Computer Security Resource Center

Computer Security Resource Center

Computer Security
Resource Center

Cryptographic Module Validation Program

Certificate #3170

Details

Module Name
Oracle Linux 6 Libreswan Cryptographic Module
Standard
FIPS 140-2
Status
Active
Sunset Date
4/11/2023
Validation Dates
4/12/2018
Overall Level
1
Caveat
When operated in FIPS mode with Oracle Linux 6 NSS Cryptographic Module validated to FIPS 140-2 under Cert. #3111 operating in FIPS mode and Oracle Linux OpenSSL Cryptographic Module validated to FIPS 140-2 under Cert. #3017 operating in FIPS mode
Security Level Exceptions
  • Physical Security: N/A
  • Design Assurance: Level 3
  • Mitigation of Other Attacks: N/A
Module Type
Software
Embodiment
Multi-Chip Stand Alone
Description
The Oracle Linux 6 Libreswan Cryptographic Module is a framework for providing cryptographic services to other network entities implementing the IKEv1 and IKEv2 protocols.
Tested Configuration(s)
  • Oracle Linux 6.9 64 bit running on Oracle Server X6-2 with PAA
  • Oracle Linux 6.9 64 bit running on Oracle Server X6-2 without PAA (single-user mode)
FIPS Algorithms
AES Certs. #4773 and #4774
CVL Certs. #1417 and #1427
DRBG Cert. #1652
DSA Cert. #1285
ECDSA Cert. #1199
HMAC Certs. #2993, #2995 and #3184
RSA Certs. #2615 and #2640
SHS Cert. #3918
Triple-DES Cert. #2536
Allowed Algorithms
Diffie-Hellman (CVL Cert. #1417 with CVL Cert. #1427, key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); EC Diffie-Hellman (CVL Cert. #1417 with CVL Cert. #1427, key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); NDRNG; RSA (key wrapping; key establishment methodology provides between 112 and 256 bits of encryption strength)
Software Versions
R6-1.0.0

Vendor

Oracle Corporation
500 Oracle Parkway
Redwood Shores, CA 94065
USA

Scott Lynn
scott.lynn@oracle.com
Phone: +1 408.276.3804

Lab

ATSEC INFORMATION SECURITY CORP
NVLAP Code: 200658-0