808bits

Red Hat Enterprise Linux 8 Kernel Crypto API Cryptographic Module

FIPS 140-2 certificate #3918 · Red Hat®, Inc. · data as of 2026-08-28
Historical. SP 800-56Arev3 transition. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode. The module generates random strings whose strengths are modified by available entropy.

Certificate

Certificate number3918
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorRed Hat®, Inc. · website
Software versionsrhel8.20200327

Module description

The Linux kernel Crypto API implemented in Red Hat Enterprise Linux 8 provides services operating inside the Linux kernel with various ciphers, message digests and an approved random number generator.

Security level exceptions

  • Physical Security: N/A
  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AESA586, A587, A588, A589, A590, A591, A592, A593, A594, A595, A596, A597, A598, A599, A600, A601, A603, A604, A605
DRBGA582, A583, A584, A585, A588, A589, A590, A593, A594, A595, A596, A597, A598, A599, A603, A604, A605
HMACA582, A583, A584, A602, A603, A604
KTS
KTS
KTS
RSAA582, A583, A584, A603
SHA-3A602
SHSA582, A583, A584, A603, A604
Triple-DESA585, A587, A590, A601, A603

Allowed algorithms

NDRNG

Tested configurations

  • Red Hat Enterprise Linux 8 running on Dell PowerEdge R430 with an Intel(R) Xeon(R) E5 with PAA
  • Red Hat Enterprise Linux 8 running on Dell PowerEdge R430 with an Intel(R) Xeon(R) E5 without PAA (single-user mode)

Validation history

DateTypeLab
2021-05-03Initialatsec information security corporation

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2021-05-03

Source documents