Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Cryptographic Module Validation Program CMVP

Certificate #4953

Details

Module Name
BoringCrypto
Standard
FIPS 140-3
Status
Active
Sunset Date
1/26/2027
Overall Level
1
Caveat
Interim validation. When operated in approved mode. No assurance of the minimum strength of generated SSPs (e.g., keys)
Security Level Exceptions
  • Physical security: N/A
  • Non-invasive security: N/A
  • Mitigation of other attacks: N/A
Module Type
Software
Embodiment
Multi-Chip Stand Alone
Description
A software library that contains cryptographic functionality to serve BoringSSL and other user-space applications.
Tested Configuration(s)
  • Android 14 running on a Google Pixel 5a with a Qualcomm Snapdragon 765 with PAA
  • Android 14 running on a Google Pixel 5a with a Qualcomm Snapdragon 765 without PAA
  • Android 14 running on a Google Pixel 6 with a Google Tensor with PAA
  • Android 14 running on a Google Pixel 6 with a Google Tensor without PAA
  • Android 14 running on a Google Pixel 7 with a Google Tensor G2 with PAA
  • Android 14 running on a Google Pixel 7 with a Google Tensor G2 without PAA
  • Android 14 running on a Google Pixel 8 with a Google Tensor G3 with PAA
  • Android 14 running on a Google Pixel 8 with a Google Tensor G3 without PAA
  • Debian Linux 6.4.4 running on an n2d with an AMD EPYC 7B12 with PAA
  • Debian Linux 6.4.4 running on an n2d with an AMD EPYC 7B12 without PAA
  • Google Prodimage with Linux 5.10.0 running on a Tau t2a with an Ampere Altra with PAA
  • Google Prodimage with Linux 5.10.0 running on a Tau t2a with an Ampere Altra without PAA
  • Google Prodimage with Linux 5.15.110 running on an IN762 with an IN762 with PAA
  • Google Prodimage with Linux 5.15.110 running on an IN762 with an IN762 without PAA
  • Ubuntu 23.04 running on a Gigabyte GA-Z170X-UD5 with an Intel Core i7-6700K with PAA
  • Ubuntu 23.04 running on a Gigabyte GA-Z170X-UD5 with an Intel Core i7-6700K without PAA
Approved Algorithms
AES-CBC
AES-CCM
AES-CTR
AES-ECB
AES-GCM
AES-GMAC
AES-KW
AES-KWP
Counter DRBG
ECDSA KeyGen (FIPS186-4)
ECDSA KeyVer (FIPS186-4)
ECDSA SigGen (FIPS186-4)
ECDSA SigVer (FIPS186-4)
HMAC-SHA-1
HMAC-SHA2-224
HMAC-SHA2-256
HMAC-SHA2-384
HMAC-SHA2-512
HMAC-SHA2-512/256
KAS-ECC-SSC Sp800-56Ar3
KAS-FFC-SSC Sp800-56Ar3
KDA HKDF Sp800-56Cr1
RSA KeyGen (FIPS186-4)
RSA SigGen (FIPS186-4)
RSA SigVer (FIPS186-4)
SHA-1
SHA2-224
SHA2-256
SHA2-384
SHA2-512
SHA2-512/256
TLS v1.2 KDF RFC7627
TLS v1.3 KDF
Software Versions
2023042800

Vendor

Google, LLC.
1600 Amphitheatre Parkway
Mountain View, CA 94043
USA

Adam Langley
[email protected]
Phone: 212-565-9291

Related Files

Validation History

Date Type Lab
1/27/2025 Initial DEKRA Certification, Inc.