808bits

SAP NW SSO 2.0 Secure Login Library Crypto Kernel

FIPS 140-2 certificate #2308 · SAP AG · data as of 2026-08-28
Historical. Moved to historical list due to sunsetting. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode. The module generates cryptographic keys whose strengths are modified by available entropy

Certificate

Certificate number2308
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeSoftware
EmbodimentMulti-chip standalone
VendorSAP AG · website
Software versions2.0.0.1.32

Module description

SAP NW SSO 2.0 Secure Login Library Crypto Kernel v2.0.0.1.32 is a shared library, i.e. it consists of software only. SAP NW SSO 2.0 Secure Login Library Crypto Kernel provides an API in terms of C++ methods for key management and operation of cryptographic functions.

Security level exceptions

  • Physical Security: N/A
  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AES2370, 2371, 2372
DRBG306, 307, 308
DSA741, 742, 743
HMAC1472, 1473, 1474
RSA1225, 1226, 1227
SHS2042, 2043, 2044
Triple-DES1481, 1482, 1483

Other algorithms

IDEA; RC2; RC5-32; RC4; Diffie-Hellman (key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength; non-compliant less than 112 bits of encryption strength); ElGamal; RSA (key wrapping; key establishment methodology provides between 112 and 256 bits of encryption strength; non-compliant less than 112 bits of encryption strength); MD2; MD4; MD5; RIPEMD-128; RIPEMD-160

Tested configurations

  • AIX 5.1 64-bit running on a Fujitsu Esprimo P5925
  • AIX 5.2 64-bit running on a IBM eServer pSeries 630 Model 6C4
  • AIX 6.1 64-bit on Vmware ESX 4.1.0 running on a IBM Power 770
  • HP-UX 11.00 64-bit running on a HP 9000 L3000
  • HP-UX 11.11 64-bit running on a HP 9000 rp5470
  • HP-UX 11.23 64-bit running on a HP Integrity rx5670
  • HP-UX 11.31 64-bit running on a HP 9000 rp3440
  • HP-UX 11.31 64-bit running on a HP Integrity rx6600
  • Linux 2.4.18 running on a IBM eServer xSeries 235
  • Linux 2.4.19 running on a HP Integrity rx2600
  • Linux 2.4.21 running on a Fujitsu Primergy TX300
  • Linux 2.6.16 on Vmware ESX 4.1.0 running on a IBM Power 595
  • Linux 2.6.16 running on a HP ProLiant DL385 G2
  • Linux 2.6.27 on Vmware ESX 4.1.0 running on a IBM eServer xSeries 235
  • Linux 2.6.32 on Vmware ESX 5.0.0 running on a IBM Power 770
  • Linux 2.6.32 running on a Fujitsu Esprimo P9900 E-Star5 with PAA
  • Linux 2.6.32 running on a IBM eServer xSeries 3655 without PAA
  • Linux 2.6.5 on Vmware ESX 4.1.0 running on a IBM S/390
  • Linux 2.6.5 on Vmware ESX 5.0.0 running on a IBM System p5 595
  • Linux 2.6.5 running on a HP Integrity rx5670
  • Linux 2.6.5 running on a IBM eServer xSeries 250
  • Linux 2.6.5 running on a IBM System x3755
  • Mac OS X 10.7 64-bit running on a MacPro
  • Solaris 5.10 64-bit running on a Fujitsu PrimePower 650
  • Solaris 5.10 64-bit running on a Sun Fire X4150
  • Solaris 5.8 64-bit running on a Fujitsu GP7000F400R
  • Solaris 5.9 64-bit running on a Sun Fire V880
  • Tru64 Unix 5.1 running on a Compaq AlphaServer ES40
  • Windows 7 Enterprise SP1 64-bit running on a Lenovo ThinkCentre M90P with PAA
  • Windows Server 2008 R2 on Vmware ESX 4.1.0 running on a IBM System x3755 (single-user mode)

Validation history

DateTypeLab
2015-01-06InitialTUVIT Evaluation Body for IT Security

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2015-01-06

Source documents