Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Cryptographic Module Validation Program CMVP

Certificate #3702

Details

Module Name
D2iQ BoringCrypto Cryptographic Security Module
Standard
FIPS 140-2
Status
Historical
 Historical Reason
SP 800-56Arev3 transition
Overall Level
1
Caveat
When installed, initialized and configured as specified in Section 12.1 of the Security Policy and operated in FIPS mode. The module generates cryptographic keys whose strengths are modified by available entropy.
Security Level Exceptions
  • Physical Security: N/A
  • Mitigation of Other Attacks: N/A
Module Type
Software
Embodiment
Multi-Chip Stand Alone
Description
D2iQ BoringCrypto Cryptographic Security Module is a general-purpose cryptographic library to serve BoringSSL and other user-space applications.
Tested Configuration(s)
  • Debian Linux 4.9.0 running on Intel Xeon E5-2680 with PAA (clang Compiler Version 6.0.1)
  • Debian Linux 4.9.0 running on Intel Xeon E5-2680 without PAA (clang Compiler Version 6.0.1)
  • Red Hat Enterprise Linux 7 running on a Dell PowerEdge R740 with Intel® Xeon® Platinum 8156 with PAA (gcc Compiler version 4.8.5)
  • Red Hat Enterprise Linux 8 running on a Dell PowerEdge R740 with Intel® Xeon® Platinum 8156 with PAA (gcc Compiler version 8.3.1)
  • Ubuntu Linux 18.04 running on POWER9 with PAA (clang Compiler Version 6.0.1)
  • Ubuntu Linux 18.04 running on POWER9 without PAA (clang Compiler Version 6.0.1) (single-user mode)
Approved Algorithms
AES Certs. #5612 and #C1867
CKG vendor affirmed
CVL Certs. #2033, #2034, #2035 and #C1867
DRBG Certs. #2253 and #C1867
ECDSA Certs. #1520 and #C1867
HMAC Certs. #3743 and #C1867
KTS AES Certs. #5612 and #C1867; key establishment methodology provides between 128 and 256 bits of encryption strength
RSA Certs. #3020 and #C1867
SHS Certs. #4509 and #C1867
Triple-DES Certs. #2825 and #C1867
Allowed Algorithms
EC Diffie-Hellman (CVL Certs. #2033, #C1867 and CVL Certs. #2035, #C1867; key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); MD5; NDRNG; RSA (key wrapping; key establishment methodology provides between 112 and 256 bits of encryption strength)
Software Versions
66005f41fbc3529ffe8d007708756720529da20d

Vendor

D2iQ Inc.
225 Bush St.
Suite 700
San Francisco, CA 94104
USA

John Miller
sales-pub_sec@d2iq.com
Phone: (415) 805-1222
Sam Briesemeister
ksphere-platform-product@d2iq.com
Phone: (415) 805-1222

Validation History

Date Type Lab
8/19/2020 Initial ACUMEN SECURITY, LLC
11/25/2020 Update ACUMEN SECURITY, LLC
12/9/2020 Update ACUMEN SECURITY, LLC