808bits

NetApp, Inc.

14 FIPS 140 certificates · 6 active · data as of 2026-09-08

NetApp, Inc. holds 14 FIPS 140 certificates in NIST's Cryptographic Module Validation Program, covering NetApp and Decru. 6 are still active, 8 have moved to the historical list.

3 certificates on the 140-2 sunset list. Every FIPS 140-2 validation still active moves to the historical list on 2026-09-21. What that means and the full list.
CertModuleStandardStatusLevelValidated
5271NetApp CryptoModFIPS 140-3active · sunsets 2029-07-1812026-05-15
5154NetApp Cryptographic Security Module (NCSM) based on the OpenSSL FIPS ProviderFIPS 140-3active · sunsets 2030-03-1012026-02-13
5097NetApp StorageGRID Kernel Crypto APIFIPS 140-3active · sunsets 2030-11-2912025-11-30
4838NetApp Cryptographic Security ModuleFIPS 140-2active · sunsets 2026-09-2112024-10-16
4297NetApp Cryptographic Security ModuleFIPS 140-2active · sunsets 2026-09-2112022-09-12
4144NetApp CryptoModFIPS 140-2active · sunsets 2026-09-2112022-02-03
4731NetApp CryptoModFIPS 140-3historical12024-07-19
3387NetApp CryptoModFIPS 140-2historical12019-03-01
3072NetApp CryptoModFIPS 140-2historical12017-12-04
2648NetApp Cryptographic Security ModuleFIPS 140-2historical12016-05-27
848Decru DataFort SCSI SEP v1.0FIPS 140-2historical32007-10-18
847Decru DataFort LKM SEP v1.0FIPS 140-2historical32007-10-18
846Decru DataFort NAS SEP v1.0FIPS 140-2historical32007-10-18
833Decru DataFort SAN SEP v2.0FIPS 140-2historical32007-09-05

NIST records the vendor as free text, so one company can appear under several spellings. Those are grouped here. Corporate families are not: a product line can change owner, and the certificates stay with the registration that earned them. The nShield modules run from nCipher Corporation through Thales to Entrust, and this tracker keeps those as three vendors because that is how NIST holds them.