Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Cryptographic Module Validation Program CMVP

Certificate #4716

Details

Module Name
Cryptographic Module for BIG-IP ®
Standard
FIPS 140-3
Status
Active
Sunset Date
7/8/2026
Overall Level
1
Caveat
Interim validation. When operated in approved mode. When installed, initialized and configured as specified in Section 11.1 of the Security Policy.
Security Level Exceptions
  • Physical security: N/A
  • Non-invasive security: N/A
  • Mitigation of other attacks: N/A
  • Documentation requirements: N/A
  • Cryptographic module security policy: N/A
Module Type
Software
Embodiment
Multi-Chip Stand Alone
Description
Cryptographic library offering various cryptographic mechanisms to BIG-IP Virtual Edition.
Tested Configuration(s)
  • BIG-IP 16.1.3.1 on Hyper-V 10.0.20348.1 on Windows Server 2022 running on Dell PowerEdge R450 with an Intel(R) Xeon(R) Silver 4309Y with PAA
  • BIG-IP 16.1.3.1 on Hyper-V 10.0.20348.1 on Windows Server 2022 running on Dell PowerEdge R450 with an Intel(R) Xeon(R) Silver 4309Y without PAA
  • BIG-IP 16.1.3.1 on KVM on Ubuntu 20.04.2 LTS (Focal Fossa) running on Dell PowerEdge M630 with an Intel(R) Xeon(R) E5-2690 v4 Broadwell with PAA
  • BIG-IP 16.1.3.1 on KVM on Ubuntu 20.04.2 LTS (Focal Fossa) running on Dell PowerEdge M630 with an Intel(R) Xeon(R) E5-2690 v4 Broadwell without PAA.
  • BIG-IP 16.1.3.1 on VMware ESXi(TM) 6.5 hypervisor running on Dell PowerEdge M620 with an Intel(R) Xeon(R) E5-2670 Sandy Bridge with PAA
  • BIG-IP 16.1.3.1 on VMware ESXi(TM) 6.5 hypervisor running on Dell PowerEdge M620 with an Intel(R) Xeon(R) E5-2670 Sandy Bridge without PAA
Approved Algorithms
AES-CBC
AES-CBC
AES-CTR
AES-ECB
AES-ECB
AES-GCM
AES-GCM
AES-GCM
AES-GMAC
AES-GMAC
Counter DRBG
Counter DRBG
ECDSA KeyGen (FIPS186-4)
ECDSA KeyVer (FIPS186-4)
ECDSA SigGen (FIPS186-4)
ECDSA SigVer (FIPS186-4)
HMAC-SHA-1
HMAC-SHA-1
HMAC-SHA2-256
HMAC-SHA2-384
KAS-ECC-SSC Sp800-56Ar3
KAS-FFC-SSC Sp800-56Ar3
RSA KeyGen (FIPS186-4)
RSA SigGen (FIPS186-4)
RSA SigVer (FIPS186-4)
Safe Primes Key Generation
Safe Primes Key Verification
SHA-1
SHA-1
SHA2-256
SHA2-384
Software Versions
1.0.2u-fips

Vendor

F5, Inc.
801 Fifth Ave
Seattle, WA 98104
USA

Maryrita Steinhour
fipsbigip16@f5.com
Phone: 206-272-7351

Validation History

Date Type Lab
7/9/2024 Initial ATSEC INFORMATION SECURITY CORP