Unisys Linux strongSwan Cryptographic Module
Unisys Linux strongSwan Cryptographic Module, from Unisys Corporation, holds FIPS 140-2 certificate #3971 at overall level 1. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.
Caveat: When operated in FIPS mode with module Unisys Linux OpenSSL FIPS Object Module validated to FIPS 140-2 under Cert. #3959 operating in FIPS mode
Certificate
| Certificate number | 3971 |
|---|---|
| Standard | FIPS 140-2 |
| Status | historical |
| Overall level | 1 |
| Module type | Software |
| Embodiment | Multi-Chip Stand Alone |
| Vendor | Unisys Corporation · website |
| Software versions | 5.6.3-6.4 |
Module description
Quoted from the NIST CMVP entry for this certificate.
The module is a software-shared cryptographic library that provides key derivation functions for the Internet Key Exchange (IKE) protocol in the Ubuntu operating system user space. The module is defined as a multi-chip standalone module, as defined by FIPS PUB 140-2. This module implements a KDF for IKEv1 and IKEv2 that complies with the requirements of SP 800-135rev1.
Security level exceptions
- Physical Security: N/A
- Mitigation of Other Attacks: N/A
Approved algorithms (4)
Tested configurations
- Ubuntu Linux 18.04 LTS Server Edition running on a Dell PowerEdge R640 Server with an Intel Xeon Gold 5115 (single-user mode)
Validation history
| Date | Type | Lab |
|---|---|---|
| 2021-07-06 | Initial | Leidos Accredited Testing & Evaluation (AT&E) Lab |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2021-07-06