Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Cryptographic Module Validation Program CMVP

Certificate #4691

Details

Module Name
SUSE Rancher Kubernetes Cryptographic Library
Standard
FIPS 140-2
Status
Active
Sunset Date
9/21/2026
Overall Level
1
Caveat
When operated in FIPS mode. No assurance of the minimum strength of generated keys.
Security Level Exceptions
  • Physical Security: N/A
  • Mitigation of Other Attacks: N/A
Module Type
Software
Embodiment
Multi-Chip Stand Alone
Description
A software library that contains cryptography to serve SUSE’s Rancher Kubernetes Engine and its ecosystem of supported cloud-native tools written in the Go programming language.
Tested Configuration(s)
  • Red Hat Enterprise Linux 7.9 running on Dell PowerEdge R440 with Intel® Xeon® Silver 4214R with PAA
  • Red Hat Enterprise Linux 7.9 running on Dell PowerEdge R440 with Intel® Xeon® Silver 4214R without PAA
  • Red Hat Enterprise Linux 8.8 running on Dell PowerEdge R440 with Intel® Xeon® Silver 4214R with PAA
  • Red Hat Enterprise Linux 8.8 running on Dell PowerEdge R440 with Intel® Xeon® Silver 4214R without PAA (single-user mode)
  • SUSE Liberty Linux 7.9 running on Dell PowerEdge R440 with Intel® Xeon® Silver 4214R with PAA
  • SUSE Liberty Linux 7.9 running on Dell PowerEdge R440 with Intel® Xeon® Silver 4214R without PAA
  • SUSE Liberty Linux 8.8 running on Dell PowerEdge R440 with Intel® Xeon® Silver 4214R with PAA
  • SUSE Liberty Linux 8.8 running on Dell PowerEdge R440 with Intel® Xeon® Silver 4214R without PAA
Approved Algorithms
AES Cert. #A5181
CVL Cert. #A5181
DRBG Cert. #A5181
ECDSA Cert. #A5181
HMAC Cert. #A5181
KAS KAS-SSC Cert. #A5181, CVL Cert. #A5181
KAS-SSC Cert. #A5181
KTS AES Cert #A5181; key establishment methodology provides between 128 and 256 bits of encryption strength
RSA Cert. #A5181
SHS Cert. #A5181
Triple-DES Cert. #A5181
Allowed Algorithms
RSA (key wrapping; key establishment methodology provides between 112 and 256 bits of encryption strength)
Software Versions
853ca1ea1168dff08011e5d42d94609cc0ca2e27

Vendor

SUSE LLC
1221 S Valley Grove Way
Suite 500
Pleasant Grove, UT 84062
USA

Will Godfrey
will.godfrey@suse.com
Ivan Teblin
sec-cert@suse.com

Related Files

Validation History

Date Type Lab
4/12/2024 Initial ACUMEN SECURITY, LLC