Module Name
NetApp CryptoMod
Validation Dates
12/04/2017
Caveat
When operated in FIPS mode
Security Level Exceptions
- Physical Security: N/A
- Mitigation of Other Attacks: N/A
Embodiment
Multi-Chip Stand Alone
Description
NetApp CryptoMod will be integrated into select NetApp ONTAP releases for the purpose of supporting FIPS 140-2 compliant data-at-rest encryption and key management.
Tested Configuration(s)
- ONTAP 9.2 on a AFF A700 system with PAA (single-user mode)
- ONTAP 9.2 on a AFF A700 system without PAA
FIPS Algorithms
AES |
Cert. #4563 |
CKG |
vendor affirmed |
DRBG |
Cert. #1510 |
HMAC |
Cert. #3014 |
KTS |
AES Cert. #4563 key establishment methodology provides 256 bits of encryption strength |
PBKDF |
vendor affirmed |
SHS |
Cert. #3740 |