Cisco Systems NSS Module
Caveat: The module generates keys whose strengths are modified by available entropy. When Operated in FIPS mode
Certificate
| Certificate number | 3554 |
|---|---|
| Standard | FIPS 140-2 |
| Status | historical |
| Overall level | 1 |
| Module type | Software |
| Embodiment | Multi-Chip Stand Alone |
| Vendor | Cisco Systems, Inc. · website |
| Software versions | 3.36 and 3.44 |
Module description
Cisco Systems NSS Module is a software library supporting FIPS 140-2 approved cryptographic algorithms.
Security level exceptions
- Physical Security: N/A
- Mitigation of Other Attacks: N/A
Approved algorithms
Allowed algorithms
Diffie-Hellman (key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); EC Diffie-Hellman (key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); NDRNG
Tested configurations
- CentOS Linux 7.4 running on Cisco UCS M4 with Intel Xeon E5-2600
- CentOS Linux 7.4 running on Cisco UCS M5 with Intel Xeon Bronze
Validation history
| Date | Type | Lab |
|---|---|---|
| 2019-10-23 | Initial | Acumen Security |
| 2019-11-08 | Update | Acumen Security |
| 2021-03-15 | Update | Acumen Security |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2019-10-23, 2019-11-08, 2021-03-15