Red Hat Enterprise Linux 6.6 OpenSSL Module, Red Hat Enterprise Linux 7.1 OpenSSL Module
Certificate
| Certificate number | 2441 |
|---|---|
| Standard | FIPS 140-2 |
| Status | historical |
| Overall level | 1 |
| Module type | Software |
| Embodiment | Multi-chip standalone |
| Vendor | Red Hat®, Inc. · website |
| Software versions | 3.0, 4.0 |
Module description
The OpenSSL FIPS Runtime Module is a general purpose cryptographic library designed to provide FIPS 140-2 validated cryptographic functionality for use with the high level API of the OpenSSL library.
Security level exceptions
- Physical Security: N/A
Approved algorithms
| Algorithm | CAVP certificate |
|---|---|
| AES | 3104, 3105, 3106, 3107, 3108, 3109, 3110, 3111, 3112, 3113, 3114, 3119, 3634, 3635, 3636, 3637, 3638, 3639, 3640, 3641, 3642, 3651, 3696 |
| CVL | 374, 375, 376, 377, 380, 381, 654, 655, 656, 657, 658, 661, 662 |
| DRBG | 610, 611, 612, 613, 614, 615, 616, 617, 618, 619, 620, 621, 622, 623, 624, 625, 626, 629, 630, 631, 957, 958, 959, 960, 961, 962, 963, 964, 965, 966, 967, 968, 969, 970, 971, 982, 1003 |
| DSA | 897, 898, 899, 903, 1013, 1014, 1015, 1016, 1023, 1038 |
| ECDSA | 560, 561, 562, 564, 755, 756, 757, 759, 775 |
| HMAC | 1931, 1944, 1945, 1946, 1947, 1948, 1949, 1950, 1951, 1955, 1956, 1958, 2385, 2386, 2388, 2389, 2390, 2391, 2392, 2393, 2394, 2401, 2427 |
| RSA | 1583, 1584, 1586, 1590, 1875, 1876, 1877, 1878, 1886, 1902 |
| SHS | 2547, 2563, 2564, 2565, 2566, 2567, 2568, 2569, 2570, 2574, 2575, 2577, 3052, 3053, 3054, 3055, 3056, 3057, 3058, 3059, 3060, 3061, 3069, 3095 |
| Triple-DES | 1784, 1785, 1786, 1790, 2027, 2028, 2029, 2044, 2059 |
Other algorithms
RSA (key wrapping; key establishment methodology provides 112 or 128 bits of encryption strength; non-compliant less than 112 bits of encryption strength); Diffie-Hellman (CVL Certs. #655, #657 and #661, key agreement; key establishment methodology provides 112 or 128 bits of encryption strength; non-compliant less than 112 bits of encryption strength); EC Diffie-Hellman (CVL Certs. #655, #657 and #661, key agreement; key establishment methodology provides between 128 and 256 bits of encryption strength); MD5; RNG; Camellia; CAST; DES; IDEA; J-PAKE; MD2; MD4; MDC2; RC2; RC4; RC5; RIPEMD; Whirlpool
Tested configurations
- Red Hat Enterprise Linux 6.6 running on HP ProLiant DL380p Gen8 with PAA
- Red Hat Enterprise Linux 6.6 running on HP ProLiant DL380p Gen8 without PAA
- Red Hat Enterprise Linux 6.6 running on IBM System x3500 M4 with PAA
- Red Hat Enterprise Linux 6.6 running on IBM System x3500 M4 without PAA
- Red Hat Enterprise Linux 7.1 running on HP ProLiant DL380 Gen8 with PAA
- Red Hat Enterprise Linux 7.1 running on HP ProLiant DL380 Gen8 without PAA
- Red Hat Enterprise Linux 7.1 running on IBM POWER8 Little Endian 8286-41A
- Red Hat Enterprise Linux 7.1 running on IBM z13 with CP Assist for Cryptographic Functions (single-user mode)
Validation history
| Date | Type | Lab |
|---|---|---|
| 2015-09-08 | Initial | atsec information security corporation |
| 2016-01-27 | Update | atsec information security corporation |
| 2016-02-16 | Update | atsec information security corporation |
| 2016-12-21 | Update | atsec information security corporation |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2015-09-08, 2016-01-27, 2016-02-16, 2016-12-21