U.S. flag   An unofficial archive of your favorite United States government website
Dot gov

Official websites do not use .rip
We are an unofficial archive, replace .rip by .gov in the URL to access the official website. Access our document index here.

Https

We are building a provable archive!
A lock (Dot gov) or https:// don't prove our archive is authentic, only that you securely accessed it. Note that we are working to fix that :)

Cryptographic Module Validation Program CMVP

Certificate #4266

Details

Module Name
Oracle Linux 7 Libreswan Cryptographic Module
Standard
FIPS 140-2
Status
Active
Sunset Date
9/21/2026
Overall Level
1
Caveat
When operated in FIPS mode with Oracle Linux 7 NSS Cryptographic Module validated to FIPS 140-2 under Cert. #4171 operating in FIPS mode and Oracle Linux OpenSSL Cryptographic Module validated to FIPS 140-2 under Cert. #4170 operating in FIPS mode
Security Level Exceptions
  • Physical Security: N/A
  • Design Assurance: Level 3
  • Mitigation of Other Attacks: N/A
Module Type
Software
Embodiment
Multi-Chip Stand Alone
Description
The Oracle Linux 7 Libreswan Cryptographic Module is a framework for providing cryptographic services to other network entities implementing the IKEv1 and IKEv2 protocols.
Tested Configuration(s)
  • Oracle Linux 7.8 64 bit running on Oracle Server A1-2C with Ampere(R) Altra(R) Neoverse-N1 7551 with PAA
  • Oracle Linux 7.8 64 bit running on Oracle Server A1-2C with Ampere(R) Altra(R) Neoverse-N1 7551 without PAA (single-user mode)
  • Oracle Linux 7.8 64 bit running on Oracle Server E1-2C with AMD EPYC(TM) 7551 with PAA
  • Oracle Linux 7.8 64 bit running on Oracle Server E1-2C with AMD EPYC(TM) 7551 without PAA
  • Oracle Linux 7.8 64 bit running on Oracle Server X7-2C with Intel(R) Xeon(R) Platinum 8167M with PAA
  • Oracle Linux 7.8 64 bit running on Oracle Server X7-2C with Intel(R) Xeon(R) Platinum 8167M without PAA
FIPS Algorithms
AES Certs. #A1097, #A1179 and #A2580
CVL Cert. #A1903
DRBG Cert. #A1179
ECDSA Cert. #A1179
ENT NP
HMAC Certs. #A1179, #A1224, #A1225, #A1226, #A1227 and #A2395
KAS KAS-SSC Cert. #A1179, CVL Cert. #A1903
KAS-SSC Cert. #A1179
RSA Cert. #A1179
SHS Certs. #A1179, #A1224, #A1225, #A1226, #A1227 and #A2395
Triple-DES Cert. #A1179
Allowed Algorithms
N/A
Software Versions
R7-7.8.0

Vendor

Oracle Corporation
2300 Oracle Way
Austin, TX 78741
USA

Security Evaluation team
seceval_us@oracle.com

Validation History

Date Type Lab
7/18/2022 Initial ATSEC INFORMATION SECURITY CORP