808bits

SUSE Linux Enterprise Server OpenSSL Cryptographic Module

FIPS 140-2 certificate #3797 · SUSE, LLC · data as of 2026-08-28
Historical. Moved to historical list due to sunsetting. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode. The module generates cryptographic keys whose strengths are modified by available entropy

Certificate

Certificate number3797
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorSUSE, LLC · website
Software versions4.0

Module description

OpenSSL is an open-source library of various cryptographic algorithms written mainly in C.

Security level exceptions

  • Physical Security: N/A

Approved algorithms

AlgorithmCAVP certificate
AESA77, A78, A79, A83, A86, A89, A90, A91, A92, A93, A94, A95, A99, A100, A101, A187, A188, A189, A192, A194, A196, A200, A201, A206, A207, A208, A209, A210, A211, A212
CVLA80, A81, A82, A85, A96, A98, A102, A103, A186, A190, A195, A202, A203, A204, A205, A213
DRBGA76, A77, A78, A79, A83, A84, A87, A88, A89, A91, A92, A93, A94, A95, A100, A101, A187, A188, A189, A191, A192, A193, A194, A198, A199, A200, A206, A207, A208, A209, A210, A211
DSAA80, A81, A82, A85, A186, A195, A202, A203
ECDSAA80, A81, A82, A85, A186, A195, A202, A203
HMACA76, A80, A81, A82, A84, A85, A87, A88, A186, A191, A193, A195, A198, A199, A202, A203
KAS
KTS
KTS
KTS
KTS
PBKDFA80, A81, A82, A85, A186, A195, A202, A203
RSAA80, A81, A82, A85, A186, A195, A202, A203
SHSA76, A80, A81, A82, A84, A85, A87, A88, A186, A191, A193, A195, A198, A199, A202, A203
Triple-DESA97, A197

Allowed algorithms

MD5; NDRNG; RSA (key wrapping; key establishment methodology provides between 112 and 256 bits of encryption strength)

Tested configurations

  • SUSE Linux Enterprise Server 15 SP0 running on Dell EMC PowerEdge 640 with Intel Cascade Lake Xeon Gold 6234 with PAA
  • SUSE Linux Enterprise Server 15 SP0 running on Dell EMC PowerEdge 640 with Intel Cascade Lake Xeon Gold 6234 without PAA (single-user mode)

Validation history

DateTypeLab
2021-01-25Initialatsec information security corporation
2021-11-28Updateatsec information security corporation

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2021-01-25, 2021-11-28

Source documents