808bits

Red Hat Enterprise Linux Libreswan Cryptographic Module v4.0

FIPS 140-2 certificate #2721 · Red Hat®, Inc. · data as of 2026-09-14

Red Hat Enterprise Linux Libreswan Cryptographic Module v4.0, from Red Hat®, Inc., holds FIPS 140-2 certificate #2721 at overall level 1. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.

Historical. Moved to historical list due to sunsetting. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: With module Red Hat Enterprise Linux NSS Cryptographic Module v4.0 validated to FIPS 140-2 under Cert. #2711 operating in FIPS mode and Red Hat Enterprise Linux 7.1 OpenSSL Module validated to FIPS 140-2 under Cert. #2441 operating in FIPS mode

Certificate

Certificate number2721
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorRed Hat®, Inc. · website
Software versions4.0

Module description

Quoted from the NIST CMVP entry for this certificate.

Red Hat Enterprise Linux Libreswan Cryptographic Module v4.0 is a software only cryptographic module that provides the IKE protocol version 1 and version 2 key agreement services required for IPSec.

Security level exceptions

  • Physical Security: N/A
  • Mitigation of Other Attacks: N/A

Approved algorithms (1)

AlgorithmCAVP certificates
CVL679, 680, 681

Tested configurations

  • Red Hat Enterprise Linux 7.1 running on HP ProLiant DL380p Gen8 with PAA
  • Red Hat Enterprise Linux 7.1 running on HP ProLiant DL380p Gen8 without PAA
  • Red Hat Enterprise Linux 7.1 running on IBM Power8 Little Endian 8286-41A
  • Red Hat Enterprise Linux 7.1 running on IBM z13 (single-user mode)

Validation history

DateTypeLab
2016-08-29Initialatsec information security corporation
2016-12-20Updateatsec information security corporation

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2016-08-29, 2016-12-20

Source documents