808bits

SUSE Linux Enterprise Libgcrypt Cryptographic Module

FIPS 140-3 certificate #4722 · SUSE, LLC · data as of 2026-09-15

SUSE Linux Enterprise Libgcrypt Cryptographic Module, from SUSE, LLC, holds FIPS 140-3 certificate #4722 at overall level 1. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.

Historical. Replaced by certificate #5420. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: Interim validation. When operated in approved mode. When installed, initialized and configured as specified in Section 11 of the Security Policy

Certificate

Certificate number4722
StandardFIPS 140-3
Statushistorical
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorSUSE, LLC · website
Software versions3.2

Module description

Quoted from the NIST CMVP entry for this certificate.

SUSE Linux Enterprise Libgcrypt Cryptographic Module is a general purpose cryptographic library based on the code from GnuPG.

Security level exceptions

  • Physical security: N/A
  • Non-invasive security: N/A

Approved algorithms (41)

AlgorithmCAVP certificates
AES-CBCA3022, A3023, A3025, A3026
AES-CCMA3022, A3023, A3025, A3026
AES-CFB128A3022, A3023, A3025, A3026
AES-CFB8A3022, A3023, A3025, A3026
AES-CMACA3022, A3023, A3025, A3026
AES-CTRA3022, A3023, A3025, A3026
AES-ECBA3022, A3023, A3025, A3026
AES-KWA3022, A3023, A3025, A3026
AES-OFBA3022, A3023, A3025, A3026
AES-XTS Testing Revision 2.0A3022, A3023, A3025, A3026
Counter DRBGA3022, A3023, A3025, A3026
ECDSA KeyGen (FIPS186-4)A3022, A3023, A3024, A3025, A3026
ECDSA KeyVer (FIPS186-4)A3022, A3023, A3024, A3025, A3026
ECDSA SigGen (FIPS186-4)A3022, A3023, A3024, A3025, A3026
ECDSA SigVer (FIPS186-4)A3022, A3023, A3024, A3025, A3026
Hash DRBGA3022, A3023, A3024, A3025, A3026
HMAC DRBGA3022, A3023, A3024, A3025, A3026
HMAC-SHA-1A3021, A3022, A3023, A3024, A3025, A3026, A3027
HMAC-SHA2-224A3022, A3023, A3024, A3025, A3026
HMAC-SHA2-256A3022, A3023, A3024, A3025, A3026
HMAC-SHA2-384A3022, A3023, A3024, A3025, A3026
HMAC-SHA2-512A3022, A3023, A3024, A3025, A3026
HMAC-SHA3-224A3024, A3025, A3026
HMAC-SHA3-256A3024, A3025, A3026
HMAC-SHA3-384A3024, A3025, A3026
HMAC-SHA3-512A3024, A3025, A3026
PBKDFA3022, A3023, A3024, A3025, A3026
RSA KeyGen (FIPS186-4)A3022, A3023, A3024, A3025, A3026
RSA SigGen (FIPS186-4)A3022, A3023, A3024, A3025, A3026
RSA SigVer (FIPS186-4)A3022, A3023, A3024, A3025, A3026
SHA-1A3021, A3022, A3023, A3024, A3025, A3026, A3027
SHA2-224A3022, A3023, A3024, A3025, A3026
SHA2-256A3022, A3023, A3024, A3025, A3026
SHA2-384A3022, A3023, A3024, A3025, A3026
SHA2-512A3022, A3023, A3024, A3025, A3026
SHA3-224A3024, A3025, A3026
SHA3-256A3024, A3025, A3026
SHA3-384A3024, A3025, A3026
SHA3-512A3024, A3025, A3026
SHAKE-128A3024, A3025, A3026
SHAKE-256A3024, A3025, A3026

Tested configurations

  • SUSE Linux Enterprise Server 15 SP4 on PowerVM (VIOS 3.1.4.00) running on IBM Power E1080 (9080-HEX) with Power10 processor with PAA
  • SUSE Linux Enterprise Server 15 SP4 on PowerVM (VIOS 3.1.4.00) running on IBM Power E1080 (9080-HEX) with Power10 processor without PAA
  • SUSE Linux Enterprise Server 15 SP4 running on GIGABYTE G242-P32-QZ with ARM Ampere(R) Altra(R) Q80-30 processor with PAA
  • SUSE Linux Enterprise Server 15 SP4 running on GIGABYTE G242-P32-QZ with ARM Ampere(R) Altra(R) Q80-30 processor without PAA
  • SUSE Linux Enterprise Server 15 SP4 running on GIGABYTE R181-Z90-00 with AMD EPYC(TM) 7371 processor with PAA
  • SUSE Linux Enterprise Server 15 SP4 running on GIGABYTE R181-Z90-00 with AMD EPYC(TM) 7371 processor without PAA
  • SUSE Linux Enterprise Server 15 SP4 running on IBM z/15 with z15 processor with PAI
  • SUSE Linux Enterprise Server 15 SP4 running on IBM z/15 with z15 processor without PAI
  • SUSE Linux Enterprise Server 15 SP4 running on Supermicro Super Server SYS-6019P-WTR with Intel(R) Xeon(R) Silver 4215R processor with PAA
  • SUSE Linux Enterprise Server 15 SP4 running on Supermicro Super Server SYS-6019P-WTR with Intel(R) Xeon(R) Silver 4215R processor without PAA

Validation history

DateTypeLab
2024-07-11Initialatsec information security corporation

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2024-07-11

Source documents