Identity Manager - FIPS - Which crypto modules and certificate numbers are used?
search cancel

Identity Manager - FIPS - Which crypto modules and certificate numbers are used?

book

Article ID: 238426

calendar_today

Updated On:

Products

CA Identity Suite CA Identity Manager

Issue/Introduction

Which crypto libraries/modules does Identity Manager use with FIPS and what are the associated CMVP certificate numbers?

Environment

Identity Manager 14.3 and 14.4

Resolution

Cryptographic Module Name: BC-FJA,  CAPKI for Server
Cryptographic Algorithm Used: AES
Service Provided By Cryptographic Module: Encryption
Length of associated cryptographic keys or modules: 128,192,256 (Supported key sizes)


IM 14.3 uses OpenSSL FIPS Object Module which is certificate 1747 and Bouncy Castle which is certificate 3152:


https://csrc.nist.gov/projects/cryptographic-module-validation-program/Certificate/1747


https://csrc.nist.gov/projects/cryptographic-module-validation-program/certificate/3152

 

IM 14.4 uses CAPKI which is certificate 4104 and Bouncy Castle which is certificate 3152:

https://csrc.nist.gov/projects/cryptographic-module-validation-program/certificate/4104


https://csrc.nist.gov/projects/cryptographic-module-validation-program/certificate/3152

 

IM 14.4.2, Bouncy FIPS jar was upgraded to 1.0.2.3


https://csrc.nist.gov/Projects/cryptographic-module-validation-program/Certificate/3514