808bits

Red Hat Enterprise Linux Libreswan Cryptographic Module

FIPS 140-2 certificate #3083 · Red Hat®, Inc. · data as of 2026-08-28
Historical. SP 800-56Arev3 transition. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: With module Red Hat Enterprise Linux NSS Cryptographic Module validated to FIPS 140-2 under Cert. #3070 operating in FIPS mode and Red Hat Enterprise Linux OpenSSL Module validated to FIPS 140-2 under Cert. #3016 operating in FIPS mode

Certificate

Certificate number3083
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorRed Hat®, Inc. · website
Software versions5.0

Module description

Red Hat Enterprise Linux Libreswan Cryptographic Module is a software only cryptographic module that provides the IKE protocol version 1 and version 2 key agreement services required for IPSec.

Security level exceptions

  • Physical Security: N/A
  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AES4739, 4740, 4741, 4742
CVL1378, 1379, 1410
DRBG1625, 1626
ECDSA1181, 1182
HMAC3076, 3088, 3090, 3091, 3107, 3108, 3109, 3110, 3111, 3112, 3156, 3157
RSA2588, 2589
SHS3884, 3885
Triple-DES2520, 2521

Allowed algorithms

Diffie-Hellman (Certs. #1378 and #1379 with CVL Cert. #1410, key agreement; key establishment methodology provides between 112 bits and 256 bits of encryption strength); EC Diffie-Hellman (Certs. #1378 and #1379 with CVL Cert. #1410, key agreement; key establishment methodology provides between 128 and 256 bits of encryption strength); NDRNG; RSA (Certs. #2588 and #2589, key wrapping; key establishment methodology provides between 112 bits and 256 bits of encryption strength)

Tested configurations

  • Red Hat Enterprise Linux 7.4 running on Dell PowerEdge R630 with PAA
  • Red Hat Enterprise Linux 7.4 running on Dell PowerEdge R630 without PAA (single-user mode)

Validation history

DateTypeLab
2017-12-19Initialatsec information security corporation

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2017-12-19

Source documents