808bits

SUSE Linux Enterprise Server libgcrypt Cryptographic Module

FIPS 140-2 certificate #3992 · SUSE, LLC · data as of 2026-08-28
Historical. Moved to historical list due to sunsetting. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode and installed, initialized and configured as specified in section 9 of the Security Policy. The module generates cryptographic keys whose strengths are modified by available entropy.

Certificate

Certificate number3992
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorSUSE, LLC · website
Software versions3.1

Module description

SUSE Libgcrypt is a general purpose cryptographic library based on the code from GnuPG.

Security level exceptions

  • Physical Security: N/A

Approved algorithms

AlgorithmCAVP certificate
AESA482, A485, A486, A1152
DRBGA482, A485, A486, A487, A1152
DSAA482, A485, A486, A487, A1152
ECDSAA482, A485, A486, A487, A1152
HMACA482, A484, A485, A486, A487, A488, A1152
KTS
PBKDFvendor affirmed
RSAA482, A485, A486, A487, A1152
SHA-3A482, A487, A1152
SHSA482, A484, A485, A486, A488, A1152
Triple-DESA482

Allowed algorithms

NDRNG; RSA (key wrapping; key establishment methodology provides between 112 and 256 bits of encryption strength)

Tested configurations

  • SUSE Linux Enterprise Server 15 SP2 running on Dell EMC PowerEdge 640 with Intel Cascade Lake Xeon Gold 6234 with PAA
  • SUSE Linux Enterprise Server 15 SP2 running on Dell EMC PowerEdge 640 with Intel Cascade Lake Xeon Gold 6234 without PAA
  • SUSE Linux Enterprise Server 15 SP2 running on Gigabyte R181-T90 with Cavium ThunderX2 CN9975 ARMv8 with PAA
  • SUSE Linux Enterprise Server 15 SP2 running on Gigabyte R181-T90 with Cavium ThunderX2 CN9975 ARMv8 without PAA (single-user mode)
  • SUSE Linux Enterprise Server 15 SP2 running on IBM System Z/15 with IBM z15

Validation history

DateTypeLab
2021-07-22Initialatsec information security corporation
2021-11-28Updateatsec information security corporation

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2021-07-22, 2021-11-28

Source documents