808bits

Oracle Linux 7 GnuTLS Cryptographic Module

FIPS 140-2 certificate #3169 · Oracle Corporation · data as of 2026-08-28
Historical. SP 800-56Arev3 transition. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode. The module generates cryptographic keys whose strengths are modified by available entropy

Certificate

Certificate number3169
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorOracle Corporation · website
Software versionsR7-2.0.0

Module description

The Oracle Linux 7 GnuTLS Cryptographic Module is a set of libraries implementing general purpose cryptographic algorithms and network protocols.

Security level exceptions

  • Physical Security: N/A
  • Design Assurance: Level 3

Approved algorithms

AlgorithmCAVP certificate
AES5038, 5042, 5043, 5080, 5858, 5862, 5863, 5864
CVL1592, 1593, 2113, 2114
DRBG1859, 2437
DSA1324, 1480
ECDSA1297, 1566
HMAC3360, 3860
KTS
KTS
KTS
RSA2727, 3083
SHS4105, 4134, 4634, 4635
Triple-DES2601, 2863

Allowed algorithms

Diffie-Hellman (CVL Certs. #1592 and #2113 with CVL Certs. #1593 and #2114, key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); EC Diffie-Hellman (CVL Certs. #1592 and #2113 with CVL Certs. #1593 and #2114, key agreement; key establishment methodology provides between 128 and 256 bits of encryption strength); MD5; NDRNG; RSA (key wrapping; key establishment methodology provides between 112 and 256 bits of encryption strength)

Tested configurations

  • Oracle Linux 7.3 64 bit running on Oracle Server X6-2 with PAA
  • Oracle Linux 7.3 64 bit running on Oracle Server X6-2 without PAA
  • Oracle Linux 7.3 64 bit running on Oracle Server X7-2 with PAA
  • Oracle Linux 7.3 64 bit running on Oracle Server X7-2 without PAA (single-user mode)

Validation history

DateTypeLab
2018-04-11Initialatsec information security corporation
2018-10-31Updateatsec information security corporation

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2018-04-11, 2018-10-31

Source documents