Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Cryptographic Module Validation Program CMVP

Certificate #2648

Details

Module Name
NetApp Cryptographic Security Module
Standard
FIPS 140-2
Status
Historical
 Historical Reason
SP 800-56Arev3 transition - replaced by certificate #4297
Overall Level
1
Caveat
When operated in FIPS mode. No assurance of the minimum strength of generated keys.
Security Level Exceptions
  • Physical Security: N/A
  • Design Assurance: Level 3
  • Mitigation of Other Attacks: N/A
Module Type
Software
Embodiment
Multi-Chip Stand Alone
Description
The NetApp Cryptographic Security Module is a software library that provides cryptographic services to a vast array of NetApp's storage and networking products.
Tested Configuration(s)
  • Debian Linux 8 running on Fujitsu RX200S5 Server with Intel Xeon E5-2609V4 (Broadwell) with PAA
  • Debian Linux 8 running on Fujitsu RX300-S6 Server with Intel Xeon E5645 (Westmere EP) without PAA
  • FreeBSD 9.1 running on Fujitsu RX200S5 Server with Intel Xeon E5-2609V4 (Broadwell) with PAA
  • FreeBSD 9.1 running on Fujitsu RX300-S6 Server with Intel Xeon E5645 (Westmere EP) without PAA
  • ONTAP 9.7P6 running on FAS2650 with Intel Xeon D-1528 with PAA
  • ONTAP 9.7P6 running on FAS2650 with Intel Xeon D-1528 without PAA
  • ONTAP 9.7P6 running on NetApp AFF A800 with Intel Xeon Platinum 8160 with PAA
  • ONTAP 9.7P6 running on NetApp AFF A800 with Intel Xeon Platinum 8160 without PAA
  • ONTAP 9.7P6 running on NetApp FAS8300 with Intel Xeon Silver 4210 with PAA
  • ONTAP 9.7P6 running on NetApp FAS8300 with Intel Xeon Silver 4210 without PAA
  • ONTAP 9.7P6 running on NetApp FAS9000 with Intel Xeon E5-2697 with PAA
  • ONTAP 9.7P6 running on NetApp FAS9000 with Intel Xeon E5-2697 without PAA (single-user mode)
  • Scientific Linux 6.1 running on Fujitsu RX200S5 Server with Intel Xeon E5-2609V4 (Broadwell) with PAA
  • Scientific Linux 6.1 running on Fujitsu RX300-S6 Server with Intel Xeon E5645 (Westmere EP) without PAA
  • SUSE Linux 11 running on Fujitsu RX200S5 Server with Intel Xeon E5-2609V4 (Broadwell) with PAA
  • SUSE Linux 11 running on Fujitsu RX300-S6 Server with Intel Xeon E5645 (Westmere EP) without PAA
Approved Algorithms
AES Certs. #3593 and #A950
CKG vendor affirmed
CVL Certs. #615 and #A950
DRBG Certs. #928 and #A950
DSA Certs. #998 and #A950
ECDSA Certs. #732 and #A950
HMAC Certs. #2290 and #A950
RSA Certs. #1847 and #A950
SHS Certs. #2955 and #A950
Triple-DES Certs. #2000 and #A950
Other Algorithms
Diffie-Hellman (key agreement; key establishment methodology provides between 112 and 219 bits of encryption strength); EC Diffie-Hellman (CVL Certs. #615 and #A950, key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); RSA (key wrapping; key establishment methodology provides between 112 and 150 bits of encryption strength)
Software Versions
1.0

Vendor

NetApp, Inc.
1375 Crossman Ave
Sunnyvale, CA 94089
USA

Validation History

Date Type Lab
5/27/2016 Initial ACUMEN SECURITY, LLC
6/10/2016 Update ACUMEN SECURITY, LLC
10/29/2019 Update ACUMEN SECURITY, LLC
2/10/2021 Update ACUMEN SECURITY, LLC
7/20/2021 Update ACUMEN SECURITY, LLC