808bits

VMware's BoringCrypto Module

FIPS 140-2 certificate #4694 · Broadcom Inc. · data as of 2026-08-28
Active. Sunset date 2026-09-21, 23 days away. This is the FIPS 140-2 sunset: after it, agencies may keep the module only in existing systems.
Caveat: When operated in FIPS mode. No assurance of the minimum strength of generated keys.

Certificate

Certificate number4694
StandardFIPS 140-2
Statusactive
Sunset date2026-09-21
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorBroadcom Inc. · website
Software versions6.0

Module description

VMware’s BoringCrypto Module is a versatile software library that implements and provides FIPS 140-2 Approved cryptographic functionalities to various VMware products and services.

Security level exceptions

  • Physical Security: N/A
  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AESA4970
CVL
DRBG
ECDSA
HMAC
KAS
KAS-SSC
KTS
RSA
SHS
Triple-DES

Allowed algorithms

RSA (key wrapping; key establishment methodology provides between 112 and 256 bits of encryption strength)

Tested configurations

  • Amazon Linux 2 OS on VMware ESXi 8.0 running on Dell PowerEdge R650 with Intel® Xeon Gold 6330 with PAA
  • Amazon Linux 2 OS on VMware ESXi 8.0 running on Dell PowerEdge R650 with Intel® Xeon Gold 6330 without PAA
  • Amazon Linux 2023 OS on VMware ESXi 8.0 running on Dell PowerEdge R650 with Intel® Xeon Gold 6330 with PAA
  • Amazon Linux 2023 OS on VMware ESXi 8.0 running on Dell PowerEdge R650 with Intel® Xeon Gold 6330 without PAA
  • Photon OS 3.0 on VMware ESXi 8.0 running on Dell PowerEdge R650 with Intel® Xeon Gold 6330 with PAA
  • Photon OS 3.0 on VMware ESXi 8.0 running on Dell PowerEdge R650 with Intel® Xeon Gold 6330 without PAA
  • Photon OS 4.0 on VMware ESXi 8.0 running on Dell PowerEdge R650 with Intel® Xeon Gold 6330 with PAA
  • Photon OS 4.0 on VMware ESXi 8.0 running on Dell PowerEdge R650 with Intel® Xeon Gold 6330 without PAA
  • Photon OS 5.0 on VMware ESXi 8.0 running on Dell PowerEdge R650 with Intel® Xeon Gold 6330 with PAA
  • Photon OS 5.0 on VMware ESXi 8.0 running on Dell PowerEdge R650 with Intel® Xeon Gold 6330 without PAA
  • RHEL 8.2 on VMware ESXi 8.0 running on Dell PowerEdge R650 with Intel® Xeon Gold 6330 with PAA
  • RHEL 8.2 on VMware ESXi 8.0 running on Dell PowerEdge R650 with Intel® Xeon Gold 6330 without PAA
  • Ubuntu 20.04 on VMware ESXi 8.0 running on Dell PowerEdge R650 with Intel® Xeon Gold 6330 with PAA
  • Ubuntu 20.04 on VMware ESXi 8.0 running on Dell PowerEdge R650 with Intel® Xeon Gold 6330 without PAA
  • Ubuntu 20.04 running on Dell Precision 5550 with Intel® Core I7 with PAA
  • Ubuntu 20.04 running on Dell Precision 5550 with Intel® Core I7 without PAA
  • Ubuntu 22.04 on VMware ESXi 8.0 running on Dell PowerEdge R650 with Intel® Xeon Gold 6330 with PAA
  • Ubuntu 22.04 on VMware ESXi 8.0 running on Dell PowerEdge R650 with Intel® Xeon Gold 6330 without PAA
  • VMware ESXi 8.0U3 running on Dell PowerEdge R650 with Intel® Xeon Gold 6330 with PAA
  • VMware ESXi 8.0U3 running on Dell PowerEdge R650 with Intel® Xeon Gold 6330 without PAA

Validation history

DateTypeLab
2024-04-24InitialAcumen Security

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status active
  • Validation dates on record: 2024-04-24

Source documents