Computer Security Resource Center

Computer Security Resource Center

Computer Security
Resource Center

Cryptographic Algorithm Validation Program CAVP

Description
The Microsoft Windows Kernel Mode Cryptographic Primitives Library -- Cryptography Next Generation (CNG) -- is a general purpose, software-based, cryptographic module which provides FIPS 140-2 Level 1 cryptography.
Version
10.0.14393.1770
Type
SOFTWARE
Vendor
Microsoft Corporation
One Microsoft Way
Redmond, WA 98052-6399
USA
Contacts
Mike Grimm
FIPS@microsoft.com
800-Microsoft

Validations

Number
Date
Operating Environments
Algorithm Capabilities
KAS 171
3/9/2018
  • Windows 10 Enterprise Anniversary Update (x64) on AMD A4 with AES-NI
    • AMD A4 with AES-NI w/ Windows 10 Enterprise Anniversary Update (x64)
  • Windows 10 Enterprise Anniversary Update (x64) on Intel Core i5 with AES-NI w/ Microsoft Surface Pro 4
    • Intel Core i5 with AES-NI w/ Microsoft Surface Pro 4 w/ Windows 10 Enterprise Anniversary Update (x64)
  • Windows 10 Enterprise Anniversary Update (x64) on Intel Core i7 with AES-NI w/ Microsoft Surface Book
    • Intel Core i7 with AES-NI w/ Microsoft Surface Book w/ Windows 10 Enterprise Anniversary Update (x64)
  • Windows 10 Enterprise Anniversary Update (x64) on Intel Core i7 with AES-NI w/ Microsoft Surface Pro 3
    • Intel Core i7 with AES-NI w/ Microsoft Surface Pro 3 w/ Windows 10 Enterprise Anniversary Update (x64)
  • Windows 10 Enterprise Anniversary Update (x64) on Intel Xeon with AES-NI
    • Intel Xeon with AES-NI w/ Windows 10 Enterprise Anniversary Update (x64)
  • Windows 10 Enterprise Anniversary Update (x86) on Intel Core i3 without AES-NI
    • Intel Core i3 without AES-NI w/ Windows 10 Enterprise Anniversary Update (x86)
  • Windows 10 Enterprise LTSB Anniversary Update (x64) on Intel Core i7 with AES-NI
    • Intel Core i7 with AES-NI w/ Windows 10 Enterprise LTSB Anniversary Update (x64)
  • Windows 10 Enterprise LTSB Anniversary Update (x64) on Intel Xeon with AES-NI
    • Intel Xeon with AES-NI w/ Windows 10 Enterprise LTSB Anniversary Update (x64)
  • Windows 10 Enterprise LTSB Anniversary Update (x86) on Intel Core i3 without AES-NI
    • Intel Core i3 without AES-NI w/ Windows 10 Enterprise LTSB Anniversary Update (x86)
  • Windows 10 Home Anniversary Update (x64) on Intel Atom x7 with AES-NI w/ Microsoft Surface 3
    • Intel Atom x7 with AES-NI w/ Microsoft Surface 3 w/ Windows 10 Home Anniversary Update (x64)
  • Windows 10 Home Anniversary Update (x64) on Intel Core i7 with AES-NI
    • Intel Core i7 with AES-NI w/ Windows 10 Home Anniversary Update (x64)
  • Windows 10 Home Anniversary Update (x86) on Intel Core i3 without AES-NI
    • Intel Core i3 without AES-NI w/ Windows 10 Home Anniversary Update (x86)
  • Windows 10 Mobile Anniversary Update (ARMv7) on Qualcomm Snapdragon 808 (A57, A53) w/ Microsoft Lumia 950
    • Qualcomm Snapdragon 808 (A57, A53) w/ Microsoft Lumia 950 w/ Windows 10 Mobile Anniversary Update (ARMv7)
  • Windows 10 Pro Anniversary Update (x64) on Intel Core i5 with AES-NI w/ Microsoft Surface Pro 4
    • Intel Core i5 with AES-NI w/ Microsoft Surface Pro 4 w/ Windows 10 Pro Anniversary Update (x64)
  • Windows 10 Pro Anniversary Update (x64) on Intel Core i7 with AES-NI w/ Microsoft Surface Book
    • Intel Core i7 with AES-NI w/ Microsoft Surface Book w/ Windows 10 Pro Anniversary Update (x64)
  • Windows 10 Pro Anniversary Update (x64) on Intel Core i7 with AES-NI w/ Microsoft Surface Pro 3
    • Intel Core i7 with AES-NI w/ Microsoft Surface Pro 3 w/ Windows 10 Pro Anniversary Update (x64)
  • Windows 10 Pro Anniversary Update (x64) on Intel Xeon with AES-NI
    • Intel Xeon with AES-NI w/ Windows 10 Pro Anniversary Update (x64)
  • Windows 10 Pro Anniversary Update (x86) on Intel Core i3 without AES-NI
    • Intel Core i3 without AES-NI w/ Windows 10 Pro Anniversary Update (x86)
  • Windows Server 2016 Datacenter Edition (x64) on Intel Xeon with AES-NI
    • Intel Xeon with AES-NI w/ Windows Server 2016 Datacenter Edition (x64)
  • Windows Server 2016 Standard Edition (x64) on AMD A4 with AES-NI
    • AMD A4 with AES-NI w/ Windows Server 2016 Standard Edition (x64)
  • Windows Server 2016 Standard Edition (x64) on Intel Xeon with AES-NI
    • Intel Xeon with AES-NI w/ Windows Server 2016 Standard Edition (x64)
  • Windows Storage Server 2016 (x64) on Intel Xeon with AES-NI
    • Intel Xeon with AES-NI w/ Windows Storage Server 2016 (x64)
  • KAS-ECC
    • Scheme:
      • Ephemeral Unified:
        • KAS Role: Initiator, Responder
        • KDF without Key Confirmation:
          • KDF Option:
            • Concatenation:
          • Parameter Set:
            • EC:
              • Hash Algorithm: SHA2-256
              • Curve: P-256
              • MAC Option:
                • HMAC:
              • ED:
                • Hash Algorithm: SHA2-384
                • Curve: P-384
                • MAC Option:
                  • HMAC:
                • EE:
                  • Hash Algorithm: SHA2-512
                  • Curve: P-521
                  • MAC Option:
                    • HMAC:
            • One Pass DH:
              • KAS Role: Initiator, Responder
              • KDF without Key Confirmation:
                • Parameter Set:
                  • EC:
                    • Hash Algorithm: SHA2-256
                    • Curve: P-256
                    • MAC Option:
                      • HMAC:
                    • ED:
                      • Hash Algorithm: SHA2-384
                      • Curve: P-384
                      • MAC Option:
                        • HMAC:
                      • EE:
                        • Hash Algorithm: SHA2-512
                        • Curve: P-521
                        • MAC Option:
                          • HMAC:
                  • Static Unified:
                    • KAS Role: Initiator, Responder
                    • KDF without Key Confirmation:
                      • Parameter Set:
                        • EC:
                          • Hash Algorithm: SHA2-256
                          • Curve: P-256
                          • MAC Option:
                            • HMAC:
                          • ED:
                            • Hash Algorithm: SHA2-384
                            • Curve: P-384
                            • MAC Option:
                              • HMAC:
                            • EE:
                              • Hash Algorithm: SHA2-512
                              • Curve: P-521
                              • MAC Option:
                                • HMAC:
                      Prerequisites:
                    • KAS-FFC
                      • Function: Domain Parameter Generation, Domain Parameter Validation, Key Pair Generation, Partial Public Key Validation
                      • Scheme:
                        • dhEphem:
                          • KAS Role: Initiator, Responder
                          • KDF without Key Confirmation:
                            • Parameter Set:
                              • FB:
                                • Hash Algorithm: SHA2-256
                                • MAC Option:
                                  • HMAC:
                                • FC:
                                  • Hash Algorithm: SHA2-256
                                  • MAC Option:
                                    • HMAC:
                            • dhStatic:
                              • KAS Role: Initiator, Responder
                              • KDF without Key Confirmation:
                                • Parameter Set:
                                  • FB:
                                    • Hash Algorithm: SHA2-256
                                    • MAC Option:
                                      • HMAC:
                                    • FC:
                                      • Hash Algorithm: SHA2-256
                                      • MAC Option:
                                        • HMAC:
                                • MQV1:
                                  • KAS Role: Initiator, Responder
                                  • KDF without Key Confirmation:
                                    • Parameter Set:
                                      • FB:
                                        • Hash Algorithm: SHA2-256
                                        • MAC Option:
                                          • HMAC:
                                        • FC:
                                          • Hash Algorithm: SHA2-256
                                          • MAC Option:
                                            • HMAC:
                                  Prerequisites:
                                Created October 05, 2016, Updated June 22, 2020