Projects
Cryptographic Algorithm Validation Program
Cryptographic Algorithm Validation Program CAVP
Description
F5(R) BIG-IP(R) Application Delivery Controller and Firewall firmware running on F5 BIG-IP.
Vendor
F5 Networks
401 Elliott Avenue West Seattle, WA 98119 USA
Contacts
Maryrita Steinhour
m.steinhour@f5.com
206-272-7351
Eric Raisters
e.raisters@f5.com
206-272-7580
Validations
Number
Date
Operating Environments
Algorithm Capabilities
C1307
10/24/2019
-
AES-CBC
- Direction: Decrypt, Encrypt
- Key Length: 128, 256
-
AES-GCM
- Direction: Decrypt, Encrypt
- IV Generation: Internal
- IV Generation Mode: 8.2.1
- Key Length: 128, 256
- Tag Length: 32, 64, 96, 104, 112, 120, 128
- IV Length: 96
- Payload Length: 104, 128, 256, 408
- AAD Length: 0, 128, 160, 384, 720
-
AES-GMAC
- Direction: Decrypt, Encrypt
- IV Generation: Internal
- IV Generation Mode: 8.2.1
- Key Length: 128, 256
- Tag Length: 32, 64, 96, 104, 112, 120, 128
- IV Length: 96
- AAD Length: 0, 128, 160, 384, 720
-
Counter DRBG
- Prediction Resistance: No
- Supports Reseed
- Capabilities:
- Mode: AES-256
- Derivation Function Enabled: Yes
- Additional Input: 0-256
- Entropy Input: 256
- Nonce: 128
- Personalization String Length: 0-256
- Returned Bits: 512
Prerequisites:
-
ECDSA KeyGen (186-4)
- Curve: P-256, P-384
- Secret Generation Mode: Testing Candidates
Prerequisites:
-
ECDSA KeyVer (186-4)
-
ECDSA SigGen (186-4)
- Capabilities:
- Curve: P-256
- Hash Algorithm: SHA2-256, SHA2-384
- Capabilities:
- Curve: P-384
- Hash Algorithm: SHA2-256, SHA2-384
Prerequisites:
-
ECDSA SigVer (186-4)
- Capabilities:
- Curve: P-256
- Hash Algorithm: SHA-1, SHA2-256, SHA2-384
- Capabilities:
- Curve: P-384
- Hash Algorithm: SHA-1, SHA2-256, SHA2-384
Prerequisites:
-
HMAC-SHA-1
- MAC: 96, 160
- Key sizes < block size
- Key size = block size
- Key sizes > block size
Prerequisites:
-
HMAC-SHA2-256
- MAC: 256
- Key sizes < block size
- Key size = block size
- Key sizes > block size
Prerequisites:
-
HMAC-SHA2-384
- MAC: 384
- Key sizes < block size
- Key sizes > block size
- Key size = block size
Prerequisites:
-
KAS-ECC CDH-Component
- Function: Key Pair Generation, Partial Public Key Validation
- Curve: P-256, P-384
-
KAS-ECC Component
- Function: Key Pair Generation, Partial Public Key Validation
- Scheme:
- Ephemeral Unified:
- KAS Role: Initiator, Responder
- Shared Secret Computation:
- Parameter Set:
- EC:
- Hash Algorithm: SHA2-256
- Curve: P-256
- ED:
- Hash Algorithm: SHA2-384
- Curve: P-384
Prerequisites:
-
KDF TLS
- TLS Version: v1.0/1.1, v1.2
- Hash Algorithm: SHA2-256, SHA2-384
Prerequisites:
-
RSA SigGen (186-4)
- Capabilities:
- Signature Type: PKCS 1.5
- Properties:
- Modulo: 2048
- Hash Pair:
- Hash Pair:
- Hash Pair:
- Properties:
- Modulo: 3072
- Hash Pair:
- Hash Pair:
- Hash Pair:
Prerequisites:
-
RSA SigVer (186-4)
- Capabilities:
- Signature Type: PKCS 1.5
- Properties:
- Modulo: 2048
- Hash Pair:
- Hash Pair:
- Hash Pair:
- Properties:
- Modulo: 3072
- Hash Pair:
- Hash Pair:
- Hash Pair:
- Public Exponent Mode: Fixed
- Fixed Public Exponent: 10001
Prerequisites:
-
SHA-1
- Message Length: 0-51200 Increment 8
-
SHA-256
- Message Length: 0-51200 Increment 8
-
SHA-384
- Message Length: 0-102400 Increment 8
Created October 05, 2016, Updated June 22, 2020