Module Name
VMware's BoringCrypto Module
Validation Dates
03/13/2021
Caveat
When installed, initialized and configured as specified in Section 3.1 of the Security Policy and operated in FIPS mode. The module generates cryptographic keys whose strengths are modified by available entropy
Security Level Exceptions
- Physical Security: N/A
- Mitigation of Other Attacks: N/A
Embodiment
Multi-Chip Stand Alone
Description
VMware’s BoringCrypto Module is a versatile software library that implements FIPS 140-2 Approved cryptographic services for VMware products and platforms.
Tested Configuration(s)
- Amazon Linux 2 on ESXi 7.0 running on Dell PowerEdge R740 with Intel® Xeon Gold 6126 with PAA
- Amazon Linux 2 on ESXi 7.0 running on Dell PowerEdge R740 with Intel® Xeon Gold 6126 without PAA
- Photon OS 2.0 on ESXi 7.0 running on Dell PowerEdge R740 with Intel® Xeon Gold 6126 with PAA
- Photon OS 2.0 on ESXi 7.0 running on Dell PowerEdge R740 with Intel® Xeon Gold 6126 without PAA
- Photon OS 3.0 on ESXi 6.7 running on Dell PowerEdge R740 with Intel® Xeon Gold 6126 with PAA
- Photon OS 3.0 on ESXi 6.7 running on Dell PowerEdge R740 with Intel® Xeon Gold 6126 without PAA
- Photon OS 3.0 on ESXi 7.0 running on Dell PowerEdge R740 with Intel® Xeon Gold 6126 with PAA
- Photon OS 3.0 on ESXi 7.0 running on Dell PowerEdge R740 with Intel® Xeon Gold 6126 without PAA
- Red Hat Enterprise Linux 7.7 on ESXi 7.0 running on Dell PowerEdge R740 with Intel® Xeon Gold 6126 with PAA
- Red Hat Enterprise Linux 7.7 on ESXi 7.0 running on Dell PowerEdge R740 with Intel® Xeon Gold 6126 without PAA
- Ubuntu 16.04 on ESXi 7.0 running on Dell PowerEdge R740 with Intel® Xeon Gold 6126 with PAA
- Ubuntu 16.04 on ESXi 7.0 running on Dell PowerEdge R740 with Intel® Xeon Gold 6126 without PAA
- Ubuntu 18.04 on ESXi 7.0 running on Dell PowerEdge R740 with Intel® Xeon Gold 6126 with PAA
- Ubuntu 18.04 on ESXi 7.0 running on Dell PowerEdge R740 with Intel® Xeon Gold 6126 without PAA
- Ubuntu 20.04 on ESXi 7.0 running on Dell PowerEdge R740 with Intel® Xeon Gold 6126 with PAA
- Ubuntu 20.04 on ESXi 7.0 running on Dell PowerEdge R740 with Intel® Xeon Gold 6126 without PAA
- Ubuntu 20.04 running on Dell Latitude E7450 with Intel® Core i5 with PAA
- Ubuntu 20.04 running on Dell Latitude E7450 with Intel® Core i5 without PAA (single-user mode)
- Within ESXi 7.0 (as a host) running on Dell PowerEdge R740 with Intel® Xeon Gold 6126 with PAA
- Within ESXi 7.0 (as a host) running on Dell PowerEdge R740 with Intel® Xeon Gold 6126 without PAA
FIPS Algorithms
AES |
Cert. #C2129 |
CVL |
Cert. #C2129 |
DRBG |
Cert. #C2129 |
ECDSA |
Cert. #C2129 |
HMAC |
Cert. #C2129 |
KTS |
AES Cert. #C2129; key establishment methodology provides between 128 and 256 bits of encryption strength |
RSA |
Cert. #C2129 |
SHS |
Cert. #C2129 |
Triple-DES |
Cert. #C2129 |
Allowed Algorithms
NDRNG; RSA (key wrapping; key establishment methodology provides between 112 and 256 bits of encryption strength)