Module Name
IQVIA Java Crypto Module
Caveat
When operated in FIPS mode. The output of the DRBG shall not be used to generate keys
Security Level Exceptions
- Physical Security: N/A
- Mitigation of Other Attacks: N/A
Embodiment
Multi-Chip Stand Alone
Description
The cryptographic module is a single Java Archive (JAR) binary, named DvSecurityAPI.jar, that provides cryptographic and secure communication services for other applications developed by IQVIA. In this document, those applications will be referred to as the calling application. The module is a standalone cryptographic library that can be called to provide encryption, decryption, hash generation and verification, certificate generation and verification, random bit generation, and message authentication functions.
Tested Configuration(s)
- Microsoft Windows Server 2016 with JDK v1.8 running on a ProLiant BL460c Gen8 with Intel Xeon E5-2640 (single-user mode)
Allowed Algorithms
RSA (key wrapping; key establishment methodology provides 112 bits of encryption strength)