Barracuda FIPS Provider based on the OpenSSL FIPS Provider
Barracuda FIPS Provider based on the OpenSSL FIPS Provider, from Barracuda Networks, Inc., holds FIPS 140-3 certificate #5524 at overall level 1. The validation is active, with a sunset date of 2030-03-10. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.
Caveat: When operated in approved mode. No assurance of the minimum strength of generated SSPs (e.g., keys).
Certificate
| Certificate number | 5524 |
|---|---|
| Standard | FIPS 140-3 |
| Status | active |
| Sunset date | 2030-03-10 |
| Overall level | 1 |
| Module type | Software |
| Embodiment | MultiChipStand |
| Vendor | Barracuda Networks, Inc. · website |
Module description
Quoted from the NIST CMVP entry for this certificate.
The Barracuda FIPS Provider based on the OpenSSL FIPS Provider is a software library providing a C-language application program interface (API) for use by applications that require cryptographic functionality.
Security level exceptions
- Physical security: N/A
- Non-invasive security: N/A
- Life-cycle assurance: Level 3
Approved algorithms (77)
| Algorithm | CAVP certificates |
|---|---|
| AES-CBC | A3548 |
| AES-CBC-CS1 | A3548 |
| AES-CBC-CS2 | A3548 |
| AES-CBC-CS3 | A3548 |
| AES-CCM | A3548 |
| AES-CFB1 | A3548 |
| AES-CFB128 | A3548 |
| AES-CFB8 | A3548 |
| AES-CMAC | A3548 |
| AES-CTR | A3548 |
| AES-ECB | A3548 |
| AES-GCM | A3548 |
| AES-GMAC | A3548 |
| AES-KW | A3548 |
| AES-KWP | A3548 |
| AES-OFB | A3548 |
| AES-XTS Testing Revision 2.0 | A3548 |
| Counter DRBG | A3548 |
| DSA KeyGen (FIPS186-4) | A3548 |
| DSA PQGGen (FIPS186-4) | A3548 |
| DSA PQGVer (FIPS186-4) | A3548 |
| DSA SigGen (FIPS186-4) | A3548 |
| DSA SigVer (FIPS186-4) | A3548 |
| ECDSA KeyGen (FIPS186-4) | A3548 |
| ECDSA KeyVer (FIPS186-4) | A3548 |
| ECDSA SigGen (FIPS186-4) | A3548 |
| ECDSA SigVer (FIPS186-4) | A3548 |
| Hash DRBG | A3548 |
| HMAC DRBG | A3548 |
| HMAC-SHA-1 | A3548 |
| HMAC-SHA2-224 | A3548 |
| HMAC-SHA2-256 | A3548 |
| HMAC-SHA2-384 | A3548 |
| HMAC-SHA2-512 | A3548 |
| HMAC-SHA2-512/224 | A3548 |
| HMAC-SHA2-512/256 | A3548 |
| HMAC-SHA3-224 | A3548 |
| HMAC-SHA3-256 | A3548 |
| HMAC-SHA3-384 | A3548 |
| HMAC-SHA3-512 | A3548 |
| KAS-ECC CDH-Component SP800-56Ar3 | A3548 |
| KAS-ECC-SSC Sp800-56Ar3 | A3548 |
| KAS-FFC-SSC Sp800-56Ar3 | A3548 |
| KAS-IFC-SSC | A3548 |
| KDA HKDF SP800-56Cr2 | A3548 |
| KDA OneStep SP800-56Cr2 | A3548 |
| KDA TwoStep SP800-56Cr2 | A3548 |
| KDF ANS 9.42 | A3548 |
| KDF ANS 9.63 | A3548 |
| KDF KMAC Sp800-108r1 | A3548 |
| KDF SP800-108 | A3548 |
| KDF SSH | A3548 |
| KMAC-128 | A3548 |
| KMAC-256 | A3548 |
| KTS-IFC | A3548 |
| PBKDF | A3548 |
| RSA KeyGen (FIPS186-4) | A3548 |
| RSA SigGen (FIPS186-4) | A3548 |
| RSA Signature Primitive | A3548 |
| RSA SigVer (FIPS186-4) | A3548 |
| Safe Primes Key Generation | A3548 |
| Safe Primes Key Verification | A3548 |
| SHA-1 | A3548 |
| SHA2-224 | A3548 |
| SHA2-256 | A3548 |
| SHA2-384 | A3548 |
| SHA2-512 | A3548 |
| SHA2-512/224 | A3548 |
| SHA2-512/256 | A3548 |
| SHA3-224 | A3548 |
| SHA3-256 | A3548 |
| SHA3-384 | A3548 |
| SHA3-512 | A3548 |
| SHAKE-128 | A3548 |
| SHAKE-256 | A3548 |
| TLS v1.2 KDF RFC7627 | A3548 |
| TLS v1.3 KDF | A3548 |
Validation history
| Date | Type | Lab |
|---|---|---|
| 2026-09-16 | Initial | Lightship Security, Inc. |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-09-17: first observed by this tracker, status active
- Validation dates on record: 2026-09-16