Cryptographic Module Validation Program CMVP

Certificate #3620

Details

Module Name
Hypori Cryptographic Module for BoringSSL
Standard
FIPS 140-2
Status
Active
Sunset Date
11/1/2023
Validation Dates
02/21/2020
Overall Level
1
Caveat
When installed, initialized and configured as specified in Section 12.1 of the Security Policy and operated in FIPS mode. The module generates cryptographic keys whose strengths are modified by available entropy. This validation entry is a non-security-relevant modification to Cert. #3318
Security Level Exceptions
  • Physical Security: N/A
  • Mitigation of Other Attacks: N/A
Module Type
Software
Embodiment
Multi-Chip Stand Alone
Description
A software library that contains cryptographic functionality to serve BoringSSL and other user-space applications.
Tested Configuration(s)
  • Android 9 on QEMU 2.6 on Red Hat Enterprise Linux 7 running on Intel Xeon Gold 6140 with PAA (clang Compiler Version 6.0.1) (single-user mode)
  • Debian Linux 4.9.0 running on Intel Xeon E5-2680 with PAA (clang Compiler Version 6.0.1)
  • Debian Linux 4.9.0 running on Intel Xeon E5-2680 without PAA (clang Compiler Version 6.0.1)
  • Ubuntu Linux 18.04 running on POWER9 with PAA (clang Compiler Version 6.0.1)
  • Ubuntu Linux 18.04 running on POWER9 without PAA (clang Compiler Version 6.0.1)
FIPS Algorithms
AES Certs. #5612 and #C1446
CKG vendor affirmed
CVL Certs. #2033, #2034, #2035 and #C1446
DRBG Certs. #2253 and #C1446
ECDSA Certs. #1520 and #C1446
HMAC Certs. #3743 and #C1446
KTS AES Cert. #5612; key establishment methodology provides between 128 and 256 bits of encryption strength
KTS AES Cert. #C1446; key establishment methodology provides between 128 and 256 bits of encryption strength
RSA Certs. #3020 and #C1446
SHS Certs. #4509 and #C1446
Triple-DES Certs. #2825 and #C1446
Allowed Algorithms
EC Diffie-Hellman (CVL Certs. #2033 and #2034; key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); EC Diffie-Hellman (CVL Cert. #C1446; key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); MD5; NDRNG; RSA (key wrapping; key establishment methodology provides between 112 and 256 bits of encryption strength)
Software Versions
66005f41fbc3529ffe8d007708756720529da20d

Vendor

Intelligent Waves
1801 Robert Fulton Drive
Suite 440
Reston, VA 20191
USA

Matthew Stern
matthew.stern@intelligentwaves.com
Phone: 703-766-7999

Lab

LEIDOS CSTL
NVLAP Code: 200427-0