808bits

Extreme Networks FIPS Object Module

FIPS 140-2 certificate #3578 · Extreme Networks · data as of 2026-08-28
Historical. Moved to historical list due to sunsetting. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode. No assurance of the minimum strength of generated keys.

Certificate

Certificate number3578
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorExtreme Networks · website
Software versions2.0.16i or 2.0.16m

Module description

The Extreme Networks FIPS Object Module is a general-purpose cryptographic module integrated into Extreme Networks’ products to provide FIPS 140-2 validated cryptography for the protection of sensitive information.

Security level exceptions

  • Roles, Services, and Authentication: Level 2
  • Physical Security: N/A
  • Design Assurance: Level 3
  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AESC1154, C1155, A1391
CKGvendor affirmed
CVLC1154, C1155, A1391
DRBGC1154, C1155, A1391
DSAC1154, C1155, A1391
ECDSAC1154, C1155, A1391
HMACC1154, C1155, A1391
KAS-SSCvendor affirmed
RSAC1154, C1155, A1391
SHSC1154, C1155, A1391
Triple-DESC1154, C1155, A1391

Allowed algorithms

RSA (key wrapping; key establishment methodology provides between 112 and 256 bits of encryption strength)

Tested configurations

  • ExtremeXOS-Linux 4 running on ExtremeSwitching™ 5420 with Broadcom BCM56274 with Embedded ARM Cortex A72 (ARMv8-A) with PAA
  • ExtremeXOS-Linux 4 running on ExtremeSwitching™ 5420 with Broadcom BCM56274 with Embedded ARM Cortex A72 (ARMv8-A) without PAA
  • ExtremeXOS-Linux 4 running on ExtremeSwitching™ 5520 with Broadcom BCM56376 with Embedded ARM Cortex A72 (ARMv8) with PAA
  • ExtremeXOS-Linux 4 running on ExtremeSwitching™ 5520 with Broadcom BCM56376 with Embedded ARM Cortex A72 (ARMv8) without PAA
  • ExtremeXOS-Linux 4 running on ExtremeSwitching™ X435 with Broadcom BCM53549 with Embedded ARM Cortex A72 (ARMv7) with PAA
  • ExtremeXOS-Linux 4 running on ExtremeSwitching™ X435 with Broadcom BCM53549 with Embedded ARM Cortex A72 (ARMv7) without PAA
  • ExtremeXOS-Linux 4 running on ExtremeSwitching™ X460-G2 with Cavium Octeon II
  • ExtremeXOS-Linux 4 running on ExtremeSwitching™ X465 with Intel Atom C3338 with PAA
  • ExtremeXOS-Linux 4 running on ExtremeSwitching™ X465 with Intel Atom C3338 without PAA
  • ExtremeXOS-Linux 4 running on ExtremeSwitching™ X695 with Intel Atom C3758 with PAA
  • ExtremeXOS-Linux 4 running on ExtremeSwitching™ X695 with Intel Atom C3758 without PAA
  • ExtremeXOS-Linux 4 running on ExtremeSwitching™ X870 with Intel Atom C2558 with PAA
  • ExtremeXOS-Linux 4 running on ExtremeSwitching™ X870 with Intel Atom C2558 without PAA (single user mode).

Validation history

DateTypeLab
2019-12-04InitialAcumen Security
2021-08-26UpdateAcumen Security
2021-12-08UpdateAcumen Security

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2019-12-04, 2021-08-26, 2021-12-08

Source documents