Certificate 2398 - OpenSSL FIPS Object Module SE
intCertNum 2398
strVendorName OpenSSL Software Foundation
strURL http://openssl.com
strAddress1 1829 Mount Ephraim Road
strAddress2
strAddress3
strCity Adamstown
strStateProv MD
strPostalCode 21710
strCountry 21710
strContact Steve Marquess
strEmail marquess@openssl.com
strPhone 800-673-6775
strFax
strContact2
strEmail2
strFax2
strPhone2
intCertNum 2398
strModuleName OpenSSL FIPS Object Module SE
strPartNumber Software Versions: 2.0.9, 2.0.10, 2.0.11, 2.0.12 or 2.0.13
memModuleNotes When built, installed, protected and initialized as assumed by the Crypto Officer role and as specified in the provided Security Policy. Appendix A of the provided Security Policy specifies the actual distribution tar file containing the source code of this module. There shall be no additions, deletions or alterations to the tar file contents as used during module build. The distribution tar file shall be verified as specified in Appendix A of the provided Security Policy. Installation and protection shall be completed as specified in Appendix A of the provided Security Policy. Initialization shall be invoked as per Section 4 of the provided Security Policy. Any deviation from specified verification, protection, installation and initialization procedures will result in a non FIPS 140-2 compliant module.
str140Version 140-2
_sp_ Security Policy   [pdf][html][txt]
_cert_ Certificate   [pdf]
strPURL
strModuleType Software
strValidationDate 06/24/2015;12/17/2015;02/08/2016;08/15/2016
intOverallLevel 1
memIndividualLevelNotes -Roles, Services, and Authentication: Level 2;-Physical Security: N/A ;-Design Assurance: Level 3;-Mitigation of Other Attacks: N/A ;;;-Operational Environment: TS-Linux 2.4 running on Arm920Tid (ARMv4) (gcc Compiler Version 4.3.2); iOS 8.1 64­bit running on Apple A7 (ARMv8) without NEON and Crypto Extensions (clang Compiler Version 600.0.56); iOS 8.1 64­bit running on Apple A7 (ARMv8) with NEON and Crypto Extensions (clang Compiler Version 600.0.56); VxWorks 6.9 running on Freescale P2020 (PPC) (gcc Compiler Version 4.3.3); iOS 8.1 32­bit running on Apple A7 (ARMv8) without NEON (clang Compiler Version 600.0.56); iOS 8.1 32­bit running on Apple A7 (ARMv8) with NEON (clang Compiler Version 600.0.56); Android 5.0 32-bit running on Qualcomm APQ8084 (ARMv7) without NEON (gcc Compiler Version 4.9); Android 5.0 32-bit running on Qualcomm APQ8084 (ARMv7) with NEON (gcc Compiler Version 4.9); Android 5.0 64-bit running on SAMSUNG Exynos7420 (ARMv8) without NEON and Crypto Extensions (gcc Compiler Version 4.9); Android 5.0 64-bit running on SAMSUNG Exynos7420 (ARMv8) with NEON and Crypto Extensions (gcc Compiler Version 4.9); VxWorks 6.7 running on Intel Core 2 Duo (x86) (gcc Compiler Version 4.1.2); AIX 6.1 32-bit running on IBM POWER 7 (PPC) (IBM XL C/C++ for AIX Compiler Version V13.1); AIX 6.1 64-bit running on IBM POWER 7 (PPC) (IBM XL C/C++ for AIX Compiler Version V13.1); AIX 7.1 32-bit running on IBM POWER 7 (PPC) (IBM XL C/C++ for AIX Compiler Version V13.1); AIX 7.1 64-bit running on IBM POWER 7 (PPC) (IBM XL C/C++ for AIX Compiler Version V13.1); DataGravity Discovery Series OS V2.0 running on Intel Xeon E5-2420 (x86) without AES-NI (gcc Compiler Version 4.7.2); DataGravity Discovery Series OS V2.0 running on Intel Xeon E5-2420 (x86) with AES-NI (gcc Compiler Version 4.7.2); AIX 6.1 32-bit running on IBM POWER 7 (PPC) with optimizations (IBM XL C/C++ for AIX Compiler Version V10.1); AIX 6.1 64-bit running on IBM POWER 7 (PPC) with optimizations (IBM XL C/C++ for AIX Compiler Version V10.1); Ubuntu 12.04 running on Intel Xeon E5-2430L (x86) without AES-NI (gcc Compiler Version 4.6.3); Ubuntu 12.04 running on Intel Xeon E5-2430L (x86) with AES-NI (gcc Compiler Version 4.6.3); Linux 3.10 32-bit running on Intel Atom E3845 (x86) without AES-NI (gcc Compiler Version 4.8.1); Linux 3.10 32-bit running on Intel Atom E3845 (x86) with AES-NI (gcc Compiler Version 4.8.1); AIX 7.1 32-bit running on IBM Power8 (PPC) without PAA (IBM XL Compiler V13.1); AIX 7.1 32-bit running on IBM Power8 (PPC) with PAA (IBM XL Compiler V13.1); AIX 7.1 64-bit running on IBM Power8 (PPC) without PAA (IBM XL Compiler V13.1); AIX 7.1 64-bit running on IBM Power8 (PPC) with PAA (IBM XL Compiler V13.1); AIX 7.2 32-bit running on IBM Power8 (PPC) without PAA (IBM XL Compiler V13.1); AIX 7.2 32-bit running on IBM Power8 (PPC) with PAA (IBM XL Compiler V13.1); AIX 7.2 64-bit running on IBM Power8 (PPC) without PAA (IBM XL Compiler V13.1); AIX 7.2 64-bit running on IBM Power8 (PPC) with PAA (IBM XL Compiler V13.1); AIX 7.2 32-bit running on IBM Power7 (PPC) without PAA (IBM XL Compiler V13.1); AIX 7.2 64-bit running on IBM Power7 (PPC) without PAA (IBM XL Compiler V13.1) (single-user mode)
strFIPSAlgorithms AES (Certs. #3090, #3264, #3451, #3751 and #3990);
CVL (Certs. #372, #472, #534, #699 and #814);
DRBG (Certs. #1027, #607, #723, #845 and #1182);
DSA (Certs. #1040, #896, #933, #970 and #1085);
ECDSA (Certs. #558, #620, #698, #801 and #886);
HMAC (Certs. #1937, #2063, #2197, #2452 and #2605);
RSA (Certs. #1581, #1664, #1766, #1928 and #2048);
SHS (Certs. #2553, #2702, #2847, #3121 and #3294);
Triple-DES (Certs. #1780, #1853, #1942, #2086 and #2190)
strOtherAlgorithms EC Diffie-Hellman;
RSA (encrypt/decrypt);
RNG
strConfiguration Multi-chip standalone
memModuleDescription The OpenSSL FIPS Object Module SE is a general purpose cryptographic module delivered as open source code. It is designed for ease of use with the popular OpenSSL cryptographic library and toolkit and is available for use without charge for a wide variety of platforms. The basic validation can also be extended quickly and affordably to accommodate new platforms and many types of modifications.
intModuleCount 1
memAdditionalNotes Updated software versions (2.0.10 or 2.0.11) to include 20 new OEs (all regression tested by the lab). This invoked new CAV certificates that are tested on the new OEs.
Deprecated use of non-approved RNG. Updated SW version. Added tested configurations.
strFirstValidtionDate 06/24/15 00:00:00
strLabName InfoGard
strValidationYear 2015