Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Cryptographic Module Validation Program CMVP

Certificate #4276

Details

Module Name
Ascom Smartphone BoringCrypto
Standard
FIPS 140-2
Status
Active
Sunset Date
12/1/2025
Overall Level
1
Caveat
When installed, initialized and configured as specified in Section 12.1 of the Security Policy and operated in FIPS mode. The module generates cryptographic keys whose strengths are modified by available entropy
Security Level Exceptions
  • Physical Security: N/A
  • Mitigation of Other Attacks: N/A
Module Type
Software
Embodiment
Multi-Chip Stand Alone
Description
Ascom Smartphone BoringCrypto is a general-purpose cryptographic library incorporated into the Ascom Myco smartphones for the protection of sensitive information.
Tested Configuration(s)
  • Android 10 running on Pixel 3 XL with Snapdragon 845 32-bit with PAA
  • Android 10 running on Pixel 3 XL with Snapdragon 845 32-bit without PAA
  • Android 10 running on Pixel 3 XL with Snapdragon 845 64-bit with PAA
  • Android 10 running on Pixel 3 XL with Snapdragon 845 64-bit without PAA
  • Android 10 running on Pixel 3a with Snapdragon 670 32-bit with PAA
  • Android 10 running on Pixel 3a with Snapdragon 670 32-bit without PAA
  • Android 10 running on Pixel 3a with Snapdragon 670 64-bit with PAA
  • Android 10 running on Pixel 3a with Snapdragon 670 64-bit without PAA
  • Android 10 running on Pixel 4 XL with Snapdragon 855 32-bit with PAA
  • Android 10 running on Pixel 4 XL with Snapdragon 855 32-bit without PAA
  • Android 10 running on Pixel 4 XL with Snapdragon 855 64-bit with PAA
  • Android 10 running on Pixel 4 XL with Snapdragon 855 64-bit without PAA (single user mode)
Approved Algorithms
AES Cert. #C1314
CVL Cert. #C1314
DRBG Cert. #C1314
ECDSA Cert. #C1314
HMAC Cert. #C1314
KAS-SSC vendor affirmed
KTS AES Cert. #C1314; key establishment methodology provides between 128 and 256 bits of encryption strength
RSA Cert. #C1314
SHS Cert. #C1314
Triple-DES Cert. #C1314
Allowed Algorithms
NDRNG; RSA (key wrapping; key establishment methodology provides between 112 and 256 bits of encryption strength)
Software Versions
7f02881e96e51f1873afcf384d02f782b48967ca

Vendor

Ascom Sweden AB
Grimbodalen 2
SE-417 49 Göteborg
Sweden

Regulatory Affairs
qualityregulatory@ascom.com
Phone: +46 31 55 93 00

Validation History

Date Type Lab
8/8/2022 Initial ACUMEN SECURITY, LLC