-

Red Hat Extends Red Hat Enterprise Linux 8 as a Foundation for More Secure Computing with Second FIPS 140-2 Validation

Red Hat Enterprise Linux 8.2 now meets the stringent software security criteria for sensitive computing deployments, adding greater security posture to layered products within Red Hat’s open hybrid cloud portfolio

RALEIGH, N.C.--(BUSINESS WIRE)--Red Hat, Inc., the world's leading provider of open source solutions, today announced the renewal of the Federal Information Processing Standard 140-2 (FIPS 140-2) security validation for Red Hat Enterprise Linux 8.2. The second FIPS certification for the Red Hat Enterprise Linux 8 platform, this validation indicates Red Hat’s leadership and commitment to providing a more secure backbone for the innovation of open hybrid cloud.

Driven by the National Institute of Standards and Technology (NIST), FIPS 140-2 is a computer security standard that specifies the requirements for cryptographic modules -- including both hardware and software components -- used within a security system to protect sensitive information. This validation is needed when agencies determine that specific information systems should use cryptography to protect data; if cryptography is required, then it must be validated.

With this validation for Red Hat Enterprise Linux 8.2, many of Red Hat’s open hybrid cloud offerings also retain the FIPS 140-2 certification as layered products building on Red Hat Enterprise Linux 8.2’s cryptography modules. These include but are not limited to:

  • Red Hat Ceph Storage
  • Red Hat Gluster Storage
  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat Satellite
  • Red Hat Virtualization

Red Hat Enterprise Linux 8.2 includes FIPS 140-2 validation for the following modules:

In addition to the certification of Red Hat Enterprise Linux 8.2, Red Hat Enterprise Linux 7.7 received renewed FIPS 140-2 certificates for the following modules:

As part of the well-documented Red Hat Enterprise Linux life cycle, Red Hat Enterprise Linux 7 is in Maintenance Phase 2 and will be the last RHEL 7 release to receive FIPS 140-2 validation. Red Hat intends to seek Kernel Crypto API Cryptographic Module certificate updates to include the latest Red Hat Enterprise Linux 7.8 and Red Hat Enterprise Linux 7.9 kernel versions.

In order to achieve FIPS 140-2 validation, cryptographic modules are subject to testing by NIST-accredited independent Cryptographic and Security Testing Laboratories. The validation for Red Hat Enterprise Linux 8.2 was performed by atsec information security corporation’s Cryptographic and Security Testing Laboratory in Austin, Texas.

Red Hat Enterprise Linux 8.3 and Red Hat Enterprise Linux 8.4 are currently being validated or are already on the NIST "Modules In Process" list with the intent to extend FIPS 140-2 validation to these releases.

Supporting Quote

Paul Smith, senior vice president and general manager, Public Sector, North America, Red Hat

“The renewed FIPS 140-2 validation for Red Hat Enterprise Linux 8.2 and Red Hat Enterprise Linux 7.7 indicated Red Hat’s strong commitment to delivering an independently validated, more secure platform for sensitive computing deployments across the hybrid cloud and in both the public and private sectors.”

Additional Resources

Connect with Red Hat

About Red Hat, Inc.

Red Hat is the world’s leading provider of enterprise open source software solutions, using a community-powered approach to deliver reliable and high-performing Linux, hybrid cloud, container, and Kubernetes technologies. Red Hat helps customers integrate new and existing IT applications, develop cloud-native applications, standardize on our industry-leading operating system, and automate, secure, and manage complex environments. Award-winning support, training, and consulting services make Red Hat a trusted adviser to the Fortune 500. As a strategic partner to cloud providers, system integrators, application vendors, customers, and open source communities, Red Hat can help organizations prepare for the digital future.

Forward-Looking Statements

Except for the historical information and discussions contained herein, statements contained in this press release may constitute forward-looking statements within the meaning of the Private Securities Litigation Reform Act of 1995. Forward-looking statements are based on the company’s current assumptions regarding future business and financial performance. These statements involve a number of risks, uncertainties and other factors that could cause actual results to differ materially. Any forward-looking statement in this press release speaks only as of the date on which it is made. Except as required by law, the company assumes no obligation to update or revise any forward-looking statements.

Red Hat, Red Hat Enterprise Linux, the Red Hat logo, Ceph, Gluster and OpenShift are trademarks or registered trademarks of Red Hat, Inc. or its subsidiaries in the U.S. and other countries. Linux® is the registered trademark of Linus Torvalds in the U.S. and other countries. The OpenStack Word Mark is either a registered trademark/service mark or trademark/service mark of the OpenStack Foundation, in the United States and other countries, and is used with the OpenStack Foundation's permission. Red Hat is not affiliated with, endorsed or sponsored by the OpenStack Foundation, or the OpenStack community.

Contacts

Media:
John Terrill
Red Hat, Inc.
+1-571-421-8132

Red Hat, Inc.

Details
Headquarters: Raleigh, North Carolina
CEO: Matt Hicks
Employees: 22,000
Organization: OTH

Release Summary
Red Hat Enterprise Linux 8.2 adds FIPS 140-2 validation, extends secure foundation for sensitive computing.
Release Versions

Contacts

Media:
John Terrill
Red Hat, Inc.
+1-571-421-8132

More News From Red Hat, Inc.

Red Hat Further Drives Digital Sovereignty for the AI Era with Red Hat OpenShift on Google Cloud Dedicated

RALEIGH, N.C.--(BUSINESS WIRE)--Red Hat, the world’s leading provider of open source solutions, today announced upcoming support for Red Hat OpenShift on Google Cloud Dedicated. Building on Red Hat’s and Google’s extensive collaboration, this offering will provide highly regulated organizations—including those in financial services, healthcare, and the public sector—with the isolated infrastructure and operational independence required to meet stringent national and regional digital sovereignty...

Red Hat Enhances Enterprise Stability with Red Hat Enterprise Linux Extended Life Cycle, Premium

RALEIGH, N.C.--(BUSINESS WIRE)--Red Hat, the world’s leading provider of open source solutions, today announced Red Hat Enterprise Linux Extended Life Cycle, Premium, a new subscription providing a predictable 14-year life cycle for major Red Hat Enterprise Linux releases. The stand-alone subscription consolidates extended support, simplifying the complexity of managing multiple support streams. This helps organizations more effectively maintain their most sensitive, change-averse workloads on...

Red Hat and Google Cloud Expand Collaboration to Accelerate Application Modernization and Cloud Migration with Red Hat OpenShift

AMSTERDAM – KUBECON + CLOUDNATIVE CON--(BUSINESS WIRE)--Red Hat, the world's leading provider of open source solutions, today announced an expanded collaboration with Google Cloud to help organizations accelerate application modernization and cloud migrations. This expansion introduces Red Hat OpenShift in the Google Cloud console, deeper integrations with Google Cloud services and marks the general availability of Red Hat OpenShift Virtualization on Red Hat OpenShift Dedicated on Google Cloud....
Back to Newsroom