Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Cryptographic Module Validation Program CMVP

Certificate #4992

Details

Module Name
Atalla Cryptographic Subsystem (ACS)
Standard
FIPS 140-3
Status
Active
Sunset Date
3/24/2027
Overall Level
3
Caveat
Interim validation. When installed, initialized and configured as specified in Section 11 of the Security Policy
Security Level Exceptions
  • Operational environment: N/A
  • Non-invasive security: N/A
  • Mitigation of other attacks: N/A
Module Type
Hardware
Embodiment
Multi-Chip Embedded
Description
The ACS is a multi-chip embedded cryptographic module. It consists of a secure hardware platform, a firmware secure loader, and three separate microcontrollers, collectively called the Physical Security Monitor Central Unit or PSMCU). The purpose of the cryptographic module is to load Approved (RSA and ECDSA signed) application programs, called "personalities", in a secure manner.
Tested Configuration(s)
  • N/A
Approved Algorithms
AES-CBC
AES-CCM
Conditioning Component Block Cipher Derivation Function SP800-90B
Counter DRBG
ECDSA SigVer (FIPS186-4)
RSA SigVer (FIPS186-4)
SHA2-512
Entropy
ENT (P)
Hardware Versions
C9B60-2108A[1], C9B60-2108B[2], C9B60-2108C[3], C9B60-2108D[4], and C9B60-2108E[5]
Firmware Versions
Loader 1.24[1][2][3][4][5], PSMCU 1.0.1[1][2][3] and 1.0.3[3][4][5], CMS-OCT 1.0.0[1][2][3] and 1.0.3[3][4][5], CMS-NTX 1.0.0[1], Loader Stage 1 1.10[1][2][3][4][5], Loader Stage 2 1.20[1][2][3][4][5], Boot 1.23[1][2][3][4][5]

Vendor

Utimaco Inc.
900 E Hamilton Ave #400
Campbell, CA 95008
USA

Manish Upasani
[email protected]
Phone: 669-224-8080

Related Files

Validation History

Date Type Lab
3/25/2025 Initial Leidos Accredited Testing & Evaluation (AT&E) Lab
9/2/2025 Update Leidos Accredited Testing & Evaluation (AT&E) Lab