This page provides technical information pertaining to the testing of individual components of FIPS approved and NIST recommended cryptographic algorithms. These components are validated as conforming to the specifications in the associated publication. The testing that is performed on the component is described in the associated validation system (VS) document. The testing is handled by NVLAP- accredited Cryptographic And Security Testing (CST) Laboratories.
The implementations below consist of software, firmware, hardware, and any combination thereof. The National Institute of Standards and Technology (NIST) has made every attempt to provide complete and accurate information about the components described in this document. However, due to the possibility of changes made within individual companies, NIST cannot guarantee that this document reflects the current status of each component. It is the responsibility of the vendor to notify NIST of any necessary changes to its entry in the following list.
In addition to a general description of each component implementation, this list mentions the features that were tested as conforming to the appropriate publication. These features are described in the specific legend for each individual component and are listed below for each validation. Select the legend below for detail on the testing of that component.
This list is ordered in reverse numerical order, by validation number. Thus, the more recent validations are located closer to the top of the list. The column after the Validation Date column contains information indicating what modes and features for these modes has been successfully tested.
| Validation No. |
Component Validated |
Associated Publication |
Vendor | Implementation | Operational Environment | Val. Date |
Description/Notes |
|---|---|---|---|---|---|---|---|
| 71 | OpenSSL Software Foundation, Inc. 1829 Mount Ephraim Road Adamstown, MD 27101 USA -Steve Marquess
|
Version 2.0.4 |
MIPS 24Kc w/ OpenWRT 2.6 | 4/30/2013 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
K-163
K-233
K-283
K-409
K-571
B-163
B-233
B-283
B-409
B-571
"The OpenSSL FIPS Object Module is a full featured general purpose cryptographic library that is distributed in source code form under an open source license. It can be downloaded from www.openssl.org/source/." |
||
| 70 | IKEv1 |
Lexmark International, Inc. 740 West New Circle Road Lexington, KY 40550 USA -Graydon Dodson
|
Version 2.10 |
Marvell 88PA6170C1 (ARMv7 dual core) w/ Lexmark Linux v3.0.0 | 4/23/2013 |
IKEv1(
Group(
[2]
SHA
(
256
,
512
)
[14]
)
)
SHA Val#2049
HMAC Val#1479
"The Crypto Module (user/kernel) provides cryptographic services to the firmware in Lexmark products." |
|
| 69 | Motorola Solutions, Inc. 6480 Via Del Oro San Jose, CA 95119 USA -Udayan Borkar
-Colin Cooper
|
Version 5.3.0.1 (Firmware) |
Cavium Octeon Plus CN5000 Family | 4/12/2013 |
SNMP
SHA1 Val#2048
"net-snmp" |
||
| 68 | IKEv1 Section 4.1.2, IKEv2 |
Motorola Solutions, Inc. 6480 Via Del Oro San Jose, CA 95119 USA -Udayan Borkar
-Colin Cooper
|
Version 4.5 (Firmware) |
Cavium Octeon Plus CN5000 Family | 4/12/2013 |
IKEv1(
AUTH(
DSA
,
PSK
)
Group(
[2]
SHA
(
1
)
)
)
SHA Val#2048
HMAC Val#1478
IKEv2( Group( [2] SHA ( 1 ) ) ) SHA Val#2048 HMAC Val#1478 "Strongswan" |
|
| 67 | Motorola Solutions, Inc. 6480 Via Del Oro San Jose, CA 95119 USA -Udayan Borkar
-Colin Cooper
|
Version 4.7 (Firmware) |
Cavium Octeon Plus CN5000 Family | 4/12/2013 |
SSH
(
SHA
(
1
,
256
)
)
SHA Val#2048
"Openssh" |
||
| 66 | Motorola Solutions, Inc. 6480 Via Del Oro San Jose, CA 95119 USA -Udayan Borkar
-Colin Cooper
|
Version 1.2.3 (Firmware) |
Cavium Octeon Plus CN5000 Family | 4/12/2013 |
TLS(
TLS1.0/1.1
)
SHA Val#2048
HMAC Val#1478
"OpenSSL is a third party open source code, which provides cryptographic services to user space daemons. The device uses openssl-fips-1.2.3 version. Wing5 userspace daemons (RADIUS, ntp, openssh, rim, net-snmp, mapsh, etc) using openssl crypto services call fips_mode_set() from their respective initialization functions." |
||
| 65 | Riverbed Technology, Inc. 199 Fremont Street San Francisco, CA 94105 USA -Joe Tomasello
-Andy Pang
|
Intel Xeon (x86-64) w/ RiOS 8.0 32-bit; Intel Xeon (x86-64) w/ RiOS 8.0 64-bit; Intel Xeon E3-1220v2 (x86_64) w/ RiOS 8.0 64-bit running on VMware ESXi 5.1; Intel Xeon E3-1220v2 (x86_64) w/ AES-NI w/ RiOS 8.0 64-bit running on VMware ESXi 5.1; Intel Xeon E3-1220v2 (x86_64) w/ Stingray OS 4.0 running on VMware ESXi 5.1; Intel Xeon E3-1220v2 (x86_64) w/ AES-NI w/ Stingray OS 4.0 running on VMware ESXi 5.1; Intel Xeon E31220 (x86_64) w/ AES-NI w/ RiOS 8.0 64-bit; AMD Opteron 4122 (x86_64) w/ Granite OS 2.0; Intel Xeon E31220 (x86_64) w/ Granite OS 2.0 on VMware ESXi 5.1; Intel Xeon E31220 (x86_64) w /AES-NI w/ Granite OS 2.0 on VMware ESXi 5.1 | 4/12/2013 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
K-163
K-233
K-283
K-409
K-571
B-163
B-233
B-283
B-409
B-571
"The Riverbed Cryptographic Security Module provides the cryptographic functionality for a variety of Riverbed''s platforms including Steelhead and Granite appliances. These network appliances deliver a scalable Wide Area Data Services (WDS) solution, transparently and securely optimizing performance across an enterprise network" |
|||
| 64 | Cummings Engineering Consultants, Inc. 145 S. 79th St., Suite 26 Chandler, AZ 85226 USA -Darren Cummings
|
Version 1.1 |
ARM Cortex A8 (ARMv7) w/ Apple iOS 5.0; Intel Core i7-3615QM w/ Apple OS X 10.7 | 4/5/2013 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
K-163
K-233
K-283
K-409
K-571
B-163
B-233
B-283
B-409
B-571
"The cryptographic module used by the Cummings Engineering suite of products which allow for efficient and effective deployment of robust secure communications capability on commercial off the shelf (COTS) devices, such as Smartphones and Tablets, as well as speciality communications devices." |
||
| 63 | CoCo Communications 800 5th Ave Seattle, WA 98104 USA -David Weidenkopf
|
Version 2.0 |
x86 32bit w/ Vyatta 6.4 | 4/5/2013 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
K-163
K-233
K-283
K-409
K-571
B-163
B-233
B-283
B-409
B-571
"The CoCo OpenSSL Crypto Module is an OpenSSL cryptographic library that provides cryptographic services to its calling applications." |
||
| 62 | CoCo Communications 800 5th Ave Seattle, WA 98104 USA -David Weidenkopf
|
Version 2.0 |
AMD Geode 32bit w/ Red Hat Enterprise Linux 6 | 4/5/2013 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
K-163
K-233
K-283
K-409
K-571
B-163
B-233
B-283
B-409
B-571
"The CoCo OpenSSL Crypto Module is an OpenSSL cryptographic library that provides cryptographic services to its calling applications." 04/30/13: Updated implementation information; |
||
| 61 | Toshiba Corporation Social Infrastructure Systems Company 1, Komukai, Toshiba-cho, Saiwai-ku Kawasaki, Kanagawa 212-8583 Japan -Hiroki Fukuoka
|
Version 1.0.0 |
Intel Core i7 w/ Windows 7 Professional 32-bit | 3/29/2013 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
"TSBIC CryptoLib is a general-purpose library which ensures high security to the applications requiring standard cryptographic algorithms." |
||
| 60 | TLS |
ChaseSun Information Security Technology Development (Beijing) Co., LTD Building B, Shumazhuangyuan No. 1 Disheng West Street, BDA Beijing, 100176 P.R. China -Peng Sun
|
Version 1.0 (Firmware) |
Marvell 88AP303 | 3/29/2013 |
TLS(
TLS1.0/1.1
)
SHA Val#1550
HMAC Val#1037
"DCI Audio/Video Decoder Card Crypto Library implements the cryptographic algorithms such as AES, HMAC, RSA, SHA and RNG. The Library provides cryptographic functionality to DCI Audio/Video Decoder Card." |
|
| 59 | Nuvoton Technology Corporation No. 4, Creation Rd. III Hsinchu Science Park, n/a 300 Taiwan, R.O.C. -Rachel Menda-Shabat
-Leonid Azriel
|
Part # FD5C37 |
N/A | 3/15/2013 |
TPM
HMAC_SHA1 Val#1460
"Nuvoton TPM (Trusted Platform Module), a TCG 1.2 compliant security processor with embedded firmware" |
||
| 58 | McAfee, Inc. 2821 Mission College Blvd. Santa Clara, CA 95054 USA -Sakthi Subramanian
|
Version 5.8 (Firmware) |
RMI MIPSXLR w/ Linux/MIPS | 3/15/2013 |
SSH
(
SHA
(
1
)
)
SHA Val#871
"The McAfee Network Security portfolio of purpose-built appliances delivers cost-effective, comprehensive and proactive network and system security with multi-gigabit performance for locations from branch offices to the network core." |
||
| 57 | TLS |
McAfee, Inc. 2821 Mission College Blvd. Santa Clara, CA 95054 USA -Sakthi Subramanian
|
Version 1.1.2.1 (Firmware) |
RMI MIPSXLR w/ Linux/MIPS | 3/15/2013 |
TLS(
TLS1.0/1.1
)
SHA Val#871
HMAC Val#971
"The McAfee Network Security portfolio of purpose-built appliances delivers cost-effective, comprehensive and proactive network and system security with multi-gigabit performance for locations from branch offices to the network core." |
|
| 56 | Samsung Electronics Co., Ltd R4 416, Maetan 3-dong, Yeongtong-gu Suwon-si, Gyeonggi-do 443-742 Korea -Ross Choi
-Kyung-Hee Lee
|
Version SecOpenSSL2.0.2 |
ARMv7 w/ Android Jelly Bean 4.1 | 3/8/2013 |
"General purpose cryptographic services available for Android used by Samsung devices to provide secure cryptography. Salt length 0, 1 and 2 has been tested for RSASSA-PSS." |
||
| 55 | TLS |
Accellion, Inc. 1804 Embarcadero Road Suite 200 Palo Alto, Ca 94303 USA -Prateek Jain
|
Version 1.0.1c |
Dual Xeon QuadCore w/ Linux based on Red Hat Enterprise Version 5 | 2/26/2013 |
TLS(
TLS1.0/1.1
 
TLS1.2
(
SHA
(
256
)
)
)
SHA Val#2003
HMAC Val#1457
"Accellion Cryptographic Module is a key component of Accellion''s secure collaboration solution that enables enterprises to securely share and transfer files. Extensive tracking and reporting tools allow compliance with SOX, HIPAA, FDA and GLB regulations while providing enterprise grade security and ease of use" |
|
| 54 | GoldKey Security Corporation 26900 E. Pink Hill Rd Independence, MO 64057 USA -GoldKey Sales & Customer Service
-Jon Thomas
|
Version 7.11 (Firmware) |
Arca2S | 2/21/2013 |
"Cryptographic algorithm implementation for GoldKey Products" 03/18/13: Updated implementation information; |
||
| 53 | OpenSSL Software Foundation, Inc. 1829 Mount Ephraim Road Adamstown, MD 27101 USA -Steve Marquess
|
Version 2.0.3 |
Freescale i.MX53xA (ARMv7) with NEON w/ Windows Embedded Compact 7; Freescale i.MX53xD (ARMv7) with NEON w/ Windows Embedded Compact 7; Qualcomm Snapdragon APQ8060 (ARMv7) with NEON w/ Android 4.0 | 2/19/2013 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
K-163
K-233
K-283
K-409
K-571
B-163
B-233
B-283
B-409
B-571
"The OpenSSL FIPS Object Module is a full featured general purpose cryptographic library that is distributed in source code form under an open source license. It can be downloaded from www.openssl.org/source/." 02/21/13: Added new tested information; |
||
| 52 | TLS |
Ultra Stereo Labs, Inc. 181 Bonetti Drive San Luis Obispo, CA 93401-7397 USA -Larry McCrigler
|
Version OpenSSL 0.9.8m (Firmware) |
AMC PPC 460 GT | 2/19/2013 |
TLS(
TLS1.0/1.1
)
SHA Val#1320
HMAC Val#856
"IMS-1200" |
|
| 51 | Kony Solutions, Inc. 7380 West Sand Lake Rd. #390 Orlando, FL 32819 USA -Matthew Terry
|
Version 2.0 |
Qualcomm QSD 8250 (ARMv7) w/ Android 2.2; Qualcomm QSD 8250 (ARMv7) with NEON w/ Android 2.2; TI OMAP 3621 (ARMv7) w/ Android 3.0; TI OMAP 3621 (ARMv7) with NEON w/ Android 3.0; TI DM3730 (ARMv7) w/ Android 4.0; TI DM3730 (ARMv7) with NEON w/ Android 4.0; ARMv7 Cortex-A8 w/ Apple iOS 5.0; ARMv7 Cortex-A8 w/ Apple iOS 6.0 | 2/19/2013 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
K-163
K-233
K-283
K-409
K-571
B-163
B-233
B-283
B-409
B-571
"The Kony Solutions Cryptographic Library v2.0 is a full featured cryptographic module used in Kony mobile and multi-channel application platforms and the KonyOne Platform." |
||
| 50 | Allegro Software Development Corporation 1740 Massachusetts Avenue Boxborough, MA 01719 USA -Larry LaCasse
|
Version 1.1 |
Intel Core 2 Duo w/ Windows 7 Ultimate (64-bit) | 1/18/2013 |
ECC: ( FUNCTIONS INCLUDED IN IMPLEMENTATION: DPG DPV KPG Full Validation ) SCHEMES: EphemUnified: (KARole: Initiator / Responder ) ECDSA Val#379 SHS Val#1997 DRBG Val#286 "The Allegro Cryptographic Engine (ACE) is a cryptographic library module for embedded computing systems. ACE provides software implementations of algorithms for calculations of message digests, digital signature creation and verification, bulk encryption and decryption, key generation and key exchange" |
||
| 49 | OpenSSL Software Foundation, Inc. 1829 Mount Ephraim Road Adamstown, MD 27101 USA -Steve Marquess
|
Version 2.0.2 |
TI DM3730 (ARMv7) w/ Android 4.1; TI DM3730 (ARMv7) with NEON w/ Android 4.1; Nvidia Tegra 3 (ARMv7) w/ Android 4.2; Nvidia Tegra 3 (ARMv7) with NEON w/ Android 4.2 | 1/18/2013 |
"The OpenSSL FIPS Object Module is a full featured general purpose cryptographic library that is distributed in source code form under an open source license. It can be downloaded from www.openssl.org/source/." 02/06/13: Updated implementation information; |
||
| 48 | Uplogix, Inc. 7600 B North Capital of Texas Highway Suite 220 Austin, TX 78731 USA -Martta Howard
|
Version 1.4.3 (Firmware) |
AMD Geode LX; Intel Celeron D; Intel Atom E6xx | 12/21/2012 |
SSH
(
SHA
(
1
)
)
SHA Val#1976
"Uplogix Local Managers use an SSH client to connect to other Uplogix Local Managers or to copy files with SCP. See http://www.uplogix.com." |
||
| 47 | Uplogix, Inc. 7600 B North Capital of Texas Highway Suite 220 Austin, TX 78731 USA -Martta Howard
|
Version 1.4.3 (Firmware) |
Intel Atom E6xx; AMD Geode LX; Intel Celeron D | 12/21/2012 |
SSH
(
SHA
(
1
)
)
SHA Val#1976
"A user''s primary interaction with an Uplogix Local Manager is via its SSH commandline interface. See http://www.uplogix.com/." |
||
| 46 | TLS |
Uplogix, Inc. 7600 B North Capital of Texas Highway Suite 220 Austin, TX 78731 USA -Martta Howard
|
Version 3.12.11 (Firmware) |
AMD Geode LX; Intel Atom E6xx; Intel Celeron D | 12/21/2012 |
TLS(
TLS1.0/1.1
)
SHA Val#1976
HMAC Val#1409
"Uplogix Local Managers utilize Mozilla''s Network Security Services for general purpose cryptographic functionality. NSS provides the algorithms necessary to secure Uplogix'' SSH and TLS implementations. See http://www.uplogix.com" |
|
| 45 | SafeNet, Inc. 4690 Millennium Drive Belcamp, MD 21017 USA -Chris Brych
|
Version 1.0 |
Intel Xeon E3-1220v2 w/ AES-NI w/ Windows Server 2008R2 64-bit; Intel Xeon E3-1220v2 w/ Windows Server 2008 64-bit; Intel Core i5-2430M w/ AES-NI w/ Windows 7 64-bit; Intel Core i5-2430M w/ Windows 7 32-bit; Intel Xeon E3-1220v2 w/ AES-NI w/ NetBSD 4.1 32-bit on VMware ESX; ARMv7 w/ NEON w/ Android 4.0; Intel Xeon E3-1220v2 w/ AES-NI w/ RHEL 6.2 64-bit; Intel Xeon 3050 w/ CentOS 5.6 32-bit | 12/7/2012 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
K-163
K-233
K-283
K-409
K-571
B-163
B-233
B-283
B-409
B-571
"The SafeNet Software Cryptographic Library is SafeNet’s cryptographic service provider that provides extended high performance cryptographic services for SafeNet''s broad range of Data Protection products." |
||
| 44 | SafeLogic Inc 530 Lytton Ave, Ste 200 Palo Alto, CA 94301 USA |
Version 2.1 |
Intel i7 w/ CentOS 6.3; Intel i7 w/ Mac OS X 10.8; Intel i7 w/ RHEL 6.3; Intel i7 w/ SUSE Linux Enterprise 11 SP2; Intel i7 w/ Windows 2008 R2 | 11/21/2012 |
Curves tested:
P-192
P-224
P-384
P-521
K-163
K-233
K-283
K-409
K-571
B-163
B-233
B-283
B-409
B-571
"CryptoComply | Server is a standards-based "Drop-in Compliance" solution for servers and appliances. The module features robust algorithm support, including Suite B algorithm compliance. CryptoComply offloads secure key management, data integrity, data at rest encryption, and secure communications to a trusted implementation." |
||
| 43 | Allegro Software Development Corporation 1740 Massachusetts Avenue Boxborough, MA 01719 USA -Larry LaCasse
|
Version 1.1 |
Dell Optiplex 775, Intel Core 2 Duo w/ Windows 7 Ultimate | 11/15/2012 |
FFC: (FUNCTIONS INCLUDED IN IMPLEMENTATION: DPG DPV KPG Full Validation ) SCHEMES: DSA Val#708 SHS Val#1952 DRBG Val#279 ECC: ( FUNCTIONS INCLUDED IN IMPLEMENTATION: DPG DPV KPG Full Validation ) SCHEMES: EphemUnified: (KARole: Initiator / Responder ) ECDSA Val#367 SHS Val#1952 DRBG Val#179 AES Val#2271 AES Val#2271 HMAC Val#1390 "The Allegro Cryptographic Engine (ACE) is a cryptographic library module for embedded computing systems. ACE provides software implementations of algorithms for calculations of message digests, digital signature creation and verification, bulk encryption and decryption, key generation and key exchange." |
||
| 42 | Panzura, Inc. 22 Great Oaks Blvd #150 San Jose, CA 95119 USA -Rich Weber
|
Version 4.2 |
Intel Xeon E5620 (x86) with AES-NI w/ Panzura Cloud Controller 8.0; Intel Xeon E5620 (x86) with AES-NI w/ Panzura Cloud Controller 8.0 on VMware ESX; Intel Xeon E5620 (x86) w/ Panzura Cloud Controller 8.0 on VMware ESX | 11/15/2012 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
K-163
K-233
K-283
K-409
K-571
B-163
B-233
B-283
B-409
B-571
"The Panzura Cyrptographic Module provides validated cryptographic services for multiple Panzura products." |
||
| 41 | Gemalto Avenue du Jujubier Z.I Athelia IV La Ciotat, 13705 France -Florence Defrance
-Arnaud Lotigier
|
Version 1.6 (Firmware) Part # IFX SLE78 (M7892 & M7820) chip family |
Infineon SLE78 (M7892 & M7820) chip family. | 10/23/2012 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
"The IDCore 30 Cryptographic Library v1.6 operates on the Infineon SLE78 (M7892 & M7820) chip family, targeting Javacard 2.2.2, GP 2.1.1 & GP 2.2 Amdt D compliant modules. The library implements TDEA, AES, AES-CMAC, SHA1-224-256-384-512, RSA, RSA CRT, ECDSA, ECC CDH and ANSI X9.31 RNG algorithms." 10/31/12: Updated implementation information; |
||
| 40 | Cisco Systems, Inc. 170 West Tasman Drive San Jose, CA 95134 USA |
Version 2.0 |
Intel Core i5-650 with AES-NI (x64) w/ Microsoft Windows 7; Intel Core i5-2520M with AES-NI (x64) w/ Mac OS X 10.7; Intel Xeon E5504 (x64) w/ FreeBSD 9.0; Intel Xeon E5649 with AES-NI (x64) w/ Linux 2.6; Cavium CN5230 (MIPS) (x64) w/ Linux 2.6; Snapdragon S3 APQ8060 (ARM) w/ Android 4.0; Freescale 8548 (PowerPC) w/ Linux 2.6; Apple A5X (ARM) w/ Apple iOS 5.1; | 10/17/2012 |
Curves tested:
P-192
P-256
P-384
P-521
"The Cisco FIPS Object Module is a software library that provides cryptographic services to a vast array of Cisco's networking and collaboration products." |
||
| 39 | TLS |
RSA Security, the Security Devision of EMC Level 11, 345 Queen Street Brisbane, Queensland 4000 Australia -Stefan Pingel
-Peter Robinson
|
Version 6.1 |
AMD Athlon 64 X2 Dual-Core Processor 3800+ w/ Microsoft Windows 7 (64-bit) with Sun JRE 6.0; Intel T7300 Core 2 Duo w/ Android 2.2 ARM (32-bit) JRE 6.0 | 10/17/2012 |
TLS(
TLS1.0/1.1
 
TLS1.2
(
SHA
(
256
,
384
,
512
)
)
)
SHA Val#1938
HMAC Val#1378
"RSA BSAFE Crypto-J security software is designed to help protect sensitive data as it is stored using strong encryption techniques to provide a persistent level of protection. It supports a wide range of industry standard encryption algorithms offering Java developers the flexibility to choose the option most appropriate to meet their requirements." |
|
| 38 | Stonesoft Corporation Itälahdenkatu 22A Helsinki, FI-00210 Finland -Klaus Majewski
-Jorma Levomäki
|
Version 1.0 |
Intel X3450 w/ GNU / Linux (Debian) 6.0 | 10/5/2012 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
FFC: (FUNCTIONS INCLUDED IN IMPLEMENTATION: Full Validation ) SCHEMES: DSA Val#695 SHS Val#1930 DRBG Val#267 ECC: ( FUNCTIONS INCLUDED IN IMPLEMENTATION: KPG ) SCHEMES: EphemUnified: (KARole: Initiator / Responder ) ECDSA Val#350 SHS Val#1930 DRBG Val#267 "Stonesoft Cryptographic Library is a software module that provides cryptographic services for Stonesoft network security products." |
||
| 37 | Stonesoft Corporation Itälahdenkatu 22A Helsinki, FI-00210 Finland -Klaus Majewski
-Jorma Levomäki
|
Version 1.0 |
Intel Atom 425 w/ GNU / Linux (Debian) 6.0 | 10/5/2012 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
FFC: SCHEMES: DSA Val#694 SHS Val#1929 DRBG Val#266 ECC: ( FUNCTIONS INCLUDED IN IMPLEMENTATION: KPG ) SCHEMES: EphemUnified: (KARole: Initiator / Responder ) ECDSA Val#349 SHS Val#1929 DRBG Val#266 "Stonesoft Cryptographic Library is a software module that provides cryptographic services for Stonesoft network security products." |
||
| 36 | OpenSSL Software Foundation, Inc. 1829 Mount Ephraim Road Adamstown, MD 27101 USA -Steve Marquess
|
Version 2.0.2 |
PowerPC-e500 w/ NetBSD 5.1; Intel Xeon 5500 (x86-64) w/ NetBSD 5.1; Intel Xeon E3-1220v2 (x86) w/ RHEL 6 32-bit under vSphere; Intel Xeon E3-1220v2 (x86) w/ Windows 2008 32-bit under vSphere; Intel Xeon E3-1220v2 (x86) w/ RHEL 6 64-bit under vSphere; Intel Xeon E3-1220v2 (x86) w/ Windows 2008 64-bit under vSphere; Intel Core i5-2430M (x86) w/ Windows 7 64-bit with AES-NI; ARM Cortex A8 (ARMv7) with NEON w/ Apple iOS 5.0; Qualcomm MSM8X60 (ARMv7) with NEON w/ VMware Horizon Mobile 1.3 under VMware; Intel Core i7-3615QM w/ Apple OS X 10.7 | 10/5/2012 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
K-163
K-233
K-283
K-409
K-571
B-163
B-233
B-283
B-571
"The OpenSSL FIPS Object Module is a full featured general purpose cryptographic library that is distributed in source code form under an open source license. It can be downloaded from www.openssl.org/source/." 12/31/12: Added new tested information; |
||
| 35 | McAfee, Inc. 2821 Mission College Blvd. Santa Clara, CA 95054 USA -Andy Nissen
-James Reardon
|
Version 1.0 |
VMware ESXi 5.0 on Intel Xeon w/ Nitro OS 9.1 | 10/5/2012 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
K-163
K-233
K-283
K-409
K-571
B-163
B-233
B-283
B-409
B-571
"The McAfee SIEM 64-bit Cryptographic Engine v1.0 provides the necessary services to support the cryptographic features and functions of McAfee''s line of SIEM products including Nitro IPS." |
||
| 34 | McAfee, Inc. 2821 Mission College Blvd. Santa Clara, CA 95054 USA -Andy Nissen
-James Reardon
|
Version 1.0 |
Intel Xeon w/ Nitro OS 9.1 | 10/5/2012 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
K-163
K-233
K-283
K-409
K-571
B-163
B-233
B-283
B-409
B-571
"The McAfee SIEM 64-bit Cryptographic Engine v1.0 provides the necessary services to support the cryptographic features and functions of McAfee''s line of SIEM products including Nitro IPS." |
||
| 33 | McAfee, Inc. 2821 Mission College Blvd. Santa Clara, CA 95054 USA -Andy Nissen
-James Reardon
|
Version 1.0 |
Intel Xeon w/ Nitro OS 9.1 | 10/5/2012 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
K-163
K-233
K-283
K-409
K-571
B-163
B-233
B-283
B-409
B-571
"The McAfee SIEM 32-bit Cryptographic Engine v1.0 provides the necessary services to support the cryptographic features and functions of McAfee''s line of SIEM products including Nitro IPS." |
||
| 32 | McAfee, Inc. 2821 Mission College Blvd. Santa Clara, CA 95054 USA -Andy Nissen
-James Reardon
|
Version 1.0 |
VMware ESXi 5.0 on Intel Xeon w/ Nitro OS 9.1 | 10/5/2012 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
K-163
K-233
K-283
K-409
K-571
B-163
B-233
B-283
B-409
B-571
"The McAfee SIEM 32-bit Cryptographic Engine v1.0 provides the necessary services to support the cryptographic features and functions of McAfee''s line of SIEM products including Nitro IPS." |
||
| 31 | TLS |
Hewlett-Packard Longdown Avenue Stoke Gifford, Bristol BS34 8QZ United Kingdom -Laura Loredo
|
Version OpenSSL 1.0.1c/FIPS 2.0/CN22745 (Firmware) |
ARM966E | 8/27/2012 |
TLS(
TLS1.0/1.1
 
TLS1.2
(
SHA
(
256
,
384
)
)
)
SHA Val#1898
HMAC Val#1342
"The Hewlett Packard LTO-6 Tape Drive is a multi-chip standalone module composed of hardware and firmware components, providing cryptographic services to a host." 09/07/12: Updated implementation information; |
|
| 30 | Cisco Systems, Inc. 170 West Tasman Drive San Jose, CA 95134 USA |
Version Rel 1 (Firmware) |
PMC RM5261A MIPS 350MHz; Intel Woodcrest 2.13GHz; Power-PC 405 250MHz | 7/30/2012 |
FFC: (FUNCTIONS INCLUDED IN IMPLEMENTATION: KPG Partial Validation Key Regeneration ) SCHEMES: SHS Val#1858 DRBG Val#237 ECC: ( FUNCTIONS INCLUDED IN IMPLEMENTATION: KPG Partial Validation Key Regeneration ) SCHEMES: EphemUnified: (KARole: Initiator / Responder ) ECDSA Val#322 SHS Val#1858 DRBG Val#237 "IOS Common Cryptographic Module (IC2M) firmaware version Rel 1 covers Rel 1(1.0.0), Rel 1(1.0.1) and Rel 1(1.0.2)" 12/07/12: Updated implementation information; |
||
| 29 | SafeLogic Inc 530 Lytton Ave, Ste 200 Palo Alto, CA 94301 USA |
Version 2.1 |
A5X w/ iOS 5.1; A5X w/ iOS 6 | 7/18/2012 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
K-163
K-233
K-283
K-409
K-571
B-163
B-233
B-283
B-409
B-571
"CryptoComply | Mobile is a standards-based “Drop-in Compliance” solution for mobile devices. The module features robust algorithm support, including Suite B algorithm compliance. CryptoComply offloads functions for secure key management, data integrity, data at rest encryption, and secure communications." 10/31/12: Added new tested information; |
||
| 28 | SafeLogic Inc 530 Lytton Ave, Ste 200 Palo Alto, CA 94301 USA |
Version 2.1 |
ARM Cortex-A9 w/ Android Version 4.0 | 7/18/2012 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
K-163
K-233
K-283
K-409
K-571
B-163
B-233
B-283
B-409
B-571
"CryptoComply | Mobile is a standards-based “Drop-in Compliance” solution for mobile devices. The module features robust algorithm support, including Suite B algorithm compliance. CryptoComply offloads functions for secure key management, data integrity, data at rest encryption, and secure communications." 11/14/12: Updated vendor information; |
||
| 27 | Thales E-Security Ltd Jupiter House Station Road Cambridge, CB5 8JJ UK -Thales Certification Team
-Thales Sales
|
Version 2.51.10 (Firmware) |
Freescale PowerPC | 7/13/2012 |
FFC: (FUNCTIONS INCLUDED IN IMPLEMENTATION: DPG DPV KPG ) SCHEMES: OneFlow: (KARole: Initiator / Responder ) Static: (KARole: Initiator / Responder ) DSA Val#664 SHS Val#1844 DRBG Val#232 ECC: ( FUNCTIONS INCLUDED IN IMPLEMENTATION: DPG DPV KPG ) SCHEMES: EphemUnified: (KARole: Initiator / Responder ) OnePassDH: (KARole: Initiator / Responder ) StaticUnified: (KARole: Initiator / Responder ) ECDSA Val#318 SHS Val#1844 DRBG Val#232 "The nShield algorithm library provides cryptographic functionality for Thales''s nShield Hardware Security Modules" 12/17/12: Updated implementation information; |
||
| 26 | NXP Semiconductors Mikronweg 1 Gratkorn, 8101 Austria -Markus Moesenbacher
|
Version ECDH_CL_V2.7 (Firmware) Part # NXP P5CD081 Family |
NXP P5CD081 Family | 7/13/2012 |
Curves tested:
P-192
P-224
P-256
"Single Chip Module with NXP Secure Smart Card Controller of P5CD081 Family and NXP Java Card and GP OS JCOP 2.4.2 R2. P5CD081 Family means: P5CD145V0A, P5CC145V0A, P5CN145V0A, P5CD128V0A, P5CC128V0A, P5CD081V1A, P5CC081V1A, P5CN081V1A, P5CD051V1A, P5CD041V1A, P5CD021V1A, P5CD016 V1A, P5CD145V0B, P5CC145V0B, P5CD081V1D." |
||
| 25 | ANS X9.63-2001 |
3S Group Incorporated 125 Church Street, N.E., Suite 204 Vienna, VA 22180 USA -Satpal S. Sahni
|
Version 1.0 (Firmware) |
Cavium Octeon | 7/5/2012 |
ANSX963_2001
(
SHS
(
1
,
224
,
256
,
384
,
512
)
)
SHA Val#1784
"3SGX is a high performance PCIe cryptograhic module that provides complete cryptographic support to large numbers of users or applications simultaneously. 3SGX is the core of 3S Group''s hardare security appliances, ideal for enterprise key management, virtualization and cloud server solutions that demand high throughput." |
|
| 24 | OpenSSL Software Foundation, Inc. 1829 Mount Ephraim Road Adamstown, MD 27101 USA -Steve Marquess
|
Version 2.0.1 |
ARMv7 w/ Apple iOS 5.1; ARMv5TEJ w/ Microsoft Windows CE 6.0 R2; ARMv7 w/ Microsoft Windows CE 5.0 | 6/29/2012 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
K-163
K-233
K-283
K-409
K-571
B-163
B-233
B-283
B-409
B-571
"The OpenSSL FIPS Object Module is a full featured general purpose cryptographic library that is distributed in source code form under an open source license. It can be downloaded from www.openssl.org/source/." |
||
| 23 | Hewlett-Packard Company 19091 Pruneridge Ave., MS 4441 Cupertino, CA 95014 USA -Theresa Conejero
|
Version 5.0.0 (Firmware) |
Intel Xeon E5-2640 | 6/25/2012 |
FFC: (FUNCTIONS INCLUDED IN IMPLEMENTATION: KPG ) SCHEMES: DSA Val#653 SHS Val#1802 DRBG Val#207 "HP Enterprise Secure Key Manager (ESKM) provides key generation, retrieval, and management for encryption devices and solutions. ESKM is a hardened security appliance with secure access control, administration, and logging. ESKM supports high availability with automatic multi-site clustering, replication, and failover." |
||
| 22 | TLS |
Ultra Electronics 3eTI 9715 Key West Avenue Rockville, MD 20850 USA -Harinder Sood
-Chris Guo
|
Version 1.0.1-a (Firmware) |
MPC8378E | 6/20/2012 |
TLS(
TLS1.0/1.1
 
TLS1.2
(
SHA
(
256
,
384
)
)
)
"Algorithms listed are used to provide encryption and authentication services within 3eTI networking products." |
|
| 21 | AuthenTec Inc. Boxtelseweg 26A Vught, 5261 NE The Netherlands -Bob Oerlemans
|
Version 1.0.3 |
ARMv7 w/ Android 4.0; ARMv7 w/ Android 2.3; ARMv7 w/ Linux (kernel 2.6) | 6/5/2012 |
FFC: (FUNCTIONS INCLUDED IN IMPLEMENTATION: DPG DPV KPG Full Validation ) SCHEMES: Static: (KARole: Initiator / Responder ) DSA Val#648 SHS Val#1787 DRBG Val#203 ECC: ( FUNCTIONS INCLUDED IN IMPLEMENTATION: Partial Validation ) SCHEMES: EphemUnified: (KARole: Initiator / Responder ) StaticUnified: (KARole: Initiator / Responder ) ECDSA Val#299 SHS Val#1787 DRBG Val#203 "SafeZone FIPS Cryptographic Module is a FIPS 140-2 Security Level 1 validated software cryptographic module from AuthenTec Inc. The module is a toolkit which provides the most commonly needed cryptographic primitives for a large variety of applications, including but not limited to, primitives needed for DAR, DRM, TLS, and VPN on mobile devices." |
||
| 20 | Pitney Bowes, Inc. 37 Executive Drive Danbury, CT 06810 USA -Dave Riley
|
Version 02000007 (Firmware) |
ARM 7 TDMI | 4/9/2012 |
Curves tested:
P-256
ECC: ( FUNCTIONS INCLUDED IN IMPLEMENTATION: KPG Partial Validation ) SCHEMES: EphemUnified: (KARole: Initiator / Responder ) ECDSA Val#286 SHS Val#1733 DRBG Val#181 "The Pitney Bowes Cygnus X-3 Hardware Security Module (HSM) employs strong cryptographic and physical security techniques for the protection of funds in Pitney Bowes Postage systems." |
||
| 19 | Certicom Corp. 4701 Tahoe Blvd. Building A Missisauga, ON L4W 0B5 Canada -Certicom Sales
-Kris Orr
|
Version 6.0.2 |
64-bit Intel Core i5-2300 w/ Red Hat Linux 5.6; 64-bit Intel Core i5-2300 w/ Windows 7 | 3/26/2012 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
K-163
K-233
K-283
K-409
K-571
"Security Builder FIPS Core provides application developers with cryptographics tools to easily integrate encryption, digital signatures and other security mechanisms into C-based apps for FIPS 140-2 and Suite B security. It can also be used with Certicom''s PKI, IPSec SSL and DRM modules." |
||
| 18 | Gemalto Avenue du Jujubier Z.I Athelia IV La Ciotat, 13705 France -Arnaud Lotigier
|
Version Version #11-M1005011+Softmask V04 (Firmware) (Firmware) |
Infineon SLE66CLX1280PE | 3/21/2012 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
"This module is based on a Java Card platform (TOP DL V2) with 128K EEPROM memory available. The Cryptographic Module provides dual interfaces (i.e. contact and contact-less) where the same security level is achieved." |
||
| 17 | Gemalto Avenue du Jujubier Z.I Athelia IV La Ciotat, 13705 France -Michael Bruyere
-Anthony Vella
|
Version 1.2 (Firmware) Part # NXP P5Cx081 Family |
NXP P5Cx081 Family | 2/29/2012 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
"MultiApp V2.1 is a highly secured smartcard platform conformant to the Javacard 2.2.2 and GP 2.1.1 standards, designed to operate on the NXP P5Cx081 family, inclusive of NXP P5CC081 and P5CC145 integrated circuits. Its cryptographic library implements TDEA, AES, SHA, RSA, RSA CRT, ECDSA, ECC CDH and RNG ANSX9.31 algorithms." |
||
| 16 | Entrust, Inc. One Lincoln Centre 5400 LBJ Freeway Suite 1340 Dallas, TX 75240 USA -Entrust Sales
|
Version 8.0 |
Intel Core 2 Duo E8400 w/ Microsoft Windows Server 2008 R2 with Oracle J2RE 6; Intel Core 2 Duo E8400 w/ Microsoft Windows Server 2008 R2 with Oracle J2RE 7 | 2/21/2012 |
ECC: ( FUNCTIONS INCLUDED IN IMPLEMENTATION: DPV KPG Partial Validation ) SCHEMES: EphemUnified: (KARole: Initiator / Responder ) EA: P-192 EB: P-224 EC: P-256 ED: P-384 EE: P-521 OnePassDH: (KARole: Initiator / Responder ) EA: P-192 EB: P-224 EC: P-256 ED: P-384 EE: P-521 StaticUnified: (KARole: Initiator / Responder ) EA: P-192 EB: P-224 EC: P-256 ED: P-384 EE: P-521 ECDSA Val#277 SHS Val#1700 DRBG Val#170 "The Java toolkit is an implementation of cryptographic functions accessible by an object-oriented API. Depending on configuration, the algorithms may be implemented in software, hardware, or both. The industry standard Cryptopki API from PKCS #11, is used as the interface to hardware-based cryptographic modules." |
||
| 15 | Entrust, Inc. One Lincoln Centre 5400 LBJ Freeway Suite 1340 Dallas, TX 75240 USA -Entrust Sales
|
Version 8.1sp1 |
Intel Core 2 Duo E8400 w/ Windows Server 2008 R2 Enterprise Edition | 1/19/2012 |
ECC: ( FUNCTIONS INCLUDED IN IMPLEMENTATION: DPV KPG Partial Validation ) SCHEMES: EphemUnified: (KARole: Initiator / Responder ) EA: P-192 EB: P-224 EC: P-256 ED: P-384 OnePassDH: (KARole: Initiator / Responder ) EA: P-192 EB: P-224 EC: P-256 ED: P-384 EE: P-521 StaticUnified: (KARole: Initiator / Responder ) EA: P-192 EB: P-224 EC: P-256 ED: P-384 EE: P-521 ECDSA Val#275 SHS Val#1689 RNG Val#1011 DRBG Val#167 "The Security Kernel is a C++ implementation of cryptographic functions accessible by an object-oriented API. Depending on configuration, the algorithms may be implemented in software, hardware or both. The industry standard Cryptoki API from PKCS #11, is used as the interface to hardware-based cryptographic modules." |
||
| 14 | Catbird Networks, Inc. 1800 Green Hills Road, Suite 113 Scotts Valley, CA 95066 USA -Michael Berman
|
Version v1.0 |
Intel Core i5 with AES-NI w/ CentOS 6.0 | 1/19/2012 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
K-163
K-233
K-283
K-409
K-571
B-163
B-233
B-283
B-409
B-571
"The cryptographic module used by Catbird''s comprehensive security and compliance solutions for virtualized data centers." 01/25/12: Updated implementation information; |
||
| 13 | Cummings Engineering Consultants, Inc. 145 S. 79th St., Suite 26 Chandler, AZ 85226 USA -Darren Cummings
|
Version v1.0 |
TI OMAP 3 w/ Linux 3.0.4; Intel Pentium T4200 w/ Android 2.2; Qualcomm QSD 8250 w/ Android 2.2; Intel Pentium T4200 w/ Ubuntu 10.04; Intel Celeron (64 bit mode) w/ Microsoft Windows 7; Intel Core i5 (with AES-NI) w/ Android 2.2; Intel Core i5 (with AES-NI) (64 bit mode) w/ Microsoft Windows 7; Intel Core i5 (with AES-NI) w/ Fedora 14 | 1/26/2012 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
K-163
K-233
K-283
K-409
K-571
B-163
B-233
B-283
B-409
B-571
"The cryptographic module used by the Cummings Engineering suite of products which allow for efficient and effective deployment of robust secure communications capability on commercial off the shelf (COTS) devices, such as Smartphones and Tablets, as well as speciality communications devices." 02/01/12: Added new tested information; |
||
| 12 | OpenSSL Software Foundation, Inc. 1829 Mount Ephraim Road Adamstown, MD 27101 USA -Steve Marquess
|
Version 2.0 |
Intel Itanium 2 (64 bit mode) w/ HP-UX 11i; Intel Itanium 2 (32 bit mode) w/ HP-UX 11i; Freescale PowerPC32-e300 w/ Linux 2.6.33; TI OMAP 3530 (ARMv7) w/ Android 2.2; Intel Pentium (R) T4200 w/ Ubuntu 10.04; ARM Limited ARM922T (ARMv4) w/ uCLinux 0.9.29; Intel Core i5 with AES-NI (64 bit mode) w/ Fedora 14; Intel Core i5 with AES-NI (32 bit mode) w/ Ubuntu 10.04; Intel Celeron (32 bit mode) w/ Microsoft Windows 7; TI TNETV1050 w/ VxWorks 6.8; PowerPC e300c3 w/ Linux 2.6.27; Intel Pentium T4200 (64 bit mode) w/ Cascade Server 6.10; Intel Pentium T4200 (32 bit mode) w/ Cascade Server 6.10; Intel Pentium 4 (64 bit mode) w/ Microsoft Windows 7; TI AM3703CBP w/ Linux 2.6.32; Broadcom BCM11107 (ARMv6) w/ Linux 2.6; TI TMS320DM6446 (ARMv7) w/ Linux 2.6; Intel Xeon 5675 (x86) with AES-NI (32 bit mode) w/ Oracle Solaris 11; Intel Xeon 5675 (x86) (64 bit mode) w/ Oracle Solaris 11; Intel Pentium T4200 (x86) (32 bit mode) w/ Ubuntu 10.04; Intel Xeon 5675 (x86) (32 bit mode) w/ Oracle Solaris 11; Intel Xeon 5675 (x86) with AES-NI (64 bit mode) w/ Oracle Solaris 11; Intel Pentium T4200 (x86) (64 bit mode) w/ Ubuntu 10.04; SPARC-T3 (SPARCv9) (32 bit mode) w/ Oracle Solaris 10; SPARC-T3 (SPARCv9) (64 bit mode) w/ Oracle Solaris 10; Intel Xeon 5675 (x86) (64 bit mode) w/ Oracle Linux 5; Intel Xeon 5675 with AES-NI (64 bit mode) w/ Oracle Linux 5; Intel Xeon 5675 (64-bit mode) w/ Oracle Linux 6; Intel Xeon 5675 with AES-NI (64-bit mode) w/ Oracle Linux 6; SPARC-T3 (SPARCv9) (32-bit mode) w/ Oracle Solaris 11; SPARC-T3 (SPARCv9) (64-bit mode) w/ Oracle Solaris 11; Freescale PowerPC-e500 w/ Linux 2.6; TI C64x+ w/ DSP Media Framework 1.4 | 12/29/2011 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
K-163
K-233
K-283
K-409
K-571
B-163
B-233
B-283
B-409
B-571
"The OpenSSL FIPS Object Module is a full featured general purpose cryptographic library that is distributed in source code form under an open source license. It can be downloaded from www.openssl.org/source/." 01/26/12: Added new tested information; |
||
| 11 | SafeNet, Inc. 20 Colonnade Road Suite 200 Ottawa, ON K2E 7M6 Canada -Chris Brych
-Laurie Smith
|
Version 4.8.7 (Firmware) |
StrongARM II 80219 | 12/16/2011 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
K-163
K-233
K-283
K-409
K-571
B-163
B-233
B-283
B-409
B-571
"The Luna K5 Cryptographic Library provides a broad suite of high-performance cryptographic operations. All cryptographic algorithms are implemented within the module''s firmware and associated co-processor." |
||
| 10 | OpenSSL Software Foundation, Inc. 1829 Mount Ephraim Road Adamstown, MD 27101 USA -Steve Marquess
|
Version 2.0 |
ARMv7 (HTC Desire) w/ Android 2.2; Qualcomm QSD 8250 (Dell Streak; ARMv7) w/ Android 2.2; NVIDIA Tegra 250 T20 (Motorola Xoom, ARMv7) w/ Android 3.0; NVIDIA Tegra 250 T20 (ARMv7) w/ Android 4.0; TI OMAP 3 (ARMv7) with NEON w/ Android 4.0 | 11/29/2011 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
"The OpenSSL FIPS Object Module is a full featured general purpose cryptographic library that is distributed in source code form under an open source license. It can be downloaded from www.openssl.org/source/." 12/14/11: Updated implementation information; |
||
| 9 | IBM Corporation 2455 South Road Poughkeepsie, New York 12601-5400 USA -William Penny
-Jim Sweeny
|
Version OA36882 Part # 5694-A01 |
IBM zEnterprise 196 (z196) w/ IBM z/OS® V1.13 | 11/9/2011 |
FFC: (FUNCTIONS INCLUDED IN IMPLEMENTATION: DPG ) SCHEMES: Ephem: (KARole: Initiator / Responder ) FA FB FC OneFlow: (KARole: Initiator / Responder ) FA FB FC Static: (KARole: Initiator / Responder ) FA FB FC DSA Val#584 SHS Val#1641 DRBG Val#151 ECC: ( FUNCTIONS INCLUDED IN IMPLEMENTATION: ) SCHEMES: OnePassDH: (KARole: Initiator / Responder ) EA: P-192 EB: P-224 EC: P-256 ED: P-384 EE: P-521 StaticUnified: (KARole: Initiator / Responder ) EA: P-192 EB: P-224 EC: P-256 ED: P-384 EE: P-521 ECDSA Val#261 SHS Val#1641 DRBG Val#151 "ICSF is a software element of z/OS that works with hardware cryptographic features and the Security Server (RACF) to provide secure, high-speed cryptographic services in the z/OS environment. ICSF, which runs as a started task, provides the application programming interfaces by which applications request the cryptographic services." 11/15/11: Update implementation information; |
||
| 8 | Athena Smartcard Inc. 20380 Town Center Lane, Suite 240 Cupertino, CA 95014 USA -Ian Simmons
|
Version S1.0 (Firmware) Part # STMicroelectronics ST23 |
STMicroelectronics ST23 | 10/13/2011 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
"Athena OS755 is a GlobalPlatform Java Card smart card operating system implementing AES, TDES, DRBG, SHA-1/SHA-2, RSA, SP 800-56A KAS (ECC CDH Primitive only) and ECDSA2." |
||
| 7 | Certicom Corp. 4701 Tahoe Blvd. Building A Missisauga, ON L4W 0B5 Canada -Certicom Sales
-Kris Orr
|
Version 6.0 |
64-bit Intel Core i5-2300 w/ RedHat Linux 5.6; 32-bit Intel Core i7 w/ RedHat Linux 5.6; 32-bit Intel Pentium III w/ QNX 6.5; ARM Cortex A9 MPCore w/ QNX 6.6; Intel Core 2 Duo w/ Mac OS X 10.5; 32-bit Intel Core i5-2300 w/ Windows 7 | 9/20/2011 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
K-163
K-233
K-283
K-409
K-571
"Security Builder FIPS Core provides application developers with cryptographics tools to easily integrate encryption, digital signatures and other security mechanisms into C-based apps for FIPS 140-2 and Suite B security. It can also be used with Certicom''s PKI, IPSec SSL and DRM modules." 10/01/11: Update implementation information; |
||
| 6 | Thales E-Security Ltd Jupiter House Station Road Cambridge, CB5 8JJ UK -Marcus Streets
-Mark Wooding
|
Version 2.50.17 (Firmware) |
Freescale DragonBall MXL | 8/30/2011 |
FFC: (FUNCTIONS INCLUDED IN IMPLEMENTATION: DPV KPG Full Validation Partial Validation ) SCHEMES: Ephem: (KARole: Initiator / Responder ) FA FB FC OneFlow: (KARole: Initiator / Responder ) FA FB FC Static: (KARole: Initiator / Responder ) FA FB FC DSA Val#553 SHS Val#1554 DRBG Val#120 ECC: ( FUNCTIONS INCLUDED IN IMPLEMENTATION: DPV KPG Full Validation Partial Validation ) SCHEMES: EphemUnified: (KARole: Initiator / Responder ) EB: P-224 EC: P-256 EE: P-521 OnePassDH: (KARole: Initiator / Responder ) EA: P-192 EB: P-224 EC: P-256 ED: P-384 EE: P-521 StaticUnified: (KARole: Initiator / Responder ) EA: P-192 EB: P-224 EC: P-256 ED: P-384 EE: P-521 ECDSA Val#238 SHS Val#1554 DRBG Val#120 "The MiniHSM Algorithm Library provides cryptographic functionality for the MiniHSM series of Thales hardware security modules." |
||
| 5 | NXP Semiconductors Mikronweg 1 Gratkorn, 8101 Austria -Markus Moesenbacher
|
Version ECDH_CL_V2.7 (Firmware) Part # NXP P5CD081 Family |
NXP P5CD081 Family | 8/18/2011 |
Curves tested:
P-256
"Single Chip Module with NXP Secure Smart Card Controller of P5CD081 Family and NXP Java Card and GlobalPlatform OS JCOP 2.4.2 R0. P5CD081 Family comprises: P5CD145 V0A, P5CC145 V0A, P5CN145 V0A, P5CD128 V0A, P5CC128 V0A, P5CD081 V1A, P5CC081 V1A, P5CN081 V1A, P5CD051 V1A, P5CD041 V1A, P5CD021 V1A and P5CD016 V1A." |
||
| 4 | Oberthur Technologies 4250 Pleasant Valley Rd. Chantilly, VA 21051 USA -Christophe Goyet
|
Version 0801 (Firmware) Part # BF |
ID-One PIV (Type B) with op codes 071621 & 071891 | 6/22/2011 |
Curves tested:
P-224
P-256
P-384
"This algorithm is implemented in the new ID-One Cosmo v7 smart card platform and used to provide ECDH Key Management services to the FIPS 201 validated ID-One PIV cards from Oberthur." |
||
| 3 | Oberthur Technologies 4250 Pleasant Valley Rd. Chantilly, VA 21051 USA -Christophe Goyet
|
Version FC10 (Firmware) Part # B0 |
ID-One PIV (Type A) with op code 071964 | 6/22/2011 |
Curves tested:
P-224
P-256
P-384
"This algorithm is implemented in the new ID-One Cosmo v7 smart card platform and used to provide ECDH Key Management services to the FIPS 201 validated ID-One PIV cards from Oberthur." |
||
| 2 | Athena Smartcard Inc. 20380 Town Center Lane, Suite 240 Cupertino, CA 95014 USA -Ian Simmons
|
Version A1.0 (Firmware) Part # Inside Secure AT90SC |
Inside Secure AT90SC w/ OS755 | 6/16/2011 |
Curves tested:
P-192
P-224
P-256
P-384
P-521
"Athena OS755 is a GlobalPlatform Java Card smart card operating system implementing AES, TDES, DRBG, SHA-1/SHA-2, RSA, SP 800-56A KAS (ECC CDH Primitive only) and ECDSA2." |
||
| 1 | Thales E-Security Ltd Jupiter House Station Road Cambridge, CB5 8JJ UK -Marcus Streets
-Mark Wooding
|
Version 2.50.16 (Firmware) |
Motorola PowerPC | 5/12/2011 |
FFC: (ASSURANCES < 5.5.2: #1 , #2 , #3 > < 5.6.2.1: #1 , #3 > < 5.6.2.2: #1 > < 5.6.2.3: #1 > < 5.6.3.1: #1 , #2 > ) SCHEMES: Ephem: (KARole: Initiator / Responder ) FA FB FC OneFlow: (KARole: Initiator / Responder ) FA FB FC Static: (KARole: Initiator / Responder ) FA FB FC DSA Val#487 SHS Val#1398 DRBG Val#72 ECC: ( ASSURANCES < 5.5.2: #1 , #2 , #3 > < 5.6.2.1: #1 , #3 > < 5.6.2.1: #1 > < 5.6.2.3: #1 #3 > ) SCHEMES: EphemUnified: (KARole: Initiator / Responder ) EA: P-192 EB: P-224 EC: P-256 ED: P-384 EE: P-521 OnePassDH: (KARole: Initiator / Responder ) EA: P-192 EB: P-224 EC: P-256 ED: P-384 EE: P-521 StaticUnified: (KARole: Initiator / Responder ) EA: P-192 EB: P-224 EC: P-256 ED: P-384 EE: P-521 ECDSA Val#192 SHS Val#1398 DRBG Val#72 "The nShield algorithm library provides cryptographic functionality for Thales''s nShield Hardware Security Modules" |
Computer Security Division
National Institute of Standards and Technology