Deep Discovery Analyzer OpenSSL Cryptographic Module

Certificate #3667

Webpage information

Status historical
Historical reason Moved to historical list due to sunsetting
Validation dates 04.06.2020 , 06.09.2022 , 27.09.2022
Standard FIPS 140-2
Security level 1
Type Software
Embodiment Multi-Chip Stand Alone
Caveat This validation entry is a non-security-relevant modification to Cert. #2398. When built, installed, protected and initialized as assumed by the Crypto Officer role and as specified in the provided Security Policy. Appendix A of the provided Security Policy specifies the actual distribution tar file containing the source code of this module. There shall be no additions, deletions or alterations to the tar file contents as used during module build. The distribution tar file shall be verified as specified in Appendix A of the provided Security Policy. Installation and protection shall be completed as specified in Appendix A of the provided Security Policy. Initialization shall be invoked as per Section 4 of the provided Security Policy. Any deviation from specified verification, protection, installation and initialization procedures will result in a non FIPS 140-2 compliant module. No assurance of the minimum strength of generated keys.
Exceptions
  • Roles, Services, and Authentication: Level 2
  • Physical Security: N/A
  • Design Assurance: Level 3
  • Mitigation of Other Attacks: N/A
Description The Deep Discovery Analyzer OpenSSL Cryptographic Module is a software library providing a C-language application program interface (API) for use by other processes that require cryptographic functionality.
Tested configurations
  • CentOS 7.1 on DDAN 1000v1 (Dell OEMR R720) with Intel Xeon E5-2620v2 (single-user mode)
  • CentOS 7.1 on DDAN 1100v1 (Dell OEMR R730XL) with Intel Xeon E5-2650v3
  • CentOS 7.1 on DDAN 1200v1 (Dell OEMR R740XL) with Intel Xeon Gold 5118
Vendor Trend Micro Inc.
References

This certificate's webpage directly references 1 certificates, transitively this expands into 1 certificates.

Security policy

Symmetric Algorithms
AES, TDEA, TDES, HMAC, CMAC
Asymmetric Algorithms
ECDSA, ECC, DH, DSA
Hash functions
SHA-1, SHA1, SHA-224, SHA224, SHA256, SHA384, SHA512, SHA-256, SHA-384, SHA-2, SHA2
Schemes
Key Agreement, Key agreement
Randomness
DRBG, RNG
Libraries
OpenSSL
Elliptic Curves
P-224, P-521, P-192, P-256, P-384, B-283, B-571, B-163, B-233, B-409, K-233
Block cipher modes
ECB, CBC, CTR, CFB, OFB, GCM, CCM, XTS

Trusted Execution Environments
SE
Vendor
Microsoft

Standards
FIPS 140-2, FIPS 186-4, FIPS 180-3, FIPS 197, FIPS 198-1, FIPS 198, FIPS 186-2, SP 800-38B, SP 800-38C, SP 800-38D, SP 800-56A, SP 800-89, SP 800-90, SP 800-67, SP 800-38E, PKCS#1

File metadata

Title Deep Discovery Analyzer OpenSSL FIPS 140-2 Security Policy
Subject Deep Discovery Analyzer OpenSSL Cryptographic Module
Author Arthur Vardanyan
Creation date D:20220323152834+08'00'
Modification date D:20220323152834+08'00'
Pages 28
Creator Microsoft® Word 2016
Producer Microsoft® Word 2016

References

Outgoing
  • 43 - historical - Turbo Crypto Card (TCC), v09, 14.04
  • 2398 - historical - OpenSSL FIPS Object Module SE
  • 42 - historical - Segmented NetFortress™ GVPN-S
  • 44 - revoked - Aegis MR-K I and II System/Scan Radios VHF range: 136-174 MHz UHF range: 378-500 MHz 800 range: 806-870 MHz

Heuristics

No heuristics are available for this certificate.

References

Loading...

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 3667,
  "dgst": "fc0acc74b0ae025e",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "Triple-DES#C874",
        "RSA#C874",
        "DRBG#C874",
        "SHS#C874",
        "CVL#C874",
        "ECDSA#C874",
        "DSA#C874",
        "AES#C874",
        "HMAC#C874"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "-"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": {
        "_type": "Set",
        "elements": [
          "2398"
        ]
      },
      "indirectly_referenced_by": null,
      "indirectly_referencing": {
        "_type": "Set",
        "elements": [
          "2398"
        ]
      }
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": [
        "2398"
      ]
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": {
        "_type": "Set",
        "elements": [
          "2398",
          "43",
          "44",
          "42"
        ]
      },
      "indirectly_referenced_by": null,
      "indirectly_referencing": {
        "_type": "Set",
        "elements": [
          "44",
          "2398",
          "43",
          "42",
          "112"
        ]
      }
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": [
        "2398",
        "42",
        "44",
        "43"
      ]
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 4
          },
          "ECDSA": {
            "ECDSA": 17
          }
        },
        "FF": {
          "DH": {
            "DH": 7
          },
          "DSA": {
            "DSA": 16
          }
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 3
        },
        "CCM": {
          "CCM": 4
        },
        "CFB": {
          "CFB": 1
        },
        "CTR": {
          "CTR": 2
        },
        "ECB": {
          "ECB": 3
        },
        "GCM": {
          "GCM": 5
        },
        "OFB": {
          "OFB": 1
        },
        "XTS": {
          "XTS": 4
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {
        "OpenSSL": {
          "OpenSSL": 40
        }
      },
      "crypto_protocol": {},
      "crypto_scheme": {
        "KA": {
          "Key Agreement": 2,
          "Key agreement": 1
        }
      },
      "device_model": {},
      "ecc_curve": {
        "NIST": {
          "B-163": 2,
          "B-233": 1,
          "B-283": 1,
          "B-409": 1,
          "B-571": 1,
          "K-233": 2,
          "P-192": 8,
          "P-224": 8,
          "P-256": 6,
          "P-384": 4,
          "P-521": 2
        }
      },
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "#2398": 2,
          "#42": 1,
          "#43": 1,
          "#44": 1
        }
      },
      "fips_certlike": {
        "Certlike": {
          "AES 128/192/256": 3,
          "DRBG5": 1,
          "HMAC SHA-1": 1,
          "HMAC- SHA-1": 1,
          "HMAC-SHA-1": 20,
          "HMAC-SHA1": 4,
          "PKCS#1": 2,
          "SHA- 1,224": 3,
          "SHA- 224": 1,
          "SHA-1": 20,
          "SHA-1, 224": 11,
          "SHA-1,224": 9,
          "SHA-2": 1,
          "SHA-2 (224": 2,
          "SHA-224": 15,
          "SHA-256": 1,
          "SHA-384": 1,
          "SHA1": 1,
          "SHA2": 1,
          "SHA224": 1,
          "SHA256": 4,
          "SHA384": 1,
          "SHA512": 2
        }
      },
      "fips_security_level": {},
      "hash_function": {
        "SHA": {
          "SHA1": {
            "SHA-1": 40,
            "SHA1": 1
          },
          "SHA2": {
            "SHA-2": 3,
            "SHA-224": 15,
            "SHA-256": 1,
            "SHA-384": 1,
            "SHA2": 1,
            "SHA224": 1,
            "SHA256": 4,
            "SHA384": 1,
            "SHA512": 2
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 15
        },
        "RNG": {
          "RNG": 1
        }
      },
      "side_channel_analysis": {},
      "standard_id": {
        "FIPS": {
          "FIPS 140-2": 33,
          "FIPS 180-3": 2,
          "FIPS 186-2": 5,
          "FIPS 186-4": 7,
          "FIPS 197": 2,
          "FIPS 198": 1,
          "FIPS 198-1": 1
        },
        "NIST": {
          "SP 800-38B": 2,
          "SP 800-38C": 2,
          "SP 800-38D": 2,
          "SP 800-38E": 1,
          "SP 800-56A": 4,
          "SP 800-67": 1,
          "SP 800-89": 1,
          "SP 800-90": 5
        },
        "PKCS": {
          "PKCS#1": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 18
          }
        },
        "DES": {
          "3DES": {
            "TDEA": 1,
            "TDES": 9
          }
        },
        "constructions": {
          "MAC": {
            "CMAC": 15,
            "HMAC": 7
          }
        }
      },
      "tee_name": {
        "IBM": {
          "SE": 4
        }
      },
      "tls_cipher_suite": {},
      "vendor": {
        "Microsoft": {
          "Microsoft": 1
        }
      },
      "vulnerability": {}
    },
    "policy_metadata": {
      "/Author": "Arthur Vardanyan",
      "/CreationDate": "D:20220323152834+08\u002700\u0027",
      "/Creator": "Microsoft\u00ae Word 2016",
      "/ModDate": "D:20220323152834+08\u002700\u0027",
      "/Producer": "Microsoft\u00ae Word 2016",
      "/Subject": "Deep Discovery Analyzer OpenSSL Cryptographic Module",
      "/Title": "Deep Discovery Analyzer OpenSSL FIPS 140-2 Security Policy",
      "pdf_file_size_bytes": 780880,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "https://www.openssl.org/source/old/fips/openssl-fips-2.0.9.tar.gz",
          "http://www.openssl.org/source/openssl-fips-2.0.16.tar.gz",
          "http://www.openssl.org/source/old/fips/openssl-fips-2.0.10.tar.gz",
          "http://csrc.nist.gov/publications/nistpubs/800-90/SP800-90revised_March2007.pdf",
          "http://csrc.nist.gov/publications/fips/fips180-3/fips180-3_final.pdf",
          "http://www.openssl.org/source/openssl-fips-ecp-2.0.16.tar.gz",
          "http://csrc.nist.gov/publications/nistpubs/800-67/SP800-67.pdf",
          "http://csrc.nist.gov/publications/fips/fips140-2/fips1402.pdf",
          "http://software.intel.com/en-us/articles/intel-advanced-encryption-standard-instructions-aes-ni/?wapkw=aes-ni",
          "http://www.openssl.org/source/old/fips/openssl-fips-2.0.12.tar.gz",
          "http://csrc.nist.gov/publications/nistpubs/800-131A/sp800-131A.pdf",
          "http://openssl.com/fips/verify.html",
          "http://www.openssl.org/source/old/fips/openssl-fips-ecp-2.0.13.tar.gz",
          "http://www.openssl.org/source/old/fips/openssl-fips-ecp-2.0.10.tar.gz",
          "http://www.openssl.org/source/old/fips/openssl-fips-ecp-2.0.9.tar.gz",
          "http://www.openssl.org/source/old/fips/openssl-fips-2.0.15.tar.gz",
          "http://openssl.org/",
          "http://csrc.nist.gov/publications/fips/fips197/fips-197.pdf",
          "http://www.openssl.org/source/old/fips/",
          "http://www.arm.com/products/processors/technologies/neon.php",
          "http://www.openssl.org/source/old/fips/openssl-fips-ecp-2.0.12.tar.gz",
          "http://www.openssl.org/source/old/fips/openssl-fips-ecp-2.0.15.tar.gz",
          "http://www.openssl.org/source/old/fips/openssl-fips-ecp-2.0.11.tar.gz",
          "http://csrc.nist.gov/publications/fips/fips198-1/FIPS-198-1_final.pdf",
          "http://www.openssl.org/source/old/fips/openssl-fips-ecp-2.0.14.tar.gz",
          "http://www.openssl.org/source/old/fips/openssl-fips-2.0.13.tar.gz",
          "http://csrc.nist.gov/publications/fips/fips186-3/fips_186-3.pdf",
          "http://www.intel.com/support/processors/sb/CS-030123.htm?wapkw=sse2",
          "http://csrc.nist.gov/publications/nistpubs/800-89/SP-800-89_November2006.pdf",
          "http://csrc.nist.gov/publications/nistpubs/800-38D/SP-800-38D.pdf",
          "http://csrc.nist.gov/publications/nistpubs/800-38C/SP800-38C_updated-July20_2007.pdf",
          "http://www.openssl.org/source/",
          "http://www.openssl.org/source/old/fips/openssl-fips-2.0.14.tar.gz",
          "http://www.openssl.org/source/old/fips/openssl-fips-2.0.11.tar.gz",
          "http://csrc.nist.gov/publications/nistpubs/800-56A/SP800-56A_Revision1_Mar08-2007.pdf"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 28
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
    "module_download_ok": true,
    "module_extract_ok": true,
    "policy_convert_ok": true,
    "policy_download_ok": true,
    "policy_extract_ok": true,
    "policy_json_hash": null,
    "policy_pdf_hash": "0ad4796038c7a9c2db2c245c09e437a70acf86cf61772e9dfc77f6b7d3b6caf1",
    "policy_txt_hash": "7a2b2e70fc5f305c9615eaf61ef4bba9db1e659089e00e9802fbdf578abacc3b"
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "This validation entry is a non-security-relevant modification to Cert. #2398. When built, installed, protected and initialized as assumed by the Crypto Officer role and as specified in the provided Security Policy. Appendix A of the provided Security Policy specifies the actual distribution tar file containing the source code of this module. There shall be no additions, deletions or alterations to the tar file contents as used during module build. The distribution tar file shall be verified as specified in Appendix A of the provided Security Policy. Installation and protection shall be completed as specified in Appendix A of the provided Security Policy. Initialization shall be invoked as per Section 4 of the provided Security Policy. Any deviation from specified verification, protection, installation and initialization procedures will result in a non FIPS 140-2 compliant module. No assurance of the minimum strength of generated keys.",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/June 2020_010720_0752.pdf",
    "date_sunset": null,
    "description": "The Deep Discovery Analyzer OpenSSL Cryptographic Module is a software library providing a C-language application program interface (API) for use by other processes that require cryptographic functionality.",
    "embodiment": "Multi-Chip Stand Alone",
    "exceptions": [
      "Roles, Services, and Authentication: Level 2",
      "Physical Security: N/A",
      "Design Assurance: Level 3",
      "Mitigation of Other Attacks: N/A"
    ],
    "fw_versions": null,
    "historical_reason": "Moved to historical list due to sunsetting",
    "hw_versions": null,
    "level": 1,
    "mentioned_certs": {
      "2398": 1
    },
    "module_name": "Deep Discovery Analyzer OpenSSL Cryptographic Module",
    "module_type": "Software",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "historical",
    "sw_versions": "2.0.16",
    "tested_conf": [
      "CentOS 7.1 on DDAN 1000v1 (Dell OEMR R720) with Intel Xeon E5-2620v2 (single-user mode)",
      "CentOS 7.1 on DDAN 1100v1 (Dell OEMR R730XL) with Intel Xeon E5-2650v3",
      "CentOS 7.1 on DDAN 1200v1 (Dell OEMR R740XL) with Intel Xeon Gold 5118"
    ],
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2020-06-04",
        "lab": "Asia Pacific IT Laboratory, TUV NORD",
        "validation_type": "Initial"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2022-09-06",
        "lab": "Asia Pacific IT Laboratory, TUV NORD",
        "validation_type": "Update"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2022-09-27",
        "lab": "Asia Pacific IT Laboratory, TUV NORD",
        "validation_type": "Update"
      }
    ],
    "vendor": "Trend Micro Inc.",
    "vendor_url": "http://www.trendmicro.com"
  }
}