Computer Security Resource Center

Computer Security Resource Center

Computer Security
Resource Center

Cryptographic Module Validation Program

Certificate #3168

Details

Module Name
Oracle Linux 7 Libreswan Cryptographic Module
Standard
FIPS 140-2
Status
Active
Sunset Date
4/9/2023
Validation Dates
4/10/2018
Overall Level
1
Caveat
When operated in FIPS mode with Oracle Linux 7 NSS Cryptographic Module validated to FIPS 140-2 under Cert. #3143 operating in FIPS mode and Oracle Linux OpenSSL Cryptographic Module validated to FIPS 140-2 under Cert. #3017 operating in FIPS mode
Security Level Exceptions
  • Physical Security: N/A
  • Design Assurance: Level 3
  • Mitigation of Other Attacks: N/A
Module Type
Software
Embodiment
Multi-Chip Stand Alone
Description
The Oracle Linux 7 Libreswan Cryptographic Module is a framework for providing cryptographic services to other network entities implementing the IKEv1 and IKEv2 protocols.
Tested Configuration(s)
  • Oracle Linux 7.3 64 bit running on Oracle Server X6-2 with PAA
  • Oracle Linux 7.3 64 bit running on Oracle Server X6-2 without PAA (single-user mode)
FIPS Algorithms
AES Certs. #4648 and #4649
CVL Certs. #1300 and #1341
DRBG Cert. #1568
DSA Cert. #1229
ECDSA Cert. #1145
HMAC Certs. #2996 and #3077
RSA Cert. #2536
SHS Cert. #3808
Triple-DES Cert. #2472
Allowed Algorithms
Diffie-Hellman (CVL Cert. #1300 with CVL Cert. #1341, key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); EC Diffie-Hellman (CVL Cert. #1300 with CVL Cert. #1341, key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); NDRNG; RSA (key wrapping; key establishment methodology provides between 112 and 256 bits of encryption strength)
Software Versions
R7-2.0.0

Vendor

Oracle Corporation
500 Oracle Parkway
Redwood Shores, CA 94065
USA

Scott Lynn
scott.lynn@oracle.com
Phone: +1 408.276.3804

Lab

ATSEC INFORMATION SECURITY CORP
NVLAP Code: 200658-0