Rocky Linux 8 and 9 NSS Cryptographic Module
Rocky Linux 8 and 9 NSS Cryptographic Module, from Ctrl IQ, Inc., holds FIPS 140-3 certificate #5337 at overall level 1. The validation is active, with a sunset date of 2031-06-16. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.
Caveat: When operated in approved mode and installed, initialized and configured as specified in Section 11 of the Security Policy. No assurance of minimum security of SSPs (e.g., keys, bit strings) that are externally loaded, or of SSPs established with externally loaded SSPs.
Certificate
| Certificate number | 5337 |
|---|---|
| Standard | FIPS 140-3 |
| Status | active |
| Sunset date | 2031-06-16 |
| Overall level | 1 |
| Module type | Software |
| Embodiment | MultiChipStand |
| Vendor | Ctrl IQ, Inc. · website |
Module description
Quoted from the NIST CMVP entry for this certificate.
The Rocky Linux 8 and 9 NSS Cryptographic Module consists of the Softoken and Freebl libraries offering various cryptographic mechanisms.
Security level exceptions
- Physical security: N/A
- Non-invasive security: N/A
Validation history
| Date | Type | Lab |
|---|---|---|
| 2026-06-17 | Initial | atsec information security corporation |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status active
- Validation dates on record: 2026-06-17