808bits

IBM® Corporation LTO Generation 7 and Generation 8 Encrypting Tape Drive

FIPS 140-2 certificate #3167 · IBM® Corporation · data as of 2026-08-28
Historical. Moved to historical list due to sunsetting. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode. No assurance of the minimum strength of generated keys

Certificate

Certificate number3167
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeHardware
EmbodimentMulti-Chip Stand Alone
VendorIBM® Corporation · website
Hardware versions38L7450 EC Level M13681 [1][4], 38L7464 EC Level M13681 [2][5], 38L7462 EC Level M13681 [3][6], 01PL347 EC Level N99440 [7][10][13], 01PL351 EC Level N99440 [8][11][14], 01PL349 EC Level N99440 [9][12][15]
Firmware versionsLTO7_G986.fcp_fh_f.fmrz [1], LTO7_G986.fcp_hh_f.fmrz [2], LTO7_G986.sas_hh_f.fmrz [3], LTO7_G986.fcp_fh_f_OEMD.fmrz [4], LTO7_G986.fcp_hh_f_OEMD.fmrz [5], LTO7_G986.sas_hh_f_OEMD.fmrz [6], LTO8_J4D0.fcp_fh_f.fmrz [7], LTO8_J4D1.fcp_hh_f.fmrz [8], LTO8_J4D1.sas_hh_f.fmrz [9], LTO8_J4D0.fcp_fh_f_OEMD.fmrz [10], LTO8_J4D1.fcp_hh_f_OEMD.fmrz [11], LTO8_J4D1.sas_hh_f_OEMD.fmrz [12], LTO8_J4D0.fcp_fh_f_OEMS.fmrz [13], LTO8_J4D1.fcp_hh_f_OEMS.fmrz [14], LTO8_J4D1.sas_hh_f_OEMS.fmrz [15]

Module description

The IBM® Corporation LTO Generation 7 and Generation 8 Encrypting Tape Drive provides AES-GCM encryption of customer data recorded to tape. Both encryption and compression are implemented in the hardware for optimum performance. Six different host interface types of the LTO Generation 7 "brick" unit are FIPS certified as a multi-chip, standalone cryptographic module. In customer operation the "brick" unit may be embedded in bridge box or in a canister package for operation in a library.

Security level exceptions

  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AES3357, 3358, 4810
CKGvendor affirmed
DRBG1672
KTS
RSA2634
SHS3954

Allowed algorithms

NDRNG; RSA (key wrapping; key establishment methodology provides 112 bits of encryption strength)

Tested configurations

  • N/A

Validation history

DateTypeLab
2018-04-10InitialLeidos Accredited Testing & Evaluation (AT&E) Lab
2018-10-12UpdateLeidos Accredited Testing & Evaluation (AT&E) Lab

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2018-04-10, 2018-10-12

Source documents