{"_type": "sec_certs.sample.fips.FIPSCertificate", "dgst": "fcf40aad4b47bd25", "cert_id": 5056, "web_data": {"_type": "sec_certs.sample.fips.FIPSCertificate.WebData", "module_name": "Device Cryptographic Module", "validation_history": [{"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry", "date": "2025-09-02", "validation_type": "Initial", "lab": "atsec information security corporation"}], "vendor_url": "f5.com", "vendor": "F5, Inc.", "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/November 2025_181225_1202.pdf", "module_type": "Hardware", "standard": "FIPS 140-3", "status": "active", "level": 2, "caveat": "When operated in approved mode; When tamper evident labels contained in F5-ADD-BIG-FIPS140 kit and installed as indicated in the Security Policy section 7; No assurance of minimum security of SSPs (e.g., keys, bit strings) that are externally loaded, or of SSPs established with externally loaded SSPs", "exceptions": ["Operational environment: N/A", "Non-invasive security: N/A", "Mitigation of other attacks: N/A"], "embodiment": "Multi-Chip Stand Alone", "description": "F5 Device Cryptographic Module, Application Delivery Controller and Firewall software running on F5 BIG-IP.", "tested_conf": null, "hw_versions": null, "fw_versions": null, "sw_versions": null, "mentioned_certs": {}, "historical_reason": null, "date_sunset": "2030-09-01", "revoked_reason": null, "revoked_link": null}, "pdf_data": {"_type": "sec_certs.sample.fips.FIPSCertificate.PdfData", "keywords": {"fips_cert_id": {"Cert": {"#1": 6}}, "fips_security_level": {"Level": {"Level 2": 3}}, "fips_certlike": {"Certlike": {"HMAC-SHA-1": 12, "HMAC-SHA-384": 2, "HMAC-SHA- 1": 4, "HMAC-SHA- 384": 4, "HMAC-SHA- 256": 2, "SHA2-256": 17, "SHA2-384": 11, "SHA2-512": 14, "SHA-1": 9, "SHA2-224": 9, "SHA2- 224": 1, "SHA-3": 2, "SHA2-382": 1, "SHA2- 256": 5, "SHA-256": 3, "- PKCS 1": 4, "PKCS #1": 12, "PKCS#1": 2, "AES-256": 7, "AES-128": 1, "AES-192": 2, "DRBG 384": 1, "PKCS 1": 4}}, "vendor": {}, "eval_facility": {"atsec": {"atsec": 2}}, "symmetric_crypto": {"AES_competition": {"AES": {"AES-256": 7, "AES-128": 1, "AES-192": 2, "AES": 12}, "CAST": {"CAST": 60}}, "DES": {"DES": {"DES": 1}, "3DES": {"Triple-DES": 4, "TDES": 1, "TDEA": 1}}, "miscellaneous": {"Camellia": {"Camellia": 2}, "SEED": {"SEED": 2}}, "constructions": {"MAC": {"HMAC": 10, "HMAC-SHA-384": 1, "CMAC": 2}}}, "asymmetric_crypto": {"ECC": {"ECDH": {"ECDH": 3}, "ECDSA": {"ECDSA": 112}, "EdDSA": {"EdDSA": 3}, "ECC": {"ECC": 10}}, "FF": {"DH": {"Diffie-Hellman": 17, "DH": 3}, "DSA": {"DSA": 4}}}, "pq_crypto": {}, "hash_function": {"SHA": {"SHA1": {"SHA-1": 9}, "SHA2": {"SHA-256": 3}, "SHA3": {"SHA-3": 2}}}, "crypto_scheme": {"MAC": {"MAC": 7}, "KEX": {"Key Exchange": 2}, "KA": {"Key agreement": 3, "Key Agreement": 2}}, "crypto_protocol": {"SSH": {"SSH": 168, "SSHv2": 2}, "TLS": {"SSL": {"SSL": 2}, "TLS": {"TLS v1.2": 8, "TLS": 277, "TLS 1.2": 4}}, "IKE": {"IKEv2": 1}, "IPsec": {"IPsec": 2}}, "randomness": {"PRNG": {"DRBG": 28}, "RNG": {"RNG": 2, "RBG": 2}}, "cipher_mode": {"ECB": {"ECB": 1}, "CBC": {"CBC": 1}, "CTR": {"CTR": 2}, "CFB": {"CFB": 1}, "OFB": {"OFB": 1}, "GCM": {"GCM": 3}, "CCM": {"CCM": 2}, "XTS": {"XTS": 2}}, "ecc_curve": {"NIST": {"P-256": 70, "P-384": 42}, "Edwards": {"Ed25519": 2}}, "crypto_engine": {}, "tls_cipher_suite": {}, "crypto_library": {}, "vulnerability": {}, "side_channel_analysis": {}, "device_model": {}, "tee_name": {"AMD": {"PSP": 6}, "IBM": {"SSC": 2}}, "os_name": {}, "cplc_data": {}, "ic_data_group": {}, "standard_id": {"FIPS": {"FIPS 140-3": 96, "FIPS PUB 140-3": 2, "FIPS186-4": 44, "FIPS 186-4": 16, "FIPS 198-1": 6, "FIPS 180-4": 6, "FIPS 197": 4, "FIPS 1403": 1, "FIPS 186-5": 4, "FIPS186-5": 2, "FIPS140-3": 1, "FIPS180-4": 1, "FIPS197": 1, "FIPS198-1": 1, "FIPS202": 1}, "NIST": {"SP 800-38A": 4, "SP 800-38C": 3, "SP 800-38D": 3, "SP 800-90A": 2, "SP 800-56A": 8, "SP 800-135": 7, "SP 800-38F": 4, "SP 800-140F": 1, "SP 800-90B": 6, "SP 800-38B": 1, "SP 800-38E": 1, "SP 800-38G": 1, "SP 800-67": 1, "SP 800-57": 1, "SP 800-132": 1}, "PKCS": {"PKCS 1": 4, "PKCS #1": 6, "PKCS#1": 1}, "RFC": {"RFC7627": 6, "RFC5288": 1, "RFC 5288": 1, "RFC 4253": 1, "RFC 6668": 1, "RFC3394": 1, "RFC5649": 1}}, "javacard_version": {}, "javacard_api_const": {}, "javacard_packages": {}, "certification_process": {}}, "policy_metadata": {"pdf_file_size_bytes": 1142421, "pdf_is_encrypted": false, "pdf_number_of_pages": 90, "/Author": "", "/Comments": "", "/Company": "", "/CreationDate": "D:20250829072526-04'00'", "/Creator": "Acrobat PDFMaker 25 for Word", "/Keywords": "", "/ModDate": "D:20250829072705-04'00'", "/Producer": "Adobe PDF Library 25.1.51", "/SourceModified": "", "/Subject": "", "/Title": "", "pdf_hyperlinks": {"_type": "Set", "elements": ["http://www.ietf.org/rfc/rfc3394.txt", "https://support.f5.com/csp/article/K7752", "http://csrc.nist.gov/publications/nistpubs/800-67-Rev1/SP-800-67-Rev1.pdf", "http://nvlpubs.nist.gov/nistpubs/FIPS/NIST.FIPS.180-4.pdf", "https://csrc.nist.gov/Projects/cryptographic-module-validation-program/fips-140-3-ig-announcements", "http://csrc.nist.gov/publications/nistpubs/800-38a/sp800-38a.pdf", "http://csrc.nist.gov/publications/nistpubs/800-38B/SP_800-38B.pdf", "http://csrc.nist.gov/publications/nistpubs/800-38D/SP-800-38D.pdf", "http://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-57pt1r4.pdf", "http://nvlpubs.nist.gov/nistpubs/Legacy/SP/nistspecialpublication800-38c.pdf", "http://nvlpubs.nist.gov/nistpubs/Legacy/SP/nistspecialpublication800-135r1.pdf", "http://www.ietf.org/rfc/rfc5649.txt", "http://nvlpubs.nist.gov/nistpubs/FIPS/NIST.FIPS.202.pdf", "http://csrc.nist.gov/publications/nistpubs/800-38E/nist-sp-800-38E.pdf", "http://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-38F.pdf", "http://nvlpubs.nist.gov/nistpubs/FIPS/NIST.FIPS.186-4.pdf", "http://csrc.nist.gov/publications/fips/fips197/fips-197.pdf", "http://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-38G.pdf", "http://www.ietf.org/rfc/rfc3447.txt", "http://csrc.nist.gov/publications/fips/fips198-1/FIPS-198-1_final.pdf"]}}, "module_algorithms": {"_type": "Set", "elements": ["ECDSA KeyGen (FIPS186-4)A3698", "RSA KeyGen (FIPS186-4)A3697", "ECDSA SigVer (FIPS186-4)A3698", "SHA2-256A3698", "SHA-1A3698", "AES-CTRA3697", "SHA2-512A3698", "ECDSA KeyVer (FIPS186-4)A3698", "Safe Primes Key GenerationA3698", "HMAC-SHA2-256A3698", "ECDSA SigGen (FIPS186-4)A3698", "AES-CCMA3698", "AES-GCMA3698", "Counter DRBGA3698", "KAS-ECC-SSC Sp800-56Ar3A3698", "AES-CBCA3698", "HMAC-SHA-1A3698", "RSA SigGen (FIPS186-4)A3698", "SHA2-384A3698", "TLS v1.2 KDF RFC7627A3698", "KAS-FFC-SSC Sp800-56Ar3A3698", "KDF SSHA3697", "RSA SigVer (FIPS186-4)A3698", "HMAC-SHA2-384A3698", "Safe Primes Key VerificationA3698"]}, "policy_algorithms": {"_type": "Set", "elements": ["#A3698", "#A3697"]}}, "heuristics": {"_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics", "algorithms": {"_type": "Set", "elements": ["ECDSA KeyGen (FIPS186-4)A3698", "RSA KeyGen (FIPS186-4)A3697", "ECDSA SigVer (FIPS186-4)A3698", "SHA2-256A3698", "SHA-1A3698", "AES-CTRA3697", "SHA2-512A3698", "ECDSA KeyVer (FIPS186-4)A3698", "Safe Primes Key GenerationA3698", "HMAC-SHA2-256A3698", "ECDSA SigGen (FIPS186-4)A3698", "AES-CCMA3698", "AES-GCMA3698", "Counter DRBGA3698", "KAS-ECC-SSC Sp800-56Ar3A3698", "AES-CBCA3698", "HMAC-SHA-1A3698", "RSA SigGen (FIPS186-4)A3698", "SHA2-384A3698", "TLS v1.2 KDF RFC7627A3698", "KAS-FFC-SSC Sp800-56Ar3A3698", "#A3698", "KDF SSHA3697", "RSA SigVer (FIPS186-4)A3698", "HMAC-SHA2-384A3698", "Safe Primes Key VerificationA3698", "#A3697"]}, "extracted_versions": {"_type": "Set", "elements": ["-"]}, "cpe_matches": null, "verified_cpe_matches": null, "related_cves": null, "policy_prunned_references": {"_type": "Set", "elements": []}, "module_prunned_references": {"_type": "Set", "elements": []}, "policy_processed_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "module_processed_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "direct_transitive_cves": null, "indirect_transitive_cves": null}, "state": {"_type": "sec_certs.sample.fips.InternalState", "module": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": null, "txt_hash": null, "json_hash": null}, "policy": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": "8c1b3875d8208c15c053a8661ee5f3ebcd26e9599f9e2a436ee8b7aaa8ae3369", "txt_hash": "8f0e331c56a304035f3898192f08d342f9b9db03efbf5551488f27dd293f0abe", "json_hash": "1d448bd2468a945294810b2133e94630c68e280d19206e471b51a49ee85f9922"}}}