Computer Security Resource Center

Computer Security Resource Center

Computer Security
Resource Center

Cryptographic Algorithm Validation Program

Description
The OpenSSL FIPS Object Module is a full featured general purpose cryptographic library that is distributed in source code form under an open source license. It can be downloaded from www.openssl.org/source/.
Version
2.0.10
Type
SOFTWARE
Vendor
OpenSSL Validation Services, Inc.
1829 Mount Ephraim Road
Adamstown, MD 21710
USA
Contacts
Steve Marquess
marquess@veridicalsystems.com
301-874-2571

Validations

Number
Date
Operating Environments
Algorithm Capabilities
AES 3264
3/13/2015
    • Apple A7 (ARMv8) 64-bit without NEON and Crypto Extensions w/ iOS 8.1
    • Apple A7 (ARMv8) 64-bit with NEON and Crypto Extensions w/ iOS 8.1
    • Freescale P2020 (PPC) w/ VxWorks 6.9
    • Apple A7 (ARMv8) with NEON w/ iOS 8.1 32-bit
    • Apple A7 (ARMv8) without NEON w/ iOS 8.1 32-bit
    • Qualcomm APQ8084 (ARMv7) without NEON w/ Android 5.0 32-bit
    • Qualcomm APQ8084 (ARMv7) with NEON w/ Android 5.0 32-bit
    • SAMSUNG Exynos7420 (ARMv8) without NEON and Crypto Extensions w/ Android 5.0 64-bit
    • SAMSUNG Exynos7420 (ARMv8) with NEON and Crypto Extensions w/ Android 5.0 64-bit
    • Intel Xeon E5-2430L (x86) with AES-NI optimizations w/ FreeBSD 10.2
    • Intel Xeon E5-2430L (x86) without AES-NI optimizations w/ FreeBSD 10.2
    • Freescale i.MX6 (ARMv7) w/ Yocto Linux 3.10
    • Freescale i.MX6 (ARMv7) with NEON w/ Yocto Linux 3.10
    • ARM926EJ-S (ARMv5) w/ Linux 4.4
    • PowerPC 440 (PPC) w/ Timesys 2.6
    • Marvell Feroceon 88FR131 (ARMv5TE) w/ uClinux-dist-5.0
    • Marvell Armada 370 (ARMv7) w/ uClinux-dist-5.0
    • ARM926EJS (ARMv5TEJ) w/ uClibc 0.9
    • Marvell PJ4 (ARMv7) w/ uClibc 0.9
    • ARM922T (ARMv4T) w/ uClibc 0.9
    • Intel Xeon E3-1231 (x86) without AES-NI w/ LMOS 7.2
    • Intel Xeon E3-1231 (x86) with AES-NI w/ LMOS 7.2
    • Intel Xeon E5-2430L without AES-NI w/ LMOS 7.2 under VMware ESXi 6.5
    • Intel Xeon E5-2430L with AES-NI w/ LMOS 7.2 under VMware ESXi 6.5
    • Marvell Mohawk (ARMv5TE) w/ Debian 7.9
    • Atmel ATSAMA5D35 (ARMv7) w/ Linux 3.16
    • Atmel ATSAM9G45 (ARMv5TEJ) w/ Linux 3.16
    • Intel Atom Z3735F (x86) w/ Android 4.4 32-bit
    • ARM Cortex A9 (ARMv7) without NEON w/ Linux 3.14
    • ARM Cortex A9 (ARMv7) with NEON w/ Linux 3.14
    • Intel Xeon E5-165 without AES-NI w/ BAE Systems STOP 8.2 64-bit running on BAE XTS-600-W-T
    • Intel Xeon E5-165 with AES-NI w/ BAE Systems STOP 8.2 64-bit running on BAE XTS-600-W-T
    • Cortex-A9 (ARMv7) w/ Ubuntu 12.04
  • AES-CBC
    • Direction: Decrypt, Encrypt
    • Key Length: 128, 192, 256
  • AES-CCM
    • Key Length: 128, 192, 256
    • Tag Length: 32, 48, 64, 80, 96, 112, 128
    • IV Length: 56, 64, 72, 80, 88, 96, 104
    • Payload Length: 0-256
    • AAD Length: 0-524288
  • AES-CFB1
    • Direction: Decrypt, Encrypt
    • Key Length: 128, 192, 256
  • AES-CFB128
    • Direction: Decrypt, Encrypt
    • Key Length: 128, 192, 256
  • AES-CFB8
    • Direction: Decrypt, Encrypt
    • Key Length: 128, 192, 256
  • AES-CMAC
      • Capabilities:
        • Direction: Generation, Verification
        • Key Length: 128, 192, 256
        • MAC: 16-128
        • Message Length: 0-524288
        • Block Size: Full, Partial
  • AES-CTR
    • Counter Source: External
    • Key Length: 128, 192, 256
  • AES-ECB
    • Direction: Decrypt, Encrypt
    • Key Length: 128, 192, 256
  • AES-GCM
    • Direction: Decrypt, Encrypt
    • IV Generation: Internal
    • IV Generation Mode: 8.2.1
    • Key Length: 128, 192, 256
    • Tag Length: 32, 64, 96, 104, 112, 120, 128
    • IV Length: 96
    • Payload Length: 504, 512, 1016, 1024
    • AAD Length: 0, 504, 512, 1016, 1024
  • AES-OFB
    • Direction: Decrypt, Encrypt
    • Key Length: 128, 192, 256
  • AES-XTS
    • Key Length: 128
    • Direction: Decrypt, Encrypt
    • Block Size: Full, Partial
  • AES-XTS
    • Key Length: 256
    • Direction: Decrypt, Encrypt
    • Block Size: Full, Partial