808bits

VMware’s VPN Crypto Module

FIPS 140-3 certificate #4881 · Broadcom Inc. · data as of 2026-08-28
Active. Sunset date 2026-11-14, 77 days away.
Caveat: Interim validation

Certificate

Certificate number4881
StandardFIPS 140-3
Statusactive
Sunset date2026-11-14
Overall level1
Module typeFirmware
EmbodimentMulti-Chip Stand Alone
VendorBroadcom Inc. · website
Firmware versions21.11

Module description

VMware's VPN Crypto Module is a firmware cryptographic module whose purpose is to provide FIPS 140-3 validated cryptographic functions to various applications utilizing VPN capabilities.

Security level exceptions

  • Non-invasive security: N/A
  • Mitigation of other attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AES-CBCA4384
AES-CCMA4384
AES-CMACA4384
AES-GCMA4384
AES-GMACA4384
HMAC-SHA-1A4384
HMAC-SHA2-224A4384
HMAC-SHA2-256A4384
HMAC-SHA2-256A4385
HMAC-SHA2-384A4384
HMAC-SHA2-512A4384
SHA-1A4384
SHA2-224A4384
SHA2-256A4384
SHA2-256A4385
SHA2-384A4384
SHA2-512A4384

Tested configurations

  • Ubuntu 20.04 on ESXi 8.0 running on Dell PowerEdge R650 with Intel(R) Xeon(R) Gold 6330 with PAA
  • Ubuntu 20.04 on ESXi 8.0 running on Dell PowerEdge R650 with Intel(R) Xeon(R) Gold 6330 without PAA

Validation history

DateTypeLab
2024-11-15InitialLightship Security, Inc.

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status active
  • Validation dates on record: 2024-11-15

Source documents