IBM® z/VM® Version 6 Release 3 System SSL Cryptographic Module
Caveat: The module generates cryptographic keys whose strengths are modified by available entropy
Certificate
| Certificate number | 2139 |
|---|---|
| Standard | FIPS 140-2 |
| Status | historical |
| Overall level | 1 |
| Module type | Software-Hybrid |
| Embodiment | Multi-chip standalone |
| Vendor | IBM® Corporation · website |
| Software versions | 5735FAL00: z/VM Version 6 Release 3 plus APAR PM95516 |
| Hardware versions | z10 CP Assist for Cryptographic Functions DES/TDES Enablement Feature 3863 |
Module description
Module Description: z/VM System SSL provides cryptographic functions which allows z/VM to protect data using the SSL/TLS protocols. z/VM System SSL also enables administrators to create and manage X.509 V3 certificates and keys within key database files.
Security level exceptions
- Cryptographic Module Specification: Level 3
- Mitigation of Other Attacks: N/A
Approved algorithms
| Algorithm | CAVP certificate |
|---|---|
| AES | 976, 2627 |
| CVL | 110 |
| DSA | 792 |
| HMAC | 1624 |
| RNG | 1241 |
| RSA | 1344 |
| SHS | 946, 2203 |
| Triple-DES | 769, 1577 |
Other algorithms
Diffie-Hellman (key agreement; key establishment methodology provides 112 bits of encryption strength); RSA (key wrapping; key establishment methodology provides between 112 and 150 bits of encryption strength); HMAC-MD5
Tested configurations
- z/VM Version 6 Release 3 running on IBM System z10 (TM) Enterprise Class (z10 EC) with CP Assist for Cryptographic Functions DES/TDES Enablement Feature 3863 (single-user mode)
Validation history
| Date | Type | Lab |
|---|---|---|
| 2014-04-30 | Initial | atsec information security corporation |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2014-04-30