U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Cryptographic Module Validation Program CMVP

Certificate #3875

Details

Module Name
VMware OpenSSL FIPS Object Module
Standard
FIPS 140-2
Status
Active
Sunset Date
1/29/2022
Overall Level
1
Caveat
When operated in FIPS mode. No assurance of the minimum strength of generated keys. The module generates cryptographic keys whose strengths are modified by available entropy. This validation entry is a non-security-relevant modification to Cert. #2839
Security Level Exceptions
  • Roles, Services, and Authentication: Level 2
  • Physical Security: N/A
  • Design Assurance: Level 3
  • Mitigation of Other Attacks: N/A
Module Type
Software
Embodiment
Multi-Chip Stand Alone
Description
The VMware OpenSSL FIPS Object Module provides cryptographic functions to various VMware applications.
Tested Configuration(s)
  • Amazon Linux 2 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 with PAA (gcc Compiler Version 5.3.0)
  • Amazon Linux 2 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 without PAA (gcc Compiler Version 5.3.0)
  • BLUX 4.4 on ESXi 6.5 on Intel Xeon with PAA (gcc Compiler version 5.3.0)
  • BLUX 4.4 on ESXi 6.5 on Intel Xeon without PAA (gcc Compiler version 5.3.0)
  • BLUX 4.9 on ESXi 6.5 on Intel Xeon with PAA (gcc Compiler version 5.3.0)
  • BLUX 4.9 on ESXi 6.5 on Intel Xeon without PAA (gcc Compiler version 5.3.0)
  • PhotonOS 1.0 on ESXi 6.0 on Intel Xeon with PAA (gcc Compiler Version 5.3.0)
  • PhotonOS 1.0 on ESXi 6.0 on Intel Xeon without PAA (gcc Compiler Version 5.3.0)
  • PhotonOS 1.0 on ESXi 6.5 on Intel Xeon with PAA (gcc Compiler Version 5.3.0)
  • PhotonOS 1.0 on ESXi 6.5 on Intel Xeon without PAA (gcc Compiler Version 5.3.0)
  • PhotonOS 1.0 on ESXi 6.7 on Intel Xeon with PAA (gcc Compiler Version 5.3.0)
  • PhotonOS 1.0 on ESXi 6.7 on Intel Xeon without PAA (gcc Compiler Version 5.3.0)
  • PhotonOS 2.0 on ESXi 6.0 on Intel Xeon with PAA (gcc Compiler Version 5.3.0)
  • PhotonOS 2.0 on ESXi 6.0 on Intel Xeon without PAA (gcc Compiler Version 5.3.0)
  • PhotonOS 2.0 on ESXi 6.5 on Intel Xeon with PAA (gcc Compiler Version 5.3.0)
  • PhotonOS 2.0 on ESXi 6.5 on Intel Xeon without PAA (gcc Compiler Version 5.3.0)
  • PhotonOS 2.0 on ESXi 6.7 on Intel Xeon with PAA (gcc Compiler Version 5.3.0)
  • PhotonOS 2.0 on ESXi 6.7 on Intel Xeon without PAA (gcc Compiler Version 5.3.0)
  • PhotonOS 3.0 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 with PAA (gcc Compiler Version 5.3.0)
  • PhotonOS 3.0 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 without PAA (gcc Compiler Version 5.3.0)
  • SLES 11 on ESXi 6.7 on Intel Xeon with PAA (gcc Compiler Version 5.3.0)
  • SLES 11 on ESXi 6.7 on Intel Xeon without PAA (gcc Compiler Version 5.3.0)
  • SLES 11 SP3 on ESXi 6.0 on Intel Xeon with PAA (gcc Compiler Version 5.3.0)
  • SLES 11 SP3 on ESXi 6.0 on Intel Xeon without PAA (gcc Compiler Version 5.3.0)
  • SLES 12 on ESXi 6.5 on Intel Xeon with PAA (gcc Compiler Version 5.3.0)
  • SLES 12 on ESXi 6.5 on Intel Xeon without PAA (gcc Compiler Version 5.3.0)
  • Ubuntu 14.04 on ESXi 6.0 on Intel Xeon with PAA (gcc Compiler version 4.6.3)
  • Ubuntu 14.04 on ESXi 6.0 on Intel Xeon without PAA (gcc Compiler version 4.6.3)
  • Ubuntu 14.04 on ESXi 6.5 on Intel Xeon with PAA (gcc Compiler version 4.6.3)
  • Ubuntu 14.04 on ESXi 6.5 on Intel Xeon without PAA (gcc Compiler version 4.6.3)
  • Ubuntu 16.04 on ESXi 6.0 on Intel Xeon with PAA (gcc Compiler version 4.6.3)
  • Ubuntu 16.04 on ESXi 6.0 on Intel Xeon without PAA (gcc Compiler version 4.6.3)
  • Ubuntu 16.04 on ESXi 6.5 on Intel Xeon with PAA (gcc Compiler version 4.6.3)
  • Ubuntu 16.04 on ESXi 6.5 on Intel Xeon without PAA (gcc Compiler version 4.6.3)
  • Ubuntu 16.04 on ESXi 6.7 on Intel Xeon with PAA (gcc Compiler Version 4.6.3)
  • Ubuntu 16.04 on ESXi 6.7 on Intel Xeon without PAA (gcc Compiler Version 4.6.3)
  • Ubuntu 16.04 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 with PAA (gcc Compiler Version 4.6.3)
  • Ubuntu 16.04 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 without PAA (gcc Compiler Version 4.6.3)
  • Ubuntu 18.04 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 with PAA (gcc Compiler Version 4.6.3)
  • Ubuntu 18.04 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 without PAA (gcc Compiler Version 4.6.3)
  • Ubuntu 20.04 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 with PAA (gcc Compiler Version 4.6.3)
  • Ubuntu 20.04 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 without PAA (gcc Compiler Version 4.6.3)
  • VMware NSX Controller OS 12.04 on ESXi 6.0 on Intel Xeon with PAA (gcc Compiler Version 4.6.3)
  • VMware NSX Controller OS 12.04 on ESXi 6.0 on Intel Xeon without PAA (gcc Compiler Version 4.6.3)
  • VMware NSX Edge OS 3.14 on ESXi 6.0 on Intel Xeon without PAA (gcc Compiler Version 4.6.3)
  • VMware NSX Edge OS 3.14 on ESXi6.0 on Intel Xeon with PAA (gcc Compiler Version 4.6.3)
  • VMware NSX Manager OS 3.17 on ESXi 6.0 on Intel Xeon with PAA (gcc Compiler Version 4.6.3)
  • VMware NSX Manager OS 3.17 on ESXi 6.0 on Intel Xeon without PAA (gcc Compiler Version 4.6.3)
  • Windows 10 on ESXi 6.0 on Intel Core I with PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 10 on ESXi 6.0 on Intel Core I without PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 10 on ESXi 6.5 on Intel Xeon with PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 10 on ESXi 6.5 on Intel Xeon without PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 10 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 with PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 10 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 without PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1) (single-user mode)
  • Windows 10 on Intel Core I with PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 10 on Intel Core I without PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 2012 64 bit on ESXi 6.0 on Intel Xeon with PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 2012 64 bit on ESXi 6.0 on Intel Xeon without PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 2012 R2 on ESXi 6.0 on Intel Xeon with PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 2012 R2 on ESXi 6.0 on Intel Xeon without PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 2016 on ESXi 6.0 on Intel Xeon with PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 2016 on ESXi 6.0 on Intel Xeon without PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 7 SP1 on ESXi 6.0 on Intel Core I with PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 7 SP1 on ESXi 6.0 on Intel Core I without PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 8.1 on ESXi 6.0 on Intel Core I with PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows 8.1 on ESXi 6.0 on Intel Core I without PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows Server 2008 on ESXi 6.5 on Intel Xeon with PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows Server 2008 on ESXi 6.5 on Intel Xeon without PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows Server 2012 on ESXi 6.5 on Intel Xeon with PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows Server 2012 on ESXi 6.5 on Intel Xeon without PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows Server 2016 on ESXi 6.5 on Intel Xeon with PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows Server 2016 on ESXi 6.5 on Intel Xeon without PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows Server 2016 on ESXi 6.7 on Intel Xeon with PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows Server 2016 on ESXi 6.7 on Intel Xeon without PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows Server 2016 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 with PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows Server 2016 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 without PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows Server 2019 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 with PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Windows Server 2019 on ESXi 7.0 running on a Dell PowerEdge R740 with Intel Xeon Gold 6126 without PAA (Microsoft C/C++ Optimizing Compiler Version 18.00.21005.1)
  • Within ESXi 6.7 on Intel Xeon 6126 with PAA
  • Within ESXi 6.7 on Intel Xeon 6126 without PAA
  • Within ESXi 6.7 on Intel Xeon E5-2440 with PAA
  • Within ESXi 6.7 on Intel Xeon E5-2440 without PAA
FIPS Algorithms
AES Certs. #4137 and #C1970
DRBG Certs. #1254 and #C1970
DSA Certs. #1123 and #C1970
ECDSA Certs. #949 and #C1970
HMAC Certs. #2710 and #C1970
KAS-SSC vendor affirmed
RSA Certs. #2251 and #C1970
SHS Certs. #3407 and #C1970
Triple-DES Certs. #2261 and #C1970
Allowed Algorithms
RSA (key wrapping; key establishment methodology provides between 112 and 256 bits of encryption strength)
Software Versions
2.0.9

Vendor

VMware, Inc.
3401 Hillview Ave
Palo Alto, CA 94304
USA

Manoj Maskara
mmaskara@vmware.com
Phone: 650-427-1000
Fax: 650-475-5001
n/a
n/a
Phone: n/a
Fax: n/a

Validation History

Date Type Lab
3/29/2021 Initial ACUMEN SECURITY, LLC