Module Name
CiscoSSL FIPS Provider
Caveat
When operated in approved mode. No assurance of the minimum strength of generated SSPs (e.g., keys). No assurance of minimum security of SSPs (e.g., keys, bit strings) that are externally loaded, or of SSPs established with externally loaded SSPs
Security Level Exceptions
- Non-invasive security: N/A
Embodiment
MultiChipStand
Description
The CiscoSSL FIPS Provider is a firmware library that provides cryptographic services to a vast array of Cisco's networking and collaboration products. The module is comprised of a single object module file called fips.so.
Approved Algorithms
AES-XTS Testing Revision 2.0
AES-XTS Testing Revision 2.0
Deterministic ECDSA SigGen (FIPS186-5)
Deterministic ECDSA SigGen (FIPS186-5)
KAS-ECC CDH-Component SP800-56Ar3
KAS-ECC CDH-Component SP800-56Ar3
RSA Decryption Primitive Sp800-56Br2
RSA Decryption Primitive Sp800-56Br2
Safe Primes Key Generation
Safe Primes Key Generation
Safe Primes Key Verification
Safe Primes Key Verification