Red Hat Enterprise Linux 8 Kernel Cryptographic API
Red Hat Enterprise Linux 8 Kernel Cryptographic API, from Red Hat(R), Inc., holds FIPS 140-3 certificate #4804 at overall level 1. The validation is active, with a sunset date of 2026-09-18. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.
Caveat: Interim validation. When operated in approved mode. When installed, initialized and configured as specified in section 11 of the Security Policy. The module generates random strings whose strengths are modified by available entropy.
Certificate
| Certificate number | 4804 |
|---|---|
| Standard | FIPS 140-3 |
| Status | active |
| Sunset date | 2026-09-18 |
| Overall level | 1 |
| Module type | Software |
| Embodiment | Multi-Chip Stand Alone |
| Vendor | Red Hat(R), Inc. · website |
| Software versions | 4.18.0-372.52.1.el8_6; libkcapi 1.2.0-2.el8 |
Module description
Quoted from the NIST CMVP entry for this certificate.
The Red Hat Enterprise Linux 8 Kernel Cryptographic API provides a C language API for use by other (kernel space and user space) processes that require cryptographic functionality
Security level exceptions
- Physical security: N/A
- Non-invasive security: N/A
- Mitigation of other attacks: N/A
Approved algorithms (32)
Tested configurations
- Red Hat Enterprise Linux 8 running on Dell PowerEdge R440 with Intel Xeon Silver 4216 with PAA
- Red Hat Enterprise Linux 8 running on Dell PowerEdge R440 with Intel Xeon Silver 4216 without PAA
Validation history
| Date | Type | Lab |
|---|---|---|
| 2024-09-19 | Initial | atsec information security corporation |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status active
- Validation dates on record: 2024-09-19