Certificate 2473 - OpenSSL FIPS Object Module RE
intCertNum 2473
strVendorName OpenSSL Software Foundation
strURL http://openssl.com
strAddress1 1829 Mount Ephraim Road
strAddress2
strAddress3
strCity Adamstown
strStateProv MD
strPostalCode 21710
strCountry 21710
strContact Steve Marquess
strEmail marquess@openssl.com
strPhone 800-673-6775
strFax
strContact2
strEmail2
strFax2
strPhone2
intCertNum 2473
strModuleName OpenSSL FIPS Object Module RE
strPartNumber Software Version: 2.0.9 or 2.0.10
memModuleNotes When built, installed, protected and initialized as assumed by the Crypto Officer role and as specified in the provided Security Policy. Appendix A of the provided Security Policy specifies the actual distribution tar file containing the source code of this module. There shall be no additions, deletions or alterations to the tar file contents as used during module build. The distribution tar file shall be verified as specified in Appendix A of the provided Security Policy. Installation and protection shall be completed as specified in Appendix A of the provided Security Policy. Initialization shall be invoked as per Section 4 of the provided Security Policy. Any deviation from specified verification, protection, installation and initialization procedures will result in a non FIPS 140-2 compliant module
str140Version 140-2
_sp_ Security Policy   [pdf][html][txt]
_cert_ Certificate   [pdf]
strPURL
strModuleType Software
strValidationDate 11/13/2015;01/25/2016;04/28/2016
intOverallLevel 1
memIndividualLevelNotes -Roles, Services, and Authentication: Level 2;-Physical Security: N/A;-Design Assurance: Level 3;-Mitigation of Other Attacks: N/A;-Operational Environment: TS-Linux 2.4 running on Arm920Tid (ARMv4) (gcc Compiler Version 4.3.2); iOS 8.1 64-bit running on Apple A7 (ARMv8) without NEON and Crypto Extensions (clang Compiler Version 600.0.56); iOS 8.1 64-bit running on Apple A7 (ARMv8) with NEON and Crypto Extensions (clang Compiler Version 600.0.56); VxWorks 6.9 running on Freescale P2020 (PPC) (gcc Compiler Version 4.3.3); iOS 8.1 32-bit running on Apple A7 (ARMv8) without NEON (clang Compiler Version 600.0.56); iOS 8.1 32-bit running on Apple A7 (ARMv8) with NEON (clang Compiler Version 600.0.56); Android 5.0 32-bit running on Qualcomm APQ8084 (ARMv7) without NEON (gcc Compiler Version 4.9); Android 5.0 32-bit running on Qualcomm APQ8084 (ARMv7) with NEON (gcc Compiler Version 4.9); Android 5.0 64-bit running on SAMSUNG Exynos7420 (ARMv8) without NEON and Crypto Extensions (gcc Compiler Version 4.9); Android 5.0 64-bit running on SAMSUNG Exynos7420 (ARMv8) with NEON and Crypto Extensions (gcc Compiler Version 4.9); FreeBSD 10.2 running on Intel Xeon E5-2430L (x86) without PAA (clang Compiler Version 3.4.1); FreeBSD 10.2 running on Intel Xeon E5-2430L (x86) with PAA (clang Compiler Version 3.4.1) (single-user mode)
strFIPSAlgorithms AES (Certs. #3090 and #3264);
CVL (Certs. #372 and #472);
DRBG (Certs. #607 and #723);
DSA (Certs. #896 and #933);
ECDSA (Certs. #558 and #620);
HMAC (Certs. #1937 and #2063);
RSA (Certs. #1581 and #1664);
SHS (Certs. #2553 and #2702);
Triple-DES (Certs. #1780 and #1853)
strOtherAlgorithms EC Diffie-Hellman;
RSA (encrypt/decrypt);
RNG
strConfiguration Multi-Chip Stand Alone
memModuleDescription The OpenSSL FIPS Object Module RE is a general purpose cryptographic module delivered as open source code. It is designed for ease of use with the popular OpenSSL cryptographic library and toolkit and is available for use without charge for a wide variety of platforms. The basic validation can also be extended quickly and affordably to accommodate new platforms and many types of modifications.
intModuleCount 1
memAdditionalNotes Added two new OEs.
strFirstValidtionDate 11/13/15 00:00:00
strLabName InfoGard
strValidationYear 2015