Ubuntu Kernel Crypto API Cryptographic Module
Caveat: When operated in FIPS mode
Certificate
| Certificate number | 2962 |
|---|---|
| Standard | FIPS 140-2 |
| Status | historical |
| Overall level | 1 |
| Module type | Software |
| Embodiment | Multi-Chip Stand Alone |
| Vendor | Canonical Ltd. · website |
| Software versions | 1.0 |
Module description
Ubuntu Kernel Crypto API module is a software module running as part of the operating system kernel that provides general purpose cryptographic services.
Security level exceptions
- Physical Security: N/A
- Mitigation of Other Attacks: N/A
Approved algorithms
| Algorithm | CAVP certificate |
|---|---|
| AES | 4478, 4479, 4480, 4481, 4482, 4483, 4484, 4485, 4486, 4487, 4488, 4489, 4490, 4491, 4492, 4493, 4494, 4495, 4496, 4497, 4498, 4500, 4501, 4502, 4503, 4504, 4505, 4506, 4507, C1474, C1475, C1476, C1477, C1478, C1479, C1480, C1481, C1482, C1483, C1485, C1486, C1487, C1488, C1489, C1490, C1491, C1492, C1493, C1497, C1498, C1528 |
| DRBG | 1457, 1458, 1459, 1460, 1461, 1462, 1463, 1464, 1465, 1466, 1467, 1469, 1470, C1474, C1483, C1484, C1485, C1486, C1494, C1495, C1496, C1497, C1528 |
| HMAC | 2970, 2971, 2972, 2973, 2974, 2975, 2976, 2977, C1483, C1484, C1494, C1495, C1496, C1528 |
| KTS | |
| RSA | 2447, 2448, 2449, 2450, 2451, 2452, 2453, 2454, C1483, C1484, C1494, C1495, C1496, C1528 |
| SHS | 3687, 3688, 3689, 3690, 3691, 3692, 3693, 3694, 3695, C1483, C1484, C1494, C1495, C1496, C1528, C1606 |
| Triple-DES | 2401, 2402, 2403, 2404, 2405, 2406, 2407, C1483, C1486, C1497, C1528, C1604, C1605 |
Allowed algorithms
NDRNG
Tested configurations
- Ubuntu 16.04 LTS 64-bit Little Endian running on IBM Power System 8001-22C with PAA
- Ubuntu 16.04 LTS 64-bit Little Endian running on IBM Power System 8001-22C without PAA
- Ubuntu 16.04 LTS 64-bit Little Endian running on IBM Power System 8247-22L with PAA
- Ubuntu 16.04 LTS 64-bit Little Endian running on IBM Power System 8247-22L without PAA
- Ubuntu 16.04 LTS 64-bit Little Endian running on IBM Power System 8335-GTB with PAA
- Ubuntu 16.04 LTS 64-bit Little Endian running on IBM Power System 8335-GTB without PAA
- Ubuntu 16.04 LTS 64-bit running on IBM z13 with PAI
- Ubuntu 16.04 LTS 64-bit running on IBM z13 without PAI
- Ubuntu 16.04 LTS 64-bit running on Supermicro SMX11SPL-F with PAA
- Ubuntu 16.04 LTS 64-bit running on Supermicro SMX11SPL-F without PAA (single-user mode)
- Ubuntu 16.04 LTS 64-bit running on Supermicro Supermicro A1SAi with PAA
- Ubuntu 16.04 LTS 64-bit running on Supermicro Supermicro A1SAi without PAA
- Ubuntu 16.04 LTS 64-bit running on Supermicro SYS-5018R-WR with PAA
- Ubuntu 16.04 LTS 64-bit running on Supermicro SYS-5018R-WR without PAA
Validation history
| Date | Type | Lab |
|---|---|---|
| 2017-07-18 | Initial | atsec information security corporation |
| 2020-03-24 | Update | atsec information security corporation |
| 2021-10-18 | Update | atsec information security corporation |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2017-07-18, 2020-03-24, 2021-10-18