Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Cryptographic Module Validation Program CMVP

Certificate #5022

Details

Module Name
Red Hat Enterprise Linux 9 NSS Cryptographic Module
Standard
FIPS 140-3
Status
Active
Sunset Date
5/29/2030
Overall Level
1
Caveat
When operated in approved mode and installed, initialized and configured as specified in the Security Policy. The module generates cryptographic keys whose strengths are modified by available entropy. No assurance of minimum security of SSPs (e.g., keys, bit strings) that are externally loaded, or of SSPs established with externally loaded SSPs.
Security Level Exceptions
  • Physical security: N/A
  • Non-invasive security: N/A
Module Type
Software
Embodiment
Multi-Chip Stand Alone
Description
Network Security Services (NSS) is a set of open source C libraries designed to support cross-platform development of security-enabled applications. NSS implements major Internet security standards. NSS is available free of charge under a variety of open source compatible licenses. See http://www.mozilla.org/projects/security/pki/nss/.
Approved Algorithms
AES-CBC
AES-CBC
AES-CBC-CS1
AES-CMAC
AES-CTR
AES-CTR
AES-ECB
AES-ECB
AES-GCM
AES-GCM
AES-GCM
AES-KW
AES-KW
AES-KWP
AES-KWP
ECDSA KeyGen (FIPS186-5)
ECDSA SigGen (FIPS186-5)
ECDSA SigVer (FIPS186-5)
Hash DRBG
HMAC-SHA-1
HMAC-SHA2-224
HMAC-SHA2-256
HMAC-SHA2-384
HMAC-SHA2-512
KAS-ECC-SSC Sp800-56Ar3
KAS-FFC-SSC Sp800-56Ar3
KDA HKDF Sp800-56Cr1
KDF IKEv2
KDF SP800-108
PBKDF
RSA KeyGen (FIPS186-5)
RSA SigGen (FIPS186-5)
RSA SigVer (FIPS186-2)
RSA SigVer (FIPS186-4)
RSA SigVer (FIPS186-5)
Safe Primes Key Generation
SHA2-224
SHA2-256
SHA2-384
SHA2-512
TLS v1.2 KDF RFC7627

Vendor

Red Hat, Inc
100 East Davie Street
Raleigh, NC 27601
USA

Jaroslav Reznik
[email protected]
Phone: 000-000-0000

Validation History

Date Type Lab
5/30/2025 Initial atsec information security corporation