Skip to main content
Public Sector

Omnissa FIPS 140 compliance

All U.S. Federal Agencies, and FedRAMP authorized service providers, must protect sensitive data according to standards laid out in NIST Federal Information Processing Standards (FIPS) publication 140-3. At Omnissa, we engineer and architect our products and services to protect sensitive data via FIPS 140-3 validated cryptographic modules. Omnissa does not code and maintain our own cryptographic modules. Instead, we consume platform cryptography and industry standard modules backed by large communities and Enterprise support such as OpenSSL and Bouncy Castle.

Products in scope

Omnissa FedRAMP Certified systems incorporate FIPS 140-3 module implementation and usage validated annually by an approved FedRAMP 3PAO. As such, those modules are not included in the table below.

Workspace ONE UEM

Server

VersionBouncy CastleOpenSSLPlatform provided
UEM Server (On-Prem) 2410 patch 20+ 

Bouncy Castle (BC-FJA) 2.0.0 

CMVP Cert #4743 (FIPS 140-3) 

 

WinCNG via .NET Core 

Provided by Windows Server OS 

Hub 

Workspace ONE UEM Hub versions, with the exception of Windows, are built against a common SDK, per platform, which provides OpenSSL encryption in FIPS mode.

VersionBouncy CastleOpenSSLPlatform provided
Windows Hub  

WinCNG via .NET Core 

Provided by Windows Server OS 

MacOS Hub 25.11+  

OpenSSL 3.4 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2)

Apple CoreCrypto 

Provided by macOS 

iOS Hub 25.09+  

OpenSSL 3.4 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2) 

 
Android Hub 26.02+ 

OpenSSL 3.4 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2) 

 

Apps 

Workspace ONE UEM mobile apps are built against a common SDK, per platform, which provides OpenSSL encryption in FIPS mode.

VersionBouncy CastleOpenSSLPlatform provided
WS1 Web 25.08+  

OpenSSL 3.4 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2) 

 
WS1 Content 25.08+   

OpenSSL 3.4 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2) 

 
WS1 Intelligent Hub 26.02+  

OpenSSL 3.4 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2) 

 

Horizon

Connection Server

VersionBouncy CastleOpenSSLPlatform provided
Horizon CS 2603 

Bouncy Castle (BC-FJA) 2.1.2 

CMVP Cert #4943 (FIPS 140-3) 

OpenSSL 3.0.19 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2) 

WinCNG via .NET Core 

Provided by Windows Server OS 

Horizon CS 2512 

Bouncy Castle (BC-FJA) 2.1.3 

CMVP Cert #4943 (FIPS 140-3) 

OpenSSL 3.0.19 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2) 

WinCNG via .NET Core 

Provided by Windows Server OS 

Horizon CS 2506 

Bouncy Castle (BC-FJA) 2.0.0 

CMVP Cert #4743 (FIPS 140-3) 

OpenSSL 3.0.16 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2) 

WinCNG via .NET Core 

Provided by Windows Server OS 

Agent 

Agent (Windows) 

VersionBouncy CastleOpenSSLPlatform provided
Horizon Windows Agent 2603 

Bouncy Castle (BC-FJA) 2.1.2 

CMVP Cert #4943 (FIPS 140-3) 

OpenSSL 3.0.19 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2) 

WinCNG via .NET Core 

Provided by Windows Server OS 

Horizon Windows Agent 2512 

Bouncy Castle (BC-FJA) 2.1.1 

CMVP Cert #4943 (FIPS 140-3) 

OpenSSL 3.0.18 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2) 

WinCNG via .NET Core 

Provided by Windows Server OS 

Horizon Windows Agent 2506 

Bouncy Castle (BC-FJA) 2.0.0 

CMVP Cert #4743 (FIPS 140-3) 

OpenSSL 3.0.16 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2) 

WinCNG via .NET Core 

Provided by Windows Server OS 

Agent (Linux) 

VersionBouncy CastleOpenSSLPlatform provided
Horizon Linux Agent 2603 

Bouncy Castle (BC-FJA) 2.1.2 

CMVP Cert #4943 (FIPS 140-3) 

OpenSSL 3.0.18 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2) 

WinCNG via .NET Core 

Provided by Windows Server OS 

Horizon Linux Agent 2512 

Bouncy Castle (BC-FJA) 2.1.1 

CMVP Cert #4943 (FIPS 140-3) 

OpenSSL 3.0.18 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2) 

WinCNG via .NET Core 

Provided by Windows Server OS 

Horizon Linux Agent 2506 

Bouncy Castle (BC-FJA) 1.0.2.4 

CMVP Cert #4616 (FIPS 140-2) 

OpenSSL 3.0.16 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2) 

WinCNG via .NET Core 

Provided by Windows Server OS 

Client 

Client (Windows) 

VersionBouncy CastleOpenSSLPlatform provided
Horizon Windows Client 2603  

OpenSSL 3.0.19 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2) 

WinCNG via .NET Core 

Provided by Windows Server OS 

Horizon Windows Client 2512  

OpenSSL 3.0.18 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2) 

WinCNG via .NET Core 

Provided by Windows Server OS 

Horizon Windows Client 2506  

OpenSSL 3.0.19 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2) 

WinCNG via .NET Core 

Provided by Windows Server OS 

Client (Linux)

VersionBouncy CastleOpenSSLPlatform provided
Horizon Linux Client 2603  

OpenSSL 3.0.19 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2) 

 
Horizon Linux Client 2512  

OpenSSL 3.0.18 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2) 

 
Horizon Linux Client 2506  

OpenSSL 3.0.16 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2) 

 

Client (Android) 

VersionBouncy CastleOpenSSLPlatform provided
Horizon Linux Client 2603  

OpenSSL 3.0.19 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2) 

 
Horizon Linux Client 2512  

OpenSSL 3.0.18 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2) 

 

 
Horizon Linux Client 2506  

OpenSSL 3.0.18 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2) 

 

 

Client (iOS/iPadOS) 

VersionBouncy CastleOpenSSLPlatform provided
Horizon iOS/iPadOS Client 2603  

OpenSSL 3.0.19 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2) 

Apple CoreCrypto 

Provided by iOS 

Provided by iPadOS 

Horizon iOS/iPadOS Client 2512  

OpenSSL 3.0.18 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2) 

 

Apple CoreCrypto 

Provided by iOS 

Provided by iPadOS 

Horizon iOS/iPadOS Client 2506  

OpenSSL 3.0.16 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2) 

 

Apple CoreCrypto 

Provided by iOS 

Provided by iPadOS 

Client (macOS) 

VersionBouncy CastleOpenSSLPlatform provided
Horizon macOS Client 2603  

OpenSSL 3.0.19 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2) 

Apple CoreCrypto 

Provided by macOS 

Horizon macOS Client 2512  

OpenSSL 3.0.18 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2) 

 

Apple CoreCrypto 

Provided by macOS 

Horizon macOS Client 2506  

OpenSSL 3.0.16 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2) 

 

Apple CoreCrypto 

Provided by macOS 

Unified Access Gateway (UAG)

VersionBouncy CastleOpenSSLPlatform provided
Unified Access Gateway 2603 

Bouncy Castle (BC-FJA) 2.1.2 

CMVP Cert #4943 (FIPS 140-3) 

OpenSSL 3.0.19 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2) 

OpenSSL FIPS Provider for AlmaLinux 9 (140-3) 

Alma Linux 9 OS Crypto 

Unified Access Gateway 2512 

Bouncy Castle (BC-FJA) 2.1.2 

CMVP Cert #4943 (FIPS 140-3) 

OpenSSL 3.0.18 with 3.0.9 FIPS module 

CMVP Cert #4811 (FIPS 140-2) 

 

OpenSSL FIPS Provider for AlmaLinux 9 (140-3) 

Alma Linux 9 OS Crypto 

Frequently asked questions about FIPS 140-3 at Omnissa

FIPS 140-3 includes different levels that apply to different technologies and different levels of security. Level 1 is the only level that applies to software solutions. The other levels broadly apply to chips and other hardware solutions. Level 1 FIPS requirements apply to cryptographic modules, and only cryptographic modules can be issued a FIPS certificate. Products that are not cryptographic modules can never be “FIPS validated”. “FIPS compliant” is often used to describe products that implement FIPS validated crypto modules either exclusively or in a “FIPS mode”. “FIPS Compliant” is not a term recognized by NIST. At Omnissa, we prefer to say that we implement FIPS validated cryptographic modules for all crypto operations that perform a security function, following all appropriate guidance from NIST.

This list is a continuous work in progress. As products implement and update their FIPS-validated modules, this list will be updated. If you require FIPS 140-3 for a product that is not listed here, please contact your Omnissa product team and/or open a support ticket.

You are now being redirected to an external domain. This is a temporary redirect while we build our new infrastructure and rebrand our legacy content.

This message will disappear in 10 seconds

CONTINUE