Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Cryptographic Module Validation Program CMVP

Certificate #4752

Details

Module Name
IOS Common Cryptographic Module (IC2M)
Standard
FIPS 140-3
Status
Active
Sunset Date
8/6/2029
Overall Level
1
Caveat
Interim Validation. When operated in approved mode. No assurance of the minimum strength of generated SSPs (e.g., keys)
Security Level Exceptions
  • Non-invasive security: N/A
  • Mitigation of other attacks: N/A
Module Type
Firmware
Embodiment
Multi-Chip Stand Alone
Description
The IC2M module provides the FIPS validated cryptographic algorithms for services requiring those algorithms. The module does not implement any protocols directly; Instead, it provides the cryptographic primitives and functions to allow IOS to implement those various protocols.
Tested Configuration(s)
  • IOS-XE 17.12 running on Cisco Aggregated Services Router (ASR) 1001-HX with Intel Xeon E3-1125C v2 processor
Approved Algorithms
AES-CBC
AES-CFB128
AES-CMAC
AES-ECB
AES-GCM
AES-GMAC
AES-KW
Counter DRBG
ECDSA KeyGen (FIPS186-4)
ECDSA KeyVer (FIPS186-4)
ECDSA SigGen (FIPS186-4)
ECDSA SigVer (FIPS186-4)
HMAC-SHA-1
HMAC-SHA2-256
HMAC-SHA2-384
HMAC-SHA2-512
KAS-ECC-SSC Sp800-56Ar3
KAS-FFC-SSC Sp800-56Ar3
KDF IKEv2
KDF SNMP
KDF SRTP
KDF SSH
RSA KeyGen (FIPS186-4)
RSA SigGen (FIPS186-4)
RSA SigVer (FIPS186-4)
Safe Primes Key Generation
SHA-1
SHA2-256
SHA2-384
SHA2-512
TLS v1.2 KDF RFC7627
TLS v1.3 KDF
Firmware Versions
Rel5b

Vendor

Cisco Systems, Inc.
170 W Tasman Drive
San Jose, CA 95134
USA

Patricia Karpus
[email protected]
Phone: 984-216-2022

Validation History

Date Type Lab
8/7/2024 Initial Gossamer Security Solutions