808bits

Network Security Services (NSS) Cryptographic Module (Basic ECC)

FIPS 140-2 certificate #1278 · Sun Microsystems, Inc., Red Hat®, Inc. and Mozilla Foundation, Inc. · data as of 2026-09-03

Network Security Services (NSS) Cryptographic Module (Basic ECC), from Sun Microsystems, Inc., Red Hat®, Inc. and Mozilla Foundation, Inc., holds FIPS 140-2 certificate #1278 at overall level 1. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.

Historical. Moved to historical list due to sunsetting. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode

Certificate

Certificate number1278
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeSoftware
EmbodimentMulti-chip standalone
VendorSun Microsystems, Inc., Red Hat®, Inc. and Mozilla Foundation, Inc. · website
Software versions3.12.4

Module description

Quoted from the NIST CMVP entry for this certificate.

Network Security Services (NSS) is a set of open source C libraries designed to support cross-platform development of security-enabled applications. NSS implements major crypto algorithms and Internet security standards, and supports smartcards and hardware crypto devices. NSS is available free of charge under the Mozilla Public License, the GNU General Public License, and the GNU Lesser General Public License. For more information, see http://www.mozilla.org/projects/security/pki/nss/

Approved algorithms (8)

AlgorithmCAVP certificates
AES1128
DRBG18
DSA368
ECDSA133
HMAC638
RSA535
SHS1050
Triple-DES823

Other algorithms

Camellia; DES; Diffie-Hellman; EC Diffie-Hellman; MD2; MD5; RC2; RC4; SEED

Tested configurations

  • Apple Mac OS X 10.5 (single-user mode)
  • Microsoft Windows XP with SP3

Validation history

DateTypeLab
2010-03-29InitialSAIC-VA

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2010-03-29

Source documents