808bits

HP TippingPoint Crypto Core NSS

FIPS 140-2 certificate #2394 · Hewlett-Packard TippingPoint · data as of 2026-08-28
Historical. Moved to historical list in accordance with SP800-131A Revision 1 Transition (AES/TDES key wrapping). Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode and when obtained, installed, and initialized as specified in Section 5 of the provided Security Policy. For Red Hat Linux 6.2, Section 5 also specifies the precise RPM file containing this module. The integrity of the RPM is automatically verified during the installation and the Crypto officer shall not install the RPM file if the RPM tool indicates an integrity error. For CentOS 5.6 the module is compiled from source available from Mozilla. Any deviation from the specified verification, installation and initialization procedures will result in a non FIPS 140-2 compliant module. The module generates cryptographic keys whose strengths are modified by available entropy

Certificate

Certificate number2394
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeSoftware
EmbodimentMulti-chip standalone
VendorHewlett-Packard TippingPoint · website
Software versions3.12.9.1

Module description

The HP TippingPoint Crypto Core NSS is a software library which provides FIPS 140-2 approved cryptographic algorithms and services for HP TippingPoint security products.

Security level exceptions

  • Physical Security: N/A
  • Design Assurance: Level 2

Approved algorithms

AlgorithmCAVP certificate
AES1908, 3285
DRBG165, 743
DSA602, 942
HMAC1145, 2082
RSA979, 1682
SHS1675, 2723
Triple-DES1240, 1872

Other algorithms

AES (Certs. #1908 and #3285, key wrapping; key establishment methodology provides between 128 and 256 bits of encryption strength); Camellia; DES; Diffie-Hellman (key agreement; key establishment methodology provides 112 bits of encryption strength; non-compliant less than 112 bits of encryption strength); HKDF; J-PAKE; MD2; MD5; RC2; RC4; RSA (key wrapping; key establishment methodology provides between 112 and 150 bits of encryption strength; non-compliant less than 112 bits of encryption strength); SEED; Triple-DES (Certs. #1240 and #1872, key wrapping; key establishment methodology provides 112 bits of encryption strength; non-compliant less than 112 bits of encryption strength)

Tested configurations

  • CentOS 5.6 64-bit running on an Intel Xeon E5-2620v3
  • CentOS 5.6 64-bit running on an Intel Xeon E5-2690v3 (single-user mode)
  • Red Hat Enterprise Linux v6.2 32-bit running on an Intel Core i7 system
  • Red Hat Enterprise Linux v6.2 64-bit running on an Intel Core i7 system with PAA
  • Red Hat Enterprise Linux v6.2 64-bit running on an Intel Core i7 system without PAA

Validation history

DateTypeLab
2015-06-15InitialLeidos Accredited Testing & Evaluation (AT&E) Lab

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2015-06-15

Source documents