Oracle Cloud Infrastructure Cryptographic Library for Kubernetes
Oracle Cloud Infrastructure Cryptographic Library for Kubernetes, from Oracle Corporation, holds FIPS 140-2 certificate #3636 at overall level 1. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.
Certificate
| Certificate number | 3636 |
|---|---|
| Standard | FIPS 140-2 |
| Status | historical |
| Overall level | 1 |
| Module type | Software |
| Embodiment | Multi-Chip Stand Alone |
| Vendor | Oracle Corporation · website |
| Software versions | 1.0 |
Module description
Quoted from the NIST CMVP entry for this certificate.
A Software cryptographic library that contains FIPS Approved cryptography to serve Kubernetes and the Google Go programing language and application ecosystem.
Security level exceptions
- Physical Security: N/A
- Mitigation of Other Attacks: N/A
Approved algorithms (10)
| Algorithm | CAVP certificates |
|---|---|
| AES | C1456 |
| CKG | vendor affirmed |
| CVL | C1456 |
| DRBG | C1456 |
| ECDSA | C1456 |
| HMAC | C1456 |
| KTS | |
| RSA | C1456 |
| SHS | C1456 |
| Triple-DES | C1456 |
Allowed algorithms
EC Diffie-Hellman (CVL Cert. #C1456; key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); MD5; NDRNG; RSA (key wrapping; key establishment methodology provides between 112 and 256 bits of encryption strength)
Tested configurations
- Oracle Linux 7.7 running on Oracle Server X7-2 with AMD® EPYC® 7551 with PAA
- Oracle Linux 7.7 running on Oracle Server X7-2 with AMD® EPYC® 7551 without PAA (single-user mode)
- Oracle Linux 7.7 running on Oracle Server X7-2 with Intel® Xeon® Platinum 8167M with PAA
- Oracle Linux 7.7 running on Oracle Server X7-2 with Intel® Xeon® Platinum 8167M without PAA
Validation history
| Date | Type | Lab |
|---|---|---|
| 2020-03-23 | Initial | Acumen Security |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2020-03-23