U.S. flag   An unofficial archive of your favorite United States government website
Dot gov

Official websites do not use .rip
We are an unofficial archive, replace .rip by .gov in the URL to access the official website. Access our document index here.

Https

We are building a provable archive!
A lock (Dot gov) or https:// don't prove our archive is authentic, only that you securely accessed it. Note that we are working to fix that :)

This is an archive
(replace .gov by .rip)

Cryptographic Module Validation Program CMVP

Certificate #3768

Details

Module Name
REDCOM OpenSSL Cryptographic Module
Standard
FIPS 140-2
Status
Active
Sunset Date
12/2/2023
Validation Dates
12/14/2020
Overall Level
1
Caveat
When operated in FIPS mode. The module generates cryptographic keys whose strengths are modified by available entropy
Security Level Exceptions
  • Roles, Services, and Authentication: Level 2
  • Physical Security: N/A
  • Design Assurance: Level 3
  • Mitigation of Other Attacks: N/A
Module Type
Software
Embodiment
Multi-Chip Stand Alone
Description
REDCOM OpenSSL Cryptographic Module is used with various REDCOM products. The module offloads functions for key management, data integrity, data at rest encryption, and communications to a trusted implementation. The module is a multi-chip standalone embodiment installed on a General-Purpose Device and relies on physical characteristics of the host. The physical cryptographic boundary is defined by the enclosure of the host platform. Operations occur via calls from host applications and their internal daemons/processes. As such there are no untrusted services calling the services of the module
Tested Configuration(s)
  • Oracle® Linux 7.6 64 bit running on Oracle® X7-2 Server with Intel® Xeon® Silver 4114 with PAA
  • Oracle® Linux 7.6 64 bit running on Oracle® X7-2 Server with Intel® Xeon® Silver 4114 without PAA
FIPS Algorithms
DRBG (Cert. #C1651
AES Cert. #C1651
CKG vendor affirmed
CVL Cert. #C1651
DSA Cert. #C1651
ECDSA Cert. #C1651
HMAC Cert. #C1651
RSA Cert. #C1651
SHS Cert. #C1651
Triple-DES Cert. #C1651
Allowed Algorithms
Diffie-Hellman (key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); EC Diffie-Hellman (CVL Cert. #C1651, key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); NDRNG; RSA (key wrapping; key establishment methodology provides between 112 and 256 bits of encryption strength)
Software Versions
1.0

Vendor

REDCOM Laboratories, Inc.
1 Redcom Center
Victor, NY 14564
USA

Sal Ceravolo
Sal.ceravolo@redcom.com
Phone: 585-924-7550
Fax: N/A
Jeffrey A. Smith
Jeffrey.A.Smith@redcom.com
Phone: 585-924-7550
Fax: N/A

Lab

ACUMEN SECURITY, LLC
NVLAP Code: 201029-0