Chainguard FIPS Provider for OpenSSL
Caveat: When operated in approved mode. No assurance of minimum security of SSPs (e.g., keys, bit strings) that are externally loaded, or of SSPs established with externally loaded SSPs.
Certificate
| Certificate number | 5132 |
|---|---|
| Standard | FIPS 140-3 |
| Status | active |
| Sunset date | 2031-01-13 |
| Overall level | 1 |
| Module type | Software |
| Embodiment | Multi-Chip Stand Alone |
| Vendor | Chainguard, Inc. · website |
Module description
The Chainguard FIPS Provider for OpenSSL is defined as a software module in a multi-chip standalone embodiment. It provides a C language application program interface (API) for use by other applications that require cryptographic functionality. The module consists of one software component, the “FIPS provider”, which implements FIPS requirements, and the cryptographic functionality provided to the operator.
Security level exceptions
- Physical security: N/A
- Non-invasive security: N/A
Validation history
| Date | Type | Lab |
|---|---|---|
| 2026-01-14 | Initial | atsec information security corporation |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status active
- Validation dates on record: 2026-01-14