Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Cryptographic Module Validation Program CMVP

Certificate #5261

Details

Module Name
Linux Kernel FIPS Object Module (KFOM) Cryptographic Module
Standard
FIPS 140-3
Status
Active
Sunset Date
5/10/2031
Overall Level
1
Caveat
No assurance of the minimum strength of generated SSPs (e.g., keys). No assurance of minimum security of SSPs (e.g., keys, bit strings) that are externally loaded, or of SSPs established with externally loaded SSPs
Security Level Exceptions
  • Non-invasive security: N/A
  • Mitigation of other attacks: N/A
Module Type
Firmware-hybrid
Embodiment
MultiChipStand
Description
The Cisco Linux Kernel FIPS Object Module (KFOM) is a firmware hybrid cryptographic library that serves the operating system kernel. It does not implement any security protocols, instead only allowing for Linux kernel applications access to using approved algorithms.
Approved Algorithms
AES-CBC
AES-CBC-CS3
AES-CCM
AES-CMAC
AES-CTR
AES-ECB
AES-GCM
AES-XTS Testing Revision 2.0
Counter DRBG
ECDSA SigVer (FIPS186-5)
Hash DRBG
HMAC DRBG
HMAC-SHA-1
HMAC-SHA2-224
HMAC-SHA2-256
HMAC-SHA2-384
HMAC-SHA2-512
KAS-ECC CDH-Component SP800-56Ar3
KAS-ECC-SSC Sp800-56Ar3
LMS SigVer
SHA-1
SHA2-224
SHA2-256
SHA2-384
SHA2-512
SHA3-224
SHA3-256
SHA3-384
SHA3-512

Vendor

Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

Global Certification Team
[email protected]
Phone: 800-553-6387

Validation History

Date Type Lab
5/11/2026 Initial Gossamer Security Solutions
8/3/2026 Update Gossamer Security Solutions