Computer Security Resource Center

Computer Security Resource Center

Computer Security
Resource Center

Cryptographic Algorithm Validation Program

Description
The Microsoft Windows Next Generation Cryptographic algorithm implementation provides enhanced support for AES, DRBG, DSA, ECDSA, RSA, HMAC, KAS, KDF, SHS (SHA), and Triple-DES. All implementations are packaged into a library used by Microsoft and other third-party applications.
Version
10.0.16299
Type
SOFTWARE
Vendor
Microsoft Corporation
One Microsoft Way
Redmond, WA 98052-6399
USA
Contacts
Mike Grimm
FIPS@microsoft.com
800-Microsoft

Validations

Number
Date
Operating Environments
Algorithm Capabilities
AES 4897
11/9/2017
  • Windows 10 Education Fall Creators Update (x64) on Intel Core m3 with AES-NI and without SHA Extensions w/ Microsoft Surface Pro
  • Windows 10 Enterprise Fall Creators Update (x64) on Intel Core i5 with AES-NI and without SHA Extensions w/ Microsoft Surface Laptop
  • Windows 10 Enterprise Fall Creators Update (x64) on Intel Core i5 with AES-NI and without SHA Extensions w/ Microsoft Surface Pro 4
  • Windows 10 Enterprise Fall Creators Update (x64) on Intel Core i7 with AES-NI and without SHA Extensions w/ HP Pro x2 612 G2 Detachable PC with LTE
  • Windows 10 Enterprise Fall Creators Update (x64) on Intel Core i7 with AES-NI and without SHA Extensions w/ Microsoft Surface Book
  • Windows 10 Enterprise Fall Creators Update (x64) on Intel Core i7 with AES-NI and without SHA Extensions w/ Microsoft Surface Book 2
  • Windows 10 Enterprise Fall Creators Update (x64) on Intel Core i7 with AES-NI and without SHA Extensions w/ Microsoft Surface Studio
  • Windows 10 Enterprise Fall Creators Update (x64) on Intel Core m3 with AES-NI and without SHA Extensions w/ Microsoft Surface Pro
  • Windows 10 Fall Creators Update (x86) on Intel Core i3 without AES-NI and SHA Extensions w/ Dell Inspiron 660s
  • Windows 10 Pro Fall Creators Update (x64) on AMD A4 with AES-NI and without SHA Extensions w/ HP Compaq Pro 6305
  • Windows 10 Pro Fall Creators Update (x64) on Intel Atom x7 with AES-NI and without SHA Extensions w/ Microsoft Surface 3 with LTE
  • Windows 10 Pro Fall Creators Update (x64) on Intel Core i5 with AES-NI and without SHA Extensions w/ Dell Latitude 5285
  • Windows 10 Pro Fall Creators Update (x64) on Intel Core i5 with AES-NI and without SHA Extensions w/ Dell Latitude 5290
  • Windows 10 Pro Fall Creators Update (x64) on Intel Core i5 with AES-NI and without SHA Extensions w/ Microsoft Surface Laptop
  • Windows 10 Pro Fall Creators Update (x64) on Intel Core i5 with AES-NI and without SHA Extensions w/ Panasonic Toughbook
  • Windows 10 Pro Fall Creators Update (x64) on Intel Core i7 with AES-NI and without SHA Extensions w/ Microsoft Surface Pro 3
  • Windows 10 Pro Fall Creators Update (x64) on Intel Core m3 with AES-NI and without SHA Extensions w/ Microsoft Surface Pro
  • Windows 10 Pro Fall Creators Update (x64) on Intel Pentium with AES-NI and SHA Extensions w/ HP Slimline Desktop
  • Windows 10 Pro Fall Creators Update (x64) on Intel Xeon with AES-NI and without SHA Extensions w/ Dell Precision Tower 5810MT
  • Windows 10 Pro Fall Creators Update on Hyper-V on Windows Server 2016 (x64) on Intel Core i5 with AES-NI and without SHA Extensions
  • Windows 10 S Fall Creators Update (x64) on Intel Core i5 with AES-NI and without SHA Extensions w/ Microsoft Surface Laptop
  • Windows Server (x64) on Intel Xeon with AES-NI and without SHA Extensions w/ Dell PowerEdge R630 Server
  • Windows Server (x64) on Intel Xeon with AES-NI and without SHA Extensions w/ Dell Precision Tower 5810MT
  • Windows Server Datacenter (x64) on Intel Xeon with AES-NI and without SHA Extensions w/ Dell PowerEdge R630 Server
  • Windows Server Datacenter (x64) on Intel Xeon with AES-NI and without SHA Extensions w/ Dell Precision Tower 5810MT
  • Windows Server Datacenter Core (x64) on Intel Xeon with AES-NI and without SHA Extensions w/ Dell PowerEdge R740 Server
  • Windows Server Datacenter on Hyper-V on Windows Server (x64) on Intel Xeon with AES-NI and without SHA Extensions
  • Windows Server on Hyper-V on Windows Server (x64) on Intel Xeon with AES-NI and without SHA Extensions
  • Windows Server Standard Core (x64) on Intel Xeon with AES-NI and without SHA Extensions w/ Dell PowerEdge R740 Server
  • AES-CBC
    • Direction: Decrypt, Encrypt
    • Key Length: 128, 192, 256
  • AES-CCM
    • Key Length: 128, 192, 256
    • Tag Length: 32, 48, 64, 80, 96, 112, 128
    • IV Length: 56, 64, 72, 80, 88, 96, 104
    • Payload Length: 0-256
    • AAD Length: 0-524288
  • AES-CFB128
    • Direction: Decrypt, Encrypt
    • Key Length: 128, 192, 256
  • AES-CFB8
    • Direction: Decrypt, Encrypt
    • Key Length: 128, 192, 256
  • AES-CMAC
      • Capabilities:
        • Direction: Generation, Verification
        • Key Length: 128, 192, 256
        • MAC: 128
        • Message Length: 0-524288
        • Block Size: Full, Partial
  • AES-CTR
    • Key Length: 128, 192, 256
    • Counter Source: Internal
  • AES-ECB
    • Direction: Decrypt, Encrypt
    • Key Length: 128, 192, 256
  • AES-GCM
    • Direction: Decrypt, Encrypt
    • IV Generation: External
    • Key Length: 128, 192, 256
    • Tag Length: 96, 104, 112, 120, 128
    • IV Length: 96
    • Payload Length: 8, 1016, 1024
    • AAD Length: 0, 8, 1016, 1024
  • AES-GMAC
    • Direction: Decrypt, Encrypt
    • IV Generation: External
    • Key Length: 128, 192, 256
    • Tag Length: 96, 104, 112, 120, 128
    • IV Length: 96
    • AAD Length: 0, 8, 1016, 1024
  • AES-XTS
    • Direction: Decrypt, Encrypt
    • Key Length: 128
    • Block Size: Full
  • AES-XTS
    • Direction: Decrypt, Encrypt
    • Key Length: 256
    • Block Size: Full