808bits

SUSE Linux Enterprise Server 12 - OpenSSL Module

FIPS 140-2 certificate #2435 · SUSE, LLC · data as of 2026-09-15

SUSE Linux Enterprise Server 12 - OpenSSL Module, from SUSE, LLC, holds FIPS 140-2 certificate #2435 at overall level 1. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.

Historical. Moved to historical list due to sunsetting. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode. The module generates cryptographic keys whose strengths are modified by available entropy

Certificate

Certificate number2435
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeSoftware
EmbodimentMulti-chip standalone
VendorSUSE, LLC · website
Software versions2.0

Module description

Quoted from the NIST CMVP entry for this certificate.

OpenSSL is an open-source library of various cryptographic algorithms written mainly in C.

Security level exceptions

  • Physical Security: N/A

Approved algorithms (9)

AlgorithmCAVP certificates
AES3197, 3198, 3199
CVL430, 431
DRBG674, 675, 676
DSA915
ECDSA586
HMAC2014, 2015, 2016
RSA1628
SHS2645, 2646, 2648
Triple-DES1823

Other algorithms

Diffie-Hellman (CVL Cert. #431, key agreement; key establishment methodology provides 112 or 128 bits of encryption strength; non-compliant less than 112 bits of encryption strength); EC Diffie-Hellman (CVL Cert. #431, key agreement; key establishment methodology provides between 128 and 256 bits of encryption strength; non-compliant less than 112 bits of encryption strength); RSA (key wrapping; key establishment methodology provides 112 or 128 bits of encryption strength; non-compliant less than 112 bits of encryption strength); ANSI X9.31 RNG (non-compliant); MD2; MD4; MD5; MDC-2; HMAC-MD5; Blowfish; Camellia; CAST; DES; IDEA; JPAKE; RC2; RC4; RC5; RIPEMD160; SEED; TLS-SRP; Whirlpool

Tested configurations

  • SUSE Linux Enterprise Server 12 running on HP ProLiant DL320e Gen8 with PAA
  • SUSE Linux Enterprise Server 12 running on HP ProLiant DL320e Gen8 without PAA (single-user mode)

Validation history

DateTypeLab
2015-08-20Initialatsec information security corporation

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2015-08-20

Source documents