Cryptographic Modules

FIPS 140-2 compliance requires the clear definition of modules that perform cryptographic functions. The following cryptographic modules are the minimum versions required for the FIPS mode to be working on Session Monitor Release 5.2 :

  • openssl-1.1.1k-12.el8_9.x86_64.rpm or higher [4215]
  • gnutls-3.6.16-8.el8_9_fips.x86_64.rpm [4229]
  • libgcrypt-1.8.5-7.el8_6_fips.x86_64.rpm [4232]

Note:

The list above shows the latest versions available as part of Oracle Linux 8.x, the link provided in brackets specify the security certificate corresponding to the versions which was validated for FIPS 140-2. For more information, visit the Oracle Security Evaluations website (FIPS 140 | External Security Evaluations | Secure Development | Oracle) and download the latest security policy. The Security Policy document explains how to verify that the package is FIPS 140-2 validated, as well as how to configure the module for FIPS mode. Use the Search bar to gather all Oracle Linux listings and download security policy for the same.