808bits

Oracle Solaris Userland Cryptographic Framework

FIPS 140-2 certificate #2699 · Oracle Corporation · data as of 2026-08-28
Historical. Moved to historical list due to sunsetting. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When installed, initialized and configured as specified in the Security Policy and operated in FIPS mode

Certificate

Certificate number2699
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorOracle Corporation · website
Software versions1.3

Module description

The Oracle Solaris Userland Cryptographic Framework module provides cryptographic functionality for any application that calls into it. The module provides encryption, decryption, hashing, secure random number generation, signature generation and verification, certificate generation and verification, message authentication functions, and key pair generation for RSA and DSA. The module can leverage the algorithm acceleration from SPARC and x86 processors when available.

Security level exceptions

  • Physical Security: N/A
  • Design Assurance: Level 3
  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AES3936
DRBG1143
DSA1074
ECDSA862
HMAC2558
RSA2011
SHS3245
Triple-DES2159

Other algorithms

AES (non-compliant); ECDSA (non-compliant); HMAC (non-compliant); SHS (non-compliant); MD4; MD5; HMAC-MD5; RC4; DES; Blowfish; Camelia; Triple-DES (non-compliant); RSA (key wrapping; key establishment methodology provides between 112 and 192 bits of encryption strength; non-compliant less than 112 bits of encryption strength); Diffie-Hellman (key agreement; key establishment methodology provides between 112 and 192 bits of encryption strength; non-compliant less than 112 bits of encryption strength); EC Diffie-Hellman (key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength; non-compliant less than 112 bits of encryption strength)

Tested configurations

  • Oracle Solaris 11.3 running on an Oracle Server X5-2 with PAA
  • Oracle Solaris 11.3 running on an Oracle Server X5-2 without PAA (single-user mode)
  • Oracle Solaris 11.3 running on an Oracle SPARC T5-1B Server with PAA
  • Oracle Solaris 11.3 running on an Oracle SPARC T5-1B Server without PAA
  • Oracle Solaris 11.3 running on an Oracle SPARC T7-2 Server with PAA
  • Oracle Solaris 11.3 running on an Oracle SPARC T7-2 Server without PAA

Validation history

DateTypeLab
2016-08-08InitialCGI Information Systems & Management Consultants Inc
2016-11-03UpdateCGI Information Systems & Management Consultants Inc
2018-02-13UpdateCGI Information Systems & Management Consultants Inc

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2016-08-08, 2016-11-03, 2018-02-13

Source documents