808bits

Extreme Networks FIPS Object Module

FIPS 140-2 certificate #3578 · Extreme Networks · data as of 2026-09-15

Extreme Networks FIPS Object Module, from Extreme Networks, holds FIPS 140-2 certificate #3578 at overall level 1. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.

Historical. Moved to historical list due to sunsetting. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode. No assurance of the minimum strength of generated keys.

Certificate

Certificate number3578
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorExtreme Networks · website
Software versions2.0.16i or 2.0.16m

Module description

Quoted from the NIST CMVP entry for this certificate.

The Extreme Networks FIPS Object Module is a general-purpose cryptographic module integrated into Extreme Networks’ products to provide FIPS 140-2 validated cryptography for the protection of sensitive information.

Security level exceptions

  • Roles, Services, and Authentication: Level 2
  • Physical Security: N/A
  • Design Assurance: Level 3
  • Mitigation of Other Attacks: N/A

Approved algorithms (11)

AlgorithmCAVP certificates
AESC1154, C1155, A1391
CKGvendor affirmed
CVLC1154, C1155, A1391
DRBGC1154, C1155, A1391
DSAC1154, C1155, A1391
ECDSAC1154, C1155, A1391
HMACC1154, C1155, A1391
KAS-SSCvendor affirmed
RSAC1154, C1155, A1391
SHSC1154, C1155, A1391
Triple-DESC1154, C1155, A1391

Allowed algorithms

RSA (key wrapping; key establishment methodology provides between 112 and 256 bits of encryption strength)

Tested configurations

  • ExtremeXOS-Linux 4 running on ExtremeSwitching™ 5420 with Broadcom BCM56274 with Embedded ARM Cortex A72 (ARMv8-A) with PAA
  • ExtremeXOS-Linux 4 running on ExtremeSwitching™ 5420 with Broadcom BCM56274 with Embedded ARM Cortex A72 (ARMv8-A) without PAA
  • ExtremeXOS-Linux 4 running on ExtremeSwitching™ 5520 with Broadcom BCM56376 with Embedded ARM Cortex A72 (ARMv8) with PAA
  • ExtremeXOS-Linux 4 running on ExtremeSwitching™ 5520 with Broadcom BCM56376 with Embedded ARM Cortex A72 (ARMv8) without PAA
  • ExtremeXOS-Linux 4 running on ExtremeSwitching™ X435 with Broadcom BCM53549 with Embedded ARM Cortex A72 (ARMv7) with PAA
  • ExtremeXOS-Linux 4 running on ExtremeSwitching™ X435 with Broadcom BCM53549 with Embedded ARM Cortex A72 (ARMv7) without PAA
  • ExtremeXOS-Linux 4 running on ExtremeSwitching™ X460-G2 with Cavium Octeon II
  • ExtremeXOS-Linux 4 running on ExtremeSwitching™ X465 with Intel Atom C3338 with PAA
  • ExtremeXOS-Linux 4 running on ExtremeSwitching™ X465 with Intel Atom C3338 without PAA
  • ExtremeXOS-Linux 4 running on ExtremeSwitching™ X695 with Intel Atom C3758 with PAA
  • ExtremeXOS-Linux 4 running on ExtremeSwitching™ X695 with Intel Atom C3758 without PAA
  • ExtremeXOS-Linux 4 running on ExtremeSwitching™ X870 with Intel Atom C2558 with PAA
  • ExtremeXOS-Linux 4 running on ExtremeSwitching™ X870 with Intel Atom C2558 without PAA (single user mode).

Validation history

DateTypeLab
2019-12-04InitialAcumen Security
2021-08-26UpdateAcumen Security
2021-12-08UpdateAcumen Security

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2019-12-04, 2021-08-26, 2021-12-08

Source documents