U.S. flag   An unofficial archive of your favorite United States government website
Dot gov

Official websites do not use .rip
We are an unofficial archive, replace .rip by .gov in the URL to access the official website. Access our document index here.

Https

We are building a provable archive!
A lock (Dot gov) or https:// don't prove our archive is authentic, only that you securely accessed it. Note that we are working to fix that :)

This is an archive
(replace .gov by .rip)

Cryptographic Module Validation Program CMVP

Certificate #3875

Details

Module Name
VMware OpenSSL FIPS Object Module
Standard
FIPS 140-2
Status
Active
Sunset Date
1/29/2022
Validation Dates
03/29/2021
Overall Level
1
Caveat
When operated in FIPS mode. No assurance of the minimum strength of generated keys. The module generates cryptographic keys whose strengths are modified by available entropy. This validation entry is a non-security-relevant modification to Cert. #2839
Security Level Exceptions
  • Roles, Services, and Authentication: Level 2
  • Physical Security: N/A
  • Design Assurance: Level 3
  • Mitigation of Other Attacks: N/A
Module Type
Software
Embodiment
Multi-Chip Stand Alone
Description
The VMware OpenSSL FIPS Object Module provides cryptographic functions to various VMware applications.
Tested Configuration(s)
  • Amazon Linux 2 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 with PAA (gcc Compiler Version 5.3.0)
  • Amazon Linux 2 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 without PAA (gcc Compiler Version 5.3.0)
  • BLUX 4.4 on ESXi 6.5 on Intel Xeon with PAA (gcc Compiler version 5.3.0)
  • BLUX 4.4 on ESXi 6.5 on Intel Xeon without PAA (gcc Compiler version 5.3.0)
  • BLUX 4.9 on ESXi 6.5 on Intel Xeon with PAA (gcc Compiler version 5.3.0)
  • BLUX 4.9 on ESXi 6.5 on Intel Xeon without PAA (gcc Compiler version 5.3.0)
  • PhotonOS 1.0 on ESXi 6.0 on Intel Xeon with PAA (gcc Compiler Version 5.3.0)
  • PhotonOS 1.0 on ESXi 6.0 on Intel Xeon without PAA (gcc Compiler Version 5.3.0)
  • PhotonOS 1.0 on ESXi 6.5 on Intel Xeon with PAA (gcc Compiler Version 5.3.0)
  • PhotonOS 1.0 on ESXi 6.5 on Intel Xeon without PAA (gcc Compiler Version 5.3.0)
  • PhotonOS 1.0 on ESXi 6.7 on Intel Xeon with PAA (gcc Compiler Version 5.3.0)
  • PhotonOS 1.0 on ESXi 6.7 on Intel Xeon without PAA (gcc Compiler Version 5.3.0)
  • PhotonOS 2.0 on ESXi 6.0 on Intel Xeon with PAA (gcc Compiler Version 5.3.0)
  • PhotonOS 2.0 on ESXi 6.0 on Intel Xeon without PAA (gcc Compiler Version 5.3.0)
  • PhotonOS 2.0 on ESXi 6.5 on Intel Xeon with PAA (gcc Compiler Version 5.3.0)
  • PhotonOS 2.0 on ESXi 6.5 on Intel Xeon without PAA (gcc Compiler Version 5.3.0)
  • PhotonOS 2.0 on ESXi 6.7 on Intel Xeon with PAA (gcc Compiler Version 5.3.0)
  • PhotonOS 2.0 on ESXi 6.7 on Intel Xeon without PAA (gcc Compiler Version 5.3.0)
  • PhotonOS 3.0 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 with PAA (gcc Compiler Version 5.3.0)
  • PhotonOS 3.0 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 without PAA (gcc Compiler Version 5.3.0)
  • SLES 11 on ESXi 6.7 on Intel Xeon with PAA (gcc Compiler Version 5.3.0)
  • SLES 11 on ESXi 6.7 on Intel Xeon without PAA (gcc Compiler Version 5.3.0)
  • SLES 11 SP3 on ESXi 6.0 on Intel Xeon with PAA (gcc Compiler Version 5.3.0)
  • SLES 11 SP3 on ESXi 6.0 on Intel Xeon without PAA (gcc Compiler Version 5.3.0)
  • SLES 12 on ESXi 6.5 on Intel Xeon with PAA (gcc Compiler Version 5.3.0)
  • SLES 12 on ESXi 6.5 on Intel Xeon without PAA (gcc Compiler Version 5.3.0)
  • Ubuntu 14.04 on ESXi 6.0 on Intel Xeon with PAA (gcc Compiler version 4.6.3)
  • Ubuntu 14.04 on ESXi 6.0 on Intel Xeon without PAA (gcc Compiler version 4.6.3)
  • Ubuntu 14.04 on ESXi 6.5 on Intel Xeon with PAA (gcc Compiler version 4.6.3)
  • Ubuntu 14.04 on ESXi 6.5 on Intel Xeon without PAA (gcc Compiler version 4.6.3)
  • Ubuntu 16.04 on ESXi 6.0 on Intel Xeon with PAA (gcc Compiler version 4.6.3)
  • Ubuntu 16.04 on ESXi 6.0 on Intel Xeon without PAA (gcc Compiler version 4.6.3)
  • Ubuntu 16.04 on ESXi 6.5 on Intel Xeon with PAA (gcc Compiler version 4.6.3)
  • Ubuntu 16.04 on ESXi 6.5 on Intel Xeon without PAA (gcc Compiler version 4.6.3)
  • Ubuntu 16.04 on ESXi 6.7 on Intel Xeon with PAA (gcc Compiler Version 4.6.3)
  • Ubuntu 16.04 on ESXi 6.7 on Intel Xeon without PAA (gcc Compiler Version 4.6.3)
  • Ubuntu 16.04 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 with PAA (gcc Compiler Version 4.6.3)
  • Ubuntu 16.04 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 without PAA (gcc Compiler Version 4.6.3)
  • Ubuntu 18.04 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 with PAA (gcc Compiler Version 4.6.3)
  • Ubuntu 18.04 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 without PAA (gcc Compiler Version 4.6.3)
  • Ubuntu 20.04 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 with PAA (gcc Compiler Version 4.6.3)
  • Ubuntu 20.04 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 without PAA (gcc Compiler Version 4.6.3)
  • VMware NSX Controller OS 12.04 on ESXi 6.0 on Intel Xeon with PAA (gcc Compiler Version 4.6.3)
  • VMware NSX Controller OS 12.04 on ESXi 6.0 on Intel Xeon without PAA (gcc Compiler Version 4.6.3)
  • VMware NSX Edge OS 3.14 on ESXi 6.0 on Intel Xeon without PAA (gcc Compiler Version 4.6.3)
  • VMware NSX Edge OS 3.14 on ESXi6.0 on Intel Xeon with PAA (gcc Compiler Version 4.6.3)
  • VMware NSX Manager OS 3.17 on ESXi 6.0 on Intel Xeon with PAA (gcc Compiler Version 4.6.3)
  • VMware NSX Manager OS 3.17 on ESXi 6.0 on Intel Xeon without PAA (gcc Compiler Version 4.6.3)
  • Windows 10 on ESXi 6.0 on Intel Core I with PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 10 on ESXi 6.0 on Intel Core I without PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 10 on ESXi 6.5 on Intel Xeon with PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 10 on ESXi 6.5 on Intel Xeon without PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 10 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 with PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 10 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 without PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1) (single-user mode)
  • Windows 10 on Intel Core I with PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 10 on Intel Core I without PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 2012 64 bit on ESXi 6.0 on Intel Xeon with PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 2012 64 bit on ESXi 6.0 on Intel Xeon without PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 2012 R2 on ESXi 6.0 on Intel Xeon with PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 2012 R2 on ESXi 6.0 on Intel Xeon without PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 2016 on ESXi 6.0 on Intel Xeon with PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 2016 on ESXi 6.0 on Intel Xeon without PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 7 SP1 on ESXi 6.0 on Intel Core I with PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 7 SP1 on ESXi 6.0 on Intel Core I without PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 8.1 on ESXi 6.0 on Intel Core I with PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 8.1 on ESXi 6.0 on Intel Core I without PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows Server 2008 on ESXi 6.5 on Intel Xeon with PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows Server 2008 on ESXi 6.5 on Intel Xeon without PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows Server 2012 on ESXi 6.5 on Intel Xeon with PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows Server 2012 on ESXi 6.5 on Intel Xeon without PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows Server 2016 on ESXi 6.5 on Intel Xeon with PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows Server 2016 on ESXi 6.5 on Intel Xeon without PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows Server 2016 on ESXi 6.7 on Intel Xeon with PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows Server 2016 on ESXi 6.7 on Intel Xeon without PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows Server 2016 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 with PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows Server 2016 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 without PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows Server 2019 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 with PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows Server 2019 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 without PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Within ESXi 6.7 on Intel Xeon 6126 with PAA
  • Within ESXi 6.7 on Intel Xeon 6126 without PAA
  • Within ESXi 6.7 on Intel Xeon E5-2440 with PAA
  • Within ESXi 6.7 on Intel Xeon E5-2440 without PAA
FIPS Algorithms
AES Certs. #4137 and #C1970
DRBG Certs. #1254 and #C1970
DSA Certs. #1123 and #C1970
ECDSA Certs. #949 and #C1970
HMAC Certs. #2710 and #C1970
KAS-SSC vendor affirmed
RSA Certs. #2251 and #C1970
SHS Certs. #3407 and #C1970
Triple-DES Certs. #2261 and #C1970
Allowed Algorithms
RSA (key wrapping; key establishment methodology provides between 112 and 256 bits of encryption strength)
Software Versions
2.0.9

Vendor

VMware, Inc.
3401 Hillview Ave
Palo Alto, CA 94304
USA

Manoj Maskara
mmaskara@vmware.com
Phone: 650-427-1000
Fax: 650-475-5001
n/a
n/a
Phone: n/a
Fax: n/a

Lab

ACUMEN SECURITY, LLC
NVLAP Code: 201029-0