Computer Security Resource Center

Computer Security Resource Center

Computer Security
Resource Center

Cryptographic Algorithm Validation Program

CCM Validation List

This list identifies implementations that have been validated as conforming to the Counter with Cipher Block Chaining-Message Authentication Code (CCM), as specified in Special Publication 800-38C, using tests described in the CCM Validation System (CCMVS).

No. Vendor Implementation Operational Environments Validated Capabilities
12Cisco Systems, Inc.
170 West Tasman Dr.
San Jose, CA 95134
USA

Brian Mansfield
bmansfie@cisco.com
(408) 853-5469
Fax: (408) 853-3529

Cisco Aironet LWAPP AP1131AG, Cisco Aironet AP1232AG, Cisco Aironet AP1231G, and Cisco Aironet AP1242AG

3.2.116.21


The Cisco LWAPP Aironet 1131, 1232, 1231, and 1242 access points deliver the versatility, high capacity, security, and enterprise-class features required for small, medium and large Government deployments. In FIPS 140-2 mode of operation, the Cisco APs support the IEEE 802.11i and IEEE 802.1x standards and Advanced Encryption Standard (AES) for WPA2 encryption. WPA2 is the Wi-Fi Alliance certification for interoperable, standards-based WLAN security. The Cisco APs are also Wi-FI CERTIFIED for IEEE 802.11a, IEEE 802.11b and IEEE 802.11g radio standards.

    • IBM 405GP PowerPC w/ IOS 12.3(7)JX3
3/14/2006
  • CCM:
    • Key Lengths: 128 bits
    • Tag Lengths: 96 bits
    • IV Lengths: 104 bits
    • Plain Text Length: 256-256 bits
    • AAD Length: 176-240 bits
    • Prerequisite: AES #373
11Cisco Systems, Inc.
7025-6 Kit Creek Road
PO Box 14987
Research Triangle Park, NC 27709-4987
USA

Chris Romeo
chromeo@cisco.com
(919) 392-0512
Fax: (919) 392-1790

AMAC

A506


The Cisco AMAC chip is an ASIC that provides 802.11i functionality to the Cisco AP1131AG, AP1242AG, and AP1232AG wireless access points, and the Cisco BR1310G wireless bridge.

    • N/A
3/14/2006
  • CCM:
    • Key Lengths: 128 bits
    • Tag Lengths: 64 bits
    • IV Lengths: 104 bits
    • Plain Text Length: 80-160 bits
    • AAD Length: 176-240 bits
    • Prerequisite: AES #370
10Cisco Systems, Inc.
170 West Tasman Dr.
San Jose, CA 95134
USA

Brian Mansfield
bmansfie@cisco.com
(408) 853-5469
Fax: (408) 853-3529

Cisco 4400 Series Wireless LAN Controller

3.2.116.21


The Cisco 4400 Series Wireless LAN Controllers provide centralized control and scalability for medium to large-scale Government and Enterprise wireless LAN networks and support the IEEE 802.11i wireless security standard in conjunction with meeting the Wi-Fi Alliances interoperability specification WPA2 to enable a Secure Wireless Architecture. The Cisco WLAN Controllers support voice, video and data services, location & asset tracking, integrated intrusion detection & intrusion protection and intelligent radio resource management and comply with the commercial wireless security policies issued by the U.S. Federal Government and the Department of Defense (DoD).

    • Motorola MPC8540 PowerQUICC III w/ Linux Montavista Hardhat 2.4.20
3/14/2006
  • CCM:
    • Key Lengths: 128 bits
    • Tag Lengths: 96 bits
    • IV Lengths: 104 bits
    • Plain Text Length: 256-256 bits
    • AAD Length: 176-240 bits
    • Prerequisite: AES #368
93e Technologies International, Inc.
700 King Farm Blvd, Suite 600
Rockville, MD 20850
USA

Tiebing Zhang
tzhang@3eti.com
301.944.1322
Fax: 301.670.6989

3eTI Secure Bluetooth Module

1.0 (Firmware)


3eTI Secure Bluetooth Module with AES-CCM encryption

    • CSR BC03MM Chip
1/19/2006
  • CCM:
    • Key Lengths: 128 bits
    • Tag Lengths: 64 bits
    • IV Lengths: 104 bits
    • Plain Text Length: 8-256 bits
    • AAD Length: 8-256 bits
    • Prerequisite: AES #351
8Alvarion
2495 Leghorn Street
Mountain View, CA 94043
USA

Alfred Cohen
alfred.cohen@alvarion.com
650-314-2604
Fax: 650-967-3966

Alvarion BreezeACCESS

AR5212


Alvarion's BreezeACCESS VL, 4900, and BreezeNET B wireless broadbandsolution is designed to provide an IP based metro-scale communicationsnetwork. Deployed in a PtMP or PtP architecture, the solution providespublic safety agencies, government and educational organizations withcost-effective high speed connectivity regionally, citywide or countrywide.

    • N/A
9/9/2005
  • CCM:
    • Key Lengths: 128 bits
    • Tag Lengths: 64 bits
    • IV Lengths: 104 bits
    • Plain Text Length: 0-256 bits
    • AAD Length: 176-224 bits
    • Prerequisite: AES #309
7RSA Security, Inc.
2955 Campus Drive, Suite 400
San Mateo, CA 94403
USA

Kathy Kriese
Kkriese@rsasecurity.com
650-295-7692

RSA BSAFE® Crypto-C Micro Edition (ME)

2.0


The Crypto-C Micro Edition (ME) Module is RSA Security, Inc.'s cryptographic library designed for securing mobile devices like wireless phones and personal digital assistants. It contains assembly-level optimizations on key wireless processors while offering great flexibility and choice by allowing developers to select only the algorithms needed in reduced code sizes. Its functionality includes a wide range of data encryption and signing algorithms, including Triple-DES, the Advanced Encryption Standard (AES) algorithm, the RSA Public Key Cryptosystem, the DSA government signature algorithm, MD5 and SHA1 message digest routines, and more.

    • Intel PXA255 w/ PocketPC 2003
    • Intel Celeron w/ Microsoft Windows XP SP2
    • Motorola MPC 7455 w/ VxWorks 5.4, PowerPC 604
    • Motorola MPC 8260 w/ VxWorks 5.5, PowerPC 603
    • Motorola MPC 7455 w/VxWorks 5.5, PowerPC 604
    • SPARC IIe w/ Sun Microsystems Solaris 8 (Sun OS 5.8) Sparc V9
    • SPARC IIe w/ Sun Microsystems Solaris 8 (Sun OS 5.8) Sparc V8+
    • SPARC IIe w/ Sun Microsystems Solaris 8 (Sun OS 5.8) SPARC V8
    • Intel Pentium 4 w/ Red Hat Linux 7.2
    • AMD Athlon 800 w/ Red Hat Enterprise Linux AS 3.0
    • Intel Itanium 2 w/ HP-UX 11.23 Itanium2, 64-bit
    • IBM Power5 (2-way) w/ AIX 5L v5.x, 32-bit
    • PA-RISC PA8500 2.0 w/ HP-UX 11.11
    • PA-RISC PA8500 2.0W w/ HP-UX 11.23
8/26/2005
  • CCM:
    • Key Lengths: 128, 192, 256 bits
    • Tag Lengths: 32, 48, 64, 80, 96, 112, 128 bits
    • IV Lengths: 56, 64, 72, 80, 88, 96, 104 bits
    • Plain Text Length: 0-256 bits
    • AAD Length: 0-256 bits
    • Prerequisite: AES #303
63e Technologies International, Inc.
700 King Farm Blvd, Suite 600
Rockville, MD 20850
USA

Ryon Coleman
rcoleman@3eti.com
301-944-1277
Fax: 301-670-6989

AirGuardTM Crypto Client

2.0


AirGuardTM Wireless Solutions implement leading cryptographic technologies. This particular algorithm certification is for AES-CCM using a Windows 2000/XP-based software implementation. AirGuardTM Crypto Client includes the following models: AirGuardTM 3e-010F-A-2 Crypto Client Software, v2.0 Build 1 for Windows 2000/XP

    • Intel Mobile Processor, 1700 MHz w Windows XP Service Pack 2
    • Intel Mobile Processor, 1700 MHz w/ Windows 2000 Service Pack 4
7/20/2005
  • CCM:
    • Key Lengths: 128 bits
    • Tag Lengths: 64 bits
    • IV Lengths: 104 bits
    • Plain Text Length: 8-192 bits
    • AAD Length: 176-224 bits
    • Prerequisite: AES #288
53e Technologies International, Inc.
700 King Farm Blvd, Suite 600
Rockville, MD 20850
USA

Ryon Coleman
rcoleman@3eti.com
301-944-1277
Fax: 301-670-6989

AirGuardTM Crypto Client for Intel® PRO/Wireless 2200BG Network Connection and Intel® PRO/Wireless 2915ABG Network Connection

2.0


AirGuardTM Wireless Solutions implement leading cryptographic technologies. This particular algorithm certification is for AES-CCM using a Windows 2000/XP-based software implementation. AirGuardTM Crypto Client includes the following models: AirGuardTM 3e-010F-C-2 Crypto Client Software, v2.0 Build 1 for Windows 2000/XP

    • Intel Mobile Processor, 1700 MHz w/ Windows 2000 Service Pack 4
    • Intel Mobile Processor, 1700 MHz w/ Windows XP Service Pack 2
7/20/2005
  • CCM:
    • Key Lengths: 128 bits
    • Tag Lengths: 64 bits
    • IV Lengths: 104 bits
    • Plain Text Length: 8-192 bits
    • AAD Length: 176-224 bits
    • Prerequisite: AES #287
4Aruba Networks
1322 Crossman Ave
Sunnyvale, CA 94089-1113
USA

Kenneth Jensen - Dir of Prod Mgmt
kjensen@arubanetworks.com
(408) 227-4500
Fax: N/A

Aruba WLAN Switching Platform Hardware Cryptographic Implementation

1000199-01 CN1000


Aruba Wireless Networks’ WLAN switching platform is a purpose-built WLAN voice and data switching solution designed to specifically address the needs and reduce the cost of large scale Wi-Fi network deployments for Government agencies and large enterprise. The Aruba Wireless Networks WLAN switching platform is a highly scalable and redundant solution that provides centralized intelligence to secure and manage the corporate RF environment, enforce identity based user security policies, enable service creation and provide secure mobility management to thousands of simultaneously connected users.

    • N/A
5/16/2005
  • CCM:
    • Key Lengths: 128 bits
    • Tag Lengths: 64 bits
    • IV Lengths: 104 bits
    • Plain Text Length: 0-256 bits
    • AAD Length: 120-240 bits
    • Prerequisite: AES #159
3Funk Software, Inc.
222 Third Street
Cambridge, MA 02142
USA

Steven Erickson
fips@funk.com
978-371-3980 x112
Fax: 978-371-3990

Odyssey Security Component/Portable

1.0


The Odyssey Security Component/Portable is Funk Software, Inc.'s general purpose cryptographic library. Wide-ranging algorithm support is provided, making the library suitable for use in applications such as wireless LAN, IPsec, SSL/TLS, EAP, and so on. The portable (C) version can be compiled for use on a large variety of platforms.

    • x86 platform w/ Windows XP
    • x86 platform w/ Linux RedHat 9.0
3/23/2005
  • CCM:
    • Key Lengths: 128, 192, 256 bits
    • Tag Lengths: 32, 48, 64, 80, 96, 112, 128 bits
    • IV Lengths: 56, 64, 72, 80, 88, 96, 104 bits
    • Plain Text Length: 0-256 bits
    • AAD Length: 0-524288 bits
    • Prerequisite: AES #246
2Funk Software, Inc.
222 Third Street
Cambridge, MA 02142
USA

Steven Erickson
fips@funk.com
978-371-3980 x112
Fax: 978-371-3990

Odyssey Security Component

1.0


The Odyssey Security Component is Funk Software, Inc.'s general purpose cryptographic library. Wide-ranging algorithm support is provided, making the library suitable for use in applications such as wireless LAN, IPsec, SSL/TLS, EAP, and so on. Assembly language optimizations allow high-speed operation on specific platforms.

    • Windows XP on x86 platform
    • Linux RedHat 9.0 on x86 platform
3/22/2005
  • CCM:
    • Key Lengths: 128, 192, 256 bits
    • Tag Lengths: 32, 48, 64, 80, 96, 112, 128 bits
    • IV Lengths: 56, 64, 72, 80, 88, 96, 104 bits
    • Plain Text Length: 0-256 bits
    • AAD Length: 0-524288 bits
    • Prerequisite: AES #245
13e Technologies International, Inc.
700 King Farm Blvd, Suite 600
Rockville, MD 20850
USA

Ryon Coleman
rcoleman@3eti.com
301-944-1277
Fax: 301-670-6989

SW AES-CCM [for access point] Linux based

3.0


AirGuardTM Wireless Solutions implement leading cryptographic technologies. This particular algorithm certification is for AES-CCM using a Linux-based software implementation.

    • Intel Xscale, 533 MHz w/ Linux Kernel v2.4.17
3/9/2005
  • CCM:
    • Key Lengths: 128 bits
    • Tag Lengths: 64 bits
    • IV Lengths: 104 bits
    • Plain Text Length: 8-192 bits
    • AAD Length: 176-224 bits
    • Prerequisite: AES #238