Module Name
Fornetix® Key Orchestration(tm)
Validation Dates
10/23/2020
Caveat
When operated in FIPS mode. This module contains the embedded module Red Hat Enterprise Linux 6.9 OpenSSL Module validated to FIPS 140-2 under Cert. #2441 operating in FIPS mode
Security Level Exceptions
- Roles, Services, and Authentication: Level 3
- Mitigation of Other Attacks: N/A
Embodiment
Multi-Chip Stand Alone
Description
Fornetix Key Orchestration provides scalable, secure, and interoperable orchestration of cryptography and key lifecycle management for IoT, Datacenter and Cloud Applications. OpenSSL is used in the Key Orchestration Appliance is used as an exportable cryptography engine supporting cryptographic lifecycle operations executed by the appliance.
FIPS Algorithms
AES |
Cert. #C1131 |
CVL |
Certs. #C1131 and #C1150 |
DRBG |
Cert. #C1131 |
HMAC |
Cert. #C1131 |
KTS |
AES Cert. #C1131 |
KTS |
AES Cert. #C1131 and HMAC Cert. #C1131; key establishment methodology provides between 128 and 256 bits of encryption strength |
RSA |
Cert. #C1131 |
SHS |
Cert. #C1131 |
Allowed Algorithms
Diffie-Hellman (key agreement; key establishment methodology provides 112 bits of encryption strength); NDRNG; RSA Key Wrapping (key wrapping; key establishment methodology provides between 112 and 150 bits of encryption strength)
Hardware Versions
KO-2000
Firmware Versions
2.2-FIPS