808bits

Cisco Systems NSS Module

FIPS 140-2 certificate #3554 · Cisco Systems, Inc. · data as of 2026-08-28
Historical. SP 800-56Arev3 transition. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: The module generates keys whose strengths are modified by available entropy. When Operated in FIPS mode

Certificate

Certificate number3554
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorCisco Systems, Inc. · website
Software versions3.36 and 3.44

Module description

Cisco Systems NSS Module is a software library supporting FIPS 140-2 approved cryptographic algorithms.

Security level exceptions

  • Physical Security: N/A
  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AESC503
DRBGC503
DSAC503
ECDSAC503
HMACC503
KTS
KTS
SHSC503
Triple-DESC503

Allowed algorithms

Diffie-Hellman (key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); EC Diffie-Hellman (key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); NDRNG

Tested configurations

  • CentOS Linux 7.4 running on Cisco UCS M4 with Intel Xeon E5-2600
  • CentOS Linux 7.4 running on Cisco UCS M5 with Intel Xeon Bronze

Validation history

DateTypeLab
2019-10-23InitialAcumen Security
2019-11-08UpdateAcumen Security
2021-03-15UpdateAcumen Security

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2019-10-23, 2019-11-08, 2021-03-15

Source documents