U.S. flag   An unofficial archive of your favorite United States government website
Dot gov

Official websites do not use .rip
We are an unofficial archive, replace .rip by .gov in the URL to access the official website. Access our document index here.

Https

We are building a provable archive!
A lock (Dot gov) or https:// don't prove our archive is authentic, only that you securely accessed it. Note that we are working to fix that :)

This is an archive
(replace .gov by .rip)

Cryptographic Module Validation Program CMVP

Certificate #3143

Details

Module Name
Oracle Linux 7 NSS Cryptographic Module
Standard
FIPS 140-2
Status
Active
Sunset Date
2/28/2023
Validation Dates
03/01/2018;09/25/2018
Overall Level
1
Caveat
When operated in FIPS mode. The module generates cryptographic keys whose strengths are modified by available entropy
Security Level Exceptions
  • Roles, Services, and Authentication: Level 2
  • Physical Security: N/A
  • Design Assurance: Level 3
Module Type
Software
Embodiment
Multi-Chip Stand Alone
Description
Oracle Linux 7 NSS Cryptographic Module is a set of libraries designed to support cross-platform development of security-enabled applications.
Tested Configuration(s)
  • Oracle Linux 7.3 64 bit running on Oracle Server X6-2 with Intel(R) Xeon(R) CPU E5-2699 v4 with PAA
  • Oracle Linux 7.3 64 bit running on Oracle Server X6-2 with Intel(R) Xeon(R) CPU E5-2699 v4 without PAA
  • Oracle Linux 7.3 64 bit running on Oracle Server X7-2 with PAA
  • Oracle Linux 7.3 64 bit running on Oracle Server X7-2 without PAA (single-user mode)
FIPS Algorithms
AES Certs. #4648, #4649, #5654 and #5655
CKG vendor-affirmed
CVL Certs. #1300, #1301, #2046 and #2077
DRBG Certs. #1568 and #2284
DSA Certs. #1229 and #1454
ECDSA Certs. #1145 and #1528
HMAC Certs. #3077 and #3767
KTS AES Certs. #4648, #4649, #5654 and #5655, key wrapping; key establishment methodology provides between 128 and 256 bits of encryption strength
RSA Certs. #2536 and #3044
SHS Certs. #3808 and #4535
Triple-DES Certs. #2472 and #2838
Allowed Algorithms
Diffie-Hellman (CVL Certs. #1300 and #2046 with CVL Certs. #1301 and #2077, key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); EC Diffie-Hellman (CVL Certs. #1300 and #2046 with CVL Certs. #1301 and #2077, key agreement; key establishment methodology provides between 128 and 256 bits of encryption strength); NDRNG; MD5; RSA (key wrapping; key establishment methodology provides between 112 and 256 bits of encryption strength)
Software Versions
R7-2.0.0

Vendor

Oracle Corporation
500 Oracle Parkway
Redwood Shores, CA 94065
USA

Honglin Su
honglin.su@oracle.com
Phone: +1 650-607-0970

Lab

ATSEC INFORMATION SECURITY CORP
NVLAP Code: 200658-0