NIST Cryptographic Module Validation Program
The National Institute of Standards and Technology (NIST) developed the Federal Information Processing Standards (FIPS) FIPS 140-2, and now FIPS 140-3, that outlines the security requirements that must be satisfied by cryptographic modules, providing four increasing, qualitative levels intended to cover a wide range of potential applications and environments.
Many other industry standards like Defense Counterintelligence Security Agency (DCSA) and the Defense Information Systems Agency (DISA) Security Requirements Guides (SRGs) and Security Technical Implementation Guides (STIG) depend on FIPS 140-2 and FIPS 140-3 certified cryptography modules. The tests and requirements of FIPS 140-2 and FIPS 140-3 assure that the cryptographic modules that are validated comply with the latest standards, utilize the appropriate key lengths, and create correct cipher text and keys. The validation process confirms that the modules behave as defined.
The following modules are validated:
| Tested Configuration FIPS 140-2 | Modules | Certificate | Validation Date | Sunset Date |
|---|---|---|---|---|
SUSE Linux Enterprise Server 12 SP4 |
#4069 |
11/15/2021 |
09/21/2026 |
|
#4070 |
11/15/2021 |
09/21/2026 |
||
SUSE Linux Enterprise Server 12 SP5 |
#4069 |
11/15/2021 |
09/21/2026 |
|
SUSE Linux Enterprise Server 15 SP2 |
#3962 |
06/30/2021 11/28/2021 |
06/29/2026 |
|
#3991 |
07/22/2021 11/28/2021 |
07/21/2026 |
||
#3992 |
07/22/2021 11/28/2021 |
07/21/2026 |
||
#4055 |
10/27/2021 11/28/2021 |
10/26/2026 09/21/2026 |
| Tested Configuration FIPS 140-3 | Modules | Certificate | Validation Date | Sunset Date |
|---|---|---|---|---|
SUSE Linux Enterprise Server 15 SP4 |
#5420 |
07/07/2026 |
07/10/2029 |
|
#5436 |
07/26/2026 |
07/11/2029 |
||
#4727 |
07/15/2024 |
07/14/2029 |
||
#5435 |
07/26/2026 |
07/16/2029 |
||
#5419 |
07/09/2026 |
07/25/2029 |
||
#4822 |
10/07/2024 |
10/06/2029 |
||
SUSE Linux Enterprise Server 15 SP6 |
#5096 |
11/26/2025 |
11/26/2030 |
|
#5112 |
12/18/2025 |
12/17/2030 |
||
#5248 |
04/27/2026 |
04/26/2031 |
||
#5238 |
04/10/2026 |
04/09/2031 |
||
#5355 |
06/25/2026 |
06/24/2031 |
Validations may also be viewed at the NIST CMVP Validated Modules Page.
NIST CMVP Process for FIPS Validation and Updates, Patches, and CVEs
NIST has updated their site outlining the process for handling updates, patches, and CVEs for certified modules. You can read their statement at: https://csrc.nist.gov/Projects/cryptographic-module-validation-program/cmvp-flow in the section entitled "FIPS Validation and Updates, Patches, and CVEs".
NIST Cryptographic Module Validation Program - Modules In Process List
The following modules are in progress:
| Module Name | Standard | Status |
|---|---|---|
SUSE Linux Enterprise GnuTLS Cryptographic Module |
FIPS 140-3 |
Comment Resolution - Lab (1/20/2026) |
SUSE Linux Enterprise Kernel Crypto API Cryptographic Module |
FIPS 140-3 |
Pending Review (5/26/2026) |
SUSE Linux Enterprise Libica Cryptographic Module |
FIPS 140-3 |
Comment Resolution - Lab (3/16/2026) |
SUSE Linux Enterprise NSS Cryptographic Module |
FIPS 140-3 |
Review (5/27/2026) |
SUSE Linux Enterprise NSS Cryptographic Module |
FIPS 140-3 |
Comment Resolution - Lab (1/26/2026) |
SUSE Linux Enterprise GnuTLS Cryptographic Module |
FIPS 140-3 |
Comment Resolution - Lab (6/12/2026) |
SUSE Linux Enterprise Libgcrypt Cryptographic Module |
FIPS 140-3 |
Comment Resolution - Lab (6/12/2026) |
SUSE Linux Enterprise Libica Cryptographic Module |
FIPS 140-3 |
Comment Resolution - Lab (6/16/2026) |
SUSE Linux Enterprise OpenSSL Cryptographic Module |
FIPS 140-3 |
Review (6/12/2026) |
Modules in progress can also be viewed at the NIST CMVP Modules-In-Process Page.
NIST Cryptographic Algorithm Validation Program
The NIST Cryptographic Algorithm Validation Program (CAVP) provides validation testing of approved cryptographic algorithms and their various components. Cryptographic algorithm validation is a prerequisite of the NIST Cyptographic Module Validation Program.
The following algorithms are validated:
| Tested Configuration | Algorithm | Certificate | Validation Date |
|---|---|---|---|
SUSE Linux Enterprise Server 15 SP4 |
1111 |
03/08/2023 |
|
A3378 |
03/08/2023 |
||
A3574 |
04/25/2023 |
||
A3575 |
04/25/2023 |
||
A3576 |
04/25/2023 |
||
A3577 |
04/25/2023 |
||
A3578 |
04/25/2023 |
||
A3579 |
04/25/2023 |
||
A3580 |
04/25/2023 |
||
A3581 |
04/25/2023 |
||
A3582 |
04/25/2023 |
||
A3583 |
04/25/2023 |
||
A3584 |
04/25/2023 |
||
A3585 |
04/25/2023 |
||
A3586 |
04/25/2023 |
||
A3587 |
04/25/2023 |
||
A3588 |
04/25/2023 |
||
SUSE Linux Enterprise Server 15 SP6 |
A6360 |
12/12/2024 |
|
A6361 |
12/12/2024 |
||
A6362 |
12/12/2024 |
||
A6363 |
12/12/2024 |
||
A6364 |
12/12/2024 |
||
A6365 |
12/12/2024 |
||
A6366 |
12/12/2024 |
||
A6367 |
12/12/2024 |
||
A6368 |
12/12/2024 |
||
A6369 |
12/12/2024 |
||
A6370 |
12/12/2024 |
||
A6371 |
12/12/2024 |
||
A6372 |
12/12/2024 |
||
A6373 |
12/12/2024 |
||
A6374 |
12/12/2024 |
||
A6375 |
12/12/2024 |
||
A6376 |
12/12/2024 |
||
A6659 |
03/07/2025 |
||
A6660 |
03/07/2025 |
||
A6711 |
03/14/2025 |
||
A6712 |
03/14/2025 |
||
SUSE Linux Enterprise - Libgcrypt Cryptographic Module (AESNI AVX) |
A6821 |
04/22/2025 |
|
SUSE Linux Enterprise - Libgcrypt Cryptographic Module (SSSE3) |
A6822 |
04/22/2025 |
|
SUSE Linux Enterprise - Libgcrypt Cryptographic Module (SHLD) |
A6823 |
04/22/2025 |
|
SUSE Linux Enterprise - Libgcrypt Cryptographic Module (Full Acceleration) |
A6824 |
04/22/2025 |
|
SUSE Linux Enterprise - Libgcrypt Cryptographic Module (No Acceleration) |
A6825 |
04/22/2025 |
|
SUSE Linux Enterprise - Libgcrypt Cryptographic Module (AESNI BMI2) |
A6826 |
04/22/2025 |
|
SUSE Linux Enterprise - Libgcrypt Cryptographic Module (NEON) |
A6827 |
04/22/2025 |
|
SUSE Rancher |
A6389 |
12/17/2024 |
More information on the NIST CAVP can be viewed at: https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program.
| Cloud Provider | Packages |
|---|---|
Amazon |
|
Microsoft/Azure |
|
Alibaba |