Advanced Encryption Standard Algorithm Validation List

Last Update: 5/1/2013

The page provides technical information about implementations that have been validated as conforming to the Advanced Encryption Standard (AES) Algorithm, as specified in Federal Information Processing Standard Publication 197, Advanced Encryption Standard.

The list below describes implementations which have been validated as correctly implementing the AES algorithm, using the tests found in The Advanced Encryption Standard Algorithm Validation Suite (AESAVS). This testing is performed by NVLAP accredited Cryptographic And Security Testing (CST) Laboratories..

The implementations below consist of software, firmware, hardware, and any combination thereof. The National Institute of Standards and Technology (NIST) has made every attempt to provide complete and accurate information about the implementations described in this document. However, due to the possibility of changes made within individual companies, NIST cannot guarantee that this document reflects the current status of each product. It is the responsibility of the vendor to notify NIST of any necessary changes to its entry in the following list.


This list is ordered in reverse numerical order, by validation number. Thus, the more recent validations are located closer to the top of the list. The column after the Validation Date column contains information indicating what modes and features for these modes has been successfully tested.

For the original modes of operation (ECB, CBC, CFB, OFB), this information consists of the modes of operation tested (e.g., ECB, CBC, CFB, OFB), states (encryption(e) and/or decryption(d)), and key sizes (128-bit, 192-bit, and/or 256-bit) for which the implementation was validated. For Counter (CTR) mode, the counter source (internal(int) and/or external(ext)) is also indicated.

For the authenticate encryption mode of operation CCM, this information consists of the following:

Legend for Description Field

Key Sizes Tested 128, 192, 256
Associated Data Length Range Tested Minimum - Maximum, 2^16

The values listed indicate the formatting of the Associated Data cases that were tested (Refer to Appendix A.2.2 of SP800-38C):

* If Minimum = 0, the formatting case where Associated Data Length (Alen) = 0 is tested.
* If values ranging from 1 to 32 are listed, the formatting case where 0 < Alen < 2^16 - 2^8 is tested.
* If 2^16 is listed, the formatting case where 2^8 < Alen < 2^32 is tested.

Payload Length Range Tested Minimum - Maximum
Nonce Length(s) tested 7, 8, 9, 10, 11, 12, 13
Tag Length(s) tested 4, 6, 8, 10, 12, 14, 16

For the AES-GCM/GMAC mode of operation, validated implementations must obtain assurance from the vendor that the implementation satisfies the arithmetic requirements of the algorithm.
Three categories of PT and AAD lengths are tested if supported. These include:
1. zero-length
2. lengths that are a non-zero multiple of 128, and
3. lengths that are a non multiple of 128.

All PT and AAD lengths tested by an IUT are listed. The lengths listed represent the categories of PT and AAD tested for the IUT. The actual length tests also represents the PT/AAD length scenarios tested by the IUT. The 9 possible scenarios of PT/AAD lengths include:

If an IV is generated internally, the laboratory must affirm that the IV is constructed using one of the methods in NIST SP800-38D, Section 8.2.1 or Section 8.2.2. The information for each AES-GCM/GMAC validation consists of the following information:

Legend for Description Field

Key Sizes Tested 128, 192, 256
States Tested Encrypt (e) and/or Decrypt (d)
Tag Lengths Supported 128, 120, 112, 104, 96, 64, 32
PT Lengths tested Values tested (See explanation above. Values were tested in combination with AAD lengths)
AAD Lengths tested Values tested (See explanation above. Values were tested in combination with PT lengths)
GMAC Supported/Not Supported
96BitIV Supported/Not Supported
IV Generated Internally (using Section 8.2.1/ Section 8.2.2)/Externally
IV Lengths Tested Values tested

For the CMAC authentication mode of operation, this information consists of the key sizes (128-bit, 192-bit, and/or 256-bit) (KS 128,192,256) for which the implementation was validated.

For the AES-XTS mode of operation, validated implemenations must obtain assurance from the vendor that the implementation satisfies the following requirement in addition to the arithmetic requirements of the algorithm: "The length of Data units for any instance of an implementation of XTS-AES SHALL NOT exceed 2^20 blocks." The information for each AES-XTS valition consists of the following information:

Legend for Description Field

Key Sizes Tested 128, 256
States Tested Encrypt (e) and/or Decrypt (d)
Block Sizes Supported Full Blocks (f) and/or Partial Blocks (p)

Advanced Encryption Standard (AES) Algorithm Validated Implementations

Validation
No.
Vendor Implementation
Operational
Environment
Val.
Date
Modes/States/Key sizes/
Description/Notes
2401 Software House, a Brand of Tyco International
6 Technology Park Drive
Westford, MA 01886
USA

-Rick Focke
TEL: 978-577-4266

-Lou Mikitarian
TEL: 978-577-4125

C*CURE Cryptographic Engine

Version 2.0
Atmel 9260 w/ Windows CE 5.0; Atmel G45 w/ Embedded Linux with Kernel v2.6.39.4; Motorola PPC 860 w/ Windows CE 3.0; Intel Xeon w/ Windows Server 2008 R2 4/30/2013 CBC ( e/d; 256 );

"The C*CURE Cryptographic Engine provides cryptographic services for the C*CURE 9000 security management system and the iSTAR Edge, iSTAR Pro, and iSTAR Ultra physical access controllers. C*CURE security management systems offer advanced access control and alarm/event monitoring for small and large facilities alike."

2400 Fortinet, Inc.
1090 Kifer Road
Sunnyvale, CA 94086-5301
USA

-Alan Kaye
TEL: 613-225-9381 x7416
FAX: 613-225-9951

FortiOS FortiASIC CP6 Cryptographic Library

Part # CP6
N/A 4/30/2013 CBC ( e/d; 128 , 192 , 256 );

"This document focuses on the software implementation of the Fortinet FortiASIC CP6 Cryptographic Library v5.0 running on Intel x86 compatible processors."

2399 Fortinet, Inc.
1090 Kifer Road
Sunnyvale, CA 94086-5301
USA

-Alan Kaye
TEL: 613-225-9381 x7416
FAX: 613-225-9951

FortiOS SSL Cryptographic Library

Version 5.0 (Firmware)
Intel Celeron 4/30/2013 CBC ( e/d; 128 , 192 , 256 );

"This document focuses on the software implementation of the Fortinet FortiOS SSL Cryptographic Library v5.0 running on Intel x86 and ARM compatible processors."

2398 Fortinet, Inc.
1090 Kifer Road
Sunnyvale, CA 94086-5301
USA

-Alan Kaye
TEL: 613-225-9381 x7416
FAX: 613-225-9951

FortiOS FIPS Cryptographic Library

Version 5.0 (Firmware)
FortiOS 4/30/2013 CBC ( e/d; 128 , 192 , 256 );

"This document focuses on the software implementation of the Fortinet FortiOS FIPS Cryptographic Library v5.0 running on Intel x86 and ARM compatible processors."

2397 Symantec Corporation
350 Ellis Street
Mountain View, CA 94043
USA

-John Bordwine
TEL: 703-885-3854

Symantec DLP Crypto Engine

Version 1.0
Intel i5 w/ Microsoft Windows 7 32-bit; Intel i5 w/ Microsoft Windows Server 2008 R2 64-bit; Intel i5 w/ Apple Mac OS X 10.7 64-bit; Intel i5 w/ Apple Mac OS X 10.7 32-bit 4/30/2013 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"Cryptographic engine for Symantec DLP"

2396 Juniper Networks, Inc
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Sharath Sridhar
TEL: +91 80 30538736
FAX: +91 80 30538824

Kernel

Version Junos 12.1R6 (Firmware)
ARM v5, Marvell's Feroceon processor Family; PowerPC, Freescale's PowerQUICC III Processor Family 4/30/2013 CBC ( e/d; 128 );

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 16 Max: 2^16 ; Tag Len(s) Min: 12 Max: 16 )


"Comprehensive, scalable switching solutions specifically designed to meet the needs of both enterprises and service providers. All of our switches - modular and fixed platforms - run on one common operating system- Junos."

2395 Motorola Solutions, Inc.
6480 Via Del Oro
San Jose, CA 95119
USA

-Ashot Andreasyan
TEL: 408-826-3203
FAX: 408-528-2883

Open SSL Crypto library-AES

Version v1_0_1_0 (Firmware)
Free Scale MPC-7457; Free Scale MPC-8568E 4/30/2013 ECB ( e/d; 128 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 );

"The 1.0.1c crypto library is used for protecting security parameters and key exchange protocol messages; authenticating a user; generating cryptographic and key encryption keys in GGM8000 and s6000 transport gateways. The MPC-8568E chip is used for providing secure transport of mission critical voice and data."

2394 OpenSSL Software Foundation, Inc.
1829 Mount Ephraim Road
Adamstown, MD 27101
USA

-Steve Marquess
TEL: 877-673-6775

OpenSSL FIPS Object Module

Version 2.0.4
MIPS 24Kc w/ OpenWRT 2.6 4/30/2013 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 512 , 1024 , 504 , 1016 ) ; AAD Lengths tested: ( 0 , 512 , 1024 , 504 , 1016 ) ; IV Lengths Tested: ( 96 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Not_Supported

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"The OpenSSL FIPS Object Module is a full featured general purpose cryptographic library that is distributed in source code form under an open source license. It can be downloaded from www.openssl.org/source/."

2393 Samsung Electronics Co., Ltd
R4 416, Maetan 3-dong, Yeongtong-gu
Suwon-si, Gyeonggi-do 443-742
Korea

-Kyung-Hee Lee
TEL: +82-10-9397-1589

Samsung Key Management Module

Version KM1.2
ARMv7 w/ Android Jelly Bean 4.2 4/30/2013 ECB ( e/d; 256 );

"General purpose Key derivation and authentication services library for Linux used by Samsung devices."

2392 Samsung Electronics Co., Ltd
R4 416, Maetan 3-dong, Yeongtong-gu
Suwon-si, Gyeonggi-do 443-742
Korea

-Kyung-Hee Lee
TEL: +82-10-9397-1589

Samsung Kernel Cryptographic Module

Version SCK1.4.1.2
ARMv7 w/ Android Jelly Bean 4.2 4/30/2013 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )


"General purpose Cryptographic services available for Linux kernel used by Samsung devices to provide secured services."

2391 Juniper Networks, Inc.
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Tim Huntley

JUNOS 12.1 X44 for SRX Series Platforms

Version 12.1
Cavium Octeon CN5020 w/ JUNOS 12.1X44-D10; Cavium Octeon CN5230 w/ JUNOS 12.1X44-D10; Cavium Octeon CN6335 w/ JUNOS 12.1X44-D10; Cavium Octeon CN5645 w/ JUNOS 12.1X44-D10; Motorola MPC8544E, PowerQUIC III Processor w/ JUNOS 12.1X44-D10; Intel 1.3GHz CPU Celeron M w/ SPC-2 w/ JUNOS 12.1X44-D10; Intel 1.3GHz CPU Celeron M w/ SPC-4 w/ JUNOS 12.1X44-D10 4/30/2013 CBC ( e/d; 128 , 192 , 256 );

"Juniper Networks, Inc. JUNOS 12.1 X44 for SRX Series Platforms supports the definition of and enforces information flow policies among network nodes. The routers provide for stateful inspection of every packet that traverses the network and provide central management to manage the network security policy."

2390 Microsemi Corporation
1281 Win Hentschel Blvd
West Lafayette, IN 47906
USA

-Michael Mehlberg
TEL: (571) 319-3343
FAX: (765) 775-1038

-General Inquiries
TEL: (765) 775-1004
FAX: (765) 775-1038

XTS-AES Tweakable Block Cipher

Version 4.4 (Firmware)
Mentor Graphics Modelsim PE 6.6 Revision: 2010.01 4/23/2013

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) )) AES Val#2389

"Microsemi''s XTS-AES reusable IP core for ASICs and FPGAs supports 128, 192 and 256-bit AES keys, encryption and decryption, and whole block length-preserving ciphering. This core is developed by cleared US citizens for Government/Defense systems."

2389 Microsemi Corporation
1281 Win Hentschel Blvd
West Lafayette, IN 47906
USA

-Michael Mehlberg
TEL: (571) 319-3343
FAX: (765) 775-1038

-General Inquiries
TEL: (765) 775-1004
FAX: (765) 775-1038

AES Module

Version 4.4 (Firmware)
Mentor Graphics Modelsim PE 6.6 Revision: 2010.01 4/23/2013 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )


"Microsemi''s AES reusable IP core for ASICs and FPGAs supports all key lengths, NIST recommended block modes, encryption and/or decryption, and configurable size/throughput optimization settings. This core is developed by cleared US citizens for Government/Defense systems."

2388 Netronome Systems, Inc.
3159 Unionville Drive
Suite 100
Cranberry Twp, PA 16066
USA

-David Wells
TEL: +44 1223 372461
FAX: +44 8701 991231

-Roelof du Toit
TEL: +1 724 778 3290
FAX: +1 724 778 3295

Netronome SSL Inspector Appliance model SI-10000

Version 3.5.2
Part # SI-10000
SI-10000 has two Intel E5620 quad core CPUs and 24GB of memory. w/ Linux x86_64 4/23/2013 CBC ( e/d; 128 , 256 );

"The SSL Inspector is a transparent SSL proxy designed to detect SSL traffic and then under policy control to "inspect" the traffic. Inspection involves decrypting and re-encrypting the traffic to gain access to the clear text data and then passing this data to an associated security appliance that needs to see decrypted traffic."

2387 IBM
9032 South Rita Road
Tucson, AZ 85744
USA

-Christine Knibloe
TEL: 520-799-2486

TS1140 AES-GCM Write

Part # P/N: 0000066Y8800
N/A 4/23/2013 ECB ( e only; 256 );

GCM (KS: AES_256( ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 128 , 1024 ) ; AAD Lengths tested: ( 128 , 512 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Not_Supported

"The hardware ASIC implementation provides AES-GCM encryption."

2385 IBM
9032 South Rita Road
Tucson, AZ 85744
USA

-Christine Knibloe
TEL: (520) 799-2486

TS1140 Cryptographic Firmware Library

Version P/N: 35P2401 (Firmware)
PPC 405 4/23/2013 ECB ( e/d; 256 );

"Firmware cryptographic implementation that adds secure key channel capabilities to the IBM TS1140."

2384 IBM
9032 South Rita Road
Tucson, AZ 85744
USA

-Christine Knibloe
TEL: (520) 799-2486

TS1140 AES-GCM Read

Part # P/N: 0000066Y8800
N/A 4/23/2013 ECB ( e only; 256 );

GCM (KS: AES_256( ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 128 , 1024 ) ; AAD Lengths tested: ( 128 , 512 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Not_Supported

"The hardware ASIC implementation provides AES-GCM decryption."

2381 CoCo Communications
800 5th Ave
Seattle, WA 98104
USA

-David Weidenkopf
TEL: 206-812-5783

CoCo OpenSSL AES-NI Algorithms for Intel x86

Version 1.0
x86 32-bit with AES-NI w/ Vyatta 6.4 4/23/2013 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 1024 , 1024 ) ; AAD Lengths tested: ( 1024 , 1024 ) ; IV Lengths Tested: ( 96 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Not_Supported

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"The CoCo OpenSSL Crypto Module is an OpenSSL cryptographic library that provides cryptographic services to its calling applications."

2380 Lexmark International, Inc.
740 West New Circle Road
Lexington, KY 40550
USA

-Graydon Dodson
TEL: (859) 232-6483

Crypto Module (kernel)

Version 2.10
Marvell 88PA6170C1 (ARMv7 dual core) w/ Lexmark Linux v3.0.0 4/23/2013 CBC ( e/d; 128 , 192 , 256 );

"The Crypto Module (user/kernel) provides cryptographic services to the firmware in Lexmark products."

2379 Lexmark International, Inc.
740 West New Circle Road
Lexington, KY 40550
USA

-Graydon Dodson
TEL: (859) 232-6483

Crypto Module (user)

Version 2.10
Marvell 88PA6170C1 (ARMv7 dual core) w/ Lexmark Linux v3.0.0 4/23/2013 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"The Crypto Module (user/kernel) provides cryptographic services to the firmware in Lexmark products."

2378 Motorola Solutions, Inc.
6480 Via Del Oro
San Jose, CA 95119
USA

-Udayan Borkar
TEL: 408-528-2361
FAX: 408-528-2903

-Colin Cooper
TEL: 408-528-2871
FAX: 408-528-2903

AES3

Version 3.0 (Firmware)
Cavium Octeon Plus CN5000 Family 4/12/2013 ECB ( e only; 128 );

"In WiNG 5, WLAN (802.11i) code uses "AES encryption" to wrap the GTK (Group Temporal Key: Used to authenticate broadcast routing messages)."

2377 Motorola Solutions, Inc.
6480 Via Del Oro
San Jose, CA 95119
USA

-Udayan Borkar
TEL: 408-528-2361
FAX: 408-528-2903

-Colin Cooper
TEL: 408-528-2871
FAX: 408-528-2903

OpenSSL

Version 1.2.3 (Firmware)
Cavium Octeon Plus CN5000 Family 4/12/2013 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 );

"OpenSSL is a third party open source code, which provides cryptographic services to user space daemons. The device uses openssl-fips-1.2.3 version. Wing5 userspace daemons (RADIUS, ntp, openssh, rim, net-snmp, mapsh, etc) using openssl crypto services call fips_mode_set() from their respective initialization functions."

2376 Hewlett–Packard Development Company, L.P.
3000 Hanover Street
Palo Alto, CA 94304
USA

-Mihai Damian
TEL: 1-650-236-5870

-Sameer Popli
TEL: 1-650-236-5874

NonStop Krypton Kernel Module

Version 1.0
Intel(R) Xeon(R) E5-2658 w/ Debian Linux HPTE Version 5.0.0 4/5/2013 CBC ( e/d; 256 );

XTS( ) KS: XTS_256( (e/d) (f) ))

"Hewlett-Packard''s NonStop platform is used in complex computing environments, where business-critical applications need 24 x 7 availability, extreme scalability, and fault-tolerance. NonStop plays an important role in major industries and markets, including finance, healthcare, telecommunications, manufacturing, retail, and government."

2375 Hewlett–Packard Development Company, L.P.
3000 Hanover Street
Palo Alto, CA 94304
USA

-Mihai Damian
TEL: 1-650-236-5870

-Sameer Popli
TEL: 1-650-236-5874

HP NSVLE C API Library

Version 0.3
Intel(R) Xeon(R) E5-2658 w/ Debian Linux HPTE Version 5.0.0 4/5/2013 CBC ( e/d; 128 , 256 );

"Hewlett-Packard''s NonStop platform is used in complex computing environments, where business-critical applications need 24 x 7 availability, extreme scalability, and fault-tolerance. NonStop plays an important role in major industries and markets, including finance, healthcare, telecommunications, manufacturing, retail, and government."

2374 Riverbed Technology, Inc.
199 Fremont Street
San Francisco, CA 94105
USA

-Joe Tomasello
TEL: 415-344-5756

-Andy Pang
TEL: 415-247-7341

Riverbed Cryptographic Security Module
Intel Xeon (x86-64) w/ RiOS 8.0 32-bit; Intel Xeon (x86-64) w/ RiOS 8.0 64-bit; Intel Xeon E3-1220v2 (x86_64) w/ RiOS 8.0 64-bit running on VMware ESXi 5.1; Intel Xeon E3-1220v2 (x86_64) w/ AES-NI w/ RiOS 8.0 64-bit running on VMware ESXi 5.1; Intel Xeon E3-1220v2 (x86_64) w/ Stingray OS 4.0 running on VMware ESXi 5.1; Intel Xeon E3-1220v2 (x86_64) w/ AES-NI w/ Stingray OS 4.0 running on VMware ESXi 5.1; Intel Xeon E31220 (x86_64) w/ AES-NI w/ RiOS 8.0 64-bit; AMD Opteron 4122 (x86_64) w/ Granite OS 2.0; Intel Xeon E31220 (x86_64) w/ Granite OS 2.0 on VMware ESXi 5.1; Intel Xeon E31220 (x86_64) w /AES-NI w/ Granite OS 2.0 on VMware ESXi 5.1 4/12/2013 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 0 , 512 , 1024 , 504 , 1016 ) ; AAD Lengths tested: ( 0 , 512 , 1024 , 504 , 1016 ) ; IV Lengths Tested: ( 96 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Not_Supported

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"The Riverbed Cryptographic Security Module provides the cryptographic functionality for a variety of Riverbed''s platforms including Steelhead and Granite appliances. These network appliances deliver a scalable Wide Area Data Services (WDS) solution, transparently and securely optimizing performance across an enterprise network"

2373 Cummings Engineering Consultants, Inc.
145 S. 79th St., Suite 26
Chandler, AZ 85226
USA

-Darren Cummings
TEL: 480-809-6024

Cummings Engineering's Secure Mobility Suite B Crypto Module

Version 1.1
ARM Cortex A8 (ARMv7) w/ Apple iOS 5.0; Intel Core i7-3615QM w/ Apple OS X 10.7 4/5/2013 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 512 , 1024 , 504 , 1016 ) ; AAD Lengths tested: ( 0 , 512 , 1024 , 504 , 1016 ) ; IV Lengths Tested: ( 96 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Not_Supported

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"The cryptographic module used by the Cummings Engineering suite of products which allow for efficient and effective deployment of robust secure communications capability on commercial off the shelf (COTS) devices, such as Smartphones and Tablets, as well as speciality communications devices."

2372 SAP AG
Albert-Einstein-Allee 3
Bensheim, NRW 64625
Germany

-Stephan André
TEL: +49-6251-708-1730
FAX: +49-6227-78-55975

-Thomas Rothe
TEL: +49-6251-708-2339
FAX: +49-6227-78-55989

SAP NW SSO 2.0 Secure Login Library Crypto Kernel

Version 2.0.0.1.32 32/64-bit
Intel Xeon w/ Mac OS X 10.7 64-bit 4/5/2013 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int/ext; 128 , 192 , 256 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
PT Lengths Tested: ( 0 , 128 , 1024 , 8 , 1000 ) ; AAD Lengths tested: ( 0 , 128 , 1024 , 16 , 1008 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Not_Supported

"SAP NW SSO 2.0 Secure Login Library Crypto Kernel v2.0.0.1.32 is a shared library, i.e. it consists of software only. SAP NW SSO 2.0 Secure Login Library Crypto Kernel provides an API in terms of C++ methods for key management and operation of cryptographic functions."

2371 SAP AG
Albert-Einstein-Allee 3
Bensheim, NRW 64625
Germany

-Stephan André
TEL: +49-6251-708-1730
FAX: +49-6227-78-55975

-Thomas Rothe
TEL: +49-6251-708-2339
FAX: +49-6227-78-55989

SAP NW SSO 2.0 Secure Login Library Crypto Kernel

Version 2.0.0.1.32 64-bit
Intel Xeon with AES-NI w/ Linux 2.6.32; AMD Opteron w/ Linux 2.6.32; IBM POWER7 (PowerPC) w/ Linux 2.6.32 on hypervisor VMware ESX 5.0.0; AMD Opteron w/ Linux 2.6.16; IBM S/390 (2817) w/ Linux 2.6.5 on hypervisor VMware ESX 4.1.0; IBM POWER6 (PowerPC) w/ Linux 2.6.16 on hypervisor VMware ESX 4.1.0; AMD Opteron w/ Linux 2.6.5; IBM S/390 (2817) w/ Linux 2.6.5 on hypervisor VMware ESX 4.1.0; IBM POWER5 (PowerPC) w/ Linux 2.6.5 on hypervisor VMware ESX 5.0.0; Intel Itanium 2 w/ Linux 2.6.5; Intel Itanium 2 w/ Linux 2.4.19; Intel Xeon w/ Solaris 5.10 64-bit; SPARC64 V w/ Solaris 5.10 64-bit; UltraSPARC III+ w/ Solaris 5.9 64-bit; SPARC64 III w/ Solaris 5.8 64-bit; Alpha 21264B (EV6) w/ True64 Unix 5.1; Intel Xeon w/ Mac OS X 10.7 64-bit; Intel Core i5 with AES-NI w/ Windows 7 Enterprise SP1 64-bit; AMD Opteron w/ Windows Server 2008 R2 on hypervisor VMware ESX 4.1.0; HP 9000/800/rp3440 (PA-RISC2.0) w/ HP-UX 11.31 64-bit; Intel Itanium 2 w/ HP-UX 11.31 64-bit; Intel Itanium 2 w/ HP-UX 11.23 64-bit; HP 9000/800/L3000-7x (PA-RISC2.0) w/ HP-UX 11.11 64-bit; HP 9000/800/L3000-5x (PA-RISC2.0) w/ HP-UX 11.00 64-bit; IBM POWER7 (PowerPC) w/ AIX 6.1 64-bit on hypervisor VMware ESX 4.1.0; IBM POWER4 (PowerPC) w/ AIX 5.2 64-bit; IBM POWER4 (PowerPC) w/ AIX 5.1 64-bit 4/5/2013 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int/ext; 128 , 192 , 256 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Externally ) ; PT Lengths Tested: ( 0 , 128 , 1024 , 8 , 1000 ) ; AAD Lengths tested: ( 0 , 128 , 1024 , 16 , 1008 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Not_Supported

"SAP NW SSO 2.0 Secure Login Library Crypto Kernel v2.0.0.1.32 is a shared library, i.e. it consists of software only. SAP NW SSO 2.0 Secure Login Library Crypto Kernel provides an API in terms of C++ methods for key management and operation of cryptographic functions."

2370 SAP AG
Albert-Einstein-Allee 3
Bensheim, NRW 64625
Germany

-Stephan André
TEL: +49-6251-708-1730
FAX: +49-6227-78-55975

-Thomas Rothe
TEL: +49-6251-708-2339
FAX: +49-6227-78-55989

SAP NW SSO 2.0 Secure Login Library Crypto Kernel

Version 2.0.0.1.32 32-bit
Intel Pentium III w/ Linux 2.6.27 on hypervisor VMware ESX 4.1.0; Intel Xeon with AES-NI w/ Linux 2.6.32; Intel Pentium III w/ Linux 2.6.5; Intel Xeon w/ Linux 2.4.21; Intel Xeon w/ Linux 2.4.18; Intel Xeon w/ Solaris 5.10 64-bit; SPARC64 V w/ Solaris 5.10 64-bit; UltraSPARC III+ w/ Solaris 5.9 64-bit; SPARC64 III w/ Solaris 5.8 64-bit; Intel Xeon w/ Mac OS X 10.7 64-bit; Intel Core i5 with AES-NI w/ Windows 7 Enterprise SP1 64-bit; AMD Opteron w/ Windows Server 2008 R2 on hypervisor VMware ESX 4.1.0; HP 9000/800/rp3440 (PA-RISC2.0) w/ HP-UX 11.31 64-bit; HP 9000/800/L3000-7x (PA-RISC2.0) w/ HP-UX 11.11 64-bit; HP 9000/800/L3000-5x (PA-RISC2.0) w/ HP-UX 11.00 64-bit; IBM POWER7 (PowerPC) w/ AIX 6.1 64-bit on hypervisor VMware ESX 4.1.0; IBM POWER4 (PowerPC) w/ AIX 5.2 64-bit; IBM POWER4 (PowerPC) w/ AIX 5.1 64-bit 4/5/2013 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int/ext; 128 , 192 , 256 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
PT Lengths Tested: ( 0 , 128 , 1024 , 8 , 1000 ) ; AAD Lengths tested: ( 0 , 128 , 1024 , 16 , 1008 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Not_Supported

"SAP NW SSO 2.0 Secure Login Library Crypto Kernel v2.0.0.1.32 is a shared library, i.e. it consists of software only. SAP NW SSO 2.0 Secure Login Library Crypto Kernel provides an API in terms of C++ methods for key management and operation of cryptographic functions."

2369 Altera Canada
58 Glencoe Drive
Mount Pearl, Newfoundland A1N 4S9
Canada

-Diane Corrigan
TEL: 709.747.4387

-Shawn Nicholl
TEL: 709.747.4125

AES-XTS+GMAC Library

Version XTS_GMAC_1.0 (Firmware)
Modelsim Altera 10.1b (simulator) 4/5/2013

GCM (KS: AES_256( e/d ) Tag Length(s): 128 )
AAD Lengths tested: ( 256 , 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported AES Val#2352

XTS( ) KS: XTS_256( (e/d) (f) )) AES Val#2352

"FPGA core. AES-XTS 256 bit Key, 128 bit multiple length text. Associated GMAC, 256 bit key, 128 bit multiple text length."

2368 Altera Canada
58 Glencoe Drive
Mount Pearl, Newfoundland A1N 4S9
Canada

-Diane Corrigan
TEL: 709.747.4387

-Shawn Nicholl
TEL: 709.747.4125

AES-XTS+GCM Library

Version XTS_GCM_1.0 (Firmware)
Modelsim Altera 10.1b (simulator) 4/5/2013

GCM (KS: AES_256( e/d ) Tag Length(s): 128 )
PT Lengths Tested: ( 256 , 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Not_Supported AES Val#2352

XTS( ) KS: XTS_256( (e/d) (f) ))

"FPGA core. AES-XTS 256 bit Key, 128 bit multiple length text. Associated GCM, 256 bit key, 128 bit multiple text length."

2367 CoCo Communications
800 5th Ave
Seattle, WA 98104
USA

-David Weidenkopf
TEL: 206-812-5783

CoCo OpenSSL Algorithms for Intel x86

Version 2.0
x86 32bit w/ Vyatta 6.4 4/5/2013 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 1024 , 1024 ) ; AAD Lengths tested: ( 1024 , 1024 ) ; IV Lengths Tested: ( 96 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Not_Supported

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"The CoCo OpenSSL Crypto Module is an OpenSSL cryptographic library that provides cryptographic services to its calling applications."

2366 CoCo Communications
800 5th Ave
Seattle, WA 98104
USA

-David Weidenkopf
TEL: 206-812-5783

CoCo OpenSSL Algorithms for AMD Geode

Version 2.0
AMD Geode 32bit w/ Red Hat Enterprise Linux 6 4/5/2013 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 1024 , 1024 ) ; AAD Lengths tested: ( 1024 , 1024 ) ; IV Lengths Tested: ( 96 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Not_Supported

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"The CoCo OpenSSL Crypto Module is an OpenSSL cryptographic library that provides cryptographic services to its calling applications."

04/30/13: Updated implementation information;

2365 HGST
5601 Great Oaks Parkway
Building 50-3/D393
San Jose, California 95119
US

-Leo Letourneaut
TEL: 408-717-7013
FAX: 408-717-9494

-Hoang P Nguyen
TEL: 408-717-7101
FAX: 408-717-9494

TcgCryptoLib

Version SSD_1 (Firmware)
ARM Cortex R4 3/29/2013 ECB ( e/d; 256 );

"The HGST SED implements the TCG Storage Enterprise Specification. It satisfies the performance & security requirements of demanding enterprise applications. The embedded FIPS 140-2 cryptomodule has hardware encryption, instantaneous data erasure, independently authorized data bands and authenticated, protected FW download."

2364 Toshiba Corporation Social Infrastructure Systems Company
1, Komukai, Toshiba-cho, Saiwai-ku
Kawasaki, Kanagawa 212-8583
Japan

-Hiroki Fukuoka
TEL: +81-44-549-8323

TSBIC CryptoLib

Version 1.0.0
Intel Core i7 w/ Windows 7 Professional 32-bit 3/29/2013 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 4 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 4 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 4 Max: 16 )


"TSBIC CryptoLib is a general-purpose library which ensures high security to the applications requiring standard cryptographic algorithms."

2363 Xilinx, Inc.
2100 Logic Drive
San Jose, CA 95124
USA

-Jason Moore
TEL: 505-798-4863

7 Series and Zynq AES/MAC

Part # 7 Series and Zynq
N/A 3/29/2013 CBC ( d only; 256 );

"A Verilog implementation that has been synthesized into our 7 Series and Zynq products. This implementation has been governed in our internal revision control system. This implementation can be simulated via a synopsys VCS simulation/testbench framework."

04/12/13: Updated implementation information;

2362 Pure Storage, Inc.
650 Castro Street
Suite #400
Mountain View, CA 94041
USA

-Marco Sanvido
TEL: 800-379-7873
FAX: 650-625-9667

-Ethan Miller
TEL: 800-379-7873
FAX: 650-625-9667

Flash Array

Version 3.0 (Firmware)
Intel Xeon E5-2670 3/29/2013 ECB ( e/d; 128 , 256 ); CTR ( int only; 128 )


"The Flash Array is a storage array based on Flash memory technology instead of hard drives. The Pure Storage FlashArray features both in-line and global data deduplication in combination with non-volatile RAM (NV-RAM) cache that runs continuously."

2361 WatchGuard Technologies, Inc.
505 Fifth Avenue South, Suite 500
Seattle, Washington 98104
USA

-Peter Eng
TEL: 206 613-6608
FAX: 206 613-0888

XTM Cryptographic Module

Version 11.6.5 (Firmware)
Intel E3 3/22/2013 CBC ( e/d; 128 , 192 , 256 );

"WatchGuard XTM security appliances are designed to protect organizations from various security and productivity threats, including viruses, network attacks, intrusion attempts, Trojan horses, harmful or counterproductive URLs, spam, and more, while also providing secure Virtual Private Network (VPN) connections among workplaces and remote users."

2360 WatchGuard Technologies, Inc.
505 Fifth Avenue South, Suite 500
Seattle, Washington 98104
USA

-Peter Eng
TEL: 206 613-6608
FAX: 206 613-0888

XTM Cryptographic Processor for XTM800, XTM1500, XTM2500

Part # DH8910CC
N/A 3/22/2013 CBC ( e/d; 128 , 192 , 256 );

"WatchGuard XTM security appliances are designed to protect organizations from various security and productivity threats, including viruses, network attacks, intrusion attempts, Trojan horses, harmful or counterproductive URLs, spam, and more, while also providing secure Virtual Private Network (VPN) connections among workplaces and remote users."

2359 Brocade Communications Systems, Inc.
130 Holger Way
San Jose, CA 95134
USA

-Chris Marks
TEL: 408-333-0480
FAX: 408-333-8101

-Sunil Chitnis
TEL: 408-333-2444
FAX: 408-333-4887

FIPS 140-2 Certification for Brocade® MLXe® and CER 2000 Series

Version BRCD-IP-CRYPTO-VER-2.0 (Firmware)
Freescale MPC 7448, RISC, 1700 MHZ; Freescale MPC 7447, RISC, 1000 MHZ; Freescale MPC 8544, PowerQUICC III, 800 MHZ 3/22/2013 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"The Brocade cryptographic library implements crypto operations in software. The Brocade MLX Series is highly optimized for IP Ethernet deployments, providing symmetric scaling and industry-leading wire-speed port capacity without compromising the performance of advanced capabilities such as IPv6, MPLS, and MPLS Virtual Private Networks (VPNs)."

2358 Feitian Technologies Co., Ltd
Floor 17th, Tower B, Huizhi Mansion, No.9 Xueqing Road
Beijing, Beijing 100085
China

-Erik
TEL: (+86)010-62304466-831
FAX: (+86)010-62304477

-Guo Yu Yi
TEL: (+86)010-62304466-342
FAX: (+86)010-62304477

FEITIAN-FIPS-Cryptographic Library V1.0.0

Version 1.0.0 (Firmware)
Part # SLE78CLFX4000PM
Infineon SLE78CLFX4000PM 3/22/2013

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 1 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 1 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 1 Max: 16 )
AES Val#2357


"FEITIAN-FIPS-Cryptographic Library V1.0.0 implements AES, TDES, CMAC, TDES MAC, SHA1, SHA256, SHA512, DRBG, RSA, and KDF, and operates on Infineon SLE78CLFX4000PM for FEITIAN-FIPS-JCOS V1.0.0, which is smart card complied with Java Card 2.2.2 and Global Platform 2.2.1."

03/29/13: Updated implementation information;

2357 Feitian Technologies Co., Ltd
Floor 17th, Tower B, Huizhi Mansion, No.9 Xueqing Road
Beijing, Beijing 100085
China

-Erik
TEL: (+86)010-62304466-831
FAX: (+86)010-62304477

-Guo Yu Yi
TEL: (+86)010-62304466-342
FAX: (+86)010-62304477

FEITIAN-FIPS-Cryptographic Library V1.0.0

Part # SLE78CLFX4000PM
N/A 3/22/2013 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"FEITIAN-FIPS-Cryptographic Library V1.0.0 implements AES, TDES, CMAC, TDES MAC, SHA1, SHA256, SHA512, DRBG, RSA, and KDF, and operates on Infineon SLE78CLFX4000PM for FEITIAN-FIPS-JCOS V1.0.0, which is smart card complied with Java Card 2.2.2 and Global Platform 2.2.1."

03/29/13: Updated implementation information;

2356 Mocana Corporation
350 Sansome Street
Suite 1010
San Francisco, CA 94104
USA

-Sales
TEL: +1-415-617-0055
FAX: +1-415-617-0056

Mocana Cryptographic Library

Version 5.5fs
ARMv7 w/ iOS6 3/22/2013 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 0 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 0 , 128 , 256 , 136 , 264 ) ; AAD Lengths tested: ( 0 , 128 , 256 , 136 , 264 ) ; IV Lengths Tested: ( 128 , 128 ) ; OtherIVLen_Supported
GMAC_Not_Supported
RNG: Val# 1078

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"The Mocana Cryptographic Module is the engine of Mocana’s Device Security Framework - a software framework that secures all aspects of a system. The Device Security Framework helps applications and device designers reduce development costs and dramatically enhance cryptographic preformance. For details see www.mocana.com."

2355 Comtech Mobile Datacom Corporation
20430 Century Boulevard
Germantown, MD 20874
USA

-Vladislav Grinchenko
TEL: 240-686-3365

-Ryon Coleman
TEL: 240-686-3305

Comtech Mobile Datacom Corp Cryptographic Library (libcmscrypto)

Version 1.2
Intel x64 w/ Red Hat Enterprise Linux 6.3 3/22/2013 CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 );

"libcmscrypto is a library implemented in the Comtech Mobile Datacom Corp. products and provides the basic cryptographic functionality that includes Advanced Encryption Standard (AES) algorithm, Triple-DES, SHA1 message digest, HMAC SHA-1 Keyed-Hash message authentication code."

2354 Nuvoton Technology Corporation
No. 4, Creation Rd. III
Hsinchu Science Park, n/a 300
Taiwan, R.O.C.

-Rachel Menda-Shabat
TEL: +972-9-9702000
FAX: +972-9-9702001

-Leonid Azriel
TEL: +972-9-9702000
FAX: +972-9-9702001

Nuvoton NPCT4xx/NPCT5xx TPM 1.2

Part # FD5C37
N/A 3/15/2013 ECB ( e only; 128 ); CTR ( ext only; 128 )


"Nuvoton TPM (Trusted Platform Module), a TCG 1.2 compliant security processor with embedded firmware"

2353 Samsung Electronics Co., Ltd
R4 416, Maetan 3-dong, Yeongtong-gu
Suwon-si, Gyeonggi-do 443-742
Korea

-Ross Choi
TEL: 972-761-7628

-Kyung-Hee Lee
TEL: +82-10-6640-8499

Samsung FIPS BC for mobile phone and tablet

Version SBC1.45_2.0
ARM7 w/ Android Jelly Bean 4.1 3/8/2013 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"General purpose cryptographic services available for Java-based Bouncycastle used by Samsung devices to provide secure cryptography. Salt length 0, 1 and 2 has been tested for RSASSA-PSS."

2352 Altera Canada
58 Glencoe Drive
Mount Pearl, Newfoundland A1N 4S9
Canada

-Diane Corrigan
TEL: 709.747.4387

-Shawn Nicholl
TEL: 709.747.4125

AES-256 Core

Version 1.0 (Firmware)
Modelsim Altera 10.1b (simulator) 3/8/2013 ECB ( e/d; 256 );

"FPGA Core."

2351 Samsung Electronics Co., Ltd
R4 416, Maetan 3-dong, Yeongtong-gu
Suwon-si, Gyeonggi-do 443-742
Korea

-Ross Choi
TEL: 972-761-7628

-Kyung-Hee Lee
TEL: +82-10-6640-8499

Samsung OpenSSL Cryptographic Module

Version SecOpenSSL2.0.2
ARMv7 w/ Android Jelly Bean 4.1 3/8/2013 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 0 , 512 , 1024 ) ; AAD Lengths tested: ( 0 , 512 , 1024 ) ; IV Lengths Tested: ( 96 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"General purpose cryptographic services available for Android used by Samsung devices to provide secure cryptography. Salt length 0, 1 and 2 has been tested for RSASSA-PSS."

2350 Digital Monitoring Products, Inc.
2500 N. Partnership Boulevard
Springfield, MO 65803-8877
USA

-Terry Shelton
TEL: (417)831-9362
FAX: (417)447-9698

-Leanna Bremenkamp
TEL: (417)831-9362
FAX: (417)447-9698

XR550Encryption

Version 100 (Firmware)
NXP ARM Cortex 3/8/2013 ECB ( e/d; 128 );

"The DMP XR550 Series panel is a 12 VDC, combined access control, burglary, and fire communicator panel with battery backup. The XR550 Series provides eight on-board burglary zones and two on-board 12 VDC Class B powered zones with reset capability to provide for 2-wire smoke detectors, relays, or other latching devices."

2349 Haivision, Inc.
4445 Garand
Montreal, Quebec H4R 2H9
Canada

-Jean Dube
TEL: 514-334-5445 x8263

Haivision Crypto Module

Version 2.1.1
ARM v5TEJ w/ Linux 2.6 2/26/2013 ECB ( e/d; 128 , 256 ); CBC ( e/d; 128 , 256 ); CFB128 ( e/d; 128 ); CTR ( int only; 256 )


"OpenSSL FIPS Object Module 2.0 (CMVP Cert. #1747)"

2348 Canon Inc.
30-2
Shimomaruko 3-chome
Ohta-ku, Tokyo 146-8501
Japan

-Yoichi Toyokura
TEL: +81-3-3758-2111
FAX: +81-3-3758-1160

Canon MFP Security Chip

Part # 2.02
N/A 2/21/2013 CBC ( e/d; 128 , 256 );

"Canon MFP Security Chip provides high-performance data encryption and decryption via SATA interface."

2347 GoldKey Security Corporation
26900 E. Pink Hill Rd
Independence, MO 64057
USA

-GoldKey Sales & Customer Service
TEL: (816) 220-3000

-Jon Thomas
TEL: 567-270-3830

GoldKey Cryptographic Algorithms

Version 7.11 (Firmware)
Arca2S 2/21/2013 ECB ( e/d; 256 ); CBC ( e/d; 256 ); CTR ( ext only; 256 )


"Cryptographic algorithm implementation for GoldKey Products"

03/18/13: Updated implementation information;
03/27/13: Updated implementation information;

2346 Cavium, Inc.
2315 N. First Street
San Jose, CA 95131
USA

-Tasha Castaneda
TEL: 1-408-943-7100

-YJ Kim
TEL: 1-408-943-7100

OCTEON II CN6700/CN6800 Series Die

Part # CN6740/CN6750/CN6760/CN6860/CN6870/CN6880, -SCP and -AAP options Version #-Y22
N/A 2/21/2013 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
PT Lengths Tested: ( 0 , 128 , 1024 , 120 , 1000 ) ; AAD Lengths tested: ( 0 , 128 , 1024 , 120 , 1000 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported

"The Octeon II CN 6XXX family of multi-core MIPS64 processors targets datacenter, routers, switches, control plane, base stations, and UTM applications. Part numbers: CN6010 CN6020 CN6120 CN6130 CN6220 CN6230 CN6330 CN6335 CN6630 CN6635 CN6640 CN6645 CN6740 CN6750 CN6760 CN6860 CN6870 CN6880, all with -SCP and -AAP options."

2345 Cavium, Inc.
2315 N. First Street
San Jose, CA 95131
USA

-Tasha Castaneda
TEL: 1-408-943-7100

-YJ Kim
TEL: 1-408-943-7100

OCTEON II CN6600 Series Die

Part # CN6630/CN6635/CN6640/CN6645, -SCP and -AAP options Version # -Y
N/A 2/21/2013 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
PT Lengths Tested: ( 0 , 128 , 1024 , 120 , 1000 ) ; AAD Lengths tested: ( 0 , 128 , 1024 , 120 , 1000 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported

"The Octeon II CN 6XXX family of multi-core MIPS64 processors targets datacenter, routers, switches, control plane, base stations, and UTM applications. Part numbers: CN6010 CN6020 CN6120 CN6130 CN6220 CN6230 CN6330 CN6335 CN6630 CN6635 CN6640 CN6645 CN6740 CN6750 CN6760 CN6860 CN6870 CN6880, all with -SCP and -AAP options."

2344 Cavium, Inc.
2315 N. First Street
San Jose, CA 95131
USA

-Tasha Castaneda
TEL: 1-408-943-7100

-YJ Kim
TEL: 1-408-943-7100

OCTEON II CN6000/CN6100 Series Die

Part # CN6010/CN6020/CN6120/CN6130, -SCP and -AAP options
N/A 2/21/2013 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
PT Lengths Tested: ( 0 , 128 , 1024 , 120 , 1000 ) ; AAD Lengths tested: ( 0 , 128 , 1024 , 120 , 1000 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported

"The Octeon II CN 6XXX family of multi-core MIPS64 processors targets datacenter, routers, switches, control plane, base stations, and UTM applications. Part numbers: CN6010 CN6020 CN6120 CN6130 CN6220 CN6230 CN6330 CN6335 CN6630 CN6635 CN6640 CN6645 CN6740 CN6750 CN6760 CN6860 CN6870 CN6880, all with -SCP and -AAP options."

2343 Cavium, Inc.
2315 N. First Street
San Jose, CA 95131
USA

-Tasha Castaneda
TEL: 1-408-943-7100

-YJ Kim
TEL: 1-408-943-7100

OCTEON II CN6200/CN6300 Series Die

Part # CN6220/CN6230/CN6330/CN6335, -SCP and -AAP options Version # -Y
N/A 2/19/2013 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
PT Lengths Tested: ( 0 , 128 , 1024 , 120 , 1000 ) ; AAD Lengths tested: ( 0 , 128 , 1024 , 120 , 1000 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported

"The Octeon II CN 6XXX family of multi-core MIPS64 processors targets datacenter, routers, switches, control plane, base stations, and UTM applications. Part numbers: CN6010 CN6020 CN6120 CN6130 CN6220 CN6230 CN6330 CN6335 CN6630 CN6635 CN6640 CN6645 CN6740 CN6750 CN6760 CN6860 CN6870 CN6880, all with -SCP and -AAP options."

2342 OpenSSL Software Foundation, Inc.
1829 Mount Ephraim Road
Adamstown, MD 27101
USA

-Steve Marquess
TEL: 877-673-6775

OpenSSL FIPS Object Module

Version 2.0.3
Freescale i.MX53xA (ARMv7) with NEON w/ Windows Embedded Compact 7; Freescale i.MX53xD (ARMv7) with NEON w/ Windows Embedded Compact 7; Qualcomm Snapdragon APQ8060 (ARMv7) with NEON w/ Android 4.0 2/19/2013 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 512 , 1024 , 504 , 1016 ) ; AAD Lengths tested: ( 0 , 512 , 1024 , 504 , 1016 ) ; IV Lengths Tested: ( 96 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Not_Supported

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"The OpenSSL FIPS Object Module is a full featured general purpose cryptographic library that is distributed in source code form under an open source license. It can be downloaded from www.openssl.org/source/."

02/21/13: Added new tested information;
02/26/13: Updated implementation information;
04/10/13: Added new tested information;
04/24/13: Updated implementation information;

2341 Advance Computing and Engineering Solutions. (ACES)
H. No. 156, St 5, F11-1
Islamabad, n/a 44000
Pakistan

-Dr. Mehreen Afzal
TEL: +923009878534
FAX: +92-51-2224453

-Dr. Mureed Hussain
TEL: +923238556816
FAX: +92-51-2224453

Tahir Pak Crypto Library

Version 2.1.1
DELL PowerEdge T110 II 11th Generation Server w/ RHEL 5.3 evaluated at EAL4+ 2/19/2013 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"TPCL (Tahir Pak Crypto Library) provides FIPS approved Cryptographic functions to consuming applications via an Application Programming Interface (API)."

03/12/13: Updated implementation information;

2340 N/A N/A N/A 2/19/2013 N/A
2339 CipherCloud, Inc.
99 Almaden Blvd., Suite 720
San Jose, CA 95113
USA

-Varun Badhwar
TEL: 1 (415) 683-0062

Cryptographic Module for CipherCloud Gateway

Version 1.0
Intel Xeon E5645 w/ CentOS 6.3 2/19/2013 ECB ( e/d; 256 ); CBC ( e/d; 256 ); CFB128 ( e/d; 256 );

"The CipherCloud Encryption gateway provides FIPS approved cryptographic algorithms to protect sensitive data stored in public cloud environments, while preserving advanced operations such as searching, sorting and reporting."

2338 Kony Solutions, Inc.
7380 West Sand Lake Rd. #390
Orlando, FL 32819
USA

-Matthew Terry
TEL: 407-730-5669
FAX: 407-404-3738

Kony Solutions Cryptographic Library

Version 2.0
Qualcomm QSD 8250 (ARMv7) w/ Android 2.2; Qualcomm QSD 8250 (ARMv7) with NEON w/ Android 2.2; TI OMAP 3621 (ARMv7) w/ Android 3.0; TI OMAP 3621 (ARMv7) with NEON w/ Android 3.0; TI DM3730 (ARMv7) w/ Android 4.0; TI DM3730 (ARMv7) with NEON w/ Android 4.0; ARMv7 Cortex-A8 w/ Apple iOS 5.0; ARMv7 Cortex-A8 w/ Apple iOS 6.0 2/19/2013 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 0 , 512 , 1024 , 504 , 1016 ) ; AAD Lengths tested: ( 0 , 512 , 1024 , 504 , 1016 ) ; IV Lengths Tested: ( 96 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"The Kony Solutions Cryptographic Library v2.0 is a full featured cryptographic module used in Kony mobile and multi-channel application platforms and the KonyOne Platform."

2337 N/A N/A N/A 2/19/2013 N/A
2336 Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

-Global Certification Team

Cisco AP1142 & AP1042 88W8363P

Part # Marvell 88W8363P
N/A 2/19/2013 ECB ( e only; 128 );

CCM (KS: 128 ) (Assoc. Data Len Range: 22 - 30 ) (Payload Length Range: 10 - 20 ( Nonce Length(s): 13 (Tag Length(s): 8

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 32 Max: 512 ; Tag Len(s) Min: 1 Max: 16 )


"The Cisco Aironet Access Points deliver the versatility, high capacity and enterprise-class features required for small, medium and large Government indoor and outdoor wireless deployments. In FIPS 140-2 mode of operation, the Cisco APs support the IEEE 802.11i and IEEE 802.1x standards and AES for WPA2 encryption."

2335 Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

-Global Certification Team

Cisco AP3502 & AP1262 88W8364

Part # Marvell 88W8364
N/A 2/19/2013 ECB ( e only; 128 );

CCM (KS: 128 ) (Assoc. Data Len Range: 22 - 30 ) (Payload Length Range: 10 - 20 ( Nonce Length(s): 13 (Tag Length(s): 8

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 32 Max: 512 ; Tag Len(s) Min: 1 Max: 16 )


"The Cisco Aironet Access Points deliver the versatility, high capacity and enterprise-class features required for small, medium and large Government indoor and outdoor wireless deployments. In FIPS 140-2 mode of operation, the Cisco APs support the IEEE 802.11i and IEEE 802.1x standards and AES for WPA2 encryption."

2334 Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

-Global Certification Team

Cisco AP3602 & AP2602 88W8764C

Part # Marvell 88W8764C
N/A 2/19/2013 ECB ( e only; 128 );

CCM (KS: 128 ) (Assoc. Data Len Range: 22 - 30 ) (Payload Length Range: 10 - 20 ( Nonce Length(s): 13 (Tag Length(s): 8

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 32 Max: 512 ; Tag Len(s) Min: 1 Max: 16 )


"The Cisco Aironet Access Points deliver the versatility, high capacity and enterprise-class features required for small, medium and large Government indoor and outdoor wireless deployments. In FIPS 140-2 mode of operation, the Cisco APs support the IEEE 802.11i and IEEE 802.1x standards and AES for WPA2 encryption."

2333 Atmel Corporation
2325 Orchard Parkway
San Jose, CA 95131
US

-Randy Mummert
TEL: 719-540-1068

-Todd Slack

AT97SC3204-X4

Part # AT97SC3204-X4
N/A 1/31/2013 ECB ( e/d; 128 );

"The AT97SC3204 is a single chip cryptographic module used for cryptographic key generation, key storage and key management as well as generation and secure storage for digital certificates."

2332 Bosch Security Systems
130 Perinton Parkway
Fairport, NY 14450
USA

-Jon Wolski
TEL: (585) 678-3323
FAX: (585) 678-3263

-Malcolm Bugler
TEL: (585) 678-3240
FAX: (585) 678-3263

B-Series AES CBC

Version B-3.03.002 (Firmware)
Renesas RX62N 1/31/2013 CBC ( e/d; 128 , 192 , 256 );

"US-1B Security Control Panel"

2331 Bosch Security Systems
130 Perinton Parkway
Fairport, NY 14450
USA

-Jon Wolski
TEL: (585) 678-3323
FAX: (585) 678-3263

-Malcolm Bugler
TEL: (585) 678-3240
FAX: (585) 678-3263

GV4 AES CBC

Version G-1.17.001 (Firmware)
Renesas RX62N 1/31/2013 CBC ( e/d; 128 , 192 , 256 );

"GV4 Security Control Panel"

2330 Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

-Palani Karuppan
TEL: 408-525-2747

-Muukund Chikerali

5508 OpenSSL

Version OPENSSL-0.9.8g-7.0.0 (Firmware)
Cavium Octeon Plus 5600 Family 1/31/2013 ECB ( e/d; 128 , 256 ); CBC ( e/d; 128 , 256 );

"Cisco WLAN Controller 5508 provides centralized control, management and scalability for small, medium and large-scale Government WLAN networks using APs joined over secure DTLS connection and support IEEE 802.11i security standard with WPA2 to enable a Secure Wireless Architecture."

02/07/13: Updated vendor information;

2329 A10 Networks, Inc.
3 West Plumeria Drive
San Jose, CA 95134
USA

-John Chiong
TEL: +1 408 325-8668

A10 Networks Data Plane FIPS Library CNN3550

Part # CNN3550
N/A 1/31/2013 CBC ( e/d; 128 , 192 , 256 );

"The AX Series Advanced Traffic Manager is designed to meet the growing demands of Web sites, carriers and enterprises. The AX offers intelligent Layer 4-7 application processing capabilities with industry-leading performance and scalability to meet critical business requirements at competitive prices."

2328 Tait Limited
558 Wairakei Road
Burnside
PO Box 1645
Christchurch, Christchurch 8053
New Zealand

-Gordon Martin
TEL: +64-3-358-6622

-Wei Li Jiang
TEL: +64-3-357-0747

TEL_TDES_AES

Version 2.0 (Firmware)
Texas Instruments TMS320C5505 1/31/2013 ECB ( e/d; 128 , 256 ); CBC ( e/d; 128 , 256 ); OFB ( e/d; 128 , 256 );

"Firmware implementation of the FIPS 140-2 certified Crypto Module, used to provide security features in the Tait Communications range of digital radios and base station equipment."

02/05/13: Updated implementation information;
04/15/13: Updated implementation information;

2327 Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

-Global Certification Team

Cisco AP3602 & AP2602 HW DTLS

Part # Freescale SC1023
N/A 1/31/2013 CBC ( e/d; 128 );

"The Cisco Aironet Access Points deliver the versatility, high capacity and enterprise-class features required for small, medium and large Government indoor and outdoor wireless deployments. In FIPS 140-2 mode of operation, the Cisco APs support the IEEE 802.11i and IEEE 802.1x standards and AES for WPA2 encryption."

2326 Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

-Global Certification Team

Cisco AP3502 & AP1262 HW DTLS

Part # AMCC 460EXr
N/A 1/31/2013 CBC ( e/d; 128 );

"The Cisco Aironet Access Points deliver the versatility, high capacity and enterprise-class features required for small, medium and large Government indoor and outdoor wireless deployments. In FIPS 140-2 mode of operation, the Cisco APs support the IEEE 802.11i and IEEE 802.1x standards and AES for WPA2 encryption."

2325 Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

-Global Certification Team

Cisco AP1142 & AP1042 HW DTLS

Part # AMCC 405EX
N/A 1/31/2013 CBC ( e/d; 128 );

"The Cisco Aironet Access Points deliver the versatility, high capacity and enterprise-class features required for small, medium and large Government indoor and outdoor wireless deployments. In FIPS 140-2 mode of operation, the Cisco APs support the IEEE 802.11i and IEEE 802.1x standards and AES for WPA2 encryption."

2324 Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

-Global Certification Team

Cisco AP1131 & AP1242 A506

Part # Cisco A506
N/A 1/31/2013 ECB ( e only; 128 );

CCM (KS: 128 ) (Assoc. Data Len Range: 22 - 30 ) (Payload Length Range: 10 - 20 ( Nonce Length(s): 13 (Tag Length(s): 8

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 32 Max: 512 ; Tag Len(s) Min: 1 Max: 16 )


"The Cisco Aironet Access Points deliver the versatility, high capacity and enterprise-class features required for small, medium and large Government indoor and outdoor wireless deployments. In FIPS 140-2 mode of operation, the Cisco APs support the IEEE 802.11i and IEEE 802.1x standards and AES for WPA2 encryption."

2323 Lancope, Inc.
3650 Brookside Parkway, Suite 400
Alpharetta, GA 30022
USA

-Jason Anderson
TEL: 770-225-6519

-Jim Magers

Lancope SSH Library

Version 1.0
Intel Xeon E3 series w/ Stealthwatch v6.3; Intel Xeon E5 series w/ Stealthwatch v6.3 1/25/2013 CBC ( e/d; 128 , 256 ); CTR ( ext only; 128 , 256 )


"The Lancope SSH library protects sensitive management data as it is transmitted to a Lancope appliance, using encryption techniques to provide a persistent level of protection. The library provides encrypted management communications for Lancope''s Stealthwatch products."

2322 Surdoc corp
1370 Willow Road
Menlo park, California 94025
US

-Hu Jinwei
TEL: +86(22)58775288
FAX: +86(22)58775234

Java Cryptographic Extension

Version 1.0
Intel Pentium (R) Dual-Core w/ Microsoft Windows XP 1/25/2013 ECB ( e/d; 256 );

"AES implementation is used to protect the data security in the cloud storage."

2321 Aruba Networks
1322 Crossman Ave
Sunnyvale, CA 94089-1113
USA

-Jon Green
TEL: +1 408 227 4500
FAX: +1 408 227 4550

Aruba OS Crypto Module

Version 6.1.4.1-FIPS (Firmware)
Cavium Networks Octeon Plus CN5010 1/25/2013 CBC ( e/d; 128 , 192 , 256 );

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 128 , 512 , 136 , 264 ) ; AAD Lengths tested: ( 128 , 512 , 136 , 264 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Not_Supported

"Aruba''s single/multi-radio wireless 802.11 a/b/g/n APs are featured to address the needs of secure, mobile networks of all sizes. They may be configured for enterprise and/or Mesh topologies, or to provide secure remote connectivity across high latency links. Aruba APs support the IEEE 802.1X and 802.11i standards with up to 256-bit AES encryption."

2320 Harris Corporation
1680 University Avenue
Rochester, NY 14610
USA

-Michael Vickers
FAX: 434-455-6851

HALM Software Crypto Library

Version 2.0
Texas Instruments TMS320C55x DSP Core w/ Texas Instruments DSP/BIOS Software Kernel 5.33.03 1/25/2013 ECB ( e/d; 128 , 256 ); CBC ( e only; 256 ); OFB ( e only; 256 );

CMAC (Generation/Verification ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 128 ; Tag Len(s) Min: 16 Max: 16 )


""The HALM Software Crypto Library provides Harris terminals with AES encryption of digital voice and data for mission-critical assured communications by First Responders.""

2319 Lancope, Inc.
3650 Brookside Parkway, Suite 400
Alpharetta, GA 30022
USA

-Jim Magers

Lancope Crypto-J library

Version 1.0
Intel Xeon E5 series w/ Stealthwatch v6.3; Intel Xeon E3 series w/ Stealthwatch v6.3 1/25/2013 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )


"The Lancope Crypto-J library relies on the RSA BSAFE Crypto-J module to protect sensitive data as it is stored using encryption techniques to provide a persistent level of protection. The library provides encrypted management and internal communications for Lancope''s Stealthwatch products."

2318 Accellion, Inc.
1804 Embarcadero Road
Suite 200
Palo Alto, Ca 94303
USA

-Prateek Jain
TEL: 65-62445670
FAX: 65-62445678

PHP AES Library

Version 2.5.7
Dual Xeon QuadCore w/ Red Hat Enterprise Version 5 1/25/2013 CBC ( e/d; 128 , 256 );

"Accellion Cryptographic Module is a key component of Accellion''s secure collaboration solution that enables enterprises to securely share and transfer files. Extensive tracking and reporting tools allow compliance with SOX, HIPAA, FDA and GLB regulations while providing enterprise grade security and ease of use"

2317 Accellion, Inc.
1804 Embarcadero Road
Suite 200
Palo Alto, Ca 94303
USA

-Prateek Jain
TEL: 65-62445670
FAX: 65-62445678

PERL AES Library

Version 0.05
Dual Xeon QuadCore w/ Red Hat Enterprise Version 5 1/25/2013 ECB ( d only; 128 , 256 );

"Accellion Cryptographic Module is a key component of Accellion''s secure collaboration solution that enables enterprises to securely share and transfer files. Extensive tracking and reporting tools allow compliance with SOX, HIPAA, FDA and GLB regulations while providing enterprise grade security and ease of use"

2316 Accellion, Inc.
1804 Embarcadero Road
Suite 200
Palo Alto, Ca 94303
USA

-Prateek Jain
TEL: 65-62445670
FAX: 65-62445678

TLS Library

Version 1.0.1c
Dual Xeon QuadCore w/ Linux based on Red Hat Enterprise Version 5 1/25/2013 CBC ( e/d; 128 , 256 );

"Accellion Cryptographic Module is a key component of Accellion''s secure collaboration solution that enables enterprises to securely share and transfer files. Extensive tracking and reporting tools allow compliance with SOX, HIPAA, FDA and GLB regulations while providing enterprise grade security and ease of use"

02/26/13: Updated implementation information;

2315 Cleversafe, Inc.
222 South Riverside Plaza
Suite 1700
Chicago, Illinois 60606
US

-Brenda Litin
TEL: (312) 423-6640

-Jason Resch
TEL: (312) 423-6640

Cleversafe Dispersed Storage Access Framework SDK

Version dsaf-sdk-2.2.12370
Intel Xeon w/ Ubuntu 10 1/18/2013 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )


"This package contains the Dispersed Storage Access Framework (DSAF) Software Development Kit (SDK). It contains all of the documentation and libraries required to build applications that can store to and retrieve data from a simple object vault on a dsNet(TM) System."

2314 Allegro Software Development Corporation
1740 Massachusetts Avenue
Boxborough, MA 01719
USA

-Larry LaCasse
TEL: +1 (978) 264-6600

Allegro Cryptographic Engine

Version 1.1
Intel Core 2 Duo w/ Windows 7 Ultimate (64-bit) 1/18/2013 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 32 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 0 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 0 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 0 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 0 , 128 , 256 , 136 , 246 ) ; AAD Lengths tested: ( 0 , 128 , 256 , 136 , 246 ) ; IV Lengths Tested: ( 96 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported
DRBG: Val# 286

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"The Allegro Cryptographic Engine (ACE) is a cryptographic library module for embedded computing systems. ACE provides software implementations of algorithms for calculations of message digests, digital signature creation and verification, bulk encryption and decryption, key generation and key exchange"

2313 N/A N/A N/A 1/18/2013 N/A
2312 Oracle Corporation
4150 Network Circle Drive
Santa Clara, CA 95054
US

-Arjuna Baratham
TEL: 408-276-9957

-Mehdi Bonyadi
TEL: 408-276-6017

Sun Crypto Accelerator 6000

Version 1.1.7, 1.1.8 and 1.1.9 (Firmware)
Intel 80333 1/7/2013 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"Hardware Security Module and Cryptographic Accelerator Card"

2311 N/A N/A N/A 12/31/2012 N/A
2310 Oracle Corporation
500 Oracle Parkway
Redwood Shores, CA 94065
USA

-Shaun Lee
TEL: 44 1189 243860

-Linda Gallops
TEL: 704 972 5018

Oracle Solaris Userland Cryptographic Framework with SPARC T4

Version 1.0
SPARC T4 w/ Oracle Solaris 11.1 SRU3 12/31/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 32 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
PT Lengths Tested: ( 0 , 256 , 1024 , 160 ) ; AAD Lengths tested: ( 0 , 256 , 1024 , 160 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported

"The Oracle Solaris OS uses the Oracle Solaris Userland Cryptographic Framework module for cryptographic functionality for any applications running in user space through one of the three exposed APIs. The module includes the SPARC T4 processor special instruction sets for hardware-accelerated cryptography."

2309 Oracle Corporation
500 Oracle Parkway
Redwood Shores, CA 94065
USA

-Shaun Lee
TEL: 44 1189 243860

-Linda Gallops
TEL: 704 972 5018

Oracle Solaris Kernel Cryptographic Library

Version 1.0
SPARC64 w/ Oracle Solaris 11.1 SRU3; Intel Xeon E5 series with AES-NI w/ Oracle Solaris 11.1 SRU3 12/31/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 32 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
PT Lengths Tested: ( 0 , 256 , 1024 , 160 ) ; AAD Lengths tested: ( 0 , 256 , 1024 , 160 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"The Oracle Solaris OS utilizes the Oracle Solaris Kernel Cryptographic Framework module to provide cryptographic functionality for any kernel-level processes that require it, via Oracle-proprietary APIs."

2308 Oracle Corporation
500 Oracle Parkway
Redwood Shores, CA 94065
USA

-Shaun Lee
TEL: 44 1189 243860

-Linda Gallops
TEL: 704 972 5018

Oracle Solaris Userland Cryptographic Library

Version 1.0
SPARC64 w/ Oracle Solaris 11.1 SRU3; Intel Xeon E5 series with AES-NI w/ Oracle Solaris 11.1 SRU3 12/31/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 32 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
PT Lengths Tested: ( 0 , 256 , 1024 , 160 ) ; AAD Lengths tested: ( 0 , 256 , 1024 , 160 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported

"The Oracle Solaris OS utilizes the Oracle Solaris Userland Cryptographic Framework module for cryptographic functionality for applications running in user space. It exposes three public interfaces to provide cryptography to any application designed to utilize them."

2307 Kyocera Corporation
6 Takeda Tobadono-cho
Fushimi-ku, Kyoto 612-8501
Japan

-n/a

Kyocera Android AES Library

Version 1.0 Rev.1
Dual Krait (1.2GHz) w/ Android 4.0.4 12/31/2012 CBC ( e/d; 128 , 192 , 256 );

"Kyocera Android AES Library provides the CBC mode encryption function of AES. By implementing this feature, we provide encryption of data in the mobile phone."

2306 McAfee, Inc.
2340 Energy Park Drive
St. Paul, MN 55108
USA

-Mark Hanson
TEL: 651-628-1633
FAX: 651-628-2701

McAfee Firewall Enterprise 64-bit Cryptographic Engine (Virtual)

Version 8.3
Intel Xeon w/ SecureOS 8.3 running on Crossbeam XOS v9.9.0; Intel Xeon w/ SecureOS 8.3 running on VMware ESXi v5.0 12/31/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"The McAfee Firewall Enterprise 64-Bit Cryptographic Engine is a software library that provides cryptographic services for applications on the virtual deployments of McAfee''s Firewall Enterprise appliance."

2305 McAfee, Inc.
2340 Energy Park Drive
St. Paul, MN 55108
USA

-Mark Hanson
TEL: 651-628-1633
FAX: 651-628-2701

McAfee Firewall Enterprise 64-bit Cryptographic Engine

Version 8.3 (Firmware)
Intel Atom; Intel Core i3; Intel Pentium; Intel Xeon 12/31/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"The McAfee Firewall Enterprise 64-bit Cryptographic Engine is a firmware library that provides cryptographic services for applications across several versions of the McAfee Firewall Enterprise Appliances."

2304 McAfee, Inc.
2340 Energy Park Drive
St. Paul, MN 55108
USA

-Mark Hanson
TEL: 651-628-1633
FAX: 651-628-2701

McAfee Firewall Enterprise 32-bit Cryptographic Engine (Virtual)

Version 8.3
Intel Xeon w/ SecureOS 8.3 running on VMware ESXi v5.0; Intel Xeon w/ SecureOS 8.3 running on Crossbeam XOS v9.9.0 12/31/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"The McAfee Firewall Enterprise 32-Bit Cryptographic Engine is a software library that provides cryptographic services for applications on the virtual deployments of McAfee''s Firewall Enterprise appliance."

2303 McAfee, Inc.
2340 Energy Park Drive
St. Paul, MN 55108
USA

-Mark Hanson
TEL: 651-628-1633
FAX: 651-628-2701

McAfee Firewall Enterprise 32-bit Cryptographic Engine

Version 8.3 (Firmware)
Intel Atom; Intel Core i3; Intel Pentium; Intel Xeon 12/31/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"The McAfee Firewall Enterprise 32-bit Cryptographic Engine is a firmware library that provides cryptographic services for applications across several versions of the McAfee Firewall Enterprise Appliances."

2302 A10 Networks, Inc.
3 West Plumeria Drive
San Jose, CA 95134
USA

-John Chiong
TEL: +1 408 325-8668

A10 Networks SoftAX SSL FIPS Library

Version 1.0
Intel Xeon w/ Redhat Enterprise Linux 5 running on KVM 0.14; Intel Xeon w/ Redhat Enterprise Linux 5 running on VMWare ESXi 4.0; Intel Xeon w/ Redhat Enterprise Linux 5 running on Citrix XenServer 6.0 12/21/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"SoftAX, part of A10 Networks'' award-winning AX Series Application Delivery Controller (ADC) family, is designed to meet the growing needs of organizations that require a flexible and easy-to-deploy application delivery and server load balancer solution running within a virtualized infrastructure."

2301 N/A N/A N/A 12/21/2012 N/A
2300 CoCo Communications
800 5th Ave
Seattle, WA 98104
USA

-David Weidenkopf
TEL: 206-812-5783

CoCo Cryptographic Module for Intel x86

Version 2.0
Intel x86 32bit w/ Vyatta 6.4 12/21/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 96 64 ) (KS: AES_192( e/d ) Tag Length(s): 128 96 64 )
(KS: AES_256( e/d ) Tag Length(s): 128 96 64 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 0 , 1024 ) ; AAD Lengths tested: ( 0 , 1024 ) ; IV Lengths Tested: ( 0 , 0 ) ; 96BitIV_Supported
GMAC_Supported

"The CoCo Cryptographic Module is a Linux loadable kernel module that provides cryptographic services in the Linux kernel. It provides an API that can be used by other kernel services."

2299 CoCo Communications
800 5th Ave
Seattle, WA 98104
USA

-David Weidenkopf
TEL: 206-812-5783

CoCo Cryptographic Module for AMD Geode

Version 2.0
AMD Geode 32bit w/ Linux kernel 2.6 12/21/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 96 64 ) (KS: AES_192( e/d ) Tag Length(s): 128 96 64 )
(KS: AES_256( e/d ) Tag Length(s): 128 96 64 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 0 , 1024 ) ; AAD Lengths tested: ( 0 , 1024 ) ; IV Lengths Tested: ( 0 , 0 ) ; 96BitIV_Supported
GMAC_Supported

"The CoCo Cryptographic Module is a Linux loadable kernel module that provides cryptographic services in the Linux kernel. It provides an API that can be used by other kernel services."

2298 Hewlett-Packard Development Company, L.P.
11445 Compaq Center Dr. W
Houston, TX 77070
USA

-Luis Luciani
TEL: (281) 518-6762

iLO Hardware Crypto Library (GXE)

Part # 438893-503
N/A 12/21/2012 OFB ( e/d; 128 );

"HP Integrated Lights-Out (iLO) management built into BladeSystem blade servers and storage blades is an autonomous management subsystem embedded directly on the server. iLO monitors each server’s overall “health”, reports issues, and provides a means for setup and managing of power and thermal settings."

2297 Hewlett-Packard Development Company, L.P.
11445 Compaq Center Dr. W
Houston, TX 77070
USA

-Luis Luciani
TEL: (281) 518-6762

iLO Hardware Crypto Library (GLP)

Part # 531510-003
N/A 12/21/2012 OFB ( e/d; 128 );

"HP Integrated Lights-Out (iLO) management built into BladeSystem blade servers and storage blades is an autonomous management subsystem embedded directly on the server. iLO monitors each server’s overall “health”, reports issues, and provides a means for setup and managing of power and thermal settings."

2296 Hewlett-Packard Development Company, L.P.
11445 Compaq Center Dr. W
Houston, TX 77070
USA

-Luis Luciani
TEL: (281) 518-6762

iLO Allegro Firmware Crypto Library

Version 1.5 (Firmware)
iLO 3 GLP (ASIC) with ARM-926; iLO 3 GXE (ASIC) with ARM-926 12/21/2012 CBC ( e/d; 128 , 256 );

"HP Integrated Lights-Out (iLO) management built into BladeSystem blade servers and storage blades is an autonomous management subsystem embedded directly on the server. iLO monitors each server’s overall “health”, reports issues, and provides a means for setup and managing of power and thermal settings."

2295 Hewlett-Packard Development Company, L.P.
11445 Compaq Center Dr. W
Houston, TX 77070
USA

-Luis Luciani
TEL: (281) 518-6762

iLO Kerberos K-Lite Firmware Crypto Library

Version 1.5 (Firmware)
iLO 3 GLP (ASIC) with ARM-926; iLO 3 GXE (ASIC) with ARM-926 w/ Green Hills Integrity RTOS 12/21/2012 CBC ( e/d; 128 , 256 );

"HP Integrated Lights-Out (iLO) management built into BladeSystem blade servers and storage blades is an autonomous management subsystem embedded directly on the server. iLO monitors each server’s overall “health”, reports issues, and provides a means for setup and managing of power and thermal settings."

2294 Hewlett-Packard Development Company, L.P.
11445 Compaq Center Dr. W
Houston, TX 77070
USA

-Luis Luciani
TEL: (281) 518-6762

iLO SSL-C Firmware Crypto Library

Version 1.5 (Firmware)
iLO 3 GLP (ASIC) with ARM-926; iLO 3 GLP (ASIC) with ARM-926 w/ Green Hills Integrity RTOS; 12/21/2012 CBC ( e/d; 128 , 256 );

"HP Integrated Lights-Out (iLO) management built into BladeSystem blade servers and storage blades is an autonomous management subsystem embedded directly on the server. iLO monitors each server’s overall “health”, reports issues, and provides a means for setup and managing of power and thermal settings."

2293 Uplogix, Inc.
7600 B North Capital of Texas Highway
Suite 220
Austin, TX 78731
USA

-Martta Howard
TEL: 512-857-7043
FAX: 512-857-7002

NSS

Version 3.12.11 (Firmware)
AMD Geode LX; Intel Celeron D; Intel Atom E6xx 12/21/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"Uplogix Local Managers utilize Mozilla''s Network Security Services for general purpose cryptographic functionality. NSS provides the algorithms necessary to secure Uplogix'' SSH and TLS implementations. See http://www.uplogix.com"

2292 Uplogix, Inc.
7600 B North Capital of Texas Highway
Suite 220
Austin, TX 78731
USA

-Martta Howard
TEL: 512-857-7043
FAX: 512-857-7002

Libgcrypt

Version 1.4.4 (Firmware)
AMD Geode LX; Intel Atom E6xx; Intel Celeron D 12/21/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )


"Uplogix Local Managers utilize Libgcrypt to provide cryptographic algorithms to connect to IPSec VPNs. See http://www.uplogix.com and http://www.gnupg.org/ for more information."

2291 Mocana Corporation
350 Sansome Street
Suite 1010
San Francisco, CA 94104
USA

-Mocana Sales
TEL: 415-617-0055
FAX: 415-617-0056

Freescale P2020 SEC3.1

Part # Freescale P2020 SEC 3.1
N/A 12/21/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )


"The Mocana Cryptographic Loadable Kernel Module (Software Version 5.5fi) is a hybrid, multi-chip standalone cryptographic module that runs on a general purpose computer. The primary purpose of this module is to provide FIPS Approved cryptographic routines to consuming applications via an Application Programming Interface."

2290 Mocana Corporation
350 Sansome Street
Suite 1010
San Francisco, CA 94104
USA

-Mocana Sales
TEL: 415-617-0055
FAX: 415-617-0056

Mocana Cryptographic Library

Version 5.5fi
FreeScale QorIQ P2 w/ VxWorks 6.8 12/21/2012

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 0 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )
AES Val#2291

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )
AES Val#2291

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 0 , 128 , 256 , 136 , 264 ) ; AAD Lengths tested: ( 0 , 128 , 256 , 136 , 264 ) ; IV Lengths Tested: ( 128 , 128 ) ; OtherIVLen_Supported
GMAC_Not_Supported AES Val#2291
RNG: Val# 1141

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) )) AES Val#2291

"The Mocana Cryptographic Loadable Kernel Module (Software Version 5.5fi) is a hybrid, multi-chip standalone cryptographic module that runs on a general purpose computer. The primary purpose of this module is to provide FIPS Approved cryptographic routines to consuming applications via an Application Programming Interface."

2289 Hewlett-Packard Development Company, L.P.
11445 Compaq Center Dr. W
Houston, TX 77070
USA

-Tim McDonough
TEL: (281) 518-7531

-Manny Novoa
TEL: (218) 514-9601

HP BladeSystem Onboard Administrator Firmware

Version 3.71 (Firmware)
PowerPC 440EPX processors 12/21/2012 CBC ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 ); CTR ( int only; 128 , 192 , 256 )


"The module provides administrative control of HP BladeSystem c-Class enclosures. The cryptographic functions of the module provide security for administrative access via HTTPS and SSH, and to administrative commands for the BladeSystem enclosure."

2288 Comtech Mobile Datacom Corporation
20430 Century Boulevard
Germantown, MD 20874
USA

-Vladislav Grinchenko
TEL: 240-686-3365

-Ryon Coleman
TEL: 240-686-3305

Comtech Mobile Datacom Corp Cryptographic Library (libcmscrypto)

Version 1.2
Intel x64 w/ Red Hat Enterprise Linux 6.2 12/7/2012 CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 );

"libcmscrypto is a library implemented in the Comtech Mobile Datacom Corp. products and provides the basic cryptographic functionality that includes Advanced Encryption Standard (AES) algorithm, Triple-DES, SHA1 message digest, HMAC SHA-1 Keyed-Hash message authentication code."

2287 Motorola Mobility, LLC
600 North U.S. Highway 45
Libertyville, Illinois 60048
USA

-Jose Afonso Pinto
TEL: +55 19-3847-6580

-Wesley Ribeiro
TEL: +55 19-3847-6199

Motorola Mobility Linux Kernel Crypto Module

Version 1.0
Qualcomm Snapdragon S4 (ARMv7) w/ Android 4.1.2; Qualcomm Snapdragon S4 (ARMv7) w/ Android 4.2.2 12/7/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )


"The Motorola Mobility Linux Kernel Software Cryptographic Module is a software only cryptographic module which provides general purpose cryptographic services (AES, Triple DES, SHA, HMAC and RNG) to Linux kernel space software (i.e., the kernel itself, kernel extensions and device drivers) for Android mobile devices."

03/26/13: Updated and added new tested information;

2286 SafeNet, Inc.
4690 Millennium Drive
Belcamp, MD 21017
USA

-Chris Brych
TEL: 613-221-5081
FAX: 613-723-5079

SafeNet Software Cryptographic Library

Version 1.0
Intel Xeon E3-1220v2 w/ AES-NI w/ Windows Server 2008R2 64-bit; Intel Xeon E3-1220v2 w/ Windows Server 2008 64-bit; Intel Core i5-2430M w/ AES-NI w/ Windows 7 64-bit; Intel Core i5-2430M w/ Windows 7 32-bit; Intel Xeon E3-1220v2 w/ AES-NI w/ NetBSD 4.1 32-bit on VMware ESX; ARMv7 w/ NEON w/ Android 4.0; Intel Xeon E3-1220v2 w/ AES-NI w/ RHEL 6.2 64-bit; Intel Xeon 3050 w/ CentOS 5.6 32-bit 12/7/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 0 , 512 , 1024 , 504 , 1016 ) ; AAD Lengths tested: ( 0 , 512 , 1024 , 504 , 1016 ) ; IV Lengths Tested: ( 96 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"The SafeNet Software Cryptographic Library is SafeNet’s cryptographic service provider that provides extended high performance cryptographic services for SafeNet''s broad range of Data Protection products."

2285 Brocade Communication Systems, Inc.
120 Holger Way
San Jose, CA 95110
USA

-Vidya Sagar Ravipati
TEL: 408-333-5812
FAX: 408-333-3928

Brocade FIPS Crypto Library

Version FIPS OpenSSL 1.0 (Firmware)
Part # Freescale e500mc
Freescale e500mc 11/30/2012 ECB ( e/d; 256 ); CBC ( e/d; 256 );

"Brocade FIPS Crypto Library, NOS"

2284 Cortina Systems
535 Legget Drive, Suite 1000
Kanata, Ontario K2K 3B8
Canada

-Tarun Setya
TEL: (613) 595-4023

-Kishor Mistry
TEL: (613) 595-4019

CS4321MACSEC

Part # CS4321B0 Family
N/A 11/30/2012 ECB ( e only; 128 );

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) IV Generated: ( Externally ) ; PT Lengths Tested: ( 128 , 1024 , 136 , 1016 ) ; AAD Lengths tested: ( 1024 , 8 , 16 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Not_Supported

"Members of the CS4321B0 family of devices implement the encryption/decryption algorithm required to support the IEEE 802.1AE MacSec standard."

2283 Brocade Communication Systems, Inc.
120 Holger Way
San Jose, CA 95110
USA

-Vidya Sagar Ravipati
TEL: 408-333-6715
FAX: 408-333-3928

Brocade FIPS Crypto Library

Version FIPS OpenSSL 1.0 (Firmware)
Part # Freescale e500v2
Freescale e500v2 11/21/2012 ECB ( e/d; 256 ); CBC ( e/d; 128 , 192 , 256 );

"Brocade FIPS Crypto Library, NOS"

2282 SafeNet, Inc.
4690 Millennium Drive
Belcamp, MD 21017
USA

-Chris Brych
TEL: 613.221.5081
FAX: 613.723.5079

-Laurie Smith
TEL: 613.221.5026
FAX: 613.723.5079

Luna IS Cryptographic Library

Version 6.3.1 (Firmware)
AMCC 440EPx Power PC (PPC440EPx) Embedded Processor 11/21/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 7 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 7 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 7 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
PT Lengths Tested: ( 128 , 1024 ) ; AAD Lengths tested: ( 0 , 128 , 1024 , 32 , 480 ) ; IV Lengths Tested: ( 128 , 128 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Not_Supported
DRBG: Val# 277

"The Luna IS cryptographic library provides a broad suite of high-performance cryptographic operations. All cryptographic algorithms are implemented within the module''s firmware or associated co-processor."

2281 McAfee, Inc.
2821 Mission College Blvd.
Santa Clara, CA 95054
USA

-Mark Hanson
TEL: 651-628-1633
FAX: 651-628-2706

McAfee Email Gateway Agent

Version 1.0 (Firmware)
Intel 2x Xeon; Intel Celeron; Intel Core i3; Intel Xeon 11/21/2012 ECB ( e/d; 128 , 256 ); CBC ( e/d; 128 , 256 );

"The McAfee Email Gateway Agent v1.0 provides the services necessary to support the cryptographic features and functions of the McAfee Email Gateway line of hardware appliances, blade servers, and virtual appliances."

2280 McAfee, Inc.
2821 Mission College Blvd.
Santa Clara, CA 95054
USA

-Mark Hanson
TEL: 651-628-1633
FAX: 651-628-2706

McAfee Email Gateway Agent

Version 1.0
Intel Xeon w/ Red Hat Linux 9 running on VMware ESXi v4.1; Intel Xeon w/ Red Hat Linux 9 running on VMware ESXi v5.0; 11/21/2012 ECB ( e/d; 128 , 256 ); CBC ( e/d; 128 , 256 );

"The McAfee Email Gateway Agent v1.0 provides the services necessary to support the cryptographic features and functions of the McAfee Email Gateway line of hardware appliances, blade servers, and virtual appliances."

2279 Fortinet, Inc.
1090 Kifer Road
Sunnyvale, CA 94086-5301
USA

-Alan Kaye
TEL: 613-225-9381 x7416
FAX: 613-225-2951

FortiOS FortiASIC CP8 Cryptographic Library

Part # FortiASIC CP8
N/A 11/21/2012 CBC ( e/d; 128 , 192 , 256 );

"This document focuses on the hardware implementation of the Fortinet FortiASIC CP8 Cryptographic Library v4.3.6 running on Intel x86 compatible processors."

2278 Fortinet, Inc.
1090 Kifer Road
Sunnyvale, CA 94086-5301
USA

-Alan Kaye
TEL: 613-225-9381 x7416
FAX: 613-225-2951

FortiOS FortiASIC CP7 Cryptographic Library

Part # FortiASIC CP7
N/A 11/21/2012 CBC ( e/d; 128 , 192 , 256 );

"This document focuses on the hardware implementation of the Fortinet FortiASIC CP7 Cryptographic Library v4.3.6 running on Intel x86 compatible processors."

2277 Fortinet, Inc.
1090 Kifer Road
Sunnyvale, CA 94086-5301
USA

-Alan Kaye
TEL: 613-225-9381 x7416
FAX: 613-225-2951

FortiASIC CP6 Cryptographic Library

Part # CP6
N/A 11/21/2012 CBC ( e/d; 128 , 192 , 256 );

"This document focuses on the hardware implementation of the Fortinet FortiASIC CP6 Cryptographic Library v4.3.6 running on Intel x86 compatible processors."

2276 Fortinet, Inc.
1090 Kifer Road
Sunnyvale, CA 94086-5301
USA

-Alan Kaye
TEL: 613-225-9381 x7416
FAX: 613-225-2951

FortiOS FortiASIC CP4 Cryptographic Library

Part # CP4
N/A 11/21/2012 CBC ( e/d; 128 , 192 , 256 );

"This document focuses on the hardware implementation of the Fortinet FortiASIC CP4 Cryptographic Library v4.3.6 running on Intel x86 compatible processors."

2275 Fortinet, Inc.
1090 Kifer Road
Sunnyvale, CA 94086-5301
USA

-Alan Kaye
TEL: 613-225-9381 x7416
FAX: 613-225-2951

FortiOS FIPS Cryptographic Library

Version 4.3.6 (Firmware)
Intel Xeon; Intel Tolopai; Intel i5-750 Quad Core; Intel i3-540 Dual Core; Intel Core 2 Duo; Intel Celeron; ARM v5 Compatible 11/21/2012 CBC ( e/d; 128 , 192 , 256 );

"This document focuses on the firmware implementation of the Fortinet FortiOS FIPS Cryptographic Library v4.0 MR3 running on Intel x86 compatible processors."

2274 Fortinet, Inc.
1090 Kifer Road
Sunnyvale, CA 94086-5301
USA

-Alan Kaye
TEL: 613-225-9381 x7416
FAX: 613-225-2951

FortiOS SSL Cryptographic Library

Version 4.3.6 (Firmware)
Intel Xeon; Intel Tolopai; Intel i5-750 Quad Core; Intel i3-540 Dual Core; Intel Core 2 Duo; Intel Celeron; ARM v5 Compatible 11/21/2012 CBC ( e/d; 128 , 192 , 256 );

"This document focuses on the firmware implementation of the Fortinet FortiOS SSL Cryptographic Library v4.0 MR3 running on Intel x86 compatible processors."

2273 SafeLogic Inc
530 Lytton Ave, Ste 200
Palo Alto, CA 94301
USA

-SafeLogic Inside Sales

CryptoComply Server Engine

Version 2.1
Intel i7 w/ CentOS 6.3; Intel i7 w/ Mac OS X 10.8; Intel i7 w/ RHEL 6.3; Intel i7 w/ SUSE Linux Enterprise 11 SP2; Intel i7 w/ Windows 2008 R2 11/21/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 0 , 128 , 1024 , 120 , 1016 ) ; AAD Lengths tested: ( 0 , 128 , 1024 , 120 , 1016 ) ; IV Lengths Tested: ( 104 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported
DRBG: Val# 281

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"CryptoComply | Server is a standards-based "Drop-in Compliance" solution for servers and appliances. The module features robust algorithm support, including Suite B algorithm compliance. CryptoComply offloads secure key management, data integrity, data at rest encryption, and secure communications to a trusted implementation."

2272 Mocana Corporation
350 Sansome Street
Suite 1010
San Francisco, CA 94104
USA

-Mocana Sales
TEL: (415) 617-0055
FAX: (415) 617-0056

Mocana Cryptographic Library

Version 5.5f
ARMv7 w/ Android 4.1; Intel Core 2 Duo w/ Ubuntu Linux 32 bit; Intel Core 2 Duo w/ Ubuntu Linux 64 bit; FreeScale QorIQ P2 w/ VxWorks 6.8 11/15/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 0 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 0 , 128 , 256 , 136 , 264 ) ; AAD Lengths tested: ( 0 , 128 , 256 , 136 , 264 ) ; IV Lengths Tested: ( 128 , 128 ) ; OtherIVLen_Supported
GMAC_Supported
RNG: Val# 1065
DRBG: Val# 201

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"The Mocana Cryptographic Module is the engine of Mocana''s Device Security Framework - a software framework that secures all aspects of a system. The Device Security Framework helps applications and device designers reduce development costs and dramatically enhance cryptographic performance. For details see www.mocana.com."

12/18/12: Added new tested information;
12/27/12: Updated vendor information;

2271 Allegro Software Development Corporation
1740 Massachusetts Avenue
Boxborough, MA 01719
USA

-Larry LaCasse
TEL: +1 (978) 264-6600

Allegro Cryptographic Engine

Version 1.1
Dell Optiplex 775, Intel Core 2 Duo w/ Windows 7 Ultimate 11/15/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 32 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 0 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 0 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 0 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Externally ) ; PT Lengths Tested: ( 0 , 128 , 256 , 136 , 264 ) ; AAD Lengths tested: ( 128 , 256 , 136 , 264 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"The Allegro Cryptographic Engine (ACE) is a cryptographic library module for embedded computing systems. ACE provides software implementations of algorithms for calculations of message digests, digital signature creation and verification, bulk encryption and decryption, key generation and key exchange."

2270 RADWIN
27 Habarzel St.
Tel Aviv, Israel 69710
Israel

-Elior Mehr
TEL: 972-3-769 2801
FAX: 972-3-766 2918

-Eli Turgeman
TEL: 972-3-766 2940
FAX: 972-3-766 2918

RADWIN encryption module 1.1

Part # AR-9590
N/A 11/15/2012 CBC ( e only; 128 , 256 );

"RADWIN 2000 and RADWIN 5000 offers a Sub 6GHz wireless broadband products that delivers high throughput of up to 200 Mbps, Supported bands include 2.3-2.7 GHz, 3.3-3.8 GHz, and 4.4-6.4 GHz. RADWIN 2000 offers Point to point topology and RADWIN 5000 offer point to multipoint topology,both series contain RADWIN cryptograph module."

02/13/13: Added new tested information;

2269 Panzura, Inc.
22 Great Oaks Blvd #150
San Jose, CA 95119
USA

-Rich Weber
TEL: (408) 578-8888

Panzura Cryptographic Module

Version 4.2
Intel Xeon E5620 (x86) with AES-NI w/ Panzura Cloud Controller 8.0; Intel Xeon E5620 (x86) with AES-NI w/ Panzura Cloud Controller 8.0 on VMware ESX; Intel Xeon E5620 (x86) w/ Panzura Cloud Controller 8.0 on VMware ESX 11/15/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 0 , 512 , 1024 , 504 , 1016 ) ; AAD Lengths tested: ( 0 , 512 , 1024 , 504 , 1016 ) ; IV Lengths Tested: ( 96 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"The Panzura Cyrptographic Module provides validated cryptographic services for multiple Panzura products."

2268 InfoKeyVault Technology Co., Ltd.
9F., No.68, Sec. 4, Roosevelt Rd., Zhongzheng Dist.
Taipei City, n/a 100
Taiwan (R.O.C.)

-C. P. Hsiao
TEL: +886-2-2364-3228#50
FAX: +886-2-2364-3229

IKV_AES

Version 1.0 (Firmware)
ARM Cortex M3 11/15/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )


"IKV_AES is a firmware implementation of AES algorithm defined in FIPS PUB 197 for . It will be used in IKV AES-based products."

2267 Hewlett-Packard Development Company, L.P.
11445 Compaq Center Dr. W
Houston, TX 77070
USA

-Tim McDonough
TEL: (281) 518-7531

-Manny Novoa
TEL: (218) 514-9601

HP BladeSystem Onboard Administrator

Version 3.7 (Firmware)
PowerPC 440EPX processors 11/15/2012 CBC ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 ); CTR ( int only; 128 , 192 , 256 )


"The module provides administrative control of HP BladeSystem c-Class enclosures. The cryptographic functions of the module provide security for administrative access via HTTPS and SSH, and to administrative commands for the BladeSystem enclosure."

2266 N/A N/A N/A 11/15/2012 N/A
2265 Senetas Corporation Ltd.
Level 1, 11 Queens Road
Melbourne, Victoria 3004
Australia

-John Weston
TEL: +61 3 9868 4555
FAX: +61 3 9821 4899

-Julian Fay
TEL: +61 3 9868 4555
FAX: +61 3 9821 4899

CN6100 Ethernet Cryptographic Library

Version 1.3 (Firmware)
Xilinx XC6VLX195T 11/15/2012 ECB ( e only; 128 , 256 ); CTR ( int only; 128 , 256 )


"Senetas Corporation''s CN6100 Ethernet Module is a cryptographic accelerator that contains FIPS 140-2 approved cryptographic algorithms. This module provides encryption functionality for the CN6000 Series Encryptor."

2264 Senetas Corporation Ltd.
Level 1, 11 Queens Road
Melbourne, Victoria 3004
Australia

-John Weston
TEL: +61 3 9868 4555
FAX: +61 3 9821 4899

-Julian Fay
TEL: +61 3 9868 4555
FAX: +61 3 9821 4899

CN6040 Ethernet Cryptographic Library

Version 1.2 (Firmware)
Xilinx XC6VLX130T 11/15/2012 ECB ( e only; 128 , 256 ); CFB128 ( e/d; 128 , 256 ); CTR ( int only; 128 , 256 )


"Senetas Corporation''s CN6040 Ethernet Module is a cryptographic accelerator that contains FIPS 140-2 approved cryptographic algorithms. This module provides encryption functionality for the CN6000 Series Encryptor."

2263 SafeNet, Inc.
4690 Millennium Drive
Belcamp, MD 21017
USA

-Chris Brych
TEL: 613-221-5081
FAX: 613-723-5079

-Laurie Smith
TEL: 613-221-5026
FAX: 613-723-5079

Luna G5 Cryptographic Library

Version 6.2.3 (Firmware)
AMCC PowerPC 440EPx 10/23/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 7 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 7 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 7 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 )

GCM IV Generated: ( Externally ) ; PT Lengths Tested: ( 128 , 1024 ) ; AAD Lengths tested: ( 0 , 128 , 1024 , 32 , 480 ) ; IV Lengths Tested: ( 128 , 128 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Not_Supported AES Val#2262

"The G5 Cryptographic Library provides a broad suite of high-performance cryptographic operations. All cryptographic algorithms are implemented within the module''s firmware or associated co-processor."

10/31/12: Updated implementation information;

2262 SafeNet, Inc.
4690 Millennium Drive
Belcamp, MD 21017
USA

-Jim Dickens
TEL: 443-327-1389
FAX: 443-327-1210

-Chris Brych
TEL: 613-221-5081
FAX: 613-723-5079

SafeXcel 3120 Chip

Part # SF914-35005-002A, v2.8.5
N/A 10/23/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Externally ) ; PT Lengths Tested: ( 128 , 1024 ) ; AAD Lengths tested: ( 0 , 128 , 1024 , 32 , 480 ) ; IV Lengths Tested: ( 128 , 128 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Not_Supported

"The SafeNet SafeXcel-3120 is a highly integrated device designed for modest performance and high security, where power and cost-sensitivity are a priority at the network edge. The embedded ARM processor, via a digital signature, will allow customer-specific application code to execute, enabling the device to implement a complete product solution."

10/31/12: Updated implementation information;

2261 Gemalto
Avenue du Jujubier Z.I Athelia IV
La Ciotat, 13705
France

-Florence Defrance
TEL: +33 442366734
FAX: +33 442365792

-Arnaud Lotigier
TEL: +33 442366074
FAX: +33 442365545

IDCore 30 Cryptographic Library

Version 1.6 (Firmware)
Part # IFX SLE78 (M7892 & M7820) chip family
Infineon SLE78 (M7892 & M7820) chip family. 10/23/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

CMAC (Generation/Verification ) (KS: 128; Block Size(s): ; Msg Len(s) Min: 0 Max: 255 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 192; Block Size(s): ; Msg Len(s) Min: 0 Max: 255 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 256; Block Size(s): ; Msg Len(s) Min: 0 Max: 255 ; Tag Len(s) Min: 16 Max: 16 )


"The IDCore 30 Cryptographic Library v1.6 operates on the Infineon SLE78 (M7892 & M7820) chip family, targeting Javacard 2.2.2, GP 2.1.1 & GP 2.2 Amdt D compliant modules. The library implements TDEA, AES, AES-CMAC, SHA1-224-256-384-512, RSA, RSA CRT, ECDSA, ECC CDH and ANSI X9.31 RNG algorithms."

10/31/12: Updated implementation information;

2260 Aviat Networks
5200 Great America Parkway
Santa Clara, California 95054
USA

-Robert Brown
TEL: 408 567 7242

-Ruth French
TEL: +44 1698 717200

Aviat Networks Payload Encryption ECP2

Version 21-08-09_10-04-02_090828_ECP2 (Firmware)
ModelSim PE 6.5d (Mentor Graphics), with Lattice ispLEVER 8.0sp1 libraries 10/23/2012 ECB ( e only; 128 , 192 , 256 );

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 8 - 8 ) (Payload Length Range: 1 - 32 ( Nonce Length(s): 13 (Tag Length(s): 8


"This cryptographic module performs encryption of data carried over a microwave radio link."

2259 Senetas Corporation Ltd.
Level 1, 11 Queens Road
Melbourne, Victoria 3004
Australia

-John Weston
TEL: +61 3 9868 4555
FAX: +61 3 9821 4899

-Julian Fay
TEL: +61 3 9868 4555
FAX: +61 3 9821 4899

CN6040 Fibre Channel Cryptographic Library

Version 1.2 (Firmware)
Xilinx XC6VLX130T 10/23/2012 CFB128 ( e/d; 256 );

"Senetas Corporation''s CN6040 Fibre Channel Module is a cryptographic accelerator that contains FIPS 140-2 approved cryptographic algorithms. This module provides encryption functionality for the CN6000 Series Encryptor."

2258 Senetas Corporation Ltd.
Level 1, 11 Queens Road
Melbourne, Victoria 3004
Australia

-John Weston
TEL: +61 3 9868 4555
FAX: +61 3 9821 4899

-Julian Fay
TEL: +61 3 9868 4555
FAX: +61 3 9821 4899

CN6000 Series Cryptographic Library

Version 0.98 (Firmware)
Intel ATOM 10/23/2012 CFB128 ( e/d; 128 , 256 );

"Senetas Corporation''s CN6000 Series Crypto Library Module provides FIPS 140-2 approved cryptographic algorithms for the CN6000 Series Encryptor. Based upon OpenSSL the CN6000 Series Crypto Library provides an Application Programming Interface (API) to support security relevant services."

2257 Samsung Electronics Co., Ltd
R4 416, Maetan 3-dong, Yeongtong-gu
Suwon-si, Gyeonggi-do 443-742
Korea

-Ross Choi
TEL: 972-761-7628

-Kyung-Hee Lee
TEL: +82-10-6640-8499

Samsung FIPS Key Management for Mobile Phones

Version KM1.1
ARMv7 Processor rev 0 (v7l) w/ Android Jelly Bean 4.1 10/23/2012 ECB ( e/d; 256 );

"General purpose Key derivation and authentication services library for Linux used by Samsung devices."

2256 Samsung Electronics Co., Ltd
R4 416, Maetan 3-dong, Yeongtong-gu
Suwon-si, Gyeonggi-do 443-742
Korea

-Ross Choi
TEL: 972-761-7628

-Kyung-Hee Lee
TEL: +82-10-6640-8499

Samsung Kernel Cryptographic Module

Version SCK1.4.1.1
ARMv7 Processor rev 0 (v7l) w/ Android Jelly Bean 4.1 10/23/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )


"General purpose Cryptographic services available for Linux kernel used by Samsung devices to provide secured services."

01/17/13: Updated implementation information;

2255 Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

-Global Certification Team

CiscoSSL FIPS Object Module

Version 2.0
Intel Core i5-650 with AES-NI (x64) w/ Microsoft Windows 7; Intel Core i5-2520M with AES-NI (x64) w/ Mac OS X 10.7; Intel Xeon E5504 (x64) w/ FreeBSD 9.0; Intel Xeon E5649 with AES-NI (x64) w/ Linux 2.6; Cavium CN5230 (MIPS) (x64) w/ Linux 2.6; Snapdragon S3 APQ8060 (ARM) w/ Android 4.0; Freescale 8548 (PowerPC) w/ Linux 2.6; Apple A5X (ARM) w/ Apple iOS 5.1; 10/17/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int/ext; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 24 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Partial ; Msg Len(s) Min: 0 Max: 64 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 192; Block Size(s): Partial ; Msg Len(s) Min: 0 Max: 64 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 256; Block Size(s): Partial ; Msg Len(s) Min: 0 Max: 64 ; Tag Len(s) Min: 16 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 0 , 128 , 256 , 136 , 264 ) ; AAD Lengths tested: ( 0 , 128 , 256 , 136 , 264 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported
DRBG: Val# 275

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"The Cisco FIPS Object Module is a software library that provides cryptographic services to a vast array of Cisco's networking and collaboration products."

2253 SafeNet, Inc.
100 Conifer Hill Dr
Suite 505
Danvers,, MA 01923
US

-Chris Brych
TEL: 613-221-5081
FAX: 613-723-5079

-Tim Ober
TEL: 978-539-4804

Storage Secure Cryptographic Library

Version SEP v1.1.17 (Firmware)
Part # Okemo RevA
Tilera Pro64 10/17/2012 ECB ( e/d; 256 ); CBC ( e/d; 256 );

"A 10G/1G NAS security device, providing encryption, key management, and authentication services for file based encryption in flight."

2252 Cisco Systems, Inc.
170 W. Tasman Drive
San Jose, CA 95134
USA

-Global Certification Team

IOS-XE Cryptographic Implementation

Version 1.0 (Firmware)
MPC8572E 10/17/2012 ECB ( e/d; 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 256 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 0 , 128 , 256 , 136 , 264 ) ; AAD Lengths tested: ( 0 , 128 , 136 , 160 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported
RNG: Val# 274

"IOS-XE Firmware cryptographic implementations used within Cisco devices to provide cryptographic functions."

2251 Ultra Electronics 3eTI
9715 Key West Avenue
Rockville, MD 20850
USA

-Harinder Sood
TEL: 301-944-1325
FAX: 301-670-6989

-Chris Guo
TEL: 301-944-1294
FAX: 301-670-6989

3e Technologies International Inc. Sensor Cryptographic Library Algorithm Implementation

Version 1.0 (Firmware)
Energy Micro EFM32 CPU 10/17/2012 ECB ( e only; 128 );

CCM (KS: 128 ) (Assoc. Data Len Range: 22 - 30 ) (Payload Length Range: 1 - 32 ( Nonce Length(s): 13 (Tag Length(s): 8


"Cryptographic algorithms for embedded sensor platform"

2250 N/A N/A N/A 10/17/2012 N/A
2249 RSA Security, the Security Devision of EMC
Level 11, 345 Queen Street
Brisbane, Queensland 4000
Australia

-Stefan Pingel
TEL: +61-730325211
FAX: +61-730325299

-Peter Robinson
TEL: +61-730325253
FAX: +61-730325299

RSA BSAFE® Crypto-J JSAFE and JCE Software Module

Version 6.1
AMD Athlon 64 X2 Dual-Core Processor 3800+ w/ Microsoft Windows 7 (64-bit) with Sun JRE 6.0; Intel T7300 Core 2 Duo w/ Android 2.2 ARM (32-bit) JRE 6.0 10/17/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 0 , 128 , 1024 , 8 , 1016 ) ; AAD Lengths tested: ( 0 , 128 , 1024 , 8 , 1016 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"RSA BSAFE Crypto-J security software is designed to help protect sensitive data as it is stored using strong encryption techniques to provide a persistent level of protection. It supports a wide range of industry standard encryption algorithms offering Java developers the flexibility to choose the option most appropriate to meet their requirements."

2248 RSA, The Security Division of EMC
174 Middlesex Turnpike
Bedford, MA 01730
USA

-Damon Hopley
TEL: 781-515-6355

RSA BSAFE Crypto-C Micro Edition (ME)

Version 3.0.0.17
PowerPC 460 (32-bit) w/ Timesys Linux 2.6.26.8-rt16 10/17/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 0 , 128 , 1024 , 8 , 1016 ) ; AAD Lengths tested: ( 0 , 128 , 1024 , 8 , 1016 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported

"RSA BSAFE® Crypto-C ME software is designed to help protect sensitive data as it is stored using strong encryption techniques to provide a persistent level of protection. The software supports a wide range of industry standard encryption algorithms offering developers the flexibility to choose the appropriate option to meet their requirements."

2247 Western Digital Corporation
3355 Michelson Drive
Suite 100
Irvine, CA 92612
USA

-Dmitry Obukhov
TEL: 408 576-2014

-Agnel Soundron
TEL: 303 834-3234

AES XTS

Version 1.0 (Firmware)
Cadence Incisive Simulator 11.1.2 10/17/2012 ECB ( e/d; 128 , 256 ); CTR ( ext only; 128 , 256 )

CCM (KS: ) (Assoc. Data Len Range: 0 - 0 ) (Payload Length Range: 0 - 0 ( Nonce Length(s): (Tag Length(s):

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"A high performance hardware cryptographic module protecting data on storage devices manufactured by Western Digital."

2246 Brocade Communications Systems, Inc.
130 Holger Way
San Jose, CA 95134
USA

-Chris Marks
TEL: 408-333-0480
FAX: 408-333-8101

-Sunil Chitnis
TEL: 408-333-2444
FAX: 408-333-4887

FIPS 140-2 Certification for MLXe with a MR2 Management Modules

Version Brocade Ironware with NIFIPS05200_0222121200 (Firmware)
Freescale MPC 7448 10/17/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"The Brocade cryptographic library implements crypto operations in software. The Brocade MLX Series is highly optimized for IP Ethernet deployments, providing symmetric scaling and industry-leading wire-speed port capacity without compromising the performance of advanced capabilities such as IPv6, MPLS, and MPLS Virtual Private Networks (VPNs)."

2245 Brocade Communications Systems, Inc.
130 Holger Way
San Jose, CA 95134
USA

-Chris Marks
TEL: 408-333-0480
FAX: 408-333-8101

-Sunil Chitnis
TEL: 408-333-2444
FAX: 408-333-4887

FIPS 140-2 Certification for MLXe with a MR Management Modules

Version Brocade Ironware with NIFIPS05200_0222121200 (Firmware)
Freescale MPC 7447 10/5/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"The Brocade cryptographic library implements crypto operations in software. The Brocade MLX Series is highly optimized for IP Ethernet deployments, providing symmetric scaling and industry-leading wire-speed port capacity without compromising the performance of advanced capabilities such as IPv6, MPLS, and MPLS Virtual Private Networks (VPNs)."

2244 Brocade Communications Systems, Inc.
130 Holger Way
San Jose, CA 95134
USA

-Chris Marks
TEL: 408-333-0480
FAX: 408-333-8101

-Sunil Chitnis
TEL: 408-333-2444
FAX: 408-333-4887

FIPS 140-2 Certification for CER 2000 Series

Version Brocade Ironware with NIFIPS05200_0222121200 (Firmware)
Freescale MPC 8544 10/5/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"The Brocade cryptographic library used in Brocade IP products implements crypto operations in software. Brocade® NetIron® CER 2000 Series routers allow service providers to save space, power, and cooling while extending wire-speed IP and Multi-Protocol Label Switching (MPLS) services to the network edge."

2243 Brocade Communications Systems, Inc.
130 Holger Way
San Jose, CA 95134
USA

-Chris Marks
TEL: 408-333-0480
FAX: 408-333-8101

FIPS for Brocade IP Products

Version FIFIPS07400_1002121000 (Firmware)
Feroceon 88FR131 rev1 (v5b) 10/5/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"The Brocade crypotgraphic library used in Brocade IP products implements crypto operations in software. The Brocade One-strategy helps simplify networking infrastructures through innovative technologies and solutions."

2242 ViaSat, Inc.
6155 El Camino Real
Carlsbad, CA 92009
USA

-Ben Davis
TEL: 760-476-4202
FAX: 760-929-3941

EbemCrypto

Version EbemCrypto Version 9 (Firmware)
IBM PowerPC 10/5/2012 ECB ( e/d; 256 );

"Implements authentication, key negotiation/generation, and controls FPGA implementation of traffic encryption in ViaSat''s Enhanced Bandwidth Efficient Modem (EBEM-500)."

2241 Stonesoft Corporation
Itälahdenkatu 22A
Helsinki, FI-00210
Finland

-Klaus Majewski
TEL: +358-9-476711

-Jorma Levomäki
TEL: +358-9-476711

Stonesoft Cryptographic Library

Version 1.0
Intel X3450 w/ GNU / Linux (Debian) 6.0 10/5/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 128 , 1024 , 64 , 1016 ) ; AAD Lengths tested: ( 0 , 128 , 128 , 64 , 96 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Not_Supported

"Stonesoft Cryptographic Library is a software module that provides cryptographic services for Stonesoft network security products."

2240 Stonesoft Corporation
Itälahdenkatu 22A
Helsinki, FI-00210
Finland

-Klaus Majewski
TEL: +358-9-476711

-Jorma Levomäki
TEL: +358-9-476711

Stonesoft Cryptographic Library

Version 1.0
Intel Atom 425 w/ GNU / Linux (Debian) 6.0 10/5/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 128 , 1024 , 64 , 1016 ) ; AAD Lengths tested: ( 0 , 128 , 128 , 64 , 96 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Not_Supported

"Stonesoft Cryptographic Library is a software module that provides cryptographic services for Stonesoft network security products."

2239 Stonesoft Corporation
Itälahdenkatu 22A
Helsinki, FI-00210
Finland

-Klaus Majewski
TEL: +358-9-476711

-Jorma Levomäki
TEL: +358-9-476711

Stonesoft Cryptographic Kernel Module

Version 1.0
Intel X3450 w/ GNU / Linux (Debian) 6.0 10/5/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 128 , 1024 , 64 , 1016 ) ; AAD Lengths tested: ( 0 , 128 , 128 , 64 , 96 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Not_Supported

"Stonesoft Cryptographic Library is a software module that provides cryptographic services for Stonesoft network security products."

2238 Stonesoft Corporation
Itälahdenkatu 22A
Helsinki, FI-00210
Finland

-Klaus Majewski
TEL: +358-9-476711

-Jorma Levomäki
TEL: +358-9-476711

Stonesoft Cryptographic Kernel Module

Version 1.0
Intel Atom 425 w/ GNU / Linux (Debian) 6.0 10/5/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 128 , 1024 , 64 , 1016 ) ; AAD Lengths tested: ( 0 , 128 , 128 , 64 , 96 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Not_Supported

"Stonesoft Cryptographic Library is a software module that provides cryptographic services for Stonesoft network security products."

2237 Juniper Networks
1194 N. Mathilda Ave,
Sunnyvale, CA 94089
USA

-Sharath Sridhar
TEL: +91 80 30538736
FAX: +91 80 30538824

OpenSSL

Version Junos 12.1R3 (Firmware)
Part # EX-3300
Marvell Feroceon ARM v5 w/ Junos 12.1R3; Freescale e500v2 Power PC w/ Junos 12.1R3 10/5/2012 CBC ( e/d; 128 , 192 , 256 );

"Comprehensive, scalable switching solutions specifically designed to meet the needs of both enterprises and service providers. All of our switches - modular and fixed platforms - run on one common operating system- Junos."

2236 Juniper Networks
1194 N. Mathilda Ave,
Sunnyvale, CA 94089
USA

-Sharath Sridhar
TEL: +91 80 30538736
FAX: +91 80 30538824

Kernel

Version Junos 12.1R3 (Firmware)
Part # EX-3300
Marvell Feroceon ARM v5 w/ Junos 12.1R3; Freescale e500v2 Power PC w/ Junos 12.1R3 10/5/2012 CBC ( e/d; 128 );

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 16 Max: 2^16 ; Tag Len(s) Min: 12 Max: 16 )


"Comprehensive, scalable switching solutions specifically designed to meet the needs of both enterprises and service providers. All of our switches - modular and fixed platforms - run on one common operating system- Junos."

2235 Apricorn, Inc.
12191 Kirham Rd
Poway, CA 92064
USA

-Mike McCandless
TEL: 858-513-2010
FAX: 858-513-4419

Apricorn FIPS Module 140-2

Version Apricorn _205_FIPS (Firmware)
Part # APR3607
APR3607 10/5/2012 ECB ( e/d; 256 );

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"USB for 2.0/3.0 to SATA bridge ASIC"

2234 OpenSSL Software Foundation, Inc.
1829 Mount Ephraim Road
Adamstown, MD 27101
USA

-Steve Marquess
TEL: 877-673-6775

OpenSSL FIPS Object Module

Version 2.0.2
PowerPC-e500 w/ NetBSD 5.1; Intel Xeon 5500 (x86-64) w/ NetBSD 5.1; Intel Xeon E3-1220v2 (x86) w/ RHEL 6 32-bit under vSphere; Intel Xeon E3-1220v2 (x86) w/ Windows 2008 32-bit under vSphere; Intel Xeon E3-1220v2 (x86) w/ RHEL 6 64-bit under vSphere; Intel Xeon E3-1220v2 (x86) w/ Windows 2008 64-bit under vSphere; Intel Core i5-2430M (x86) w/ Windows 7 64-bit with AES-NI; TI DM3730 (ARMv7) w/ Android 4.1; TI DM3730 (ARMv7) with NEON w/ Android 4.1; Nvidia Tegra 3 (ARMv7) w/ Android 4.2; Nvidia Tegra 3 (ARMv7) with NEON w/ Android 4.2; ARM Cortex A8 (ARMv7) with NEON w/ Apple iOS 5.0; Qualcomm MSM8X60 (ARMv7) with NEON w/ VMware Horizon Mobile 1.3 under VMware; Intel Core i7-3615QM w/ Apple OS X 10.7 10/5/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verfication ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 512 , 1024 , 504 , 1016 ) ; AAD Lengths tested: ( 512 , 1024 , 504 , 1016 ) ; IV Lengths Tested: ( 96 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Not_Supported

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"The OpenSSL FIPS Object Module is a full featured general purpose cryptographic library that is distributed in source code form under an open source license. It can be dowloaded from www.openssl.org/source/."

12/31/12: Added new tested information;
02/06/13: Update implementation information;
02/21/13: Added new tested information;
03/11/13: Updated implementation information;

2233 Juniper Networks, Inc
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Balachandra Shanabhag
TEL: +91-80-41904260

OpenSSL

Version JUNOS-FIPS 12.1R3 (Firmware)
Freescale Power PC; Intel(R) Pentium(R) M; Intel Pentium III 10/5/2012 CBC ( e/d; 128 , 192 , 256 );

"Comprehensive, scalable and secure routing solutions specifically designed to meet the needs of both enterprises and service providers. All of our routers - core, Multiservice edge and edge ethernet - run on one common operating system- Junos."

2232 Juniper Networks, Inc
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Sundar Ram T S B
TEL: +91 8041904205

Kernel

Version JUNOS-FIPS 12.1R3 (Firmware)
Intel Pentium III; Intel Pentium M; Intel Pentium III 10/5/2012 CBC ( e/d; 128 );

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 16 Max: 2^16 ; Tag Len(s) Min: 12 Max: 16 )


"Comprehensive, scalable and secure routing solutions specifically designed to meet the needs of both enterprises and service providers. All of our routers - core, Multiservice edge and edge ethernet - run on one common operating system- Junos."

2231 McAfee, Inc.
2821 Mission College Blvd.
Santa Clara, CA 95054
USA

-Andy Nissen
TEL: 651-628-5385
FAX: 651-628-2706

-James Reardon
TEL: 651-628-5346
FAX: 651-628-2706

McAfee SIEM 64-bit Cryptographic Engine

Version 1.0
VMware ESXi 5.0 on Intel Xeon w/ Nitro OS 9.1 10/5/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"The McAfee SIEM 64-bit Cryptographic Engine v1.0 provides the necessary services to support the cryptographic features and functions of McAfee''s line of SIEM products including Nitro IPS."

2230 McAfee, Inc.
2821 Mission College Blvd.
Santa Clara, CA 95054
USA

-Andy Nissen
TEL: 651-628-5385
FAX: 651-628-2706

-James Reardon
TEL: 651-628-5346
FAX: 651-628-2706

McAfee SIEM 64-bit Cryptographic Engine

Version 1.0
Intel Xeon w/ Nitro OS 9.1 10/5/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"The McAfee SIEM 64-bit Cryptographic Engine v1.0 provides the necessary services to support the cryptographic features and functions of McAfee''s line of SIEM products including Nitro IPS."

2229 McAfee, Inc.
2821 Mission College Blvd.
Santa Clara, CA 95054
USA

-Andy Nissen
TEL: 651-628-5385
FAX: 651-628-2706

-James Reardon
TEL: 651-628-5346
FAX: 651-628-2706

McAfee SIEM 32-bit Cryptographic Engine

Version 1.0
Intel Xeon w/ Nitro OS 9.1 10/5/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"The McAfee SIEM 32-bit Cryptographic Engine v1.0 provides the necessary services to support the cryptographic features and functions of McAfee''s line of SIEM products including Nitro IPS."

2228 McAfee, Inc.
2821 Mission College Blvd.
Santa Clara, CA 95054
USA

-Andy Nissen
TEL: 651-628-5385
FAX: 651-628-2706

-James Reardon
TEL: 651-628-5346
FAX: 651-628-2706

McAfee SIEM 32-bit Cryptographic Engine

Version 1.0
VMware ESXi 5.0 on Intel Xeon w/ Nitro OS 9.1 10/5/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"The McAfee SIEM 32-bit Cryptographic Engine v1.0 provides the necessary services to support the cryptographic features and functions of McAfee''s line of SIEM products including Nitro IPS."

2227 Intel Corporation
2200 Mission College Blvd.
Santa Clara, California 95054
USA

-Joel Schuetze
TEL: 503-523-6026

-Min Cao
TEL: 086-021-61165462

QuickAssist Technology Software Library for Cryptography on the Intel® Communications Chipset 89xx Series

Version 1.0.0
Part # Intel® Communication Chipset 8920
Intel® Communications Chipset 89xx Series w/ Intel® Celeron® Processor 725C w/ Fedora 16 10/5/2012

CCM (KS: 128 ) (Assoc. Data Len Range: 0 - 6 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )
AES Val#2223

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 1 Max: 16 )
AES Val#2223

GCM IV Generated: ( Externally ) ; PT Lengths Tested: ( 0 , 640 , 1024 , 48 , 904 ) ; AAD Lengths tested: ( 0 , 256 , 768 , 40 , 800 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported AES Val#2223
DRBG: Val# 262

"Intel® Celeron® Processor 725C with Intel® Communications Chipset 89xx Series using Intel® QuickAssist Technology. The accelerator features are invoked using the Intel® QuickAssist Technology Cryptographic API which provides application scalability and portability across platforms."

10/10/12: Updated implementation information;

2226 TecSec Services Incorporated
12950 Worldgate Drive Suite 100
Herndon, VA 20170
USA

-Ron Parsons
TEL: 571- 299-4127
FAX: 571-299-4101

-Roger Butler
TEL: 571-331-6130

AES-CMAC-CKM-OS755

Version Revno: 291 (Firmware)
Inside Secure AT90SC Part Family 10/5/2012

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 200 ; Tag Len(s) Min: 1 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 200 ; Tag Len(s) Min: 1 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 200 ; Tag Len(s) Min: 1 Max: 16 )
AES Val#1654   AES Val#1655


"TecSec Armored Card Attribute Container cryptographic service library."

10/11/12: Updated implementation information;

2225 Vocera Communications, Inc.
525 Race Street
San Jose, CA 95126
USA

-Thirumalai Bhattar
TEL: 408-882-5841

-Arun Mirchandani
TEL: 408-880-5100

Wireless Communications Cryptographic Library

Version 2.0
Texas Instruments OMAP5912 w/ Vocera Embedded Linux v1.1 10/5/2012 CBC ( e/d; 128 );

"The Wireless Communications Cryptographic Library provides cryptographic services to Vocera''s Communications Badge product. The Vocera Communications Badge is a wearable device that enables secure two-way voice conversation without the need to remember a phone number or use a handset."

2224 Vocera Communications, Inc.
525 Race Street
San Jose, CA 95126
USA

-Thirumalai Bhattar
TEL: 408-882-5841

-Arun Mirchandani
TEL: 408-880-5100

Vocera Communications Badge Security Engine

Version 2.0 (Firmware)
Marvell 88W8688 10/5/2012 ECB ( e/d; 128 );

CCM (KS: 128 ) (Assoc. Data Len Range: 15 - 30 ) (Payload Length Range: 1 - 32 ( Nonce Length(s): 13 (Tag Length(s): 8


"The Vocera Communications Badge Security Engine provides cryptographic services to Vocera''s Communications Badge product. The Vocera Communications Badge is a small, wearable, wireless device that provides a voice-controlled user interface to the Vocera Communications System. The Badge enables immediate, hands-free conversations among users."

2223 Intel Corporation
2200 Mission College Blvd.
Santa Clara, California 95054
USA

-Joel Schuetze
TEL: 503-523-6026

Intel® QuickAssist Technology with Intel® Communications Chipset 89xx

Part # Intel® Communication Chipset 8920
N/A 10/5/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )


"Intel® Celeron® Processor 725C with Intel® Communications Chipset 89xx Series using Intel® QuickAssist Technology. The accelerator features are invoked using the Intel® QuickAssist Technology Cryptographic API which provides application scalability and portability across platforms."

2222 Juniper Networks, Inc
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Kavitha Sivagnanam
TEL: (408) 936-2795

SSH-IPSEC

Version Junos-FIPS 10.4R11 (Firmware)
Part # RE-S-2000
Intel(R) Pentium(R) M processor 2.00GHz (1995.01-MHz 686-class CPU) 9/28/2012 CBC ( e/d; 128 , 192 , 256 );

"Juniper Networks MX Series 3D Universal Edge Routers with the Multiservices DPC provides dedicated high-performance processing for flows and sessions, and integrated advanced security capabilities that protect the network infrastructure as well as user data."

2221 Juniper Networks, Inc
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Kavitha Sivagnanam
TEL: (408) 936-2795

OpenSSL

Version Junos-FIPS 10.4R11 (Firmware)
Part # RE-S-2000
Intel(R) Pentium(R) M processor 2.00GHz (1995.01-MHz 686-class CPU) 9/28/2012 CBC ( e/d; 128 , 192 , 256 );

"Juniper Networks MX Series 3D Universal Edge Routers with the Multiservices DPC provides dedicated high-performance processing for flows and sessions, and integrated advanced security capabilities that protect the network infrastructure as well as user data."

2220 Doremi Cinema LLC
1020 Chestnut Street
Burbank, CA 91506
USA

-Jean-Philippe Viollet
TEL: 818-562-1101
FAX: 818-562-1109

-Camille Rizko
TEL: 818-562-1101
FAX: 818-562-1109

AES-128 CBC FPGA

Version 1.1 (Firmware)
FPGA 9/28/2012 CBC ( d only; 128 );

"An implementation of AES-128 decryption in CBC mode used inside Doremi''s Media Blocks."

2219 Bomgar Corporation
578 Highland Colony Parkway
Paragon Centre, Suite 300
Ridgeland, MS 39157
USA

-Main Office
TEL: 601-519-0123
FAX: 601-510-9080

-Victor Wolff
TEL: 703-483-5515
FAX: 601-510-9080

Bomgar Cryptographic Engine

Version 1.2 (Firmware)
Intel® Xeon 9/28/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"The Bomgar Cryptographic Engine provides the cryptographic functionality required by the Bomgar B200, B300, and B400 Remote Support appliances. These appliances allow support professionals to connect securely to remote clients and co-workers via the Internet, providing complete desktop access for remote support."

2218 Juniper Networks, Inc
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Kavitha Sivagnanam
TEL: (408) 936-2795

kernel

Version Junos-FIPS 10.4R11 (Firmware)
Part # RE-S-2000
Intel(R) Pentium(R) M processor 2.00GHz (1995.01-MHz 686-class CPU) 9/26/2012 CBC ( e/d; 128 );

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 16 Max: 2^16 ; Tag Len(s) Min: 12 Max: 16 )


"Juniper Networks MX Series 3D Universal Edge Routers with the Multiservices DPC provides dedicated high-performance processing for flows and sessions, and integrated advanced security capabilities that protect the network infrastructure as well as user data."

2217 Curtiss-Wright Controls Defense Solutions
333 Palladium Drive
Kanata, ON K2V 1A6
CANADA

-Aaron Frank
TEL: 613 599-9199 X5242

-Johan A Koppernaes
TEL: 613 599-9199 X5817

CWCDS Cryptographic Library

Version 2.0 (Firmware)
Freescale MPC8572E 9/26/2012 CBC ( e/d; 128 );

"CWCDS Cryptographic Library provides crypto services to support IPSec/VPN and enhanced Ethernet network security and includes IKE, SSH, and TLS, using various cryptographic algorithms."

2216 Microsoft Corporation
One Microsoft Way
Redmond, WA 98052-6399
USA

-Tim Myers
TEL: 800-Microsoft
FAX: (none)

Windows 8, Windows RT, Windows Server 2012, Surface Windows RT, and Windows Phone 8 Cryptography Next Generation (CNG) Implementations

Version 6.2.9200
Qualcomm Snapdragon S4 w/ Windows RT (ARMv7 Thumb-2); NVIDIA Tegra T3 Quad-Core w/ Windows RT (ARMv7 Thumb-2); Intel Core i7 with AES-NI w/ Windows 8 Enterprise (x64); Intel Pentium D w/ Windows 8 Enterprise (x64); AMD Athlon 64 X2 Dual Core w/ Windows 8 Enterprise (x86); Intel Pentium D w/ Windows Server 2012 (x64); Intel Core i7 with AES-NI w/ Windows Server 2012 (x64); Qualcomm Snapdragon S4 w/ Windows Phone 8 (ARMv7 Thumb-2) 9/26/2012

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )
AES Val#2197

CMAC (Generation/Verification ) (KS: 128; Block Size(s): ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 192; Block Size(s): ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 256; Block Size(s): ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 )
AES Val#2197

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 )
IV Generated: ( Externally ) ; PT Lengths Tested: ( 0 , 128 , 1024 , 8 , 1016 ) ; AAD Lengths tested: ( 0 , 128 , 1024 , 8 , 1016 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported

"The Microsoft Windows Cryptographic Primitives Library is a general purpose, software-based, cryptographic module which can be dynamically linked into applications by developers to permit the use of FIPS 140-2 Level 1 compliant cryptography."

11/29/12: Added new tested information;
01/16/13: Updated and added new tested implementation information;

2215 Lantronix, Inc.
167 Technology Drive
Irvine, CA 92618
USA

-Matthew Davison
TEL: 949-450-9839
FAX: 949-453-7152

-Vishal Kakkad
TEL: 949-453-7155
FAX: 949-453-7152

Lantronix Nuevo AES Library

Version 7.5.0.0 (Firmware)
Freescale Coldfire 9/26/2012 CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 );

"AES cryptographic support for Lantronix Linux based device servers running on the Coldfire processor."

2214 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenburg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on RHEL zSeries-64 for 64 bits

Version 8.2.1.0
IBM zSeries z196 64-bit with CPACF hardware support w/ Red Hat Enterprise Linux Server 5 9/26/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

GCM IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 0 , 128 , 256 , 8 , 248 ) ; AAD Lengths tested: ( 0 , 128 , 256 , 248 ) ; IV Lengths Tested: ( 8 , 1024 ) ; OtherIVLen_Supported
GMAC_Supported
DRBG: Val# 248

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

03/21/13: Updated implementation information;

2213 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on RHEL zSeries-64 for 32 bits

Version 8.2.1.0
IBM zSeries z196 64-bit with CPACF hardware support w/ Red Hat Enterprise Linux Server 5 9/26/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

GCM IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 0 , 128 , 256 , 8 , 248 ) ; AAD Lengths tested: ( 0 , 128 , 256 , 248 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported
DRBG: Val# 247

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

03/21/13: Updated implementation information;

2212 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on Windows 64-bit x86-64 for 64 bits

Version 8.2.1.0
Intel Core i7-2600 w/ Microsoft Windows Server 2008 64-bit 9/13/2012

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 0 , 128 , 256 , 8 , 248 ) ; AAD Lengths tested: ( 0 , 128 , 256 , 248 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported AES Val#2170
DRBG: Val# 252

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

2211 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on Solaris UltraSparc-64 for 32 bits

Version 8.2.1.0
Sun UltraSPARC T1 64-bit w/ Sun Solaris 10 9/13/2012

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 0 , 128 , 256 , 8 , 248 ) ; AAD Lengths tested: ( 0 , 128 , 256 , 248 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported AES Val#2166
DRBG: Val# 249

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

2210 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on Windows 64-bit x86-64 for 32 bits

Version 8.2.1.0
Intel Core i7-2600 w/ Microsoft Windows Server 2008 64-bit 9/13/2012

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 0 , 128 , 256 , 8 , 248 ) ; AAD Lengths tested: ( 0 , 128 , 256 , 248 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported AES Val#2179
DRBG: Val# 253

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

2209 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on Windows 32-bit x86-64 for 32 bits

Version 8.2.1.0
AMD Opteron X86_64 w/ Microsoft Windows Server 2008 32-bit 9/13/2012

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 0 , 128 , 256 , 8 , 248 ) ; AAD Lengths tested: ( 0 , 128 , 256 , 248 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported AES Val#2169
DRBG: Val# 251

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

2208 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on Solaris UltraSparc-64 for 64 bits

Version 8.2.1.0
Sun UltraSPARC T1 64-bit w/ Sun Solaris 10 9/13/2012

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 0 , 128 , 256 , 8 , 248 ) ; AAD Lengths tested: ( 0 , 128 , 256 , 248 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported AES Val#2167
DRBG: Val# 250

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

2207 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on RHEL zSeries-64 for 64 bits

Version 8.2.1.0
IBM zSeries z196 64-bit w/ Red Hat Enterprise Linux Server 5 9/13/2012

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 0 , 128 , 256 , 8 , 248 ) ; AAD Lengths tested: ( 0 , 128 , 256 , 248 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported AES Val#2165
DRBG: Val# 248

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

2206 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on RHEL zSeries-64 for 32 bits

Version 8.2.1.0
IBM zSeries z196 64-bit w/ Red Hat Enterprise Linux Server 5 9/13/2012

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 0 , 128 , 256 , 8 , 248 ) ; AAD Lengths tested: ( 0 , 128 , 256 , 248 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported AES Val#2162
DRBG: Val# 247

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

2205 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on RHEL x86-64 for 64 bits

Version 8.2.1.0
Intel Core i7-2600 w/ Red Hat Enterprise Linux Server 5 9/13/2012

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 0 , 128 , 256 , 8 , 248 ) ; AAD Lengths tested: ( 0 , 128 , 256 , 248 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported AES Val#2161
DRBG: Val# 246

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

2204 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on RHEL x86-64 for 32 bits

Version 8.2.1.0
Intel Core i7-2600 w/ Red Hat Enterprise Linux Server 5 9/13/2012

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 0 , 128 , 256 , 8 , 248 ) ; AAD Lengths tested: ( 0 , 128 , 256 , 248 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported AES Val#2160
DRBG: Val# 245

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

2203 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on RHEL PPC64 for 64 bits

Version 8.2.1.0
IBM PowerPC 970 w/ Red Hat Enterprise Linux Server 5 9/13/2012

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 0 , 128 , 256 , 8 , 248 ) ; AAD Lengths tested: ( 0 , 128 , 256 , 248 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported AES Val#2159
DRBG: Val# 244

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

2202 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on RHEL PPC64 for 32 bits

Version 8.2.1.0
IBM PowerPC 970 w/ Red Hat Enterprise Linux Server 5 9/13/2012

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 0 , 128 , 256 , 8 , 248 ) ; AAD Lengths tested: ( 0 , 128 , 256 , 248 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported AES Val#2158
DRBG: Val# 243

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

2201 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on RHEL 32-bit x86-64 for 32 bits

Version 8.2.1.0
AMD Opteron X86_64 w/ Red Hat Enterprise Linux Server 5 9/13/2012

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 0 , 128 , 256 , 8 , 248 ) ; AAD Lengths tested: ( 0 , 128 , 256 , 248 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported AES Val#2157
DRBG: Val# 242

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

2200 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on AIX PowerPC-64 for 32 bits

Version 8.2.1.0
IBM PowerPC 5 64-bit w/ IBM AIX 6.1 9/13/2012

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 0 , 128 , 256 , 8 , 248 ) ; AAD Lengths tested: ( 0 , 128 , 256 , 248 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported AES Val#2155
DRBG: Val# 240

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

2199 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on AIX PowerPC-64 for 64 bits

Version 8.2.1.0
IBM PowerPC 5 64-bit w/ IBM AIX 6.1 9/13/2012

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 0 , 128 , 256 , 8 , 248 ) ; AAD Lengths tested: ( 0 , 128 , 256 , 248 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported AES Val#2156
DRBG: Val# 241

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

2198 Microsoft Corporation
One Microsoft Way
Redmond, WA 98052-6399
USA

-Tim Myers
TEL: 800-Microsoft
FAX: (none)

Windows 8, Windows RT Windows Server 2012, Surface Windows RT, and Windows Phone 8 Bitlocker® Cryptographic Implementations

Version 6.2.9200
Qualcomm Snapdragon S4 w/ Windows RT (ARMv7 Thumb-2); NVIDIA Tegra T3 Quad-Core w/ Windows RT (ARMv7 Thumb-2); Intel Core i7 with AES-NI w/ Windows 8 Enterprise (x64); Intel Pentium D w/ Windows 8 Enterprise (x64); AMD Athlon 64 X2 Dual Core w/ Windows 8 Enterprise (x86); Intel Core i7 with AES-NI w/ Windows Server 2012 (x64); Intel Pentium D w/ Windows Server 2012 (x64); Qualcomm Snapdragon S4 w/ Windows Phone 8 (ARMv7 Thumb-2) 9/13/2012

CCM (KS: 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 12 (Tag Length(s): 16 )
AES Val#2196


"Algorithm implementation providing AES CCM and HMAC support on top of the Windows 8 and Windows Server 2012 Symmetric Algorithms Implementation. This provides these services to applications including the Windows Boot Manager and BitLocker®."

11/28/12: Added new tested information;
01/16/13: Updated and added new tested information;

2197 Microsoft Corporation
One Microsoft Way
Redmond, WA 98052-6399
USA

-Tim Myers
TEL: 800-Microsoft
FAX: (none)

Windows 8, Windows RT, Windows Server 2012, Surface Windows RT, Surface Windows 8 Pro, and Windows Phone 8 Next Generation Symmetric Cryptographic Algorithms Implementations (SYMCRYPT)

Version 6.2.9200
Qualcomm Snapdragon S4 w/ Windows RT (ARMv7 Thumb-2); NVIDIA Tegra T3 Quad-Core w/ Windows RT (ARMv7 Thumb-2); Intel Core i7 with AES-NI w/ Windows 8 Enterprise (x64); Intel Pentium D w/ Windows 8 Enterprise (x64); AMD Athlon 64 X2 Dual Core w/ Windows 8 Enterprise (x86); Intel Core i7 with AES-NI w/ Windows Server 2012 (x64); Intel Pentium D w/ Windows Server 2012 (x64); Qualcomm Snapdragon S4 w/ Windows Phone 8 (ARMv7 Thumb-2); Intel x64 Processor w/ Surface Windows 8 Pro (x64) 9/13/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )


"The Next Generation Cryptographic algorithms provide enhanced support for AES, Triple-DES, SHS, HMAC, and AES DRBG. All implementations are packaged into a library, and it is used by Microsoft and other third-party applications."

11/28/12: Added new tested information;
01/16/13: Updated and added new tested implementation information;
04/25/13: Updated and added new tested implementation information;

2196 Microsoft Corporation
One Microsoft Way
Redmond, WA 98052-6399
USA

-Tim Myers
TEL: 800-Microsoft

Windows 8, Windows RT, Windows Server 2012, Surface Windows RT, Surface Windows 8 Pro, and Windows Phone 8 Symmetric Algorithm Implementations (RSA32)

Version 6.2.9200
Qualcomm Snapdragon S4 w/ Windows RT (ARMv7 Thumb-2); NVIDIA Tegra T3 Quad-Core w/ Windows RT (ARMv7 Thumb-2); Intel Core i7 with AES-NI w/ Windows 8 Enterprise (x64); Intel Pentium D w/ Windows 8 Enterprise (x64); AMD Athlon 64 X2 Dual Core w/ Windows 8 Enterprise (x86); Intel Core i7 with AES-NI w/ Windows Server 2012 (x64); Intel Pentium D w/ Windows Server 2012 (x64); Qualcomm Snapdragon S4 w/ Windows Phone 8 (ARMv7 Thumb-2); Intel x64 Processor w/ Surface Windows 8 Pro (x64); Intel x64 Processor w/ Surface Windows 8 Pro (x64) 9/13/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 );

"The Symmetric Algorithm Implementation is used by various Microsoft libraries to provide the basic symmetric algorithms AES, SHA, and Triple-DES."

11/28/12: Added new tested information;
01/16/13: Updated and added new tested implementation information;
04/25/13: Updated implementation information and added new tested information;

2195 Sicore Technologies
510 Grumman Road West
Suite 207
Bethpage, NY 11714
USA

-Godfrey Vassallo
TEL: 516-390-5255

-Chris Colicino
TEL: 516-390-5253

MFF AES Algorithm

Version 1.2 (Firmware)
Part # PPC460EXr
PPC460EXr 9/13/2012 ECB ( e/d; 256 );

"The MFF AES Algorithm is used for the encryption of data stored in flash and data sent to the card."

2194 Western Digital Corporation
3355 Michelson Drive
Suite 100
Irvine, CA 92612
USA

-Dmitry Obukhov
TEL: 408 576-2014

-Agnel Soundron
TEL: 303 834-3234

AES CTR

Version 1.0 (Firmware)
Cadence Incisive Simulator 11.1.2 9/13/2012 ECB ( e only; 128 , 256 ); CTR ( ext only; 128 , 256 )


"A high performance hardware cryptographic module protecting data on storage devices manufactured by Western Digital."

2193 Synology Inc.
3F-3, No. 106, Chang-An W. Rd.
Taipei, Taiwan 10351
Taiwan

-KH Chen
TEL: 02-25521814#827
FAX: 02-25521824

Synology DiskStation AES Encryption Module for QorIQ

Version 1.0
QorIQ processor w/ Embedded Linux 9/13/2012 CBC ( e/d; 128 , 192 , 256 );

"Synology DiskStation Manager provides share-level AES 256-bit encryption to block all unauthorized access attempts to your shared folders. Its encryption key security is up to enterprise standard. The encrypted shared folder is usually unmounted and inaccessible, until it is mounted by entering the encryption key."

2192 Cocoon Data Holdings Limited.
Level 4
152-156 Clarence St
Sydney, NSW 2000
Australia

-Simon Wild
TEL: +61 2 8412 8200
FAX: +61 2 8412 8202

-Stephen Thompson
TEL: +61 2 8412 8200
FAX: +61 2 8412 8202

Cocoon Data Secure Objects C++ Cryptographic Module Version 1.8

Version 1.8
2 X 2.4 GHz Quad-Core Intel Xeon w/ OS X; 2 X 2.4 GHz Quad-Core Intel Xeon w/ Windows XP Professional (x86); 2 X 2.4 GHz Quad-Core Intel Xeon w/ Windows XP Professional (x64); 2 X 2.4 GHz Quad-Core Intel Xeon w/ Ubuntu 10.04.02 (x86); 2 X 2.4 GHz Quad-Core Intel Xeon w/ Ubuntu 10.04.02 (x64); Core 2 Duo T667 2.2 GHz w/ Windows XP 32-bit; Service Pack 3 w/ MSVC2012; Core2 Duo T6670 2.2 GHz w/ Windows XP 32-bit; Service Pack 3 w/ MSVC2010; Core2 Duo T6670 2.2GHz w/ Windows 7 32-bit w/ MSVC2010 redistributable; Core i5 M450 2.4GHz w/ Windows 7 64-bit w/ MSVC2010 redistributable; Core2 Duo T6670 2.2 GHz w/ Windows 7 32-bit w/ MSVC2012 redistributable; Core i5 M450 2.4GHz w/ Windows 764-bit w/ MSVC2012 redistributable; Core i7 3615QM 2.3GHz w/ Ubuntu 12.04 LTS 32-bit on VMWare Fus. 4.1.3 on OSX; Core i7-3615QM 2.3Ghz w/ Ubuntu 12.04 LTS 64-bit on VMWare Fus. 4.1.3 on OSX; Dual CPU Xeon 5160 3GHz w/ Ubuntu 12.04 LTS 64-bit; Intel CPU Xeon 5110 1.6GHz w/ Ubuntu 12.04 LTS 32-bit; Core i7-3615QM 2.3GHz w/ RHEL 6.3 64-bit on VMWare Fus. 4.1.3 on OSX 10.8.2; Dual CPU Xeon 5160 3GHz w/ Redhat Enterprise Linux Server 6.3 64-bit; Intel CPU Xeon 5110 1.6GHz w/ RHEL 6.3 32- bit on VMWare Fusion 4.1.3 on OSX 10.8.2; Dual CPU Xeon 5110 1.5GHz w/ Redhat Enterprise Linux Server 6.3 32-bit; 2.3GHz Intel Core i7 w/ Mac OSX 10.8.2 8/30/2012 CBC ( e/d; 128 , 192 , 256 );

"The Cocoon Data Secure Objects C++ Cryptographic Module Version 1.8 has been implemented as part of the Cocoon Data Secure Objects solution, an encryption-based access control system for protecting the confidentiality and integrity of electronic files."

03/27/13: Added new tested information and updated implementation information;

2191 Ultra Electronics DNE Technologies
50 Barnes Park North
Wallingford, CT 06492
USA

-Eric Ferguson
TEL: 203 697 6533

Ultra Electronics DNE Technologies iQ1000

Version 3.2 (Firmware)
Freescale MPC8439EA 8/27/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; )


"The Ultra Electronics DNE Technologies PacketAssure iQ1000 is a rugged, one 19" rack unit Service Delivery Management (SDM) appliance."

09/07/12: Added new tested information;

2190 Hewlett-Packard
Longdown Avenue
Stoke Gifford, Bristol BS34 8QZ
United Kingdom

-Laura Loredo
TEL: +44 117 312 9341

OpenSSL

Version OpenSSL 1.0.1c/FIPS 2.0/CN22745 (Firmware)
ARM966E 8/27/2012 ECB ( e/d; 128 , 256 ); CBC ( e/d; 128 , 256 );

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Externally ) ; PT Lengths Tested: ( 0 , 128 , 1024 , 8 , 1016 ) ; AAD Lengths tested: ( 0 , 128 , 1024 , 8 , 1016 ) ; IV Lengths Tested: ( 96 , 1024 ) ; OtherIVLen_Supported
GMAC_Supported

"The Hewlett Packard LTO-6 Tape Drive is a multi-chip standalone module composed of hardware and firmware components, providing cryptographic services to a host."

09/07/12: Updated implementation information;

2189 Hewlett-Packard
Longdown Avenue
Stoke Gifford, Bristol BS34 8QZ
United Kingdom

-Laura Loredo
TEL: +44 117 312 9341

AES GCM for User Data and Key Wrapping

Version 1.0 (Firmware)
Part # POPOVICH10
ARM966E 8/27/2012 ECB ( e only; 256 ); CTR ( int only; 256 )

GCM (KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 128 , 1024 ) ; AAD Lengths tested: ( 128 , 512 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Not_Supported
DRBG: Val# 256

"The Hewlett Packard LTO-6 Tape Drive is a multi-chip standalone module composed of hardware and firmware components, providing cryptographic services to a host."

2187 Osterhout Design Group
153 Townsend Street, Ste. 570
San Francisco, CA 94107
USA

-Paul Matz
TEL: 415-644-4036
FAX: 415-644-4039

-Patrick Carroll
TEL: 415-644-4006
FAX: 415-644-4039

ODG HW Cryptographic Toolkit

Part # TI OMAP4 4460
N/A 8/27/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )


"Security solutions for the OMAP4 Android Mobile markets. This product includes trusted boot, mandatory user authentication, data-at-rest, and data-in-transit encryption."

2186 Osterhout Design Group
153 Townsend Street, Ste. 570
San Francisco, CA 94107
USA

-Paul Matz
TEL: 415-644-4036
FAX: 415-644-4039

-Patrick Carroll
TEL: 415-644-4006
FAX: 415-644-4039

ODG Cryptographic Toolkit

Version 1.0
TI OMAP4 4460 w/ Android Gingerbread 2.3.5 with kernel 2.6.35 8/27/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 ) (KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 )
PT Lengths Tested: ( 0 , 128 , 1024 , 160 , 480 ) ; AAD Lengths tested: ( 0 , 128 , 1024 , 160 , 480 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported

"Security solutions for the OMAP4 Android Mobile markets. This product includes trusted boot, mandatory user authentication, data-at-rest, and data-in-transit encryption."

09/07/12: Added new tested information;

2185 Thales Communications, Inc.
22605 Gateway Center Drive
Clarksburg, MD 20871
USA

-Darlo Concepcion
TEL: 240-864-7866
FAX: 240-864-7698

-Jim Kent
TEL: 240-864-7681
FAX: 240-864-7698

Software Liberty Crypto Module

Version 01.00.02.0013
Marvell PXA320 w/ Green Hills INTEGRITY 5.0.10 8/22/2012 ECB ( e/d; 256 ); CBC ( e/d; 256 ); OFB ( e/d; 256 );

"The Software Liberty Cryptographic Module is a software component that is used to provide cryptographic services in Thales radio communications equipment."

2184 Linear Technology (Dust Networks)
1630 McCarthy Blvd.
Milpitas, CA 95035-7417
USA

-Yuri Zats
TEL: 408-432-1900
FAX: 408-434-0507

Eterna AES Module

Part # Eterna v1.0
N/A 8/22/2012 ECB ( e only; 128 );

CCM (KS: 128 ) (Assoc. Data Len Range: 1 - 32 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 13 (Tag Length(s): 4 6 8 10 12 14 16 )


"AES hardware acceleration module used in Eterna platform"

2183 Hewlett-Packard TippingPoint
14231 Tandem Boulevard
Austin, TX 78728
USA

-Dinesh Vakharia
TEL: 512-432-2628

-Freddie Jimenez Jr.
TEL: 512-681-8305

TippingPoint Intrusion Prevention System (IPS) NX-Platform

Version 3.5 (Firmware)
Intel Jasper Forest Quad-Core 8/22/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"The TippingPoint IPS NX-Platform operates in-line in the network, blocking malicious and unwanted traffic, while allowing good traffic to pass unimpeded. The IPS provides cryptographic services to protect the management of the device."

2182 Check Point Software Technologies
5 Ha'solelim Street
Tel Aviv, 67897
Israel

-Malcolm Levy
TEL: +972-37534561

Check Point Crypto Core

Version 2.0
Intel® Core i7 @ 2.40 GHz with AES-NI w/ Pre-Boot EFI (via rEFIt on Mac OS X 10.7) 64-bits; Intel® Core i5-2400 @ 3.10 GHz with AES-NI w/ Microsoft Windows 7 User Space 32-bits; Intel® Core i5-2400 @ 3.10 GHz with AES-NI w/ Microsoft Windows 7 Kernel Space 32-bits; Intel® Core i5-2400 @ 3.10 GHz with AES-NI w/ Microsoft Windows 7 User Space 64-bits; Intel® Core i5-2400 @ 3.10 GHz with AES-NI w/ Microsoft Windows 7 Kernel Space 64-bits; Intel® Core i7 @ 2.40 GHz with AES-NI w/ Mac OS X 10.7 User Space 32-bits; Intel® Core i7 @ 2.40 GHz with AES-NI w/ Mac OS X 10.7 Kernel Space 32-bits; Intel® Core i7 @ 2.40 GHz with AES-NI w/ Mac OS X 10.7 User Space 64-bits; Intel® Core i7 @ 2.40 GHz with AES-NI w/ Mac OS X 10.7 Kernel Space 64-bits; Intel® Core i7 @ 2.40 GHz w/ Pre-Boot EFI (via rEFIt on Mac OS X 10.7) 64-bits; Intel(R) Core 2 Duo CPU E6550 @ 2.33GHz w/ Microsoft Windows 7 User Space 32-bits; Intel(R) Core 2 Duo CPU E6550 @ 2.33GHz w/ Microsoft Windows 7 Kernel Space 32-bits; Intel® Core 2 Duo Processor E6600 @ 2.40GHz w/ Microsoft Windows 7 User Space 64-bits; Intel® Core 2 Duo Processor E6600 @ 2.40GHz w/ Microsoft Windows 7 Kernel Space 64-bits; Intel® Core i7 @ 2.40 GHz w/ Mac OS X 10.7 User Space 32-bits; Intel® Core i7 @ 2.40 GHz w/ Mac OS X 10.7 Kernel Space 32-bits; Intel® Core i7 @ 2.40 GHz w/ Mac OS X 10.7 User Space 64-bits; Intel® Core i7 @ 2.40 GHz w/ Mac OS X 10.7 Kernel Space 64-bits 8/22/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 256 )

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"Check Point Crypto Core 2.X is a 140-2 Level 1 cryptographic module for Windows platforms, Check Point Pre-Boot Environment and Mac OS X. The module provides cryptographic services accessible in pre-boot mode, kernel mode and user mode on the respective platforms through implementation of platform specific binaries"

2181 Check Point Software Technologies
5 Ha'solelim Street
Tel Aviv, 67897
Israel

-Malcolm Levy
TEL: +972-37534561

Check Point Crypto Core 16-bit Preboot

Version 2.0
Intel CoreT2 Duo CPU T9800 2.93 GHz w/ Pre-Boot environment (Microsoft Windows 7 NTVDM, Version 5.1.2600.5512) 16-bit; Intel Core i7 2.4 GHz with AES-NI w/ Pre-Boot EFI (via rEFIt on Mac OS X 10.7) 16-bit 8/22/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"Check Point Crypto Core 2.X is a 140-2 Level 1 cryptographic module for Windows platforms, Check Point Pre-Boot Environment and Mac OS X. The module provides cryptographic services accessible in pre-boot mode, kernel mode and user mode on the respective platforms through implementation of platform specific binaries"

2180 WatchGuard Technologies, Inc.
505 Fifth Avenue South, Suite 500
Seattle, Washington 98104
USA

-Nick Gottuso
TEL: 206 613-6609
FAX: 206 613-0888

XTM Cryptographic Module

Version 11.5.5 (Firmware)
Intel E5300; Intel E3400 8/13/2012 CBC ( e/d; 128 , 192 , 256 );

"WatchGuard XTM security appliances are designed to protect organizations from various security and productivity threats, including viruses, network attacks, intrusion attempts, Trojan horses, harmful or counterproductive URLs, spam, and more, while also providing secure Virtual Private Network (VPN) connections among workplaces and remote users."

2179 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on Windows 64-bit x86-64 for 32 bits

Version 8.2.1.0
Intel Core i7-2600 w/ Microsoft Windows Server 2008 64-bit 8/13/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 0 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported
DRBG: Val# 253

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

09/26/12: Updated implementation information;

2176 McAfee, Inc.
2821 Mission College Blvd.
Santa Clara, CA 95054
USA

-Chela Diaz de Villegas
TEL: 651-628-1642
FAX: 305-269-1019

McAfee Vulnerability Manager Cryptographic Module

Version 1.0
Intel Xeon w/ Microsoft 2008 R2 (64-bit); Intel Celeron w/ Windows 2008 R2 (64-bit) 8/13/2012 CBC ( e/d; 128 , 192 , 256 );

"This Cryptographic algorithm module provides cryptographic functionality for McAfee''s Vulnerability Manager."

2175 Integral Memory PLC.
Unit 6 Iron Bridge Close
Iron Bridge Business Park
Off Great Central Way
London, Middelsex NW10 0UF
United Kingdom

-Patrick Warley
TEL: +44 (0)20 8451 8700
FAX: +44 (0)20 8459 6301

-Samik Halai
TEL: +44 (0)20 8451 8704
FAX: +44 (0)20 8459 6301

Integral AES 256 Bit Crypto SSD

Part # PS3108 or PS3051
N/A 8/13/2012 CBC ( e/d; 256 );

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"The Integral AES 256 bit Crypto SSD is removable storage devices which encrypts documents transferred onto them. The Integral 256 bit Crypto SSD comes in 4 GB, 8 GB, 16 GB, 32 GB 64 GB 128 GB, 256 GB, 512 GB and 1 TB versions."

2174 Thales e-Security
Meadow View House
Crendon Industrial Estate
Long Crendon
Aylesbury, Buckinghamshire HP18 9EQ
U.K.

-Tim Fox
TEL: +44 (0) 1844 201800
FAX: +44 (0) 1844 208550

TSPP-CMAC

Version 1.0 (Firmware)
Part # SEC 2.1
Freescale MPC8548 Family 8/13/2012

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 0 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 0 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 0 Max: 16 )
AES Val#2173

"Thales e-Security implements this algorithm for applications running on its Thales Secure Processing Platform (TSPP) providing secure cryptographic resources to products in the Thales e-Security portfolio, including the payShield 9000 HSM family."

2173 Thales e-Security
Meadow View House
Crendon Industrial Estate
Long Crendon
Aylesbury, Buckinghamshire HP18 9EQ
U.K.

-Tim Fox
TEL: +44 (0) 1844 201800
FAX: +44 (0) 1844 208550

TSPP-AES

Version 1.0 (Firmware)
Part # SEC 2.1
Freescale MPC8548 Family 8/13/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"Thales e-Security implements this algorithm for applications running on its Thales Secure Processing Platform (TSPP) providing secure cryptographic resources to products in the Thales e-Security portfolio, including the payShield 9000 HSM family."

2172 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on Windows 64-bit x86-64 for 64 bits

Version 8.2.1.0
Intel Core i7-2600 with AES-NI w/ Microsoft Windows Server 2008 64-bit 8/13/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

09/26/12: Updated implementation information;

2171 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on Windows 64-bit x86-64 for 32 bits

Version 8.2.1.0
Intel Core i7-2600 with AES-NI w/ Microsoft Windows Server 2008 64-bit 8/13/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

09/26/12: Updated implementation information;

2170 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on Windows 64-bit x86-64 for 64 bits

Version 8.2.1.0
Intel Core i7-2600 w/ Microsoft Windows Server 2008 64-bit 8/13/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 0 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported
DRBG: Val# 252

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

09/26/12: Updated implementation information;

2169 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on Windows 32-bit x86-64 for 32 bits

Version 8.2.1.0
AMD Opteron X86_64 w/ Microsoft Windows Server 2008 32-bit 8/13/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 0 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported
DRBG: Val# 251

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

09/26/12: Updated implementation information;

2168 VIA Labs, Inc.
7F., No. 529-1, Zhongzhung Rd, Xindian Dist.
New Taipei City, 23148
Taiwan

-Maggie Chen
TEL: +886-2-22181838#6610
FAX: +886-2-22188924

VLI_AES

Version 1.0 (Firmware)
Cadence NC-Verilog simulator 8/13/2012 ECB ( e/d; 128 , 256 );

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"VLI_AES is a synthesizable IP core which implements encryption and decryption functions of AES defined in FIPS 197. It will be used in VLI AES-based products."

2167 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on Solaris UltraSparc-64 for 64 bits

Version 8.2.1.0
Sun UltraSPARC T1 64-bit w/ Sun Solaris 10 8/8/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 0 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported
DRBG: Val# 250

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

09/26/12: Updated implementation information;

2166 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on Solaris UltraSparc-64 for 32 bits

Version 8.2.1.0
Sun UltraSPARC T1 64-bit w/ Sun Solaris 10 8/8/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 0 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported
DRBG: Val# 249

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

09/26/12: Updated implementation information;

2165 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on RHEL zSeries-64 for 64 bits

Version 8.2.1.0
IBM zSeries z196 64-bit w/ Red Hat Enterprise Linux Server 5 8/8/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 0 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported
DRBG: Val# 248

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

09/26/12: Updated implementation information;

2164 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on RHEL x86-64 for 64 bits

Version 8.2.1.0
Intel Core i7-2600 with AES-NI w/ Red Hat Enterprise Linux Server 5 8/8/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

09/26/12: Updated implementation information;

2163 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on RHEL x86-64 for 32 bits

Version 8.2.1.0
Intel Core i7-2600 with AES-NI w/ Red Hat Enterprise Linux Server 5 8/8/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

09/26/12: Updated implementation information;

2162 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on RHEL zSeries-64 for 32 bits

Version 8.2.1.0
IBM zSeries z196 64-bit w/ Red Hat Enterprise Linux Server 5 8/8/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 0 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported
DRBG: Val# 247

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

09/26/12: Updated implementation information;

2161 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on RHEL x86-64 for 64 bits

Version 8.2.1.0
Intel Core i7-2600 w/ Red Hat Enterprise Linux Server 5 8/8/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 0 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported
DRBG: Val# 246

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

09/26/12: Updated implementation information;

2160 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on RHEL x86-64 for 32 bits

Version 8.2.1.0
Intel Core i7-2600 w/ Red Hat Enterprise Linux Server 5 8/8/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 0 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported
DRBG: Val# 245

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

09/26/12: Updated implementation information;

2159 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on RHEL PPC64 for 64 bits

Version 8.2.1.0
IBM PowerPC 970 w/ Red Hat Enterprise Linux Server 5 8/8/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 0 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported
DRBG: Val# 244

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

09/26/12: Updated implementation information;

2158 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on RHEL PPC64 for 32 bits

Version 8.2.1.0
IBM PowerPC 970 w/ Red Hat Enterprise Linux Server 5 8/8/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 0 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported
DRBG: Val# 243

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

09/26/12: Updated implementation information;

2157 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on RHEL 32-bit x86-64 for 32 bits

Version 8.2.1.0
AMD Opteron X86_64 w/ Red Hat Enterprise Linux Server 5 8/8/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 0 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported
DRBG: Val# 242

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

09/26/12: Updated implementation information;

2156 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on AIX PowerPC-64 for 64 bits

Version 8.2.1.0
IBM PowerPC 5 64-bit w/ IBM AIX 6.1 8/8/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 0 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported
DRBG: Val# 241

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

09/26/12: Updated implementation information;

2155 IBM® Corporation
Seabank Centre
12 - 14 Marine Parade
Southport, QLD 4215
Australia

-Peter Waltenberg
TEL: +61 7 5552 4016
FAX: +61 7 5571 0420

ICC Algorithmic Core on AIX PowerPC-64 for 32 bits

Version 8.2.1.0
IBM PowerPC 5 64-bit w/ IBM AIX 6.1 8/8/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 0 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported
DRBG: Val# 240

"ICC is a C language implementation of cryptographic functions based on the cryptographic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certified cryptographic provider."

09/26/12: Updated implementation information;

2154 Broadcom Corporation
5300 California Avenue
Irvine, CA 92617
USA

-Matt Bolig
TEL: (408) 454-3349

-Whay Lee
TEL: (408) 454-3156

Broadcom MACSEC Verilog IP

Version 1.28.0 (Firmware)
Chronologic VCS (Verilog simulator) Version F-2011.12 8/8/2012 ECB ( e only; 128 );

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 24 , 1024 ) ; AAD Lengths tested: ( 160 , 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Not_Supported

"Four channel, 10 Gigabit Ethernet PHY with MACsec."

2153 Solera Networks Inc.
10713 South Jordan Gateway, Suite 100
South Jordan, UT 84095
USA

-Davin Baker
TEL: (443) 910-0538

-Scott Wolfe
TEL: (801) 545-4037
FAX: (801) 545-4040

Solera OpenSSL Cryptographic Module

Version 1.0
8-core Intel Xeon E5 w/ Solera OS 6.5.0 with VMware ESX 5.0; dual Intel Xeon w/ Solera Operating Environment v6.5.0 8/8/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"The Solera Cryptographic module provides cryptographic services for Solera DeepSee Software, a security intelligence and analytics solution that creates a complete record of network traffic. The module is a shared library that links to Solera DeepSee components and is executed on a GPC or on a supported VM hypervisor."

08/10/12: Updated implementation information;

2152 NXP Semiconductors
Mikronweg 1
Gratkorn, 8101
Austria

-Markus Moesenbacher
TEL: +43 3124 299 652
FAX: +43 3124 299 270

NXP AES X CMAC Component

Version AES_CMAC_JCOP_242_R2 (Firmware)
Part # NXP P5CD081 Family
NXP P5CD081 Family 8/8/2012

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 )
AES Val#2151

"Single Chip Module with NXP Secure Smart Card Controller of P5CD081 Family and NXP Java Card and GP OS JCOP 2.4.2 R2. P5CD081 Family means: P5CD145V0A, P5CC145V0A, P5CN145V0A, P5CD128V0A, P5CC128V0A, P5CD081V1A, P5CC081V1A, P5CN081V1A, P5CD051V1A, P5CD041V1A, P5CD021V1A, P5CD016 V1A, P5CD145V0B, P5CC145V0B, P5CD081V1D."

2151 NXP Semiconductors
Mikronweg 1
Gratkorn, 8101
Austria

-Markus Moesenbacher
TEL: +43 3124 299 652
FAX: +43 3124 299 270

NXP AES X Component

Version AES_JCOP_242_R2 (Firmware)
Part # NXP P5CD081 Family
NXP P5CD081 Family 8/8/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"Single Chip Module with NXP Secure Smart Card Controller of P5CD081 Family and NXP Java Card and GP OS JCOP 2.4.2 R2. P5CD081 Family means: P5CD145V0A, P5CC145V0A, P5CN145V0A, P5CD128V0A, P5CC128V0A, P5CD081V1A, P5CC081V1A, P5CN081V1A, P5CD051V1A, P5CD041V1A, P5CD021V1A, P5CD016 V1A, P5CD145V0B, P5CC145V0B, P5CD081V1D."

2150 Brocade Communications Systems, Inc.
130 Holger Way
San Jose, CA 95134
USA

-Bipin Agarwal
TEL: 408-333-4830
FAX: 408-333-4885

FIPS for Brocade IP Products

Version FIFIPS07300_0314121830 (Firmware)
Freescale MPC 8544E 8/8/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"The Brocade cryptographic library used in Brocade IP products implements crypto operations in software. The Brocade One strategy helps simplify networking infrastructures through innovative technologies and solutions."

2149 GDC Technology (USA) LLC
1016 West Magnolia Boulevard
Burbank, California 91506
USA

-Pranay Kuma
TEL: (852) 2507 9565
FAX: (852) 2579 1131

-Peter Lin
TEL: (852) 2507 9557
FAX: (852) 2579 1131

Crypto Library

Version FIPS-v2_0 (Firmware)
Freescale QorIQ 8/8/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"A digital cinema standalone integrated media block that is compliant with DCI specifications and SMPTE digital cinema standards. The supported features include JPEG2000 decoding, AES decryption, key management, and logging."

2148 AJA Video Systems, Inc.
180 Litton Drive
Grass Valley, CA 95945
USA

-Ujval Lodha
TEL: 530-274-2048

AES DECRYPTOR

Version 1.3.1.4 (Firmware)
Xilinx V6 FPGA 8/8/2012 CBC ( d only; 128 );

"4K Image Media Block for digital cinema applications."

2147 Hewlett Packard Development Company, L.P.
4209 Technology Drive
Fremont, CA 94538
USA

-Kurt Heberlein
TEL: (510) 668 - 9441
FAX: (510) 413 - 5998

HP 3PAR InFormOS

Version 3.1.1.MU1+P16
Intel Quad Core 2.8GHz w/ GNU / Linux (Debian) 5.0.2 8/8/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )


"InFormOS is built on a hardened base of Debian Linux with proprietary extensions, and utilizes standard, vendor supplied, versions of libcrypto (OpenSSL), and libgcrypt (GNUTLS) for crypto operations. The InFormOS CLI client distribution contains the identical version of OpenSSL as found in InFormOS. The version is 0.9.8o."

2146 Motorola Solutions, Inc.
1301 East Algonquin Road
Schaumburg, IL 60196
USA

-Kirk Mathews
TEL: 847-576-4101

Motorola Solutions µMace AES256

Version R00.00.02_AES_256 (Firmware)
Part # AT58Z04
Motorola µMace AT58Z04 8/3/2012 OFB ( e/d; 256 ); CTR ( ext only; 256 )

GCM (KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Externally ) ; PT Lengths Tested: ( 8 , 1024 ) ; AAD Lengths tested: ( 8 , 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Not_Supported

"The µMace cryptographic processor is used in security modules embedded in Motorola Solutions security products."

2145 Hewlett Packard Development Company, L.P.
4209 Technology Drive
Fremont, CA 94538
USA

-Kurt Heberlein
TEL: (510) 668 - 9441
FAX: (510) 413 - 5998

HP 3PAR InFormIMC

Version 4.2.1
Intel Core i7 CPU 2.67 GHz w/ Windows 7 Enterprise 8/3/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )


"InForm IMC is a java based client for administration of the InFormOS. It utilizes a bundled JVM including the Sun Java Cryptography Extension (SunJCE) at version 1.6 from JDK1.6.0_33."

2144 Samsung Electronics Co., Ltd
R4 416, Maetan 3-dong, Yeongtong-gu
Suwon-si, Gyeonggi-do 443-742
Korea

-Ross Choi
TEL: 972-761-7628

-Kyung-Hee Lee
TEL: +82-10-6640-8499

Samsung Kernel Cryptographic Module

Version SKC1.4.1
MSM8260 1.2 GHz (51,7,1,04d,0) w/ Android Ice cream sandwich 4.0 8/3/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )


"General purpose Cryptographic services available for Linux kernel used by Samsung devices to provide secured services."

09/21/12: Updated implementation information;
01/17/13: Updated implementation information;

2143 Samsung Electronics Co., Ltd
R4 416, Maetan 3-dong, Yeongtong-gu
Suwon-si, Gyeonggi-do 443-742
Korea

-Ross Choi
TEL: 972-761-7628

-Kyung-Hee Lee
TEL: +82-10-6640-8499

Samsung FIPS Key Management for Mobile Phones

Version KM1.1
MSM8960 1.5 GHz (51,7,1,04d,0) w/ Android Ice cream sandwich 4.0 8/3/2012 ECB ( e/d; 128 , 192 , 256 );

"General purpose Key derivation and authentication services library for Linux used by Samsung devices."

09/21/12: Updated implementation information;
01/17/13: Updated implementation information;

2142 Samsung Electronics Co., Ltd
R4 416, Maetan 3-dong, Yeongtong-gu
Suwon-si, Gyeonggi-do 443-742
Korea

-Ross Choi
TEL: 972-761-7628

-Kyung-Hee Lee
TEL: +82-10-6640-8499

Samsung FIPS Key Management for Mobile Phones

Version KM1.1
MSM8260 1.2 GHz (51,7,1,04d,0) w/ Android Ice cream sandwich 4.0 8/3/2012 ECB ( e/d; 128 , 192 , 256 );

"General purpose Key derivation and authentication services library for Linux used by Samsung devices."

09/21/12: Updated implementation information;
01/17/13: Updated implementation information;

2141 Samsung Electronics Co., Ltd
R4 416, Maetan 3-dong, Yeongtong-gu
Suwon-si, Gyeonggi-do 443-742
Korea

-Ross Choi
TEL: 972-761-7628

-Kyung-Hee Lee
TEL: +82-10-6640-8499

Samsung Kernel Cryptographic Module

Version SKC1.4.1
MSM8260 1.2 GHz (51,7,1,04d,0) w/ Android Ice cream sandwich 4.0 8/3/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )


"General purpose Cryptographic services available for Linux kernel used by Samsung devices to provide secured services."

09/21/12: Updated implementation information;
01/17/13: Updated implementation information;

2140 Juniper Networks, Inc
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Sharath Sridhar
TEL: +91-80-30538736

OpenSSL

Version Juno 12.1R2 (Firmware)
Freescale PowerPC; ARMv5 8/3/2012 CBC ( e/d; 128 , 192 , 256 );

"Comprehensive, scalable switching solutions specifically designed to meet the needs of both enterprises and service providers. All of our switches - modular and fixed platforms - run on one common operating system- Junos."

2139 Juniper Networks, Inc
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Sharath Sridhar
TEL: +91-80-30538736

Kernel

Version Juno 12.1R2 (Firmware)
Freescale PowerPC; ARMv5 8/3/2012 CBC ( e/d; 128 );

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 16 Max: 2^16 ; Tag Len(s) Min: 12 Max: 16 )


"Comprehensive, scalable switching solutions specifically designed to meet the needs of both enterprises and service providers. All of our switches - modular and fixed platforms - run on one common operating system- Junos."

2138 Broad Reach Engineering
2141 E. Broadway Rd. #211
Tempe, AZ 85282
USA

-Allan Bjerke
TEL: 480.377.0400 x72

-Scott Ratay
TEL: 480.377.0400 x26

WorldView-3 Ancillary Data Formatter (ADF) FPGA

Part # FAID10791000-12-0
N/A 8/3/2012 CFB128 ( e only; 256 );

"The WorldView-3 Ancillary Data Formatter FPGA provides AES encryption services."

2137 Microsemi Corporation
3601 E University Drive
Phoenix, AZ 85034
USA

-Bob Lazaravich
TEL: (602) 437-1520

-Rudy Sterbenz
TEL: (602) 437-1520

XTS-AES-256-CIPHER.1.0

Version 1.0 (Firmware)
ModelSim Altera Starter Edition 10.0c Revision 2011.09 8/3/2012 CBC ( e/d; 256 );

XTS( ) KS: XTS_256( (e/d) (f) ))

"The Microsemi XTS-AES-256-CIPHER.1.0 implements XTS-AES-256. Microsemi uses this algorithm implementation in its line of secure solid state storage products. The XTS-AES-256 implementation runs in an Altera FPGA."

2136 Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

-Global Certification Team

IOS Common Cryptographic Module (IC2M)-Extended

Version Rel 1 (Firmware)
PMC RM5261A MIPS 350MHz; Intel Woodcrest 2.13GHz; Power-PC 405 250MHz 7/31/2012 CBC ( e/d; 128 , 192 , 256 );

"IOS Common Cryptographic Module (IC2M)-Extended firmware version Rel 1 covers Rel 1(1.0.0), Rel 1(1.0.1) and Rel 1(1.0.2)."

12/07/12: Updated implementation information;
04/23/12: Updated implementation information;

2135 Digital Defence Ltd
400 Pavilion Drive
Northampton Business Park
Northampton, NN4 7PA
United Kingdom

-Ben Earl
TEL: 01604 521108
FAX: 01604 521001

-Martin O'Brien
TEL: 01604 521108
FAX: 01604 521001

Digital Defence's AES Encryption Library

Version 1.0.0
ARM1136EJS MSM7627 (as part of test platform, i.e. Motorola MC65 mobile handset) w/ Windows Mobile 6.5 Professional 7/30/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"Digital Defence''s AES Encryption Library is used in Digital Defence''s product Secure Mobile and will be included in other security products developed by Digital Defence. In the concrete case of Secure Mobile, the AES encryption library is used to encrypt stored data."

2134 Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

-Global Certification Team

IOS Common Cryptographic Module (IC2M)

Version Rel 1 (Firmware)
PMC RM5261A MIPS 350MHz; Intel Woodcrest 2.13GHz; Power-PC 405 250MHz 7/30/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 32 ; Tag Len(s) Min: 1 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 512 ) ; AAD Lengths tested: ( 160 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported

"IOS Common Cryptographic Module (IC2M) firmaware version Rel 1 covers Rel 1(1.0.0), Rel 1(1.0.1) and Rel 1(1.0.2)"

12/07/12: Updated implementation information;
04/23/13: Updated implementation information;

2133 Marvell Semiconductor, Inc.
5488 Marvell Lane
Santa Clara, CA 95054
USA

-Minda Zhang
TEL: (508) 573-3255
FAX: (508) 573-3311

Armada PXA-2128 HW

Part # Armada PXA-2128
N/A 7/30/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"Armada PXA2128 is an application processor SoC (http://www.marvell.com/application-processors/armada/pxa2128/). It has a dedicated security hardware module, known as WTM, that runs secure firmware kernel to perform device trusted boot, access control, authentication, key management, DRM, disk encryption, and FIPS certified cryptographic operations."

2132 Juniper Networks, Inc
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Balachandra Shanabhag
TEL: 91-80-41904260

OpenSSL

Version Junos-FIPS 12.1R2 (Firmware)
Intel(R) Pentium(R) M processor 2.00GHz; Intel Pentium III 7/18/2012 CBC ( e/d; 128 , 192 , 256 );

"Comprehensive, scalable and secure routing solutions specifically designed to meet the needs of both enterprises and service providers. All of our routers - core, Multiservice edge and edge ethernet - run on one common operating system- Junos."

2131 CREDANT Technologies, Inc.
15303 Dallas Parkway
Suite 1420
Addison, TX 75001
USA

-Chris Burchett
TEL: 972-458-5407
FAX: 972-458-5454

-Brad Conte
TEL: 972-458-5400
FAX: 972-458-5454

Credant Cryptographic Kernel (User Mode)

Version 1.8
Intel Core 2 Duo w/ Windows 7 Enterprise x64 Edition (64-bit); Intel Core 2 Duo w/ Windows 7 Enterprise (32-bit); Intel Core i7 w/ Mac OS X Lion 10.7.3 (64-bit); Intel Core i7 w/ Mac OS X Lion 10.7.3 (32-bit); Intel Core 2 Duo w/ Ubuntu Linux 11.04 (64-bit); Intel Core 2 Duo w/ Ubuntu Linux 11.04 (32-bit) 7/18/2012 ECB ( e/d; 128 , 256 ); CBC ( e/d; 128 , 256 ); CTR ( int only; 128 , 256 )

CCM (KS: 128 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"CREDANT CmgCryptoLib is a software cryptographic library that implements Triple-DES, AES, DRBG SP 800-90, SHA-2, SHA-1, HMAC-SHA2, and HMAC-SHA-1 algorithms for CREDANT Mobile Guardian (CMG) products."

08/01/12: Added new tested information;

2130 CREDANT Technologies, Inc.
15303 Dallas Parkway
Suite 1420
Addison, TX 75001
USA

-Chris Burchett
TEL: 972-458-5407
FAX: 972-458-5454

-Brad Conte
TEL: 972-458-5400
FAX: 972-458-5454

Credant Cryptographic Kernel (Kernel Mode)

Version 1.8
Intel Core 2 Duo w/ Windows 7 Enterprise x64 Edition (64-bit); Intel Core 2 Duo w/ Windows 7 Enterprise (32-bit); Intel Core i7 w/ Mac OS X Lion 10.7.3 (64-bit); Intel Core i7 w/ Mac OS X Lion 10.7.3 (32-bit) 7/18/2012 ECB ( e/d; 128 , 256 ); CBC ( e/d; 128 , 256 ); CTR ( int only; 128 , 256 )

CCM (KS: 128 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"CREDANT CmgCryptoLib is a software cryptographic library that implements Triple-DES, AES, DRBG SP 800-90, SHA-2, SHA-1, HMAC-SHA2, and HMAC-SHA-1 algorithms for CREDANT Mobile Guardian (CMG) products."

08/01/12: Added new tested information;

2129 MikroM GmbH
Dovestr. 1
Berlin, BE 10587
Germany

-Michael Hagemeister
TEL: +49-30-398839-0
FAX: +49-30-398839-29

-Martin Zielke
TEL: +49-30-398839-0
FAX: +49-30-398839-29

MikroM MVC200-DC Security Manager Firmware

Version 10.0.48.17701 (Firmware)
Part # 2224 Rev. D; 2224 Rev. C
built-in Atmel AT91SAM7 RISC Processor 7/18/2012 ECB ( e only; 128 ); CBC ( e/d; 128 );

"Firmware running on the security CPU of MVC200-DC cryptographic module, which is a multi-chip hardware decoder targeting the professional application Digital Cinema"

2128 MikroM GmbH
Dovestr. 1
Berlin, BE 10587
Germany

-Michael Hagemeister
TEL: +49-30-398839-0
FAX: +49-30-398839-29

-Martin Zielke
TEL: +49-30-398839-0
FAX: +49-30-398839-29

MikroM MVC200-DC FPGA Firmware

Version 10.0.119.17676 (Firmware)
Part # 2224 Rev. D; 2224 Rev. C; 2224 Rev. E
built-in XC3S4000-5FGG676C Xilinx Spartan-3 series FPGA 7/18/2012 ECB ( e only; 128 ); CBC ( d only; 128 );

"Firmware running on the main FPGA of MVC200-DC cryptographic module, which is a multi-chip hardware decoder targeting the professional application Digital Cinema"

2127 MikroM GmbH
Dovestr. 1
Berlin, BE 10587
Germany

-Michael Hagemeister
TEL: +49-30-398839-0
FAX: +49-30-398839-29

-Martin Zielke
TEL: +49-30-398839-0
FAX: +49-30-398839-29

MikroM MVC200-DC Bootloader Firmware

Version 2.1.0.17662 (Firmware)
Part # 2224 Rev. D; 2224 Rev. C; 2224 Rev. E
built-in MSP8510-1000G CPU by PMC-Sierra 7/18/2012 CBC ( d only; 128 );

"Bootloader firmware running on the main CPU of MVC200-DC cryptographic module, which is a multi-chip hardware decoder targeting the professional application Digital Cinema"

2126 SafeLogic Inc
530 Lytton Ave, Ste 200
Palo Alto, CA 94301
USA

-SafeLogic Inside Sales

CryptoComply Mobile Engine for iOS

Version 2.1
A5X w/ iOS 5.1; A5X w/ iOS 6 7/18/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 0 , 128 , 1024 , 120 , 1016 ) ; AAD Lengths tested: ( 0 , 128 , 1024 , 120 , 1016 ) ; IV Lengths Tested: ( 104 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported AES Val#2126
DRBG: Val# 234

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"CryptoComply | Mobile is a standards-based “Drop-in Compliance” solution for mobile devices. The module features robust algorithm support, including Suite B algorithm compliance. CryptoComply offloads functions for secure key management, data integrity, data at rest encryption, and secure communications."

08/27/12: Added new tested information;
10/31/12: Added new tested information;
11/14/12: Updated vendor information;

2125 SafeLogic Inc
530 Lytton Ave, Ste 200
Palo Alto, CA 94301
USA

-SafeLogic Inside Sales

CryptoComply Mobile Engine for Android

Version 2.1
ARM Cortex-A9 w/ Android Version 4.0 7/18/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 0 , 128 , 1024 , 120 , 1016 ) ; AAD Lengths tested: ( 0 , 128 , 1024 , 120 , 1016 ) ; IV Lengths Tested: ( 104 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported
DRBG: Val# 233

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"CryptoComply | Mobile is a standards-based “Drop-in Compliance” solution for mobile devices. The module features robust algorithm support, including Suite B algorithm compliance. CryptoComply offloads functions for secure key management, data integrity, data at rest encryption, and secure communications."

08/27/12: Added new tested information;
11/14/12: Updated vendor information;

2124 Samsung Electronics Co., Ltd
R4 416, Maetan 3-dong, Yeongtong-gu
Suwon-si, Gyeonggi-do 443-742
Korea

-Ross Choi
TEL: 972-761-7628

-Kyung-Hee Lee
TEL: +82-10-6640-8499

Samsung FIPS BC for mobile phone and tablet

Version SBC1.45_1.1
MSM8960 1GHz (51,7,1,4D,0) w/ Android Ice cream sandwichc 4.0 7/18/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"General purpose cryptographic services available for Java-based Bouncycastle used by Samsung devices to provide secure cryptography."

09/21/12: Updated implementation information;
02/26/13: Updated implementation information;

2123 Juniper Networks, Inc
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Sundar Ram T S B
TEL: 91 8041904205

Kernel

Version Junos-FIPS 12.1R2 (Firmware)
Intel Pentium III; Intel(R) Pentium(R) M processor 2.00GHz 7/18/2012 CBC ( e/d; 128 );

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 16 Max: 2^16 ; Tag Len(s) Min: 12 Max: 16 )


"Comprehensive, scalable and secure routing solutions specifically designed to meet the needs of both enterprises and service providers. All of our routers - core, Multiservice edge and edge ethernet - run on one common operating system- Junos."

2122 Thales E-Security Ltd
Jupiter House
Station Road
Cambridge, CB5 8JJ
UK

-Thales Certification Team
TEL: +44 1223 723600
FAX: +44 1223 723601

-Thales Sales
TEL: 888 744 4976

nShield Algorithm Library

Version 2.51.10 (Firmware)
Freescale PowerPC 7/13/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( int only; 256 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 96 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported
DRBG: Val# 232

"The nShield algorithm library provides cryptographic functionality for Thales''s nShield Hardware Security Modules"

12/17/12: Updated implementation information;

2121 NXP Semiconductors
Mikronweg 1
Gratkorn, 8101
Austria

-Markus Moesenbacher
TEL: +43 3124 299 652
FAX: +43 3124 299 270

NXP AES CMAC Component

Version AES_CMAC_JCOP_242_R2 (Firmware)
Part # NXP P5CD081 Family
NXP P5CD081 Family 7/13/2012

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 )
AES Val#2120

"Single Chip Module with NXP Secure Smart Card Controller of P5CD081 Family and NXP Java Card and GP OS JCOP 2.4.2 R2. P5CD081 Family means: P5CD145V0A, P5CC145V0A, P5CN145V0A, P5CD128V0A, P5CC128V0A, P5CD081V1A, P5CC081V1A, P5CN081V1A, P5CD051V1A, P5CD041V1A, P5CD021V1A, P5CD016 V1A, P5CD145V0B, P5CC145V0B, P5CD081V1D."

2120 NXP Semiconductors
Mikronweg 1
Gratkorn, 8101
Austria

-Markus Moesenbacher
TEL: +43 3124 299 652
FAX: +43 3124 299 270

NXP AES Component

Version AES_JCOP_242_R2 (Firmware)
Part # NXP P5CD081 Family
NXP P5CD081 Family 7/13/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"Single Chip Module with NXP Secure Smart Card Controller of P5CD081 Family and NXP Java Card and GP OS JCOP 2.4.2 R2. P5CD081 Family means: P5CD145V0A, P5CC145V0A, P5CN145V0A, P5CD128V0A, P5CC128V0A, P5CD081V1A, P5CC081V1A, P5CN081V1A, P5CD051V1A, P5CD041V1A, P5CD021V1A, P5CD016 V1A, P5CD145V0B, P5CC145V0B, P5CD081V1D."

2119 Inside Secure
41 Parc Club du Golf
13856, Aix-en-Provence n/a
France

-Ewart Gray
TEL: +44 (0) 1355 803727
FAX: +44 (0) 1355 242743

-David Cunningham
TEL: +44 (0) 1355 803554
FAX: +44 (0) 1355 242743

VaultIC441/421/405

Version 1.0.1 (Firmware)
Part # VaultIC441M/VaultIC421M/VaultIC405M
Inside Secure VaultIC441M/VaultIC421M/VaultIC405M 7/5/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 256 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 192; Block Size(s): ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 256; Block Size(s): ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 )


"VaultIC (R) are security modules designed to secure applications such as anti-cloning, physical access control, personal access control for multimedia and web applications, hardware authentication, user strong authentication, SSL support, PKCS#11 to Microsoft (R) CSP applications, PKI, DRM, trusted computing and IP protection."

07/18/12: Updated implementation information;

2118 SAP AG
Albert-Einstein-Allee 3
Bensheim, NRW 64625
Germany

-Stephan André
TEL: +49-6251-708-1730
FAX: +49-6227-78-55975

-Thomas Rothe
TEL: +49-6251-708-2339
FAX: +49-6227-78-55989

SAP NW SSO 2.0 Secure Login Library Crypto Kernel

Version 2.0.0.1
Intel Core i5 660 3,33 GHz w/ Windows 7 Enterprise SP1 7/5/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int/ext; 128 , 192 , 256 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported

"SAP NW SSO 2.0 Secure Login Library Crypto Kernel v2.0.0.1 is a shared library, i.e. it consists of software only. SAP NW SSO 2.0 Secure Login Library Crypto Kernel provides an API in terms of C++ methods for key management and operation of cryptographic functions."

2117 Sonus
4 Technology Park Drive
Westford, MAS 01886
USA

-Kumar Saurabh
TEL: +91-80-67895473

-Sandeep Kaushik
TEL: +1 978 614 8610
FAX: +1 978 614 8100

SSH-IPSEC

Version 9.0
PowerPC w/ pSOS 6/29/2012 CBC ( e/d; 128 , 192 , 256 );

"GSX9000 and NBS9000 software runs on pSOS and utilizes standard libcrypto (OpenSSL) and Mocana SSL stack for crypto operations. "

07/03/12: Updated implementation information;
07/19/12: Updated vendor information;

2116 OpenSSL Software Foundation, Inc.
1829 Mount Ephraim Road
Adamstown, MD 27101
USA

-Steve Marquess
TEL: 877-673-6775

OpenSSL FIPS Object Module

Version 2.0.1
ARMv7 w/ Apple iOS 5.1; ARMv5TEJ w/ Microsoft Windows CE 6.0 R2; ARMv7 w/ Microsoft Windows CE 5.0 6/29/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 1024 , 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 96 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Not_Supported

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"The OpenSSL FIPS Object Module is a full featured general purpose cryptographic library that is distributed in source code form under an open source license. It can be downloaded from www.openssl.org/source/."

2115 Infoblox
4750 Patrick Henry Drive
Santa Clara, CA 95054
USA

-Bill Lane
TEL: 408-625-4368

NIOS Cryptographic Library

Version 1.0 (Firmware)
Intel Xeon; Intel Pentium 6/29/2012 CBC ( e/d; 128 , 192 , 256 );

"Infoblox® NIOS software, coupled with Infoblox appliances, enables customers to deploy large, robust, manageable and cost-effective Infoblox Grids™ to enable distributed delivery of core network services – including DNS, DHCP, IPAM, NTP, TFTP, and FTP."

2114 Telephonics Sweden AB
Vattenkraftsvagen 8
Stockholm, S-13570
Sweden

-Ingi Bjornsson
TEL: +46 8 7980933
FAX: +46 8 7988433

-Magnus Eriksson
TEL: +46 8 7980902
FAX: +46 8 7988433

TruLink AES ECB

Version aes.dsp rev 1.11 (Firmware)
Part # 010.6882-01 Rev. B2
ANALOG DEVICES ADSP-2187 6/29/2012 ECB ( e/d; 128 , 256 );

"TruLink is a fully duplex, short range wireless intercom system that may be employed on aircraft, boats and ground vehicles. An AES-128 or 256 ECB algorithm is employed to encrypt either voice or data between the wireless units. Keys are generated by PC based application and loaded via a serial port on the wireless units."

2113 Telephonics Sweden AB
Vattenkraftsvagen 8
Stockholm, S-13570
Sweden

-Ingi Bjornsson
TEL: +46 8 7980933
FAX: +46 8 7988433

-Magnus Eriksson
TEL: +46 8 7980902
FAX: +46 8 7988433

TruLink AES ECB

Version aes.dsp rev 1.10 (Firmware)
Part # 010.6792-01 Rev. H3
ANALOG DEVICES ADSP-2185 6/29/2012 ECB ( e/d; 128 , 256 );

"TruLink is a fully duplex, short range wireless intercom system that may be employed on aircraft, boats and ground vehicles. An AES-128 or 256 ECB algorithm is employed to encrypt either voice or data between the wireless units. Keys are generated by PC based application and loaded via a serial port on the wireless units."

2112 KOBIL Systems GmbH
Pfortenring 11
Worms, 67547
Germany

-Markus Tak
TEL: +49 (0)6241 3004-90
FAX: +49 (0)6241 3004-80

-Erik Dahmen
TEL: +49 (0)6241 3004-952
FAX: +49 (0)6241 3004-80

KOBIL Hardware Storage Module

Part # v1.8
N/A 6/29/2012 CBC ( e/d; 256 );

"KOBIL mIDentity is a secure portable two-factor authentication solution. Enter the safe and flexible world of mIDentity and use your digital identity to run a multitude of applications. This module is used in mIDentity 4smart data storage FW v0.75 / fullsize FW v0.75 / visual FW v0.76."

2111 KOBIL Systems GmbH
Pfortenring 11
Worms, 67547
Germany

-Markus Tak
TEL: +49 (0)6241 3004-90
FAX: +49 (0)6241 3004-80

-Erik Dahmen
TEL: +49 (0)6241 3004-952
FAX: +49 (0)6241 3004-80

KOBIL Software AES Module

Version v1.0 (Firmware)
ATMEL AT32UC3B0256 6/29/2012 CBC ( e/d; 256 );

CMAC (Generation/Verification ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 4096 ; Tag Len(s) Min: 1 Max: 16 )


"KOBIL mIDentity is a secure portable two-factor authentication solution. Enter the safe and flexible world of mIDentity and use your digital identity to run a multitude of applications. This module is used in mIDentity 4smart banking FW v0.80, mIDentity 4smart data storage FW v0.75 / fullsize FW v0.75 / visual FW v0.76, and mIDentity mini FW 2.0.0."

2110 McAfee, Inc.
2821 Mission College Blvd.
Santa Clara, CA 95054
USA

-Mark Hanson
TEL: +1 (651) 628-1633
FAX: +1 (651) 628-2706

McAfee Web Gateway Cryptographic Engine

Version 1.0
Intel Xeon w/ MLOS v1.0 running on VMware vSphere 4.1; Intel Xeon w/ MLOS v1.0 running on VMware vSphere 5.0 6/29/2012 CBC ( e/d; 128 , 192 , 256 );

"The McAfee Web Gateway Cryptographic Engine v1.0 provides the services necessary to support the cryptographic features and functions of McAfee''s line of anti-malware solutions, including the McAfee Web Gateway products."

2109 McAfee, Inc.
2821 Mission College Blvd.
Santa Clara, CA 95054
USA

-Mark Hanson
TEL: +1 (651) 628-1633
FAX: +1 (651) 628-2706

McAfee Web Gateway Cryptographic Engine

Version 1.0 (Firmware)
Intel Xeon 6/29/2012 CBC ( e/d; 128 , 192 , 256 );

"The McAfee Web Gateway Cryptographic Engine v1.0 provides the services necessary to support the cryptographic features and functions of McAfee''s line of anti-malware solutions, including the McAfee Web Gateway products."

2108 Samsung Electronics Co., Ltd
R4 416, Maetan 3-dong, Yeongtong-gu
Suwon-si, Gyeonggi-do 443-742
Korea

-Ross Choi
TEL: 972-761-7628

-Kyung-Hee Lee
TEL: +82-10-6640-8499

Samsung FIPS OpenSSL for mobile phone and tablet

Version SFOpenSSL_1.0.0e-10
MSM8960 1GHz (51,7,1,4D,0) w/ Android Ice cream sandwich 4.0 6/29/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"General purpose cryptographic services available for Android used by Samsung devices to provide secure cryptography."

09/21/12: Updated implementation information;

2107 IBM Corporation
11400 Burnet Road
Austin, TX 78758
USA

-Tom Benjamin
TEL: 512-286-5319

-Kevin Driver
TEL: 512-286-6017

IBM Java JCE 140-2 Cryptographic Module

Version 1.7
Intel Core 2 Duo w/ Windows 7 32-bit; Intel Core 2 Duo w/ Solaris 11.0; IBM PowerPC Power6 w/ IBM AIX 7.1 6/29/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported

"The IBM Java JCE (Java Cryptographic Extension) FIPS provider (IBMJCEFIPS) for Multi-platforms is a scalable, multipurpose cryptographic module that supports many FIPS approved cryptographic operations. This gives Java applications access to the FIPS algorithms via the standard JCE framework that is part of all JVM''s at the 1.4.0 level and higher."

2106 McAfee, Inc.
2821 Mission College Blvd.
Santa Clara, CA 95054
USA

-Mark Hanson
TEL: 651-628-1633
FAX: 651-628-2706

McAfee Email Gateway libgcrypt

Version 1.4.6 (Firmware)
Intel Xeon; Intel Core i3; Intel Celeron; Intel 2x Xeon 6/29/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )


"The McAfee Email Gateway libgcrypt v1.4.6 provides the services necessary to support the cryptographic features and functions of the McAfee Email Gateway line of hardware appliances, blade servers, and virtual appliances."

2105 Ultra Electronics 3eTI
9715 Key West Avenue
Rockville, MD 20850
USA

-Harinder Sood
TEL: 301-944-1325
FAX: 301-670-6989

-Chris Guo
TEL: 301-944-1294
FAX: 301-670-6989

3eTI MPC CryptoCore AES GCM

Version 1.0 (Firmware)
Freescale MPC8378E 6/29/2012

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported AES Val#2078

"AES GCM with external IV running on MPC8378E hardware for accelerated performance."

2104 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-Shawn Geddis

Apple OSX CoreCrypto Module

Version 3.0
Intel i7 w/ OSX 10.8 6/29/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"Cryptographic library offering various cryptographic mechanisms to Apple frameworks. The testing applies to user space and generic, non-optimized software."

2103 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-Shawn Geddis

Apple OSX CoreCrypto Module

Version 3.0
Intel i5 w/ OSX 10.8 6/29/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"Cryptographic library offering various cryptographic mechanisms to Apple frameworks. The testing applies to user space and generic, non-optimized software."

2102 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-Shawn Geddis

Apple iOS CoreCrypto Module

Version 3.0
Apple A4 w/ iOS 6 6/29/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported

"Cryptographic library offering various cryptographic mechanisms to Apple frameworks. The testing applies to user space and generic, non-optimized software. "

2101 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-Shawn Geddis

Apple iOS CoreCrypto Kernel Module

Version 3.0
Apple A5 w/ iOS 6 6/29/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"Cryptographic library offering various cryptographic mechanisms to Apple frameworks. The testing applies to kernel space and generic, non-optimized software. "

2100 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-Shawn Geddis

Apple iOS CoreCrypto Module

Version 3.0
Apple A5 w/ iOS 6 6/29/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported

"Cryptographic library offering various cryptographic mechanisms to Apple frameworks. The testing applies to user space and generic, non-optimized software. "

2099 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-Shawn Geddis

Apple iOS CoreCrypto Kernel Module

Version 3.0
Apple A4 w/ iOS 6 6/29/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"Cryptographic library offering various cryptographic mechanisms to Apple frameworks. The testing applies to kernel space and generic, non-optimized software. "

2098 Samsung Electronics Co., Ltd
R4 416, Maetan 3-dong, Yeongtong-gu
Suwon-si, Gyeonggi-do 443-742
Korea

-Ross Choi
TEL: 972-761-7628

-Kyung-Hee Lee
TEL: +82-10-6640-8499

Samsung FIPS Key Management for Mobile Phones

Version KM1.1
ARMv7 w/ Android Ice cream sandwich 4.0 6/29/2012 ECB ( e/d; 128 , 192 , 256 );

"General purpose Key derivation and authentication services library for Linux used by Samsung devices."

09/21/12: Updated implementation information;

2097 Samsung Electronics Co., Ltd
R4 416, Maetan 3-dong, Yeongtong-gu
Suwon-si, Gyeonggi-do 443-742
Korea

-Ross Choi
TEL: 972-761-7628

-Kyung-Hee Lee
TEL: +82-10-6640-8499

Samsung Kernel Cryptographic Module

Version SKC1.4.1
MSM8260 1.2 GHz (51,7,1,04d,0) w/ Android Ice cream sandwich 4.0 6/29/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )


"General purpose Cryptographic services available for Linux kernel used by Samsung devices to provide secured services."

09/21/12: Updated implementation information;
01/17/13: Updated implementation information;

2096 Mocana Corporation
350 Sansome Street
Suite 1010
San Francisco, CA 94104
USA

-James Blaisdell
TEL: 415-617-0055
FAX: 415-617-0056

Mocana Cryptographic Library

Version 5.5fs
PowerQUICC III w/ Integrity 5.0; ARMv7 w/ IOS 5 6/29/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 0 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 128 , 128 ) ; OtherIVLen_Supported
GMAC_Supported
RNG: Val# 1078

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"The Mocana Cryptographic Module is the engine of Mocana’s Device Security Framework - a software framework that secures all aspects of a system. The Device Security Framework helps applications and device designers reduce development costs and dramatically enhance cryptographic performance. For details see www.mocana.com."

2095 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-Shawn Geddis

Apple OSX CoreCrypto Module

Version 3.0
Intel i7 w/ OSX 10.8 6/25/2012 CBC ( e/d; 128 , 192 , 256 );

XTS( KS: XTS_128( (e/d) ) KS: XTS_256( (e/d) ))

"Cryptographic library offering various cryptographic mechanisms to Apple frameworks. The testing applies to user space and the AES-NI Intel instruction set using the generic block chaining modes of CBC and XTS."

2094 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-Shawn Geddis

Apple OSX CoreCrypto Module

Version 3.0
Intel i7 w/ OSX 10.8 6/25/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported
DRBG: Val# 220

XTS( KS: XTS_128( (e/d) ) KS: XTS_256( (e/d) ))

"Cryptographic library offering various cryptographic mechanisms to Apple frameworks. The testing applies to user space and the AES-NI Intel instruction set with an accellerated implementation for CBC and XTS."

2093 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-Shawn Geddis

Apple OSX CoreCrypto Module

Version 3.0
Intel i7 w/ OSX 10.8 6/25/2012 CBC ( e/d; 128 , 192 , 256 );

"Cryptographic library offering various cryptographic mechanisms to Apple frameworks. The testing applies to user space and the Gladman AES CBC implementation."

2092 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-Shawn Geddis

Apple OSX CoreCrypto Module

Version 3.0
Intel i7 w/ OSX 10.8 6/25/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported
DRBG: Val# 219

XTS( KS: XTS_128( (e/d) ) KS: XTS_256( (e/d) ))

"Cryptographic library offering various cryptographic mechanisms to Apple frameworks. The testing applies to user space and assembler optimized AES."

2091 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-Shawn Geddis

Apple OSX CoreCrypto Module

Version 3.0
Intel i5 w/ OSX 10.8 6/25/2012 CBC ( e/d; 128 , 192 , 256 );

XTS( KS: XTS_128( (e/d) ) KS: XTS_256( (e/d) ))

"Cryptographic library offering various cryptographic mechanisms to Apple frameworks. The testing applies to user space and the AES-NI Intel instruction set using the generic block chaining modes of CBC and XTS."

2090 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-Shawn Geddis

Apple OSX CoreCrypto Module

Version 3.0
Intel i5 w/ OSX 10.8 6/25/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported
DRBG: Val# 218

XTS( KS: XTS_128( (e/d) ) KS: XTS_256( (e/d) ))

"Cryptographic library offering various cryptographic mechanisms to Apple frameworks. The testing applies to user space and the AES-NI Intel instruction set with an accellerated implementation for CBC and XTS."

2089 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-Shawn Geddis

Apple OSX CoreCrypto Module

Version 3.0
Intel i5 w/ OSX 10.8 6/25/2012 CBC ( e/d; 128 , 192 , 256 );

"Cryptographic library offering various cryptographic mechanisms to Apple frameworks. The testing applies to user space and the Gladman AES CBC implementation."

2088 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-Shawn Geddis

Apple OSX CoreCrypto Module

Version 3.0
Intel i5 w/ OSX 10.8 6/25/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported
DRBG: Val# 217

XTS( KS: XTS_128( (e/d) ) KS: XTS_256( (e/d) ))

"Cryptographic library offering various cryptographic mechanisms to Apple frameworks. The testing applies to user space and assembler optimized AES."

2087 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-Shawn Geddis

Apple OSX CoreCrypto Kernel Module

Version 3.0
Intel i7 w/ OSX 10.8 6/25/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

XTS( KS: XTS_128( (e/d) ) KS: XTS_256( (e/d) ))

"Cryptographic library offering various cryptographic mechanisms to Apple frameworks. The testing applies to kernel space and generic, non-optimized software."

2086 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-Shawn Geddis

Apple OSX CoreCrypto Kernel Module

Version 3.0
Intel i7 w/ OSX 10.8 6/25/2012 CBC ( e/d; 128 , 192 , 256 );

XTS( KS: XTS_128( (e/d) ) KS: XTS_256( (e/d) ))

"Cryptographic library offering various cryptographic mechanisms to Apple frameworks. The testing applies to kernel space and the AES-NI Intel instruction set using the generic block chaining modes of CBC and XTS."

2085 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-Shawn Geddis

Apple OSX CoreCrypto Kernel Module

Version 3.0
Intel i7 w/ OSX 10.8 6/25/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

XTS( KS: XTS_128( (e/d) ) KS: XTS_256( (e/d) ))

"Cryptographic library offering various cryptographic mechanisms to Apple frameworks. The testing applies to kernel space and the AES-NI Intel instruction set with an accellerated implementation for CBC and XTS."

2084 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-Shawn Geddis

Apple OSX CoreCrypto Kernel Module

Version 3.0
Intel i7 w/ OSX 10.8 6/25/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

XTS( KS: XTS_128( (e/d) ) KS: XTS_256( (e/d) ))

"Cryptographic library offering various cryptographic mechanisms to Apple frameworks. The testing applies to kernel space and assembler optimized AES."

2083 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-Shawn Geddis

Apple OSX CoreCrypto Kernel Module

Version 3.0
Intel i5 w/ OSX 10.8 6/25/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

XTS( KS: XTS_128( (e/d) ) KS: XTS_256( (e/d) ))

"Cryptographic library offering various cryptographic mechanisms to Apple frameworks. The testing applies to kernel space and generic, non-optimized software."

2082 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-Shawn Geddis

Apple OSX CoreCrypto Kernel Module

Version 3.0
Intel i5 w/ OSX 10.8 6/25/2012 CBC ( e/d; 128 , 192 , 256 );

XTS( KS: XTS_128( (e/d) ) KS: XTS_256( (e/d) ))

"Cryptographic library offering various cryptographic mechanisms to Apple frameworks. The testing applies to kernel space and the AES-NI Intel instruction set using the generic block chaining modes of CBC and XTS."

2081 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-Shawn Geddis

Apple OSX CoreCrypto Kernel Module

Version 3.0
Intel i5 w/ OSX 10.8 6/25/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

XTS( KS: XTS_128( (e/d) ) KS: XTS_256( (e/d) ))

"Cryptographic library offering various cryptographic mechanisms to Apple frameworks. The testing applies to kernel space and the AES-NI Intel instruction set with an accellerated implementation for CBC and XTS."

2080 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-Shawn Geddis

Apple OSX CoreCrypto Kernel Module

Version 3.0
Intel i5 w/ OSX 10.8 6/25/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

XTS( KS: XTS_128( (e/d) ) KS: XTS_256( (e/d) ))

"Cryptographic library offering various cryptographic mechanisms to Apple frameworks. The testing applies to kernel space and assembler optimized AES."

2079 McAfee, Inc.
2821 Mission College Blvd.
Santa Clara, CA 95054
USA

-Mark Hanson
TEL: 651-628-1633
FAX: 651-628-2706

McAfee Email Gateway libgcrypt

Version 1.4.6
Intel Xeon w/ Red Hat Linux 9 running on VMware ESXi v5.0; Intel Xeon w/ Red Hat Linux 9 running on VMware ESXi v4.1 6/25/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )


"The McAfee Email Gateway libgcrypt v1.4.6 provides the services necessary to support the cryptographic features and functions of the McAfee Email Gateway line of hardware appliances, blade servers, and virtual appliances."

2078 Ultra Electronics 3eTI
9715 Key West Avenue
Rockville, MD 20850
USA

-Harinder Sood
TEL: 301-944-1325
FAX: 301-670-6989

-Chris Guo
TEL: 301-944-1294
FAX: 301-670-6989

3eTI MPC8378E Cryptographic Core

Version 1.0 (Firmware)
Freescale MPC8378E 6/25/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 22 - 30 ) (Payload Length Range: 1 - 32 ( Nonce Length(s): 13 (Tag Length(s): 8

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported

"Crypto Algorithms running on MPC8378E hardware for accelerated performance."

2077 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-Shawn Geddis

Apple iOS CoreCrypto Module

Version 3.0
Apple A5 w/ iOS 6 6/25/2012 CBC ( e/d; 128 , 192 , 256 );

"Cryptographic library offering various cryptographic mechanisms to Apple frameworks. The testing applies to user space and the AES hardware offered by the processor."

2076 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-Shawn Geddis

Apple iOS CoreCrypto Module

Version 3.0
Apple A5 w/ iOS 6 6/25/2012 CBC ( e/d; 128 , 192 , 256 );

"Cryptographic library offering various cryptographic mechanisms to Apple frameworks. The testing applies to user space and the Gladman AES CBC implementation."

2075 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-Shawn Geddis

Apple iOS CoreCrypto Module

Version 3.0
Apple A5 w/ iOS 6 6/25/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported
DRBG: Val# 210

"Cryptographic library offering various cryptographic mechanisms to Apple frameworks. The testing applies to user space and assembler optimized AES."

2074 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-Shawn Geddis

Apple iOS CoreCrypto Module

Version 3.0
Apple A4 w/ iOS 6 6/25/2012 CBC ( e/d; 128 , 192 , 256 );

"Cryptographic library offering various cryptographic mechanisms to Apple frameworks. The testing applies to user space and the AES hardware offered by the processor."

2073 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-Shawn Geddis

Apple iOS CoreCrypto Module

Version 3.0
Apple A4 w/ iOS 6 6/25/2012 CBC ( e/d; 128 , 192 , 256 );

"Cryptographic library offering various cryptographic mechanisms to Apple frameworks. The testing applies to user space and the Gladman AES CBC implementation."

2072 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-Shawn Geddis

Apple iOS CoreCrypto Module

Version 3.0
Apple A4 w/ iOS 6 6/25/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported
DRBG: Val# 209

"Cryptographic library offering various cryptographic mechanisms to Apple frameworks. The testing applies to user space and assembler optimized AES."

2071 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-Shawn Geddis

Apple iOS CoreCrypto Kernel Module

Version 3.0
Apple A5 w/ iOS 6 6/25/2012 CBC ( e/d; 128 , 192 , 256 );

"Cryptographic library offering various cryptographic mechanisms to Apple frameworks. The testing applies to kernel space and assembler optimized AES."

2070 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-Shawn Geddis

Apple iOS CoreCrypto Kernel Module

Version 3.0
Apple A4 w/ iOS 6 6/25/2012 CBC ( e/d; 128 , 192 , 256 );

"Cryptographic library offering various cryptographic mechanisms to Apple frameworks. The testing applies to kernel space and assembler optimized AES."

2069 Hewlett-Packard Company
19091 Pruneridge Ave., MS 4441
Cupertino, CA 95014
USA

-Theresa Conejero
TEL: 408-447-2964
FAX: 408-447-5525

HP ESKM AES

Version 5.0.0 (Firmware)
Intel Xeon E5-2640 6/25/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"HP Enterprise Secure Key Manager (ESKM) provides key generation, retrieval, and management for encryption devices and solutions. ESKM is a hardened security appliance with secure access control, administration, and logging. ESKM supports high availability with automatic multi-site clustering, replication, and failover."

2068 Seagate Technology LLC.
389 Disc Drive
Longmont, CO 80503
USA

-Monty Forehand
TEL: 720-684-2835
FAX: 720-684-2733

Moa AES in Hardware

Part # Moa
N/A 6/20/2012 ECB ( e/d; 128 , 256 ); CBC ( e/d; 128 , 256 );

XTS( ) KS: XTS_256( (e/d) (p) ))

"AES encryption and decryption core of the controller ASIC "Moa" in Seagate''s Self- Encrypting Drives (SEDs)."

2067 HGST
3403 Yerba Buena Rd.
San Jose, CA 95135
USA

-Leo Letourneaut
TEL: (408) 717-7013
FAX: (408) 717-9494

-Hoang P. Nguyen
TEL: (408) 717-7101
FAX: (408) 717-9494

HGST Hardware TcgCryptoLib

Version SVN2876 (Firmware)
Simulator: Mentor Graphics Modelsim Questasim 6.6c 6/20/2012 ECB ( e/d; 128 , 256 );

XTS( KS: XTS_128( (e/d) (p) ) KS: XTS_256( (e/d) (p) ))

"Hitachi GST Travelstar BDE, Opal TCG Drive and Enterprise SSC TCG Drive containing System on Chip (SOC) hardware Implementation of XTS-AES Encryption Algorithm, using either 128-bit or 256-bit keys."

04/05/13: Updated vendor and implemenetation information;

2066 Thales e-Security
2200 North Commerce Parkway
Suite 200
Weston, FL 33326
USA

-Joe Warren
TEL: 321-264-2928

Thales Datacryptor (with Multi-Point License)

Version 5.0 (Firmware)
Xilinx XC2VP50 FPGA 6/20/2012 CBC ( e only; 256 );

GCM (KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 512 , 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Not_Supported

"The Thales Datacryptor protects the confidentiality and integrity of sensitive data travelling over public networks."

2065 Thales e-Security
2200 North Commerce Parkway
Suite 200
Weston, FL 33326
USA

-Joe Warren
TEL: 321-264-2928

Thales Datacryptor (with Multi-Point License)

Version 5.0 (Firmware)
Xilinx XC4VFX40 FPGA 6/20/2012 CBC ( e only; 256 );

GCM (KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 512 , 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Not_Supported

"The Thales Datacryptor protects the confidentiality and integrity of sensitive data travelling over public networks."

2064 Thales e-Security
2200 North Commerce Parkway
Suite 200
Weston, FL 33326
USA

-Joe Warren
TEL: 321-264-2928

Thales Datacryptor (with Multi-Point License)

Version 5.0 (Firmware)
Xilinx XC2VP30 FPGA 6/20/2012 CBC ( e only; 256 );

GCM (KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 512 , 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Not_Supported

"The Thales Datacryptor protects the confidentiality and integrity of sensitive data travelling over public networks."

2063 Thales e-Security
2200 North Commerce Parkway
Suite 200
Weston, FL 33326
USA

-Joe Warren
TEL: 321-264-2928

Thales Datacryptor (with Point-Point License)

Version 5.0 (Firmware)
Xilinx XC2VP50 FPGA 6/20/2012 CBC ( e/d; 256 );

"The Thales Datacryptor protects the confidentiality and integrity of sensitive data travelling over public networks."

2062 Thales e-Security
2200 North Commerce Parkway
Suite 200
Weston, FL 33326
USA

-Joe Warren
TEL: 321-264-2928

Thales Datacryptor (wth Point-Point License)

Version 5.0 (Firmware)
Xilinx XC4VFX40 FPGA 6/20/2012 CBC ( e/d; 256 );

"The Thales Datacryptor protects the confidentiality and integrity of sensitive data travelling over public networks."

2061 Thales e-Security
2200 North Commerce Parkway
Suite 200
Weston, FL 33326
USA

-Joe Warren
TEL: 321-264-2928

Thales Datacryptor (with Point-Point License)

Version 5.0 (Firmware)
Xilinx XC2VP30 FPGA 6/20/2012 CBC ( e/d; 256 );

"The Thales Datacryptor protects the confidentiality and integrity of sensitive data travelling over public networks."

2060 Ultra Electronics 3eTI
9715 Key West Avenue
Rockville, MD 20850
USA

-Harinder Sood
TEL: 301-944-1325
FAX: 301-670-6989

-Chris Guo
TEL: 301-944-1294
FAX: 301-670-6989

3eTI OpenSSL Algorithm Implementation

Version 1.0.1-a (Firmware)
MPC8378E 6/20/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"Algorithms listed are used to provide encryption and authentication services within 3eTI networking products."

2059 Totemo AG
Totemo AG
Freihofstrasse 22
CH-8700 Kusnacht
Kusnacht, n/a
Switzerland

-Marcel Mock
TEL: +41 (0) 44 914 9900

Totemo Cryptographic Module (TCM)

Version 2.0
Intel Xeon E5504 processor w/ Totemo Appliance OS 2.0 v0711 with JRE 7.0 6/15/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verfication ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 0 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 0 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 0 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 )
IV Generated: ( Externally ) ; PT Lengths Tested: ( 8 , 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported

"The Totemo Cryptographic Module supplies the cryptographic services required by the Totemo Security Platform (TSP) and the Totemo products which provides secure email, file transfer, and mobile messaging solutions. These solutions secure all types of communication without any infrastructure prerequisites."

06/14/12: Updated implementation information;

2058 Draeger Medical Systems, Inc.
6 Tech Drive
Andover, MA 01810
USA

-Christina DeMur
TEL: 978-379-8080
FAX: 978-379-8330

Hardware Accelerator for CCMP using a 128-bit AES Engine

Part # RS9112, RS9113, RS9114
N/A 6/15/2012 ECB ( e only; 128 ); CTR ( int only; 128 )

CCM (KS: 128 ) (Assoc. Data Len Range: 15 - 30 ) (Payload Length Range: 1 - 32 ( Nonce Length(s): 13 (Tag Length(s): 8


"This hardware accelerator implements AES encryption per FIPS PUB 197-2001 as required by the CCMP (CTR with CBC-MAC protocol) mode specified in 802.11i standard. The accelerator supports payload sizes between 1 and (2^16-1) bytes. For the purpose of CCM validation, the supported payload size range tests 1 and 32 bytes."

06/19/12: Updated vendor information;

2057 Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

-Global Certification Team

Cat4K ASIC Algorithm Implementation

Part # 2.1
N/A 6/13/2012 ECB ( e only; 128 );

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) PT Lengths Tested: ( 8 , 1024 ) ; AAD Lengths tested: ( 160 , 728 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Not_Supported

"ASIC cryptographic implementation used within Cisco Cat4K platform."

2056 Samsung Electronics Co., Ltd
416, Maetan 3-Dong Youngtong Gu
Suwon, Gyeonggi 152-848
South Korea

-Ross Choi
TEL: 972-761-7628

-Bumhan Kim
TEL: +82-10-4800-6711

Samsung Kernel Cryptographic Module

Version SKC1.4.1
ARMv7 w/ Android Ice Cream Sandwich 4.0 6/13/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )


"General purpose Cryptographic services available for Linux kernel used by Samsung devices to provide secured services."

10/12/12: Updated implementation information;
01/17/13: Updated implementation information;

2055 SUSE Linux Products GmbH
Maxfeldstr. 5
Nuremberg, 90409
Germany

-Roman Drahtmüller
TEL: + 49 911 74053127

OpenSSL

Version 0.9.8j-0.44.1
Intel x86-64 w/ SUSE Linux Enterprise Server 11 SP2 6/13/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"User space library providing general cryptographic services which can be linked to from any program. The module was tested with 64bit word size with AES implementation only without AES-NI support."

09/13/12: Updated implementation information;

2054 SUSE Linux Products GmbH
Maxfeldstr. 5
Nuremberg, 90409
Germany

-Roman Drahtmüller
TEL: + 49 911 74053127

OpenSSL

Version 0.9.8j-0.44.1
Intel x86-64 w/ SUSE Linux Enterprise Server 11 SP2 6/13/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"User space library providing general cryptographic services which can be linked to from any program. The module was tested with 64bit word size and covers the AES NI Intel support."

09/13/12: Updated implementation information;

2053 SUSE Linux Products GmbH
Maxfeldstr. 5
Nuremberg, 90409
Germany

-Roman Drahtmüller
TEL: + 49 911 74053127

OpenSSL

Version 0.9.8j-0.44.1
Intel x86-64 w/ SUSE Linux Enterprise Server 11 SP2 6/13/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"User space library providing general cryptographic services which can be linked to from any program. The module was tested with 32bit word size with AES implementation only without AES-NI support."

09/13/12: Updated implementation information;

2052 SUSE Linux Products GmbH
Maxfeldstr. 5
Nuremberg, 90409
Germany

-Roman Drahtmüller
TEL: + 49 911 74053127

OpenSSL

Version 0.9.8j-0.44.1
Intel x86-64 w/ SUSE Linux Enterprise Server 11 SP2 6/13/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"User space library providing general cryptographic services which can be linked to from any program. The module was tested with 32bit word size and covers the AES NI Intel support."

09/13/12: Updated implementation information;

2051 Hewlett-Packard Company
8000 Foothills Boulevard
Roseville, CA 95747
USA

-Sunil Amanna
TEL: (916) 785-1183
FAX: (916) 785-1103

HP KA.15 Cryptographic Library

Version 5.3.1 (Firmware)
Freescale P2020E 6/7/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )


"Standard operating software for KA-platform switch products."

2050 Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

-Global Certification Team

CAVIUM Nitrox PX (CN1620)

Part # CN1620-400BG233-P-G
N/A 6/7/2012 CBC ( e/d; 128 , 192 , 256 );

"Cisco ASA Security Appliance Series deliver robust user and application policy enforcement, multi-vector attack protection, and secure connectivity services in cost-effective, easy-to-deploy solutions. The ASA 5500 Series Adaptive Security Appliances provide comprehensive security, performance, and reliability for network environment."

2049 Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

-Global Certification Team

Adaptive Security Appliance Onboard Acceleration

Part # CN505-183LQ128
N/A 6/7/2012 CBC ( e/d; 128 , 192 , 256 );

"Cisco ASA Security Appliance Series deliver robust user and application policy enforcement, multi-vector attack protection, and secure connectivity services in cost-effective, easy-to-deploy solutions. The ASA 5500 Series Adaptive Security Appliances provide comprehensive security, performance, and reliability for network environment."

2048 Samsung Electronics Co., Ltd
416, Maetan 3-Dong Youngtong Gu
Suwon, Gyeonggi 152-848
South Korea

-Ross Choi
TEL: 972-761-7628

-Bumhan Kim
TEL: +82-10-4800-6711

Samsung FIPS Key Management for Mobile Phones

Version KM1.1
ARMv7 w/ Android Ice Cream Sandwich 4.0 6/7/2012 ECB ( e/d; 128 , 192 , 256 );

"General purpose Key derivation and authentication services library for Linux used by Samsung devices."

10/12/12: Updated implementation information;

2047 Cisco Systems, Inc.
170 West Tasman Dr.
San Jose, CA 95134
USA

-Global Certification Team

Adaptive Security Appliance OS

Version 8.4.4.1(Firmware)
AMD Geode; Intel Pentium 4; Intel Celeron; Intel E7520; Intel Xeon 5500 6/7/2012 CBC ( e/d; 128 , 192 , 256 );

"Cisco ASA Security Appliance Series deliver robust user and application policy enforcement, multi-vector attack protection, and secure connectivity services in cost-effective, easy-to-deploy solutions. The ASA 5500 Series Adaptive Security Appliances provide comprehensive security, performance, and reliability for network environment."

06/15/12: Updated implementation information; <06/25/12: Updated implementation information;

2046 N/A N/A N/A 6/7/2012 N/A
2045 N/A N/A N/A 6/7/2012 N/A
2044 Secure Agent
2448 E. 81st Street
Tulsa, OK 74137
USA

-Steve Soodsma
TEL: 918-971-1600
FAX: 918-971-1623

SecureAgent® Software Cryptographic Module

Version 2.2.005
Intel Xeon w/ Solaris 10 6/5/2012 CBC ( e/d; 128 , 192 , 256 );

"The Sailib module provides encryption services for the SecureAgent suite of products. The module dynamically links with libgcrypt which provides the cryptographic primitives used by the module."

2043 Chrisite Digital Systems Canada, Inc.
809 Wellington Street North
Kitchener, ON N2G4Y7
CANADA

-Kevin Draper
TEL: 519-741-3741
FAX: 519-744-3912

Christie IMB Cryptographic Implementation - FPGA (AES)

Version IPX_AES_MD_Xil_V6_1.4.26_ISE13.2 (Firmware)
Xilinx Vertex 6 FPGA (XC6VLX240T) 6/5/2012 CBC ( d only; 128 );

"Chrisite Integrated Media Block"

2042 Chrisite Digital Systems Canada, Inc.
809 Wellington Street North
Kitchener, ON N2G4Y7
CANADA

-Kevin Draper
TEL: 519-741-3741
FAX: 519-744-3912

Christie IMB Cryptographic Implementation - SM

Version SM_LIBSSL: 1.0.1-2601 (Firmware)
Xilinx Spartan 6 (XC6SLX45) 6/5/2012 ECB ( e/d; 128 ); CBC ( e/d; 128 );

"Christie Integrated Media Block"

2041 AuthenTec Inc.
Boxtelseweg 26A
Vught, 5261 NE
The Netherlands

-Bob Oerlemans
TEL: +31 73 6581 900

SafeZone FIPS Cryptographic Module

Version 1.0.3
ARMv7 w/ Android 4.0; ARMv7 w/ Android 2.3; ARMv7 w/ Linux (kernel 2.6) 6/5/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 11 13 (Tag Length(s): 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 104 96 64 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 104 96 64 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 104 96 64 )
IV Generated: ( Internally (using Section 8.2.1 / 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported
DRBG: Val# 203

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"SafeZone FIPS Cryptographic Module is a FIPS 140-2 Security Level 1 validated software cryptographic module from AuthenTec Inc. The module is a toolkit which provides the most commonly needed cryptographic primitives for a large variety of applications, including but not limited to, primitives needed for DAR, DRM, TLS, and VPN on mobile devices."

2039 Mocana Corporation
350 Sansome Street
Suite 1010
San Francisco, CA 94104
USA

-Mocana Sales
TEL: 415-617-0055
FAX: 415-617-0056

Mocana Cryptographic Library

Version 5.5f
ARMv7 w/ Android 4.0; ARMv7 w/ Android 2.2; ARMv7 w/ Android 2.3 5/31/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 0 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 0 , 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 128 , 128 ) ; OtherIVLen_Supported
GMAC_Supported
RNG: Val# 1065

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"The Mocana Cryptographic Module is the engine of Mocana’s Device Security Framework - a software framework that secures all aspects of a system. The Device Security Framework helps applications and device designers reduce development costs and dramatically enhance cryptographic performance. For details see www.mocana.com."

12/27/12: Updated vendor information;

2038 3S Group Incorporated
125 Church Street, N.E., Suite 204
Vienna, VA 22180
USA

-Satpal S. Sahni
TEL: 703-281-5015
FAX: 703-281-7816

3SGX

Version 1.0 (Firmware)
Cavium Octeon 5/25/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"3SGX is a high performance PCIe cryptograhic module that provides complete cryptographic support to large numbers of users or applications simultaneously. 3SGX is the core of 3S Group''s hardare security appliances, ideal for enterprise key management, virtualization and cloud server solutions that demand high throughput."

2037 Check Point Software Technologies, Ltd.
9900 Belward Campus Dr.
Suite 250
Rockville, MD 20850
USA

-David Abrose
TEL: +972 37534561

-Malcolm Levy
TEL: +972 37534561

Check Point Security Gateway

Version R7x with R7x hotfix (Firmware)
Intel Xeon 5/25/2012 CBC ( e/d; 128 , 256 );

"Check Point Security Gateway is a security gateway that provides firewall, VPN, and intrusion prevention functionality within a network environment."

2036 Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

-Global Certification Team

7600 Series Routers IOS Cryptographic Implementation

Version 1.0 (Firmware)
Freescale MPC8548 5/25/2012 ECB ( e/d; 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 256 )


"IOS cryptographic implementation for the 7600 series routers."

2035 Cavium, Inc.
2315 N. First Street
San Jose, CA 95131
USA

-Mike Scruggs
TEL: (408) 943-7100
FAX: (408) 577-1992

-TA (TAR) Ramanujam
TEL: (408) 943-7383
FAX: (408) 577-1992

Nitrox III AES-GCM

Version Nitrox III GCM, r72406 (Firmware)
Part # Nitrox III series die, v1.1
Cavium Nitrox III 5/25/2012

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported AES Val#2034

"NITROX III chips implement SHA1/SHA2, 3DES/AES256 CBC, ModMul/ModEx/RSA, GCM and CTR modes, and SP800-90A DRBG. Perf: 5 to 30 Gbps encrypt/hash; 35K to 200K RSA 1024b ops/sec; 6K to 35K RSA 2048b ops/sec. NITROX III microcode also implements protocol-specific acceleration for IPSec and SSL."

2034 Cavium, Inc.
2315 N. First Street
San Jose, CA 95131
USA

-Mike Scruggs
TEL: (408) 943-7100
FAX: (408) 577-1992

-TA (TAR) Ramanujam
TEL: (408) 943-7383
FAX: (408) 577-1992

Nitrox III series die

Part # Nitrox III Series Die, v1.1
N/A 5/25/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"NITROX III chips implement SHA1/SHA2, 3DES/AES256 CBC, ModMul/ModEx/RSA, GCM and CTR modes, and SP800-90A DRBG. Perf: 5 to 30 Gbps encrypt/hash; 35K to 200K RSA 1024b ops/sec; 6K to 35K RSA 2048b ops/sec. NITROX III microcode also implements protocol-specific acceleration for IPSec and SSL."

2033 Cavium, Inc.
2315 N. First Street
San Jose, CA 95131
USA

-Mike Scruggs
TEL: (408) 943-7100
FAX: (408) 577-1992

-TA (TAR) Ramanujam
TEL: (408) 943-7383
FAX: (408) 577-1992

Nitrox III AES-CTR

Version Nitrox III CTR, r72406 (Firmware)
Part # Nitrox III series die, v1.1
Cavium Nitrox III 5/25/2012 ECB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )


"NITROX III chips implement SHA1/SHA2, 3DES/AES256 CBC, ModMul/ModEx/RSA, GCM and CTR modes, and SP800-90A DRBG. Perf: 5 to 30 Gbps encrypt/hash; 35K to 200K RSA 1024b ops/sec; 6K to 35K RSA 2048b ops/sec. NITROX III microcode also implements protocol-specific acceleration for IPSec and SSL."

2032 Digital Security Controls, a Division of Tyco Safety Products Canada Ltd.
3301 Langstaff Road
Concord, Ontario L4K 4L2
Canada

-Dan Nita
TEL: (905) 760-3000 x2706
FAX: (905) 760-3020

TL2603G(R)/3G2060(R)/TL260(R)

Version 3.00 (Firmware)
ST Microelectronics STR912FAW44X6T 5/25/2012 ECB ( e/d; 128 );

"The TL2603G(R)/3G2060(R)/TL260(R) Ver 3.00 is included in several IP/GSM Alarm Communicators Models like TL2603GR, 3G2060R, TL260R, TL2603G, 3G2060, TL260 and provides constantly supervised and encrypted line security communications over GSM/GPRS, Internet or Intranet for security/intrusion applications (as required per UL365, UL1610 standard)."

2031 Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

-Global Certification Team

5915 Embedded Services Routers IOS Cryptographic Implementation

Version 1.0 (Firmware)
Freescale MPC8358E 5/25/2012 ECB ( e/d; 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 256 )


"Cisco C5915 is a PCI-104-based small form factor chassis less moderate performance router, part of the Embedded Services Router family. It is a follow-on to the 3251 Mobile Access Router card, offered to market through integration partners and mostly deployed for transportation customers, public safety agencies, and global defense organizations."

07/18/12: Updated implementation information;
08/01/12: Updated implementation information;

2030 Thales e-Security
2200 North Commerce Parkway
Suite 200
Weston, FL 33326
USA

-Joe Warren
TEL: 321-264-2928

Thales Datacryptor

Version 5.0 (Firmware)
PowerPC Core 405 5/17/2012

CMAC (Generation ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 )
AES Val#2014

"The Thales Datacryptor protects the confidentiality and integrity of sensitive data travelling over public networks."

2029 Biscom, Inc.
321 Billerica Road
Chelmsford, MA 01824
USA

-William Ho
TEL: 978.367.3544
FAX: 978.250.2565

-Sharif Rahman
TEL: 510.943.4272
FAX: 866.307.5299

Biscom Cryptographic Library

Version 1.0
Intel Core i5 w/ Windows 2008 Server R2 with Sun JRE 6.0 5/17/2012 ECB ( e/d; 128 , 192 , 256 );

"Biscom Cryptographic Library provides cryptographic services for various Biscom products."

01/17/13: Updated implementation information;

2028 Vidyo, Inc.
433 Hackensack Avenue
Hackensack, NJ 07601
USA

-Adi Regev
TEL: 201-467-4636

Cryptographic Security Kernel

Version 1.0
Intel Core i5 with AES-NI w/ 32-bit Windows XP; Intel Core i5 with AES-NI w/ 64-bit Windows 7; Intel Core i5 with AES-NI w/ 32-bit Windows 7; Intel Xeon E3 with AES-NI w/ 64-bit Linux Ubuntu 10.04; Intel Xeon E3 with AES-NI w/ 32-bit Linux Ubuntu 10.04; Intel Core i5 with AES-NI w/ 64-bit Mac OS X 10.7.3; Intel Core i5 with AES-NI w/ 32-bit Mac OS X 10.7.3; Intel Core i5 with AES-NI w/ 64-bit Mac OS X 10.6.8; Intel Core i5 with AES-NI w/ 32-bit Mac OS X 10.6.8 5/17/2012 ECB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )


"Vidyo creates HD video conferencing products that leverage their patented Adaptive Video Layering Architecture technology, which provides continuous HD video streaming regardless of network conditions. The Vidyo Cryptographic Security Kernel supplies the cryptographic services necessary to support Vidyo''s secure video and data transmissions."

2027 Vidyo, Inc.
433 Hackensack Avenue
Hackensack, NJ 07601
USA

-Adi Regev
TEL: 201-467-4636

Cryptographic Security Kernel

Version 1.0
Intel Core Duo w/ 32-bit Mac OS X 10.6.8; Intel Core 2 Duo w/ 64-bit Mac OS X 10.6.8; Intel Core 2 Duo w/ 32-bit Mac OS X 10.7.3; Intel Core 2 Duo w/ 64-bit Mac OS X 10.7.3; Intel Xeon E50xx w/ 32-bit Linux Ubuntu 10.04; Intel Xeon E50xx w/ 64-bit Linux Ubuntu 10.04; Intel Core 2 Duo w/ 64-bit Windows 7; Intel Core Duo w/ 32-bit Windows 7; Intel Core Duo w/ 32-bit Windows XP; 5/17/2012 ECB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )


"Vidyo creates HD video conferencing products that leverage their patented Adaptive Video Layering Architecture technology, which provides continuous HD video streaming regardless of network conditions. The Vidyo Cryptographic Security Kernel supplies the cryptographic services necessary to support Vidyo''s secure video and data transmissions."

2026 Comtech EF Data Corporation
2114 West 7th Street
Tempe, Arizona 85281
USA

-Wallace Davis
TEL: 480.333.2189

DMD2050E TRANSEC Module FPGA Cryptographic Engine

Part # PL-0000192-1
N/A 5/9/2012 ECB ( e only; 256 ); CTR ( int only; 256 )


"The Comtech EF Data FIPS Security Module features an FPGA to perform bulk encryption/decryption for Ethernet data traffic via the DMD2050E Satellite Modem, as well as firmware to provide the cryptographic functions needed to act as a endpoint for TLS and SSH management and control traffic."

2025 Comtech EF Data Corporation
2114 West 7th Street
Tempe, Arizona 85281
USA

-Wallace Davis
TEL: 480.333.2189

DMD2050E TRANSEC Module Cryptographic Engine

Version 1.2.1 (Firmware)
AMCC PowerPC 440EP 5/9/2012 ECB ( e only; 128 , 192 , 256 ); CBC ( e only; 128 , 192 , 256 );

"The Comtech EF Data FIPS Security Module features an FPGA to perform bulk encryption/decryption for Ethernet data traffic via the DMD2050E Satellite Modem, as well as firmware to provide the cryptographic functions needed to act as an endpoint for TLS and SSH management, and control traffic."

2024 Microsoft Corporation
One Microsoft Way
Redmond, WA 98052-6399
USA

-Kevin Michelizzi
TEL: (425) 707-1227
FAX: (425) 936-7329

-Chien-Her Chin
TEL: (425) 706-5116
FAX: (425) 936-7329

Windows Embedded Compact Enhanced Cryptographic Provider (RSAENH)

Version 7.00.1687
MIPSII_FP (Sigma Designs SMP8654) w/ Windows Embedded Compact 7; MIPII (Sigma Designs SMP8654) w/ Windows Embedded Compact 7; ARMv7 (Texas Instruments EVM3530) w/ Windows Embedded Compact 7; ARMv6 (Samsung SMDK6410) w/ Windows Embedded Compact 7; ARMv5 (Freescale i.MX27) w/ Windows Embedded Compact 7; i586 (MSTI PDX-600) w/ Windows Embedded Compact 7 5/9/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"Microsoft Windows Embedded Compact Enhanced Cryptographic Provider (RSAENH), designed for FIPS 140-2 compliance, is a general-purpose, software-based, cryptographic module. It can be dynamically linked into applications by software developers to permit the use of general-purpose cryptography."

2023 Microsoft Corporation
One Microsoft Way
Redmond, WA 98052-6399
USA

-Kevin Michelizzi
TEL: (425) 707-1227
FAX: (425) 936-7329

-Chien-Her Chin
TEL: (425) 706-5116
FAX: (425) 936-7329

Windows Embedded Compact Cryptographic Primitives Library (bcrypt.dll)

Version 7.00.1687
Sigma Designs SMP8654 (MIPSII_FP) w/ Windows Embedded Compact 7; Sigma Designs SMP8654 (MIPSII) w/ Windows Embedded Compact 7; ARMv7 (Texas Instruments EVM3530) w/ Windows Embedded Compact 7; ARMv6 (Samsung SMDK6410) w/ Windows Embedded Compact 7; ARMv5 (Freescale i.MX27) w/ Windows Embedded Compact 7; i586 (MSTI PDX-600) w/ Windows Embedded Compact 7; 5/9/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )


"The cryptographic module BCRYPT.DLL encapuslates several different cryptographic algorithms in an easy-to-use module, accessible via the Microsoft CNG (Cryptography Next Generation) API. It permits the use of general-purpose FIPS 140-2 compliant cryptography in Windows Embedded Compact components and applications, through its documented interfaces."

2022 Juniper Networks, Inc.
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Kavitha Sivagnanam
TEL: (408) 936-2795

OpenSSL

Version Junos-FIPS 10.4R10 (Firmware)
Intel Pentium M 5/9/2012 CBC ( e/d; 128 , 192 , 256 );

"Juniper Networks MX Series 3D Universal Edge Routers with the Multiservices DPC provides dedicated high-performance processing for flows and sessions, and integrated advanced security capabilities that protect the network infrastructure as well as user data."

2021 Juniper Networks, Inc.
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Kavitha Sivagnanam
TEL: (408) 936-2795

SSH-IPSEC

Version Junos-FIPS 10.4R10 (Firmware)
Intel Pentium M 5/9/2012 CBC ( e/d; 128 , 192 , 256 );

"Juniper Networks MX Series 3D Universal Edge Routers with the Multiservices DPC provides dedicated high-performance processing for flows and sessions, and integrated advanced security capabilities that protect the network infrastructure as well as user data."

2020 Juniper Networks, Inc.
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Kavitha Sivagnanam
TEL: 408-936-2795

Kernel

Version Junos FIPS 10.4R10 (Firmware)
Intel Pentium M 5/9/2012 CBC ( e/d; 128 );

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 16 Max: 2^16 ; Tag Len(s) Min: 12 Max: 16 )


"Juniper Networks MX Series 3D Universal Edge Routers with the Multiservices DPC provides dedicated high-performance processing for flows and sessions, and integrated advanced security capabilities that protect the network infrastructure as well as user data."

2019 mHealthCoach
1146 W Grand Ave
Chicago, IL 60642
USA

-Mr. Aamer Ghaffar
TEL: 312-399-3852

ViralMesh Mobilizer

Version 3.3
Intel Xeon E5649 w/ Red Hat Enterprise 6.2 and JDK 1.6; Qualcomm Snapdragon w/ Android 2.2.3 5/9/2012 CBC ( e only; 128 );

"ViralMesh Java SE Crypto Module is a JCA (Java Cryptography Architecture) Provider shipped with ViralMesh Mobilizer Products. The Crypto Module implements JCE (Java Cryptography Extension) algorithm AES. The Crypto Module is packaged in a signed Java Archive (JAR) file."

2018 RSA, The Security Division of EMC
174 Middlesex Turnpike
Bedford, MA 01730
USA

-Damon Hopley
TEL: 781-515-6355

RSA BSAFE Crypto-C Micro Edition (ME)

Version 3.0.0.16
PowerPC 604 (32-bit) w/ Wind River VxWorks 6.0 5/9/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 32 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )


"RSA BSAFE® Crypto-C ME software is designed to help protect sensitive data as it is stored using strong encryption techniques to provide a persistent level of protection. The software supports a wide range of industry standard encryption algorithms offering developers the flexibility to choose the appropriate option to meet their requirements."

2017 RSA, The Security Division of EMC
174 Middlesex Turnpike
Bedford, MA 01730
USA

-Damon Hopley
TEL: 781-515-6355

RSA BSAFE Crypto-C Micro Edition

Version 4.0.1
Intel Celeron w/ Microsoft Windows XP SP3 - x86 (32-bit); AMD Athlon XP1800+ w/ Microsoft Windows XP SP3 - x86 (64-bit); AMD Athlon 64 X2 w/ Microsoft Windows Server 2003 - x86 (32-bit); AMD Athlon 64 X2 4000+ w/ Microsoft Windows Server 2003 - x86(64-bit); Intel Itanium 2 w/ Microsoft Windows Server 2003 - Itanium 64-bit (Visual Studio 2005 SP1); Intel Itanium 2 w/ Microsoft Windows Server 2003 - Itanium 64-bit (Visual Studio 2010); AMD Athlon 64 X2 w/ Red Hat Enterprise Server 5.5 - x86 (32-bit); AMD Athlon 64 X2 w/ Red Hat Enterprise Server 5.5 - x86 (64-bit); Intel Itanium II w/ Red Hat Enterprise Server 5.5 - Itanium 64-bit; AMD Athlon 64 X2 w/ Red Hat Enterprise Linux 6.0 - x86 (32-bit); AMD Athlon 64 X2 w/ Red Hat Enterprise Linux 6.0 - x86(64-bit); PowerPC POWER3-II w/ Red Hat Enterprise Linux 5.0 - PPC 32-bit; PowerPC POWER3-II w/ Red Hat Enterprise Linux 5.0 - PPC 64-bit; Intel Core 2 Duo w/ Apple Mac OS X 10.6 Snow Leopard - x86 (32-bit); Intel Core 2 Duo w/ Apple Mac OS X 10.6 Snow Leopard - x86 (64-bit); Sun UltraSparc Iie w/ Solaris 10 - SPARC v8; Sun UltraSparc IIe w/ Solaris 10 - SPARC v8+; Sun UltraSparc IIIi w/ Solaris 10 - SPARC v9; Intel Celeron w/ Solaris 10 - x86 (32-bit); AMD Athlon 64 X2 w/ Solaris 10 - x86 (64-bit); HP PA-8600 w/ HP-UX 11.23 - PA RISC 2.0; HP PA-8600 w/ HP-UX 11.23 - PA-RISC 2.0W; Intel Itanium 2 w/ HP-UX 11.31 - Itanium 32-bit; Intel Itanium 2 w/ HP-UX 11.31 - Itanium 64-bit; PowerPC POWER5 w/ IBM AIX 5.3 - PPC 32-bit; PowerPC POWER5 w/ IBM AIX 5.3 - PPC 64-bit; PowerPC POWER5 w/ IBM AIX 6.1 - PPC 32-bit; PowerPC POWER5 w/ IBM AIX 6.1 - PPC 64-bit; PowerPC POWER7 w/ IBM AIX 7.1 - PPC 32-bit; PowerPC POWER7 w/ IBM AIX 7.1 - PPC 64-bit; Intel Core i7 M620 w/ Microsoft Windows 7 - x86 (64-bit) w/ AES-NI; Intel Core i7 M620 w/ Microsoft Window XP - x86 (32-bit) w/ AES-NI; Intel Core i5 2500 w/ Solaris 10 - x86 (64-bit) w/ AES-NI; Intel Core i5 2500 w/ Solaris 10 - x86 (32-bit)w/ AES-NI; Intel Core i7 w/ Red Hat Enterprise Linux v5.5 - x86 (32-bit)w/ AES-NI; Intel Core i7 w/ Red Hat Enterprise Linux v6.0 - x86 (64-bit) w/ AES-NI; Sun Sparc T4 w/ Solaris 10 - SPARC T4 5/9/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Externally ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 0 , 1024 )
GMAC_Supported
RNG: Val# 1057

XTS( KS: XTS_128( (e/d) (p) ) KS: XTS_256( (e/d) (p) ))

"RSA BSAFE® Crypto-C ME software is designed to help protect sensitive data as it is stored using strong encryption techniques to provide a persistent level of protection. The software supports a wide range of industry standard encryption algorithms offering developers the flexibility to choose the appropriate option to meet their requirements."

2016 GE Healthcare
3000 N Grandview Blvd
Waukesha, WI 53188
USA

-Krishna Inavolu
TEL: 262-391-8589
FAX: 262-548-2910

-Stephanie Swenor
TEL: 262-424-8931
FAX: 262-544-3889

Mocana Cryptographic Library

Version 5.4F (Firmware)
Intel Core 2 Duo 5/7/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally ) ; IV Lengths Tested: ( 0 , 0 )
GMAC_Not_Supported

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"Mocana Cryptographic Library Version 5.4F."

2015 SonicWALL, Inc.
2001 Logic Drive
San Jose, CA 95124
USA

-Usha Sanagala
TEL: 408-962-6248
FAX: 408-745-9300

SonicOS 5.9.0 for NSA and TZ Series

Version 5.9.0 (Firmware)
Cavium Octeon Plus CN50XX; Cavium Octeon Plus CN56XX; Cavium Octeon Plus CN58XX 5/7/2012 CBC ( e/d; 128 , 192 , 256 );

"SonicWALL® Next-Generation Firewalls deliver superior gateway protection, inspection for SSL encrypted sessions, granular application intelligence and control. With SonicWALL Firewalls, IT can visualize applications running across a network-- allocating bandwidth for what''s essential and limiting or blocking what''s not."

05/17/12: Updated implementation information;

2014 Thales e-Security
2200 North Commerce Parkway
Suite 200
Weston, FL 33326
USA

-Joe Warren
TEL: 321-264-2928

Thales Datacryptor

Version 5.0 (Firmware)
PowerPC Core 405 4/30/2012 CBC ( e/d; 256 );

"The Thales Datacryptor protects the confidentiality and integrity of sensitive data travelling over public networks."

2013 McAfee, Inc.
2821 Mission College Blvd.
Santa Clara, CA 95054
USA

-Mark Hanson
TEL: 651-628-1633
FAX: 651-628-2706

McAfee Email Gateway OpenSSL

Version 1.0 (Firmware)
Intel 2x Xeon X5660; Intel Celeron E3400; Intel Core i3-540; Intel Xeon E5640 4/30/2012 CBC ( e/d; 128 , 256 );

"The McAfee Email Gateway OpenSSL v1.0 provides the services necessary to support the cryptographic features and functions of the McAfee Email Gateway line of hardware appliances, blade servers, and virtual appliances."

2012 McAfee, Inc.
2821 Mission College Blvd.
Santa Clara, CA 95054
USA

-Mark Hanson
TEL: 651-628-1633
FAX: 651-628-2706

McAfee Email Gateway OpenSSL

Version 1.0
Intel Xeon E7540 w/ Red Hat Linux 9 running on VMware ESXi v5.0; Intel Xeon E5410 w/ Red Hat Linux 9 running on VMware ESXi v4.1 4/30/2012 CBC ( e/d; 128 , 256 );

"The McAfee Email Gateway OpenSSL v1.0 provides the services necessary to support the cryptographic features and functions of the McAfee Email Gateway line of hardware appliances, blade servers, and virtual appliances."

2011 Open Source Software Institute
8 Woodstone Plaza, Suite 101
Hattiesburg, MS 39402
USA

-John Weathersby
TEL: 601-427-0152
FAX: 601-427-0156

Open Source Software Institute

Version 1.2.4
Intel Core i5 (x86) w/ MAC OS X (64-bit); Intel Core i5 (x86) w/ MAC OS X (32-bit); Apple A5 (ARMv7) w/ IOS 4/30/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"The OpenSSL FIPS Object Module is a cryptographic library that can be downloaded from www.openssl.org/source/."

2010 Chunghwa Telecom Co., Ltd. Telecommunication Laboratories
12, Lane 551, Min-Tsu Road
SEC.5
Yang-Mei, Taoyuan, Taiwan 326
Taiwan, ROC

-Yu-Ling Cheng
TEL: +866-3-4245883
FAX: +886-3-4244147

-Ming-Hsin Chang
TEL: +886-3-4245885
FAX: +886-3-4244147

HiPKI SafGuard 1200 FPGA_lib

Part # EP4CGX150DF27C7N
N/A 4/30/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"HiPKI SafGuard 1200 Cryptographic Library provides highly-secure cryptographic services,identity-based challenge-response authentication, and key storage for PKI Applications in the HiPKI Safguard 1200 HSM"

2009 IBM Internet Security Systems
6303 Barfield Road
Atlanta, GA 30328
USA

-Scott Sinsel

Proventia GX4004

Version 4.3 (Firmware)
Intel Core 2 Duo 4/30/2012 CBC ( e/d; 128 , 192 , 256 );

"The IBM Proventia Network Intrusion Prevention System (IPS) stops Internet threats before they impact your business and delivers protection to all three layers of the network: core, perimeter and remote segments."

2008 IBM Internet Security Systems
6303 Barfield Road
Atlanta, GA 30328
USA

-Scott Sinsel

Proventia GX5008, GX5108, GX5208

Version 4.3 (Firmware)
Intel Xeon 4/30/2012 CBC ( e/d; 128 , 192 , 256 );

"The IBM Proventia Network Intrusion Prevention System (IPS) stops Internet threats before they impact your business and delivers protection to all three layers of the network: core, perimeter and remote segments."

2007 IBM Internet Security Systems
6303 Barfield Road
Atlanta, GA 30328
USA

-Scott Sinsel

Proventia GX6116

Version 4.3 (Firmware)
Intel Xeon 4/30/2012 CBC ( e/d; 128 , 192 , 256 );

"The IBM Proventia Network Intrusion Prevention System (IPS) stops Internet threats before they impact your business and delivers protection to all three layers of the network: core, perimeter and remote segments."

2006 IBM Internet Security Systems
6303 Barfield Road
Atlanta, GA 30328
USA

-Scott Sinsel

Proventia GX7800, GX7412

Version 4.3 (Firmware)
Intel XEON quad core 4/30/2012 CBC ( e/d; 128 , 192 , 256 );

"The IBM Proventia Network Intrusion Prevention System (IPS) stops Internet threats before they impact your business and delivers protection to all three layers of the network: core, perimeter and remote segments."

2005 N/A N/A N/A 4/30/2012 N/A
2004 N/A N/A N/A 4/30/2012 N/A
2003 N/A N/A N/A 4/30/2012 N/A
2002 RADWIN LTD
27 Habarzel St.
Tel Aviv, 69710
Israel

-Elior Mehr
TEL: 972 (3) 769 2801
FAX: 972 (3) 766 2902

RADWIN 5000 Broadband Wireless Infrastructure Radio AES

Version 3.2 (Firmware)
Motorola PowerQuicc MPC 8313 4/26/2012 CBC ( e only; 128 );

"The RADWIN 5000 offers a Sub 6GHz licensed and license-exempt wireless broadband product that delivers high throughput of up to 200 Mbps, long range and unmatched robustness. Supported bands include 2.3-2.7 GHz, 3.3-3.8 GHz, and 4.4-6.4 GHz."

2001 RADWIN LTD
27 Habarzel St.
Tel Aviv, 69710
Israel

-Elior Mehr
TEL: 972 (3) 769 2801
FAX: 972 (3) 766 2902

RADWIN 2000 Broadband Wireless Infrastructure Radio AES

Version 2.6 (Firmware)
Motorola PowerQuicc MPC 8544 4/26/2012 CBC ( e only; 128 );

"The RADWIN 2000 offers a Sub 6GHz licensed and license-exempt wireless broadband product that delivers high throughput of up to 200 Mbps, long range and unmatched robustness. Supported bands include 2.3-2.7 GHz, 3.3-3.8 GHz, and 4.4-6.4 GHz."

2000 SafeNet, Inc.
4690 Millennium Drive
Belcamp, MD 21017
USA

-Chris Brych
TEL: 613-221-5081
FAX: 613-723-5079

-Iain Holness
TEL: 613-221-5049
FAX: 613-723-5079

SafeCGX Cryptographic Library

Version 1.0
Intel Core 2 Duo w/ Microsoft Windows XP SP3; 3.0 GHZ Intel Pentium D Processor 830 (1CPU) w/ Microsoft Windows XP SP2; Intel Core 2 Duo w/ Windows 7 Ultimate SP1 X86 4/26/2012 CBC ( e/d; 128 , 192 , 256 );

"SafeCGX Cryptographic Library provides cryptographic services for the SafeNet ProtectDrive Cryptographic Engine"

1999 SafeNet, Inc.
4690 Millennium Drive
Belcamp, MD 21017
USA

-Chris Brych
TEL: 613-221-5081
FAX: 613-723-5079

-Iain Holness
TEL: 613-221-5049
FAX: 613-723-5079

NetBSD INIT Cryptographic Library

Version 1.0
Intel Core 2 Duo w/ MS Windows XP SP3; 3.0 GHZ Intel Pentium D Processor 830 (1CPU) w/ MS Windows XP SP2; Intel Core 2 Duo w/ Windows 7 Ultimate SP1 X86; Intel Core 2 Duo w / Windows 7 Ultimate SP1 X64 4/26/2012 CBC ( e/d; 256 );

"NetBSD INIT Cryptographic Library provides cryptographic services for the SafeNet ProtectDrive Cryptographic Engine"

05/10/12: Updated vendor information;

1998 SafeNet, Inc.
4690 Millennium Drive
Belcamp, MD 21017
USA

-Chris Brych
TEL: 613-221-5081
FAX: 613-723-5079

-Iain Holness
TEL: 613-221-5049
FAX: 613-723-5079

CRYPdll Cryptographic Library

Version 1.0
Intel Core 2 Duo w/ Windows XP Service Pack 3; Intel Core 2 Duo w/ Windows 7 Ultimate SP1 X86; 3.0 GHZ Intel Pentium D Processor 830 (1CPU) w/ Windows XP Service Pack 2; Intel Core 2 Duo w/ Windows 7 Ultimate SP1 X64 4/26/2012 CBC ( e/d; 128 , 192 , 256 );

"CRYPdll Cryptographic Library provides AES cryptographic services for the SafeNet ProtectDrive Cryptographic Engine"

05/10/12: Updated vendor and implementation information;

1997 MikroM GmbH
Dovestrasse 1
Berlin, Berlin 10587
Germany

-Holger Krahn
TEL: +49 30 398839 0
FAX: +49 30 398839 29

-Michael Hagemeister
TEL: +49 30 398839 0
FAX: +49 30 398839 29

Sam-AES

Version 16337 with 17194 (Firmware)
Xilinx Virtex-6 FPGA XC6VLX130T 4/19/2012 CBC ( d only; 128 );

"MVC201 - Digital Cinema Image Media Block for integration into a TI Series 2 DLP Cinema projector"

1996 MikroM GmbH
Dovestrasse 1
Berlin, Berlin 10587
Germany

-Holger Krahn
TEL: +49 30 398839 0
FAX: +49 30 398839 29

-Michael Hagemeister
TEL: +49 30 398839 0
FAX: +49 30 398839 29

MBP-AES256

Version 15569 (Firmware)
Freescale MCIMX515DJM8C 4/19/2012 CBC ( d only; 256 );

"MVC201 - Digital Cinema Image Media Block for integration into a TI Series 2 DLP Cinema projector"

1995 MikroM GmbH
Dovestrasse 1
Berlin, Berlin 10587
Germany

-Holger Krahn
TEL: +49 30 398839 0
FAX: +49 30 398839 29

-Michael Hagemeister
TEL: +49 30 398839 0
FAX: +49 30 398839 29

MBP-AES128

Version 15569 (Firmware)
Freescale MCIMX515DJM8C 4/19/2012 CBC ( d only; 128 );

"MVC201 - Digital Cinema Image Media Block for integration into a TI Series 2 DLP Cinema projector"

1994 MikroM GmbH
Dovestrasse 1
Berlin, Berlin 10587
Germany

-Holger Krahn
TEL: +49 30 398839 0
FAX: +49 30 398839 29

-Michael Hagemeister
TEL: +49 30 398839 0
FAX: +49 30 398839 29

OpenSSL Crypto Library

Version fips-1.2.3 17302 (Firmware)
Freescale MCIMX515DJM8C 4/19/2012 CBC ( e/d; 128 , 256 );

"MVC201 - Digital Cinema Image Media Block for integration into a TI Series 2 DLP Cinema projector"

1993 Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

-Palani Karuppan
TEL: 408-525-2747
FAX: 408-853-3529

Radio Mac

Part # Marvell 88W8764C
N/A 4/19/2012 CBC ( e only; 128 );

CCM (KS: 128 ) (Assoc. Data Len Range: 22 - 30 ) (Payload Length Range: 10 - 20 ( Nonce Length(s): 13 (Tag Length(s): 8

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 32 Max: 512 ; Tag Len(s) Min: 1 Max: 16 )


"The Cisco Aironet Access Points deliver the versatility, high capacity and enterprise-class features required for small, medium and large Government indoor and outdoor wireless deployments. In FIPS 140-2 mode of operation, the Cisco APs support the IEEE 802.11i and IEEE 802.1x standards and AES for WPA2 encryption."

1992 Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

-Palani Karuppan
TEL: 408-525-2747
FAX: 408-853-3529

HW DTLS

Version 12.4(25e)JA (Firmware)
Part # Freescale SC1023
Freescale SC1023 4/19/2012 CBC ( e/d; 128 );

"The Cisco Aironet Access Points deliver the versatility, high capacity and enterprise-class features required for small, medium and large Government indoor and outdoor wireless deployments. In FIPS 140-2 mode of operation, the Cisco APs support the IEEE 802.11i and IEEE 802.1x standards and AES for WPA2 encryption."

1991 Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

-Palani Karuppan
TEL: 408-525-2747
FAX: 408-853-3529

Crypto Toolkit

Version m8500-018/004u/003i (Firmware)
Freescale SC1023 4/19/2012 ECB ( e/d; 128 ); CBC ( e/d; 128 );

CCM (KS: 128 ) (Assoc. Data Len Range: 22 - 32 ) (Payload Length Range: 32 - 32 ( Nonce Length(s): 13 (Tag Length(s): 12

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 1520 ; Tag Len(s) Min: 1 Max: 16 )


"The Cisco Aironet Access Points deliver the versatility, high capacity and enterprise-class features required for small, medium and large Government indoor and outdoor wireless deployments. In FIPS 140-2 mode of operation, the Cisco APs support the IEEE 802.11i and IEEE 802.1x standards and AES for WPA2 encryption."

1990 Juniper Networks, Inc.
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Robert Smith
TEL: 978-589-8822

OSC

Version 2.1
Intel Core 2 Duo E8400 3.0GHz w/ Microsoft Windows 7 SP1 (64-bit) 4/19/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )


"The Odyssey Security Component (OSC) (SW Version 2.1) is a software module that implements a set of cryptographic algorithms for use by a software application."

1989 Kaseya US Sales, LLC
901 N. Glebe Road, Suite 1010
Arlington, VA 22203
USA

-Bill Durant
TEL: 415-694-5700

Kaseya IT Systems Management Cryptographic Engine OSL

Version 1.0
Intel Core 2 Duo w/ MAC OS X v10.6.8; Intel Core 2 Duo w/ Red Hat Enterprise Linux v5.5 32 bit; Intel Core 2 Duo w/ Red Hat Enterprise Linux v5.5 64 bit; Intel Core 2 Duo w/ Windows Server 2008; Intel Core 2 Duo w/ Windows 7 (32 bit); Intel Core 2 Duo w/ Windows 7 (64 bit) 4/19/2012 ECB ( e/d; 256 ); CTR ( int only; 256 )


"The Kaseya IT Systems Management Platform uses encryption to secure communications between its client and server components. It is an ideal Systems Management solution for government systems and other infrastructures requiring a high assurance implementation."

04/27/12: Updated implementation information;

1988 Kaseya US Sales, LLC
901 N. Glebe Road, Suite 1010
Arlington, VA 22203
USA

-Bill Durant
TEL: 415-694-5700

Kaseya IT Systems Management Cryptographic Engine LTC

Version 1.0
Intel Core 2 Duo w/ MAC OS X v10.6.8; Intel Core 2 Duo w/ Red Hat Enterprise Linux v5.5 32 bit; Intel Core 2 Duo w/ Red Hat Enterprise Linux v5.5 64 bit; Intel Core 2 Duo w/ Windows Server 2008; Intel Core 2 Duo w/ Windows 7 (32 bit); Intel Core 2 Duo w/ Windows 7 (64 bit) 4/19/2012 ECB ( e/d; 256 ); CTR ( int only; 256 )


"The Kaseya IT Systems Management Platform uses encryption to secure communications between its client and server components. It is an ideal Systems Management solution for government systems and other infrastructures requiring a high assurance implementation."

05/09/12: Added new tested information;

1987 Palo Alto Networks, Inc.
3300 Olcott Street
Santa Clara, CA 95054
USA

-Jake Bajic
TEL: (408) 753-3901
FAX: (408) 753-4001

-Lee Klarich
TEL: (408) 753-4000
FAX: (408) 753-4001

PAN-OS 4.0

Version 4.0.10 (Firmware)
Cavium Octeon MIPS64; Intel Multi Core Xeon 4/19/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 )


"The Palo Alto Networks PA-500, PA-2000 Series, PA-4000 Series, and PA-5000 Series firewalls are multi-chip standalone modules that provide network security by enabling enterprises to see and control applications, users, and content using three unique identification technologies: App-ID, User-ID, and Content-ID."

1986 Red Hat, Inc.
1801 Varsity Drive
Raleigh, NC 27606
USA

-Irina Boverman
TEL: 978 392 1000

NSS library softtoken

Version 3.12.9
Intel x86 (64-bit) w/ Red Hat Enterprise Linux 6.2 4/19/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"User space library provided by the Mozilla Foundation for general purpose cryptographic usage. The testing covers the cipher implementations found in the softtoken component of the NSS library."

1985 Red Hat, Inc.
1801 Varsity Drive
Raleigh, NC 27606
USA

-Irina Boverman
TEL: 978 392 1000

NSS library softtoken

Version 3.12.9
AMD Opteron (64-bit) w/ Red Hat Enterprise Linux 6.2 4/19/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"User space library provided by the Mozilla Foundation for general purpose cryptographic usage. The testing covers the cipher implementations found in the softtoken component of the NSS library."

1984 Fortinet, Inc.
1090 Kifer Road
Sunnyvale, CA 94086-5301
USA

-Alan Kaye
TEL: 613-225-9381 x7416
FAX: 613-225-2951

FortiAnalyzer SSL Cryptographic Library

Version 4.0 MR3 (Firmware)
Intel Xeon Quad-Core (Westmere) 4/19/2012 CBC ( e/d; 128 , 192 , 256 );

"The FortiAnalyzer family of logging, analyzing, and reporting appliances securely aggregate log data and content data from Fortinet devices and other syslog-compatible devices. Using a comprehensive suite of customizable reports, users can filter and review records, including traffic, event, virus, attack, Web content, and email data."

1983 ARX (Algorithmic Research)
10 Nevatim St.
Petah-Tikva, Israel 49561
Israel

-Ezer Farhi
TEL: +972-39279529
FAX: +972-39230864

PrivateServer

Version 4.8.1 (Firmware)
Part # 4.7
Intel® Pentium Dual-Core 4/19/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 32 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )


"PrivateServer performs sensitive cryptographic operations internally in a tamper-proof, high performance device. PrivateServer is configured as a network server or as a cryptographic backend to a host"

1982 Marvell Semiconductor, Inc.
5488 Marvell Lane
Santa Clara, CA 95054
USA

-Minda Zhang
TEL: (508) 573-3255
FAX: (508) 573-3311

Armada PXA-610 HW

Part # Armada PXA-610
N/A 4/9/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"Armada PXA-610 is an application processor SoC (http://www.marvell.com/application processors/armada-600/). It has a dedicated security hardware module, known as WTM, that runs secure firmware kernel to perform device trusted boot, access control, authentication, key management, DRM, disk encryption, and FIPS certified cryptographic operations."

1981 RSA, The Security Division of EMC
10700 Parkridge Blvd.
Suite 600
Reston, VA 20191
US

-Brian Girardi
TEL: 703-889-8948

RSA NetWitness Cryptographic Security Module

Version 1.0
Intel Core i3 w/ Windows XP (32 bit); Intel Core i3 w/ Windows 7 (64 bit); Intel Xeon w/ CentOS 5.5 4/9/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"The NetCSM provides encryption for all communications between RSA NetWitness services."

1980 TrellisWare Technologies, Inc.
16516 Via Esprillo Ste. 300
San Diego, CA 92127
USA

-Chris Litvin
TEL: (858) 753-1672
FAX: (858) 753-1640

-Ryan Milne
TEL: (858) 753-1625
FAX: (858) 753-1640

TrellisWare TopX Crypto

Version 3.3 (Firmware)
Mentor Graphics ModelSIM 10 4/9/2012 ECB ( e only; 256 ); CTR ( int/ext; 256 )


"Implementation of TrellisWare TopX Crypto and TrellisWare OpenSSL Crypto in the TW-230 (CheetahNet II) & TW-400 (Cheetah CUB) Radios."

04/19/12: Updated implementation information;

1979 Pitney Bowes, Inc.
37 Executive Drive
Danbury, CT 06810
USA

-Dave Riley
TEL: 203-796-3208

appAes

Version 02000004 (Firmware)
ARM 7 TDMI 4/9/2012 ECB ( e/d; 128 , 256 ); CBC ( e/d; 128 , 256 );

"The Pitney Bowes Cygnus X-3 Hardware Security Module (HSM) employs strong cryptographic and physical security techniques for the protection of funds in Pitney Bowes Postage systems."

1978 Curtiss-Wright Controls, Inc.
2600 Paramount Place, Suite 200
Fairborn, OH 45324
USA

-Paul Davis
TEL: 937-252-5601 x:1261
FAX: 937-252-2729

-Matt Young
TEL: 937-252-5601 x:1363
FAX: 937-252-2729

Curtiss-Wright Controls FSM Cryptographic Engine

Part # 1.11
N/A 4/2/2012 ECB ( e/d; 256 );

"The Flash Storage Module (FSM) AES cryptographic engine uses 256-bit encryption keys and performs real-time encryption of all data written to or read from solid state drives. The FSM cryptographic engines provides maximum data-at-rest security in commercial and military applications."

1977 Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

-Global Certification Team

IOS-XE Cryptographic Implementation

Version 3.3(1)SG (Firmware)
Freescale MPC8572E 4/2/2012 ECB ( e/d; 128 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 256 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 32 ; Tag Len(s) Min: 1 Max: 16 )


"IOS-XE Firmware cryptographic implementations used within Cisco devices to provide cryptographic functions."

06/04/12: Added new tested information;
08/03/12: Updated implementation information;

1976 CipherCloud, Inc.
99 Almaden Blvd., Suite 720
San Jose, CA 95113
USA

-Varun Badhwar
TEL: 415-683-0062

CipherCloud Encryption Gateway

Version 3.0
Part # AES v4
Open Virtual Appliance w/ CentOS 5.7 3/26/2012 CBC ( e/d; 256 ); CFB128 ( e/d; 256 );

"The CipherCloud Encryption gateway provides FIPS approved encryption algorithms to protect sensitive data stored in public cloud environments, while preserving advanced operations such as searching, sorting and reporting."

04/02/12: Updated implementation information;

1975 Certicom Corp.
4701 Tahoe Blvd.
Building A
Missisauga, ON L4W 0B5
Canada

-Certicom Sales
TEL: 905-507-4220
FAX: 905-507-4230

-Kris Orr
TEL: 289-261-4104
FAX: 905-507-4230

Security Builder FIPS Core

Version 6.0.2
64-bit Intel Core i5-2300 w/ Red Hat Linux 5.6; 64-bit Intel Core i5-2300 w/ AES-NI w/ Red Hat Linux 5.6; 64-bit Intel Core i5-2300 w/ Windows 7; 64-bit Intel Core i5-2300 w/ AES-NI w/ Windows 7 3/26/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 10 11 12 13 (Tag Length(s): 8 10 12 14 16 )

CMAC (Generation ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 )
IV Generated: ( Externally ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported
DRBG: Val# 178

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"Security Builder FIPS Core provides application developers with cryptographics tools to easily integrate encryption, digital signatures and other security mechanisms into C-based apps for FIPS 140-2 and Suite B security. It can also be used with Certicom''s PKI, IPSec SSL and DRM modules."

1974 Seagate Technology LLC.
389 Disc Drive
Longmont, CO 80503
USA

-Monty Forehand
TEL: 720-684-2835
FAX: 720-684-2733

LuxorL Plus AES in Hardware

Part # LuxorL Plus
N/A 3/21/2012 ECB ( e/d; 128 , 256 ); CBC ( e/d; 128 , 256 );

XTS( ) KS: XTS_256( (e/d) (f/p) ))

"AES encryption and decryption core of the controller ASIC "LuxorL Plus" in Seagate''s Self- Encrypting Drives (SEDs)."

1973 Gemalto
Avenue du Jujubier Z.I Athelia IV
La Ciotat, 13705
France

-Arnaud Lotigier
TEL: +33-4-42-36-60-74
FAX: +33-4-42-36-55-45

TOP V2

Version Version #11-M1005011+Softmask V04 (Firmware) (Firmware)
Infineon SLE66CLX1280PE 3/21/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 15 Max: 255 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 15 Max: 255 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 15 Max: 255 ; Tag Len(s) Min: 16 Max: 16 )


"This module is based on a Java Card platform (TOP DL V2) with 128K EEPROM memory available. The Cryptographic Module provides dual interfaces (i.e. contact and contact-less) where the same security level is achieved."

1972 Red Hat, Inc.
1801 Varsity Drive
Raleigh, NC 27606
USA

-Irina Boverman
TEL: 978 392 1000

Linux Kernel crypto API

Version 2.6.32-220.4.2.el6
Intel x86 w/ Red Hat Enterprise Linux 6.2 3/16/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 11 (Tag Length(s): 8 12 16 )

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"Linux kernel crypto API implementation providing cryptographic services to software components executing as part of the Linux kernel - this tests covers the generic AES implementation on Intel x86"

1971 Red Hat, Inc.
1801 Varsity Drive
Raleigh, NC 27606
USA

-Irina Boverman
TEL: 978 392 1000

Linux Kernel crypto API

Version 2.6.32-220.4.2.el6
Intel x86 w/ Red Hat Enterprise Linux 6.2 3/16/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 11 (Tag Length(s): 8 12 16 )

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"Linux kernel crypto API implementation providing cryptographic services to software components executing as part of the Linux kernel - this tests covers the asm AES implementation on Intel x86"

1970 Red Hat, Inc.
1801 Varsity Drive
Raleigh, NC 27606
USA

-Irina Boverman
TEL: 978 392 1000

Linux Kernel crypto API

Version 2.6.32-220.4.2.el6
Intel x86 w/ Red Hat Enterprise Linux 6.2 3/16/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 11 (Tag Length(s): 8 12 16 )

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"Linux kernel crypto API implementation providing cryptographic services to software components executing as part of the Linux kernel"

1969 Red Hat, Inc.
1801 Varsity Drive
Raleigh, NC 27606
USA

-Irina Boverman
TEL: 978 392 1000

Linux Kernel crypto API

Version 2.6.32-220.4.2.el6
AMD Opteron w/ Red Hat Enterprise Linux 6.2 3/16/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 11 (Tag Length(s): 8 12 16 )

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"Linux kernel crypto API implementation providing cryptographic services to software components executing as part of the Linux kernel - this tests covers the generic AES implementation on AMD Opteron"

1968 Red Hat, Inc.
1801 Varsity Drive
Raleigh, NC 27606
USA

-Irina Boverman
TEL: 978 392 1000

Linux Kernel crypto API

Version 2.6.32-220.4.2.el6
AMD Opteron w/ Red Hat Enterprise Linux 6.2 3/16/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 11 (Tag Length(s): 8 12 16 )

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"Linux kernel crypto API implementation providing cryptographic services to software components executing as part of the Linux kernel"

1967 Thales e-Security
Meadow View House
Crendon Industrial Estate
Long Crendon
Aylesbury, Buckinghamshire HP18 9EQ
U.K.

-Datacryptor-Certifications
TEL: +44 (0)1844 201800
FAX: +44 (0)1844 208550

Datacryptor AES256 GCM

Version ECDHAES256_GCM_V_1_44 (Firmware)
Motorola Coldfire processor 3/16/2012

GCM (KS: AES_256( e/d ) Tag Length(s): 96 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 8 , 1024 ) ; AAD Lengths tested: ( 96 , 96 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Not_Supported AES Val#1958

"Thales e-Security implements this algorithm for applications running on its Secure Generic Sub System (SGSS) providing secure cryptographic resources to the Datacryptor® 2000 and the Datacryptor® Advanced Performance network encryption products for IP and Link E1/T1 networks."

09/06/12: Updated vendor contact information;
09/10/12: Updated vendor information;
09/17/12: Updated vendor information;

1966 Diversinet Corp.
2235 Sheppard Avenue
East Atria II
Suite 1700
Toronto, Ontario M2J5B5
Canada

-Salah Machani
TEL: 4167562324 Ext. 321
FAX: 4167567346

-Hussam Mahgoub
TEL: 4167562324 Ext. 222
FAX: 4167567346

Diversinet Java Crypto Module for Mobile

Version 2.0
Qualcomm Snapdragon w/ Android OS v2.2 3/16/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )


"Diversinet Java Crypto Module for Mobile is shipped with Diversinet MobiSecure Client SDK for Java based run-time environments on Smartphones and tablets including, Android OS-, BlackBerry OS- and Java ME MIDP-based. The Crypto Module implements several cryptography algorithms including Triple DES, AES, SHA, HMAC, DRBG and RSA."

1965 Diversinet Corp.
2235 Sheppard Avenue
East Atria II
Suite 1700
Toronto, Ontario M2J5B5
Canada

-Salah Machani
TEL: 4167562324 Ext. 321
FAX: 4167567346

-Hussam Mahgoub
TEL: 4167562324 Ext. 222
FAX: 4167567346

Diversinet Java Crypto Module

Version 2.0
Intel Xeon E5530 w/ Windows Server 2008 RC2 (64bit) and JDK 1.6 3/16/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )


"Diversinet Java Crypto Module is a JCA (Java Cryptography Architecture) Provider shipped with Diversinet MobiSecure Products. The Crypto Module implements several JCE (Java Cryptography Extension) algorithms including Triple DES, AES, SHA, HMAC, DRBG and RSA. The Crypto Module is packaged in a signed Java Archive (JAR) file."

1964 Ultra Stereo Labs, Inc.
181 Bonetti Drive
San Luis Obispo, CA 93401-7397
USA

-David Cogley
TEL: 805-549-0161
FAX: 805-549-0163

Video Decryption

Version DECRYPT_TOP.VHD VER 246 (Firmware)
ALTERA EP4SGX230HF35C3N 3/16/2012 CBC ( d only; 128 );

"IMB-1200 HFR, IMB-1000 HFR"

1963 McAfee, Inc.
2340 Energy Park Drive
St. Paul, MN 55108
USA

-Mark Hanson
TEL: 651-628-1633
FAX: 651-628-2701

Kernel Crypto Library for SecureOS®

Version 8.2
Intel Xeon w/ SecureOS 8.2 running on VMware ESXi v4.1; Intel Xeon w/ SecureOS 8.2 running on Crossbeam XOS v9.6.0; Intel Xeon w/ SecureOS 8.2 running on Crossbeam XOS v9.9.0; Intel Xeon w/ SecureOS 8.3 running on VMware ESXi v5.0; Intel Xeon w/ SecureOS 8.3 running on Crossbeam XOS v9.9.0 3/12/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"The Kernel Crypto Library for SecureOS® is a software library that provides cryptographic services for applications on the various deployments of McAfee''s Firewall Enterprise Virtual Appliance."

08/15/12: Added new tested information;
12/27/12: Added new test information;

1962 McAfee, Inc.
2340 Energy Park Drive
St. Paul, MN 55108
USA

-Mark Hanson
TEL: 651-628-1633
FAX: 651-628-2701

64-bit Application Crypto Library for SecureOS®

Version 7.0.1.01
Intel Xeon w/ SecureOS 8.2 running on Crossbeam XOS v9.6.0; Intel Xeon w/ SecureOS 8.2 running on VMware ESXi v4.1; Intel Xeon w/ SecureOS 8.2 running on Crossbeam XOS v9.9.0 3/12/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"The Crypto Library for SecureOS® is a software library that provides cryptographic services for applications on the various deployments of McAfee''s Firewall Enterprise Virtual Appliance."

08/14/12: Added new tested information;

1961 McAfee, Inc.
2340 Energy Park Drive
St. Paul, MN 55108
USA

-Mark Hanson
TEL: 651-628-1633
FAX: 651-628-2701

32-bit Application Crypto Library for SecureOS®

Version 7.0.1.01
Intel Xeon w/ SecureOS 8.2 running on Crossbeam XOS v9.6.0; Intel Xeon w/ SecureOS 8.2 running on VMware ESXi v4.1; Intel Xeon w/ SecureOS 8.2 running on Crossbeam XOS v9.9.0; 3/12/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"The Crypto Library for SecureOS® is a software library that provides cryptographic services for applications on the various deployments of McAfee''s Firewall Enterprise Virtual Appliance."

08/14/12: Added new tested information;

1960 Juniper Networks, Inc.
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Tim Huntley
TEL: 408-936-2817

SRX 650 Routing Engine

Version 11.2 S4 (Firmware)
Cavium Octeon 3/12/2012 CBC ( e/d; 128 , 192 , 256 );

"Juniper Networks SRX Series Services Gateways provide the essential capabilities necessary to connect, secure, and manage enterprise and service provider networks, from the smallest sites to the largest headquarters and data centers."

03/14/12: Updated implementation information;

1959 Juniper Networks, Inc.
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Tim Huntley
TEL: 408-936-2817

SRX 650 Service Processing Unit

Version 11.2 S4 (Firmware)
Cavium Octeon 3/12/2012 CBC ( e/d; 128 , 192 , 256 );

"Juniper Networks SRX Series Services Gateways provide the essential capabilities necessary to connect, secure, and manage enterprise and service provider networks, from the smallest sites to the largest headquarters and data centers."

03/14/12: Updated implementation information;

1958 Thales e-Security
Meadow View House
Crendon Industrial Estate
Long Crendon
Aylesbury, Buckinghamshire HP18 9EQ
U.K.

-Datacryptor-Certifications
TEL: +44 (0)1844 201800
FAX: +44 (0)1844 208550

Datacryptor AES256

Version ECDHAES256_V_1_44 (Firmware) (Firmware)
Motorola Coldfire processor 3/12/2012 ECB ( e/d; 256 ); CBC ( e/d; 256 ); CFB8 ( e/d; 256 ); OFB ( e/d; 256 );

"Thales e-Security implements this algorithm for applications running on its Secure Generic Sub System (SGSS) providing secure cryptographic resources to the Datacryptor® 2000 and the Datacryptor® Advanced Performance network encryption products for IP and Link E1/T1 networks."

09/06/12: Updated vendor contact information;
09/10/12: Updated vendor information;
09/17/12: Updated vendor information;

1957 Juniper Networks, Inc.
1194 N. Mathilda Ave.
Sunnyvale, CA 94089
USA

-Tim Huntley
TEL: 408-936-2817

LN1000-V Mobile Routing Engine

Version 11.2 S4 (Firmware)
Cavium Octeon 3/12/2012 CBC ( e/d; 128 , 192 , 256 );

"Juniper Networks LN1000-V Mobile Secure Router IPSec designed specifically for the Internet. A full suite of industrial-strength routing protocols, a flexible policy language, and a leading MPLS implementation efficiently scale to large numbers of network interfaces and routes."

03/14/12: Updated implementation information;

1956 Juniper Networks, Inc.
1194 N. Mathilda Ave.
Sunnyvale, CA 94089
USA

-Tim Huntley
TEL: 408-936-2817

LN1000-V Mobile Service Processing Unit

Version 11.2 S4 (Firmware)
Cavium Octeon 3/12/2012 CBC ( e/d; 128 , 192 , 256 );

"Juniper Networks LN1000-V Mobile Secure Router IPSec designed specifically for the Internet. A full suite of industrial-strength routing protocols, a flexible policy language, and a leading MPLS implementation efficiently scale to large numbers of network interfaces and routes."

03/14/12: Updated implementation information;

1955 N/A N/A N/A 3/12/2012 N/A
1954 Entrust, Inc.
One Lincoln Centre
5400 LBJ Freeway
Suite 1340
Dallas, TX 75240
USA

-Entrust Sales
TEL: 888-690-2424

Entrust Authority™ Java Toolkit

Version 8.0
Intel Core 2 Duo E8400 w/ Microsoft Windows Server 2008 R2 with Oracle J2RE 7 3/12/2012

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 8 , 1024 ) ; AAD Lengths tested: ( 8 , 1024 ) ; IV Lengths Tested: ( 96 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Not_Supported AES Val#1935
RNG: Val# 1019
DRBG: Val# 170

"The Java toolkit is an implementation of cryptographic functions accessible by an object-oriented API. Depending on configuration, the algorithms may be implemented in software, hardware, or both. The industry standard Cryptopki API from PKCS #11, is used as the interface to hardware-based cryptographic modules."

1953 Quest Software, Inc.
5 Polaris Way
Aliso Viejo, CA 92656
USA

-Dr. Einar Mykletun
TEL: 949-754-8136
FAX: 949-754-8499

-Simon Fogg

Quest Software's LibTomCrypt

Version 1.17
Intel Xeon 5410 w/ Microsoft Windows XP Pro SP3 3/7/2012 ECB ( e/d; 256 );

"Quest NetVault Backup is a cross-platform backup and recovery software solution that safeguards your data and applications in both physical and virtual environments- from one intuitive console. This scalable enterprise solution supports dozens of server and application platforms."

1952 Hagiwara Solutions Co., Ltd.
2-5-12 Nishiki
Naka-ku, Nagoya, Aichi 460-0003
Japan

-Yoshihiro Kito
TEL: +81-53-455-6700
FAX: +81-53-455-6701

-Masaki Takikawa
TEL: +81-53-455-6700
FAX: +81-53-455-6701

TRUESSD Crypto Engine - AES

Part # HS200S-F
N/A 3/7/2012 ECB ( e/d; 128 , 192 , 256 );

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"The TRUESSD Crypto Engine is the hardware-based data encryption and decryption engine. This cryptographic engine provides the secure data protection found in Hagiwara Solutions storage products."

1951 RSA, The Security Division of EMC
174 Middlesex Turnpike
Bedford, MA 01730
USA

-Damon Hopley
TEL: 781-515-6355

RSA BSAFE Crypto-C Micro Edition (ME)

Version 3.0.0.15
Intel Celeron M(Dothan) w/ NetBSD 2.1; PMC Sierra RM7035C w/ NetBSD 2.1 3/7/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )


"RSA BSAFE® Crypto-C ME software is designed to help protect sensitive data as it is stored using strong encryption techniques to provide a persistent level of protection. The software supports a wide range of industry standard encryption algorithms offering developers the flexibility to choose the appropriate option to meet their requirements."

03/21/12: Added new tested information;

1950 VMware, Inc.
3401 Hillview Ave
Palo Alto, CA 94303
USA

-Eric Betts
TEL: (650) 427-1902

VMware vCenter Server Virtual Appliance Cryptographic Engine

Version 5.0 build 47235
Intel Xeon w/ Virtual Appliance based on: SLES 11 SP1 for Vmware; AMD Opteron w/ Virtual Appliance based on: SLES 11 SP1 for Vmware 1/11/2012 CBC ( e/d; 128 , 256 );

"The VMware vCenter Server Virtual Appliance Cryptographic engine provides the cryptographic services to VMware''s vCenter Server Virtual Appliance application."

1949 SUSE Linux Products GmbH
Maxfeldstr. 5
Nuremberg, 90409
Germany

-Roman Drahtmüller
TEL: + 49 911 74053127

OpenSSL

Version 0.9.8j-0.28.1
Intel x86-64 w/ SUSE Linux Enterprise Server 11 SP2 2/29/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"User space library providing general cryptographic services which can be linked to from any program. The module was tested with 64bit word size."

1948 SUSE Linux Products GmbH
Maxfeldstr. 5
Nuremberg, 90409
Germany

-Roman Drahtmüller
TEL: + 49 911 74053127

OpenSSL

Version 0.9.8j-0.28.1
Intel x86-64 w/ SUSE Linux Enterprise Server 11 SP2 2/29/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"User space library providing general cryptographic services which can be linked to from any program. The module was tested with 64bit word size and covers the AES NI Intel support."

1947 SUSE Linux Products GmbH
Maxfeldstr. 5
Nuremberg, 90409
Germany

-Roman Drahtmüller
TEL: + 49 911 74053127

OpenSSL

Version 0.9.8j-0.28.1
Intel x86-64 w/ SUSE Linux Enterprise Server 11 SP2 2/29/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"User space library providing general cryptographic services which can be linked to from any program. The module was tested with 32bit word size."

1946 SUSE Linux Products GmbH
Maxfeldstr. 5
Nuremberg, 90409
Germany

-Roman Drahtmüller
TEL: + 49 911 74053127

OpenSSL

Version 0.9.8j-0.28.1
Intel x86-64 w/ SUSE Linux Enterprise Server 11 SP2 2/29/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"User space library providing general cryptographic services which can be linked to from any program. The module was tested with 32bit word size and covers the AES NI Intel support."

1945 iDirect Technologies, Inc.
13865 Sunrise Valley Drive
Suite 100
Herndon, VA 20171
USA

-Paul Harr
TEL: 703-648-8225
FAX: 703-648-8088

-Karl Fuchs
TEL: 703-648-8247

Security Kernel FPGA Cryptographic Implementation

Version 2.3.1 (Firmware)
Altera Stratix II 2/29/2012 CBC ( e/d; 256 );

"iDirect''s AES-based bidirectional link encryption and TRANSEC DVB-S2 feature, combined with other system features such as cutting-edge coding techniques, acceleration and compression provides a fully integrated IP networking solution where security, performance and bandwidth efficiency are critical."

1944 iDirect Technologies, Inc.
13865 Sunrise Valley Drive
Suite 100
Herndon, VA 20171
USA

-Paul Harr
TEL: 703-648-8225
FAX: 703-648-8088

-Karl Fuchs
TEL: 703-648-8247

Security Kernel Cryptographic Implementation

Version 2.3.1 (Firmware)
Intel IXP465 2/29/2012 CBC ( e/d; 256 ); CFB128 ( e/d; 256 );

"iDirect''s AES-based bidirectional link encryption and TRANSEC DVB-S2 feature, combined with other system features such as cutting-edge coding techniques, acceleration and compression provides a fully integrated IP networking solution where security, performance and bandwidth efficiency are critical."

1943 Gemalto
Avenue du Jujubier Z.I Athelia IV
La Ciotat, 13705
France

-Michael Bruyere
TEL: +33-4-42-36-61-65
FAX: +33-4-42-36-57-92

-Anthony Vella
TEL: +33-4-42-36-61-38
FAX: +33-4-42-36-52-36

MultiApp V2.1 Platform Cryptographic Library

Version 1.2 (Firmware)
Part # NXP P5Cx081 Family
NXP P5Cx081 Family 2/29/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"MultiApp V2.1 is a highly secured smartcard platform conformant to the Javacard 2.2.2 and GP 2.1.1 standards, designed to operate on the NXP P5Cx081 family, inclusive of NXP P5CC081 and P5CC145 integrated circuits. Its cryptographic library implements TDEA, AES, SHA, RSA, RSA CRT, ECDSA, ECC CDH and RNG ANSX9.31 algorithms."

1942 NEC Display Solutions, Ltd.
Mita Kokusai Building 4-28, Mita 1-chome
Minato-ku, Tokyo 108-0073
Japan

-Michio Yoshino
TEL: +81-465-85-2413
FAX: +81-465-85-2445

NEC FPGA

Version 1.011 (Firmware)
Xilinx Virtex-5 FPGA 2/29/2012 CBC ( d only; 128 );

"Image Media Block"

1941 NEC Display Solutions, Ltd.
Mita Kokusai Building 4-28, Mita 1-chome
Minato-ku, Tokyo 108-0073
Japan

-Michio Yoshino
TEL: +81-465-85-2413
FAX: +81-465-85-2445

Crypto Module

Version 1.1.2 (Firmware)
AMCC PowerPC 440 2/29/2012 CBC ( e/d; 128 );

"Image Media Block"

1940 Link-A-Media Devices Corporation
2550 Walsh Avenue, Suite 200
Santa Clara, CA 95051
USA

-Hsiao-Heng Kelin Lee
TEL: 408-987-2414
FAX: 408-987-2401

FL2_AES_Crypto

Part # 1.0
N/A 2/29/2012 ECB ( e/d; 128 , 256 ); CBC ( e/d; 128 , 256 ); CTR ( ext only; 128 , 256 )

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"The FL2_AES_Crypto is a high-speed AES hardware encryption/decryption engine used in LAMD SoC products. It supports ECB (e/d; 128, 256), CBC (e/d; 128, 256) and CTR (int only; 128, 256) modes."

1939 Brocade Communications Systems, Inc.
130 Holger Way
San Jose, CA 95134
USA

-Michael Williamson
TEL: 408 333 5691

-Farzam Tajbakhsh
TEL: 408 333 7443

Brocade ServerIron ADX

Version 12.3.03 (Firmware)
Freescale MPC8572E 2/23/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"Our Goal is to receive FIPS 140-2 SL2 certification on the above platforms. For this, we have identified the cryptographic boundary to be the management module (with access to E2PROM on backplane). The software is to be updated to use NSS/NSPR as the cryptographic engine."

1938 Proofpoint, Inc.
892 Ross Drive
Sunnyvale, CA 94089
USA

-Jun Wang
TEL: 408-338-6680
FAX: 408-517-4710

Proofpoint C++ Security Library

Version 1.0
Dell Latitude E6400 w/ Cent OS 5 2/23/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"A C++ based library to provide cryptographic functionality for C++ applications."

1937 Digital Monitoring Products, Inc.
2500 N. Partnership Boulevard
Springfield, MO 65803-8877
USA

-Terry Shelton
TEL: (417) 831-9362
FAX: (417) 447-9698

-Leanna Bremenkamp
TEL: (417) 831-9362
FAX: (417) 447-9698

734N Encryption

Version 100 (Firmware)
NXP LPC2368 2/23/2012 ECB ( e/d; 128 );

"The 734N Wiegand Interface Module allows you to add networked access control capability to DMP Panels. The panels provide system door control, arming, and disarming using proximity or mag-stripe devices. The 734N operates on 12/24 VDC input and provides four supervised power-limited programmable zones."

1936 Websense, Inc.
10240 Sorrento Valley Road
San Diego, CA 92121
USA

-Joshua Rosenthol
TEL: 858-320-9684

Websense Crypto Module Java

Version 1.0
Intel Xeon w/ Windows Server 2008 R2 (64-bit) with JRE v1.6.0 2/21/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"The Websense Crypto Module Java provides cryptographic and secure communication services for the Websense-developed family of web security, email security, and data loss prevention solutions, deployed on high-performance, pre-configured hardware or as fully-customizable "ready-to-install" software."

1935 Entrust, Inc.
One Lincoln Centre
5400 LBJ Freeway
Suite 1340
Dallas, TX 75240
USA

-Entrust Sales
TEL: 888-690-2424

Entrust Authority™ Java Toolkit

Version 8.0
Intel Core 2 Duo E8400 w/ Microsoft Windows Server 2008 R2 with Oracle J2RE 6; Intel Core 2 Duo E8400 w/ Microsoft Windows Server 2008 R2 with Oracle J2RE 7 2/21/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 1 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 1 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 1 Max: 16 )


"The Java toolkit is an implementation of cryptographic functions accessible by an object-oriented API. Depending on configuration, the algorithms may be implemented in software, hardware, or both. The industry standard Cryptopki API from PKCS #11, is used as the interface to hardware-based cryptographic modules."

1934 FRAMA AG
Unterdorf
Lauperswil, Bern CH-3438
Switzerland

-Beat Waelti
TEL: +41-34-49698-98
FAX: +41-34-49698-00

PSD-II by FRAMA

Version V2.0.4 (Firmware)
Part # FRM-II Version 1.2
firmware: running on built-in Fujitsu MB91302APM1R micro controller 2/21/2012 ECB ( e/d; 128 ); CBC ( e/d; 128 );

"The PSD-II (Postal Security Device-II) is a hardware/firmware cryptographic module to be used in automated franking machines."

1933 Open Source Software Institute
8 Woodstone Plaza, Suite 101
Hattiesburg, MS 39402
USA

-John M Weathersby, Jr.
TEL: 601-427-0152

OpenSSL FIPS Object Module Library

Version 1.2.3
Freescale PowerPC-32 w/ Wind River 4.0 using Linux kernel 2.6.34; Freescale PowerPC-32 w/ Wind River 1.4 using Linux kernel 2.6.27 2/21/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"The OpenSSL FIPS Cryptographic Module is a validated source code component of the standard OpenSSL distribution that can be downloaded from the http://openssl.org/ website. It has been tested with both assembler optimization and without assembler optimization."

1932 Certes Networks Inc
300 Corporate Center Drive
Suite 140
Pittsburgh, PA 15108
USA

-Todd Cignetti
TEL: 412-262-2571
FAX: 412-262-2574

-Kevin Nigh
TEL: 412-262-2571
FAX: 412-262-2574

Certes Networks CEP Cryptographic Library #1

Version 2.1 (Firmware)
NetLogic XLS; NetLogic XLR; NetLogic XLP 2/7/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"Certes Networks CEP-VSEs are high performance enforcement points offering variable speed encryption and authentication from 3 Mbps-10Gbps. Policies are defined in a centralized management solution. Roles are assigned for policy control and device management. CEP-VSEs encrypt at Layers 2, 3 or 4 in a way that is transparent to the network."

1931 Websense, Inc.
10240 Sorrento Valley Road
San Diego, CA 92121
USA

-Joshua Rosenthol
TEL: +1 858-320-3684

Websense Crypto Module C

Version 1.0
64-bit Intel Xeon w/ 64-bit Windows2008 R2; 64-bit Intel Xeon w/ 32-bit Red Hat Enterprise Linux 6 2/7/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"Websense produces a family of web, e-mail, and data security solutions that can be deployed on pre-configured security-hardened hardware or as customer installable software. The Websense Crypto Module C provides support for cryptographic and secure communications services for these solutions."

1930 Motorola Mobility, Inc.
600 North US Highway 45
Libertyville, IL 60048
USA

-Ed Simon
TEL: (800) 617-2403

Motorola Mobility Cryptographic Library

Version 5.4fm
ARMv7 w/ Android 2.3; ARMv7 w/ Android 4.0 2/7/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 0 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 128 , 128 ) ; OtherIVLen_Supported
GMAC_Supported

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (p) ))

"Motorola Mobility cryptographic module is used for application level data encryption on Android-based devices."

05/14/12: Added new tested information;

1929 Hewlett Packard Development Company, L.P.
4209 Technology Drive
Fremont, CA 94538
USA

-Kurt Heberlein
TEL: (510)-668-9441
FAX: (510)-413-5998

HP-3PAR InFormOS

Version 3.1.1.MU1
Intel Quad Core 2.8GHz w/ Gnu/Linux (Debian)5.0.2_libcrypto (OpenSSL); Intel Quad Core 2.8GHz w/ Gnu/Linux (Debian)5.0.2_libgcrypt (GNUTLS); 1/26/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )


"InFormOS is built on a hardened base of Debian Linux with proprietary extensions, and utilizes standard versions of libcrypto (OpenSSL) and libgcrypt (GNUTLS) for crypto operations."

04/02/12: Added new tested information;

1928 Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

-Global Certification Team

OpenSSL

Version OpenSSL-fips-2.0-test-20110925
Freescale MPC8347 w/ Linux 2.6.36 1/26/2012 ECB ( e/d; 128 ); CBC ( e/d; 128 , 256 ); CTR ( ext only; 128 )


"All cryptographic implementations are in software by way of OpenSSL, whose version is 1.1.0-SNAP-20110615."

11/01/12: Updated vendor information;

1927 Hewlett-Packard Company
153 Taylor Street
Littleton, MA 01460
USA

-Boby Joseph
TEL: 1-978-264-5379
FAX: 1-978-264-5522

HP Comware

Version 5.2
RMI(Netlogic) XLS408 w/ Comware V5.2; Freescale MPC8544 w/ Comware V5.2; Freescale MPC8349 w/ Comware V5.2; Broadcom BCM5836 w/ Comware V5.2; Broadcom BCM112X w/ Comware V5.2 1/26/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"Comware cryptographic library is a software library that provides cryptographic functions within HP devices."

1926 LogLogic, Inc.
110 Rose Orchard Way, Suite 200
San Jose, CA 95134
USA

-Chima Njaka
TEL: (408) 215-5843

-Phuong Hoang
TEL: (408) 731-7022

Communications Cryptographic Module

Version 1.0
Intel Xeon w/ Oracle Enterprise Linux v5.6 1/26/2012 CFB128 ( e/d; 256 );

"The Communications Cryptographic Module establishes a secure, encrypted tunnel between LogLogic appliances for the secure transmission of log data."

02/17/12: Updated implementation information;

1925 WinMagic Inc.
200 Matheson Blvd. West
Suite 201
Mississuaga, Ontario L5R 3L7
Canada

-Alexander Mazuruc
TEL: (905) 502-7000 x225
FAX: (905) 502-7001

-Garry McCracken
TEL: (905) 502-7000 x269
FAX: (905) 502-7001

SecureDoc Fast AES Library

Version 6.1
Intel Core 2 Duo 64-bit w/ MacOS X 10.7.2 64-bit; Intel Core 2 Duo 32-bit w/ MacOS X 10.7.2 32-bit; Intel Core i5 2540M with AES-NI w/ Windows 7 64-bit; Intel Core i7 740QM w/ Windows 7 64-bit; Intel Core i5 2540M with AES-NI w/ Windows 7 32-bit; Intel Core i7 740QM w/ Windows 7 32-bit; 1/26/2012 CBC ( e/d; 256 );

"SecureDoc Fast AES Library implements AES algorithm using encryption instructions embedded in the latest generation of CPU. The library provides three different entries which allow SecureDoc software to invoke the code optimal for speeding up encryption in the environment with CPU supporting AES-NI set of instructions."

1924 WinMagic Inc.
200 Matheson Blvd. West
Suite 201
Mississuaga, Ontario L5R 3L7
Canada

-Alexander Mazuruc
TEL: (905) 502-7000 x225
FAX: (905) 502-7001

-Garry McCracken
TEL: (905) 502-7000 x269
FAX: (905) 502-7001

SecureDoc Cryptographic Library

Version 6.1
Intel Core i5 2450M w/ Windows 7 64-bit; Intel Core 2 Duo w/ Mac OS X 10.7.2 64-bit 1/19/2012 ECB ( e/d; 256 ); CBC ( e/d; 256 );

"SecureDoc Cryptographic Library implements cryptographic algorithms for SecureDoc Cryptographic Module. This Module is utilized by SecureDoc encryption software that delivers full disk encryption and other data protection solutions for General Purpose Computers, laptops and removable media."

1923 Entrust, Inc.
One Lincoln Centre
5400 LBJ Freeway
Suite 1340
Dallas, TX 75240
USA

-Entrust Sales
TEL: 888-690-2424

Entrust Authority™ Security Kernel

Version 8.1sp1
Intel Core 2 Duo E8400 w/ Windows Server 2008 R2 Enterprise Edition 1/19/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 8 , 1024 ) ; AAD Lengths tested: ( 8 , 1024 ) ; IV Lengths Tested: ( 96 , 1024 ) ; OtherIVLen_Supported
GMAC_Not_Supported
RNG: Val# 1011
DRBG: Val# 167

"The Security Kernel is a C++ implementation of cryptographic functions accessible by an object-oriented API. Depending on configuration, the algorithms may be implemented in software, hardware or both. The industry standard Cryptoki API from PKCS #11, is used as the interface to hardware-based cryptographic modules."

1922 Catbird Networks, Inc.
1800 Green Hills Road, Suite 113
Scotts Valley, CA 95066
USA

-Michael Berman
TEL: 831-440-8152

Catbird vSecurity Crypto Module v1.0

Version v1.0
Intel Core i5 with AES-NI w/ CentOS 6.0 1/19/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 96 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported
RNG: Val# 1010
DRBG: Val# 166

XTS( KS: XTS_128( (f) ) KS: XTS_256( (f) ))

"The cryptographic module used by Catbird''s comprehensive security and compliance solutions for virtualized data centers."

01/30/12: Added new tested information;

1921 VMware, Inc.
3401 Hillview Ave
Palo Alto, CA 94303
USA

-Eric Betts
TEL: (650) 427-1902

VMware vSphere Client Cryptographic Engine

Version 5.0 build 455964
Intel Core i5 w/ Microsoft Windows 7 SP1 64 bit; AMD Athlon w/ Microsoft Windows 7 SP1 64 bit 1/5/2012 CBC ( e/d; 128 , 256 );

"The VMware vSphere Client Cryptographic Engine provides the cryptographic services to VMware''s vSphere Client application."

1920 VMware, Inc.
3401 Hillview Ave
Palo Alto, CA 94303
USA

-Eric Betts
TEL: (650) 427-1902

VMware vCLI Cryptographic Engine

Version 5.0 build 422456
Intel Xeon w/ Microsoft Windows Server 2008 SP2 64 bit; AMD Opteron w/ Microsoft Windows Server 2008 SP2 64 bit 1/5/2012 CBC ( e/d; 128 , 256 );

"The VMware vCLI Cryptographic Engine provides the cryptographic services to VMware''s vCLI."

1919 VMware, Inc.
3401 Hillview Ave
Palo Alto, CA 94303
USA

-Eric Betts
TEL: (650) 427-1902

VMware ESXI Cryptographic Engine

Version 5.0 build 469512
Intel Xeon. w/ 64 bit VMware ESXI; AMD Opteron w/ 64 bit VMware ESXI 1/5/2012 CBC ( e/d; 128 , 256 );

"The VMware ESXI Cryptographic Engine provides the cryptographic services to VMware''s ESXI server product.."

1918 VMware, Inc.
3401 Hillview Ave
Palo Alto, CA 94303
USA

-Eric Betts
TEL: (650) 427-1902

VMware vCenter Server Java Cryptographic Engine

Version 5.0 build 455964
Intel Core i3 w/ Windows Vista SP2 64 bit; AMD Athlon w/ Windows Vista SP2 64 bit 1/5/2012 CBC ( e/d; 128 );

"The VMware vCenter Server Java Cryptographic Engine provides the cryptographic services to VMware''s vCenter Server product."

1917 McAfee, Inc.
2821 Mission College Blvd.
Santa Clara, CA 95054
USA

-Mark Hanson
TEL: +1 651-628-1633
FAX: +1 651-628-2706

-Luis Chirinos
TEL: +1 408-346-3784

RSA Bsafe CryptoJ

Version 4.1
Intel Xeon w/ CGLinux 12/29/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 )
IV Generated: ( Externally ) ; PT Lengths Tested: ( 8 , 1024 ) ; AAD Lengths tested: ( 8 , 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Not_Supported

"McAfee Firewall Enterprise Control Center simplifies the management of multiple McAfee Firewall Enterprise appliances. Control Center enables centralized management and monitoring of the McAfee Firewall Enterprise solutions, allowing network administrators to centrally define firewall policy, deploy updates and inventory their firewall products."

1916 Cummings Engineering Consultants, Inc.
145 S. 79th St., Suite 26
Chandler, AZ 85226
USA

-Darren Cummings
TEL: 480-809-6024

Cummings Engineering's Secure Mobility Suite B Crypto Module v1.0

Version v1.0
TI OMAP 3 w/ Linux 3.0.4; Intel Pentium T4200 w/ Android 2.2; Qualcomm QSD 8250 w/ Android 2.2; Intel Pentium T4200 w/ Ubuntu 10.04; Intel Celeron (64 bit mode) w/ Microsoft Windows 7; Intel Core i5 (with AES-NI) w/ Android 2.2; Intel Core i5 (with AES-NI) (64 bit mode) w/ Microsoft Windows 7; Intel Core i5 (with AES-NI) w/ Fedora 14 1/26/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 96 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported
RNG: Val# 1007
DRBG: Val# 161

XTS( KS: XTS_128( (f) ) KS: XTS_256( (f) ))

"The cryptographic module used by the Cummings Engineering suite of products which allow for efficient and effective deployment of robust secure communications capability on commercial off the shelf (COTS) devices, such as Smartphones and Tablets, as well as speciality communications devices."

02/01/12: Added new tested information;

1915 SUSE Linux Products GmbH
Maxfeldstr. 5
Nuremberg, 90409
Germany

-Roman Drahtmüller
TEL: + 49 911 74053127

OpenSSL-098j-x86-64A

Version 0.9.8j-0.20.1
Intel x86-64 w/ SUSE Linux Enterprise Server 11 SP2 12/29/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"User space library providing general cryptographic services which can be linked to from any program. The module was tested with 64bit word size and covers the AES NI Intel support."

1914 SUSE Linux Products GmbH
Maxfeldstr. 5
Nuremberg, 90409
Germany

-Roman Drahtmüller
TEL: + 49 911 74053127

OpenSSLl-098j-x86-64

Version 0.9.8j-0.20.1
Intel x86-64 w/ SUSE Linux Enterprise Server 11 SP2 12/29/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"User space library providing general cryptographic services which can be linked to from any program. The module was tested with 64bit word size."

1913 SUSE Linux Products GmbH
Maxfeldstr. 5
Nuremberg, 90409
Germany

-Roman Drahtmüller
TEL: + 49 911 74053127

OpenSSL-098j-x86-32A

Version 0.9.8j-0.20.1
Intel x86-64 w/ SUSE Linux Enterprise Server 11 SP2 12/29/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"User space library providing general cryptographic services which can be linked to from any program. The module was tested with 32bit word size and covers the AES NI Intel support."

1912 SUSE Linux Products GmbH
Maxfeldstr. 5
Nuremberg, 90409
Germany

-Roman Drahtmüller
TEL: + 49 911 74053127

OpenSSL-098j-x86-32

Version 0.9.8j-0.20.1
Intel x86-64 w/ SUSE Linux Enterprise Server 11 SP2 12/29/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"User space library providing general cryptographic services which can be linked to from any program. The module was tested with 32bit word size."

1911 RSA, The Security Division of EMC
174 Middlesex Turnpike
Bedford, MA 01730
USA

-Damon Hopley
TEL: 781-515-6355

RSA BSAFE® Crypto-J JSAFE and JCE Software Module

Version 6.0
Intel T7300 Core 2 Duo w/ Android 2.2 ARM (32-bit) JRE 6.0; AMD Athlon 64 X2 Dual-Core Processor 3800+ w/ Microsoft Windows 7 (64-bit) with Sun JRE 6.0 12/29/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported
DRBG: Val# 160

XTS( KS: XTS_128( (f) ) KS: XTS_256( (f) ))

"RSA BSAFE Crypto-J security software is designed to help protect sensitive data as it is stored using strong encryption techniques to provide a persistent level of protection. It supports a wide range of industry standard encryption algorithms offering Java developers the flexibility to choose the option most appropriate to meet their requirements"

01/05/12: Updated implementation information;

1910 Xceedium, Inc.
30 Montgomery Street, Suite 1020
Jersey City, NJ 07302
USA

-Dave Olander
TEL: 201-225-8250
FAX: 201-536-1200

-Ryan W. Maple
TEL: 201-225-8242

Xceedium GateKeeper Linux IPSec Kernel Module

Version 2.6.36.1+xcd01 (Firmware)
Intel Xeon E5645; Intel Core 2 Duo 12/29/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"Xceedium''s GateKeeper appliance delivers a secure centralized management platform. IT operations can provide touch free support and securely manage/control vendors, outsourced developers and MSP''s."

1909 Xceedium, Inc.
30 Montgomery Street, Suite 1020
Jersey City, NJ 07302
USA

-Dave Olander
TEL: 201-225-8250
FAX: 201-536-1200

-Ryan W. Maple
TEL: 201-225-8242

Xceedium GateKeeper OpenSSL Implementation

Version 1.2+5.2.1.1 (Firmware)
Intel Xeon E5645; Intel Core 2 Duo 12/29/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"Xceedium''s GateKeeper appliance delivers a secure centralized management platform. IT operations can provide touch free support and securely manage/control vendors, outsourced developers and MSP''s."

1908 Red Hat, Inc.
1801 Varsity Drive
Raleigh, NC 27606
USA

-Robert Relyea
TEL: 650-254-4236

Network Security Services (NSS) Cryptographic Module

Version 3.12.9.1
Intel Core i7 w/ Red Hat Enterprise Linux v6.2 64-bit; Intel Core i7 with AES-NI w/ Red Hat Enterprise Linux v6.2 64-bit; Intel Core i7 w/ Red Hat Enterprise Linux v6.2 32-bit 1/19/2012 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( );

"Network Security Services (NSS) is a set of open source C libraries designed to support cross-platform development of security-enabled applications. NSS implements major Internet security standards. NSS is available free of charge under a variety of open source compatible licenses. See http://www.mozilla.org/projects/security/pki/nss/."

01/26/12: Updated implementation information;

1907 Q1 Labs
890 Winter Street, Suite 230
Waltham, MA 02451
USA

-Ellen Knickle
TEL: 506-444-6870
FAX: 506-459-7016

-Peter Clark
TEL: 506-635-4900
FAX: 506-459-7016

Cryptographic Security Kernel (CSK)

Version 1.0
Intel Xeon w/ CentOS 5.7; Intel Xeon w/ RHEL 5.7 12/16/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"The Q1 Labs Cryptographic Security Kernel is a multi-algorithm library providing general-purpose cryptographic services. The module provides a single, FIPS-Approved API for cryptography allowing for centralized FIPS mode status, logging, and reporting."

1906 Fiber Logic Communications, Inc.
5F-3, No.9 Prosperity Road One, Science-Park
Hsinchu City, 408
TAIWAN

-Jun Tseng
TEL: 03-5638889#217
FAX: 03-5638899

FiberLogic Cryptographic Library #1

Version 1.00.00 (Firmware)
AMCC PowerPC 12/16/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )


"The FiberLogic Cryptographic Library #1 provides cryptographic functionality for data integrity, digital signature and secure network traffic."

1905 Skymedi Corporation
No. 10-1, Lixing 1st Rd., Science Park
Hsinchu City, 300
Taiwan, R.O.C.

-Frank Chang
TEL: +886-3-5781638#8571
FAX: +886-3-5781626

Skymedi Crypto Library

Version 1.0 (Firmware)
Cadence NC-Verilog simulator 12/16/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

XTS( KS: XTS_128( (f) ) KS: XTS_256( (f) ))

"Skymedi Crypto Library provides share-level AES 256-bit encryption to block all unauthorized access attempts to your shared folders. The smart data check feature ensures the encryption key security is up to enterprise standard. The encrypted shared folder is usually unmounted and inaccessible, until it is mounted by entering the encryption key."

1904 SafeNet, Inc.
20 Colonnade Road
Suite 200
Ottawa, ON K2E 7M6
Canada

-Chris Brych
TEL: 613 221 5081
FAX: 613 723 5079

-Laurie Smith
TEL: 613 221 5026
FAX: 613 723 5079

Luna K5 Cryptographic Library

Version 4.8.7 (Firmware)
StrongARM II 80219 12/16/2011 ECB ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 32 Max: 16384 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 32 Max: 16384 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 32 Max: 16384 ; Tag Len(s) Min: 8 Max: 16 )


"The Luna K5 Cryptographic Library provides a broad suite of high-performance cryptographic operations. All cryptographic algorithms are implemented within the module''s firmware and associated co-processor."

1903 Fiber Logic Communications, Inc.
5F-3, No.9 Prosperity Road One, Science-Park
Hsinchu City, 408
TAIWAN

-Jun Tseng
TEL: 03-5638889#217
FAX: 03-5638899

FiberLogic Cryptographic Core

Version 1.0001 (Firmware)
n/a 12/16/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )


"The FiberLogic Cryptographic Core (Firmware implemented by FPGA) provides cryptographic functionality for secure network traffic."

1902 Synology Inc.
3F-3, No. 106, Chang-An W. Rd.
Taipei, Taiwan 10351
Taiwan

-Evan Tu
TEL: 02-25521814#852
FAX: 02-25521824

Synology DiskStation AES Encryption Module for ARM

Version 1.0
ARM processor w/ Embedded Linux 12/16/2011 CBC ( e/d; 128 , 192 , 256 );

"Synology DiskStation Manager provides share-level AES 256-bit encryption to block all unauthorized access attempts to your shared folders. Its encryption key security is up to enterprise standard. The encrypted shared folder is usually unmounted and inaccessible, until it is mounted by entering the encryption key."

1901 Motorola Solutions, Inc.
1301 East Algonquin Road
Schaumburg, IL 60196
USA

-Kirk Mathews
TEL: 847-576-4101

Motorola Solutions PIKE2 AES256

Version R02.01.00 (Firmware)
Part # 51009397004
Motorola PIKE2 51009397004 12/16/2011 ECB ( e/d; 256 ); CBC ( e/d; 256 ); CFB8 ( e/d; 256 ); OFB ( e/d; 256 ); CTR ( ext only; 256 )


"The PIKE2 cryptographic processor is used in security modules embedded in Motorola Solutions security products."

12/23/11: Updated implementation information;

1900 Fortinet, Inc.
1090 Kifer Road
Sunnyvale, CA 94086-5301
USA

-Alan Kaye
TEL: 613-225-9381 x7416
FAX: 613-225-2951

-Langley Rock
TEL: 613-225-9381 x7424
FAX: 613-225-2951

Fortinet FortiOS SSL Cryptographic Library

Version 4.3 (Firmware)
Intel Xeon; Intel Xeon LC series; Intel Xeon L Series; Intel Core 2 Duo; Intel Celeron; ARM V5 Compatible SOC; Intel EP80579 12/16/2011 CBC ( e/d; 128 , 192 , 256 );

"This focuses on the firmware implementation of the Fortinet FortiOS SSL Cryptographic Library 4.3 running on Intel Xeon."

12/23/11: Added new tested information;

1899 Fortinet, Inc.
1090 Kifer Road
Sunnyvale, CA 94086-5301
USA

-Alan Kaye
TEL: 613-225-9381 x7416
FAX: 613-225-2951

-Langley Rock
TEL: 613-225-9381 x7424
FAX: 613-225-2951

Fortinet FortiOS FIPS Cryptographic Library

Version 4.3 (Firmware)
Intel Xeon; Intel Xeon LC series; Intel Xeon L series; Intel Core 2 Duo; Intel Celeron; ARM v5 Compatible SoC; Intel EP80579 12/16/2011 CBC ( e/d; 128 , 192 , 256 );

"This focuses on the firmware implementation of the Fortinet FortiOS FIPS Cryptographic Library 4.3 running on Intel Xeon."

12/23/11: Added new tested information;

1898 Motorola Mobility, Inc.
600 North US Highway 45
Libertyville, IL 60048-5343
USA

-Stuart Kreitzer
TEL: 954-723-8307
FAX: 954-723-6177

SMC_Driver_AES

Version AG01.04 (Firmware)
Part # OMAP4
TI OMAP4 12/13/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"The Motorola Mobility Cryptographic Module is a hybrid multi-chip module comprised of both software and hardware. The module boundary contains AES and SHA cryptographic hardware accelerators and software driver libraries running on a Texas Instruments OMAP4 applications processor."

1897 McAfee, Inc.
2821 Mission College Blvd.
Santa Clara, CA 95054
USA

-Mark Hanson
TEL: +1 651-628-1633
FAX: +1 651-628-2706

-Luis Chirinos
TEL: +1 408-346-3784

RSA Bsafe CryptoJ

Version 4.1 (Firmware)
Intel Xeon E5540 2.53GHz Quad Core; Intel Celeron E3400 2.60GHz Dual Core; 12/13/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 )
IV Generated: ( Externally ) ; PT Lengths Tested: ( 8 , 1024 ) ; AAD Lengths tested: ( 8 , 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Not_Supported

"McAfee Firewall Enterprise Control Center simplifies the management of multiple McAfee Firewall Enterprise appliances. Control Center enables centralized management and monitoring of the McAfee Firewall Enterprise solutions, allowing network administrators to centrally define firewall policy, deploy updates and inventory their firewall products."

1896 Covia Labs
465 Fairchild Dr. Suite 130
Mountain View, CA 94043
USA

-Bruce Bernstein
TEL: 650-351-6444
FAX: 650-564-9740

CCCM Library

Version 2.0
Intel Pentium 4 w/ Ubuntu Linux version 11; AMD E-350 w/ Red Hat Enterprise Linux version 5.8 12/13/2011 CFB128 ( e/d; 128 , 192 , 256 );

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 0 , 0 ) ; 96BitIV_Supported
GMAC_Supported AES Val#1896
DRBG: Val# 158

"The cccmLib is a dynamically linked library whose sole use is to serve as a cryptographic engine to the Covia Labs Connector application. In particular the cccmLib will provide the underlying functionality needed to implement secured communications and an encrypted file system."

12/16/11: Update implementation information;

1895 Red Hat, Inc.
1801 Varsity Drive
Raleigh, NC 27606
USA

-Irina Boverman
TEL: 978 392 1000

OpenSSL (Intel 64bit-AESNI)

Version 1.0.0-20.el6
Part # Intel Westmere
Intel Westmere x86 w/ Red Hat Enterprise Linux 6.2 12/13/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"User space library providing general cryptographic services which can be linked to from any program. The module was tested with 64bit word size. This test covers the AES-NI implementation."

1894 Red Hat, Inc.
1801 Varsity Drive
Raleigh, NC 27606
USA

-Irina Boverman
TEL: 978 392 1000

OpenSSL (Opteron 32bit)

Version 1.0.0-20.el6
AMD Opteron w/ Red Hat Enterprise Linux 6.2 12/13/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"User space library providing general cryptographic services which can be linked to from any program. The module was tested with 32bit word size."

1893 Red Hat, Inc.
1801 Varsity Drive
Raleigh, NC 27606
USA

-Irina Boverman
TEL: 978 392 1000

OpenSSL (Opteron 64bit)

Version 1.0.0-20.el6
AMD Opteron w/ Red Hat Enterprise Linux 6.2 12/13/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"User space library providing general cryptographic services which can be linked to from any program. The module was tested with 64bit word size."

1892 Red Hat, Inc.
1801 Varsity Drive
Raleigh, NC 27606
USA

-Irina Boverman
TEL: 978 392 1000

libgcrypt (Intel 64bit)

Version 1.4.5-9.el6_2.2
Intel x86 w/ Red Hat Enterprise Linux 6.2 12/13/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )


"User space library derived from GnuPG which can now be linked to from any program. The module was tested with 64bit word size."

04/19/12: Updated implementation information;

1891 Red Hat, Inc.
1801 Varsity Drive
Raleigh, NC 27606
USA

-Irina Boverman
TEL: 978 392 1000

libgcrypt (Opteron 32bit)

Version 1.4.5-9.el6_2.2
AMD Opteron w/ Red Hat Enterprise Linux 6.2 12/13/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )


"User space library derived from GnuPG which can now be linked to from any program. The module was tested with 32bit word size."

04/23/12: Updated implementation information;

1890 Red Hat, Inc.
1801 Varsity Drive
Raleigh, NC 27606
USA

-Irina Boverman
TEL: 978 392 1000

libgcrypt (Opteron 64bit)

Version 1.4.5-9.el6_2.2
AMD Opteron w/ Red Hat Enterprise Linux 6.2 12/13/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )


"User space library derived from GnuPG which can now be linked to from any program. The module was tested with 64bit word size."

04/23/12: Updated implementation information;

1889 Red Hat, Inc.
1801 Varsity Drive
Raleigh, NC 27606
USA

-Irina Boverman
TEL: 978 392 1000

OpenSSL (Intel 64bit)

Version 1.0.0-20.el6
Intel x86 w/ Red Hat Enterprise Linux 6.2 12/13/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"User space library providing general cryptographic services which can be linked to from any program. The module was tested with 64bit word size."

1888 Red Hat, Inc.
1801 Varsity Drive
Raleigh, NC 27606
USA

-Irina Boverman
TEL: 978 392 1000

OpenSSL (Intel 32bit)

Version 1.0.0-20.el6
Intel x86 w/ Red Hat Enterprise Linux 6.2 12/13/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"User space library providing general cryptographic services which can be linked to from any program. The module was tested with 32bit word size."

1887 Red Hat, Inc.
1801 Varsity Drive
Raleigh, NC 27606
USA

-Irina Boverman
TEL: 978 392 1000

OpenSSL (Intel 32bit-AESNI)

Version 1.0.0-20.el6
Part # Intel Westmere
Intel Westmere x86 w/ Red Hat Enterprise Linux 6.2 12/13/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"User space library providing general cryptographic services which can be linked to from any program. The module was tested with 32bit word size. This test covers the AES-NI implementation."

1886 Red Hat, Inc.
1801 Varsity Drive
Raleigh, NC 27606
USA

-Irina Boverman
TEL: 978 392 1000

libgcrypt (Intel 32bit)

Version 1.4.5-9.el6_2.2
Intel x86 w/ Red Hat Enterprise Linux 6.2 12/13/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )


"User space library derived from GnuPG which can now be linked to from any program. The module was tested with 32bit word size."

04/19/12: Updated implementation information;

1885 Blue Coat Systems, Inc.
420 N. Mary Avenue
Sunnyvale, California 94085-4121
USA

-Wendi Ittah
TEL: (703) 399-0535

-Tammy Green
TEL: (801) 999-2973

SGOS 5.5 Cryptographic Library

Version 1.12.1 (Firmware)
AMD Opteron Shanghai Quad Core; Intel P4 Xeon w/ SGOS v5.5; Intel Celeron w/ SGOS v5.5 12/13/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"The SGOS 5.5 is a proprietary operating system developed specifically for use on a series of hardware appliances that serve as an Internet proxy and Wide Area Network (WAN) optimizer. The series of appliances supported are 510 Series, 810 Series, and 9000 Series."

1884 OpenSSL Software Foundation, Inc.
1829 Mount Ephraim Road
Adamstown, MD 27101
USA

-Steve Marquess
TEL: 877-673-6775

OpenSSL FIPS Object Module

Version 2.0
Qualcomm QSD 8250 (HTC Desire; ARMv7) w/ Android 2.2; Qualcomm QSD 8250 (Dell Streak; ARMv7) w/ Android 2.2; Intel Itanium 2 (64 bit mode) w/ HP-UX 11i; Intel Itanium 2 (32 bit mode) w/ HP-UX 11i; Freescale PowerPC32-e300 w/ Linux 2.6.33; TI OMAP 3530 (ARMv7) w/ Android 2.2; Intel Pentium (R) T4200 w/ Ubuntu 10.04; ARM Limited ARM922T (ARMv4) w/ uCLinux 0.9.29; NVIDIA Tegra 250 T20 (Motorola Xoom, ARMv7) w/ Android 3.0; Intel Core i5 with AES-NI (64 bit mode) w/ Fedora 14; Intel Core i5 with AES-NI (32 bit mode) w/ Ubuntu 10.04; Intel Celeron (32 bit mode) w/ Microsoft Windows 7; TI TNETV1050 w/ VxWorks 6.8; PowerPC e300c3 w/ Linux 2.6.27; Intel Pentium T4200 (64 bit mode) w/ Cascade Server 6.10; Intel Pentium T4200 (32 bit mode) w/ Cascade Server 6.10; Intel Pentium 4 (64 bit mode) w/ Microsoft Windows 7; TI AM3703CBP w/ Linux 2.6.32; Broadcom BCM11107 (ARMv6) w/ Linux 2.6;TI TMS320DM6446 (ARMv7) w/ Linux 2.6; Intel Xeon 5675 (x86) with AES-NI (32 bit mode) w/ Oracle Solaris 11; Intel Xeon 5675 (x86) (64 bit mode) w/ Oracle Solaris 11; Intel Pentium T4200 (x86) (32 bit mode) w/ Ubuntu 10.04; Intel Xeon 5675 (x86) (32 bit mode) w/ Oracle Solaris 11; Intel Xeon 5675 (x86) with AES-NI (64 bit mode) w/ Oracle Solaris 11; Intel Pentium T4200 (x86) (64 bit mode) w/ Ubuntu 10.04; SPARC-T3 (SPARCv9) (32 bit mode) w/ Oracle Solaris 10; SPARC-T3 (SPARCv9) (64 bit mode) w/ Oracle Solaris 10; Intel Xeon 5675 (x86) (64 bit mode) w/ Oracle Linux 5; Intel Xeon 5675 with AES-NI (64 bit mode) w/ Oracle Linux 5; Intel Xeon 5675 (64-bit mode) w/ Oracle Linux 6; Intel Xeon 5675 with AES-NI (64-bit mode) w/ Oracle Linux 6; SPARC-T3 (SPARCv9) (32-bit mode) w/ Oracle Solaris 11; SPARC-T3 (SPARCv9) (64-bit mode) w/ Oracle Solaris 11; NVIDIA Tegra 250 T20 (ARMv7) w/ Android 4.0; Freescale PowerPC-e500 w/ Linux 2.6; TI C64x+ w/ DSP Media Framework 1.4; TI OMAP 3 (ARMv7) with NEON w/ Android 4.0 11/29/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Externally ) ; PT Lengths Tested: ( 1024 , 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 96 , 1024 )
GMAC_Not_Supported

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"The OpenSSL FIPS Object Module is a full featured general purpose cryptographic library that is distributed in source code form under an open source license. It can be downloaded from www.openssl.org/source/."

12/14/11: Updated implementation information;
12/21/11: Added new tested information;
01/26/12: Added new tested information;
01/30/12: Added new tested information;
02/27/12: Added new tested information;
03/20/12: Added new tested information;
04/02/12: Updated implementation information;
04/24/12: Updated implementation information;
04/26/12: Added new tested information;
05/31/12: Added new tested information;
06/08/12: Updated implementation information;
06/29/12: Updated implementation informaton;
07/02/12: Added new tested information;

1883 McAfee, Inc.
2821 Mission College Blvd.
Santa Clara, CA 95054
USA

-David Gerendas
TEL: 949-860-3369
FAX: 949-297-5575

McAfee Low Level Disk Handler AES

Version 6.1.3
Intel Core i3 w/ Windows XP 32-bit; Intel Core i3 w/ Windows 7 64-bit; Intel Core i5 with AES-NI w/ Windows 7 32-bit; Intel Core i5 with AES-NI w/ Windows Vista 32-bit; Intel Core i7 with AES-NI w/ Windows Vista 64-bit; Intel Core i7 with AES-NI w/ Windows 7 64-bit 11/29/2011 ECB ( e/d; 256 ); CBC ( e/d; 256 ); CFB8 ( e/d; 256 );

"This Cryptographic algorithm module provides cryptographic functionality for McAfee''s Endpoint Encryption product range."

12/07/11: Updated implementation information;

1882 McAfee, Inc.
2821 Mission College Blvd.
Santa Clara, CA 95054
USA

-David Gerendas
TEL: 949-860-3369
FAX: 949-297-5575

McAfee Endpoint Encryption Disk Driver AES

Version 6.1.3
Intel Core i3 w/ Window XP 32-bit; Intel Core i7 with AES-NI w/ Windows Vista 64-bit; Intel Core i5 with AES-NI w/ Windows Vista 32-bit; Intel Core i7 with AES-NI w/ Windows 7 64-bit; Intel Core i3 w/ Windows 7 64-bit; Intel Core i5 with AES-NI w/ Windows 7 32-bit; Intel Core i7 with AES-NI w/ McAfee Endpoint Encryption Preboot OS; Intel Core i5 with AES-NI w/ McAfee Endpoint Encryption Preboot OS; Intel Core i3 w/ McAfee Endpoint Encryption Preboot OS 11/29/2011 ECB ( e/d; 256 ); CBC ( e/d; 256 ); CFB8 ( e/d; 256 );

"This Cryptographic algorithm module provides cryptographic functionality for McAfee''s Endpoint Encryption product range."

1881 McAfee, Inc.
2821 Mission College Blvd.
Santa Clara, CA 95054
USA

-David Gerendas
TEL: 949-860-3369
FAX: 949-297-5575

McAfee Endpoint Encryption Client AES

Version 6.1.3
Intel Core i3 w/ Windows XP 32-bit; Intel Core i5 with AES-NI w/ Winodws Vista 32-bit; Intel Core i7 with AES-NI w/ Windows Vista 64-bit; Intel Core i7 with AES-NI w/ Windows 7 64-bit; Intel Core i3 w/ Windows 7 64-bit; Intel Core i5 with AES-NI w/ Windows 7 32-bit; Intel Core i7 with AES-NI w/ McAfee Endpoint Encryption Preboot OS; Intel Core i5 with AES-NI w/ McAfee Endpoint Encryption Preboot OS; Intel Core i3 w/ McAfee Endpoint Encryption Preboot OS 11/29/2011 ECB ( e/d; 256 ); CBC ( e/d; 256 ); CFB128 ( e/d; 256 );

"This Cryptographic algorithm module provides cryptographic functionality for McAfee''s Endpoint Encryption product range."

12/07/11: Updated implementation information;

1880 N/A N/A N/A 11/22/2011 N/A
1879 Hewlett-Packard Company
8000 Foothills Boulevard
Roseville, CA 95747
USA

-Sunnil Amanna
TEL: (916) 785 1183
FAX: (916) 785 1103

HP W*-15 Cryptographic Library

Version 5.3.1
ARM 11 core w/ Integrity 5.0 11/22/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )


"Standard operating software for W*-platform switch product."

12/01/11: Updated implementation information;
03/06/12: Updated implementation information;

1878 Crossbeam Systems, Inc.
80 Central Street
Boxborough, MA 01719
USA

-Carole Hunt
TEL: +1 978-318-7583

-Dave Schiff
TEL: +1 978-318-7655

LibGCrypt

Version 1.4.4 (Firmware)
Intel Xeon 11/22/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int/ext; 128 , 192 , 256 )


"Libgcrypt provides cryptographic implementations used by libvirt, a library that offers virtualization support for the module."

12/22/11: Updated implementation information;

1877 Crossbeam Systems, Inc.
80 Central Street
Boxborough, MA 01719
USA

-Carole Hunt
TEL: +1 978-318-7583

-Dave Schiff
TEL: +1 978-318-7655

OpenSSL

Version 0.9.8e (Firmware)
Intel Xeon 11/22/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"OpenSSL provides the cryptographic implementations used in the SSH functionality provided by the module."

12/22/11: Updated implementation information;

1876 Motorola Solutions, Inc.
1301 East Algonquin Road
Schaumburg, IL 60196
USA

-Kirk Mathews
TEL: 847-576-4101

Motorola Solutions µMace AES256

Version R00.00.01_AES_256 (Firmware)
Part # AT58Z04
Motorola µMace AT58Z04 11/17/2011 ECB ( e/d; 256 ); CBC ( e/d; 256 ); CFB8 ( e/d; 256 ); CTR ( ext only; 256 )


"The µMace cryptographic processor is used in security modules embedded in Motorola Solutions security products."

1875 Blue Coat Systems, Inc.
420 N. Mary Avenue
Sunnyvale, California 94085-4121
USA

-Wendi Ittah
TEL: (703) 399-0535

-Tammy Green
TEL: (801) 999-2973

SGOS 6.1 Cryptographic Library

Version 2.1.1 (Firmware)
AMD Opteron Shanghai Quad Core; Intel Xeon Lynnfield X3450 Quad Core; Intel Clarkdale i3-540 Dual Core; Intel Clarkdale G1101; Intel P4 Xeon; VIA Nano; Intel Celeron; AMD Opteron Istanbul 6 Core processor 11/17/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"The SGOS 6.1 is a proprietary operating system developed specifically for use on a series of hardware appliances that serve as an Internet proxy and Wide Area Network (WAN) optimizer. The series of appliances supported are 510 Series, 600 Series, 810 Series, 900 Series and 9000 Series."

01/30/12: Made correction to the implementation information;

1874 Imation Corp.
Discovery Bldg. 1A-041
Oakdale, MN 55128
USA

-Larry Hamid
TEL: 408-737-4308

Imation Crypto Library - P

Part # 294.010
N/A 11/17/2011 ECB ( e/d; 256 ); CBC ( e/d; 256 );

"The Imation Secure Flash Drive includes a high-speed hardware-based AES cryptography engine for encrypting and decrypting NAND flash and RAM buffers via USB. It also includes RSA, HMAC, SHA, and DRBG algorithms."

11/22/11: Update vendor information;
08/13/12: Updated vendor and implementation information;

1873 IBM
z/VM Design and Development
1701 North Street
Building 250-2
Endicott, NY 13760
U.S.

-Brian W. Hugenbruch
TEL: 607-429-3660

IBM z/VM 6.1 System SSL

Version 6.1 plus APAR PM43382
Part # 5741-A08
System z10 Enterprise Class processor w/ IBM z/VM V6.1 11/17/2011 CBC ( e/d; 128 , 256 );

"z/VM System SSL provides cryptographic functions which allows z/VM to protect data using the SSL/TLS protocols. z/VM System SSL also enables administrators to create and manage X.509 V3 certificates and keys within key database files."

1872 Apple Inc.
11921 Freedom Drive
Reston, VA 20190
USA

-Shawn Geddis
TEL: 703-264-5103
FAX: 866-315-1954

-Ruben Brochner
TEL: 703-264-3206
FAX: 703-264-5157

Apple FIPS Cryptographic Module

Version v1.1
Intel® Core 2 Duo w/ Mac OS X v10.7.0 11/17/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"Apple''s OS X Lion (v10.7) security services are now built on a newer ''Next Generation Cryptography'' platform and does not use the CDSA/CSP module previously validated. Apple is re-validating the same CDSA/CSP module under OS X Lion to provide validation solely for third-party applications."

1871 Bluelon
Nattergalevej 6
Copenhagen, NV DK-2400
Denmark

-Thomas Bonde
TEL: +45 3321 4012
FAX: +45 3321 4014

MB 5000 AES

Version 4.0 (Firmware)
Part # MB 5000
FT 5000 Processor 11/17/2011 ECB ( e only; 256 );

"The MB 5000 device module provides advanced high-speed cryptographic AES data encryption of transmitted protocol data."

11/29/11: Updated implementation information;

1870 SonicWALL, Inc.
2001 Logic Drive
San Jose, CA 95124
USA

-Usha Sanagala
TEL: 408-962-6248
FAX: 408-745-9300

Libcrypto

Version 1.0.0c (Firmware)
Intel Xeon Nehalem; Intel Celeron; Intel Core 2 Duo 11/17/2011 ECB ( e/d; 256 ); CBC ( e/d; 128 , 256 );

"SonicWALL SRA EX6000, SRA EX7000 and SRA EX9000 are part of the SonicWALL Enterprise product family. They provide hardware appliance based SSL VPN Virtual Private Network remote access solutions to a wide variety of end user devices including Microsoft Windows, Apple OSX, Linux, Apple iOS and Google Android among others."

1869 SonicWALL, Inc.
2001 Logic Drive
San Jose, CA 95124
USA

-Usha Sanagala
TEL: 408-962-6248
FAX: 408-745-9300

Ojdk

Version 1.6.0u20 (Firmware)
Intel Xeon Nehalem; Intel Celeron; Intel Core 2 Duo 11/17/2011 ECB ( e/d; 128 , 256 ); CBC ( e/d; 128 , 256 );

"SonicWALL SRA EX6000, SRA EX7000 and SRA EX9000 are part of the SonicWALL Enterprise product family. They provide hardware appliance based SSL VPN Virtual Private Network remote access solutions to a wide variety of end user devices including Microsoft Windows, Apple OSX, Linux, Apple iOS and Google Android among others."

1868 SonicWALL, Inc.
2001 Logic Drive
San Jose, CA 95124
USA

-Usha Sanagala
TEL: 408-962-6248
FAX: 408-745-9300

Avcrypto

Version 1.0.0c (Firmware)
Intel Xeon Nehalem (AES-NI); Intel Celeron; Intel Core 2 Duo 11/17/2011 ECB ( e/d; 128 , 256 ); CBC ( e/d; 128 , 256 );

"SonicWALL SRA EX6000, SRA EX7000 and SRA EX9000 are part of the SonicWALL Enterprise product family. They provide hardware appliance based SSL VPN Virtual Private Network remote access solutions to a wide variety of end user devices including Microsoft Windows, Apple OSX, Linux, Apple iOS and Google Android among others."

1867 Fujitsu limited
4-1-1 Kamikodanaka
Nakahara-ku
Kawasaki, Kanagawa 211-8588
Japan

-Eugene Owens
TEL: 408-746-6486
FAX: 408-746-8016

-Hiroyuki Miura

ETERNUS DX400/DX8000 Controller Module

Version V20L80 (Firmware)
Intel(R) Xeon(R) 11/9/2011 ECB ( e/d; 128 , 256 );

XTS( KS: XTS_128( (e/d) (f) )

"ETERNUS DX400/DX8000 Controller Module is a module which manages the whole disk storage system. In order to prevent a data leakage by removal of disks, the disk encryption mechanism encrypts data on the disks. This encryption function is valid if the Disk Encryption mechanism is activated through GUI."

01/17/12: Updated vendor PCO and implementation information;

1866 IBM Corporation
2455 South Road
Poughkeepsie, New York 12601-5400
USA

-William Penny
TEL: 1-845-435-3010

-Jim Sweeny
TEL: 1-845-435-7453

IBM z/OS(r) Cryptographic Services ICSF PKCS #11

Version OA36882
Part # 5694-A01
IBM zEnterprise 196 (z196) w/ IBM z/OS® V1.13 11/9/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 0 , 0 ) ; 96BitIV_Supported
GMAC_Supported
DRBG: Val# 151

"ICSF is a software element of z/OS that works with hardware cryptographic features and the Security Server (RACF) to provide secure, high-speed cryptographic services in the z/OS environment. ICSF, which runs as a started task, provides the application programming interfaces by which applications request the cryptographic services."

11/15/11: Update implementation information;

1865 IBM Corporation
2455 South Road
Poughkeepsie, New York 12601-5400
USA

-William Penny
TEL: 845-435-3010

-Alyson Comer
TEL: 607-429-4309

IBM z/OS® Cryptographic Services System SSL - 64-bit

Version OA36775
IBM zEnterprise 196 w/ IBM z/OS® V1.13 11/9/2011 CBC ( e/d; 128 , 256 );

"z/OS® System SSL provides a rich set of C based applcation programming interfaces that allow applications to protect data using the SSL/TLS protocols and through PKCS#7 cryptographic messages. z/OS System SSL also enables applications to create and manage X.509 V3 certificates and keys within key database files and PKCS#11 tokens."

1864 IBM Corporation
2455 South Road
Poughkeepsie, New York 12601-5400
USA

-William Penny
TEL: 845-435-3010

-Alyson Comer
TEL: 607-429-4309

IBM z/OS® Cryptographic Services System SSL - 31-bit

Version OA36775
Part # 5694-A01
IBM zEnterprise 196 w/ IBM z/OS® V1.13 11/9/2011 CBC ( e/d; 128 , 256 );

"z/OS® System SSL provides a rich set of C based applcation programming interfaces that allow applications to protect data using the SSL/TLS protocols and through PKCS#7 cryptographic messages. z/OS System SSL also enables applications to create and manage X.509 V3 certificates and keys within key database files and"

1863 Cubic Global Tracking Solutions
1919 Gallows Road, Suite 600
Vienna, VA 22182
USA

-Sunny Taylor
TEL: 1-850-872-7099

Mist ™ AES-CCM

Version 8052 (Firmware)
Part # Texas Instruments CC2530
Texas Instruments CC2530 11/9/2011 ECB ( e/d; 128 ); CBC ( e/d; 128 ); CTR ( int only; 128 )

CCM (KS: 128 ) (Assoc. Data Len Range: 0 - 28 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 13 (Tag Length(s): 8


"Universal AES-CCM implementation for mist™ mesh network.""

11/15/11: Update implementation and vendor information;

1862 McAfee, Inc.
2821 Mission College Blvd.
Santa Clara, CA 95054
USA

-Mark Hanson
TEL: +1 651-628-1633
FAX: +1 651-628-2706

-Luis Chirinos
TEL: +1 408-346-3784

OpenSSL MFE

Version 1.0
CGLinux w/ Intel Xeon 10/31/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"McAfee Firewall Enterprise Control Center simplifies the management of multiple McAfee Firewall Enterprise appliances. Control Center enables centralized management and monitoring of the McAfee Firewall Enterprise solutions, allowing network administrators to centrally define firewall policy, deploy updates and inventory their firewall products."

1861 Centrify Corporation
785 N Mary Avenue
Suite 200
Sunnyvale, CA 94085
USA

-Keith Moreau
TEL: 415 412 6482

Centrify Cryptographic Module

Version 1.0
Intel Core i7 2GHz w/ Mac OS 10.7 10/31/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 256 )


"The Centrify Cryptographic Module provides the cryptographic services for all of Centrify''s products."

1860 SafeNet, Inc.
20 Colonnade Road, Suite 200
Ottawa, ON K2E 7M6
Canada

-Chris Brych
TEL: 613-221-5081
FAX: 613-723-5079

-Iain Holness
TEL: 613-221-5049
FAX: 613-723-5079

NITROX Lite Security Macro Processor

Part # CN1010-350BG256-G
N/A 10/31/2011 CBC ( e/d; 128 , 192 , 256 );

"The NITROX Lite CN1010 is one member of the NITROX line of award winning processors from Cavium Networks. The NITROX Lite CN1010 is based on a common core hardware processor architecture."

1859 SafeNet, Inc.
20 Colonnade Road, Suite 200
Ottawa, ON K2E 7M6
Canada

-Chris Brych
TEL: 613-221-5081
FAX: 613-723-5079

-Iain Holness
TEL: 613-221-5049
FAX: 613-723-5079

ProtectServer Internal-Express

Version 3.20.00 (Firmware)
StrongARM 80219 10/31/2011 ECB ( e/d; 128 , 192 , 256 );

"The SafeNet PSI-e provides a wide range of cryptographic functions."

11/03/11: Update implementation information;

1858 Fortinet, Inc.
1090 Kifer Road
Sunnyvale, CA 94086-5301
USA

-Alan Kaye
TEL: 613-225-9381 x7416
FAX: 613-225-2951

FortiASIC Hardware Accelerated Cryptographic Library

Part # CP-7
N/A 10/31/2011 CBC ( e/d; 128 , 192 , 256 );

"FortiOS in combination with FortiGate appliances provide enterprise-class protection against network, content, and application-level threats. FortiOS provides integrated firewall, VPN, antivirus, antispam, intrusion prevention, content filtering and traffic shaping and HA capabilities."

01/19/12: Updated implementation information;

1857 Fortinet, Inc.
1090 Kifer Road
Sunnyvale, CA 94086-5301
USA

-Alan Kaye
TEL: 613-225-9381
FAX: 613-225-2951

FortiOS SSL Cryptographic Library

Version 4.0 MR3(Firmware)
Intel Xeon E Series 10/31/2011 CBC ( e/d; 128 , 192 , 256 );

"FortiOS in combination with FortiGate appliances provide enterprise-class protection against network, content, and application-level threats. FortiOS provides integrated firewall, VPN, antivirus, antispam, intrusion prevention, content filtering and traffic shaping and HA capabilities."

04/09/12: Updated implementation information;

1856 Fortinet, Inc.
1090 Kifer Road
Sunnyvale, CA 94086-5301
USA

-Alan Kaye
TEL: 613-225-9381 x7416
FAX: 613-225-2951

FortiOS FIPS Cryptographic Library

Version 4.0 MR3(Firmware)
Intel Xeon E Series 10/31/2011 CBC ( e/d; 128 , 192 , 256 );

"FortiOS in combination with FortiGate appliances provide enterprise-class protection against network, content, and application-level threats. FortiOS provides integrated firewall, VPN, antivirus, antispam, intrusion prevention, content filtering and traffic shaping and HA capabilities."

04/09/12: Updated implementation information;

1855 Hewlett-Packard TippingPoint
14231 Tandem Boulevard
Austin, TX 78728
USA

-Dinesh Vakharia
TEL: 512-432-2628

-Freddie Jimenez Jr.
TEL: 512-432-2907

TippingPoint S6100N Intrusion Prevention System (IPS) Firmware

Version 3.2.1.1639 (Firmware)
NetLogic XLR 10/31/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"The TippingPoint S6100N Intrusion Prevention System (IPS) operates in-line in the network, blocking malicious and unwanted traffic, while allowing good traffic to pass unimpeded."

1854 Aruba Networks
1322 Crossman Ave
Sunnyvale, CA 94089-1113
USA

-Robbie Gill
TEL: 408-754-8406

-Glen Beasley
TEL: 408-419-4288

Aruba OS OpenSSL Module

Version 6.1.2.3 (Firmware)
RMI-XLS204; RMI-XLS408; RMI-XLR508; RMI-XLR516; RMI-XLR532; RMI-XLR7300 10/31/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )


"Aruba Networks'' Mobility Controller system completely changes how 802.11 networks are deployed, secured, and managed. The only mobile security system with an integrated ICSA-certified stateful firewall and hardware-based encryption, the Aruba mobility controller is the industry''s highest performing and most scalable enterprise mobility platform."

1853 Motorola Solutions, Inc.
One Motorola Plaza
Holtsville, NY 11742-1300
USA

-Tom Mckinney
TEL: 631-738-3586
FAX: 631-738-4164

Fusion_SSL_FIPS.lib

Version 1.00.0.0.1
ARM 11 processor, MSM 7627 w/ Window Mobile 6.5, OS OEM Version 2.31.0002 10/31/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"Motorola Wireless Fusion Cryptographic Module is a component of Motorola Wireless Mobile Computing devices that are equipped with a WLAN radio. These devices are used for business process automation applications in a number of vertical markets like retail, manufacturing, transportation, health and government"

11/01/11: Update implementation information;

1852 Bosch Security Systems, Inc.
130 Perinton Parkway
Fairport, NY 14450
USA

-Jon C. Wolski
TEL: 585-678-3323
FAX: 585-678-3263

B420

Version Bosch B420 AES lib version: 01.00.0000 (Firmware)
TI LM3S6911 10/31/2011 CBC ( e/d; 128 , 192 , 256 );

"The B420 Ethernet Communications Module is a four-wire powered SDI, SDI2, or option bus device that provides connection for two-way communication with compatible Bosch control panels over Ethernet networks."

1851 Aruba Networks
1322 Crossman Ave
Sunnyvale, CA 94089-1113
USA

-Robbie Gill
TEL: 408-754-8406

-Glen Beasley
TEL: 408-419-4288

Aruba OS OpenSSL AP Module

Version 6.1.2.3 (Firmware)
Atheros AR5312; IDT79RC3234; Atheros AR7242; Atheros AR7161; Cavium Networks Octeon Plus CN5010; Marvell 88F6560 10/31/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )


"Aruba Networks'' Mobility Controller system completely changes how 802.11 networks are deployed, secured, and managed. The only mobile security system with an integrated ICSA-certified stateful firewall and hardware-based encryption, the Aruba mobility controller is the industry''s highest performing and most scalable enterprise mobility platform."

1850 Aruba Networks
1322 Crossman Ave
Sunnyvale, CA 94089-1113
USA

-Robbie Gill
TEL: 408-754-8406

-Glen Beasley
TEL: 408-419-4288

Aruba OS Crypto Module

Version 6.1.2.3 (Firmware)
RMI-XLR7300; RMI-XLR532; RMI-XLR516; RMI-XLR508; RMI-XLS408; RMI-XLS204; Marvell 88F6560; Cavium Networks Octeon Plus CN5010; Atheros AR7161; Atheros AR7242; IDT79RC3234; Atheros AR5312 10/31/2011 CBC ( e/d; 128 , 192 , 256 );

"Aruba''s single/multi-radio wireless 802.11 a/b/g/n APs are featured to address the needs of secure, mobile networks of all sizes. They may be configured for enterprise and/or Mesh topologies, or to provide secure remote connectivity across high latency links. Aruba APs support the IEEE 802.1X and 802.11i standards with up to 256-bit AES encryption."

1849 Aruba Networks
1322 Crossman Ave
Sunnyvale, CA 94089-1113
USA

-Robbie Gill
TEL: 408-754-8406

-Glen Beasley
TEL: 408-419-4288

Atheros hardware CCM

Part # Atheros AR9000 Family
Atheros AR9223; Atheros AR9280; Atheros AR9390; Atheros AR9220 10/31/2011 CBC ( e/d; 128 );

CCM (KS: 128 ) (Assoc. Data Len Range: 15 - 30 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 13 (Tag Length(s): 8


"Aruba''s single/multi-radio wireless 802.11 a/b/g/n APs are featured to address the needs of secure, mobile networks of all sizes. They may be configured for enterprise and/or Mesh topologies, or to provide secure remote connectivity across high latency links. Aruba APs support the IEEE 802.1X and 802.11i standards with up to 256-bit AES encryption."

1848 MACNICA, Inc.
1-6-3 Shin-Yokohama
Kouhoku-ku
Yokohama, Kanagawa 222-8561
Japan

-Tamotsu Kato
TEL: +81-45-470-9838
FAX: +81-45-470-9857

Macspire IP-0502

Version A (Firmware)
Cadence Design Systems, Inc. Incisive Enterprise Simulator - L 10.20.028 10/31/2011 ECB ( e/d; 128 ); CBC ( e/d; 128 ); CTR ( ext only; 128 )

CCM (KS: 128 ) (Assoc. Data Len Range: 0 - 32 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )


"Verilog-HDL IP for FPGA. (ALTERA or LATTICE)"

1847 Aruba Networks, Inc.
1322 Crossman Ave.
Sunnyvale, CA 94089-1113
USA

-Robbie Gill
TEL: 408-754-8406

-Glen Beasley
TEL: 408-419-4288

ArubaOS Kernel

Version 6.1.2.3 (Firmware)
IDT79RC3234; Atheros AR5312; Marvell 88F6560; Atheros AR7161; Atheros AR7242; 10/31/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )

CCM (KS: 128 ) (Assoc. Data Len Range: 15 - 30 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 13 (Tag Length(s): 8


"Aruba''s single/multi-radio wireless 802.11 a/b/g/n APs are featured to address the needs of secure, mobile networks of all sizes. They may be configured for enterprise and/or Mesh topologies, or to provide secure remote connectivity across high latency links. Aruba APs support the IEEE 802.1X and 802.11i standards with up to 256-bit AES encryption."

11/22/11: Added new tested information;

1846 Marvell Semiconductor, Inc.
5488 Marvell Lane
Santa Clara, CA 95054
USA

-Lei Poo
TEL: 408-222-5000

AES_Cryptohw1_Tag_solar3

Version 01262009 (Firmware)
Verilog Simulator VCS version C-2009.06-7 10/31/2011 ECB ( e/d; 128 , 256 ); CBC ( e/d; 128 , 256 ); CTR ( int only; 128 , 256 )

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"This high-speed crytographic AES module is used in multiple Marvell SoC products, with throughput exceeding 6Gb/s, enabling in-line data encryption of user data across multiple high performance storage interfaces."

1845 Seagate Technology LLC.
389 Disc Drive
Longmont, CO 80503
USA

-Monty Forehand
TEL: 720-684-2835
FAX: 720-684-2733

LuxorM AES in Hardware

Part # LuxorM
N/A 10/31/2011 ECB ( e/d; 128 , 256 ); CBC ( e/d; 128 , 256 );

"AES encryption and decryption core of the controller ASIC "LuxorM" in Seagate''s Self-Encryption Drives (SEDs)"

07/06/12: Updated implementation information;

1844 Synology Inc.
3F-3, No. 106, Chang-An W. Rd.
Taipei, Taiwan 10351
Taiwan

-Evan Tu
TEL: 02-25521814#852
FAX: 02-25521824

Synology DiskStation AES Encryption Module

Version 1.0
Intel Atom Processor; Intel Sandy Bridge Duo Core Processor w/ Embedded Linux 10/31/2011 CBC ( e/d; 128 , 192 , 256 );

"Synology DiskStation Manager provides share-level AES 256-bit encryption to block all unauthorized access attempts to your shared folders. Its encryption key security is up to enterprise standard. The encrypted shared folder is usually unmounted and inaccessible, until it is mounted by entering the encryption key."

1843 SafeNet, Inc.
20 Colonnade Road, Suite 200
Ottawa, ON K2E 7M6
Canada

-Chris Brych
TEL: 613-221-5081
FAX: 613-723-5079

-Iain Holness
TEL: 613-221-5049
FAX: 613-723-5079

ProtectServer Gold

Version 2.08.00 (Firmware)
Intel 80219 (ARM V5T) 10/18/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"The SafeNet PSG Firmware provides a wide range of cryptographic functions."

1842 NetLogic Microsystems, Inc.
3975 Freedom Circle
Santa Clara, CA 95054
USA

-Mark Litvack
TEL: 408-454-3296

XLP

Part # A2
N/A 10/18/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 128 Max: 2^16 ; Tag Len(s) Min: 1 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 192 Max: 2^16 ; Tag Len(s) Min: 1 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 256 Max: 2^16 ; Tag Len(s) Min: 1 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Externally ) ; PT Lengths Tested: ( 8 , 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Not_Supported

XTS( KS: XTS_128( (f) ) KS: XTS_256( (f) ))

"XLP multi-core processors offer full cache coherency and can deliver an unprecedented 160Gbps throughput and 240 million packets-per-second of application performance for next-generation 3G/4G mobile wireless infrastructure, enterprise, storage, security, metro Ethernet, edge and core infrastructure network applications."

1841 InZero Systems
13755 Sunrise Valley Drive, Suite 750
Herndon, VA 20171
USA

-Warren Brown
TEL: 703-636-2048 Ext 532
FAX: 703-793-1805

-Al Donaldson
TEL: 703-636-2048 Ext 517
FAX: 703-793-1805

InZero Gateway

Version 2.80.0.38 (Firmware)
PowerQUICC MPC8349EA 10/18/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"The InZero XB2CUSB3.1 Series Gateways protect Windows PCs and their data. Each Gateway provides a hardware application sandbox for protected browsing and document viewing, firewall, proxy servers, and SSL-based Virtual Private Networks in a portable, pocket-sized appliance."

09/10/12: Updated implementation information;

1840 Hewlett-Packard
2344 Alfred-Nobel
St-Laurent, Quebec H4S 0A4
Canada

-Gilbert Moineau
TEL: 514-920-4250

MSM4xx - HW

Part # Atheros AR9390-AL1A
N/A 10/18/2011 ECB ( e only; 128 );

CCM (KS: 128 ) (Assoc. Data Len Range: 22 - 30 ) (Payload Length Range: 1 - 32 ( Nonce Length(s): 13 (Tag Length(s): 8


"The MSM430, MSM460 and MSM466 Access points allow wireless devices to connect to a wired network using Wi-Fi 802.11abgn."

1839 Research in Motion
295 Philip Street
Waterloo, Ontario N2L 3W8
Canada

-Security Certifications Team
TEL: (519)888-7465 x72921
FAX: (519)888-9852

BlackBerry Cryptographic Library

Version 2.0.0.10
Intel Core 2 Duo Processor on General Purpose Computer w/ Windows XP Professional 2002 SP3 10/18/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"The BlackBerry Cryptographic Library is the software module that provides advanced cryptographic functionality to all BlackBerry desktop related products."

1838 Vormetric, Inc.
2545 North 1st Street
San Jose, CA 95131
USA

-Mike Yoder
TEL: (408) 433-6059
FAX: (408) 844-8637

-Ashvin Kamaraju
TEL: (408) 433-6043
FAX: (408) 844-8637

Vormetric Data Security Server Module

Version 4.4.1(Firmware)
Intel® Xeon 10/18/2011 CBC ( e/d; 128 , 256 );

"The Vormetric Data Security Server is a multi-chip standalone cryptographic module. The Vormetric Data Security Server is the central point of management for the Vormetric Data Security product. It manages keys and policies, and controls Vormetric Encryption Expert Agents."

05/08/12: Updated implementation information;

1837 Check Point Software Technologies, Ltd.
9900 Belward Campus Dr.
Suite 250
Rockville, MD 20850
USA

-David Abrose
TEL: +972 37534561

-Malcolm Levy
TEL: +972 37534561

VSX

Version R67.10 with R7x hotfix (Firmware)
Intel Xeon 10/18/2011 CBC ( e/d; 128 , 256 );

"Check Point VPN-1 Power VSX is a virtualized security gateway that allows virtualized enterprises and managed service providers to create up to 250 virtual systems (firewall, VPN, and intrusion prevention functionality within a virtual network environment) on a single, highly scalable hardware platform."

1836 Check Point Software Technologies, Ltd.
9900 Belward Campus Dr.
Suite 250
Rockville, MD 20850
USA

-David Abrose
TEL: +972 37534561

-Malcolm Levy
TEL: +972 37534561

Provider-1

Version R71 with R7x hotfix (Firmware)
Intel Xeon 10/18/2011 CBC ( e/d; 128 , 256 );

"Smart-1 50/150 Provider-1 Enterprise Edition brings a highly scalable multi-domain management solution to high-end enterprise customers. It includes a multi-domain management blade for management of up to 50 separate security domains, with separate management access rights while sharing global objects and policies."

1835 Check Point Software Technologies, Ltd.
9900 Belward Campus Dr.
Suite 250
Rockville, MD 20850
USA

-David Abrose
TEL: +972 37534561

-Malcolm Levy
TEL: +972 37534561

Security Management

Version R71 with R7x hotfix (Firmware)
Intel Xeon 10/18/2011 CBC ( e/d; 128 , 256 );

"Smart-1 Security management appliances, delivers a unified solution for network, IPS and endpoint Policy Management with easy log access and performance capabilities for the most demanding environments."

1834 NEC Corporation
1753
Shimonumabe
Nakahara-ku
Kawasaki-si, Kanagawa 211-8666
Japan

-NEC Corporation
TEL: +81-44-455-8326

iPASOLINK MODEM AES

Part # NWA-055300-004
N/A 10/13/2011 ECB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )


"Radio transmits the encrypted data."

1833 McAfee, Inc.
2340 Energy Park Drive
St. Paul, MN 55108
USA

-Mark Hanson
TEL: 651-628-1633
FAX: 651-628-2701

Kernel Crypto Library for SecureOS

Version 8.2 (Firmware)
Intel Xeon; Intel Pentium; Intel Core i3; Intel Atom 10/13/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"The Kernel Crypto Library for SecureOS® is a firmware library that provides cryptographic services for applications across several versions of the McAfee Firewall Enterprise Appliances."

1832 Integral Memory PLC.
Unit 6 Iron Bridge Close
Iron Bridge Business Park
Off Great Central Way
London, Middelsex NW10 0UF
United Kingdom

-Patrick Warley
TEL: +44 (0)20 8451 8704
FAX: +44 (0)20 8459 6301

-Samik Halai
TEL: +44 (0)20 8451 8704
FAX: +44 (0)20 8459 6301

PS3051

Part # TBD
N/A 10/13/2011 CBC ( e/d; 256 );

XTS( KS: XTS_128( (f) ) KS: XTS_256( (f) ))

"SSD Lock is a 256Bit hardware Encrypted SSD with full disk Encryption"

1831 McAfee, Inc.
2821 Mission College Blvd.
Santa Clara, CA 95054
USA

-Mark Hanson
TEL: +1 651-628-1633
FAX: +1 651-628-2706

-Luis Chirinos
TEL: +1 408-346-3784

OpenSSL MFE

Version 1.0 (Firmware)
Intel Celeron E3400 2.60GHz Dual Core; Intel Xeon E5540 2.53GHz Quad Core 10/13/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"McAfee Firewall Enterprise Control Center simplifies the management of multiple McAfee Firewall Enterprise appliances. Control Center enables centralized management and monitoring of the McAfee Firewall Enterprise solutions, allowing network administrators to centrally define firewall policy, deploy updates and inventory their firewall products."

1830 Athena Smartcard Inc.
20380 Town Center Lane, Suite 240
Cupertino, CA 95014
USA

-Ian Simmons
TEL: (408) 865-0112
FAX: (408) 865-0333

Athena OS755 AES Component

Version S1.0 (Firmware)
STMicroelectronics ST23 10/13/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"Athena OS755 is a GlobalPlatform Java Card smart card operating system implementing AES, TDES, DRBG, SHA-1/SHA-2, RSA, SP 800-56A KAS (ECC CDH Primitive only) and ECDSA2."

1829 WatchGuard Technologies, Inc.
505 Fifth Avenue South, Suite 500
Seattle, Washington 98104
USA

-Peter Eng
TEL: 206-613-6608
FAX: 206-613-0888

XTM Cryptographic Processor for XTM 3

Part # P1020NSE
N/A 10/13/2011 CBC ( e/d; 128 , 192 , 256 );

"WatchGuard XTM security appliances are designed to protect organizations from various security and productivity threats, including viruses, network attacks, intrusion attempts, Trojan horses, harmful or counterproductive URLs, spam, and more, while also providing secure Virtual Private Network (VPN) connections among workplaces and remote users."

1828 WatchGuard Technologies, Inc.
505 Fifth Avenue South, Suite 500
Seattle, Washington 98104
USA

-Peter Eng
TEL: 206-613-6608
FAX: 206-613-0888

XTM Cryptographic Processor for XTM 2

Part # P1011NSE
N/A 10/13/2011 CBC ( e/d; 128 , 192 , 256 );

"WatchGuard XTM security appliances are designed to protect organizations from various security and productivity threats, including viruses, network attacks, intrusion attempts, Trojan horses, harmful or counterproductive URLs, spam, and more, while also providing secure Virtual Private Network (VPN) connections among workplaces and remote users."

03/02/12: Update implementation information;

1827 WatchGuard Technologies, Inc.
505 Fifth Avenue South, Suite 500
Seattle, Washington 98104
USA

-Peter Eng
TEL: 206-613-6608
FAX: 206-613-0888

XTM Cryptographic Processor for XTM 330

Part # P2020NSE
N/A 10/13/2011 CBC ( e/d; 128 , 192 , 256 );

"WatchGuard XTM security appliances are designed to protect organizations from various security and productivity threats, including viruses, network attacks, intrusion attempts, Trojan horses, harmful or counterproductive URLs, spam, and more, while also providing secure Virtual Private Network (VPN) connections among workplaces and remote users."

1826 RSA
RSA, The Security Division of EMC
Suntec Tower 4 #31-01
Singapore, 038986
Singapore

-Sandra Tong
TEL: +852 9882 1502

-Young Son
TEL: +82 10 6700 6735

RSA BSAFE Crypto-C Micro Edition for VxWorks

Version 3.0.0.1
ARM9 w/ VxWorks built with Wind River Workbench 3.0 10/13/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 32 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Externally ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported
RNG: Val# 962
DRBG: Val# 143

"Crypto-C ME is evaluated as a multi-chip, standalone module. The physical cryptographic boundary of the module is the case of the general-purpose computer or mobile device, which encloses the hardware running the module."

1825 Hewlett-Packard
2344 Alfred-Nobel
St-Laurent, Quebec H4S 0A4
Canada

-Gilbert Moineau
TEL: 514-920-4250

MSM 765zl - user space

Version 5.6.0
Intel® Core(TM)2 Duo w/ HP E-MSM765zl Kernel Firmware 10/13/2011 CBC ( e/d; 128 , 192 , 256 );

"The MSM765zl Mobility Controllers centralize and simplify management and configuration of HP E-MSM4xx Access Points."

1824 Hewlett-Packard
2344 Alfred-Nobel
St-Laurent, Quebec H4S 0A4
Canada

-Gilbert Moineau
TEL: 514-920-4250

MSM 765zl - kernel space

Version 5.6.0
Intel® Core(TM)2 Duo w/ HP E-MSM765zl Kernel Firmware 10/13/2011 CBC ( e/d; 128 , 192 , 256 );

"The MSM765zl Mobility Controllers centralize and simplify management and configuration of HP E-MSM4xx Access Points."

1823 Hewlett-Packard
2344 Alfred-Nobel
St-Laurent, Quebec H4S 0A4
Canada

-Gilbert Moineau
TEL: 514-920-4250

MSM 4xx

Version 5.6.0
Freescale P1020 CPU w/ HP E-MSM4xx AP Kernel Firmware 10/13/2011 CBC ( e/d; 128 , 192 , 256 );

"The MSM430, MSM460 and MSM466 Access points allow wireless devices to connect to a wired network using Wi-Fi 802.11abgn."

1822 Inside Secure
41 Parc Club du Golf
13856, Aix-en-Provence n/a
France

-David Cunningham
TEL: +44 135 580 3554
FAX: +44 135 524 2743

VaultIC460/440/420

Version 1.2.1 (Firmware)
Part # AT90SO128
Inside Secure AT90SO128 10/13/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 256 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 192; Block Size(s): ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 256; Block Size(s): ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 )


"VaultIC^TM are security modules designed to secure applications such as anti-cloning, physical access control, personal access control for multimedia and web applications, hardware authentication, user strong authentication, SSL support, PKCS#11 to Microsoft (R) CSP applications, PKI, DRM, trusted computing and IP protection."

05/10/12: Updated implementation information;

1821 Xerox Corporation
MS 011-03A
800 Phillips Road
Webster, New York 14580
US

-Larry Kovnat
TEL: 585-427-1732

Xerox OpenSSL

Version Version 1.1
Freescale PowerQuic III w/ Intel/WindRiver Linux V3 10/13/2011 CBC ( e/d; 256 );

"The Xerox cryptographic system based on OpenSSL is used to secure network traffic into and out of the device."

10/20/11: Update vendor information;

1820 Vormetric, Inc.
2545 North 1st Street
San Jose, CA 95131
USA

-Mike Yoder
TEL: (408) 433-6059
FAX: (408) 844-8637

-Ashvin Kamaraju
TEL: (408) 433-6043
FAX: (408) 844-8637

Vormetric Encryption Expert Kernel-Space Cryptographic Library

Version 1.0
Intel® Itanium® w/ HPUX 11i v3 64-bit; Intel® Xeon w/ Red Hat Enterprise Linux 5.7 64-bit; Sun UltraSPARC® II w/ Sun Solaris 10 64-bit; Intel® Xeon w/ Microsoft Windows Server 2003 32-bit; Intel® Xeon w/ Microsoft Windows Server 2008 64-bit 10/6/2011 CBC ( e/d; 128 , 256 );

"The Vormetric Encryption Expert Kernel-Space Cryptographic Library is one of two libraries that comprise the Vormetric Encryption Expert Cryptographic Module version 4.4.1. That module is a subset of the Vormetric Encryption Export Agent, which in turn is part of the Vormetric Data Security solution."

10/19/11: Update implmentation information;

1819 Vormetric, Inc.
2545 North 1st Street
San Jose, CA 95131
USA

-Mike Yoder
TEL: (408) 433-6059
FAX: (408) 844-8637

-Ashvin Kamaraju
TEL: (408) 433-6043
FAX: (408) 844-8637

Vormetric Encryption Expert User-Space Cryptographic Library

Version 1.0
Intel® Itanium® w/ HPUX 11i v3 64-bit; Intel® Xeon w/ Red Hat Enterprise Linux 5.7; Sun UltraSPARC® II w/ Sun Solaris 10 64-bit; Intel® Xeon w/ Microsoft Windows Server 2003 32-bit; Intel® Xeon w/ Microsoft Windows Server 2008 64-bit 10/6/2011 CBC ( e/d; 128 , 256 );

"The Vormetric Encryption Expert User-Space Cryptographic Library is one of two libraries that comprise the Vormetric Encryption Expert Cryptographic Module version 4.4.1. That module is a subset of the Vormetric Encryption Export Agent, which in turn is part of the Vormetric Data Security solution."

10/19/11: Update implementation information;

1818 iDirect Technologies, Inc.
13865 Sunrise Valley Drive
Suite 100
Herndon, VA 20171
USA

-Paul Harr
TEL: 703-648-8225
FAX: 703-648-8088

-Karl Fuchs
TEL: 703-648-8247

Security Kernel FPGA Cryptographic Implementation

Version 2.3 (Firmware)
Altera Stratix II 10/6/2011 CBC ( e/d; 256 );

"iDirect''s AES-based bidirectional link encryption and TRANSEC DVB-S2 feature, combined with other system features such as cutting-edge coding techniques, acceleration and compression provides a fully integrated IP networking solution where security, performance and bandwidth efficiency are critical."

1817 iDirect Technologies, Inc.
13865 Sunrise Valley Drive
Suite 100
Herndon, VA 20171
USA

-Paul Harr
TEL: 703-648-8225
FAX: 703-648-8088

-Karl Fuchs
TEL: 703-648-8247

Security Kernel Cryptographic Implementation

Version 2.3 (Firmware)
Intel IXP465 10/6/2011 CBC ( e/d; 256 ); CFB128 ( e/d; 256 );

"iDirect''s AES-based bidirectional link encryption and TRANSEC DVB-S2 feature, combined with other system features such as cutting-edge coding techniques, acceleration and compression provides a fully integrated IP networking solution where security, performance and bandwidth efficiency are critical."

1816 Cisco Systems, Inc.
170 W. Tasman Drive
San Jose, CA 95134
USA

-Sonu Shankar
TEL: 408-424-7279

Cisco IOS

Version 15.0(1)SY2(Firmware)
Freescale MPC8572E 10/6/2011 ECB ( e/d; 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 256 )


"IOS Firmware cryptographic implementations used within Cisco devices to provide cryptographic functions."

04/10/12: Updated implementation information;
12/07/12: Updated implementation information;

1815 Lexmark International, Inc.
740 West New Circle Road
Lexington, KY 40550
USA

-Graydon Dodson
TEL: 859 232 6483

Crypto Module (kernel)

Version 1.00 (Firmware)
Freescale 7448 PowerPC; IBM 750CL 10/6/2011 CBC ( e/d; 128 , 192 , 256 );

"The Crypto Module (user/kernel) provides cryptographic services to the firmware in Lexmark products."

1814 Proofpoint, Inc.
892 Ross Drive
Sunnyvale, CA 94089
USA

-Jun Wang
TEL: 408-338-6680
FAX: 408-517-4710

Proofpoint Java Security Library

Version 2.0
Dell Latitude E6400 w/ Cent OS 5 10/6/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"A java based library to provide cryptographic functionality for java applications."

1813 Lexmark International, Inc.
740 West New Circle Road
Lexington, KY 40550
USA

-Graydon Dodson
TEL: 859 232 6483

Crypto Module (user)

Version 1.00 (Firmware)
Freescale 7448 PowerPC; IBM 750CL 10/6/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"The Crypto Module (user/kernel) provides cryptographic services to the firmware in Lexmark products."

1812 Voltage Security, Inc.
20400 Stevens Creek Blvd.
Cupertino, CA 95014
USA

-Luther Martin
TEL: 650-543-1280
FAX: 650-543-1279

-Branislav Meandzija
TEL: 408-886-3200
FAX: 408-886-3201

Voltage IBE Cryptographic Module for z/OS

Version 4.0
IBM z10; 2097 / E26; X2 co-processor crypto-card w/ z/OS PUT1106 / RSU1108 10/6/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"Voltage IBE Cryptographic Module for z/OS implements the following algorithms: DSA; TDES; AES (ECB, CBC, CFB, OFB, FPE); DRNG; DRBG; SHA (1, 224, 256, 384, 512); HMAC; CMAC; RSA; DH; BF IBE; BB1 IBE; MD; DES"

1811 Seagate Technology LLC.
389 Disc Drive
Longmont, CO 80503
USA

-Monty Forehand
TEL: 720-684-2835
FAX: 720-684-2733

-Harshad Thakar
TEL: 720-684-2580

Jaeger AES in Hardware

Part # Part# Jaeger
N/A 9/30/2011 ECB ( e/d; 128 , 256 ); CBC ( e/d; 128 , 256 );

"AES encryption and decryption core of the controller ASIC "Jaeger" in Seagate''s Self- Encrypting Drives (SEDs)."

1810 Atos Worldline SA/NV
Haachtsesteenweg 1142
Brussels, 1130
Belgium

-Filip Demaertalaere
TEL: +32 2 727 61 67

-Sam Yala
TEL: +32 2 727 61 94

ACC (Atos Worldline Cryptographic Core)

Version 1.2 (Firmware)
Freescale 9/30/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 256 );

CMAC (Generation/Verification ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 4 Max: 16 )


"The ACC is the cryptographic engine of Atos Worldline Hardware Security Module. The ACC makes use of dedicated hardware accelerators."

10/03/12: Updated implementation information;

1809 Symantec Corporation
350 Ellis Street
Mountain View, CA 94043
USA

-Angelos Kottas
TEL: 415-738-2753

-John Roberts
TEL: 415-738-2810

Scanner Cipher Engine

Version 1.0
Intel Xeon w/ CentOS 5.5 9/30/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"The Symantec Scanner Cipher Engine is designed to provide FIPS140-2 algorithm support for the Symantec Scanner Cryptographic Module. This module supports Symantec applications by providing validated and approved cryptographic services. The incorporation of these algorithms make these products ideal for enterprise and government applications."

02/17/12: Updated implementation information;
10/05/12: Updated implementation information;

1808 RSA
RSA, The Security Division of EMC
Suntec Tower 4 #31-01
Singapore, 038986
Singapore

-Sandra Tong
TEL: +852 9882 1502

-Young Son
TEL: +82 10 6700 6735

RSA BSAFE Crypto-C Micro Edition for pSOS

Version 3.0.0.1
ARM9 w/ pSOS built with ARM SDT 2.51 9/30/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 32 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Externally ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 124 ) ; 96BitIV_Supported
GMAC_Supported

"Crypto-C ME is evaluated as a multi-chip, standalone module. The physical cryptographic boundary of the module is the case of the general-purpose computer or mobile device, which encloses the hardware running the module."

1807 ARX (Algorithmic Research)
10 Nevatim St.
Petah-Tikva, Israel 49561
Israel

-Ezer Farhi
TEL: +972-39279529
FAX: +972-39230864

PrivateServer

Version 4.8 (Firmware)
Intel® Pentium Dual-Core 9/30/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 32 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )


"PrivateServer performs sensitive cryptographic operations internally in a tamper-proof, high performance device. PrivateServer is configured as a network server or as a cryptographic backend to a host"

1806 N/A N/A N/A 9/30/2011 N/A
1805 N/A N/A N/A 9/30/2011 N/A
1804 N/A N/A N/A 9/30/2011 N/A
1802 Stanley Security Solutions, Inc.
6161 E 75th St.
P.O. Box 50444
Indianapolis, IN 46250
USA

-Robert Strong
TEL: 1-317-806-3288
FAX: 1-317-806-3337

Stanley Wi-Q Advanced Encryption

Version 1.0.0 (Firmware)
Motorola Coldfire MCF5272; Texas Instruments TI MSP430 9/30/2011 ECB ( e/d; 128 );

"The Stanley Wi-Q AES Advanced Encryption Algorithm is used to secure wireless communications between the Wi-Q Portal Gateway device and the Wi-Q lock controller."

1801 Research in Motion
295 Philip Street
Waterloo, Ontario N2L 3W8
Canada

-Security Certifications Team
TEL: (519) 888-7465x72921
FAX: (519) 888-9852

BlackBerry Cryptographic Kernel - AES ECM

Version 3.8.7.1 (Firmware)
Qualcomm MSM8655 Processor 9/30/2011 ECB ( e/d; 256 ); CTR ( ext only; 256 )


"The BlackBerry Cryptographic Library is the firmware module that provides the core cryptographic functionality to Blackberry Smartphones."

1800 Research in Motion
295 Philip Street
Waterloo, Ontario N2L 3W8
Canada

-Security Certifications Team
TEL: (519) 888-7465x72921
FAX: (519) 888-9852

BlackBerry Cryptographic Kernel

Version 3.8.7.1 (Firmware)
Qualcomm MSM8655 Processor 9/30/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )


"The BlackBerry Cryptographic Library is the firmware module that provides the core cryptographic functionality to BlackBerry Smartphones."

1799 Research in Motion
295 Philip Street
Waterloo, Ontario N2L 3W8
Canada

-Security Certifications Team
TEL: (519) 888-7465x72921
FAX: (519) 888-9852

BlackBerry Cryptographic Kernel - AES ECM

Version 3.8.7.0 (Firmware)
Qualcomm MSM8655 Processor 9/30/2011 ECB ( e/d; 256 ); CTR ( ext only; 256 )


"The BlackBerry Cryptographic Kernel is the firmware module that provides the core cryptographic functionality to BlackBerry Smartphones."

1798 Research in Motion
295 Philip Street
Waterloo, Ontario N2L 3W8
Canada

-Security Certifications Team
TEL: (519) 888-7465x72921
FAX: (519) 888-9852

BlackBerry Cryptographic Kernel

Version 3.8.7.0 (Firmware)
Qualcomm MSM8655 Processor 9/30/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )


"The BlackBerry Cryptographic Kernel is the firmware module that provides the core cryptographic functionality to BlackBerry Smartphones."

1797 SafeNet, Inc.
4690 Millennium Drive
Belcamp, MD 21017
USA

-Adam Bell
TEL: 443-327-1340
FAX: 443-327-1210

-Brandon Maas
TEL: 443-327-1330
FAX: 443-327-1210

SCC650

Part # 1.0
N/A 9/20/2011 CBC ( e/d; 128 , 256 );

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Externally ) ; PT Lengths Tested: ( 128 , 128 ) ; AAD Lengths tested: ( 128 , 128 ) ; IV Lengths Tested: ( 128 , 128 ) ; 96BitIV_Supported
GMAC_Not_Supported

"The SafeNet SCC650 is a highly trust design fabricated at a Trust Foundery and implements a security architecture found in other SafeNet certified ASICs. The operating system incorporates SafeNet''s well-established HA Suite B Cryptographic eXtension (CGX) library to perform all cryptographic operations."

09/22/11: Update implementation information;

1796 Ciena Corporation
1201 Winterson Road
Linthicum, MD 21090
USA

-Patrick Scully
TEL: 613-670-3207

565/5100/5200 QOTR/E Cryptography Engine

Version 1.0 (Firmware)
MPC8314e 9/20/2011 CBC ( e/d; 128 , 192 , 256 );

"The 565/5100/5200 Advanced Services Platform offers an integrated transport encryption solution providing an ultra-low latency and protocol-agnostic wirespeed encryption service for use in small to large enterprises or datacenters and also offered through service providers as a differentiated managed service."

1795 Thales e-Security Inc.
2200 North Commerce Parkway
Suite 200
Weston, Florida 33326
USA

-Robert Burns
TEL: +19548886215

-Alan Brown
TEL: +14084577706

Thales e-Security keyAuthority® - Open SSL Library

Version 0.9.8r
Intel Xeon Dual Core w/ Linux - CentOS 5.2 9/20/2011 CBC ( e/d; 256 );

"An implementation of the OpenSSL 0.9.8r library used in the Thales e-Security keyAuthority®."

10/06/11: Update implementation information;
10/18/11: Update implementation information;

1794 Ciena Corporation
1201 Winterson Road
Linthicum, MD 21090
USA

-Patrick Scully
TEL: 613-670-3207

565/5100/5200 SP Cryptography Engine

Version 1.0 (Firmware)
MPC8270 9/20/2011 CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 );

"The 565/5100/5200 Advanced Services Platform offers an integrated transport encryption solution providing an ultra-low latency and protocol-agnostic wirespeed encryption service for use in small to large enterprises or datacenters and also offered through service providers as a differentiated managed service."

1793 Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

-M.K Whitlock
TEL: 919-392-9396

IOS

Version 15.1(3)T2 (Firmware)
Freescale MPC8358E 9/20/2011 CBC ( e/d; 128 , 192 , 256 );

"The Cisco 800 Series of integrated Services Routers intelligently embed data and security into a single, resilient system for fast, scalable delivery of mission-critical business applications from small offices to demanding enterprise environments."

1792 Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

-M.K Whitlock
TEL: 919-392-9396

Cisco 881W/GW AP IOS

Version 12.4(25d)JA1 (Firmware)
Freescale MPC8343A 9/20/2011 CBC ( e/d; 128 );

"The embedded WLAN Access Point module (ap801) inside C881W and C881GW provides wireless funcationality for the routers."

1791 Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

-M.K Whitlock
TEL: 919-392-9396

Cisco 881W/GW Radio Algorithms

Part # Marvell 88W8363C
N/A 9/20/2011 ECB ( e only; 128 );

CCM (KS: 128 ) (Assoc. Data Len Range: 22 - 30 ) (Payload Length Range: 10 - 20 ( Nonce Length(s): 13 (Tag Length(s): 8


"The embedded WLAN Access Point module (ap801) inside C881W and C881GW provides wireless funcationality for the routers. Its WLAN radio MAC is a Marvell 88W8363C."

1790 Thales e-Security Inc.
2200 North Commerce Parkway
Suite 200
Weston, Florida 33326
USA

-Robert Burns
TEL: +19548886215

-Alan Brown
TEL: +14084577706

Thales e-Security keyAuthority® - NSS Library

Version 3.12.6
Intel Xeon Dual Core w/ Linux - CentOS 5.2 9/20/2011 CBC ( e/d; 256 );

"An implementation of the NSS (Network Security Services) library used in the Thales e-Security keyAuthority®."

10/06/11: Update implementation information;
10/18/11: Update implementation information;
12/07/11: Updated implementation information;

1789 Certicom Corp.
4701 Tahoe Blvd.
Building A
Missisauga, ON L4W 0B5
Canada

-Certicom Sales
TEL: 905-507-4220
FAX: 905.507.4230

-Kris Orr
TEL: 289.261.4104
FAX: 905.507.4230

Security Builder FIPS Core

Version 6.0
64-bit Intel Core i5-2300 w/ RedHat Linux 5.6; 32-bit Intel Core i7 w/ RedHat Linux 5.6; 32-bit Intel Pentium III w/ QNX 6.5; ARM Cortex A9 MPCore w/ QNX 6.6; Intel Core 2 Duo w/ Mac OS X 10.5; 32-bit Intel Core i5-2300 w/ Windows 7; 64-bit Intel Core i5-2300 with AES-Ni w/ RedHat Linux 5.6; 32-bit Intel Core i7 with AES-Ni w/ RedHat Linux 5.6; 32-bit Intel Core i5-2300 /w AES-NI w/ Windows 7 9/20/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 10 11 12 13 (Tag Length(s): 8 10 12 14 16 )

CMAC (Generation ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 )
IV Generated: ( Externally ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"Security Builder FIPS Core provides application developers with cryptographics tools to easily integrate encryption, digital signatures and other security mechanisms into C-based apps for FIPS 140-2 and Suite B security. It can also be used with Certicom''s PKI, IPSec SSL and DRM modules."

10/01/11: Update implementation information;
01/19/12: Added new tested information;
01/24/12: Added new tested information and updated vendor information;
02/21/12: Added new tested information;

1788 Hughes Network Systems, LLC.
11717 Exploration Lane
Germantown, MD 20876
USA

-Tim Young
TEL: 301-428-1632

Hughes SPACEWAY Crypto Kernel

Version 1.0 (Firmware)
AMCC PowerPC (32-bit); Intel Pentium 4 (32-bit); Intel dual-core Xeon (32-bit); 9/20/2011 CBC ( e/d; 128 , 256 );

"The HSCK v1.0 is a firmware library that provides cryptographic functionality for securing communications over the Hughes SPACEWAY Satellite communication systems. SPACEWAY enables a full-mesh digital network that interconnects with a wide range of end-user equipment and systems."

1787 Hitachi Solutions, Ltd.
4-12-7,Higashishinagawa
Shinagawa-ku, Tokyo 140-0002
Japan

-Applied Security Development Department
TEL: +81-3-5780-2111

HIBUN Cryptographic Module for Kernel-Mode

Version 1.0 Rev. 2
Intel(R) Core(TM) i5-650 w/ Windows XP Professional; Intel(R) Core(TM) i5-650 w/ Windows Vista Ultimate; Intel(R) Core(TM) i5-650 w/ Windows 7 Ultimate; Intel(R) Core(TM) i5-650 w/ Windows 7 Ultimate 64bit 9/20/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"HIBUN Cryptographic Module for Kernel-Mode is the cryptographic library module which operates on the Windows Kernel-Mode."

1786 Senetas Corporation Ltd.
Level 1, 11 Queens Road
Melbourne, Victoria 3004
Australia

-John Weston
TEL: +61 3 9868 45555
FAX: +61 3 9821 4899

-Horst Marcinsky
TEL: +61 3 9868 45555
FAX: +61 3 9821 4899

CN Series Crypto Library

Version 0.9.8 (Firmware)
Motorola Freescale MPC8280 (PPC32) 9/20/2011 CBC ( e/d; 128 , 256 ); CFB1 ( e/d; 128 , 256 ); CFB128 ( e/d; 128 , 256 );

"Senetas Corporations''s CN Series Crypto library provides FIPS 140-2 approved cryptographic algorithms for the CN Series family of products. Based on OpenSSL, the CN Series Crypto library provides an Application Programming Interface (API) to support security relevant services within the CN1000 and CN3000 Series products."

1785 SafeNet, Inc.
20 Colonnade Road
Suite 200
Ottawa, ON K2E 7M6
Canada

-Chris Brych
TEL: 613-221-5081
FAX: 613-723-5079

-Laurie Smith
TEL: 613-221-5026
FAX: 613-723-5079

Luna G4

Version 4.8.7 (Firmware)
StrongARM-11 80200 600 MHz 9/6/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 32 Max: 16384 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 32 Max: 16384 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 32 Max: 16384 ; Tag Len(s) Min: 8 Max: 16 )


"The Luna PCM/PCM KE/CA4 offer dedicated hardware key management to protect sensitive cryptographic keys from attack. Digital sign/verify operations are performed in the HSM to increase performance and maintain security. Cryptographic keys are backed up by a FIPS-approved algorithm and can be stored in software or replicated on one or more tokens."

1784 Juniper Networks, Inc.
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Tim Huntley
TEL: 408-936-2817

Juniper Networks LN1000-V Mobile Service Processing Unit

Version 11.2R1 (Firmware)
Cavium Octeon 9/6/2011 CBC ( e/d; 128 , 192 , 256 );

"Juniper Networks LN1000-V Mobile Secure Router IPSec designed specifically for the Internet. A full suite of industrial-strength routing protocols, a flexible policy language, and a leading MPLS implementation efficiently scale to large numbers of network interfaces and routes."

1783 Juniper Networks, Inc.
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Tim Huntley
TEL: 408-936-2817

SRX 650 Service Processing Unit

Version 11.2R1 (Firmware)
Cavium Octeon 9/6/2011 CBC ( e/d; 128 , 192 , 256 );

"Juniper Networks SRX Series Services Gateways provide the essential capabilities necessary to connect, secure, and manage enterprise and service provider networks, from the smallest sites to the largest headquarters and data centers."

1782 Juniper Networks, Inc.
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Tim Huntley
TEL: 408-936-2817

SRX 650 Routing Engine

Version 11.2R1 (Firmware)
Cavium Octeon 9/6/2011 CBC ( e/d; 128 , 192 , 256 );

"Juniper Networks SRX Series Services Gateways provide the essential capabilities necessary to connect, secure, and manage enterprise and service provider networks, from the smallest sites to the largest headquarters and data centers."

1781 Juniper Networks, Inc.
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Tim Huntley
TEL: 408-936-2817

Juniper Networks LN1000-V Mobile Routing Engine

Version 11.2R1 (Firmware)
Cavium Octeon 9/6/2011 CBC ( e/d; 128 , 192 , 256 );

"Juniper Networks LN1000-V Mobile Secure Router IPSec designed specifically for the Internet. A full suite of industrial-strength routing protocols, a flexible policy language, and a leading MPLS implementation efficiently scale to large numbers of network interfaces and routes."

1780 Hitachi Solutions, Ltd.
4-12-7,Higashishinagawa
Shinagawa-ku, Tokyo 140-0002
Japan

-Applied Security Development Department
TEL: +81-3-5780-2111

HIBUN Cryptographic Module for User-Mode

Version 1.0 Rev. 2
Intel(R) Core(TM) i5-650 w/ Windows XP Professional; Intel(R) Core(TM) i5-650 w/ Windows Vista Ultimate; Intel(R) Core(TM) i5-650 w/ Windows 7 Ultimate; Intel(R) Core(TM) i5-650 w/ Windows 7 Ultimate 64bit; Intel(R) Core(TM) i5-650 w/ Linux Kernel 2.6 (Fedora 12) 8/30/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"HIBUN Cryptographic Module for User-Mode is the cryptographic library module which operates on the Windows User-Mode and Linux User-Mode."

1779 Hitachi Solutions, Ltd.
4-12-7,Higashishinagawa
Shinagawa-ku, Tokyo 140-0002
Japan

-Applied Security Development Department
TEL: +81-3-5780-2111

HIBUN Cryptographic Module for Pre-boot

Version 1.0 Rev. 2
Intel(R) Core(TM) i5-650 w/ Pre-boot 16-bit 8/30/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"HIBUN Cryptographic Module for Pre-boot is the cryptographic library module which operates on the Pre-boot OS."

09/08/11: Update implementation information;

1778 Symantec Corporation
350 Ellis Street
Mountain View, CA 94043
USA

-Vincent Moscaritolo
TEL: 650-527-8000

PGP Cryptographic Engine

Version 4.2.0
Apple MacBook Pro 13" w/ Mac OS X 10.7; Apple iPad w/ iOS 5 8/30/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 );

"The PGP Cryptographic Engine includes a wide range of field-tested, standards-based encryption, and encoding algorithms used by PGP Whole Disk Encryption."

1777 Symantec Corporation
350 Ellis Street
Mountain View, CA 94043
USA

-Vincent Moscaritolo
TEL: 650-527-8000

PGP Software Developer's Kit (SDK) Cryptographic Module

Version 4.2.0
Apple iPad w/ iOS 5; Dell PowerEdge 860 Dual Core Xeon 3060 processor, 1GB RAM, DVD_ROM, 80 GB SATA hard disk drive w/ Windows XP Professional SP3; Dell Power Edge 860 Dual Core Xeon 3060 processor, 1 GB RAM, DVD-ROM, 80 GB SATA hard drive w/ Linux, 32-bit CentOS 5.5; Apple MacBook Pro 13" w/ Mac OS X 10.7 8/30/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 );

"The PGP SDK Cryptographic Module is a FIPS 140-2 validated software only cryptographic module. The module implements the cryptographic functions for PGP products including: PGP Whole Disk Encryption, PGP NetShare, PGP Command Line, PGP Universal, and PGP Desktop. It includes a wide range of field-tested and standards-based encryption, digital signa"

09/13/11: Update implementation information;
01/18/12: Update implementation information;

1776 Motorola Solutions Inc.
Unit A1, Linhay Business Park
Ashburton, Devon TQ13 7UP
UK

-Richard Carter
TEL: +44 (0) 1364 655504
FAX: +44 (0) 1364 654625

PTP800 AES Library

Version PTP800-AES-04-00 (Firmware)
TI TMS320C6421 8/30/2011 ECB ( e/d; 128 , 256 ); CBC ( e/d; 128 , 256 ); CTR ( 128 )


"PTP800 Crypto Libraries: used in the PTP800 product. Operating in the 6 to 38 GHz RF bands at up to 368 Mbps throughput (full duplex) and with user-configured channel bandwidths from 7 to 56 MHz, the Motorola Point-to-Point 800 Series of Licensed Ethernet Microwave solutions offer operators a highly reliable licensed band wireless solution."

09/08/11: Update implementation information;

1775 Senetas Corporation Ltd.
Level 1, 11 Queens Road
Melbourne, Victoria 3004
Australia

-John Weston
TEL: +61 3 9868 45555
FAX: +61 3 9821 4899

-Horst Marcinsky
TEL: +61 3 9868 45555
FAX: +61 3 9821 4899

CN1000 2088 Module

Version 2088 8820.0004 (Firmware)
Part # FPGA
Altera EP2SGX60 (CF780C3N) 8/30/2011 CFB128 ( e/d; 256 );

"Senetas Corporations''s CN1000 2088 Module is a cryptographic accelerator that contains FIPS 140-2 approved cryptographic algorithms operating at line rates up to 4.125Gb/s. This module"

1774 NXP Semiconductors
Mikronweg 1
Gratkorn, 8101
Austria

-Markus Moesenbacher
TEL: +43 3124 299 652
FAX: +43 3124 299 270

NXP AES CMAC Component

Version AES_CMAC_JCOP_242_R0 (Firmware)
Part # NXP P5CD081 Family
NXP P5CD081 Family 8/30/2011

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 )
AES Val#1769

"Single Chip Module with NXP Secure Smart Card Controller of P5CD081 Family and NXP Java Card and GlobalPlatform OS JCOP 2.4.2 R0. P5CD081 Family comprises: P5CD145 V0A, P5CC145 V0A, P5CN145 V0A, P5CD128 V0A, P5CC128 V0A, P5CD081 V1A, P5CC081 V1A, P5CN081 V1A, P5CD051 V1A, P5CD041 V1A, P5CD021 V1A and P5CD016 V1A."

1773 N/A N/A N/A 8/30/2011 N/A
1772 N/A N/A N/A 8/24/2011 N/A
1771 RSA, The Security Division of EMC
174 Middlesex Turnpike
Bedford, MA 01730
USA

-Damon Hopley
TEL: 781-515-6355

RSA BSAFE Crypto-C Micro Edition (ME)

Version 3.0.0.14
Freescale MPC8536DS w/ TimeSys Linux 2.6.26.8 8/30/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )


"RSA BSAFE® Crypto-C ME software is designed to help protect sensitive data as it is stored using strong encryption techniques to provide a persistent level of protection. The software supports a wide range of industry standard encryption algorithms offering developers the flexibility to choose the appropriate option to meet their requirements."

1770 Thales E-Security Ltd
Jupiter House
Station Road
Cambridge, CB5 8JJ
UK

-Marcus Streets
TEL: +44 1223 723600
FAX: +44 1223 723601

-Mark Wooding
TEL: +44 1223 723600
FAX: +44 1223 723601

MiniHSM Algorithm Library

Version 2.50.17 (Firmware)
Freescale DragonBall MXL 8/30/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( int only; 256 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 96 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported
DRBG: Val# 120

"The MiniHSM Algorithm Library provides cryptographic functionality for the MiniHSM series of Thales hardware security modules."

1769 NXP Semiconductors
Mikronweg 1
Gratkorn, 8101
Austria

-Markus Moesenbacher
TEL: +43 3124 299 652
FAX: +43 3124 299 270

NXP AES Component

Version AES_JCOP_242_R0 (Firmware)
Part # NXP P5CD081 Family
NXP P5CD081 Family 8/18/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"Single Chip Module with NXP Secure Smart Card Controller of P5CD081 Family and NXP Java Card and GlobalPlatform OS JCOP 2.4.2 R0. P5CD081 Family comprises: P5CD145 V0A, P5CC145 V0A, P5CN145 V0A, P5CD128 V0A, P5CC128 V0A, P5CD081 V1A, P5CC081 V1A, P5CN081 V1A, P5CD051 V1A, P5CD041 V1A, P5CD021 V1A and P5CD016 V1A."

1768 ChaseSun Information Security Technology Development (Beijing) Co., LTD
Building B, Shumazhuangyuan
No. 1 Disheng West Street, BDA
Beijing, 100176
P.R. China

-Pugui Chen
TEL: +86 10 51570228
FAX: +86 10 51570191

DCI Audio/Video Decoder Card FPGA Library

Version 1.0 (Firmware)
Mentor ModelSim SE 6.5b (Simulator) 8/18/2011 ECB ( e only; 128 ); CBC ( d only; 128 );

"DCI Audio/Video Decoder Card FPGA Library implements the cryptographic algorithms such as AES, HMAC, and SHA. The Library provides cryptographic functionality to DCI Audio/Video Decoder Card."

1767 ChaseSun Information Security Technology Development (Beijing) Co., LTD
Building B, Shumazhuangyuan
No. 1 Disheng West Street, BDA
Beijing, 100176
P.R. China

-Peng Sun
TEL: +86 10 87129374
FAX: +86 10 87129374

DCI Audio/Video Decoder Card Crypto Library

Version 1.0 (Firmware)
Marvell 88AP303 8/18/2011 CBC ( e/d; 128 );

"DCI Audio/Video Decoder Card Crypto Library implements the cryptographic algorithms such as AES, HMAC, RSA, SHA and RNG. The Library provides cryptographic functionality to DCI Audio/Video Decoder Card."

03/27/13: Updated vendor information;

1766 RSA, The Security Division of EMC
174 Middlesex Turnpike
Bedford, MA 01730
USA

-Damon Hopley
TEL: 781-515-6355

RSA BSAFE® Crypto-J JSAFE and JCE Software Module

Version 5.0.1
Intel Core i7-2620M w/ Microsoft Windows XP SP3 (32-bit) with Sun JRE5.0; Intel Core i7-2620M w/ Microsoft Windows XP SP3 (32-bit) with Sun JRE6.0 8/16/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported
DRBG: Val# 117

XTS( KS: XTS_128( (f) ) KS: XTS_256( (f) ))

"RSA BSAFE Crypto-J security software is designed to help protect sensitive data as it is stored using strong encryption techniques to provide a persistent level of protection. It supports a wide range of industry standard encryption algorithms offering Java developers the flexibility to choose the option most appropriate to meet their requirements"

1765 Diversinet Corp.
2235 Sheppard Avenue
East Atria II
Suite 1700
Toronto, Ontario M2J5B5
Canada

-Salah Machani
TEL: 4167562324 Ext. 321
FAX: 4167567346

-Hussam Mahgoub
TEL: 4167562324 Ext. 222
FAX: 4167567346

Diversinet Java Crypto Module for Mobile

Version 1.0
TI OMAP2420 w/ Java ME MIDP 2.0; Marvell PXA930 w/ BlackBerry OS v6; Qualcomm Snapdragon w/ Android 2.2; 8/16/2011 CBC ( e/d; 128 , 192 , 256 );

"Diversinet Java ME Crypto Module is shipped with Diversinet MobiSecure Client SDK for Java based run-time environments on Smartphones and tablets including, Android OS-, BlackBerry OS- and Java ME MIDP-based. The Crypto Module implements several cryptography algorithms including Triple DES, AES, SHA, HMAC and RSA."

08/30/11: Add new tested information;
02/09/12: Updated implementation information;

1764 Diversinet Corp.
2235 Sheppard Avenue
East Atria II
Suite 1700
Toronto, Ontario M2J5B5
Canada

-Salah Machani
TEL: 4167562324 Ext 321
FAX: 4167567346

-Hussam Mahgoub
TEL: 4167562324 Ext. 222
FAX: 4167567346

Diversinet Java Crypto Module

Version 1.0
Intel Xeon E5530 w/ Microsoft Windows Server 2008 and JDK 1.6 8/16/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"Diversinet Java SE Crypto Module is a JCA (Java Cryptography Architecture) Provider shipped with Diversinet MobiSecure Products. The Crypto Module implements several JCE (Java Cryptography Extension) algorithms including Triple DES, AES, SHA, HMAC and RSA. The Crypto Module is packaged in a signed Java Archive (JAR) file."

02/09/12: Updated implementation information;

1763 NEC Corporation
1753
Shimonumabe
Nakahara-ku
Kawasaki-si, Kanagawa 211-8666
Japan

-NEC Corporation
TEL: +81-44-455-8326

iPASOLINK MODEM AES

Part # NWA-055300
N/A 8/16/2011 ECB ( e only; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )


"Radio transmits the encrypted data. "

08/18/11: Update implementation information;
10/11/11: Add new tested information;

1762 Green Hills Software
19415 Deerfield Avenue Suite 204
Lansdowne, VA 20176
USA

-David Sequino
TEL: 206-310-6795
FAX: 978-383-0560

-Douglas Kovach
TEL: 727-781-4909
FAX: 727-781-3915

ISS HA-ECT

Version v1.0.4
Motorola PowerPC w/ INTEGRITY v5.0.11; Intel Celeron w/ Linux RHEL5 8/16/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 96 , 256 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported
RNG: Val# 939

"Green Hills Software Integrity Security Services (ISS) High Assurance Embedded Crypto Tookit (HA-ECT)"

1761 SenSage
1400 Bridge Parkway
Suite 202
Redwood City, CA 94065
USA

-Brad Kekst
TEL: (415) 215-3567
FAX: (650) 631-2810

-Rao Yendluri
TEL: (650) 830-0484
FAX: (650) 631-2810

SenSage CryptoCore Module

Version v1.0
Intel Xeon w/ Red Hat Enterprise Linux 5.1; Intel Xeon w/ Red Hat Enterprise Linux 5.5; AMD Opteron w/ Red Hat Enterprise Linux 5.1; AMD Opteron w/ Red Hat Enterprise Linux 5.5; 8/16/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"SenSage offers Event Data Warehouse solutions that handle massive amounts of log and event data. Event data contains evidence directly pertaining to and resulting from the execution of a business process or system function."

1760 Digital Monitoring Products, Inc.
2500 N. Partnership Boulevard
Springfield, MO 65803-8877
USA

-Terry Shelton
TEL: (417) 831-9362
FAX: (417) 447-9698

SCS-104

Version 100 (Firmware)
n/a 8/16/2011 ECB ( e/d; 128 );

"The SCS-104 Line Card provides four digital dialer (DD) lines and a network connection for communication to DMP panels. Each card includes one shielded eight-pin modular connector (J1) for the digital data network connection and a non-shielded eight-pin modular connector (J3) that supports up to four digital dialer lines."

1759 Cisco Systems, Inc.
170 West Tasman Dr.
San Jose, CA 95134
USA

-Ashit Vora
TEL: 703-484-5118

Cisco Common Cryptographic Library (C3M)

Version 0.9.8r.1.1
Intel Core i5 w/ FreeBSD 8.2 (64-bit); Intel Core i5 w/ FreeBSD 8.2 (32-bit); Intel Xeon w/ Red Hat Enterprise Linux v5 (32-bit); Intel Xeon w/ Red Hat Enterprise Linux v5 (64-bit); Cavium Octeon w/ Linux Kernel 2.6.27.7; IBM PowerPC G4 w/ Yellow Dog Linux 6.2; Intel Pentium 4 w/ Windows 7 SP1 (32-bit); Intel Core i5 w/ Windows 7 SP1 (64-bit); Intel Core 2 Duo w/ Mac OS X 10.6 (32-bit); Intel Core 2 Duo w/ Mac OS X 10.6 (64-bit); Intel Pentium 4 w/ Openwall Linux 3.0 (32-bit); Qualcomm Snapdragon w/ Android 2.3.3; 8/16/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 24 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Partial ; Msg Len(s) Min: 0 Max: 64 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 192; Block Size(s): Partial ; Msg Len(s) Min: 0 Max: 64 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 256; Block Size(s): Partial ; Msg Len(s) Min: 0 Max: 64 ; Tag Len(s) Min: 16 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 512 ) ; AAD Lengths tested: ( 160 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Not_Supported
RNG: Val# 937

"The Cisco Common Cryptographic Module (C3M) is a software library that provides cryptographic services to a vast array of Cisco''s networking and collaboration products."

1758 Cisco Systems, Inc.
170 West Tasman Dr.
San Jose, CA 95134
USA

-Ashit Vora
TEL: 703-484-5118

Cisco Common Cryptographic Library (C3M) - Hybrid

Version 0.9.8r.1.1
Intel Westmere w/ Red Hat Enterprise Linux v5 (AES-NI); Intel Westmere w/ FreeBSD 8.x (AES-NI); Intel Mobile i7 w/ RHEL 5 (AES-NI); Intel Westmere w/ Windows 7 (AES-NI) 8/16/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 24 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Partial ; Msg Len(s) Min: 0 Max: 64 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 192; Block Size(s): Partial ; Msg Len(s) Min: 0 Max: 64 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 256; Block Size(s): Partial ; Msg Len(s) Min: 0 Max: 64 ; Tag Len(s) Min: 16 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 512 ) ; AAD Lengths tested: ( 160 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported

"The Cisco Common Cryptographic Module (C3M) is a software-hardware hybrid module that provides cryptographic services to a vast array of Cisco''s networking and collaboration products."

1757 Mocana Corporation
350 Sansome Street
Suite 1010
San Francisco, CA 94104
USA

-James Blaisdell
TEL: (415) 617-0055
FAX: (415) 617-0056

Mocana Cryptographic Library

Version 5.4fm
ARMv7 w/ Android 2.3; ARMv7 w/ Android 4.0 8/3/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 0 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 128 , 128 ) ; OtherIVLen_Supported
GMAC_Supported

XTS( KS: XTS_128( (f/p) ) KS: XTS_256( (f/p) ))

"The Mocana Cryptographic Module is the engine of Mocana''s Device Security Framework - a software framework that secures all aspects of a system. The Device Security Framework helps applications and device designers reduce development costs and dramatically enhance cryptographic performance. For details see www.mocana.com"

05/14/12: Added new tested information;

1756 SafeNet, Inc.
4690 Millennium Drive
Belcamp, MD 21017
USA

-Chris Brych
TEL: 613.221.5081
FAX: 613.723.5079

-Laurie Smith
TEL: 613.221.5026
FAX: 613.723.5079

SAFEXCEL 1746 CHIP

Part # SF914-17060-100B
N/A 8/3/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 );

"The SafeXcel 1746 allows host processors to offload packet processing and crypto computations, providing acceleration of IPsec, TLS/SSL/DTLS, SRTP, and MACsec security protocol functions, as well as acceleration of the latest cipher and hash cryptographic algorithms, including Suite B."

1755 Giesecke & Devrient
45925 Horseshoe Drive
Dulles, VA 20166
USA

-Thomas Palsherm
TEL: +49 89 4119 2384
FAX: +49 89 4119 9093

-Jatin Deshpande
TEL: +1 408 573 6352

Sm@rtCafé Expert 6.0

Version Sm@rtCafé Expert 6.0 (Firmware)
NXP Secure_MX51 8/3/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 32768 ; Tag Len(s) Min: 0 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 32768 ; Tag Len(s) Min: 0 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 32768 ; Tag Len(s) Min: 0 Max: 16 )


"The firmware is a Classic Edition Java Card 3 Platform that implements the GlobalPlatform (GP) Card Specification Version 2.1.1 and the Secure Channel Protocol 03."

1754 Trend Micro Inc.
40 Hines Road, Suite 200
Ottawa, ON K2K 2M5
Canada

-Marion Chase
TEL: 613 599 4505 x 2306
FAX: 613 599 8191

-Allan MacPhee
TEL: 613 599 4505 x 2289
FAX: 613 599 8191

Trend Micro Cryptographic Module - Deep Security Manager

Version 7.5
Intel Pentium 4 w/ Microsoft Windows 2008 R2 (64-bit) 8/3/2011 CBC ( e/d; 256 );

"Trend Micro Cryptographic Module provides FIPS 140-2 algorithm services for the Deep Security Manager centralized management component used to configure security policy and deploy protection to enforcement components."

1753 Trend Micro Inc.
40 Hines Road, Suite 200
Ottawa, ON K2K 2M5
Canada

-Marion Chase
TEL: 613 599 4505 x 2306
FAX: 613 599 8191

-Allan MacPhee
TEL: 613 599 4505 x 2289
FAX: 613 599 8191

Trend Micro Cryptographic Module - Deep Security Virtual Appliance

Version 7.5.0
Intel Core 2 Duo w/ VMWare ESX 4.1 8/3/2011 CBC ( e/d; 256 );

"Trend Micro Cryptographic Module provides FIPS 140-2 algorithm services for Deep Security Agents and Appliances deployed directly on protected computers."

1752 Voltage Security, Inc.
20400 Stevens Creek Blvd.
Cupertino, CA 95014
USA

-Luther Martin
TEL: 650--543-1280
FAX: 650--543-1279

-Branislav Meandzija
TEL: 408-886-3200
FAX: 408-886-3201

Voltage IBE Encryption toolkit SDK 4.0

Version 4.0
Intel Xenon 2.80 GHz w/ Red Hat Enterprise Linux Server 5.3, 32-bit; Intel x64 1000 MHz w/ Windows 7 Professional SP1, 32-bit 8/3/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"Voltage IBE Cryptographic Module implements the following algorithms: DSA; TDES; AES (ECB, CBC, CFB, OFB, FPE); DRNG; DRBG; SHS; HMAC; CMAC; RSA; DH; BF IBE; BB1 IBE; MD; DES"

09/13/11: Update implementation information;
02/06/12: Updated implementation information;
02/09/12: Updated implementation information;

1751 Cisco Systems, Inc.
170 W Tasman Drive
San Jose, CA 95134
USA

-Clint Winebrenner
TEL: 919-392-6520
FAX: 919-287-2380

SMAPI from Broadcom EPT Lib

Version 1.9.0 (Firmware)
Broadcom BCM1193 8/3/2011 ECB ( e/d; 128 ); CTR ( int only; 128 )


"The software library implements SRTP protocol for securing RTP and RTCP protocols."

1750 SafeNet, Inc.
4690 Millennium Drive
Belcamp, MD 21017
USA

-Chris Brych
TEL: 613.221-5081
FAX: 613.723.5079

-Laurie Smith
TEL: 613.221-5026
FAX: 613.723.5079

Luna K6 Cryptographic Library

Version 6.2.1 (Firmware)
AMCC PowerPC 440EPx 8/3/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 7 Max: 2^16 ; Tag Len(s) Min: 4 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 7 Max: 2^16 ; Tag Len(s) Min: 4 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 7 Max: 2^16 ; Tag Len(s) Min: 4 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Externally ) ; PT Lengths Tested: ( 128 , 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 128 , 128 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Not_Supported

"The K6 Cryptographic Library provides a broad suite of high-performance cryptographic operations. All cryptographic algorithms are implemented within the module''s firmware or associated co-processor."

1749 Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

-Ashit Vora
TEL: 703-484-5118

IOS Crypto Library

Version 1.0 (Firmware)
Cisco Yeti-II Power-PC 405 8/3/2011 CBC ( e/d; 128 , 192 , 256 );

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 32 ; Tag Len(s) Min: 1 Max: 16 )


"IOS cryptographic implementation for Catalyst 3000 line of products"

1748 Cisco Systems, Inc.
170 W Tasman Drive
San Jose, CA 95134
USA

-Clint Winebrenner
TEL: 919-392-6520
FAX: 919-287-2380

TI DSP Library

Version 12.0.105.1 (Firmware)
Texas Instruments TNETV105x MIPS 8/3/2011 ECB ( e/d; 128 ); CTR ( int only; 128 )


"The software library implements SRTP protocol for securing RTP and RTCP protocols."

1747 Cisco Systems, Inc.
170 W Tasman Drive
San Jose, CA 95134
USA

-Clint Winebrenner
TEL: 919-392-6520
FAX: 919-287-2380

RSA SSL-Cme

Version 1.1.0 (Firmware)
Texas Instruments TNETV1050 MIPS 8/3/2011 CBC ( e/d; 128 , 256 );

"The software library implements SRTP protocol for securing RTP and RTCP protocols"

1746 Cisco Systems, Inc.
170 W Tasman Drive
San Jose, CA 95134
USA

-Clint Winebrenner
TEL: 919-392-6520
FAX: 919-287-2380

OpenSSL

Version 0.9.8k (Firmware)
Texas Instruments TNETV105x MIPS; Broadcom BCM1193 8/3/2011 CBC ( e/d; 128 , 256 );

"OpenSSL library provides generic cryptographic functions for the phones including TLS and SSL protocol implementations."

1745 Cisco Systems, Inc.
170 W Tasman Drive
San Jose, CA 95134
USA

-Clint Winebrenner
TEL: 919-392-6520
FAX: 919-287-2380

Cisco TNP Phones libsrtp

Version 1.4.2 (Firmware)
Texas Instruments TNET1050 MIPS; Texas Instruments PSYLOCKE ASIC MIPS; Broadcom BCM1101 MIPS 8/3/2011 ECB ( e/d; 128 ); CTR ( int only; 128 )


"The software library implements SRTP protocol for securing RTP and RTCP protocols"

1744 N/A N/A N/A 7/26/2011 N/A
1743 SafeNet, Inc.
4690 Millennium Drive
Belcamp, MD 21017
USA

-Jim Dickens
TEL: 443 327 1389
FAX: 410 931 7524

-Chris Brych
TEL: 613.221.5081
FAX: 613.723.5079

SAFEXCEL 3120 CHIP

Part # SF914-35005-002A
N/A 8/3/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_192( e/d ) Tag Length(s): 128 )
(KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 128 , 128 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported

"The SafeNet SafeXcel-3120 is a highly integrated device designed for modest performance and high security, where power and cost-sensitivity are a priority at the network edge. The embedded ARM processor, via a digital signature, will allow customer-specific application code to execute, enabling the device to implement a complete product solution."

1742 Samsung Electronics Co., Ltd
416, Maetan 3-Dong Youngtong Gu
Suwon, Gyeonggi 152-848
South Korea

-Ross Choi
TEL: 972-761-7628

-Bumhan Kim
TEL: +82-10-4800-6711

Samsung FIPS Key Management Module for Tablets

Version LK2.6.36.3_AHC_KM1.0
ARMv7 Processor w/ Linux Kernel 2.6.36.3 and Android Honeycomb version 3.1; 8/3/2011 ECB ( e/d; 128 , 192 , 256 );

"General purpose Key derivation and authentication services library for Linux used by Samsung devices. "

11/17/11: Update implementation information;

1741 Samsung Electronics Co., Ltd
416, Maetan 3-Dong Youngtong Gu
Suwon, Gyeonggi 152-848
South Korea

-Ross Choi
TEL: 972-761-7628

-Bumhan Kim
TEL: +82-10-4800-6711

Samsung FIPS Key Management Module for Mobile Phones

Version LK2.6.35.7_AGB_KM1.0
ARMv7 Processor w/ Linux Kernel 2.6.35.7 and Android Gingerbread version 2.3.4 8/3/2011 ECB ( e/d; 128 , 192 , 256 );

"General purpose Key derivation and authentication services library for Linux used by Samsung devices. "

11/17/11: Update implementation information;

1740 A10 Networks, Inc.
2309 Bering Drive
San Jose, CA 95131
USA

-John Chiong
TEL: +1 408 325-8668

A10 Networks Data Plane FIPS Library CN1620

Part # CN1620
N/A 7/14/2011 CBC ( e/d; 128 , 192 , 256 );

"The AX Series Advanced Traffic Manager is designed to meet the growing demands of Web sites, carriers and enterprises. The AX offers intelligent Layer 4-7 application processing capabilities with industry-leading performance and scalability to meet critical business requirements at competitive prices."

1739 A10 Networks, Inc.
2309 Bering Drive
San Jose, CA 95131
USA

-John Chiong
TEL: +1 408 325-8668

A10 Networks Data Plane FIPS Library CN1615

Part # CN1615
N/A 7/14/2011 CBC ( e/d; 128 , 192 , 256 );

"The AX Series Advanced Traffic Manager is designed to meet the growing demands of Web sites, carriers and enterprises. The AX offers intelligent Layer 4-7 application processing capabilities with industry-leading performance and scalability to meet critical business requirements at competitive prices."

1738 SafeNet, Inc.
20 Colonnade Road, Suite 200
Ottawa, ON K2E 7M6
Canada

-Terry Fletcher
TEL: 613.221.5009
FAX: 613.723.5079

-Laurie Smith
TEL: 613.221.5026
FAX: 613.723.5079

Luna IS/RSS Cryptographic Library

Version 5.2.8 (Firmware)
Strong Arm II (80219) 7/14/2011 ECB ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"The Luna® PCI for IS/RSS Cryptographic Library provides a broad suite of high-performance cryptographic operations. All cryptographic algorithms are implemented within the module''s firmware and associated co-processor."

1737 SafeNet, Inc.
20 Colonnade Road, Suite 200
Ottawa, ON K2E 7M6
Canada

-Terry Fletcher
TEL: 613.221.5009
FAX: 613.723.5079

-Laurie Smith
TEL: 613.221.5026
FAX: 613.723.5079

Luna IS/RSS Cryptographic Library

Version 5.2.7 (Firmware)
Strong Arm II (80219) 7/14/2011 ECB ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"The Luna® PCI for IS/RSS Cryptographic Library provides a broad suite of high-performance cryptographic operations. All cryptographic algorithms are implemented within the module''s firmware and associated co-processor."

1736 Advantor Systems, LLC
12612 Challenger Pkwy, Suite 300
Orlando, FL 32826
USA

-Chuck Perkinson
TEL: 407.926.6960
FAX: 407.857.1635

Infraguard Processor Module (IPM)

Part # 1.4.4
N/A 7/14/2011 CBC ( e/d; 128 , 256 );

"The Infraguard Processor Module (IPM) is a mult-chip, embedded, plug-in encryption module coated with an opaque, tamper evident material. "

1735 Brocade Communications Systems, Inc.
130 Holger Way
San Jose, CA 95134
USA

-Sunil Chitnis
TEL: 408-333-2444
FAX: 408-333-4887

-Bob Colvin
TEL: 408-333-4839

FIPS 140-2 for Brocade ServerIron 1000, 4000, and 10000 series

Version 12.3.02 (Firmware)
Freescale MPC8572E 7/14/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"Our Goal is to receive FIPS 140-2 SL2 certification (hardware category- tamper detection tape) on the above platforms. For this, we have identified the cryptographic boundary to be the management module (with access to E2PROM on backplane). The software is to be updated to use NSS/NSPR as the cryptographic engine."

1734 Vocality International Ltd
Lydling Barn, Puttenham Lane
Shackleford, Surrey GU8 6AP
UK

-Martin Saunders
TEL: +44 1483 813122
FAX: +44 1483 813121

Vocality Cryptographic Library

Version 5.3.1v (Firmware)
BASICS IP with Freescale PowerQuicc III CPU 7/14/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 0 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 128 , 128 ) ; OtherIVLen_Supported
GMAC_Supported
RNG: Val# 923

"The BASICS IP product is a small, high performance, low power IP router in a PC104plus form-factor intended for intergration into communications systems. It supports a number of encryption algorithms which can be utilised by the IPSEC, IKE and SSH protocols it supports."

1733 Samsung Electronics Co., Ltd
416, Maetan 3-Dong Youngtong Gu
Suwon, Gyeonggi 152-848
South Korea

-Ross Choi
TEL: 972-761-7628

-Bumhan Kim
TEL: +82-10-4800-6711

Samsung FIPS Cryptographic Module for Mobile Phones

Version LK2.6.35.7_AGB_V1.2
ARMv7 Processor w/ Linux Kernel 2.6.35.7 and Android Gingerbread version 2.3.4 7/11/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )


"General purpose Cryptographic services available for Linux kernel used by Samsung devices to provide secured services."

10/27/11: Update implementation information;
11/17/11: Update implementation information;

1732 Samsung Electronics Co., Ltd
416, Maetan 3-Dong Youngtong Gu
Suwon, Gyeonggi 152-848
South Korea

-Ross Choi
TEL: 972-761-7628

-Bumhan Kim
TEL: +82-10-4800-6711

Samsung FIPS Cryptographic Module for Tablets

Version LK2.6.36.3_AHC_V1.2
ARMv7 Processor w/ Linux Kernel 2.6.36.3 and Android Honeycomb version 3.1 7/11/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )


"General purpose Cryptographic services available for Linux kernel used by Samsung devices to provide secured services."

10/27/11: Update implementation information;
11/17/11: Update implmentation information;
11/29/11: Updated implementation information;

1731 Red Hat, Inc.
1801 Varsity Drive
Raleigh, NC 27606
USA

-Irina Boverman
TEL: 978 392 1000

libgcrypt (Opteron 32bit)

Version 1.4.5-5.el6_1.2
AMD Opteron w/ Red Hat Enterprise Linux 6.1 7/11/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )


"User space library derived from GnuPG which can now be linked to from any program. The module was tested with 32bit word size."

1730 Red Hat, Inc.
1801 Varsity Drive
Raleigh, NC 27606
USA

-Irina Boverman
TEL: 978 392 1000

OpenSSL (Opteron 64bit)

Version 1.0.0-10.el6_1.4
AMD Opteron w/ Red Hat Enterprise Linux 6.1 7/11/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"User space library providing general cryptographic services which can be linked to from any program. The module was tested with 64bit word size."

1729 Red Hat, Inc.
1801 Varsity Drive
Raleigh, NC 27606
USA

-Irina Boverman
TEL: 978 392 1000

libgcrypt (Intel 64bit)

Version 1.4.5-5.el6_1.2
Intel x86 w/ Red Hat Enterprise Linux 6.1 7/11/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )


"User space library derived from GnuPG which can now be linked to from any program. The module was tested with 64bit word size."

1728 Check Point Software Technologies, Ltd.
9900 Belward Campus Dr.
Suite 250
Rockville, MD 20850
USA

-Malcolm Levy
TEL: +972 37534561

VPN-1

Version R70.1
Intel® Pentium® 4 Xeon w/ Check Point SecurePlatform 7/11/2011 CBC ( e/d; 128 , 256 );

"Check Point''s VPN-1 version R70.1 is a tightly integrated software solution combining the FireWall-1 (FW-1) security suite with sophisticated Virtual Private Network (VPN) technologies and a hardened SecurePlatform operating system (OS)."

1727 Juniper Networks, Inc.
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Seth Ross
TEL: 408-936-2221

SSH-IPSEC

Version Junos-FIPS 10.4R5
Processor: Pentium III 850MHz w/ Junos-FIPS 10.4R5; Pentium-M 2GHz w/ Junos-FIPS 10.4R5 7/11/2011 CBC ( e/d; 128 , 192 , 256 );

"Junos-FIPS for use in M Series, MX Series, and T Series router family."

05/22/12: Updated implementation information;

1726 Juniper Networks, Inc.
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Seth Ross
TEL: 408-936-2221

Kernel

Version Junos-FIPS 10.4R5
Processor: Pentium III 850MHz w/ Junos-FIPS 10.4R5; Pentium-M 2GHz w/ Junos-FIPS 10.4R5 7/11/2011 CBC ( e/d; 128 );

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 16 Max: 2^16 ; Tag Len(s) Min: 12 Max: 16 )


"Junos-FIPS for use in M Series, MX Series, and T Series router family."

05/22/12: Updated implementation information;

1725 Red Hat, Inc.
1801 Varsity Drive
Raleigh, NC 27606
USA

-Irina Boverman
TEL: 978 392 1000

libgcrypt (Opteron 64bit)

Version 1.4.5-5.el6_1.2
AMD Opteron w/ Red Hat Enterprise Linux 6.1 7/11/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )


"User space library derived from GnuPG which can now be linked to from any program. The module was tested with 64bit word size."

1724 Red Hat, Inc.
1801 Varsity Drive
Raleigh, NC 27606
USA

-Irina Boverman
TEL: 978 392 1000

libgcrypt (Intel 32bit)

Version 1.4.5-5.el6_1.1
Intel x86 w/ Red Hat Enterprise Linux 6.1 7/11/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )


"User space library derived from GnuPG which can now be linked to from any program. The module was tested with 32bit word size."

1723 Red Hat, Inc.
1801 Varsity Drive
Raleigh, NC 27606
USA

-Irina Boverman
TEL: 978 392 1000

OpenSSL (Opteron 32bit)

Version 1.0.0-10.el6_1.4
AMD Opteron w/ Red Hat Enterprise Linux 6.1 7/11/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"User space library providing general cryptographic services which can be linked to from any program. The module was tested with 32bit word size."

1722 Red Hat, Inc.
1801 Varsity Drive
Raleigh, NC 27606
USA

-Irina Boverman
TEL: 978 392 1000

OpenSSL (Intel 64bit-AESNI)

Version 1.0.0-10.el6_1.4
Part # Intel Westmere
Intel Westmere x86 w/ Red Hat Enterprise Linux 6.1 7/11/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"User space library providing general cryptographic services which can be linked to from any program. The module was tested with 64bit word size. This test covers the AES-NI implementation."

1721 Red Hat, Inc.
1801 Varsity Drive
Raleigh, NC 27606
USA

-Irina Boverman
TEL: 978 392 1000

OpenSSL (Intel 32bit)

Version 1.0.0-10.el6_1.4
Intel x86 w/ Red Hat Enterprise Linux 6.1 7/11/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"User space library providing general cryptographic services which can be linked to from any program. The module was tested with 32bit word size."

1720 Red Hat, Inc.
1801 Varsity Drive
Raleigh, NC 27606
USA

-Irina Boverman
TEL: 978 392 1000

OpenSSL (Intel 64bit)

Version 1.0.0-10.el6_1.4
Intel x86 w/ Red Hat Enterprise Linux 6.1 7/11/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB1 ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"User space library providing general cryptographic services which can be linked to from any program. The module was tested with 64bit word size."

1719 Juniper Networks, Inc.
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Seth Ross
TEL: 408-936-2221

OpenSSL

Version Junos-FIPS 10.4R5
Processor: Pentium III 850MHz w/ Junos-FIPS 10.4R5; Pentium-M 2GHz w/ Junos-FIPS 10.4R5 7/11/2011 CBC ( e/d; 128 , 192 , 256 );

"Junos-FIPS for use in M Series, MX Series, and T Series router family."

05/22/12: Updated implementation information;

1718 Hewlett-Packard Company
8000 Foothills Boulevard
Roseville, CA 95747
USA

-Sunil Amanna
TEL: (916) 785-1183
FAX: (916) 785 1103

HP K.15 Cryptographic Library

Version 5.3.1
Freescale 8540 w/ Integrity 5.0 7/11/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )


"Standard operating software for K-platform switch products."

1717 Mocana Corporation
350 Sansome Street
Suite 1010
San Francisco, CA 94104
USA

-James Blaisdell
TEL: +1-415-617-0055
FAX: +1-415-617-0056

Mocana Cryptographic Library

Version 5.3.1v
Freescale PowerQuicc III w/ ThreadX v5.3 7/11/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 0 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 128 , 128 ) ; OtherIVLen_Supported
GMAC_Supported
RNG: Val# 910

"The Mocana Cryptographic Module is the engine of Mocana''s Device Security Framework - a software framework that secures all aspects of a system. The Device Security Framework helps applications and device designers reduce development costs and dramatically enhance cryptographic performance. For details see www.mocana.com."

1716 Protected Mobility
6259 Executive Blvd
Rockville, MD 20852
USA

-Paul Benware
TEL: 585-582-5601

PM Cryptographic Library

Version 1.0
ARM Cortex-A9 w/ Android 3.0; ARM Cortex-A8 w/ Andriod 2.2; ARM Cortex-A9 w/ Android 2.3; ARM 6 w/ iOS 4.2; ARM 7 w/ iOS 4.2; ARM 7 w/ iOS 4.3 7/11/2011 ECB ( e/d; 256 ); CBC ( e/d; 128 , 256 ); CTR ( ext only; 256 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Externally ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported

"Cryptographic library running on Android and IOS for for encryption, decryption, hashing and random number generation."

1715 PLX Technologies
870 W. Maude Avenue
Sunnyvale, CA 94085
USA

-Nikhil Dubhashy
TEL: (44) 1235 822093
FAX: (44) 1235 821141

OXU3111

Part # OXU3111
N/A 6/29/2011 ECB ( e/d; 128 , 256 );

XTS( KS: XTS_128( (f) ) KS: XTS_256( (f) ))

"The OXU3111 offers advanced encryption and decryption for the external secure storage market. Data is encrypted / decrypted at line rate. The OXU3111 offers highly diferentiable USB 3.0 to single SATA bridging and is supplied with a production ready password application."

1714 Sunrise Micro Devices
9181 Glades Road, Suite 125
Boca Raton, FL 33434-3941
USA

-Kevin McLaughlin

aes_top

Version 1.0 (Firmware)
Part # smd 1901
Modelsim 6.4a Verilog Simulator 6/29/2011 ECB ( e only; 128 ); CBC ( e only; 128 ); CTR ( ext only; 128 )


"An AES Engine suitable for use in IEEE802.15.4 applications as an ARM-bus memory-mapped peripheral."

07/13/11: Update implementation information;

1713 IBM Corporation
2455 South Road
Poughkeepsie, New York 12601-5400
USA

-William Penny
TEL: 845-435-3010

IBM z196 CP Assist

Part # FC 3863, EC N29802 D86E
N/A 6/29/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"The IBM zSeries CP Assist feature provides processor-integrated hardware acceleration for TDES, AES and SHA variants."

1712 IBM
z/VM Design and Development
1701 North Street
Building 250-2
Endicott, NY 13760
U.S.

-Brian W. Hugenbruch
TEL: 607-429-3660

IBM z/VM 6.1 System SSL

Version 6.1 plus APAR PM08418
Part # 5741-A08
System z10 Enterprise Class processor w/ IBM z/VM V6.1 6/29/2011 CBC ( e/d; 128 , 256 );

"z/VM System SSL provides cryptographic functions which allows z/VM to protect data using the SSL/TLS protocols. z/VM System SSL also enables administrators to create and manage X.509 V3 certificates and keys within key database files."

1711 Utimaco Safeware AG
Germanusstraße 4
Aachen, 52080
Germany

-Dr. Gesa Ott
TEL: ++49 241-1696-200
FAX: ++49 241-1696-190

CryptoServer Se AES

Version aes1.0.5.0 (Firmware)
Texas Instruments TMS320C6416T 6/29/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

CMAC (Generation/Verfication ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 )


"Safeguard® CryptoServer Se is an encapsulated, tamper-protected hardware security module which provides secure cryptographic services like encryption or decryption, hashing, signing and verification of data, random number generation, on-board secure key generation, key storage, and further key management functions."

1710 Chunghwa Telecom Co., Ltd. Telecommunication Laboratories
12, Lane 551
Min-Tsu Road SEC.5
Yang-Mei, Taoyuan 326
Taiwan, ROC

-Yeou-Fuh Kuan
TEL: +886-3-424-4333
FAX: +886-3-424-4129

-Char-Shin Miou
TEL: +886-3-424-4381
FAX: +886-3-424-4129

HiKey Cryptographic Library

Version 2.0 (Firmware)
Java Card Runtime Environment v2.2.2 with Global Platform v2.1.1 on Renesas AE-5 Series Processor 6/29/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"HiKey Cryptographic Library supports AES, Triple-DES, HMAC, SHS, RSA and a NIST 800-90 Hash DRBG Implementations for the HiKey PKI token and HiKey flash products."

07/13/11: Update implementation information;

1709 NationZ
11-13F,Tower Building #3
China Academy of Science and Technology Dev.
Gaoxin South Ave.1, Nanshan District
Shenzen, Guangdong 518057
P.R.C.

-Shaowei Chen

NationZ Z8H128D32CP Security Chip

Version V1.0 (Firmware)
8-bit NationZ Security IC 6/22/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"The Z8H128D32CP chip is based on the 8-bit CPU Nationz Security IC platform for different applications in the information security fields. They have the features of low power consumption, low cost and high performance, etc."

1708 NationZ
11-13F,Tower Building #3
China Academy of Science and Technology Dev.
Gaoxin South Ave.1, Nanshan District
Shenzen, Guangdong 518057
P.R.C.

-Shaowei Chen

NationZ Z32H320TP Security Chip

Version V1.0 (Firmware)
32-bit NationZ Security IC 6/22/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"The Z32H320TP chip is based on the 32-bit CPU Nationz Security IC platform for different applications in the information security fields. They have the features of low power consumption, low cost and high performance, etc."

1707 NationZ
11-13F,Tower Building #3
China Academy of Science and Technology Dev.
Gaoxin South Ave.1, Nanshan District
Shenzen, Guangdong 518057
P.R.C.

-Shaowei Chen

NationZ Z8D256 Security Chip

Version V1.0 (Firmware)
8-bit NationZ Security IC 6/22/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"The Z8D64 chip is based on the 8-bit CPU Nationz Security IC platform for different applications in the information security fields. They have the features of low power consumption, low cost and high performance, etc."

1706 NationZ
11-13F,Tower Building #3
China Academy of Science and Technology Dev.
Gaoxin South Ave.1, Nanshan District
Shenzen, Guangdong 518057
P.R.C.

-Shaowei Chen

NationZ Z32D1024 Security Chip

Version V1.0 (Firmware)
32-bit NationZ Security IC 6/22/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"The Z32D1024 chip is based on the 32-bit CPU Nationz Security IC platform for different applications in the information security fields. They have the features of low power consumption, low cost and high performance, etc."

1705 Nationz Technologies Inc.
11-13F,Tower Building #3
China Academy of Science and Technology Dev.
Gaoxin South Ave.1,Nanshan District
Shenzhen, 518057
P. R. China

-Shaowei Chen

NationZ Z32H256D40CPR Security Chip

Version V1.0 (Firmware)
32-bit NationZ Security IC 6/22/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"The Z32H256D40CPR chip is based on the 32-bit CPU Nationz Security IC platform for different applications in the information security fields. They have the features of low power consumption, low cost and high performance, etc."

1704 Micron Technology
3060 N. First Street
San Jose, CA 95134
USA

-Mehdi Asnaashari
TEL: (408) 834-1737
FAX: (408) 834-1711

Micron 400 AES Module

Version 5967 (Firmware)
Part # 88SS9174
Marvell Van Gogh Controller Embedded ARM Processor 6/22/2011 ECB ( e/d; 256 ); CBC ( e/d; 256 ); CTR ( ext only; 256 )


"Solid State hard drive"

1703 IBM Corporation
2455 South Road
Poughkeepsie, New York 12601-5400
USA

-William Penny
TEL: 845-435-3010

-Alyson Comer
TEL: 607-429-4309

IBM z/OS® Cryptographic Services System SSL - 64-bit

Version OA34156
Part # 5694-A01
IBM zEnterprise(TM) 196 w/ IBM z/OS® V1.12 6/22/2011 CBC ( e/d; 128 , 256 );

"z/OS® System SSL provides a rich set of C based applcation programming interfaces that allow applications to protect data using the SSL/TLS protocols and through PKCS#7 cryptographic messages. z/OS System SSL also enables applications to create and manage X.509 V3 certificates and keys within key database files and PKCS#11 tokens."

1702 IBM Corporation
2455 South Road
Poughkeepsie, New York 12601-5400
USA

-William Penny
TEL: 845-435-3010

-Alyson Comer
TEL: 607-429-4309

IBM z/OS® Cryptographic Services System SSL - 31-bit

Version OA34156
Part # 5694-A01
IBM zEnterprise(TM) 196 w/ IBM z/OS® V1.12 6/22/2011 CBC ( e/d; 128 , 256 );

"z/OS® System SSL provides a rich set of C based applcation programming interfaces that allow applications to protect data using the SSL/TLS protocols and through PKCS#7 cryptographic messages. z/OS System SSL also enables applications to create and manage X.509 V3 certificates and keys within key database files and PKCS#11 tokens."

1701 Brocade Communications Systems, Inc.
130 Holger Way
San Jose, CA 95134
USA

-Albert Tao
TEL: 408-333-5754

Condor 3 ASIC

Part # Condor 3 ASIC
N/A 6/16/2011 ECB ( e only; 128 , 256 );

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) (KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Externally ) ; PT Lengths Tested: ( 128 , 1024 ) ; AAD Lengths tested: ( 256 , 256 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Not_Supported

"AES-GCM-128; AES-GCM-256; AES-ECB-128; AES-ECB-256"

1700 Brocade Communications Systems, Inc.
130 Holger Way
San Jose, CA 95134
USA

-Albert Tao
TEL: 408-333-5754

Blaster FPGA

Part # Blaster FPGA
N/A 6/16/2011 ECB ( e only; 256 );

GCM (KS: AES_256( e/d ) Tag Length(s): 128 )
IV Generated: ( Externally ) ; PT Lengths Tested: ( 128 , 1024 ) ; AAD Lengths tested: ( 64 , 64 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Not_Supported

"AES-ECB-256; AES-GCM-256"

1699 Quest Software, Inc.
5 Polaris Way
Aliso Viejo, CA 92656
USA

-Dr. Einar Mykletun
TEL: 949-754-8136
FAX: 949-754-8499

Heimdal

Version 1.2.1
Intel Core 2 Duo T2300 w/ openSUSE 11.2 6/16/2011 ECB ( e/d; 128 , 256 );

"Quest Authentication Services addresses authentication by extending th security and compliance to Active Directory to Unix, Linux and Mac, as well as to many enterprise applications."

1698 NAL Research Corporation
9300 West Courthouse Rd.
Manassas, Va 20110
USA

-Peter Kormendi
TEL: 703-392-1136
FAX: 703-391-6795

A3LA-XM Crypto Module

Version 1.1.0 (Firmware)
PIC32MX460F512L 6/16/2011 ECB ( e/d; 256 );

"The A3LA-XM is an Iridium satellite modem. It supports the following services: dial-up data, direct Internet connection, short message service (SMS), short-burst data (SBD), RUDICS and voice. It features wide input voltage range, hardware watchdog, and FIPS approved AES-256 encryption. It has been certified to MIL-STD-810F standards for temperatur"

1697 SPYRUS, Inc.
1860 Hartog Drive
San Jose, CA 95131-2203
USA

-Jack Young
TEL: 408-392-0319
FAX: 408-392-9131

SPYRUS FIPS Sector-based Encryption Module

Version 03.00.0C (Firmware)
Part # 8800740013F
Xilinx XC3S500E 6/16/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"The Spyrus FIPS Sector-based Encryption Module is a multifunctional USB security device combining security token and portable secure storage drive features with the strongest hardware-based encryption technology commercially available for protection of user data files."

06/27/11: Update implementation information;

1696 SPYRUS, Inc.
1860 Hartog Drive
San Jose, CA 95131-2203
USA

-Jack Young
TEL: 408-392-0319
FAX: 408-392-9131

SPYRUS FIPS Sector-based Encryption Module

Version 03.00.0C (Firmware)
Part # 8800740013F
NXP LPC3131 6/16/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"The Spyrus FIPS Sector-based Encryption Module is a multifunctional USB security device combining security token and portable secure storage drive features with the strongest hardware-based encryption technology commercially available for protection of user data files."

06/27/11: Update implementation information;

1695 SPYRUS, Inc.
1860 Hartog Drive
San Jose, CA 95131-2203
USA

-Jack Young
TEL: 408-392-0319
FAX: 408-392-9131

SPYRUS FIPS Sector-based Encryption Module

Version 03.00.0C (Firmware)
Part # 8800740012F
NXP LPC3131 6/16/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"The Spyrus FIPS Sector-based Encryption Module is a multifunctional USB security device combining security token and portable secure storage drive features with the strongest hardware-based encryption technology commercially available for protection of user data files."

06/27/11: Update implementation information;

1694 SPYRUS, Inc.
1860 Hartog Drive
San Jose, CA 95131-2203
USA

-Jack Young
TEL: 408-392-0319
FAX: 408-392-9131

SPYRUS FIPS Sector-based Encryption Module

Version 03.00.0C (Firmware)
Part # 8800740010F
NXP LPC3131 6/16/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"The Spyrus FIPS Sector-based Encryption Module is a multifunctional USB security device combining security token and portable secure storage drive features with the strongest hardware-based encryption technology commercially available for protection of user data files."

06/27/11: Update implementation information;

1693 A10 Networks, Inc.
2309 Bering Drive
San Jose, CA 95131
USA

-John Chiong
TEL: +1 408 325-8668

A10 Networks SSL FIPS Library

Version 1.0.0 (Firmware)
Intel Xeon E5540; Intel Xeon E5520; Intel Xeon X5550; Intel Xeon X5570; Intel Xeon X5690; Intel Xeon E31270; Intel Xeon E5620; Intel Xeon X5650; Intel Xeon X5670; Intel Xeon E5690; Intel Xeon E3-1230; Intel Xeon E5-2680; Intel Xeon E5-2687 6/16/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"The AX Series Advanced Traffic Manager is designed to meet the growing demands of Web sites, carriers and enterprises. The AX offers intelligent Layer 4-7 application processing capabilities with industry-leading performance and scalability to meet critical business requirements at competitive prices."

07/14/11: Add new tested information;
04/09/12: Added new tested information;
12/12/12: Added new tested information;

1692 Marvell Semiconductor, Inc.
5488 Marvell Lane
Santa Clara, CA 95054
USA

-Lei Poo
TEL: (408) 222-5000

-Fred Au
TEL: (408) 222-5000

Marvell_Einstein2_Media_AES/XTS_HW_Engine

Version mdaes_einstein2_07222010 (Firmware)
VCS Compiler version C-2009.06-7 simulation environment 6/16/2011 ECB ( e/d; 128 , 256 ); CBC ( e/d; 128 , 256 );

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"A high-speed, low gate count AES hardware module supporting different modes of operation, including AES-XTS."

1691 Mxtran Inc.
9F, No.16, Li-Hsin Road, Science Park
Hsin-chu, Taiwan 300
Taiwan, R.O.C.

-C.W. Pang
TEL: +886-3-6661778#29300
FAX: +886-3-6662568

-Anderson Ni

Mxtran Cryptographic IP Library

Version 1.0 (Firmware)
NC-verilog simulator 6/16/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"The Mxtran Cryptographic IP Library provides the synthesizable hardware IP cores for the cryptographic services of all Mxtran''s security related products."

1690 SPYRUS, Inc.
1860 Hartog Drive
San Jose, CA 95131-2203
USA

-Jack Young
TEL: 408-392-0319
FAX: 408-392-9131

SPYRUS FIPS Sector-based Encryption Module

Version 03.00.0C (Firmware)
Part # 8800740012F
Xilinx XC3S500E 6/16/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"The Spyrus FIPS Sector-based Encryption Module is a multifunctional USB security device combining security token and portable secure storage drive features with the strongest hardware-based encryption technology commercially available for protection of user data files."

06/27/11: Update implementation information;

1689 SPYRUS, Inc.
1860 Hartog Drive
San Jose, CA 95131-2203
USA

-Jack Young
TEL: 408-392-0319
FAX: 408-392-9131

SPYRUS FIPS Sector-based Encryption Module

Version 03.00.0C (Firmware)
Part # 8800740010F
Xilinx XC3S500E 6/16/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"The Spyrus FIPS Sector-based Encryption Module is a multifunctional USB security device combining security token and portable secure storage drive features with the strongest hardware-based encryption technology commercially available for protection of user data files."

06/27/11: Update implementation information;

1688 SPYRUS, Inc.
1860 Hartog Drive
San Jose, CA 95131-2203
USA

-Jack Young
TEL: 408-392-0319
FAX: 408-392-9131

SPYRUS FIPS Sector-based Encryption Module

Version 03.00.0C (Firmware)
Part # 880074009F
Xilinx XC3S500E 6/16/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"The Spyrus FIPS Sector-based Encryption Module is a multifunctional USB security device combining security token and portable secure storage drive features with the strongest hardware-based encryption technology commercially available for protection of user data files."

06/27/11: Update implementation information;

1687 SPYRUS, Inc.
1860 Hartog Drive
San Jose, CA 95131-2203
USA

-Jack Young
TEL: 408-392-0319
FAX: 408-392-9131

SPYRUS FIPS Sector-based Encryption Module

Version 03.00.0C (Firmware)
Part # 880074009F
NXP LPC3131 6/16/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"The Spyrus FIPS Sector-based Encryption Module is a multifunctional USB security device combining security token and portable secure storage drive features with the strongest hardware-based encryption technology commercially available for protection of user data files."

06/27/11: Update implementation information;

1686 SPYRUS, Inc.
1860 Hartog Drive
San Jose, CA 95131-2203
USA

-Jack Young
TEL: 408-392-0319
FAX: 408-392-9131

SPYRUS FIPS Sector-based Encryption Module

Version 03.00.0C (Firmware)
Part # 880074007F
Xilinx XC3S500E 6/16/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"The Spyrus FIPS Sector-based Encryption Module is a multifunctional USB security device combining security token and portable secure storage drive features with the strongest hardware-based encryption technology commercially available for protection of user data files."

06/27/11: Update implementation information;

1685 SPYRUS, Inc.
1860 Hartog Drive
San Jose, CA 95131-2203
USA

-Jack Young
TEL: 408-392-0319
FAX: 408-392-9131

SPYRUS FIPS Sector-based Encryption Module

Version 03.00.0C (Firmware)
Part # 880074007F
NXP LPC3131 6/16/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"The Spyrus FIPS Sector-based Encryption Module is a multifunctional USB security device combining security token and portable secure storage drive features with the strongest hardware-based encryption technology commercially available for protection of user data files."

06/27/11: Update implementation information;

1684 SPYRUS, Inc.
1860 Hartog Drive
San Jose, CA 95131-2203
USA

-Jack Young
TEL: 408-392-0319
FAX: 408-392-9131

SPYRUS FIPS Sector-based Encryption Module

Version 03.00.0C (Firmware)
Part # 880074006F
Xilinx XC3S500E 6/16/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"The Spyrus FIPS Sector-based Encryption Module is a multifunctional USB security device combining security token and portable secure storage drive features with the strongest hardware-based encryption technology commercially available for protection of user data files."

06/27/11: Update implementation information;

1683 SPYRUS, Inc.
1860 Hartog Drive
San Jose, CA 95131-2203
USA

-Jack Young
TEL: 408-392-0319
FAX: 408-392-9131

SPYRUS FIPS Sector-based Encryption Module

Version 03.00.0C (Firmware)
Part # 880074006F
NXP LPC3131 6/16/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"The Spyrus FIPS Sector-based Encryption Module is a multifunctional USB security device combining security token and portable secure storage drive features with the strongest hardware-based encryption technology commercially available for protection of user data files."

06/27/11: Update implementation information;

1682 Ciena Corporation
1201 Winterson Road
Linthicum, MD 21090
USA

-Patrick Scully
TEL: 613-670-3207

ActivSpan Crypto

Part # XC5VFX200T-2FF1738
N/A 6/16/2011 ECB ( e only; 256 ); CTR ( int only; 256 )


"The 565/5100/5200 Advanced Services Platform offers an integrated transport encryption solution providing an ultra-low latency and protocol-agnostic wirespeed encryption service for use in small to large enterprises or datacenters and also offered through service providers as a differentiated managed service."

07/13/11: Add implementation information;

1681 Certes Networks Inc
300 Corporate Center Drive
Suite 140
Pittsburgh, PA 15108
USA

-Todd Cignetti
TEL: 412-262-2571
FAX: 412-262-2574

Certes Networks CEP Cryptographic Library #2

Version 1.6 (Firmware)
Netlogic XLR; Netlogic XLS 6/16/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"Certes Networks CEP-VSEs are high performance enforcement points offering variable speed encryption and authentication from 3 Mbps-10Gbps. Policies are defined in a centralized management solution. Roles are assigned for policy control and device management. CEP-VSEs encrypt at Layers 2, 3 or 4 in a way that is transparent to the network."

06/28/11: Update implementation information;

1680 Certes Networks Inc
300 Corporate Center Drive
Suite 140
Pittsburgh, PA 15108
USA

-Todd Cignetti
TEL: 412-262-2571
FAX: 412-262-2574

Certes Networks CEP Cryptographic Library #1

Version 1.6 (Firmware)
Netlogic XLR; Netlogic XLS 6/16/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"Certes Networks CEP-VSEs are high performance enforcement points offering variable speed encryption and authentication from 3 Mbps-10Gbps. Policies are defined in a centralized management solution. Roles are assigned for policy control and device management. CEP-VSEs encrypt at Layers 2, 3 or 4 in a way that is transparent to the network."

06/28/11: Update implementation information;

1679 Marvell Semiconductor, Inc.
5488 Marvell Lane
Santa Clara, CA 95054
USA

-Lei Poo
TEL: (408) 222-5000

-Yoko Enokida
TEL: (408) 222-5000

Monet2.0-FW-AES-Crypto-Lib

Version 1.0 (Firmware)
88SS9187 6/16/2011 ECB ( e/d; 128 , 256 ); CBC ( e/d; 128 , 256 ); CTR ( ext only; 128 , 256 )


"Marvell''s Monet 2.0 SoC is a highly integrated System-On-Chip (SoC) controller solution customized for NAND Flash drives. It feaures a NAND Flash interface controller with a highly efficient architecture, and advanced correction capabilities. It integrates an AES-256 HW engine to support Full Drive Encryption (FDE), as well as a single-chip securit"

1678 Marvell Semiconductor, Inc.
5488 Marvell Lane
Santa Clara, CA 95054
USA

-Lei Poo
TEL: 408-222-5000

-Fred Au
TEL: 408-222-5000

Marvell_Einstein2_BCM_AES/XTS_HW_Engine

Version BCM_EINSTEIN_2.0_02281 (Firmware)
VCS Compiler version C-2009.06-7 simulation environment 6/16/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"An area optimized AES encryption/decryption hardware design. It supports CBC, CTR and XTS modes of operation."

1677 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-James Murphy

Apple AES S/W Implementation for CommonCrypto on iPhone4

Version 2.0
iPhone4 - Apple A4 w/ iOS 5 6/7/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported
DRBG: Val# 97

"Apple iOS CommonCrypto Module v2.0 cryptographic library offering an optimized implementation of AES."

1676 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-James Murphy

Apple AES non-optimized S/W Implementation for CommonCrypto on iPhone4

Version 2.0
iPhone4 - Apple A4 w/ iOS 5 6/7/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported
DRBG: Val# 97

"Apple iOS CommonCrypto Module v2.0 cryptographic library offering a non-optimized implementation of AES."

1675 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-James Murphy

Apple AES S/W Implementation for CommonCrypto on iPad2

Version 2.0
iPad2 - Apple A5 w/ iOS 5 6/7/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported
DRBG: Val# 96

"Apple iOS CommonCrypto Module v2.0 cryptographic library offering an optimized implementation of AES."

1674 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-James Murphy

Apple AES non-optimized S/W Implementation for CommonCrypto on iPad2

Version 2.0
iPad2 - Apple A5 w/ iOS 5 6/7/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported
DRBG: Val# 96

"Apple iOS CommonCrypto Module v2.0 cryptographic library offering a non-optimized implementation of AES."

1673 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-James Murphy

Apple AES H/W Implementation for CommonCrypto on iPhone4

Part # A4
N/A 6/7/2011 CBC ( e/d; 128 , 192 , 256 );

"Accelerated AES implementation invoked by the Apple iOS CommonCrypto Module v2.0 cryptographic library."

1672 Apple Inc.
1 Infinite Loop
Cupertino, CA 95014
USA

-James Murphy

Apple AES H/W Implementation for CommonCrypto on iPad2

Part # A5
N/A 6/7/2011 CBC ( e/d; 128 , 192 , 256 );

"Accelerated AES implementation invoked by the Apple iOS CommonCrypto Module v2.0 cryptographic library."

1671 ZyFLEX Technologies, Inc.
4F,No.5-2, Industry E. 9th Rd., Science park Hsinchu
Hsinchu, 30075
Taiwan, R.O.C.

-Nick Tseng
TEL: +886-3-5679168
FAX: +886-3-5679188

ZyFLEX AES Core

Version 1.0 (Firmware)
Modelsim 6.4a Verilog simulator 6/7/2011 OFB ( e/d; 128 , 192 , 256 );

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 14 ) (Payload Length Range: 2 - 32 ( Nonce Length(s): 13 (Tag Length(s): 4 6 8 10 12 14 16 )


"The ZyFLEX AES Core is a comprehensive hardware IP implementation of AES in synthesizable Verilog code. The core can be synthesized as encryption engine, decryption engine or encryption/decryption engine, and can be targeted at commercial FPGAs or ASIC implementation."

1670 ZyFLEX Technologies, Inc.
4F,No.5-2, Industry E. 9th Rd., Science park Hsinchu
Hsinchu, 30075
Taiwan, R.O.C.

-Nick Tseng
TEL: +886-3-5679168
FAX: +886-3-5679188

ZyFLEX Crypto Library

Version 1.0 (Firmware)
NIOS2 (Altera FPGA embedded processor) 6/7/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"The ZyFLEX Crypto Library implements the cryptographic algorithms such as AES, HMAC, DSA, RSA, SHA and RNG. The ZyFLEX Crypto Library is designed to provide secure communications in an IP-based network."

1669 Marvell Semiconductor, Inc.
5488 Marvell Lane
Santa Clara, CA 95054
USA

-Lei Poo
TEL: (408) 222-5000

-Fred Au
TEL: (408) 222-5000

Marvell_Monet2_Media_AES/XTS_HW_Engine

Version mdaes_fct2_11292010.tag (Firmware)
VCS Compiler version C-2009.06-7 simulation environment 6/7/2011 ECB ( e/d; 128 , 256 ); CBC ( e/d; 128 , 256 ); CTR ( ext only; 128 , 256 )

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"A high-speed, low gate count AES hardware module supporting different modes of operation, including AES-XTS."

1668 Watchdata Technologies Pte Ltd
Admirax 8 Admiralty Street #2-07/08
Singapore, Singapore 757438
Singapore

-Jing Bai
TEL: 65 67793050
FAX: 65 67792460

-Haitao Cao
TEL: 65 67793050
FAX: 65 67792460

Watchdata-FIPS-S192-TimeCOS Hardware Cryptographic Library

Version 1.0.0.1 (Firmware)
CIU96S192UFB 6/7/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"Watchdata-FIPS-S192-TimeCOS Hardware Cryptographic Library provides core cryptographic functionality for Watchdata''s security products providing a capability to develop complex and flexible security applications."

1667 Trend Micro Inc.
40 Hines Road, Suite 200
Ottawa, ON K2K 2M5
Canada

-Marion Chase
TEL: +1 613 599 4505x2306
FAX: +1 613 599 8191

-Allan MacPhee
TEL: +1 613 599 4505x2289
FAX: +1 613 599 8191

Trend Micro Cryptographic Module - Deep Security Agent

Version 7.5.0
Intel Core 2 Duo w/ Windows 2008 6/7/2011 CBC ( e/d; 256 );

"Trend Micro Cryptographic Module provides FIPS 140-2 algorithm services for Deep Security Agents and Appliances deployed directly on protected computers."

1666 IP Cores, Inc.
3731 Middlefield Rd
Palo Alto, CA 94303
USA

-Dmitri Varsanofiev
TEL: 650 815 7996
FAX: 650 815 7996

GCM1-8/256D

Version 1.4 (Firmware)
Aldec Riviera-PRO 2010 6/7/2011 ECB ( e only; 256 );

GCM (KS: AES_256( ) Tag Length(s): 64 )
IV Generated: ( Externally ) ; PT Lengths Tested: ( 64 , 64 ) ; IV Lengths Tested: ( 8 , 1024 )
GMAC_Not_Supported

"Ultracompact GCM-AES decryption core with 256-bit AES key; part of the AES-DS satellite control decryption suite"

1665 Nexgrid
4444 Germanna Hwy
Locust Grove, VA 22508
USA

-Thomas McLure
TEL: (888) 556-0911 ext 1
FAX: (703) 562-8385

-Haim Shaul
TEL: (888) 556-0911 ext 1
FAX: (703) 562-8385

ecoNet OpenSSL Cryptographic Implementation

Version 1.2.2 (Firmware)
Atheros AR7141 6/7/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"ecoNet smart grid gateways provide the central link between intelligent endpoint devices and the Utility''s backhaul or WAN enabling real time network control and monitoring."

1664 GOTrust Technology Inc.
10F-1, No.306, Sec. 1, Wenxin Rd., Nantun Dist.
Taichung City, 408
Taiwan

-Jerry Lin
TEL: +886-4-23202525
FAX: +886-4-23202580

GO-Trust Cipher Library

Version 1.0 (Firmware)
ARM SecurCore SC300 6/7/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"The GO-Trust Cipher Library is designed to provide FIPS140-2 algorithm support for the GO-Trust SDencrypter Cryptographic Module. This module supports GO-Trust applications (for example: KingCall and KingText) by providing validated Cryptographic Services. The incorporation of these algorithms makes these products ideal for enterprise and government applications."

06/21/11: Update implementation information;

1663 N/A N/A N/A 6/7/2011 N/A
1662 WatchGuard Technologies, Inc.
505 Fifth Avenue South, Suite 500
Seattle, Washington 98104
USA

-Peter Eng
TEL: 206-613-6608
FAX: 206-613-0888

XTM Cryptographic Module

Version 11.5.1 (Firmware)
Intel Celeron 440; Intel E5410/L5410; IntelIXP 435; Intel Q9400; Intel E5645; Freescale P1020; Freescale P1011; Freescale P2020 6/7/2011 CBC ( e/d; 128 , 192 , 256 );

"WatchGuard XTM security appliances are designed to protect organizations from various security and productivity threats, including viruses, network attacks, intrusion attempts, Trojan horses, harmful or counterproductive URLs, spam, and more, while also providing secure Virtual Private Network (VPN) connections among workplaces and remote users."

10/11/11: Add new tested information;
03/01/12: Update implementation information;

1661 Imation Corp.
Discovery Bldg. 1A-041
Oakdale, MN 55128
USA

-Larry Hamid
TEL: 408-737-4308

Bluefly Processor Firmware

Version 2.4 (Firmware)
Bluefly Processor 6/7/2011 ECB ( e/d; 128 , 256 ); CFB128 ( e/d; 128 , 256 ); OFB ( e/d; 128 , 256 ); CTR ( ext only; 128 , 256 )

CCM (KS: 128 , 256 ) (Assoc. Data Len Range: 0 - 32 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 4096 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 4096 ; Tag Len(s) Min: 16 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Externally ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 128 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported

"The Bluefly processor is a cryptographic and authentication engine for Personal Portable Security Devices (PPSDs). It provides secure storage, digital identity functions, and multifactor user authentication for USB-based peripherals."

04/23/12: Updated vendor information;

1660 WatchGuard Technologies, Inc.
505 Fifth Avenue South, Suite 500
Seattle, Washington 98104
USA

-Peter Eng
TEL: 206-613-6608
FAX: 206-613-0888

XTM Cryptographic Processor for XTM8, XTM1050, and XTM2050

Part # 400BG233-P-G
N/A 6/7/2011 CBC ( e/d; 128 , 192 , 256 );

"WatchGuard XTM security appliances are designed to protect organizations from various security and productivity threats, including viruses, network attacks, intrusion attempts, Trojan horses, harmful or counterproductive URLs, spam, and more, while also providing secure Virtual Private Network (VPN) connections among workplaces and remote users."

06/01/11: Update implementation information;

1659 WatchGuard Technologies, Inc.
505 Fifth Avenue South, Suite 500
Seattle, Washington 98104
USA

-Peter Eng
TEL: 206-613-6608
FAX: 206-613-0888

XTM Cryptographic Processor for XTM5

Part # 350BG233-G
N/A 6/7/2011 CBC ( e/d; 128 , 192 , 256 );

"WatchGuard XTM security appliances are designed to protect organizations from various security and productivity threats, including viruses, network attacks, intrusion attempts, Trojan horses, harmful or counterproductive URLs, spam, and more, while also providing secure Virtual Private Network (VPN) connections among workplaces and remote users."

1658 WatchGuard Technologies, Inc.
505 Fifth Avenue South, Suite 500
Seattle, Washington 98104
USA

-Peter Eng
TEL: 206-613-6608
FAX: 206-613-0888

XTM Cryptographic Processor for XTM2

Part # NHIXP435AE
N/A 6/7/2011 CBC ( e/d; 128 , 192 , 256 );

"WatchGuard XTM security appliances are designed to protect organizations from various security and productivity threats, including viruses, network attacks, intrusion attempts, Trojan horses, harmful or counterproductive URLs, spam, and more, while also providing secure Virtual Private Network (VPN) connections among workplaces and remote users."

1657 N/A N/A N/A 5/25/2011 N/A
1656 Acer Inc.
8F, 88, Sec. 1, Hsin Tai Wu Rd.
Hsichih Dist.
New Taipei City, 221
Taiwan

-Sammy Wu
TEL: +886-2-2696-3131#388
FAX: +886-2-2696-3535

Acer Proshield AES Library

Version 1.0
Intel Pentium M; AMD Athlon 64 X2 Dual Core; Intel Core i7-870; Intel Core 2 Duo w/ 64-bit Microsoft Windows 7; 32-bit Microsoft Windows 7; 32-bit Microsoft Windows XP; 32-bit Microsoft Windows Vista 6/7/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )


"Acer Proshield AES library is a compact and fast encryption library that provides an Application Programming Interface (API) for PC and notebook application, especially, it also can be combined with Biometrics devices to achieve no-password and bio-key-generation performance."

1655 Athena Smartcard Inc.
20380 Town Center Lane, Suite 240
Cupertino, CA 95014
USA

-Ian Simmons
TEL: (408) 865-0112
FAX: (408) 865-0333

Athena OS755 AES Component

Version A2.0 (Firmware)
Part # Inside Secure AT90SC generation V
Inside Secure AT90SC generation V w/ OS755 5/24/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"Athena OS755 is a GlobalPlatform Java Card smart card operating system implementing AES, TDES, DRBG, SHA-1/SHA-2, RSA, SP 800-56A KAS (ECC CDH Primitive only) and ECDSA2."

06/01/11: Update implementation information;
06/09/11: Update implementation information;

1654 Athena Smartcard Inc.
20380 Town Center Lane, Suite 240
Cupertino, CA 95014
USA

-Ian Simmons
TEL: (408) 865-0112
FAX: (408) 865-0333

Athena OS755 AES Component

Version A1.0 (Firmware)
Inside Secure AT90SC generation T and U w/OS755 5/24/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"Athena OS755 is a GlobalPlatform Java Card smart card operating system implementing AES, TDES, DRBG, SHA-1/SHA-2, RSA, SP 800-56A KAS (ECC CDH Primitive only) and ECDSA2."

1653 Harris Corporation
221 Jefferson Ridge Parkway
Lynchburg, VA 24501
USA

-Joyce O'Quinn
TEL: 434-455-6458

Harris Corporation UAC DSP Software Security Library

Version R1A (Firmware)
Texas Instruments TI320C5510 5/24/2011 CBC ( e/d; 128 , 256 ); OFB ( e/d; 256 );

"DSP software library for AES encryption and decryption for Harris Corporation Interop Gateway Applications."

05/23/11: Update implementation information;

1652 Harris Corporation
221 Jefferson Ridge Parkway
Lynchburg, VA 24501
USA

-Brian Justice
TEL: 434-455-9586

Harris Corporation UAC MPC860 Software Security Library

Version R1A (Firmware)
Freescale MPC860P 5/24/2011 ECB ( e/d; 256 ); CBC ( e/d; 256 ); OFB ( e/d; 256 );

"MPC860 software library for AES encryption and decryption for Harris Corporation Interop Gateway Applications."

05/23/11: Update implementation information;

1651 Brocade Communications Systems, Inc.
130 Holger Way
San Jose, CA 95134
USA

-Sunil Chitnis
TEL: 408-333-2444
FAX: 408-333-4887

-Bob Colvin
TEL: 408-333-4839
FAX: 408-333-4887

FIPS 140-2 for Brocade IP Products

Version FastIron 7.2.1 (Firmware)
Freescale MPC8248; Freescale MPC8544E; Freescale MPC8245 5/24/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"Our Goal is to receive FIPS 140-2 SL2 certification on the above platforms. For this, we have identified the cryptographic boundary to be the management module (with access to E2PROM on backplane). The software is to be updated to use NSS/NSPR as the cryptographic engine."

1650 Mercury Security Corporation
2355 Mira Mar Ave.
Long Beach, CA 90815
USA

-Frank Gasztonyi
TEL: (562) 986-9105
FAX: (562) 986-9205

AES Library

Version 4.005.1
Pentium Dual Core w/ Microsoft Windows 7; Pentium Dual Core w/ Microsoft Windows Server 2008 5/24/2011 ECB ( e/d; 128 ); CBC ( e only; 128 );

"The Scpd_net.dll provides communication services to Mercury Security Corporation''s access control products."

07/12/11: Update implementation information;

1649 Freescale Semiconductor, Inc.
7700 West Parmer Lane
Austin, TX 78729
USA

-Geoffrey Waters
TEL: 512-996-5815
FAX: 512-996-7866

AESA 4.0

Part # P4080r2
N/A 5/24/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 32 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 4 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 4 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 4 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Externally ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"Freescale''s AESA 4.0 is included in multiple QorIQ Integrated Communications Processor, including: P4080, P4040, P3041, P5020, P2040, P2041, P1010, and P1023."

1648 Freescale Semiconductor, Inc.
7700 West Parmer Lane
Austin, TX 78729
USA

-Geoffrey Waters
TEL: 512-996-5815
FAX: 512-996-7866

AESU 3.0.1

Part # MPC8569E
N/A 5/24/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 32 ) (Payload Length Range: 1 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 4 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 4 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 4 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Externally ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported

XTS( KS: XTS_128( (e/d) (f/p) ) KS: XTS_256( (e/d) (f/p) ))

"Freescale''s AESU 3.0.1 is included in multiple PowerQUICC and QorIQ Communications Processors, and StarCore DSPs, including: MPC8536E, MPC8569E, P2020, P2010, P1020, P1011, P1021, P1012, P1022, P1013, and MSC8156."

1647 Uplogix, Inc.
7600 B North Capital of Texas Highway
Suite 220
Austin, TX 78731
USA

-Martta Howard
TEL: 512-857-7043

Uplogix Libgcrypt

Version 1.4.4 (Firmware)
AMD Geode; Intel Celeron 5/24/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )


"Uplogix remote management appliances utilize Libgcrypt to provide cryptograhic algorithms to connect to IPSec VPNs. See http://www.uplogix.com and http://www.gnupg.org/ for more information"

1646 Micron Technology
3060 N. First Street
San Jose, CA 95134
USA

-Mehdi Asnaashari
TEL: (408) 834-1737
FAX: (408) 834-1711

Micron P300 AES Module

Version 2002 (Firmware)
Part # 88SS9174B1-BLD2C000-P154
Marvell Van Gogh Controller Embedded ARM processor 5/24/2011 ECB ( e/d; 256 ); CBC ( e/d; 256 ); CTR ( ext only; 256 )


"Solid State hard drive"

1645 Freescale Semiconductor, Inc.
7700 West Parmer Lane
Austin, TX 78729
USA

-Geoffrey Waters
TEL: 512-996-5815
FAX: 512-996-7866

AESU 3.0.0

Part # MPC8572E
N/A 5/24/2011

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Externally ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported AES Val#963

"Freescale''s AESU 3.0.0 is included in multiple PowerQUICC Communications Processors including: MPC8379E, MPC8378E, MPC8377E, MPC8572E, MPC8571E, MPC8315E, and MPC8314E."

1644 Uplogix, Inc.
7600 B North Capital of Texas Highway
Suite 220
Austin, TX 78731
USA

-Martta Howard
TEL: 512-857-7043

Uplogix NSS

Version 3.12.6 (Firmware)
Intel Celeron; AMD Geode 5/24/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"Uplogix remote management appliance utilizes Mozilla''s Network Security Services for general purpose cryptographic functionality. NSS provides the algorithms necessary to secure Uplogix'' SSH and TLS implementations. See http://www.uplogix.com"

1643 Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

-Jennifer Gilbert
TEL: 703-484-0168

Software crypto implementation for Cisco 5940

Version 15.2(3)GC (Firmware)
Freescale MPC8548E 5/24/2011 ECB ( e/d; 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 256 )


"Cisco 5940 ESR Air-Cooled Card, Cisco 5940 ESR Conduction-Cooled Card"

07/02/12: Updated implementation information;
02/01/13: Updated implementation information;

1642 VMware, Inc.
3401 Hillview Avenue
Palo Alto, CA 94304
USA

-Eric Betts
TEL: 650-427-1902
FAX: 650-427-5001

VMware View PCoIP Cryptographic Engine

Version 1.0
Intel® Xeon® EM64T w/ Microsoft® Windows® XP; Intel® Xeon® EM64T w/ Red Hat Enterprise Linux 5.1 5/12/2011 CBC ( e/d; 128 , 256 );

"The PCoIP Cryptographic Module provides TLS and cryptographic services for protecting data traffic between a VMware View Client and a VMware View Server."

1641 Dearborn Group Technology
33604 West Eight Mile Road
Farmington Mills, MI 48335
USA

-Robin Blanton
TEL: 248-888-2000
FAX: 248-888-9977

SWICE Encryption Engine

Part # 312-DGT-1000407
N/A 5/12/2011 ECB ( e/d; 128 );

"This module encrypts/decrypts ZigBee data packets as specifically implemented in the SWICE tool."

05/25/11: Update implementation information;

1640 VMware, Inc.
3401 Hillview Avenue
Palo Alto, CA 94304
USA

-Eric Betts
TEL: 650-427-1902
FAX: 650-427-5001

VMware View PCoIP AES-GCM Engine

Version 1.0
Intel® Xeon® EM64T w/ Microsoft® Windows® XP; Intel® Xeon® EM64T w/ Red Hat Enterprise Linux 5.1 5/12/2011 ECB ( e/d; 128 );

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) IV Generated: ( Internally (using Section 8.2.1 ) ) ; PT Lengths Tested: ( 128 , 1024 ) ; AAD Lengths tested: ( 64 , 64 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Not_Supported

"The PCoIP Cryptographic Module provides TLS and cryptographic services for protecting data traffic between a VMware View Client and a VMware View Server."

1639 VMware, Inc.
3401 Hillview Avenue
Palo Alto, CA 94304
USA

-Eric Betts
TEL: 650-427-1902
FAX: 650-427-5001

VMware View PCoIP AES-ECB Engine

Version 1.0
Intel® Xeon® EM64T w/ Microsoft® Windows® XP; Intel® Xeon® EM64T w/ Red Hat Enterprise Linux 5.1 5/12/2011 ECB ( e/d; 256 );

"The PCoIP Cryptographic Module provides TLS and cryptographic services for protecting data traffic between a VMware View Client and a VMware View Server."

1638 EMC Corporation
176 South Street
Hopkinton, MA 01748
USA

-Dan Reddy
TEL: 508-249-2733

-Kerry Mahoney
TEL: 508-249-4940

4 Gb/s FC I/O Module with Encryption

Part # 303-176-100B B04
N/A 5/12/2011 ECB ( e/d; 256 );

XTS( ) KS: XTS_256( (e/d) (f/p) ))

"EMC 4Gb/s FC I/O modules provide Data at Rest Encryption to all array drives using XTS-AES-256. Back-end encryption protects information when drives are removed from the array and supports rapid array decommissioning. The modules do the encryption and don't require self-encrypting drives. Supports all drives types."

05/23/11: Update implementation information;

1637 Samsung Electronics Co., Ltd.
San #16 Banwol-Dong
Hwasung-City, Gyeonggi-Do 445-701
Korea

-Timothy Markey
TEL: 1-408-544-5517

-JIsoo Kim
TEL: 82-31-208-3870

PM810 SED MAX

Part # 1.0
N/A 5/12/2011 ECB ( e/d; 256 );

XTS( ) KS: XTS_256( (e/d) (f) ))

"SAMSUNG SSD PM810 SED FIPS 140 Module provides high-performance AES-256 cryptographic encryption and decryption of the data stored in NAND Flash via SATA interface, with up to 250MB/sec sequential read and 220MB/sec sequential write rates. The PM810 supports both the ATA Security Feature Set and TCG Opal SSC."

1636 Futurex
864 Old Boerne Road
Bulverde, TX 78163
USA

-Paul Enman
TEL: 830-980-9782 x1344
FAX: 830-438-8782

EXP9000

Version 4.0.0 (Firmware)
Part # 9750-2075
Amcc PowerPC 5/12/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"The EXP9000 cryptographic module provides secure encryption, storage, and transmmission of sensitive data used in a wide variety of applications including Futurex Hardware Security Modules (HSM) and Key Management Servers (KMS)."

1635 SZZT Electronics Co., Ltd.
SZZT Electronic Industrial Park
Jiazitang, Songbai Road
Guangming New District
Shenzhen, Guangdong Province 518132
China

-Yunchuan Qin
TEL: 86-731-85834275
FAX: 86-755-26490099

ZTA100 Encryption Library

Version ZTA100FWLIB.0.1 (Firmware)
VCS-MX Version D2009-12 Simulator 5/12/2011 ECB ( e/d; 128 ); CBC ( e/d; 256 );

"ZTA100 Encryption Library is an encryption library that runs on ZTA100, which is an 8051 compatible processor. The Library utilizes the hardware cryptographic engine of the chip and provides standard algortihm services."

1634 Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

-Ashit Vora
TEL: 703-484-5118

IOS Firmware

Version 15.1(3)S3 (Firmware)
MIPS R7000/SR71000 5/12/2011 ECB ( e/d; 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 256 )


"IOS Firmware cryptographic implementations used within Cisco devices to provide cryptographic functions"

01/06/12: Updated implementation information;
06/15/12: Updated implementation information;

1633 McAfee, Inc.
2821 Mission College Blvd.
Santa Clara, CA 95054
USA

-Mark Hanson
TEL: +1 (651) 628-1633
FAX: +1 (651) 628-2706

McAfee Web Gateway Cryptographic Engine for WG5000

Version 1.0 (Firmware)
Intel Xeon E5640 5/5/2011 CBC ( e/d; 128 , 192 , 256 );

"The McAfee Web Gateway Cryptographic Engine v1.0 provides the services necessary to support the cryptographic features and functions of McAfee''s line of anti-malware solutions, including the McAfee Web Gateway WG5000 and WG5500 appliances."

1632 Hewlett-Packard TippingPoint
7501 N. Capital of Texas Highway
Austin, TX 78737
USA

-Dinesh Vakharia
TEL: 512-681-8271

-Freddie Jimenez Jr.
TEL: 512-681-8305

HP TippingPoint SMS (OpenSSL Cryptographic Library)

Version 1.2 (Firmware)
Intel Xeon 5/5/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )


"The TippingPoint SMS is a centeralized management solution for managing and monitoring a deployment of TippingPoint security devices. The SMS provides cryptographic services for communicating with the security devices and user interfaces. This implementation focuses on the OpenSSL cryptographic library used in the SMS."

1631 Hewlett-Packard TippingPoint
7501 N. Capital of Texas Highway
Austin, TX 78737
USA

-Dinesh Vakharia
TEL: 512-681-8271

-Freddie Jimenez Jr.
TEL: 512-681-8305

HP TippingPoint SMS (NSS JCE Provider)

Version 3.12.6 (Firmware)
Intel Xeon 5/5/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"The TippingPoint SMS is a centeralized management solution for managing and monitoring a deployment of TippingPoint security devices. The SMS provides cryptographic services for communicating with the security devices and user interfaces. This implementation focuses on the NSS cryptographic library which is used to implement a SUN JCE Provider."

1630 Open Source Software Institute
8 Woodstone Plaza, Suite 101
Hattiesburg, MS 39402
USA

-John M. Weathersby, Jr.
TEL: 601-427-0152

OpenSSL FIPS Object Module Library

Version 1.2.3
Motorola PowerPC 750GX w/ VxWorks 6.7 5/5/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"The OpenSSL FIPS Cryptographic Module is a validated source code component of the standard OpenSSL distribution that can be downloaded from the http://openssl.org/ website. It has been tested with both assembler optimization and without assembler optimization."

1629 DSX Access Systems, Inc
10731 Rockwall Rd.
Dallas, TX 75238
USA

-Rusty Gibson
TEL: 214-553-6140

WinDSXSQL

Version 4.8
Intel Core 2 w/ Windows 7 Professional 5/5/2011 ECB ( e/d; 256 );

"Access Control software and processor board for access control hardware."

1628 DSX Access Systems, Inc
10731 Rockwall Rd.
Dallas, TX 75238
USA

-Rusty Gibson
TEL: 214-553-6140

1040 Series Controllers

Version 3181 (Firmware)
RDC-R8820 5/5/2011 ECB ( e/d; 256 );

"Access Control software and hardware"

1627 Digital Security Controls, a Division of Tyco Safety Products Canada Ltd.
3301 Langstaff Road
Concord, Ontario L4K 4L2
Canada

-Dan Nita
TEL: (905) 760-3000 x2706
FAX: (905) 760-3020

TL260GS-SM/GS2060-SM/TL260-SM/TL260GS-RS/GS2060-RS/TL260-RS

Version 2.00 (Firmware)
ST Microelectronics STR912FAW44X6T 5/5/2011 ECB ( e/d; 128 );

"The TL260GS-SM/GS2060-SM/TL260-SM/TL260GS-RS/GS2060-RS/TL260-RS Ver 2.00 is included in several IP/GSM Alarm Communicators Models like TL260GS-SM, GS2060-SM, TL260-SM, TL260GS-RS, GS2060-RS, TL260-RS and provides constantly supervised and encrypted line security communications over GSM/GPRS, Internet or Intranet for security/intrusion applications."

1626 QNAP Systems, Inc.
21F., No.77, Sec. 1, Xintai 5th Rd., Xizhi Dist.
New Taipei City, 221
Taiwan (R.O.C.)

-Tony Lu
TEL: +886-2-86962000#1126
FAX: +886-2-86962270

QNAP Turbo NAS AES Encryption Module

Version 1.0
Intel Atom, Intel Core 2 Duo, Intel Xeon, Intel Sandy Bridge w/ Embedded Linux (Kernel 2.6) 4/27/2011 CBC ( e/d; 128 , 192 , 256 );

"The AES Encryption Module in QNAP Turbo NAS provides folder-based and volume-based encryption/decryption of data stored on the NAS. It ensures data confidentiality in the event of lost drives due to theft or intruders."

1625 McAfee, Inc.
2821 Mission College Blvd.
Santa Clara, CA 95054
USA

-Mark Hanson
TEL: +1 (651) 628-1633
FAX: +1 (651) 628-2706

McAfee Web Gateway Cryptographic Engine for WG5500

Version 1.0 (Firmware)
Intel Xeon E5660 4/27/2011 CBC ( e/d; 128 , 192 , 256 );

"The McAfee Web Gateway Cryptographic Engine v1.0 provides the services necessary to support the cryptographic features and functions of McAfee''s line of anti-malware solutions, including the McAfee Web Gateway WG5000 and WG5500 appliances."

1624 Juniper Networks, Inc.
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Tim Huntley
TEL: 408-936-2817

SRX 100, SRX 210, SRX 220, SRX 240, SRX 650

Version 10.4R3 and 10.4R4 (Firmware)
Cavium Octeon; 4/27/2011 CBC ( e/d; 128 , 192 , 256 );

"Juniper Networks SRX Series Services Gateways provide the essential capabilities necessary to connect, secure, and manage enterprise and service provider networks, from the smallest sites to the largest headquarters and data centers. "

08/01/11: Update implementation information;
11/07/11: Update implementation information;

1623 Kanguru Solutions
1360 Main Street
Millis, MA 02054
USA

-Nate Cote
TEL: 508-376-4245
FAX: 508-376-4462

Kanguru Defender 2000 (AES)

Part # KN3000/3001
Kanguru KN3000/3001 4/20/2011 ECB ( e/d; 256 ); CBC ( e/d; 256 );

"The Kanguru Defender 2000 is a hardware encrypted USB security device designed for secure data storage. It is also used as a platform to run secure virtual operating systems and applications."

11/15/11: Update implementation information;

1622 Juniper Networks, Inc.
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Tim Huntley
TEL: 408-936-2817

Juniper Networks SSG520M and SSG550M Secure Services Gateways

Version 6.3 (Firmware)
Part # SSG520M, SSG550M
Cavium Nitrox-lite 4/20/2011 CBC ( e/d; 128 , 192 , 256 );

"The SSG-520M and SSG-550M are high-performance security platforms."

1621 Juniper Networks, Inc.
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Tim Huntley
TEL: 408-936-2817

Juniper Networks SSG320M and 350M Secure Services Gateways

Version 6.3 (Firmware)
Part # SSG-320M, SSG-350M
Cavium Nitrox-lite 4/20/2011 CBC ( e/d; 128 , 192 , 256 );

"The SSG-320M and SSG-350M are high-performance security platforms."

1620 Juniper Networks, Inc.
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Tim Huntley
TEL: 408-936-2817

Juniper Networks SSG5 and SSG20 Secure Services Gateways

Version 6.3 (Firmware)
Part # SSG-5, SSG-20
Intel IXP625 4/20/2011 CBC ( e/d; 128 , 192 , 256 );

"The SSG5 and SSG20 are high-performance security platforms."

1619 Juniper Networks, Inc.
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Tim Huntley
TEL: 408-936-2817

Juniper Networks SSG140 Secure Services Gateway

Version 6.3 (Firmware)
Part # SSG-140
Intel IXP2325 4/20/2011 CBC ( e/d; 128 , 192 , 256 );

"The SSG-140 is a high-performance security platform."

1618 Juniper Networks, Inc.
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Tim Huntley
TEL: 408-936-2817

Juniper Networks NetScreen-5200, NetScreen-5400

Version 6.3 (Firmware)
Part # NS-5200, NS-5400
Gigascreen 3 4/20/2011 CBC ( e/d; 128 , 192 , 256 );

"The ISG 1000 and 2000 are high-performance security platforms."

1617 Juniper Networks, Inc.
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Tim Huntley
TEL: 408-936-2817

Juniper Networks ISG1000/ISG2000

Version 6.3 (Firmware)
Part # ISG1000/ISG2000
Gigascreen 3 4/20/2011 CBC ( e/d; 128 , 192 , 256 );

"The ISG 1000 and 2000 are high-performance security platforms."

1616 Watchdata Technologies Pte Ltd
Admirax 8 Admiralty Street #2-07/08
Singapore, Singapore 757438
Singapore

-Jing Bai
TEL: 65 67793050
FAX: 65 67792460

-Haitao Cao
TEL: 65 67793050
FAX: 65 67792460

Watchdata-FIPS-TimeCOS Hardware Cryptographic Library

Version 1.0.0.1 (Firmware)
Z32L256D32U 4/20/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"Watchdata-FIPS-TimeCOS Hardware Cryptographic Library provides core cryptographic functionality for Watchdata''s security products providing a capability to develop complex and flexible security applications."

04/27/11: Update vendor information;

1615 Brocade Communications Systems, Inc.
130 Holger Way
San Jose, CA 95134
USA

-Sunil Chitnis
TEL: 408-333-2444
FAX: 408-333-4887

-Bob Colvin
TEL: 408-333-4839
FAX: 408-333-4887

FIPS for Brocade IP Products

Version NetIron 5.1.1a (Firmware)
Freescale MPC8544E; Freescale MPC7447A 4/20/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"Our Goal is to receive FIPS 140-2 SL2 certification (hardware category- tamper detection tape) on the above platforms. For this, we have identified the cryptographic boundary to be the management module (with access to E2PROM on backplane). The software is to be updated to use NSS/NSPR as the cryptographic engine."

1614 Symantec Corporation
350 Ellis Street
Mountain View, CA 94043
USA

-John Bordwine
TEL: (703) 885-3854
FAX: (703) 668-8953

Symantec Cross-Platform Cipher Engine

Version 1.0
Intel Pentium w/ Windows 2003 Server 32-bit; Sun UltraSPARC III w/ Solaris 10; Intel Xeon w/ RHEL 5 32-bit 4/20/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"The Symantec Cross-Platform Cipher Engine is designed to provide FIPS140-2 algorithm support for the Symantec Cross-Platform Cryptographic Module. This module supports Symantec Applications by providing validated Cryptographic Services. The incorporation of these algorithms make these products ideal for enterprise and government applications."

1613 Nivis LLC
1000 Circle 75 Pkwy
3rd Floor
Atlanta, GA 30339
USA

-Ms. Barrett Scoggins
TEL: (678) 202-6832

VersaRouter xTLS Cryptographic Engine

Version axTLS 1.2.0 Library
Processor: Freescale MCF5485; axTLS 1.2.0 Library w/ Linux, Nivis Variant 4/8/2011 CBC ( e/d; 128 , 256 );

"AES software encryption/decryption engine utilized in Nivis wireless sensing and control infrastructure devices such as Gateways, infrastructure routers and network management entities. Infrastructure products ready to be utilized in various commercial and industrial standards based wireless and wired networks."

1612 Nivis LLC
1000 Circle 75 Pkwy
3rd Floor
Atlanta, GA 30339
USA

-Ms. Barrett Scoggins
TEL: (678) 202-6832

VersaRouter Cryptographic Engine

Version 3.0
Processor: Freescale MCF5845; Software on main CPU w/ Linux, Nivis Variant 4/8/2011 ECB ( e only; 128 ); CBC ( e only; 128 ); CTR ( ext only; 128 )

CCM (KS: 128 ) (Assoc. Data Len Range: 0 - 32 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )


"AES software enc/dec engine utilized in Nivis IEEE 802.15.4 based wireless sensing & control infrastructure devices such as gateways, routers & network management entities. Implementation compliant to security policies stipulated by IEEE 802.15.4. Products ready for use in various commercial/industrial standards based wireless/wired networks."

1611 Nivis LLC
1000 Circle 75 Pkwy
3rd Floor
Atlanta, GA 30339
USA

-Ms. Barrett Scoggins
TEL: (678)-202-6832

VersaNode Cryptographic Acceleration Module

Part # Freescale MC13224
N/A 4/8/2011 ECB ( e only; 128 ); CBC ( e only; 128 ); CTR ( ext only; 128 )

CCM (KS: 128 ) (Assoc. Data Len Range: 0 - 32 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 13 (Tag Length(s): 4 8 16 )


"AES hardware enc/dec engine utilized in IEEE 802.15.4 based low-power wireless sensing and control nodes. The implementation is compliant to all security policies stipulated in the IEEE 802.15.4 standard. Wireless nodes ready to be embedded in various commercial and industrial standards based wireless products."

1610 Absolute Software
Suite 1600, Four Bentall Centre
1055 Dunsmuir Street
PO Box 49211
Vancouver, BC V7X 1K8
Canada

-Tim Parker
TEL: (604) 730-9851 x194
FAX: (604) 730-2621

-Dale Quantz
TEL: (408) 825-9417

Absolute Encryption Engine

Version 1.4.0.46
Intel Core i7-870 w/VT (2.93GHz 8MB L3 Cache) w/ 32-bit Microsoft Windows 7; Intel Core i7-870 w/VT (2.93GHz 8MB L3 Cache) w/ 32-bit Microsoft Windows XP; Intel Core i7-870 w/VT (2.93GHz 8MB L3 Cache) w/ 32-bit Microsoft Windows Vista; Intel Core i7-870 w/VT (2.93GHz 8MB L3 Cache) w/ 64-bit Windows Vista; Intel Core i7-870 w/VT (2.93GHz 8MB L3 Cache) w/ 64-bit Microsoft Windows Server 2008; Intel Core i7-870 w/VT (2.93GHz 8MB L3) w/ 32-bit Red Hat Enterprise Linux 6; 2.4GHz Intel Core 2 Duo 2GB Memory w/ 32-bit Mac OSX v10.6.7 4/8/2011 ECB ( e/d; 128 );

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 128 , 1024 ) ; AAD Lengths tested: ( 128 , 1024 ) ; IV Lengths Tested: ( 128 , 128 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Not_Supported
RNG: Val# 864

"The Absolute Encryption Engine provides Absolute Software products a standard platform for encrypted communications between remote devices and a monitoring center. For details, see www.absolute.com."

12/16/11: Updated implementation information;

1609 Certicom Corp.
5520 Explorer Drive., 4th Floor
Mississauga, Ontario L4W 5L1
Canada

-Atsushi Yamada
TEL: 905-501-3884
FAX: 905-508-4230

-Kris Orr
TEL: 605-501-3804
FAX: 908-507-4230

Security Builder® FIPS Core

Version 5.6
ARMv7 w/ QNX Neutrino 6.6 4/8/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 10 11 12 13 (Tag Length(s): 8 10 12 14 16 )

CMAC (Generation ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 )
IV Generated: ( Externally ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported

XTS( KS: XTS_128( (f) ) KS: XTS_256( (f) ))

"Security Builder® FIPS Core provides application developpers with cryptographics tools to easily integrate encryption, digital signatures and other security mechanisms into C-based apps for FIPS 140-2 and Suite B security. It can also be used with Certicom''s PKI, IPSec SSL and DRM modules."

1608 Research in Motion
295 Phillip Street
Waterloo, Ontario N2L 3W8
Canada

-Security Certifications Team
TEL: 519-888-7465 X72921
FAX: 519-888-9852

BlackBerry Tablet Cryptographic Library

Version 5.6
ARMv7 w/ BlackBerry Tablet OS 4/8/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 10 11 12 13 (Tag Length(s): 8 10 12 14 16 )

CMAC (Generation ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 )
IV Generated: ( Externally ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported
RNG: Val# 862
DRBG: Val# 81

XTS( KS: XTS_128( (f) ) KS: XTS_256( (f) ))

"The BlackBerry Tablet Cryptographic Library is the software module that provides advanced cryptographic functionality to BlackBerry Tablets."

1607 Symantec Corporation
350 Ellis Street
Mountain View, CA 94043
USA

-John Bordwine
TEL: (703) 885-3854
FAX: (703) 668-8953

Symantec SymCrypt Cipher Engine

Version 1.0
Intel Pentium 4 w/ Windows Server 2003 32-bit; Intel Xeon w/ Red Hat Enterprise Linux 4.8 32-bit 3/31/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"The Symantec SymCrypt Cipher Engine is designed to provide FIPS140-2 algorithm support for the Symantec SymCrypt Cryptographic Module. This module supports Symantec Applications by providing validated and approved Cryptographic Services. The incorporation of these algorithms make these products ideal for enterprise and government applications."

1606 Avaya, Inc.
211 Mt. Airy Road
Basking Ridge, NJ 07920
USA

-Dragan Grebovich
TEL: (978) 671-3476

-Rob Tashjian
TEL: (408) 496-3447

Secure Router 2330 FW Cryptographic Library

Version 1.0 (Firmware)
Freescale MPC8347A 3/31/2011 CBC ( e/d; 128 , 192 , 256 );

"Avaya''s Secure Router 2330 FW Cryptographic Library provides the cryptographic functionality needed to securely connect to, manage, and maintain the router device."

1605 Avaya, Inc.
211 Mt. Airy Road
Basking Ridge, NJ 07920
USA

-Dragan Grebovich
TEL: (978) 671-3476

-Rob Tashjian
TEL: (480) 496-3447

Secure Router 4134 FW Cryptographic Library

Version 1.0 (Firmware)
Freescale MPC8541 3/31/2011 CBC ( e/d; 128 , 192 , 256 );

"Avaya''s Secure Router 4134 FW Cryptographic Library provides the cryptographic functionality needed to securely connect to, manage, and maintain the router device."

1604 Fortinet, Inc.
1090 Kifer Road
Sunnyvale, CA 94086-5301
USA

-Alan Kaye
TEL: 613-225-9381 x7416
FAX: 613-225-2951

Fortinet FortiMail SSL Cryptographic Library

Version 4.0 (Firmware)
Intel® Xeon™ 3/31/2011 CBC ( e/d; 128 , 192 , 256 );

"The firmware implementation of the Fortinet FortiMail SSL Cryptographic Library v4.0 runs on an Intel x86 compatible processor using the FortiMail OS."

1603 BAE Systems
2525 Network Place
Herndon, VA 20171
USA

-John Ata
TEL: 703-736-4384
FAX: 703-736-4348

STOP 7 Kernel Cryptographic Module

Version 1.1
Intel Pentium D w/ STOP 7.3 Beta 1 3/31/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )


"The STOP 7 Kernel Cryptographic Module provides cryptographic services that the STOP 7 kernel uses to implement random number generation and file system encryption."

1602 Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

-Clint Winebrenner
TEL: 301-233-4711

Openssl-fips-1.2

Version 1.2
Intel(R) Xeon(R) CPU @ 1.66GHz w/ Windriver Linux (2.6.27.10 kernel) 3/31/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"The openssl crypto library is used on the Nexus7K supervisor to implement crypto operations in software."

1601 TechGuard Security
743 Spirit 40 Park Drive
Suite 206
Chesterfield, MO 63005
USA

-David Maestas
TEL: 636.489.2230

TechGuard PoliWall Cryptographic Userspace Module

Version v1.0 (Firmware)
Intel Atom D510 1.66 Ghz, 1M Cache; Intel Xeon X3430 2.4 Ghz, 8M Cache, Turbo; 2X Intel Xeon E5620 2.4 Ghz, 12M Cache, Turbo, HT 3/14/2011 CBC ( e/d; 128 , 192 , 256 );

"The TechGuard PoliWall Cryptographic Userspace Module provides user-space cryptographic services for the PoliWall-CCF systems. The module performs the cryptographic functions used to establish SSL connections, verify digital signatures of firmware and encrypted private keys in the on-disk keystore."

08/25/11: Add new tested information;

1600 TechGuard Security
743 Spirit 40 Park Drive
Suite 206
Chesterfield, MO 63005
USA

-David Maestas
TEL: 636.489.2230

TechGuard PoliWall Cryptographic Kernel Module

Version 1.0 (Firmware)
Intel Atom D510 1.66 Ghz, 1M Cache; Intel Xeon X3430 2.4 Ghz, 8M Cache, Turbo; 2X Intel Xeon E5620 2.4 Ghz, 12M Cache, Turbo,HT 3/14/2011 CBC ( e/d; 128 , 192 , 256 );

"The TechGuard PoliWall Cryptographic Kernel Module provides kernel cryptographic services for the PoliWall-CCF systems. The module performs the cryptographic functions used for IPSec connections."

08/25/11: Add new tested information;

1599 Klas Ltd
1101 30th Street NW
Suite 320
Washington, DC 20007
USA

-Frank Murray
TEL: 866-263-5467
FAX: 866-532-3091

Klas Cryptographic Library

Version 5.1f (Firmware)
Intel XScale IXP425 3/14/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 767 Max: 2^16 ; Tag Len(s) Min: 2 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 128 , 128 ) ; OtherIVLen_Supported
GMAC_Supported
RNG: Val# 856

"KlasRouter is a low-power secure router providing Virtual Private Networking (including IPSec Suite-B algorithms), WAN Acceleration, VLAN and a host of other networking features in a compact package. KlasRouter is standards-based and hence interoperable with any infastructure."

1598 RSA, The Security Division of EMC
174 Middlesex Turnpike
Bedford, MA 01730
USA

-Damon Hopley
TEL: 781-515-6355

RSA BSAFE® CNG Cryptographic Primitives Library

Version 1.0
Intel Pentium M Processor w/ Microsoft Windows 7 (32-bit); AMD Athlon 64 X2 Dual Core Processor w/ Microsoft Windows 7 (64-bit) 3/8/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 );

CCM (KS: 128 , 192 , 256 ) (Assoc. Data Len Range: 0 - 0 , 2^16 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 7 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 )
IV Generated: ( Externally ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 1024 ) ; 96BitIV_Supported
GMAC_Supported

"The RSA BSAFE CNG Cryptographic Primitives Library is a drop-in replacement for the Microsoft user-mode CNG provider. It can be dynamically linked into applications by software developers to permit the use of general purpose cryptography."

1597 N/A N/A N/A 3/8/2011 N/A
1596 Brocade Communication Systems, Inc.
120 Holger Way
San Jose, CA 95110
USA

-Vidya Sagar Ravipati
TEL: 408-333-6715
FAX: 408-333-3928

Brocade FIPS Crypto Library (AMCC)

Version OpenSSL V1.0 (Firmware)
AMCC PPC440EPX 3/8/2011 ECB ( e/d; 256 ); CBC ( e/d; 128 , 192 , 256 );

"AES128-CBC, AES192-CBC, AES256-CBC; HMAC SHA-1, HMAC SHA-256, HMAC SHA-512; ANSI X9.31; RSA Key Generation, Signature and Verification; SHA1, SHA256 and SHA512; TDES-CBC"

1595 Brocade Communication Systems, Inc.
120 Holger Way
San Jose, CA 95110
USA

-Vidya Sagar Ravipati
TEL: 408-333-6715
FAX: 408-333-3928

Brocade FIPS Crypto Library (Freescale)

Version FIPS OpenSSL V1.0 (Firmware)
Part # Freescale MPC8548EPX
FREESCALE MPC8548EPX 3/8/2011 ECB ( e/d; 256 );

"AES128-ECB, AES192-ECB AES256-ECB; HMAC SHA-512; SHA512"

1594 Xirrus, Inc.
2101 Corporate Center Drive
Thousand Oaks, CA 91320
USA

-Steve Smith
TEL: 805-262-1600
FAX: 805-262-1601

AR9160

Part # AR9160, REV A
N/A 3/8/2011

CCM (KS: 128 ) (Assoc. Data Len Range: 22 - 30 ) (Payload Length Range: 1 - 32 ( Nonce Length(s): 13 (Tag Length(s): 8
AES Val#1508


"The Xirrus Wi-Fi Array consists of 4, 8, 12, or 16 802.11abgn access points coupled to a directional antenna system, and integrated together with a multi-gigbit switch, controller, firewall, threat sensor, and spectrum analyzer into a single, easy-to-install device."

1593 N/A N/A N/A 3/8/2011 N/A
1592 N/A N/A N/A 3/8/2011 N/A
1591 N/A N/A N/A 3/8/2011 N/A
1590 Samsung Electronics
75 West Plumeria Drive
San Jose, CA 95134
USA

-Tim Markey
TEL: 408-544-5517

MP4/MP7 ELP AES

Part # Version 1.0
N/A 3/8/2011 CBC ( e/d; 256 );

"The Samsung (R) MP4/MP7 (R) Self-Encrypting Drive (SED) provides hardware-based full disk encryption, user authentication, instantaneous cryptographic erase, multiple protected user data ranges and PIN (password) support with both user/admin using FIPS approved algorithms through the industry-standard TCG Opal interface."

1589 Broadcom Corporation
3151 Zanker Road
San Jose, CA 95134
USA

-Charles Qi
TEL: 408-501-8439
FAX: 408-501-8460

Radian-MACSec10G/40G-AES

Part # Radian, Version B0
N/A 3/8/2011 ECB ( e only; 128 );

GCM (KS: AES_128( e/d ) Tag Length(s): 128 ) IV Generated: ( Externally ) ; PT Lengths Tested: ( 64 , 1024 ) ; AAD Lengths tested: ( 64 , 1024 ) ; IV Lengths Tested: ( 96 , 96 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Not_Supported

1588 Integrated Control Technology Ltd.
11 Canaveral Drive
North Shore City
Albany
Auckland, 0632
NZ

-Mr. Pascal Turcotte
TEL: 514-648-6648

ArmorIP Cryptographic Engine

Version 1.0
Intel Core Duo w/ 32-bit Microsoft Windows XP; Intel Core 2 Duo w/ 32-bit Microsoft Windows 7; Intel Core 2 Duo w/ 64-bit Microsoft Windows 7; Intel Core 2 Duo w/ 32-bit Microsoft Windows Vista; Intel Core 2 Duo w/ 64-bit Microsoft Windows Vista; Intel Core 2 Quad w/ 32-bit Microsoft Windows XP; Intel Core 2 Quad w/ 32-bit Microsoft Windows 7 2/24/2011 ECB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )


"The ArmorIP Cryptographic engine is designed to be built into the ArmorIP Receiver PC software, which is run on a general purpose computing device; or into the firmware of an ArmorIP capable transceiver device. It implements AES 128/192/256 encryption and decryption to guard sensitive information."

1587 Integrated Control Technology Ltd.
11 Canaveral Drive
North Shore City
Albany
Auckland, 0632
NZ

-Mr. Pascal Turcotte
TEL: 514-648-6648

ArmorIP Cryptographic Engine

Version 1.0 (Firmware)
ARM7TDMI 2/24/2011 ECB ( e/d; 128 , 192 , 256 ); CTR ( int only; 128 , 192 , 256 )


"The ArmorIP Cryptographic engine is designed to be built into the ArmorIP Receiver PC software, which is run on a general purpose computing device; or into the firmware of an ArmorIP capable transceiver device. It implements AES 128/192/256 encryption and decryption to guard sensitive information."

1586 ZTE
NO. 55, Hi-tech Road South
ShenZhen, Guangdong 518057
P.R.China

-Royce Wang
TEL: 0086-755-2677 0345
FAX: 0086-755-2677 0347

Unified Platform Cryptographic Library for Intel

Version 1.1
Intel(R) Xeon(TM) w/ EMBSYS (TM) Carrier Grade Embedded Linux V3 2/24/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"UPCL (Unified Platform Cryptographic Library) on intel platform provides the cryptographic API to Net elements'' applications running on series of intel multi-core processors."

1585 ZTE
NO. 55, Hi-tech Road South
ShenZhen, Guangdong 518057
P.R.China

-Royce Wang
TEL: 0086-755-2677 0345
FAX: 0086-755-2677 0347

Unified Platform Cryptographic Library for AMD

Version 1.1
AMD Opteron(R) w/ EMBSYS(TM) Carrier Grade Embedded Linux V3 2/24/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"UPCL(Unified Platform Cryptographic Library) on AMD platform provides the cryptographic API to Net elements'' applications running on series of AMD multi-core processors"

1584 ZTE
NO. 55, Hi-tech Road South
ShenZhen, Guangdong 518057
P.R.China

-Royce Wang
TEL: 0086-755-2677 0345
FAX: 0086-755-2677 0347

UEP Cryptographic Module for Intel

Version 4.11.10
NewStart CGS Linux V3.02 with Sun JDK/JRE 1.6.0_11 2/24/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"UEPCM (Unified Element Management Platform Cryptographic Module) on Intel platform provides the cryptographic API to Net Management applications running on the series of Intel multi-core processors."

07/07/11: Update implementation information;

1583 ZTE
NO. 55, Hi-tech Road South
ShenZhen, Guangdong 518057
P.R.China

-Royce Wang
TEL: 0086-755-2677 0345
FAX: 0086-755-2677 0347

UEP Cryptographic Module for AMD

Version 4.11.10
NewStart CGS Linux V3.02 with Sun JDK/JRE 1.6.0_11 2/24/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"UEPCM (Unified Element Platform Cryptographic Module) on AMD platform provides the cryptographic API to Net Management applications running on series of AMD multi-core processors."

07/07/11: Update implementation information;

1582 SafeNet, Inc.
20 Colonnade Road, Suite 200
Ottawa, ON K2E 7M6
Canada

-Iain Holness
TEL: 613-221-5049
FAX: 613-723-5079

ProtectServer Cryptographic Firmware Library

Version 3.00.03 (Firmware)
StrongARM 80xxx 2/24/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"The firmware implementation is used by the SafeNet ProcestServer Gold and ProtectServer Interal-Express to provide a wide range of cryptographic functions."

1581 Emulex
3333 Susan St.
Costa Mesa, CA 92626
USA

-Larry Hofer
TEL: 720-494-2484
FAX: 720-494-1817

aes_fast_xtscbc_fpga_full.ngc file

Part # Revision 2
N/A 2/24/2011 CBC ( e/d; 128 , 256 );

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"The LPSE12002 OneSecure Encryption HBA is a cryptographic capable Fibre Channel Host Bus Adapter (HBA) including the AES, HMAC and SHA implementations. In the future, additional products may include one or more of these implementations."

1580 Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

-Tom Price
TEL: 919-392-9842

IOS

Version 15.1(2)T3 (Firmware)
Intel 82576 2/24/2011 CBC ( e/d; 128 , 192 , 256 );

"The Cisco 3900 Series of integrated Services Routers intelligently embed data and security into a single, resilient system for fast, scalable delivery of mission-critical business applications from small offices to demanding enterprise environments"

1579 Thales E-Security Ltd
Jupiter House
Station Road
Cambridge, CB5 8JJ
UK

-Marcus Streets
TEL: +44 1223 723600
FAX: +44 1223 723601

-Mark Wooding
TEL: +44 1223 723600
FAX: +44 1223 723601

nShield Algorithm Library

Version 2.50.16 (Firmware)
Motorola PowerPC 2/24/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CTR ( int only; 256 )

CMAC (Generation/Verification ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_192( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
(KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Internally (using Section 8.2.2 ) ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 96 , 1024 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported
DRBG: Val# 72

"The nShield algorithm library provides cryptographic functionality for Thales''s nShield Hardware Security Modules"

1578 Juniper Networks, Inc.
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Tim Huntley
TEL: 408-936-2817

Juniper Networks SRX5800, SRX5600 Service Processing Unit

Version 10.4R3 and 10.4R4 (Firmware)
Intel Celeron 2/24/2011 CBC ( e/d; 128 , 192 , 256 );

"Juniper Networks SRX Series Services Gateways provide the essential capabilities necessary to connect, secure, and manage enterprise and service provider networks, from the smallest sites to the largest headquarters and data centers."

04/25/11: Update implementation information;
11/07/11: Update implementation information;

1577 Juniper Networks, Inc.
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Tim Huntley
TEL: 408-936-2817

Juniper Networks SRX3400, SRX3600 Service Processing Unit

Version 10.4R3 and 10.4R4 (Firmware)
Intel Celeron 2/24/2011 CBC ( e/d; 128 , 192 , 256 );

"Juniper Networks SRX Series Services Gateways provide the essential capabilities necessary to connect, secure, and manage enterprise and service provider networks, from the smallest sites to the largest headquarters and data centers."

04/25/11: Update implementation information;
11/07/11: Update implementation information;

1576 oTHE Technology Inc.
No.749, Wenshan Rd.
Qionglin Township
Hsinchu County, Taiwan 30741
R.O.C.

-Guide Wang
TEL: +886-3-5927463

oTHE AES Verilog Core

Version 1.0 (Firmware)
Modelsim 5.5f Verilog simulator 2/24/2011 ECB ( e/d; 128 , 192 , 256 );

"This AES Verilog core implements full FIPS PUB 197 (AES), including Cipher, InvCipher, EqInvCipher and KeyExpension in 128, 192 and 256 bits key length. There are several design options for optimizing the design in area or speed. The application Verilog designer can choice the different design options to fit their own designs."

1575 Juniper Networks, Inc.
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Tim Huntley
TEL: 408-936-2817

Juniper Networks SRX3400, SRX3600 Routing Engine

Version 10.4R3 and 10.4R4 (Firmware)
RMI XLR processor 2/24/2011 CBC ( e/d; 128 , 192 , 256 );

"Juniper Networks SRX Series Services Gateways provide the essential capabilities necessary to connect, secure, and manage enterprise and service provider networks, from the smallest sites to the largest headquarters and data centers."

04/25/11: Update implementation information;
11/07/11: Update implementation information;

1574 Imation Corp.
Discovery Bldg. 1A-041
Oakdale, MN 55128
USA

-Larry Hamid
TEL: 408-737-4308

Bluefly Processor Firmware

Version 2.3 (Firmware)
Bluefly Processor 2/24/2011 ECB ( e/d; 128 , 256 ); CFB128 ( e/d; 128 , 256 ); OFB ( e/d; 128 , 256 ); CTR ( 128 , 256 )

CCM (KS: 128 , 256 ) (Assoc. Data Len Range: 0 - 32 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 8 9 10 11 12 13 (Tag Length(s): 4 6 8 10 12 14 16 )

CMAC (Generation ) (KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 4096 ; Tag Len(s) Min: 16 Max: 16 ) (KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 4096 ; Tag Len(s) Min: 16 Max: 16 )

GCM (KS: AES_128( e/d ) Tag Length(s): 128 120 112 104 96 64 32 ) (KS: AES_256( e/d ) Tag Length(s): 128 120 112 104 96 64 32 )
IV Generated: ( Externally ) ; PT Lengths Tested: ( 1024 ) ; AAD Lengths tested: ( 1024 ) ; IV Lengths Tested: ( 8 , 128 ) ; 96BitIV_Supported ; OtherIVLen_Supported
GMAC_Supported

"The Bluefly processor is a cryptographic and authentication engine for Personal Portable Security Devices (PPSDs). It provides secure storage, digital identity functions, and multifactor user authentication for USB-based peripherals."

04/23/12: Updated vendor information;

1573 Juniper Networks, Inc.
1194 N. Mathilda Ave
Sunnyvale, CA 94089
USA

-Tim Huntley
TEL: 408-936-2817

Juniper Networks SRX5800, SRX5600 Routing Engine

Version 10.4R3 and 10.4R4 (Firmware)
RMI XLR 2/24/2011 CBC ( e/d; 128 , 192 , 256 );

"Juniper Networks SRX Series Services Gateways provide the essential capabilities necessary to connect, secure, and manage enterprise and service provider networks, from the smallest sites to the largest headquarters and data centers."

04/25/11: Update implementation information;
11/07/11: Update implementation information;

1572 Xceedium, Inc.
30 Montgomery Street
Suite 1020
Jersey City, NJ 07302
USA

-Dave Olander
TEL: 201-536-1000 x121
FAX: 201-536-1200

-Ryan Maple

Xceedium GateKeeper OpenSSL Implementation

Version 1.2+5.2.1 (Firmware)
Intel Core(TM) 2 Duo 2/3/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"Xceedium''''s GateKeeper appliance delivers a secure centralized management platform. IT operations can provide touch free support and securely manage/control vendors, outsourced developers and MSP''''s."

1571 XYPRO Technology Corporation
3325 Cochran Street, Suite #200
Simi Valley, CA 93063
USA

-Lisa Partridge
TEL: 805-583-2874
FAX: 805-583-0124

-Scott Uroff
TEL: 805-583-2874
FAX: 805-583-0124

XYGATE(R) /ESDK

Version 3.3.2
MIPS R10000 w/ HP Nonstop Server G06 OSS Non-PIC; MIPS R10000 w/ HP Nonstop Server G06 Non-PIC; HP PA-RISC 8800 w/ HP-UX 11.11; IBM Power3 w/ AIX 5.2; Intel Itanium2 w/ HP Nonstop Server H06; MIPS R10000 w/ HP Nonstop Server G06; Intel Itanium 9100 w/ HP Nonstop Server J06 OSS; Intel Itanium2 w/ HP Nonstop Server H06 OSS; Intel Xeon w/ SuSE Enterprise Linux 10; Intel Core2 Duo w/ Windows XP w/SP3; Sun UltraSPARC IIIi w/ Solaris 10; Intel Xeon MP w/ Red Hat Enterprise Linux v5.1; IBM Z9 Model 2049-S28 w/ IBM z/OS 1.11; HP PA-RISC 8500 w/ HP-UX 10.2; MIPS R10000 w/ HP Nonstop Server G06 OSS; Intel Itanium 9100 w/ HP Nonstop Server J06 2/3/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"The XYGATE Encryption Software Development Kit [X /ESDK] is a dynamically linked software library that provides: AES and Triple DES symmetric key encryption; SHA-1 and SHA-256 hashing; RSA public key encryption; digital signing with RSA and DSA; secure session protocols like SSH, SSL, and TLS; and email protocols such as PGP and S/MIME."

1570 Oracle Corporation
500 Eldorado Blvd., Bldg 5
Broomfield, CO 80021
USA

-David Hostetter
TEL: 303-272-7126

T10000C CCM Hardware Implementation

Part # DCCM ASIC
N/A 2/3/2011

CCM (KS: 256 ) (Assoc. Data Len Range: 30 - 30 ) (Payload Length Range: 1 - 32 ( Nonce Length(s): 12 (Tag Length(s): 16 )
AES Val#1568


"Oracle StorageTek T10000C Tape Drive."

05/26/11: Update implementation information;

1569 Oracle Corporation
500 Eldorado Blvd., Bldg 5
Broomfield, CO 80021
USA

-David Hostetter
TEL: 303-272-7126

T10000C CCM Firmware Implementation

Version 2.0 (Firmware)
ARM 926EJS 2/3/2011

CCM (KS: 256 ) (Assoc. Data Len Range: 0 - 0 ) (Payload Length Range: 0 - 32 ( Nonce Length(s): 12 13 (Tag Length(s): 16 )
AES Val#1564


"Oracle StorageTek T10000C Tape Drive."

1568 Oracle Corporation
500 Eldorado Blvd., Bldg 5
Broomfield, CO 80021
USA

-David Hostetter
TEL: 303-272-7126

T10000C AES Hardware Implementation

Part # DCCM ASIC
N/A 2/3/2011 ECB ( e only; 256 );

"Oracle StorageTek T10000C Tape Drive."

05/26/11: Update implementation information;

1567 Oracle Corporation
500 Eldorado Blvd., Bldg 5
Broomfield, CO 80021
USA

-David Hostetter
TEL: 303-272-7126

T10000C AES used in TLS1.0

Version 2.0 (Firmware)
ARM 926EJS 2/3/2011 CBC ( e/d; 256 );

"Oracle StorageTek T10000C Tape Drive."

1566 Oracle Corporation
500 Eldorado Blvd., Bldg 5
Broomfield, CO 80021
USA

-David Hostetter
TEL: 303-272-7126

T10000C AES used in CTR DRBG

Version 2.0 (Firmware)
ARM 926EJS 2/3/2011 ECB ( e only; 256 ); CTR ( int only; 256 )


"Oracle StorageTek T10000C Tape Drive."

1565 Oracle Corporation
500 Eldorado Blvd., Bldg 5
Broomfield, CO 80021
USA

-David Hostetter
TEL: 303-272-7126

T10000C KMS Agent AES

Version 2.0 (Firmware)
ARM 926EJS 2/3/2011 ECB ( e/d; 256 );

"Oracle StorageTek T10000C Tape Drive."

1564 Oracle Corporation
500 Eldorado Blvd., Bldg 5
Broomfield, CO 80021
USA

-David Hostetter
TEL: 303-272-7126

T10000C AES used in CCM

Version 2.0 (Firmware)
ARM 926EJS 2/3/2011 ECB ( e only; 256 );

"Oracle StorageTek T10000C Tape Drive."

1563 Bomgar Corporation
578 Highland Colony Parkway
Paragon Centre, Suite 300
Ridgeland, MS 39157
USA

-Michael Cox
TEL: 601-605-3205
FAX: 601-510-9080

-Huey Ngo
TEL: 601-519-0158
FAX: 601-510-9080

Bomgar Cryptographic Engine

Version 1.1 (Firmware)
Intel® Xeon™ 1/26/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 );

"The Bomgar Cryptographic Engine provides the cryptographic functionality required by the Bomgar B200, B300, and B400 Remote Support appliances. These appliances allow support professionals to connect securely to remote clients and co-workers via the Internet, providing complete desktop access for remote support."

1562 Hewlett-Packard TippingPoint
7501 N. Capital of Texas Highway
Austin, TX 78737
USA

-Dinesh Vakharia
TEL: 512-681-8271

-Freddie Jimenez Jr.
TEL: 512-681-8305

TippingPoint Security Management System (NSS JCE Provider)

Version 3.2 (Firmware)
Intel Xeon E5520 2.27GHz 1/26/2011 CBC ( e/d; 128 , 192 , 256 );

"The TippingPoint SMS is a centeralized management solution for managing and monitoring a deployment of TippingPoint security devices. The SMS provides cryptographic services for communicating with the security devices and user interfaces. "

1561 Hewlett-Packard TippingPoint
7501 N. Capital of Texas Highway
Austin, TX 78737
USA

-Dinesh Vakharia
TEL: 512-681-8271

-Freddie Jimenez Jr.
TEL: 512-681-8305

TippingPoint Security Management System

Version 3.2 (Firmware)
Intel Xeon E5520 2.27GHz 1/26/2011 CBC ( e/d; 128 , 192 , 256 );

"The TippingPoint SMS is a centeralized management solution for managing and monitoring a deployment of TippingPoint security devices. The SMS provides cryptographic services for communicating with the security devices and user interfaces. "

1560 Hewlett-Packard TippingPoint
7501 N. Capital of Texas Highway
Austin, TX 78737
USA

-Dinesh Vakharia
TEL: 512-681-8271

-Freddie Jimenez Jr.
TEL: 512-681-8305

TippingPoint 10

Version 3.1.4 (Firmware)
Intel Celeron-M 600MHz 1/26/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"The TippingPoint 10 Intrustion Prevention System (IPS) operates in-line in the network, blocking malicious and unwanted traffic, while allowing good traffic to pass unimpeded. The IPS provides cryptographic services to protect the management of the device."

1559 Hewlett-Packard TippingPoint
7501 N. Capital of Texas Highway
Austin, TX 78737
USA

-Dinesh Vakharia
TEL: 512-681-8271

-Freddie Jimenez Jr.
TEL: 512-681-8305

TippingPoint Crypto Implementation for Celeron

Version 3.1.4.1427 (Firmware)
Intel Celeron 1/26/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"Implementation Description - The TippingPoint Crypto Implementation provides cryptographic services to TippingPoint devices such as Intrusion Prevention Systems (IPS), which operate in-line in the network, blocking malicious and unwanted traffic, while allowing good traffic to pass unimpeded."

02/02/11: Update implementation information;
04/27/11: Update implementation information;

1558 Hewlett-Packard TippingPoint
7501 N. Capital of Texas Highway
Austin, TX 78737
USA

-Dinesh Vakharia
TEL: 512-681-8271

-Freddie Jimenez Jr.
TEL: 512-681-8305

TippingPoint Crypto Implementation for Core2Duo

Version 3.1.4.1427 (Firmware)
Intel Core 2 Duo 1/26/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"Implementation Description - The TippingPoint Crypto Implementation provides cryptographic services to TippingPoint devices such as Intrusion Prevention Systems (IPS), which operate in-line in the network, blocking malicious and unwanted traffic, while allowing good traffic to pass unimpeded."

02/01/11: Update implementation information;
04/27/11: Update implementation information;

1557 Hewlett-Packard TippingPoint
7501 N. Capital of Texas Highway
Austin, TX 78737
USA

-Dinesh Vakharia
TEL: 512-681-8271

-Freddie Jimenez Jr.
TEL: 512-681-8305

TippingPoint Crypto Implementation

Version 3.2.0.1530 (Firmware)
NetLogic XLR 1/26/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

"Implementation Description - The TippingPoint Crypto Implementation provides cryptographic services to TippingPoint devices such as Intrusion Prevention Systems (IPS), which operate in-line in the network, blocking malicious and unwanted traffic, while allowing good traffic to pass unimpeded."

02/10/11: Update implementation information;
04/27/11: Update implementation information;

1556 F-Secure Corporation
Tammasaarenkatu 7
Helsinki, 00181
Finland

-Alexey Kirichenko
TEL: +358-9-2520-5548
FAX: +358-9-2520-5001

F-Secure Kernel Mode Cryptographic Driver

Version 2.3.9
Intel Pentium D w/ Red Hat Enterprise Linux 5 1/26/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( ext only; 128 , 192 , 256 )


"F-Secure Kernel Mode Cryptographic Driver is a FIPS 140-2 Level 1 validated software module, implemented as a 32-bit Linux kernel object. When loaded into computing system memory, it resides at the kernel mode level of the Linux OS and provides a set of cryptographic services accessible through a C-language API."

1555 Acme Packet, Inc.
100 Crosby Drive
Bedford, MA 01730
USA

-Prashant
TEL: 781-328-4450

Acme Packet Broadcom BCM5862

Part # BCM5862
N/A 1/13/2011 ECB ( e only; 128 , 256 ); CBC ( e/d; 128 , 256 ); CTR ( ext only; 128 , 256 )


"Acme Packet''s FIPS-validated Session Border Controller provides critical control functions to deliver trusted, first-class interactive communications-: voice, video and multimedia sessions -across IP network borders."

1554 Centrify Corporation
785 N Mary Avenue
Suite 200
Sunnyvale, CA 94085
USA

-Keith Moreau
TEL: 415 412 6482

Centrify Cryptographic Module

Version 1.0
Intel Core 2 Duo, 1.83 GHZ w/ Mac OS X 10.6.4; Intel I7-870 w/ Red Hat Enterprise Linux ES release 4; Intel I7-870 w/ Red Hat Enterprise Linux ES v5; Intel Core 2 Duo, 1.83 GHZ w/ Mac OS X 10.6.5 1/13/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 ); CFB8 ( e/d; 128 , 192 , 256 ); CFB128 ( e/d; 128 , 192 , 256 ); OFB ( e/d; 128 , 192 , 256 ); CTR ( int only; 256 )


"The Centrify Cryptographic Module provides the cryptographic services for all of Centrify''s products."

02/10/11: Add new tested information;

1553 Hitachi,Ltd.
322-2 Nakazato
Odawara-shi, Kanagawa-ken 250-0872
Japan

-Takashi Oeda
TEL: +81-465-59-5505

Hitachi Virtual Storage Platform (VSP) Encryption Module

Part # 1.0
N/A 1/6/2011 ECB ( e/d; 128 , 192 , 256 );

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"n/a"

01/10/11: Update vendor information;

1552 Hewlett-Packard Company
8000 Foothills Boulevard
Roseville, CA 95747
USA

-Patrick Redmond
TEL: 916-785-1856

HP StorageWorks P9500 Drive Encryption Module

Part # 1.0
N/A 1/6/2011 ECB ( e/d; 128 , 192 , 256 );

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"n/a"

1551 JMicron Technology Corp.
IF, No.13, Innovation Road 1,
Hsinchu Science Park
Hsinchu, 300, Taiwan
R.O.C.

-James Chang
TEL: 886-3-5797389 x 8305
FAX: 886-3-5799566

-Stan Lin
TEL: 886-3-5797389 x8038
FAX: 886-3-5799566

JMICRON_AES

Version v1.1.0 (Firmware)
Cadence NC-Verilog Simulator 1/6/2011 ECB ( e/d; 128 , 192 , 256 ); CBC ( e/d; 128 , 192 , 256 );

XTS( KS: XTS_128( (e/d) (f) ) KS: XTS_256( (e/d) (f) ))

"JMICRON_AES is a synthesizable IP core which implements encryption and decryption functions of AES defined in FIPS 197. It''s used in JMicron''s products."

1550 Thales e-Security
2200 North Commerce Parkway
Suite 200
Weston, FL 33326
USA

-Juan Asenjo
TEL: 954-888-6202

Thales Datacryptor (With Multi-Point License)

Version 4.5 (Firmware)
Xilinx XC2VP50 FPGA 1/6/2011 CBC ( e only; 256 );

"The Thales Datacryptor protects the confidentiality and integrity of sensitive data travelling over public networks."

1549 Thales e-Security
2200 North Commerce Parkway
Suite 200
Weston, FL 33326
USA

-Juan Asenjo
TEL: 954-888-6202

Thales Datacryptor (With Multi-Point License)

Version 4.5 (Firmware)
Xilinx XC4VFX40 1/6/2011 CBC ( e only; 256 );

"The Thales Datacryptor protects the confidentiality and integrity of sensitive data travelling over public networks."

1548 Thales e-Security
2200 North Commerce Parkway
Suite 200
Weston, FL 33326
USA

-Juan Asenjo
TEL: 954-888-6202

Thales Datacryptor (With Multi-Point License)

Version 4.5 (Firmware)
Xilinx XC2VP30 1/6/2011 CBC ( e only; 256 );

"The Thales Datacryptor protects the confidentiality and integrity of sensitive data travelling over public networks."

1547 Concepteers LLC
121 Newark Ave, Suite 204
Jersey City, New Jersey