808bits

Tumbleweed Security Kernel

FIPS 140-2 certificate #857 · Tumbleweed Communications Corp. · data as of 2026-08-28
Historical. RNG SP800-131A Revision 1 Transition. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: None

Certificate

Certificate number857
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeSoftware
EmbodimentMulti-chip standalone
VendorTumbleweed Communications Corp. · website
Software versions2.0

Module description

The Tumbleweed Security Kernel is a software module implemented as two dynamic libraries that provide all security functionalities for several products of Tumbleweed Communications Corp., including Validation Authority, SecureTransport, and MailGate.

Approved algorithms

AlgorithmCAVP certificate
AES524, 543
ECDSA54, 56
HMAC275, 285
RNG300, 311
RSA237, 244
SHS597, 608
Triple-DES531, 540

Other algorithms

Diffie-Hellman (key agreement; key establishment methodology provides 112 bits of encryption strength; non-compliant less than 112 bits of encryption strength); RSA (key wrapping; key establishment methodology provides 112 bits of encryption strength; non-compliant less than 112 bits of encryption strength)

Tested configurations

  • IBM AIX 5.2.0.0 (single-user mode)
  • SunOS 5.10
  • SuSE Linux 9 Enterprise Server SP3
  • Windows 2003 Server SP2
  • Windows XP SP2

Validation history

DateTypeLab
2007-10-26InitialUL Verification Services, Inc.

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2007-10-26

Source documents