SSH Cryptographic Library
SSH Cryptographic Library, from TECTIA Corporation, holds FIPS 140-2 certificate #370 at overall level 1. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.
Caveat: When operated in FIPS mode
Certificate
| Certificate number | 370 |
|---|---|
| Standard | FIPS 140-2 |
| Status | historical |
| Overall level | 1 |
| Module type | Software |
| Embodiment | Multi-chip standalone |
| Vendor | TECTIA Corporation |
| Software versions | 1.2.0 |
Module description
Quoted from the NIST CMVP entry for this certificate.
The SSH Cryptographic Library is a standards-based shared library providing FIPS 140-2 certified cryptographic services for SSH Communications Security's security products. The library provides a rich API and a comprehensive set of state-of-the-art algorithms including AES, 3DES, SHA-1, HMAC, RSA and DSA.
Security level exceptions
- EMI/EMC: Level 3
- Self-Tests: Level 4
Approved algorithms (6)
| Algorithm | CAVP certificates |
|---|---|
| AES | 52 |
| DSA | 82 |
| HMAC-SHA-1 | vendor affirmed |
| RSA | vendor affirmed |
| SHA-1 | 145 |
| Triple-DES | 162 |
Other algorithms
DES (Cert. #207); MD5; SHA-256; HMAC-MD5; HMAC-SHA-1 96; CAST-128; Blowfish; Twofish; Arcfour; Diffie-Hellman (key agreement)
Tested configurations
- Windows XP, Solaris 8, AIX 4.3.3, HP-UX 11i (single user mode)
Validation history
| Date | Type | Lab |
|---|---|---|
| 2003-12-24 | Initial | LogicaCMG |
| 2004-09-03 | Update | |
| 2004-09-21 | Update | |
| 2006-03-03 | Update | |
| 2007-03-06 | Update | |
| 2010-07-30 | Update |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2003-12-24, 2004-09-03, 2004-09-21, 2006-03-03, 2007-03-06, 2010-07-30