808bits

SUSE Linux Enterprise Server 12 SP2 - NSS Cryptographic Module

FIPS 140-2 certificate #3216 · SUSE, LLC · data as of 2026-08-28
Historical. SP 800-56Arev3 transition. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS Mode. The module generates cryptographic keys whose strengths are modified by available entropy

Certificate

Certificate number3216
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorSUSE, LLC · website
Software versions2.0

Module description

SUSE Network Security Services (NSS) is a set of libraries designed to support cross-platform development of security-enabled client and server applications.

Security level exceptions

  • Roles, Services, and Authentication: Level 2
  • Physical Security: N/A
  • Design Assurance: Level 2

Approved algorithms

AlgorithmCAVP certificate
AES5003, 5004, 5005
CKGvendor affirmed
CVL1551, 1552, 1553, 1554, 1555, 1556
DRBG1824, 1825, 1826
DSA1309, 1310, 1311
ECDSA1272, 1273, 1274
HMAC3325, 3326, 3327
KTS
RSA2697, 2698, 2699
SHS4068, 4069, 4070
Triple-DES2580, 2581, 2582

Allowed algorithms

Diffie-Hellman (CVL Certs. #1551, #1553 and #1555 with CVL Certs. #1552, #1554 and #1556, key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); EC Diffie-Hellman (CVL Certs. #1551, #1553 and #1555 with CVL Certs. #1552, #1554 and #1556, key agreement; key establishment methodology provides between 128 and 256 bits of encryption strength); RSA (key wrapping; key methodology provides at least 112 bits of encryption strength)

Tested configurations

  • SUSE Linux Enterprise Server 12 SP2 running on FUJITSU Server PRIMERGY CX2570 M2 inside a CX400 M1 enclosure with PAA
  • SUSE Linux Enterprise Server 12 SP2 running on FUJITSU Server PRIMERGY CX2570 M2 inside a CX400 M1 enclosure without PAA
  • SUSE Linux Enterprise Server 12 SP2 running on IBM z13 without PAI (single-user mode)

Validation history

DateTypeLab
2018-07-03Initialatsec information security corporation

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2018-07-03

Source documents