Computer Security Resource Center

Computer Security Resource Center

Computer Security
Resource Center

Cryptographic Algorithm Validation Program

Product Name
Description
Fortanix Self-Defending Key Management Service (SDKMS) is the world's first cloud service secured with Intel® SGX. With SDKMS, you can securely generate, store and use cryptographic keys & certificates, as well as secrets, such as passwords, API keys or tokens. It provides access control to users & applications to enforce authorized access to keys.
Version
1.0.0 (Firmware)
Type
SOFTWARE
Vendor
Fortanix, Inc.
444 Castro Street, #702
Mountain View, CA 94041
USA
Contacts
Ambuj Kumar
+1 (628)-400-2043

Validations

Number
Date
Operating Environments
Algorithm Capabilities
AES 5282
3/9/2018
  • Intel® Xeon E3-1230v5 4-Core, 3.40GHz with AES-NI
  • AES-CBC
    • Direction: Decrypt, Encrypt
    • Key Length: 128, 192, 256
  • AES-CCM
    • Key Length: 128, 192, 256
    • Tag Length: 32, 48, 64, 80, 96, 112, 128
    • IV Length: 56, 64, 72, 80, 88, 96, 104
    • Payload Length: 0-256
    • AAD Length: 0-256
  • AES-CFB128
    • Direction: Decrypt, Encrypt
    • Key Length: 128, 192, 256
  • AES-CTR
    • Key Length: 128, 192, 256
    • Counter Source: Internal
  • AES-ECB
    • Direction: Decrypt, Encrypt
    • Key Length: 128, 192, 256
  • AES-GCM
    • Direction: Decrypt, Encrypt
    • IV Generation: Internal
    • IV Generation Mode: 8.2.1
    • Key Length: 128, 192, 256
    • Tag Length: 32, 64, 96, 104, 112, 120, 128
    • IV Length: 96
    • Payload Length: 64, 128, 192, 256
    • AAD Length: 0, 64, 128, 192, 256
  • AES-GMAC
    • Direction: Decrypt, Encrypt
    • IV Generation: Internal
    • IV Generation Mode: 8.2.1
    • Key Length: 128, 192, 256
    • Tag Length: 32, 64, 96, 104, 112, 120, 128
    • IV Length: 96
    • AAD Length: 0, 64, 128, 192, 256
  • Intel® Xeon E3-1230v5 4-Core, 3.40GHz with AES-NI
    • processor
      • manufacturer: Intel
  • AES-CMAC
      • Capabilities:
        • Direction: Generation
        • Key Length: 128
        • MAC: 128
        • Message Length: 0, 128, 160, 192, 512, 524288
      • Capabilities:
        • Direction: Generation
        • Key Length: 192
        • MAC: 128
        • Message Length: 0, 128, 160, 192, 512, 524288
      • Capabilities:
        • Direction: Generation
        • Key Length: 256
        • MAC: 128
        • Message Length: 0, 128, 160, 192, 512, 524288
      • Capabilities:
        • Direction: Verification
        • Key Length: 128
        • MAC: 128
        • Message Length: 0, 128, 160, 192, 512, 524288
      • Capabilities:
        • Direction: Verification
        • Key Length: 192
        • MAC: 128
        • Message Length: 0, 128, 160, 192, 512, 524288
      • Capabilities:
        • Direction: Verification
        • Key Length: 256
        • MAC: 128
        • Message Length: 0, 128, 160, 192, 512, 524288
  • AES-KW
    • Direction: Decrypt, Encrypt
    • Cipher: Cipher
    • Key Length: 128, 192, 256
    • Payload Length: 128, 192, 256, 320, 4096
    Prerequisites:
  • AES-KWP
    • Direction: Decrypt, Encrypt
    • Cipher: Cipher
    • Key Length: 128, 192, 256
    • Payload Length: 808
    Prerequisites:
  • AES-OFB
    • Direction: Decrypt, Encrypt
    • Key Length: 128, 192, 256