Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Cryptographic Module Validation Program CMVP

Certificate #2402


Module Name
BlackBerry Cryptographic Tool Kit
FIPS 140-2
 Historical Reason
186-2 transition
Overall Level
When operated in FIPS mode
Security Level Exceptions
  • Physical Security: N/A
Module Type
Multi-chip standalone
The BlackBerry Cryptographic Tool Kit is a standards-based cryptographic toolkit that supports optimized Elliptic Curve Cryptography and provides application developers with sophisticated tools to flexibly integrate encryption, digital signatures and other security mechanisms into both mobile and server-based applications. The BlackBerry Cryptographic Tool Kit, part of the suite of BlackBerry cryptographic modules, provides application developers with a means to expand the secure capabilities and features BlackBerry is known for, to devices running operating systems other than BlackBerry OS.
Tested Configuration(s)
  • Android 4.0.4
  • Android 4.4.2
  • Android 5.0.1
  • CentOS Linux Release 7.1 64-bit
  • iOS 8.0
  • iOS version 6.1.4
  • Mac OS X El Capitan 10.11.4 (single-user mode)
  • Mac OS X Yosemite 10.10.4
  • QNX Neutrino 6.5
  • QNX Neutrino 6.6
  • Red Hat Linux AS 5.6
  • Windows 7 Enterprise 32 bit
  • Windows 7 Enterprise 64 bit
  • Windows Phone 8.0
Approved Algorithms
AES Certs. #1789, #3029 and 3946
CVL Certs. #7, #367 and #789
DRBG Certs. #127, #579 and #1151
DSA Certs. #563, #891 and #1076
ECDSA Certs. #242, #553 and #866
HMAC Certs. #1054, #1914 and #2571
KAS Certs. #25, #50 and #79
RSA Certs. #894, #1574 and #2017
SHS Certs. #1571, #2530 and #3256
Triple-DES Certs. #1159, #1773 and #2164
Other Algorithms
DES; DESX; AES CCM* (non-compliant); AES-XCBC-MAC (non-compliant); AES EAX (non-compliant); AES MMO (non-compliant); ARC2; ARC4; MD2; MD4; MD5; HMAC-MD5; ECNR; ECQV; ECPVS; ECIES; ECSPEKE; RSA (key wrapping; key establishment methodology provides between 112 and 256 bits of encryption strength; non-compliant less than 112-bits of encryption strength); Diffie-Hellman (key agreement; key establishment methodology provides less than 80 bits of encryption strength; non-compliant)
Software Versions
6.0, 6.0.2 and 6.0.3


BlackBerry Limited
2200 University Avenue East
Waterloo, Ontario N2K OA7

Security Certifications Team
Phone: 519-888-7465 x72921
Fax: 905-507-4230

Validation History

Date Type Lab
7/1/2015 Initial CGI Information Systems & Management Consultants Inc
3/16/2016 Update CGI Information Systems & Management Consultants Inc
6/3/2016 Update CGI Information Systems & Management Consultants Inc