Caveat
Interim validation. When operated in approved mode. When installed, initialized and configured as specified in Section 11 of the Security Policy. No assurance of the minimum strength of generated SSPs (e.g., keys)
Security Level Exceptions
- Physical security: N/A
- Non-invasive security: N/A
- Mitigation of other attacks: N/A
Embodiment
Multi-Chip Stand Alone
Description
CorSSL offers symmetric encryption/decryption, digital signature generation/verification, hashing, cryptographic key generation, random number generation, message authentication, and key establishment functions to secure data. The libcrypto library provides the main cryptographic functionality for the module.
Tested Configuration(s)
- Debian 9 running on a Dell PowerEdge R440 with an Intel(R) Xeon(R) Silver 4214R with PAA
- Debian 9 running on a Dell PowerEdge R440 with an Intel(R) Xeon(R) Silver 4214R without PAA
Approved Algorithms
AES-XTS Testing Revision 2.0
Allowed Algorithms
AES (Cert. #A3254, Key Unwrapping. Per IG D.G.; Symmetric Key Unwrapping (using any approved mode));Triple-DES (Cert. #A3254, Key Unwrapping. Per IG D.G.; Symmetric Key Unwrapping (using any approved mode with two-key or three-key))
Software Versions
1.1.1s.005