6b8a1fff86656e8dfe3163a388ba2ed7732777f36d3422376c04c7", "txt_hash": "c81cd284cc43280a8947857f0fa8143ff24dcfff2705aa3083bb1627878d3123", "json_hash": "e10dcfd8c93982a29b6c8d35b28ae20d8b30c16a7a4af8ed7e7c6228f2dff2fe"}}}