Module Name
Oracle Linux 8 GnuTLS Cryptographic Module
Caveat
When operated in FIPS mode. The module generates cryptographic keys whose strengths are modified by available entropy
Security Level Exceptions
- Physical Security: N/A
- Design Assurance: Level 3
Embodiment
Multi-Chip Stand Alone
Description
The Oracle Linux 8 GnuTLS Cryptographic Module is a set of libraries implementing general purpose cryptographic algorithms and network protocols.
Tested Configuration(s)
- Oracle Linux 8.4 64 bit running on Oracle Server A1-2C with Ampere(R) Altra(R) Neoverse-N1 with PAA
- Oracle Linux 8.4 64 bit running on Oracle Server A1-2C with Ampere(R) Altra(R) Neoverse-N1 without PAA (single-user mode)
- Oracle Linux 8.4 64 bit running on Oracle Server E1-2C with AMD EPYC(TM) 7551 with PAA
- Oracle Linux 8.4 64 bit running on Oracle Server E1-2C with AMD EPYC(TM) 7551 without PAA
- Oracle Linux 8.4 64 bit running on Oracle Server X7-2C with Intel(R) Xeon(R) Platinum 8167M with PAA
- Oracle Linux 8.4 64 bit running on Oracle Server X7-2C with Intel(R) Xeon(R) Platinum 8167M without PAA
Approved Algorithms
| AES |
Certs. #A1704, #A1705, #A1707, #A1708, #A1710, #A1711, #A1713 and #A2560 |
| CKG |
vendor affirmed |
| CVL |
Cert. #A1710 |
| DRBG |
Cert. #A1710 |
| DSA |
Cert. #A1710 |
| ECDSA |
Cert. #A1710 |
| ENT |
NP |
| HMAC |
Certs. #A1705, #A1710 and #A2560 |
| KAS |
KAS-SSC Cert. #A1710, CVL Cert. #A1710 |
| KAS-SSC |
Cert. #A1710 |
| KDA |
Cert. #A1709 |
| KTS |
AES Certs. #A1704, #A1705, #A1710 and #A2560; key establishment methodology provides 128 or 256 bits of encryption strength |
| KTS |
AES Certs. #A1704, #A1705, #A1710 and #A2560 and HMAC Certs. #A1705, #A1710 and #A2560; key establishment methodology provides 128 or 256 bits of encryption strength |
| KTS |
Triple-DES Cert. #A1710 and HMAC Certs. #A1705, #A1710 and #A2560; key establishment methodology provides 112 bits of encryption strength |
| PBKDF |
Cert. #A1710 |
| RSA |
Cert. #A1710 |
| SHA-3 |
Certs. #A1706 and #A1712 |
| SHS |
Certs. #A1705, #A1710 and #A2560 |
| Triple-DES |
Cert. #A1710 |
Allowed Algorithms
RSA (key wrapping; key establishment methodology provides between 112 and 256 bits of encryption strength);
Software Versions
R8-8.4.0