808bits

Oracle Solaris Kernel Cryptographic Framework

FIPS 140-2 certificate #4034 · Oracle Corporation · data as of 2026-08-28
Active. Sunset date 2026-09-19, 21 days away. This is the FIPS 140-2 sunset: after it, agencies may keep the module only in existing systems.
Caveat: When operated in FIPS mode

Certificate

Certificate number4034
StandardFIPS 140-2
Statusactive
Sunset date2026-09-19
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorOracle Corporation · website
Software versions1.4

Module description

The Oracle Solaris Kernel Cryptographic Framework module provides cryptographic functionality for the kernel module. The module provides encryption, decryption, hashing, signature generation and verification, secure random number generation, and message authentication functions. The module can leverage the algorithm acceleration from SPARC and x86 processors when available.

Security level exceptions

  • Physical Security: N/A
  • Design Assurance: Level 3
  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AESC1895
DRBGC1895
HMACC1895
RSAC1895
SHA-3C1895
SHSC1895
Triple-DESC1895

Allowed algorithms

NDRNG

Tested configurations

  • Oracle Solaris 11.4 running on Oracle SPARC T8 Server with a SPARC M8 with PAA
  • Oracle Solaris 11.4 running on Oracle SPARC T8 Server with a SPARC M8 without PAA
  • Oracle Solaris 11.4 running on Oracle ZFS Storage Appliance ZS7 with an Intel® Xeon® Gold 6100 with PAA
  • Oracle Solaris 11.4 running on Oracle ZFS Storage Appliance ZS7 with an Intel® Xeon® Gold 6100 without PAA (single user mode)

Validation history

DateTypeLab
2021-09-20InitialAcumen Security
2022-01-30UpdateAcumen Security

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status active
  • Validation dates on record: 2021-09-20, 2022-01-30

Source documents