808bits

Kernel Cryptography Module for AlmaLinux 9

FIPS 140-3 certificate #4750 · Cloudlinux Inc., TuxCare division · data as of 2026-08-28
Historical. Replaced by certificate #5441. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: Interim validation. When operated in approved mode. When installed, initialized and configured as specified in Section 11 of the Security Policy.

Certificate

Certificate number4750
StandardFIPS 140-3
Statushistorical
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorCloudlinux Inc., TuxCare division · website
Software versionskernel 5.14.0-284.1101.el9_2.tuxcare.7; libkcapi 1.3.1-3.el9

Module description

The Linux kernel crypto API implementation provides cryptographic services to Linux kernel space software components and user space via the AF_ALG interface.

Security level exceptions

  • Physical security: N/A
  • Non-invasive security: N/A
  • Mitigation of other attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AES-CBCA4025
AES-CBCA4032
AES-CBCA4033
AES-CBCA4036
AES-CBCA4038
AES-CBCA4041
AES-CBC-CS3A4029
AES-CBC-CS3A4032
AES-CBC-CS3A4033
AES-CBC-CS3A4046
AES-CCMA4025
AES-CCMA4032
AES-CCMA4033
AES-CCMA4041
AES-CFB128A4027
AES-CFB128A4033
AES-CFB128A4044
AES-CMACA4025
AES-CMACA4032
AES-CMACA4033
AES-CMACA4041
AES-CTRA4025
AES-CTRA4032
AES-CTRA4033
AES-CTRA4033
AES-CTRA4036
AES-CTRA4038
AES-CTRA4041
AES-ECBA4025
AES-ECBA4030
AES-ECBA4031
AES-ECBA4032
AES-ECBA4033
AES-ECBA4034
AES-ECBA4035
AES-ECBA4036
AES-ECBA4038
AES-ECBA4039
AES-ECBA4040
AES-ECBA4041
AES-ECBA4042
AES-ECBA4043
AES-GCMA4025
AES-GCMA4030
AES-GCMA4031
AES-GCMA4033
AES-GCMA4034
AES-GCMA4035
AES-GCMA4038
AES-GCMA4039
AES-GCMA4040
AES-GCMA4041
AES-GCMA4042
AES-GCMA4043
AES-GMACA4025
AES-GMACA4033
AES-GMACA4041
AES-OFBA4028
AES-OFBA4033
AES-OFBA4045
AES-XTS Testing Revision 2.0A4025
AES-XTS Testing Revision 2.0A4032
AES-XTS Testing Revision 2.0A4033
AES-XTS Testing Revision 2.0A4036
AES-XTS Testing Revision 2.0A4038
AES-XTS Testing Revision 2.0A4041
Counter DRBGA4025
Counter DRBGA4030
Counter DRBGA4031
Counter DRBGA4033
Counter DRBGA4034
Counter DRBGA4035
Counter DRBGA4038
Counter DRBGA4039
Counter DRBGA4040
Counter DRBGA4041
Counter DRBGA4042
Counter DRBGA4043
Hash DRBGA4025
Hash DRBGA4030
Hash DRBGA4031
Hash DRBGA4034
Hash DRBGA4035
Hash DRBGA4038
Hash DRBGA4039
Hash DRBGA4040
Hash DRBGA4041
Hash DRBGA4042
Hash DRBGA4043
Hash DRBGA4047
Hash DRBGA4048
Hash DRBGA4049
HMAC DRBGA4025
HMAC DRBGA4030
HMAC DRBGA4031
HMAC DRBGA4034
HMAC DRBGA4035
HMAC DRBGA4038
HMAC DRBGA4039
HMAC DRBGA4040
HMAC DRBGA4041
HMAC DRBGA4042
HMAC DRBGA4043
HMAC DRBGA4047
HMAC DRBGA4048
HMAC DRBGA4049
HMAC-SHA2-224A4025
HMAC-SHA2-224A4032
HMAC-SHA2-224A4036
HMAC-SHA2-224A4037
HMAC-SHA2-224A4047
HMAC-SHA2-224A4048
HMAC-SHA2-224A4049
HMAC-SHA2-256A4025
HMAC-SHA2-256A4032
HMAC-SHA2-256A4036
HMAC-SHA2-256A4037
HMAC-SHA2-256A4047
HMAC-SHA2-256A4048
HMAC-SHA2-256A4049
HMAC-SHA2-384A4025
HMAC-SHA2-384A4047
HMAC-SHA2-384A4048
HMAC-SHA2-384A4049
HMAC-SHA2-512A4025
HMAC-SHA2-512A4047
HMAC-SHA2-512A4048
HMAC-SHA2-512A4049
HMAC-SHA3-224A4026
HMAC-SHA3-256A4026
HMAC-SHA3-384A4026
HMAC-SHA3-512A4026
RSA SigVer (FIPS186-4)A4025
RSA SigVer (FIPS186-4)A4047
RSA SigVer (FIPS186-4)A4048
RSA SigVer (FIPS186-4)A4049
SHA2-224A4025
SHA2-224A4032
SHA2-224A4036
SHA2-224A4037
SHA2-224A4047
SHA2-224A4048
SHA2-224A4049
SHA2-256A4025
SHA2-256A4032
SHA2-256A4036
SHA2-256A4037
SHA2-256A4047
SHA2-256A4048
SHA2-256A4049
SHA2-384A4025
SHA2-384A4047
SHA2-384A4048
SHA2-384A4049
SHA2-512A4025
SHA2-512A4047
SHA2-512A4048
SHA2-512A4049
SHA3-224A4026
SHA3-256A4026
SHA3-384A4026
SHA3-512A4026

Tested configurations

  • AlmaLinux 9.2 running on Amazon Web Services (AWS) a1.metal with AWS Graviton with PAA
  • AlmaLinux 9.2 running on Amazon Web Services (AWS) a1.metal with AWS Graviton without PAA
  • AlmaLinux 9.2 running on Amazon Web Services (AWS) m5.metal with Intel Xeon Platinum 8259CL with PAA
  • AlmaLinux 9.2 running on Amazon Web Services (AWS) m5.metal with Intel Xeon Platinum 8259CL without PAA

Validation history

DateTypeLab
2024-08-02Initialatsec information security corporation
2025-08-07Updateatsec information security corporation

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2024-08-02

Source documents