Connect:Direct Secure+ Option
Connect:Direct Secure+ Option, from Sterling Commerce, Inc., holds FIPS 140-2 certificate #719 at overall level 1. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.
Caveat: When operated in FIPS mode
Certificate
| Certificate number | 719 |
|---|---|
| Standard | FIPS 140-2 |
| Status | historical |
| Overall level | 1 |
| Module type | Software |
| Embodiment | Multi-chip standalone |
| Vendor | Sterling Commerce, Inc. · website |
| Software versions | Version 3.7 on UNIX |
Module description
Quoted from the NIST CMVP entry for this certificate.
Connect:Direct Secure+ Option provides server-based software file-transfer solutions for high-volume applications. Connect:Direct installations typically perform periodic, high-capacity file transfers between specific servers, often for financial services or federal government applications. This software supports multiple server platforms, including mainframe operating systems, UNIX platforms, and Windows servers.
Approved algorithms (6)
| Algorithm | CAVP certificates |
|---|---|
| AES | 192, 380 |
| DSA | 164 |
| HMAC | 7, 168 |
| RNG | 39, 182 |
| SHS | 272, 451, 452, 453 |
| Triple-DES | 288, 423, 424 |
Other algorithms
RSA (key wrapping; key establishment methodology provides 80 bits of encryption strength; non-compliant); DES; MD5
Tested configurations
- Sun Solaris 10, IBM AIX 5.3, and HP-UX 11i (single-user mode)
Validation history
| Date | Type | Lab |
|---|---|---|
| 2006-11-15 | Initial | EWA - Canada |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2006-11-15