Red Hat Enterprise Linux 9 - OpenSSL FIPS Provider
Red Hat Enterprise Linux 9 - OpenSSL FIPS Provider, from Red Hat(R), Inc., holds FIPS 140-3 certificate #4857 at overall level 1. The validation is active, with a sunset date of 2029-10-28. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.
Caveat: Interim validation. When operated in approved mode. When installed, initialized and configured as specified in Section 11.2 of the Security Policy. The module generates SSPs (e.g., keys) whose strengths are modified by available entropy.
Certificate
| Certificate number | 4857 |
|---|---|
| Standard | FIPS 140-3 |
| Status | active |
| Sunset date | 2029-10-28 |
| Overall level | 1 |
| Module type | Software |
| Embodiment | Multi-Chip Stand Alone |
| Vendor | Red Hat(R), Inc. · website |
| Software versions | 3.0.7-395c1a240fbfffd8 |
Module description
Quoted from the NIST CMVP entry for this certificate.
The Red Hat Enterprise Linux 9 - OpenSSL FIPS Provider provides a C language application program interface (API) for use by other applications that require cryptographic functionality.
Security level exceptions
- Physical security: N/A
- Non-invasive security: N/A
Approved algorithms (67)
Tested configurations
- Red Hat Enterprise Linux 9 on PowerVM FW1040.00 with VIOS 3.1.3.00 running on IBM 9080-HEX with IBM POWER10 with PAI
- Red Hat Enterprise Linux 9 on PowerVM FW1040.00 with VIOS 3.1.3.00 running on IBM 9080-HEX with IBM POWER10 without PAI
- Red Hat Enterprise Linux 9 running on Dell PowerEdge R440 with Intel(R) Xeon(R) Silver 4216 with PAA
- Red Hat Enterprise Linux 9 running on Dell PowerEdge R440 with Intel(R) Xeon(R) Silver 4216 without PAA
- Red Hat Enterprise Linux 9 running on IBM z16 3931-A01 with IBM z16 with PAI
- Red Hat Enterprise Linux 9 running on IBM z16 3931-A01 with IBM z16 without PAI
Validation history
| Date | Type | Lab |
|---|---|---|
| 2024-10-29 | Initial | atsec information security corporation |
| 2025-11-28 | Update | atsec information security corporation |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status active
- Validation dates on record: 2024-10-29