Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Cryptographic Module Validation Program CMVP

Certificate #238

Details

Module Name
Microsoft Enhanced Cryptographic Provider
Standard
FIPS 140-1
Status
Historical
 Historical Reason
Validation Sunsetting Policy - FIPS 140-1 Certificate
Overall Level
1
Caveat
When operated in FIPS mode
Security Level Exceptions
  • Operating System Security: Tested as meeting Level 1 with Microsoft Windows XP, XP Service Pack 1 and XP Service Pack 2 (single user mode)
Module Type
Software
Embodiment
Multi-chip standalone
Description
The Microsoft Enhanced Cryptographic Provider (RSAENH) is a FIPS 140-1 Level 1 compliant, general-purpose, software-based, cryptographic module. Like other cryptographic providers that ship with Microsoft Windows XP, RSAENH encapsulates several different cryptographic algorithms (including SHA-1, DES, 3DES, AES, RSA, SHA-1-based HMAC) in an easy-to-use cryptographic module accessible via the Microsoft CryptoAPI. It can be dynamically linked into applications by software developers to permit the use of general-purpose FIPS 140-1 Level 1 compliant cryptography.
Approved Algorithms
AES Cert. #33
HMAC-SHA-1 Cert. #83, vendor affirmed
RSA PKCS#1, vendor affirmed
SHA-1 Cert. #83
Triple-DES Cert. #81
Other Algorithms
DES (Cert. #156); RC2; RC4; MD5
Software Versions
5.1.2518.0, 5.1.2600.1029 and 5.1.2600.2161

Vendor

Microsoft Corporation
One Microsoft Way
Redmond, WA 98052-6399
USA

Dave Friant
Dave.Friant@microsoft.com
Phone: 425-704-7984

Validation History

Date Type Lab
7/11/2002 Initial SAIC-VA
11/18/2002 Update
2/25/2005 Update
10/15/2007 Update