OpenSSL FIPS Object Module
OpenSSL FIPS Object Module, from Open Source Software Institute, holds FIPS 140-2 certificate #733 at overall level 1. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.
Certificate
| Certificate number | 733 |
|---|---|
| Standard | FIPS 140-2 |
| Status | historical |
| Overall level | 1 |
| Module type | Software |
| Embodiment | Multi-chip standalone |
| Vendor | Open Source Software Institute · website |
Module description
Quoted from the NIST CMVP entry for this certificate.
The OpenSSL FIPS Object Module is a cryptographic library that can be downloaded from http://www.openssl.org/source/
Approved algorithms (6)
Other algorithms
DES; Diffie-Hellman (key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength; non-compliant less than 112 bits of encryption strength); RSA (key wrapping; key establishment methodology provides between 112 and 150 bits of encryption strength; non-compliant less than 112 bits of encryption strength); RNG (Cert. #216; non-compliant. This RNG shall not be used for any services requiring the use of random bits); DSA (SigGen and KeyGen, Cert. #175; non-compliant);
Tested configurations
- SuSE Linux Version 9.0 (gcc Compiler Version 3.3.1), and HPUX Version 11i (gcc Compiler Version 3.4.2) (in single user mode)
Validation history
| Date | Type | Lab |
|---|---|---|
| 2007-02-06 | Initial | DOMUS |
| 2007-11-30 | Update |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2007-02-06, 2007-11-30