808bits

Ubuntu 16.04 OpenSSL Cryptographic Module

FIPS 140-2 certificate #3725 · Canonical Ltd. · data as of 2026-08-28
Historical. SP 800-56Arev3 transition - replaced by certificate #4589. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode and installed, initialized and configured as specified in Sections 9.1 of the Security Policy. The module generates cryptographic keys whose strengths are modified by available entropy

Certificate

Certificate number3725
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorCanonical Ltd. · website
Software versions2.0

Module description

OpenSSL is an open-source library of various cryptographic algorithms written mainly in C.

Security level exceptions

  • Physical Security: N/A

Approved algorithms

AlgorithmCAVP certificate
AESC1258, C1259, C1260, C1261, C1264, C1265, C1266, C1267, C1270
CVLC1269, C1304, C1305
DRBGC1265, C1269, C1304, C1305
DSAC1269, C1304, C1305
ECDSAC1269, C1304, C1305
HMACC1269, C1304, C1305
KTS
KTS
KTS
RSAC1269, C1304, C1305
SHSC1269, C1304, C1305
Triple-DESC1257

Allowed algorithms

Diffie-Hellman (CVL Certs. #C1269, #C1304 and #C1305 with CVL Certs. #C1269, #C1304 and #C1305, key agreement; key establishment methodology provides between 112 and 219 bits of encryption strength); EC Diffie-Hellman (CVL Certs. #C1269, #C1304 and #C1305 with CVL Certs. #C1269, #C1304 and #C1305, key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); MD5; NDRNG; RSA (key wrapping; key establishment methodology provides between 112 and 256 bits of encryption strength)

Tested configurations

  • Ubuntu 16.04 LTS 64-bit running on Supermicro SYS-5018R-WR with Intel Xeon E5 with PAA
  • Ubuntu 16.04 LTS 64-bit running on Supermicro SYS-5018R-WR with Intel Xeon E5 without PAA (single-user mode)

Validation history

DateTypeLab
2020-10-09Initialatsec information security corporation
2021-10-18Updateatsec information security corporation

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2020-10-09, 2021-10-18

Source documents