Ubuntu 16.04 OpenSSL Cryptographic Module
Caveat: When operated in FIPS mode and installed, initialized and configured as specified in Sections 9.1 of the Security Policy. The module generates cryptographic keys whose strengths are modified by available entropy
Certificate
| Certificate number | 4589 |
|---|---|
| Standard | FIPS 140-2 |
| Status | historical |
| Overall level | 1 |
| Module type | Software |
| Embodiment | Multi-Chip Stand Alone |
| Vendor | Canonical Ltd. · website |
| Software versions | 2.0 |
Module description
OpenSSL is an open-source library of various cryptographic algorithms written mainly in C.
Security level exceptions
- Physical Security: N/A
Approved algorithms
| Algorithm | CAVP certificate |
|---|---|
| AES | C1258, C1259, C1260, C1261, C1264, C1265, C1266, C1267, C1270 |
| CVL | C1269, C1304, C1305 |
| DRBG | C1265, C1269, C1304, C1305 |
| DSA | C1269, C1304, C1305 |
| ECDSA | C1269, C1304, C1305 |
| HMAC | C1269, C1304, C1305 |
| KTS | |
| KTS | |
| KTS | |
| RSA | C1269, C1304, C1305 |
| SHS | C1269, C1304, C1305 |
| Triple-DES | C1257 |
Allowed algorithms
MD5; NDRNG; RSA (key wrapping; key establishment methodology provides between 112 and 256 bits of encryption strength)
Tested configurations
- Ubuntu 16.04 LTS 64-bit running on Supermicro SYS-5018R-WR with Intel Xeon E5 with PAA
- Ubuntu 16.04 LTS 64-bit running on Supermicro SYS-5018R-WR with Intel Xeon E5 without PAA (single-user mode)
Validation history
| Date | Type | Lab |
|---|---|---|
| 2023-09-08 | Initial | atsec information security corporation |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2023-09-08