5 FIPS 140-2 Compliance in Oracle Linux 8

Oracle Linux provides a set of cryptographic libraries, services, and user-level cryptographic applications that are compliant with the Federal Information Processing Standard (FIPS) Publication 140-2.

FIPS Publication 140-2, Security Requirements for Cryptographic Modules, specifies the security requirements that must be satisfied by a cryptographic module that's used within a security system to protect sensitive, but unclassified information. The NIST/CSE Cryptographic Module Validation Program (CMVP) validates cryptographic modules to FIPS 140-2. Validated products are accepted by the Federal agencies of both the USA and Canada for the protection of sensitive or designated information.

Note:

CMVP started accepting FIPS 140-3 submissions on September 22, 2020. Existing FIPS 140-2 validated modules remain compliant until they're sunset on September 21, 2026.