Pragma Systems Cryptographic Module

Certificate #3171

Webpage information

Status historical
Historical reason Moved to historical list due to dependency on certificate #2937
Validation dates 15.04.2018
Standard FIPS 140-2
Security level 1
Type Software
Embodiment Multi-Chip Stand Alone
Caveat When operated in FIPS mode with the modules Code Integrity (ci.dll) in Microsoft Windows 10 or Windows Server 2016 Standard, under Cert. #2935 operating in FIPS mode and Cryptographic Primitives Library (bcryptprimitives.dll and ncryptsslp.dll) in Microsoft Windows 10, or Windows Server 2016 Standard validated to FIPS 140-2 under Cert. #2937 operating in FIPS mode.
Exceptions
  • Physical Security: N/A
  • Mitigation of Other Attacks: N/A
Description The Pragma Systems Cryptographic Module provides cryptographic services to Pragma Systems Fortress SSH servers, clients, applications and tools. Additionally, Pragma Systems Telemote and SecureFactors products use this cryptographic module.
Tested configurations
  • Windows 10 Enterprise Anniversary Update (x64) running on a HP Compaq Pro 6305 without PAA
  • Windows Server 2016 Standard Edition (x64) running on a HP Compaq Pro 6305 without PAA
Vendor Pragma Systems, Inc.
References

This certificate's webpage directly references 2 certificates, transitively this expands into 10 certificates.

Security policy

Symmetric Algorithms
AES, AES-, AES-192, AES-256, AES-128, RC2, RC4, DES, Triple-DES, TDES, HMAC, HMAC-SHA-256, HMAC-SHA-512, HMAC-SHA-384, CMAC
Asymmetric Algorithms
RSA 2048, ECDH, ECDSA, ECC, Diffie-Hellman, DH, DSA
Hash functions
SHA-1, SHA-256, SHA-512, SHA-384, SHA384, MD4, MD5
Schemes
MAC, Key Exchange, Key agreement, Key Agreement
Protocols
SSH
Randomness
DRBG
Elliptic Curves
P-256, P-521, NIST P-256, P-385, P-512
Block cipher modes
ECB, CBC, CTR, GCM, CCM, XTS

Vendor
Microsoft

Security level
Level 1

File metadata

Title PragmaCrypot FIPS 140 Security Policy
Author David S. Kulwin
Creation date D:20180411130149-05'00'
Modification date D:20180411130149-05'00'
Pages 23
Creator Microsoft® Word 2016
Producer Microsoft® Word 2016

References

Outgoing
  • 2935 - historical - Code Integrity (ci.dll) in Microsoft Windows 10, Windows 10 Pro, Windows 10 Enterprise, Windows 10 Enterprise LTSB, Windows 10 Mobile, Windows Server 2016 Standard, Windows Server 2016 Datacenter, Windows Storage Server 2016, Azure Host OS (version 1.65)
  • 2937 - historical - Cryptographic Primitives Library (bcryptprimitives.dll and ncryptsslp.dll) in Microsoft Windows 10, Windows 10 Pro, Windows 10 Enterprise, Windows 10 Enterprise LTSB, Windows 10 Mobile, Windows Server 2016 Standard, Windows Server 2016 Datacenter, Windows Storage Server 2016, Azure Host OS (version 1.65)

Heuristics

No heuristics are available for this certificate.

References

Loading...

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 3171,
  "dgst": "dba91922f9ead2a8",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "AES#4064",
        "AES#5027",
        "RSA#2195",
        "KAS#92",
        "SHS#4086",
        "ECDSA#911",
        "HMAC#3341",
        "SHS#3347",
        "HMAC#2651",
        "DRBG#1217",
        "RSA#2192",
        "RSA#2193",
        "DSA#1098",
        "Triple-DES#2227"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "-"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": {
        "_type": "Set",
        "elements": [
          "2935",
          "2937"
        ]
      },
      "indirectly_referenced_by": null,
      "indirectly_referencing": {
        "_type": "Set",
        "elements": [
          "2936",
          "3510",
          "2931",
          "3502",
          "2932",
          "2933",
          "3501",
          "3487",
          "2935",
          "2937"
        ]
      }
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": [
        "2935",
        "2937"
      ]
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": {
        "_type": "Set",
        "elements": [
          "2935",
          "2937"
        ]
      },
      "indirectly_referenced_by": null,
      "indirectly_referencing": {
        "_type": "Set",
        "elements": [
          "2936",
          "3510",
          "2931",
          "3502",
          "2932",
          "2933",
          "3501",
          "3487",
          "2935",
          "2937"
        ]
      }
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": [
        "2935",
        "2937"
      ]
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 5
          },
          "ECDH": {
            "ECDH": 5
          },
          "ECDSA": {
            "ECDSA": 12
          }
        },
        "FF": {
          "DH": {
            "DH": 11,
            "Diffie-Hellman": 5
          },
          "DSA": {
            "DSA": 12
          }
        },
        "RSA": {
          "RSA 2048": 2
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 9
        },
        "CCM": {
          "CCM": 1
        },
        "CTR": {
          "CTR": 7
        },
        "ECB": {
          "ECB": 3
        },
        "GCM": {
          "GCM": 3
        },
        "XTS": {
          "XTS": 1
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "SSH": {
          "SSH": 4
        }
      },
      "crypto_scheme": {
        "KA": {
          "Key Agreement": 4,
          "Key agreement": 5
        },
        "KEX": {
          "Key Exchange": 3
        },
        "MAC": {
          "MAC": 1
        }
      },
      "device_model": {},
      "ecc_curve": {
        "NIST": {
          "NIST P-256": 2,
          "P-256": 12,
          "P-385": 1,
          "P-512": 1,
          "P-521": 12
        }
      },
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "# 2193": 1,
          "# 2935": 1,
          "# 3347": 1,
          "#1098": 2,
          "#1217": 6,
          "#2651": 1,
          "#2935": 1,
          "#2937": 3,
          "#3347": 7,
          "#4064": 1,
          "#4086": 1,
          "#911": 1
        }
      },
      "fips_certlike": {
        "Certlike": {
          "#1217 HMAC": 1,
          "#3347 DRBG": 4,
          "AES #4064": 1,
          "AES CTR 128": 1,
          "AES CTR 256": 1,
          "AES- 128": 1,
          "AES-128": 2,
          "AES-192": 3,
          "AES-256": 4,
          "DRBG #1217": 6,
          "DSA #1098": 2,
          "HMAC #2651": 2,
          "HMAC SHA-1": 1,
          "HMAC- SHA-256": 1,
          "HMAC-SHA-1": 6,
          "HMAC-SHA-256": 2,
          "HMAC-SHA-384": 6,
          "HMAC-SHA-512 2": 2,
          "HMAC-SHA512": 2,
          "RSA 2048": 2,
          "SHA-1": 11,
          "SHA-128": 1,
          "SHA-256": 9,
          "SHA-384": 7,
          "SHA-512": 5,
          "SHA384": 1,
          "SHS #3347": 7,
          "SHS #4086": 1
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 1": 1
        }
      },
      "hash_function": {
        "MD": {
          "MD4": {
            "MD4": 1
          },
          "MD5": {
            "MD5": 2
          }
        },
        "SHA": {
          "SHA1": {
            "SHA-1": 11
          },
          "SHA2": {
            "SHA-256": 12,
            "SHA-384": 4,
            "SHA-512": 8,
            "SHA384": 1
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 12
        }
      },
      "side_channel_analysis": {},
      "standard_id": {
        "FIPS": {
          "FIPS 140-2": 10,
          "FIPS 180-4": 4,
          "FIPS 186-4": 9,
          "FIPS 197": 2,
          "FIPS 198-1": 2
        },
        "NIST": {
          "SP 800-56A": 5,
          "SP 800-67": 1,
          "SP 800-90A": 4
        },
        "RFC": {
          "RFC 2453": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 14,
            "AES-": 1,
            "AES-128": 2,
            "AES-192": 3,
            "AES-256": 4
          },
          "RC": {
            "RC2": 1,
            "RC4": 1
          }
        },
        "DES": {
          "3DES": {
            "TDES": 5,
            "Triple-DES": 4
          },
          "DES": {
            "DES": 2
          }
        },
        "constructions": {
          "MAC": {
            "CMAC": 1,
            "HMAC": 24,
            "HMAC-SHA-256": 2,
            "HMAC-SHA-384": 2,
            "HMAC-SHA-512": 2
          }
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "Microsoft": {
          "Microsoft": 21
        }
      },
      "vulnerability": {}
    },
    "policy_metadata": {
      "/Author": "David S. Kulwin",
      "/CreationDate": "D:20180411130149-05\u002700\u0027",
      "/Creator": "Microsoft\u00ae Word 2016",
      "/ModDate": "D:20180411130149-05\u002700\u0027",
      "/Producer": "Microsoft\u00ae Word 2016",
      "/Title": "PragmaCrypot FIPS 140 Security Policy",
      "pdf_file_size_bytes": 594768,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "https://csrc.nist.gov/Projects/Cryptographic-Module-Validation-Program/Certificate/2937"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 23
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.InternalState",
    "module": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "source_hash": null,
      "txt_hash": null
    },
    "policy": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "source_hash": "b9ea86df18a46f92978e895045992f56165c57dc00ff61481c7e3131eeaaaa4c",
      "txt_hash": "c206c508974d7d85887bd23e12f68f2b5adf8911775a1da29ca530e7d3e8f7e7"
    }
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "When operated in FIPS mode with the modules Code Integrity (ci.dll) in Microsoft Windows 10 or Windows Server 2016 Standard, under Cert. #2935 operating in FIPS mode and Cryptographic Primitives Library (bcryptprimitives.dll and ncryptsslp.dll) in Microsoft Windows 10, or Windows Server 2016 Standard validated to FIPS 140-2 under Cert. #2937 operating in FIPS mode.",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/AprilConsolidated2018.pdf",
    "date_sunset": null,
    "description": "The Pragma Systems Cryptographic Module provides cryptographic services to Pragma Systems Fortress SSH servers, clients, applications and tools. Additionally, Pragma Systems Telemote and SecureFactors products use this cryptographic module.",
    "embodiment": "Multi-Chip Stand Alone",
    "exceptions": [
      "Physical Security: N/A",
      "Mitigation of Other Attacks: N/A"
    ],
    "fw_versions": null,
    "historical_reason": "Moved to historical list due to dependency on certificate #2937",
    "hw_versions": null,
    "level": 1,
    "mentioned_certs": {
      "2935": 1,
      "2937": 1
    },
    "module_name": "Pragma Systems Cryptographic Module",
    "module_type": "Software",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "historical",
    "sw_versions": "2.0",
    "tested_conf": [
      "Windows 10 Enterprise Anniversary Update (x64) running on a HP Compaq Pro 6305 without PAA",
      "Windows Server 2016 Standard Edition (x64) running on a HP Compaq Pro 6305 without PAA"
    ],
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2018-04-15",
        "lab": "DXC Technology",
        "validation_type": "Initial"
      }
    ],
    "vendor": "Pragma Systems, Inc.",
    "vendor_url": "http://www.pragmasys.com"
  }
}