Certification

Differences between revisions 12 and 13
Revision 12 as of 2017-08-11 15:09:51
Size: 1691
Editor: trogado
Comment:
Revision 13 as of 2017-09-27 15:49:24
Size: 1901
Editor: trogado
Comment:
Deletions are marked like this. Additions are marked like this.
Line 13: Line 13:
   * [[http://csrc.nist.gov/groups/STM/cmvp/documents/140-1/1401val2017.htm|OpenSSH]] validated level 1 May 2017 (Server: 2906, Client: 2907)
   * [[http://csrc.nist.gov/groups/STM/cmvp/documents/140-1/1401val2017.htm|OpenSSL]] validated level 1 April 2017 (2888)
   * [[http://csrc.nist.gov/groups/STM/cmvp/documents/140-1/1401val2017.htm|Kernel Crypto API]] validated level 1 July 2017 (2926)
   * [[http://csrc.nist.gov/groups/STM/cmvp/documents/140-1/1401val2017.htm|Strongswan]] validated level 1 July 2017 (2978)
   * [[https://csrc.nist.gov/projects/cryptographic-module-validation-program/Certificate/2907|OpenSSH-Client]] validated level 1 May 2017 (#2907)
   * [[https://csrc.nist.gov/projects/cryptographic-module-validation-program/Certificate/2906|OpenSSH-Server]] validated level 1 May 2017 (#2906)
   * [[https://csrc.nist.gov/projects/cryptographic-mod
ule-validation-program/Certificate/2888|OpenSSL]] validated level 1 April 2017 (2888)
   * [[https://csrc.nist.gov/projects/cryptographic-module-validation-program/Certificate/2926|Kernel Crypto API]] validated level 1 July 2017 (2926)
   * [[https://csrc.nist.gov/projects/cryptographic-module-validation-program/Certificate/2978|Strongswan]] validated level 1 July 2017 (2978)


Canonical is seeking FIPS and CC certification for 16.04 LTS. We are also working to create DISA STIG and CIS Benchmark rulesets, together with auditing and remediation tooling, for 16.04 LTS.

Canonical is planning to offer Security Certification and Hardening for Ubuntu via a "paid for" Ubuntu Advantage Premium package. As a result, the FIPS and CC enabled packages will not be available in the publicly available Ubuntu archives.

For further information, please contact a member of the Canonical Inside Sales team at inside-sales@lists.canonical.com.

Security certifications for Ubuntu 16.04

Final location for the FIPS and CC enabled packages - tbd

Official hardening guides

  • DISA STIG - Received official notification from DISA that Ubuntu 16.04 STIG has been approved. STIG going through DISA post approval review and will be posted on DISA website when completed. Estimated availability for download, Sept 2017.
  • CIS Benchmark available for 14.04 and 16.04

Security/Certification (last edited 2017-12-13 15:38:55 by emilyr)