808bits

Red Hat Enterprise Linux Libreswan Cryptographic Module

FIPS 140-2 certificate #3293 · Red Hat®, Inc. · data as of 2026-08-28
Historical. SP 800-56Arev3 transition. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: With module Red Hat Enterprise Linux NSS Cryptographic Module validated to FIPS 140-2 under Cert. #3270 operating in FIPS mode and Red Hat Enterprise Linux OpenSSL Module validated to FIPS 140-2 under Cert. #3016 operating in FIPS mode

Certificate

Certificate number3293
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorRed Hat®, Inc. · website
Software versions6.0

Module description

Red Hat Enterprise Linux Libreswan Cryptographic Module is a software only cryptographic module that provides the IKE protocol version 1 and version 2 key agreement services required for IPSec.

Security level exceptions

  • Physical Security: N/A
  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AES5348, 5350, 5374, 5375
CVL1811, 1844, 1982
DRBG2068, 2081
ECDSA1407, 1420
HMAC3445, 3446, 3447, 3449, 3450, 3451, 3452, 3453, 3454, 3459, 3546, 3562
RSA2862, 2875
SHS4300, 4314
Triple-DES2706, 2711

Allowed algorithms

Diffie-Hellman (Certs. #1811 and #1844 with CVL Cert. #1982, key agreement; key establishment methodology provides between 112 bits and 256 bits of encryption strength); EC Diffie-Hellman (Certs. #1811 and #1844 with CVL Cert. #1982, key agreement; key establishment methodology provides between 128 and 256 bits of encryption strength); NDRNG; RSA (Certs. #2862 and #2875, key wrapping; key establishment methodology provides between 112 bits and 256 bits of encryption strength)

Tested configurations

  • Red Hat Enterprise Linux 7.5 running on Dell PowerEdge R630 with PAA
  • Red Hat Enterprise Linux 7.5 running on Dell PowerEdge R630 without PAA (single-user mode)

Validation history

DateTypeLab
2018-09-25Initialatsec information security corporation

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2018-09-25

Source documents