ECDSA Validation List

Last Update: 9/11/2008

Overview

These implementations are validated as conforming to the Eliptic Curve Digital Signature Algorithm (ECDSA) specified in FIPS 186-2 with Change Notice 1 dated October 5, 2001, Digital Signature Standard (DSS), and specified in ANSI X9.62-1998, Public Key Cryptography for the Financial Services Industry: The Elliptic Curve Digital Signature Algorithm (ECDSA), using tests described in Elliptic Curve Digital Signature Algorithm Validation System (ECDSAVS). Note that this is a new document containing validation tests that relate to FIPS186-2 with Change Notice 1 dated October 5, 2001. The testing is handled by NVLAP-accredited Cryptographic Module Testing (CMT) laboratories.

NIST has made every attempt to provide complete and accurate information about the implementations described in the following list. It is the responsibility of the vendor to notify NIST of any necessary changes to its contact information and implementation description.

In addition to a general description of each product, this list mentions the features that were tested as conforming to the ECDSA; these features are listed on the validation certificate that is issued to the vendor. The following notation is used to describe the implemented features that were successfully tested.

Legend for Description Field

PKG Public Key (Q) Generation
PKV Public Key(Q) Validation
SIG(Gen) Signature Generation
SIG(Ver) Signature Verification
Curves Tested( [P-192], [P-224], [P-256], [P-384], [P-512], [ALL-P], [K-163], [K-233], [K-283], [K-409], [K-571], [ALL-K], [B-163], [B-233], [B-283], [B-409], [B-571], [ALL -B]) NIST-Approved Curves for each of the above labels.
SHS:
Cert.#[number]
 Corresponding Secure Hash Standard certificate number on the SHS Validation List.
RNG:
Cert.#[number]
 Corresponding Random Number Generation certificate number on the RNG Validation List. (Used in the signature generation function and if the implementation performs private key generation.)

The list is in reverse numerical order, by certificate number. Thus, the more recent validations are closer to the top of the list.

ECDSA Validated Implementations

Cert# Vendor Implementation Operational Environment Val.
Date
Description/Notes
98 RSA, The Security Division of EMC
177 Bovet Road, Suite 200
San Mateo, CA 94402
USA

-Kathy Kriese
TEL: 650-931-9781

RSA BSAFE Crypto-C Micro Edition (ME)

Version 3.0.0.1
Intel Celeron w/ Microsoft Windows XP Professional SP2; AMD Athlon X2 w/ Microsoft Windows Vista Ultimate; Intel Celeron w/ Red Hat Enterprise Linux AS 4.0 w/ LSB 3.0.3 9/11/2008

PKG: CURVES( ALL-P ALL-K ALL-B )

PKV: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#855
RNG: Cert# 492

"RSA BSAFE® Crypto-C ME software is designed to help protect sensitive data as it is stored using strong encryption techniques to provide a persistent level of protection. The software supports a wide range of industry standard encryption algorithms offering developers the flexibility to choose the appropriate option to meet their requirements."

97 SPYRUS, Inc.
1860 Hartog Drive
San Jose, CA 95131-2203
USA

-Tom Dickens
TEL: 408-392-5124
FAX: 408-392-0319

Hydra PC Series II Oki

Version P/N 730070001, v01.02.12 (Firmware)
ARM 9 TDMI 32-bit Processor 9/11/2008

PKG: CURVES( P-256 P-384 P-521 )

PKV: CURVES( P-256 P-384 P-521 )

SIG(gen): CURVES( P-256 P-384 P-521 )

SIG(ver): CURVES( P-256 P-384 P-521 )

SHS: Cert#852
DRBG: Cert# 3

"The Hydra Privacy Card (Hydra PC) Series II, Personal Encryption Device and Enterprise Edition, is a multifunctional USB security device combining security token and portable secure storage drive features with the strongest hardware-based encryption technology commercially available for protection of user data files."

96 SPYRUS, Inc.
1860 Hartog Drive
San Jose, CA 95131-2203
USA

-Tom Dickens
TEL: 408-392-5124
FAX: 408-392-0319

Hydra PC Series II SPYCOS

Part # SPYCOS (FUP7) v2.4
N/A 8/28/2008

PKG: CURVES( P-256 P-384 P-521 )
RNG: Cert# 486

"The Hydra Privacy Card (Hydra PC) Series II, Personal Encryption Device and Enterprise Edition, is a multifunctional USB security device combining security token and portable secure storage drive features with the strongest hardware-based encryption technology commercially available for protection of user data files."

95 SPYRUS, Inc.
1860 Hartog Drive
San Jose, CA 95131-2203
USA

-Tom Dickens
TEL: 408-392-4324
FAX: 408-392-0319

-Reid Carlisle
TEL: 727-551-0046
FAX: 408-392-0319

SPYCOS®

Version SPYCOS Series 2 (Firmware)
Infineon SLE66CX642P Security Controller 8/8/2008

PKG: CURVES( P-256 P-384 P-521 )

SIG(gen): CURVES( P-256 P-384 P-521 )

SHS: Cert#834
RNG: Cert# 481

"The SPYCOS® Series 2 is the latest addition to the SPYRUS family of cryptographic module ICs enabling both smart card and USB cryptographic tokens. It provides security critical capabilities in user authentication, message privacy and integrity, authentication, and secure storage in an IC form factor."

08/15/08: Correction was made to OES';

94 Oberthur Technologies
4250 Pleasant Valley Road
Chantilly, VA 20151
USA

-Christophe Goyet
TEL: 703-263-0100
FAX: 703-263-0503

ECDSA for ID-One Cosmo v7 N

Version FC10 (Firmware)
Part # B0
ID-One Cosmo v7.0 N 8/8/2008

PKG: CURVES( ALL-P )

PKV: CURVES( ALL-P )

SIG(gen): CURVES( ALL-P )

SIG(ver): CURVES( ALL-P )

SHS: Cert#833
RNG: Cert# 480

"The ID-One Cosmo Smart Card Platform is a single chip multi-application cryptographic module that offers a highly secure architecture together with cryptographic services such as 3DES (128,192), AES (128,192,256), RSA (1024, 1536, 2048) with X9.31 onboard key generation, SHA (1,224,256,384,512), ECDSA (GFP,192,224,256,384,521) & Elliptic Curve DH."

93 RSA Security, Inc.
177 Bovet Road, Suite 200
San Mateo, CA 94402
USA

-Kathy Kriese
TEL: 650-931-9781

RSA BSAFE Crypto-C Micro Edition (ME) with EC acceleration tables

Version 3.0
IBM Power3 w/ AIX 5L 5.3 (32-bit); IBM Power3 w/ AIX 5L 5.3 (64-bit); PA-RISC 2.0 w/ HP-UX 11i v1 (32-bit); PA-RISC 2.0W w/HP-UX 11i v2 (64-bit); Intel Itanium2 w/ HP-UX 11i v3 (32-bit); Intel Itanium2 w/ HP-UX 11i v3 (64-bit); Intel Celeron w/ Red Hat Enterprise Linux AS 4.0 (32-bit w/ LSB 3.0.3); Intel AMD Athlon X2 w/ Red Hat Enterprise Linux AS 5.0 (64-bit w/ LSB 3.0.3); SPARC V8 w/ Solaris 10 (32-bit); SPARC V8+ w/ Solaris 10 (32-bit); SPARC V9 w/ Solaris 10 (64-bit); AMD Opteron w/ Solaris 10 (64-bit); PowerPC 603 w/ VxWorks 5.5; PowerPC 604 w/ VxWorks 5.5; PowerPC 604 w/ VxWorks 6.0; Intel PXA250 w/ Windows Mobile 2003; Intel PXA270 w/ Windows Mobile 5; Intel PXA270 w/ Windows Mobile 6.0; AMD Athlon X2 w/ Windows Server 2003 SP2 (64-bit w/ MT Static Wrap); Intel Itanium2 w/ Windows Server 2003 SP2 (64-bit w/ MT Static Wrap); Intel Itanium2 w/ Windows Server 2003 SP2 (w/ MD Dynamic Wrap); Intel Pentium M w/ Windows XP Professional SP2 (w/ MT Static Wrap); AMD Athlon X2 w/ Windows Vista Ultimate (32-bit w/ MD Dynamic Wrap); Intel Pentium D w/ Windows Vista Ultimate (64-bit w/ MD Dynamic Wrap) 7/3/2008

PKG: CURVES( ALL-P ALL-K ALL-B )

PKV: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#807
RNG: Cert# 466

"RSA BSAFE® Crypto-C ME software is designed to help protect sensitive data as it is stored using strong encryption techniques to provide a persistent level of protection. The software supports a wide range of industry standard encryption algorithms offering developers the flexibility to choose the appropriate option to meet their requirements."

92 RSA Security, Inc.
177 Bovet Road, Suite 200
San Mateo, CA 94402
USA

-Kathy Kriese
TEL: 650-931-9781

RSA BSAFE Crypto-C Micro Edition (ME)

Version 3.0
IBM Power3 w/ AIX 5L 5.3 (32-bit); IBM Power3 w/ AIX 5L 5.3 (64-bit); PA-RISC 2.0 w/ HP-UX 11i v1 (32-bit); PA-RISC 2.0W w/HP-UX 11i v2 (64-bit); Intel Itanium2 w/ HP-UX 11i v3 (32-bit); Intel Itanium2 w/ HP-UX 11i v3 (64-bit); Intel Celeron w/ Red Hat Enterprise Linux AS 4.0 (32-bit w/ LSB 3.0.3); Intel AMD Athlon X2 w/ Red Hat Enterprise Linux AS 5.0 (64-bit w/ LSB 3.0.3); SPARC V8 w/ Solaris 10 (32-bit); SPARC V8+ w/ Solaris 10 (32-bit); SPARC V9 w/ Solaris 10 (64-bit); AMD Opteron w/ Solaris 10 (64-bit); PowerPC 603 w/ VxWorks 5.5; PowerPC 604 w/ VxWorks 5.5; PowerPC 604 w/ VxWorks 6.0; Intel PXA250 w/ Windows Mobile 2003; Intel PXA270 w/ Windows Mobile 5; Intel PXA270 w/ Windows Mobile 6.0; AMD Athlon X2 w/ Windows Server 2003 SP2 (64-bit w/ MT Static Wrap); Intel Itanium2 w/ Windows Server 2003 SP2 (64-bit w/ MT Static Wrap); Intel Itanium2 w/ Windows Server 2003 SP2 (w/ MD Dynamic Wrap); Intel Pentium M w/ Windows XP Professional SP2 (w/ MT Static Wrap); AMD Athlon X2 w/ Windows Vista Ultimate (32-bit w/ MD Dynamic Wrap); Intel Pentium D w/ Windows Vista Ultimate (64-bit w/ MD Dynamic Wrap) 7/3/2008

PKG: CURVES( ALL-P ALL-K ALL-B )

PKV: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#807
RNG: Cert# 466

"RSA BSAFE® Crypto-C ME software is designed to help protect sensitive data as it is stored using strong encryption techniques to provide a persistent level of protection. The software supports a wide range of industry standard encryption algorithms offering developers the flexibility to choose the appropriate option to meet their requirements."

91 Certicom Corp.
5520 Explorer Drive, 4th Floor
Mississauga, Ontario L4W 5L1
Canada

-Atsushi Yamada
TEL: 905-501-3884
FAX: 905-507-4230

-Rob Williams
TEL: 905-501-3887
FAX: 905-507-4230

Security Builder GSE-J Crypto Core

Version 2.2
Intel Core 2 Duo w/ Windows 2008 Server 64-bit w/ JRE 1.6.0; Intel Pentium III w/ Linux Redhat AS5 32 Bit w/ JRE 1.6.0; Intel Pentium D w/ Redhat Linux AS5 64 bit w/ JRE 1.6.0; Sun UltraSPARC III w/ Solaris 10 32 Bit w/ JRE 1.6.0; Sun UltraSPARC III w/ Solaris 10 64 bit w/ JRE 1.6.0; Intel Pentium D w/ Windows Vista 32 bit w/ JRE 1.6.0; Intel Core 2 Duo w/ Windows Vista 64 bit w/JRE 1.6.0 6/13/2008

PKG: CURVES( ALL-P ALL-K ALL-B )

PKV: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#802
RNG: Cert# 462

"Security Builder GSE-J is a standards-based cryptographic toolkit written in Java. It supports optimized Elliptic Curve Cryptography and provides application developers with sophisticated tools to flexibly integrate encryption, digital signatures and other security mechanisms into Java-based applications."

90 ViaSat, Inc.
6155 El Camino Real
Carlsbad, CA 92009
USA

-Ben Davis
TEL: 760-476-4202
FAX: 760-929-3941

EBEM

Version 01.03.05 (Firmware)
IBM PowerPC 405GPr 6/9/2008

SIG(ver): CURVES( P-521 )

SHS: Cert#800

"The ViaSat Enhanced Bandwidth Efficient Modem (EBEM-500) series Satcom Modem provides the latest in efficient modulation and coding for point-to-point Satcom connections. The EBEM-500 series offers embedded encryption integrating the security functions into the modem to provide an integrated secure Satcom modem product."

89 Sun Microsystems
4150 Network Circle
Santa Clara, CA 95054
USA

-Mehdi Bonyadi
TEL: 858-625-5163

Sun Cryptographic Accelerator 6000

Version 1.1.1 (Firmware)
Intel 80333 6/9/2008

PKG: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#796
RNG: Cert# 458

"Cryptographic Acceleration Card"

88 ERUCES, Inc.
11142 Thompson Ave.
Lenexa, Kansas 66219
U.S.A.

-Dr. Bassam Khulusi
TEL: (913) 310-0888
FAX: (913) 859-9797

-Oggy Vasic
TEL: (913) 310-0888
FAX: (913) 859-9797

Tricryption Cryptographic Module

Version 7.0
AMD Opteron w/ Red Hat Enterprise Linux 5; Intel Pentium 4 w/ Windows Server 2003 R2; 5/28/2008

PKG: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#795
RNG: Cert# 457

"Tricryption Cryptographic Module is a software library providing cryptographic services for ERUCES’ Tricryption family of high volume encryption & key management products including key servers, file, database, executables encryption, and special services (anonymization, de-identification, & privacy protection)."

07/17/08: Update implementation information;

87 RMI Corporation
18920 Forge Drive
Cupertino, CA 95014
USA

-Mark Litvack
TEL: 408-434-5751
FAX: 408-434-5777

XLS Processor

Part # XLS Series Processors A1
N/A 5/13/2008

PKV: CURVES( P-192 P-224 P-256 P-384 P-163 K-233 B-163 B-233 )

SIG(ver): CURVES( P-192 P-224 P-256 P-384 P-163 K-233 B-163 B-233 )

SHS: Cert#781

"RMI's XLS series devices include the XLS408 and XLS404 processors. The XLS processors combine the power of innovative multi-processing and multi-threaded architecture with the simplicity of a leading edge, general purpose MIPS64-based machine enabling wire speed across multiple platforms."

86 Research in Motion
295 Phillip Street
Waterloo, Ontario N2L 3W8
Canada

-Security Certifications Team
TEL: 519-888-7465 x72921
FAX: 519-886-9852

BlackBerry Cryptographic API

Version 4.5 (Firmware)
Intel PXA901 312MHz processor with BlackBerry OS 4.5 5/7/2008

PKG: CURVES( ALL-P ALL-K ALL-B )

PKV: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-K ALL-B P-192 P-224 P-256 P-384 )

SHS: Cert#780 SHS: Cert#777
RNG: Cert# 444

"The BlackBerry Cryptographic API is the firmware module that provides advanced cryptographic functionality to BlackBerry Wireless Handhelds and Smartphones."

Signature Generation and Verification: Prerequisite SHA #780 for SHA-244 and 384; SHA #777 for SHA-1, 256, and 512;

85 Research in Motion
295 Phillip Street
Waterloo, Ontario N2L 3W8
Canada

-Security Certifications Team
TEL: 519-888-7465 x72921
FAX: 519-886-9852

BlackBerry Cryptographic Kernel - AES ASM

Version 3.8.5.32a (Firmware)
Intel PXA901 312MHz processor with BlackBerry OS 4.5 5/7/2008

SIG(ver): CURVES( K-571 )

SHS: Cert#777

"The BlackBerry Cryptographic Kernel is the firmware module that provides the core cryptographic functionality to BlackBerry Wireless Handhelds and Smartphones."

84 Optica Technologies Inc.
2051 Dogwood St
Suite 210
n/a
Louisville, CO 80027
USA

-William Colvin
TEL: 905-876-3147
FAX: 905-876-3479

-Gil Fisher
TEL: 720-214-2800 x12
FAX: 720-214-2805

Eclipz ESCON Tape Encryptor Cryptographic Library

Version 1.0 (Firmware)
Intel Xeon processor 4/30/2008

PKG: CURVES( P-256 P-384 P-521 )

PKV: CURVES( P-256 P-384 P-521 )

SIG(gen): CURVES( P-256 P-384 P-521 )

SIG(ver): CURVES( P-256 P-384 P-521 )

SHS: Cert#776
RNG: Cert# 442

"THE ECLIPZ ESCON TAPE ENCRYPTOR IS DESIGNED TO BE INSERTED IN AN ESCON FIBER OPTIC CHANNEL BETWEEN AN IBM MAINFRAME COMPUTER AND A TAPE DRIVE TO ENCRYPT DATA BEING SENT TO THE TAPE DRIVE."

83 Microsoft Corporation
One Microsoft Way
Redmond, WA 98052-6399
USA

-Dave Friant
TEL: 425-704-7984
FAX: 425-936-7329

-Kelvin Yu
TEL: 425-703-4612
FAX: 425-936-7329

Windows Server 2008 CNG algorithms

Version 1.1
Intel Pentium D w/ Windows Server 2008 (x86); Intel Pentium D w/ Windows Server 2008 (x64); Intel Itanium2 w/ Windows Server 2008 (IA64) 4/2/2008

PKG: CURVES( P-192 P-224 P-256 )

SIG(gen): CURVES( P-192 P-224 P-256 )

SIG(ver): CURVES( P-192 P-224 P-256 )

SHS: Cert#753

"The Microsoft Windows Cryptographic Primitives Library is a general purpose, software-based, cryptographic module which can be dynamically linked into applications by developers to permit the use of FIPS 140-2 Level 1 compliant cryptography."

Prerequiste RNG: SP800-90, Vendor-Affirmed;

82 Microsoft Corporation
One Microsoft Way
Redmond, WA 98052-6399
USA

-Dave Friant
TEL: 425-704-7984
FAX: 425-936-7329

-Kelvin Yu
TEL: 425-703-4612
FAX: 425-936-7329

Windows Vista CNG algorithms

Version 1.1
Intel Pentium D w/ Windows Vista Ultimate SP1 (x86); Intel Pentium D w/ Windows Vista Ultimate SP1 (x64) 4/2/2008

PKG: CURVES( P-256 P-384 P-521 )

SIG(gen): CURVES( P-256 P-384 P-521 )

SIG(ver): CURVES( P-256 P-384 P-521 )

SHS: Cert#753

"The Microsoft Windows Cryptographic Primitives Library is a general purpose, software-based, cryptographic module which can be dynamically linked into applications by developers to permit the use of FIPS 140-2 Level 1 compliant cryptography."

Prerequisite RNG: SP800-90, Vendor-Affirmed;

81 nCipher Corporation Ltd.
Jupiter House, Station Road
Cambridge, CB1 2JD
United Kingdom

-Marcus Streets
TEL: 011-44-1223-723600
FAX: 011-44-1223-723601

-Mark Wooding
TEL: 011-44-1223-723600
FAX: 011-44-1223-723601

nCipher Algorithm Library

Version 6.0 (Firmware)
Motorola Power PC running a proprietary Operating System 3/27/2008

PKG: CURVES( ALL-P ALL-K ALL-B )

PKV: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#764
RNG: Cert# 436

"The nCipher algorithm library provides cryptographic functionality for nCipher's nShield Hardware Security Modules."

80 Research in Motion
295 Phillip Street
Waterloo, Ontario N2L 3W8
Canada

-Security Certifications Team
TEL: 519-888-7465 x2921
FAX: 519-886-9852

BlackBerry Cryptographic API

Version 4.3 (Firmware)
Intel PXA901 312MHz processor with BlackBerry OS 4.3 3/18/2008

PKG: CURVES( ALL-P ALL-K ALL-B )

PKV: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-B P-163 K-233 K-283 K-409 )

SHS: Cert#751 SHS: Cert#752
RNG: Cert# 428 RNG: Cert# 429

"The BlackBerry Cryptographic API is the firmware module that provides advanced cryptographic functionality to BlackBerry Wireless Handhelds."

79 Research in Motion
295 Phillip Street
Waterloo, Ontario N2L 3W8
Canada

-Security Certifications Team
TEL: 519-888-7465 x2921
FAX: 519-886-9852

BlackBerry Cryptographic Kernel

Version 3.8.5 B (Firmware)
Intel PXA901 3/3/2008

SIG(ver): CURVES( K-571 )

SHS: Cert#752

"The BlackBerry Cryptographic Kernel is the firmware module that provides the core cryptographic functionality to BlackBerry Wireless Handhelds."

78 Research in Motion
295 Phillip Street
Waterloo, Ontario N2L 3W8
Canada

-Security Certifications Team
TEL: 519-888-7465 x2921
FAX: 519-886-9852

BlackBerry Cryptographic Kernel

Version 3.8.5 C (Firmware)
Intel PXA901 3/3/2008

SIG(ver): CURVES( K-571 )

SHS: Cert#751

"The BlackBerry Cryptographic Kernel is the firmware module that provides the core cryptographic functionality to BlackBerry Wireless Handhelds."

77 Security First Corp.
22362 Gilberto #130
Rancho Santa Margarita, CA 92688
USA

-Rick Orsini
TEL: 949-858-7525
FAX: 949-858-7092

ECDSA

Version 1.1
X86-compatible w/ Windows 2003 Server; X86-compatible w/ Red Hat Enterprise Linux 4; X86-compatible w/ Suse Enterprise Linux 10; X86-compatible w/ Windows XP 12/31/2007

SIG(gen): CURVES( P-521 )

SIG(ver): CURVES( P-521 )

SHS: Cert#716

"A software cryptographic module supporting encryption, authentication, and data redundancy techniques running on either Linux or Windows user or kernel modes."

76 nCipher Corporation Ltd.
Jupiter House, Station Road
Cambridge, CB1 2JD
United Kingdom

-Marcus Streets
TEL: +44 1223 723600
FAX: +44 1223 723601

-Mark Wooding
TEL: +44 1223 723600
FAX: +44 1223 723601

nCipher Dragonball Library

Version 5.0 (Firmware)
Motorola Power PC 12/31/2007

PKG: CURVES( ALL-P ALL-K ALL-B )

PKV: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#713
RNG: Cert# 399

"The nCipher algorithm library provides cryptographic functionality for nCipher's nShield Hardware Security Modules."

75 Optica Technologies Inc.
2051 Dogwood St
Suite 210
n/a
Louisville, CO 80027
USA

-William Colvin
TEL: 905-876-3147
FAX: 905-876-3479

-Gil Fisher
TEL: 720-214-2800 x12
FAX: 720-214-2805

Eclipz ESCON Tape Encryptor

Version 1.3.1.0 (Firmware)
Intel Xeon processor 12/17/2007

PKG: CURVES( P-256 P-384 P-521 )

PKV: CURVES( P-256 P-384 P-521 )

SIG(gen): CURVES( P-256 P-384 P-521 )

SIG(ver): CURVES( P-256 P-384 P-521 )

SHS: Cert#707
RNG: Cert# 393

"The Eclipz ESCON tape encryptor is designed to be inserted in an ESCON fiber optic channel between an IBM mainframe computer and a a tape drive to encrypt data being sent to the tape drive."

74 RSA Security, Inc.
2955 Campus Drive, Suite 400
San Mateo, CA 94403
USA

-Kathy Kriese
TEL: 650-295-7692

RSA BSAFE Crypto-C Micro Edition (ME)

Version 2.1.0.3
Intel Pentium 4 (2.80 GHz) w/ Windows Server 2003 SP1 (32-bit x86 - VS8.0 build) 12/17/2007

PKG: CURVES( ALL-P ALL-K ALL-B )

PKV: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#706
RNG: Cert# 392

"RSA BSAFE® Crypto-C ME software is designed to help protect sensitive data as it is stored using strong encryption techniques to provide a persistent level of protection. The software supports a wide range of industry standard encryption algorithms offering developers the flexibility to choose the appropriate option to meet their requirements."

73 RSA Security, Inc.
2955 Campus Drive, Suite 400
San Mateo, CA 94403
USA

-Helen Francis
TEL: +61-7-3227-4444
FAX: +61-7-3227-4400

RSA BSAFE Crypto-J JSAFE

Version 4.0
Intel Pentium M w/ Windows XP SP2 Professional with Sun Java JRE 1.4.2; Intel Pentium M w/ Windows XP SP2 Professional with Sun Java JRE 1.5.0; Intel Pentium M w/ Windows XP SP2 Professional with Sun Java JRE 1.6.0 12/17/2007

PKG: CURVES( ALL-P ALL-K ALL-B )

PKV: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#703
RNG: Cert# 390

"RSA BSAFE Crypto-J security software is designed to help protect sensitive data as it is stored using strong encryption techniques to provide a persistent level of protection. It supports a wide range of industry standard encryption algorithms offering Java developers the flexibility to choose the option most appropriate to meet their requirements."

72 RSA Security, Inc.
2955 Campus Drive, Suite 400
San Mateo, CA 94403
USA

-Helen Francis
TEL: +61-7-3227-4444
FAX: +61-7-3227-4400

RSA BSAFE Crypto-J JCE Provider Module

Version 4.0
Intel Pentium M w/ Windows XP SP2 Professional with Sun Java JRE 1.4.2; Intel Pentium M w/ Windows XP SP2 Professional with Sun Java JRE 1.5.0; Intel Pentium w/ Windows XP SP2 Professional with Sun Java JRE 1.6.0 12/17/2007

PKG: CURVES( ALL-P ALL-K ALL-B )

PKV: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#702
RNG: Cert# 389

"RSA BSAFE Crypto-J security software is designed to help protect sensitive data as it is stored using strong encryption techniques to provide a persistent level of protection. It supports a wide range of industry standard encryption algorithms offering Java developers the flexibility to choose the option most appropriate to meet their requirements."

71 IBM Corporation
Nymollevej 91
Lyngby, n/a DK-2800
Denmark

-Crypto Competence Center Copenhagen
TEL: +45 4523 4441
FAX: +45 4523 6802

IBM CryptoLite for Java

Version 4.2.FIPS
AMD Athlon64 X2 4000+ w/ Windows Vista with Sun Java JRE 1.6.0 11/6/2007

PKG: CURVES( ALL-P )

SIG(gen): CURVES( ALL-P )

SIG(ver): CURVES( ALL-P )

SHS: Cert#692
RNG: Cert# 379

"The IBM CryptoLite for Java (CLiJ) v4 is a Java Cryptographic Extension (JCE) compliant cross-platform software library which provides APIs for the cryptographic functions specified in NSA Suite B."

70 Oberthur Card Systems
4250 Pleasant Valley Road
Chantilly, VA 20151
USA

-Christophe Goyet
TEL: 703-263-0100
FAX: 703-263-0503

ECDSA for ID-One Cosmo 128 v5

Version ID-One Cosmo Version F310 (Firmware)
Part # B0
ID-One Cosmo 128 v5.5 11/6/2007

PKG: CURVES( P-192 P-224 P-256 P-384 )

PKV: CURVES( P-192 P-224 P-256 P-384 )

SIG(gen): CURVES( P-192 P-224 P-256 P-384 )

SIG(ver): CURVES( P-192 P-224 P-256 P-384 )

SHS: Cert#688
RNG: Cert# 377

"The ID-One Cosmo Smart Card Platform is a single chip multi-application cryptographic module that offers a highly secure architecture together with cryptographic services such as 3DES (128,192), AES (128,192,256), RSA (1024,1536,2048) with onboard key generation, SHA (1,224,256,384,521), ECDSA (GFP,192,224,256,384) Elliptic Curve Diffie-Hellman."

69 LSI Corporation
1501 McCarthy Boulevard
Milpitas, CA 95035
USA

-Lav Ivanovic
TEL: 408- 433-7248
FAX: 408- 954-4430

AD_ECC

Version 1.0 (Firmware)
Cadence verilog hardware simulator 10/23/2007

PKG: CURVES( P-192 P-224 P-256 )

PKV: CURVES( P-192 P-224 P-256 )

SIG(gen): CURVES( P-192 P-224 P-256 )

SIG(ver): CURVES( P-192 P-224 P-256 )

SHS: Cert#665
RNG: Cert# 372

"Optimized hardware cryptographic module used in custom silicon implementations which need to support security applications."

68 RSA Security, Inc.
2955 Campus Drive, Suite 400
San Mateo, CA 94403
USA

-Kathy Kriese
TEL: 650-295-7692

RSA BSAFE Crypto-C Micro Edition (ME)

Version 2.1.0.2
PowerPC Power3 w/ AIX 5.2 (32-bit); PowerPC Power3 w/ AIX 5.2 (64-bit); PowerPC Power5 w/ AIX 5.3 (32-bit); PowerPC Power5 w/ AIX 5.3 (64-bit); Intel Celeron w/ Red Hat Enterprise Linux v4.0 (32-bit, x86); Intel Pentium D w/ Red Hat Enterprise Linux v4.0 (64-bit, x86_64); Intel Itanium2 w/ HP-UX 11.23 (32-bit); Intel Itanium2 w/ HP-UX 11.23 (64-bit); PA-RISC 2.0 w/ HP-UX 11.11 (32-bit); PA-RISC 2.0W w/ HP-UX 11.23 (64-bit); SPARC v8 w/ Solaris 10 (32-bit); SPARC v8+ w/ Solaris 10 (32-bit); SPARC v9 w/ Solaris 10 (64-bit); AMD Opteron w/ Solaris 10 (64-bit); Intel Pentium 4 w/ Suse Linux Enterprise Server 9.0 (32-bit); AMD Opteron w/ SuSE Linux Enterprise Server 9.0 (64-bit); Motorola MPC 7455 w/ VxWorks 5.4 (PowerPC 604); Motorola MPC 8260 w/ VxWorks 5.5 (PowerPC 603); Motorola MPC 7455 w/ VxWorks 5.5 (Power PC 604); Motorola MPC 7457 w/ VxWorks General Purpose Platform 6.0 (PowerPC 604); Intel Celeron w/ Windows 2003 Server SP1 (Compiled with MS VC 6.0); Intel Pentium 4 w/ Windows 2003 Server SP1 (Compiled with MS VC 8.0); Intel Itanium2 w/ Windows 2003 Server SP1; AMD Athlon64 X2 4000+ w/ Windows 2003 Server SP1 (64-bit, x86_64); Intel PXA270 w/ Windows Mobile 5.0; TI OMAP 850 w/ Windows Mobile 5.0 Phone Edition; TI OMAP 1510 w/ Windows Mobile 2003 Phone Edition; Intel PXA250 w/ Windows Mobile 2003 9/27/2007

PKG: CURVES( ALL-P ALL-K ALL-B )

PKV: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#679
RNG: Cert# 367

"RSA BSAFE® Crypto-C ME software is designed to help protect sensitive data as it is stored using strong encryption techniques to provide a persistent level of protection. The software supports a wide range of industry standard encryption algorithms offering developers the flexibility to choose the appropriate option to meet their requirements."

67 ViaSat, Inc.
6155 El Camino Real
Carlsbad, CA 92009
USA

-Ben Davis
TEL: 760-476-4202
FAX: 760-929-3941

EBEM

Version 01.01.08 (Firmware)
IBM PowerPC 405GPr 8/7/2007

SIG(ver): CURVES( P-521 )

SHS: Cert#667

"The ViaSat Enhanced Bandwidth Efficient Modem (EBEM-500) series Satcom Modem provides the latest in efficient modulation and coding for point-to-point Satcom connections. The EBEM-500 series offers embedded encryption integrating the security functions into the modem to provide an integrated secure Satcom modem product."

66 IBM Corporation
Nymollevej 91
Lyngby, n/a DK-2800
Denmark

-Crypto Competence Center Copenhagen
TEL: +45 4523 4441
FAX: +45 4523 6802

IBM CryptoLite for C

Version 4.5
Intel Celeron w/ Windows Vista Ultimate; Intel Celeron w/ Red Hat Enterprise Linux v4 7/31/2007

PKG: CURVES( ALL-P )

SIG(gen): CURVES( ALL-P )

SIG(ver): CURVES( ALL-P )

SHS: Cert#663
RNG: Cert# 350

"IBM CryptoLite for C (CLiC) is a C software package providing advanced cryptographic services in a configurable footprint. CLiC supports NSA Suite B encryption and ordinary public key encryption, digital signatures, symmetric ciphers, hash functions, message authentication codes, and other cryptographic services with a simple programming interface."

65 Pitney Bowes, Inc.
35 Waterview Drive
Shelton, CT 06484-8000
USA

-Douglas Clark
TEL: 203-924-3206
FAX: 203-924-3406

Sigma ASIC

Part # 1R84000, Version A
N/A 7/23/2007

PKG: CURVES( P-192 P-224 )

SIG(gen): CURVES( P-192 P-224 )

SIG(ver): CURVES( P-192 P-224 )

SHS: Cert#650
RNG: Cert# 342

"The Pitney Bowes Cygnus X-3 Postal Security Device (PSD) complies with FIPS 140-2 and IPMAR standards to support the USPS IBIP and international digital indicia standards globally. The PSD employs strong cryptographic and physical security techniques for the protection of customer funds in Pitney Bowes Postage Metering products."

64 nCipher Corporation Ltd.
Jupiter House, Station Road
Cambridge, CB1 2JD
United Kingdom

-Marcus Streets
TEL: +44 1223 723600
FAX: +44 1223 723601

-Mark Wooding
TEL: +44 1223 723600
FAX: +44 1223 723601

nCipher Algorithm Library

Version 5.0 (Firmware)
Motorola Power PC 7/23/2007

PKG: CURVES( ALL-P ALL-K ALL-B )

PKV: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#648
RNG: Cert# 340

"The nCipher algorithm library provides cryptographic functionality for nCipher's nShield Hardware Security Modules."

63 Security First Corp.
22362 Gilberto #130
Rancho Santa Margarita, CA 92688
USA

-Rick Orsini
TEL: 949-858-7525 x 80
FAX: 949-858-7092

ECDSA

Version 1.0
Intel x86-compatible w/ Windows XP; Intel x86-compatible w/ Suse Enterprise Linux 10; Intel x86-compatible w/ Red Hat Enterprise Linux 4; Intel x86-compatible w/ Windows 2003 Server 7/2/2007

SIG(gen): CURVES( P-521 )

SIG(ver): CURVES( P-521 )

SHS: Cert#631
RNG: Cert# 330

"A software cryptographic module supporting encryption, authentication, and data redundancy techniques."

01/22/08 - Changed version number

62 Neopost Technologies SA
113 Rue Jean Marin Naudin
BAGNEUX, 92220
France

-Nathalie Tortellier
TEL: +33 1 45 36 30 72
FAX: +33 1 45 36 30 10

Neopost PSD

Version 4134668V Issue A (Firmware)
Toshiba TMPR3912AU 5/31/2007

PKG: CURVES( P-192 )

SIG(gen): CURVES( P-192 )

SHS: Cert#629
RNG: Cert# 328

"New Generation Neopost Postal Secure Device."

61 Mocana Corporation
350 Sansome Street
Suite 210
San Francisco, CA 94104
USA

-James Blaisdell
TEL: 415-617-0055
FAX: 415-617-0056

Mocana Security Solutions ECDSA

Version Rev. 3468
Cell w/ Linux 2.6.16 5/31/2007

PKG: CURVES( ALL-P )

PKV: CURVES( ALL-P )

SIG(gen): CURVES( ALL-P )

SIG(ver): CURVES( ALL-P )

SHS: Cert#625
RNG: Cert# 323

"The Mocana Device Security Framework includes: Certificate Management, EAP supplicant and pass-thru/standalone authenticator, RADIUS, SSL/TLS Server and Client, SSH Server and Client and IPSec/IKE/IKEv2/MOBIKE/VPN. Free evaluation available at www.mocana.com/evaluate.html"

60 Microsoft Corporation
One Microsoft Way
Redmond, WA 98052-6399
USA

-Dave Friant
TEL: (425) 704-7984
FAX: (425) 936-7329

-Kelvin Yu
TEL: (425) 703-4612
FAX: (425) 936-7329

Windows Vista CNG algorithms

Version 1.0
Intel Pentium 4 w/ Windows Vista; Intel Pentium D w/ Windows Vista 5/31/2007

PKG: CURVES( P-256 P-384 P-521 )

SIG(gen): CURVES( P-256 P-384 P-521 )

SIG(ver): CURVES( P-256 P-384 P-521 )

SHS: Cert#618
RNG: Cert# 321

"The Microsoft Windows Cryptographic Primitives Library is a general purpose, software-based, cryptographic module which can be dynamically linked into applications by developers to permit the use of FIPS 140-2 Level 1 compliant cryptography."

59 Research in Motion
295 Phillip Street
Waterloo, Ontario N2L 3W8
Canada

-Security Certifications Team
TEL: (519) 888-7465
FAX: (519) 888-7465

BlackBerry Enterprise Server Cryptographic Library

Version 3.1
Part # Intel P4 Processor w/ Windows 2000 Server Service Pack 4
N/A 5/23/2007

PKG: CURVES( P-521 K-571 )

SIG(gen): CURVES( P-521 K-571 )

SIG(ver): CURVES( )

SHS: Cert#626
RNG: Cert# 324

"BlackBerry is the leading wireless enterprise solution that allows users to stay connected with secure, wireless access to email, corporate data, phone, web and organizer features. BlackBerry is a totally integrated package that includes hardware, software and service, providing a complete end-to-end solution."

58 SafeNet, Inc.
20 Colonnade Road, Suite 200
Ottawa, ON K2E7M6
Canada

-Terry Fletcher
TEL: 613-221-5009
FAX: 613-723-5079

-Laurie Smith
TEL: 613-221-5026
FAX: 613-723-5079

Luna Cryptographic Firmware Library

Version 4.6.1 (Firmware)
Strong ARM II (80219) 5/15/2007

PKG: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#616
RNG: Cert# 319

"The Luna Cryptographic Firmware Library provides a broad suite of high-performance cryptographic operations. All cryptographic algorithms are implemented within the module's firmware and associated co-processor."

57 Certicom Corp.
5520 Explorer Drive, 4th Floor
Mississauga, Ontario L4W 5L1
Canada

-Atsushi Yamada
TEL: 905-501-3884
FAX: 905-5074230

-Randy Tsang
TEL: 905-507-4220
FAX: 905-507-4220

Security Builder GSE Crypto Core

Version 2.4
PowerPC w/ Yellowdog Linux 2.6 5/7/2007

PKG: CURVES( P-256 P-384 P-163 K-283 )

PKV: CURVES( P-256 P-384 P-163 K-283 )

SIG(gen): CURVES( P-256 P-384 P-163 K-283 )

SIG(ver): CURVES( P-256 P-384 P-163 K-283 )

SHS: Cert#614
RNG: Cert# 317

"Security Builder GSE-C provides application developers with cryptographic tools to easily integrate encryption, digital signatures and other security mechanisms into C-based apps for FIPS 140-2 and Suite B security. It can also be used with Certicom's PKI, IPSec, SSL and DRM modules."

56 Tumbleweed Communications Corp.
700 Saginaw Drive
Redwood City, CA 94063
USA

-Stefan Kotes
TEL: 650-216-2082
FAX: 650-216-2565

Tumbleweed Security Kernel

Version 2.0
Intel Pentium III w/ Windows Server 2003 4/30/2007

PKG: CURVES( P-192 P-224 P-163 K-233 B-163 B-233 )

PKV: CURVES( P-192 P-224 B-163 B-233 )

SIG(gen): CURVES( P-192 P-224 P-163 K-233 B-163 B-233 )

SIG(ver): CURVES( P-192 P-224 P-163 K-233 B-163 B-233 )

SHS: Cert#597
RNG: Cert# 300

"The Tumbleweed Security Kernel is a software module implemented as two dynamic libraries that provide all security functionalities for several products of Tumbleweed Communications Corp., including Validation Authority, SecureTransport, and MailGate."

55 Tumbleweed Communications Corp.
700 Saginaw Drive
Redwood City, CA 94063
USA

-Stefan Kotes
TEL: 650-216-2082
FAX: 650-216-2565

Tumbleweed Security Kernel

Version 2.0
Intel Pentium 3 w/ SuSE Linux 10 4/23/2007

PKV: CURVES( P-192 P-224 B-163 B-233 )

SHS: Cert#597

"The Tumbleweed Security Kernel is a software module implemented as two dynamic libraries that provide all security functionalities for several products of Tumbleweed Communications Corp., including Validation Authority, SecureTransport, and MailGate."

54 Tumbleweed Communications Corp.
700 Saginaw Drive
Redwood City, CA 94063
USA

-Stefan Kotes
TEL: 650-216-2082
FAX: 650-216-2565

Tumbleweed Security Kernel

Version 2.0
IBM p5 (PowerPC) w/ IBM AIX 5.2.0.0; Intel dual core Xeon (core 2) 64-bit w/ SuSE Linux 9; Sun UltraSparc 2 w/ SunOS 5.10; Intel Pentium 4 w/ Windows XP SP 2 4/23/2007

PKG: CURVES( P-192 P-224 P-163 K-233 B-163 B-233 )

SIG(gen): CURVES( P-192 P-224 P-163 K-233 B-163 B-233 )

SIG(ver): CURVES( P-192 P-224 P-163 K-233 B-163 B-233 )

SHS: Cert#597
RNG: Cert# 300

"The Tumbleweed Security Kernel is a software module implemented as two dynamic libraries that provide all security functionalities for several products of Tumbleweed Communications Corp., including Validation Authority, SecureTransport, and MailGate."

53 Decru, A NetApp Company
275 Shoreline Dr.
Fourth Floor
Redwood City, CA 94065
USA

-Michele Borovac
TEL: 650-413-6700
FAX: 650-413-6790

Decru AT ECDSA

Version 1.2 (Firmware)
Atmel "Secure uController" AT90SC144144C-AL 3/28/2007

SIG(ver): CURVES( P-521 )

SHS: Cert#511

"Decru's Storage Encryption Processor (SEP) is the primary cryptographic and key management engine for the Decru LKM (Lifetime Key Management) appliance."

09/25/07: Update SHS certificate number;
10/22/07: Update vendor POC information;

52 SafeNet, Inc.
20 Colonnade Road, Suite 200
Ottawa, ON K2E7M6
Canada

-Terry Fletcher
TEL: 613-221-5009
FAX: 613-723-5079

-Laurie Smith
TEL: 613-221-5026
FAX: 613-723-5079

Luna IS Cryptographic Library

Version 5.1.4 (Firmware)
Strong Arm II (80219) 3/20/2007

PKG: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#581
RNG: Cert# 288

"The Luna IS Cryptographic Library provides a broad suite of high-performance cryptographic operations. All cryptographic algorithms are implemented within the module's firmware and associated co-processor."

51 SafeNet Canada, Inc.
20 Colonnade
Ottowa, ON K2E7M6
Canada

-Terry Fletcher
TEL: 613.221.5009
FAX: 613.723.5079

-Laurie Smith
TEL: 613.221.5026
FAX: 613.723.5079

Luna G4

Version 4.6.1 (Firmware)
StrongARM-II, 80200, 600 MHz, RoHS; StrongARM-II, 80200, 600 MHz 3/14/2007

PKG: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#579
RNG: Cert# 287

"The Luna(r) PCM/CA4 offer hardware key management and cryptographic operations to protect sensitive keys. Keys may be backed up and can be protected in software using a FIPS approved algorithm or replicated on one or more CA4 tokens."

50 SafeNet Canada, Inc.
20 Colonnade
Ottowa, ON K2E7M6
Canada

-Terry Fletcher
TEL: 613.221.5009
FAX: 613.723.5079

-Laurie Smith
TEL: 613.221.5026
FAX: 613.723.5079

Luna G4

Version 4.5.3 (Firmware)
StrongARM-II 80200 600MHz ROHS 2/9/2007

PKG: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#570
RNG: Cert# 280

"The Luna(r) PCM/CA4 offer hardware key management and cryptographic operations to protect sensitive keys. Keys may be backed up and can be protected in software using a FIPS approved algorithm or replicated on one or more CA4 tokens."

49 Wei Dai
13440 SE 24th Street
Bellevue, WA 98005
USA

-Wei Dai
TEL: 425-562-9677

Crypto++ Library

Version 5.3.0
Athlon X2 4200+ w/ Windows XP SP2; Athlon X2 4200+ w/ Windows Server 2003 x 64 SP1 2/9/2007

PKG: CURVES( ALL-P ALL-K ALL-B )

PKV: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#569
RNG: Cert# 279

"The Crypto++ Library is a free, open source C++ class library providing public key encryption, digital signatures, symmetric ciphers, hash functions, message authentication codes, and other cryptographic algorithms. Both 32-bit and 64-bit variants of the dynamic link library (DLL) are FIPS 140-2 Level 1 validated."

48 Pitney Bowes, Inc.
35 Waterview Drive
Shelton, CT 06484-8000
USA

-Douglas Clark
TEL: (203) 924-3206
FAX: (203) 924-3406

ECDSA

Version 3.09 (Firmware)
Part # HW P/N 1L84004, Version A
Gatekeeper 3 ASIC 1/12/2007

PKG: CURVES( P-192 )

SIG(gen): CURVES( P-192 )

SIG(ver): CURVES( P-192 )

SHS: Cert#562
RNG: Cert# 272

"The PB Cygnus X-2 PSD is in compliance with FIPS 140-2 and IPMAR security protection profile and supports the USPS IBIP and international digital indicia standards. The PSD employs strong encryption, decryption, and digital signature techniques for the protection of customer funds in PB Postage Metering products."

47 RSA Security, Inc.
2955 Campus Drive, Suite 400
San Mateo, CA 94403
USA

-Kathy Kriese
TEL: 650.295.7692

RSA BSAFE Crypto-C Micro Edition (ME)

Version 2.1
IBM Power3 w/ AIX 5L v5.2 (32-bit); IBM Power3 w/ AIX 5L v5.2 (64-bit); IBM Power5 w/ AIX 5L v5.3 (32-bit); IBM Power5 w/ AIX 5L v5.3 (64-bit); Intel Pentium 4 w/ Red Hat Enterprise Linux AS4.0; Intel Pentium D w/ Red Hat Enterprise Linux AS4.0; Intel Itanium2 w/ HP-UX 11.23 (64-bit); Intel Itanium2 w/ HP-UX 11.23 (32-bit); PA8600-RISC 2.0 w/ HP-UX 11.11 (32-bit); PA8600-RISC 2.0W w/ HP-UX 11.23 (64-bit); SPARC v8 w/ Solaris 10 (32-bit); SPARC V8+ w/ Solaris 10 (32-bit); SPARC v9 w/ Solaris 10 (64-bit); AMD Opteron w/ Solaris10; Intel Pentium 4 w/ SuSE Linux Enterprise Server 9.0; AMD Opteron w/ SuSE Linux Enterprise Server 9.0; Motorola MPC 7455 w/ VxWorks 5.4 PowerPC 604; Motorola MPC 8260 w/ VxWorks 5.5 PowerPC 603; Motorola MPC7455 w/ VxWorks 5.5 PowerPC 604; Motorola MPC 7457 w/ VxWorks General Purpose Platform 6.0 PowerPC 604; Intel Pentium 4 w/ Windows 2003 Server, SP1 (Compiled with MS VC 6.0); Intel Pentium 4 w/ Windows 2003 Server, SP1 (Compiled with MS VC 8.0); Itanium2 w/ Windows 2003 Server, SP1; AMD Opteron w/ Windows 2003 Server, SP1; Samsung SC32442 w/ Windows Mobile 5.0; Intel PXA272 w/ Windows Mobile 5.0 PocketPC Phone Edition; TI OMAP 730 w/ Windows Mobile 2003 SE for SmartPhone; Intel PXA255 w/ Windows Mobile 2003 1/12/2007

PKG: CURVES( ALL-P ALL-K ALL-B )

PKV: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#560
RNG: Cert# 270

"RSA BSAFE® Crypto-C ME software is designed to help protect sensitive data as it is stored using strong encryption techniques to provide a persistent level of protection. The software supports a wide range of industry standard encryption algorithms offering developers the flexibility to choose the appropriate option to meet their requirements."

46 ViaSat, Inc.
6155 El Camino Real
Carlsbad, CA 92009
USA

-Ed Smith
TEL: 760-476-4995
FAX: 760-476-4703

EBEM

Version 01.01.06 (Firmware)
IBM PowerPC 405GPr 12/28/2006

SIG(ver): CURVES( P-521 )

SHS: Cert#552

"The ViaSat Enhanced Bandwidth Efficient Modem (EBEM-500) series Satcom Modem provides the latest in efficient modulation and coding for point-to-point Satcom connections. The EBEM-500 series offers embedded encryption integrating the security functions into the modem to provide an integrated secure Satcom modem product."

06/03/08: Lab request to take off ITAR;

45 Entrust, Inc.
1000 Innovation Drive
Ottawa, Ontario K2K 3E7
Canada

-Kim Trites
TEL: (613) 270-3127
FAX: (613) 270-2525

-Shoubhik Ghosh
TEL: (613) 270-3770
FAX: (613) 270-2525

Entrust Security Kernel

Version 7.1
Intel® Pentium® D dual-core 3.2 GHz Processor w/ Windows Server 2003 12/21/2006

PKG: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#551
RNG: Cert# 261

"Entrust Security Kernel for Security Manager is the cryptographic module used by internal C++ components, providing secure functions to Authority and toolkits. Entrust customers can access these functions via the application programming interface available for the toolkits."

01/29/07: Update impl description;

44 Utimaco Safeware AG
Germanusstrasse 4
Aachen, D-52080
Germany

-Rainer Herbertz
TEL: +49/241-1696-240
FAX: +49/241-1696-199

CryptoServer CS ECDSA

Version 2.0.0.0 (Firmware)
Texas Instruments TMS320C6414 12/21/2006

PKG: CURVES( ALL-P )

PKV: CURVES( ALL-P )

SIG(gen): CURVES( ALL-P )

SIG(ver): CURVES( ALL-P )

SHS: Cert#547
RNG: Cert# 259

"The CryptoServer CS is an encapsulated, tamper-protected hardware security module which provides secure cryptographic services like encryption or decryption, hashing, signing and verifying of data, random number generation, on-board secure key generation, key storage and further key management functionality."

43 Certicom Corporation
Certicom Corporate Headquarters
5520 Explorer Drive, 4th Floor
Mississauga, ON L4W 5L1
Canada

-Atsushi Yamada
TEL: (905) 501-3884
FAX: (905) 507-4230

-Randy Tsang
TEL: (905) 507-4220
FAX: (905) 507-4230

Security Builder GSE Crypto Core for Palm OS 5

Version 3.1
ARM Processor w/ Palm OS 5 12/12/2006

PKG: CURVES( P-256 P-384 K-283 )

PKV: CURVES( P-256 P-384 K-283 )

SIG(gen): CURVES( P-256 P-384 K-283 )

SIG(ver): CURVES( P-256 P-384 K-283 )

SHS: Cert#533
RNG: Cert# 249

"Security Builder GSE-C provides application developers with cryptographic tools to easily integrate encryption, digital signatures and other security mechanisms into C-based apps for FIPS 140-2 and Suite B security. Optimized with Elliptic Curve Cryptography, it can also be used with Certicom's PKI, IPSec, SSL and DRM modules."

42 Certicom Corp.
5520 Explorer Drive, 4th Floor
Mississauga, Ontario L4W 5L1
Canada

-Atsushi Yamada
TEL: 905-501-3884
FAX: 905-507-4230

-Randy Tsung
TEL: 905-507-4220
FAX: 905-507-4230

Security Builder GSE Crypto Core

Version 2.2
ARM w/ LG T98VZV05 with BREW 3.1 12/12/2006

PKG: CURVES( P-256 P-384 P-521 P-163 )

PKV: CURVES( P-256 P-384 P-521 P-163 )

SIG(gen): CURVES( P-256 P-384 P-521 P-163 )

SIG(ver): CURVES( P-256 P-384 P-521 P-163 )

SHS: Cert#541
RNG: Cert# 256

"Security Builder GSE-C provides application developers with cryptographic tools to easily integrate encryption, digital signatures and other security mechanisms into C-based apps for FIPS 140-2 and Suite B security. Optimized with Elliptic Curve Cryptography, it can also be used with Certicom's PKI, IPSec, SSL and DRM modules."

03/06/07: Update the Operating System;

41 Certicom Corporation
Certicom Corporate Headquarters
5520 Explorer Drive, 4th Floor
Mississauga, ON L4W 5L1
Canada

-Atsushi Yamada
TEL: 905-501-3884
FAX: 905-507-4230

SB GSE-J Crypto Core

Version 2.1
Intel x86 w/ WindowsXP; Intel x86 64 bit w/ WindowsXP with JRE 1.5; 64 bit SPARC w/ Solaris 9 with JRE 1.5; 32 bit SPARC w/ Solaris 9 with JRE 1.5; Intel x86 64 bit w/ Red Hat Linux AS 4.0 with JRE 1.5; Intel x86 w/ Red Hat Linux AS 3.0 with JRE 1.5; UltraSPARC III w/ Solaris 10 with JRE 1.5 12/4/2006

PKG: CURVES( ALL-P ALL-K ALL-B )

PKV: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#537
RNG: Cert# 254

"Security Builder GSE-J provides application developers with cryptographic tools to easily integrate encryption, digital signatures and other security mechanisms into Java-based apps for FIPS 140-2 and Suite B security. Optimized with Elliptic Curve Cryptography, it can also be used with Certicom's PKI and SSL modules"

09/12/07: Add new OE;

40 Intel Corporation
2200 Mission College Blvd.
Santa Clara, California 95054
USA

-Intel Performance Libraries Product Support

Intel® Integrated Performance Primitives

Version 5.2 Gold
Intel® CoreTM 2 Duo (x64) w/ Microsoft Windows XP SP2; Intel® CoreTM 2 Duo (x64) w/ Mac OS 10.4; Intel® CoreTM 2 Duo (x64) w/ Red Hat Enterprise Linux 4 11/13/2006

PKV: CURVES( ALL-P )

SIG(gen): CURVES( ALL-P )

SIG(ver): CURVES( ALL-P )

SHS: Cert#526
RNG: Cert# 245

"The Intel® IPP for cryptography is a software library optimized for IA-32, IA-64, and Intel® 64 architectures and running on Windows*, Linux*, and Mac OS* operating systems. The library has cross-platform and cross operating system API for routines commonly used for cryptographic operations."

03/14/07: Update Vendor information;

39 Research in Motion
295 Phillip Street
Waterloo, Ontario N2L 3W8
Canada

-Security Certifications Team
TEL: (519) 888-7465
FAX: (519) 886-9852

BlackBerry Cryptographic API Library

Version 4.2 (Firmware)
Intel PXA901 312MHz processor w/ BlackBerry OS 4.2 11/8/2006

PKG: CURVES( ALL-P ALL-K ALL-B )

PKV: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#521
RNG: Cert# 242

"BlackBerry(r) is the leading wireless enterprise solution that allows users to stay connected with secure, wireless access to email, corporate data, phone, web and organizer features. The BlackBerry(r) Cryptographic Kernel is the firmware module that provides the core cryptographic functionality to BlackBerry(r) Wireless Handhelds."

38 Research in Motion
295 Phillip Street
Waterloo, Ontario N2L 3W8
Canada

-Security Certifications Team
TEL: (519) 888-7465
FAX: (519) 886-9852

BlackBerry Cryptographic Kernel Library

Version 3.8.4 (Firmware)
Intel PXA901 312MHz processor 10/27/2006

SIG(ver): CURVES( ALL-K K-571 )

SHS: Cert#521

"BlackBerry(r) is the leading wireless enterprise solution that allows users to stay connected with secure, wireless access to email, corporate data, phone, web and organizer features. The BlackBerry(r) Cryptographic Kernel is the firmware module that provides the core cryptographic functionality to BlackBerry(r) Wireless Handhelds."

37 Red Hat, Inc. and Sun Microsystems, Inc.
See the vendor web site

-Glen Beasley
TEL: 1-800-555-9SUN

-Wan-Teh Chang
TEL: 1-650-567-9039 x7922
FAX: 1-650-567-9041

Network Security Services (NSS) Software Cryptographic Module

Version 3.11 Basic ECC
x86 platform w/ Red Hat Enterprise Linux 4; x86 platform w/ Windows XP; PowerPC G4 platform w/ Mac OS X 10.4 10/20/2006

PKG: CURVES( ALL-P P-256 P-384 P-521 )

PKV: CURVES( ALL-P P-256 P-384 P-521 )

SIG(gen): CURVES( ALL-P P-256 P-384 P-521 )

SIG(ver): CURVES( P-256 P-384 P-521 )

SHS: Cert#426
RNG: Cert# 208

"Network Security Services (NSS) is a set of open source C libraries designed to support cross-platform development of security-enabled applications. NSS implements major crypto algorithms and Internet security standards, and supports smartcards and hardware crypto devices. NSS is available free of charge under the Mozilla Public License, the GNU General Public License, and the GNU Lesser General Public License. For more information, see http://www.mozilla.org/projects/security/pki/nss/"

36 ViaSat, Inc.
6155 El Camino Real
Carlsbad, CA 92009
USA

-Ed Smith
TEL: 760-476-4995
FAX: 760-476-4703

EBEM

Version 01.01.05
PowerPC w/ Linux v2.4 10/13/2006

SIG(ver): CURVES( P-521 )

SHS: Cert#513

"The ViaSat Enhanced Bandwidth Efficient Modem (EBEM-500) series Satcom Modem provides the latest in efficient modulation and coding for point-to-point Satcom connections. The EBEM-500 series offers embedded encryption integrating the security functions into the modem to provide an integrated secure Satcom modem product."

35 Decru, A NetApp Company
275 Shoreline Dr.
Fourth Floor
Redwood City, CA 94065
USA

-Michele Borovac
TEL: 650-413-6700
FAX: 650-413-6790

Decru AT ECDSA

Version V1.1 (Firmware)
Decru SEP 10/11/2006

SIG(ver): CURVES( P-521 )

SHS: Cert#511

"Decru's Storage Encryption Processor (SEP) is the primary cryptographic and key management engine for Decru DataFort products. Decru DataFort is a storage security appliance that uses encryption, authentication, secure access controls, and secure logging to protect networked storage in NAS, SAN, DAS and Tape environments."

10/22/07: Update vendor POC information;

34 Entrust, Inc.
1000 Innovation Drive
Ottawa, Ontario K2K 3E7
Canada

-Kim Trites
TEL: (613)-270-3127

-Christopher D. Wood
TEL: (613)-270-2926

Entrust Authority™ Security Toolkit for Java®

Version 7.2
UltraSPARC-llli 1.34 GHz processor with 512KB external cache w/ Sun Solaris 10 with SUN JRE 5.0; Intel® Pentium® D dual-core 3.2 GHz CPU w/ Microsoft Windows XP Professional with SUN JRE 5.0 10/13/2006

PKG: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#510
RNG: Cert# 231

"Entrust Authority Security Toolkit for the Java Platform provides a FIPS certified secure and trusted framework for successful e-business development of high performance applications."

33 Sharp Laboratories of Europe Ltd.
Edmund Halley Road
Oxford Science Park
Oxford, OX4 4GB
United Kingdom

-Anthony Hull
TEL: +44 1865 747711
FAX: +44 1865 714170

HAL/ECDSA

Version SLE-ECC-02 (Firmware)
SM4128 chip 9/5/2006

SIG(gen): CURVES( P-192 P-224 P-256 P-384 )

SIG(ver): CURVES( P-192 P-224 P-256 P-384 )

SHS: Cert#472
RNG: Cert# 197

"An implementation of the ECDSA signtature generation and verification algorithms as specified in ANSI X9.62-1998."

32 Oberthur Card Systems
4250 Pleasant Valley Road
Chantilly, VA 20151
USA

-Christophe Goyet
TEL: 703-263-0100
FAX: 703-263-0503

ECDSA for ID-One Cosmo 64 v5

Version E304 (Firmware)
Part # 77
ID-One Cosmo 64 v5 8/24/2006

PKG: CURVES( P-192 )

SIG(gen): CURVES( P-192 )

SIG(ver): CURVES( P-192 )

SHS: Cert#496

"The ID-One Cosmo Chip Platform is a single-chip multi-application cryptographic module for smart cards, specifically designed for identity and government market needs. The module offers a highly secure architecture together with cryptographic services such as 3DES128 and 3DES192, AES 256, RSA2048 with on-board key generation, and ECDSA (GFP)."

31 Certicom Corporation
Certicom Corporate Headquarters
5520 Explorer Drive, 4th Floor
Mississauga, ON L4W 5L1
Canada

-Atsushi Yamada
TEL: (905) 501-3884
FAX: (905) 507-4230

-Randy Tsang
TEL: (905) 507-4220
FAX: (905) 507-4230

SB GSE-C Crypto Core

Version 3.0
ARM Processor w/ Phillips RTK-E 7/25/2006

PKG: CURVES( P-256 P-384 K-283 )

PKV: CURVES( P-256 P-384 K-283 )

SIG(gen): CURVES( P-256 P-384 K-283 )

SIG(ver): CURVES( P-256 P-384 K-283 )

SHS: Cert#491
RNG: Cert# 217

"Security Builder GSE is a standards-based cryptographic toolkit that supports optimized Elliptic Curve Cryptography and provides application developers with sophisticated tools to flexibly integrate encryption, digital signatures and other security mechanisms into both mobile and server-based applications."

30 Red Hat, Inc. and Sun Microsystems, Inc.
See the vendor web site

-Glen Beasley
TEL: 1-800-555-9SUN

-Wan-Teh Chang
TEL: 1-650-567-9039 x79228
FAX: 1-650-567-9041

Network Security Services (NSS) Software Cryptographic Module

Version 3.11
PA-RISC platform w/ HP-UX B.11.11; AMD64 platform w/ 64-bit Solaris 10; SPARC platform w/64-bit Trusted Solaris 8; x86 platform w/ Red Hat Enterprise Linux 3; x86 platform w/ Red Hat Enterprise Linux 4; x86 platform w/ Windows XP; PowerPC G4 platform w/ Mac OS X 10.4; x86-64 platform w/ Red Hat Enterprise Linux 4 6/30/2006

PKG: CURVES( ALL-P ALL-K ALL-B )

PKV: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#426
RNG: Cert# 208

"Network Security Services (NSS) is a set of open source C libraries designed to support cross-platform development of security-enabled applications. NSS implements major crypto algorithms and Internet security standards, and supports smartcards and hardware crypto devices. NSS is available free of charge under the Mozilla Public License, the GNU General Public License, and the GNU Lesser General Public License. For more information, see http://www.mozilla.org/projects/security/pki/nss/"

10/17/06: Update new OS/Processor;

29 Secure Data In Motion
1875 S. Grant Street, 10th Floor
San Mateo, CA 94402
USA

-Jun Wang
TEL: 650.572.6100
FAX: 650.572.6101

Sigaba Security Library

Version 1.2.14
Intel Pentium 4M w/ Windows XP SP2 6/22/2006

PKG: CURVES( ALL-P )

SIG(gen): CURVES( ALL-P )

SIG(ver): CURVES( ALL-P )

SHS: Cert#78
RNG: Cert# 206

"The Sigaba Security Library supports:(a) asymmetric algorithms for digital signature and key agreement using Elliptic Curve Cryptography and Conventional Cryptography (b) symmetric algorithms for integrity and encryption (c) a secure pseudo random number generator and entropy gathering daemon provide support for securely generating key material."

28 Sharp Laboratories of Europe Ltd.
Edmund Halley Road
Oxford Science Park
Oxford, OX4 4GB
United Kingdom

-Anthony Hull
TEL: +44 1865 747711
FAX: +44 1865 714170

HAL/ECDSA

Version SLE-ECC-01 (Firmware)
SM4128 chip 6/7/2006

SIG(gen): CURVES( P-192 P-224 P-256 P-384 )

SIG(ver): CURVES( P-192 P-224 P-256 P-384 )

SHS: Cert#472
RNG: Cert# 197

"An implementation of the ECDSA signature generation and verification algorithms as specified in ANSI X9.62-1998."

27 Kasten Chase Applied Research, Ltd.
5100 Orbitor Drive
Mississauga, Ontario L4W 4Z4
Canada

-Steve Demmery
TEL: 905-238-6900 Ext. 3303
FAX: 905-212-2003

KCCE ECDSA

Version 2.2.00 (Firmware)
IBM PPC405GPR 6/1/2006

PKG: CURVES( ALL-P ALL-K ALL-B )

PKV: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#468
RNG: Cert# 193

"KCCE is an independent, executable cryptographic module that exists variously as a dynamic linked library (dll), a shared library, a driver and as firmware. KCCE provides software designers with a comprehensive API that ensures secure cryptographic application development, for a wide range of operating systems, without undue complexity."

26 Safenet Inc.
Safenet Australia
28 Greg Chappell Drive
Burleigh Heads, Queensland 4220
Australia

-Marcus Alick
TEL: +61 7 5568 8650
FAX: +61 7 5593 4388

-Tony Huynh
TEL: +61 7 5568 8653
FAX: +61 7 5593 4388

ProtectServerGold

Version 2.02.00 (Firmware)
IOP80321, ARM 4/7/2006

PKG: CURVES( ALL-P )

SIG(gen): CURVES( ALL-P )

SIG(ver): CURVES( ALL-P )

SHS: Cert#457 SHS: Cert#184

"PCI HSM"

25 Sterling Commerce, Inc.
4600 Lakehurst Court
Dublin, Ohio 43016-2000
USA

-Garry Mayo
TEL: 469-524-2663
FAX: 469-524-2357

Connect:Direct (CSB) Implementation

Version 1.0
IBM z900 Central Processor w/ IBM z/OS version 1.6 4/7/2006

SIG(ver): CURVES( P-163 )

SHS: Cert#451

"Connect:Direct Secure+ is a cryptographic suite for Connect:Direct that adds enhanced security options such as mutual authentication, data encryption and cryptographic message integrity checking."

24 EmailFund, Inc.
Department of Mathematics
Yonsei University
Seoul, 120-749
Korea

-Sangmun Kim
TEL: +82 2 392 7768
FAX: +82 2 2123 4314

EmailFund Server

Version Beta 2.16.01
x86 platform w/ RedHat Linux 7.2; x86 platform w/ Redhat Linux 7.0 3/29/2006

SIG(ver): CURVES( K-283 B-233 )

SHS: Cert#448

"Beta version of wireless PKI security software product taking no longer than 900 ms for digital signature generation. The software performs the function of user authentication, non-repudiation, integrity and cryptographic primitives to secure wireless Internet transaction through a wireless communication device."

23 EmailFund, Inc.
Department of Mathematics
Yonsei University
Seoul, 120-749
Korea

-Sangmun Kim
TEL: +82 2 392 7768
FAX: +82 2 2123 4314

EmailFund Client

Version Beta 2.16.01
Motorola Dragonball EZ MC68EZ328 w/ Palm OS 3.3 3/29/2006

SIG(gen): CURVES( K-283 B-233 )

SHS: Cert#447

"Beta version of wireless PKI security software product taking no longer than 900 ms for digital signature generation. The software performs the function of user authentication, non-repudiation, integrity and cryptographic primitives to secure wireless Internet transaction through a wireless communication device."

22 Sharp Laboratories of Europe Ltd.
Edmund Halley Road
Oxford Science Park
Oxford, OX4 4GB
United Kingdom

-Anthony Hull
TEL: +44 1865 747711
FAX: +44 1865 714170

HAL/ECDSA

Version 1.1 (Firmware)
SM4128 chip 3/29/2006

SIG(gen): CURVES( P-192 P-224 P-256 P-384 )

SIG(ver): CURVES( P-192 P-224 P-256 P-384 )

SHS: Cert#446

"An implementation of the ECDSA signature generation and verification algorithms as specified in ANSI X9.62 - 1998."

21 SafeNet Canada, Inc.
20 Colonnade
Ottowa, ON K2E7M6
Canada

-Terry Fletcher
TEL: 613.221.5009

-Chris Holland

K3

Version 4.5.2 (Firmware)
Intel StrongARM II 3/22/2006

PKG: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#436
RNG: Cert# 174

"A hardware security module in PCI form factor that provides a PKCS #11 interface"

20 Francotyp-Postalia GmbH
Triftweg 21-26
Birkenwerder, 16547
Germany

-Clemens Heinrich
TEL: +49 3303 525 619
FAX: +49 3303 525 609

Postal Revenector Canada

Version 90.0036.0009.00/00 (Firmware)
Express Logic's ThreadX; Samsung S3C44B0X 11/28/2005

PKG: CURVES( P-192 )

SIG(gen): CURVES( P-192 )

SIG(ver): CURVES( P-192 )

SHS: Cert#400
RNG: Cert# 148

"The Postal Revenector Canada is a hardware security module (HSM) which provides security critical services for postage meters in the Canadian market. It is used to support new secure methods of applying postage."

19 Francotyp-Postalia GmbH
Triftweg 21-26
Birkenwerder, 16547
Germany

-Hasbi Kabacaoglu
TEL: +49 3303 525 656
FAX: +49 3303 525 609

Postal Revenector

Version 90.0036.0006.00/03 (Firmware)
Samsung S3C44B0 X w/ Express Logic's ThreadX 11/16/2005

PKG: CURVES( B-163 )

SIG(gen): CURVES( B-163 )

SHS: Cert#400
RNG: Cert# 148

"The Postal Revenector is an embedded hardware module which provides security-critical services for the Information Based Indicia Program (IBIP) of the United States Postal Service (USPS). It is used to support new secure methods of applying postage."

18 Pitney Bowes, Inc.
35 Waterview Drive
Shelton, CT 06484-8000
USA

-Douglas Clark
TEL: 203-924-3206
FAX: 203-924-3406

Cygnus X2 Postal Security Device

Version AAA (Firmware)
Part # 1M00 USA, 1M20 UK
Gatekeeper 3 (GK3) ASIC 11/4/2005

PKG: CURVES( P-192 )

SIG(gen): CURVES( P-192 )

SIG(ver): CURVES( P-192 )

SHS: Cert#395
RNG: Cert# 146

"The Pitney Bowes Cygnus X-2 Postal Security Device (PSD) has been designed in compliance with FIPS 140-2 and IPMAR security protection profile in order to support the USPS IBIP and international digital indicia standards globally. The PSD employs strong encryption, decryption, and digital signature techniques for the protection of customer funds in Pitney Bowes Postage Metering products."

17 Neopost Industrie
113 Rue Jean Marin Naudin
Bagneux, 92220
France

-Gary Steward
TEL: 00 33 1 45 36 5035
FAX: 00 33 1 45 36 3010

IJ 25 / WJ20

Version 4130171L_G00 (Firmware)
SH1 microcontroller (Hitachi) 11/2/2005

PKG: CURVES( P-192 )

SIG(gen): CURVES( P-192 )

SIG(ver): CURVES( P-192 )

SHS: Cert#392
RNG: Cert# 142

"The IJ25 is a Neopost low range franking product that incorporates a secure metering module for producing highly secure franking impressions to meet CPC requirements."

16 Neopost Industrie
113 Rue Jean Marin Naudin
Bagneux, 92220
France

-Gary Steward
TEL: 00 33 1 45 36 5035
FAX: 00 33 1 45 36 3010

C20ND meter

Version 30.19 (Firmware)
Pentium 4 11/2/2005

PKG: CURVES( P-192 )

SIG(gen): CURVES( P-192 )

SIG(ver): CURVES( P-192 )

SHS: Cert#391
RNG: Cert# 141

"The C20ND module is a postage meter supporting accounting and cryptographic functions including the generation of 2D barcodes with ECDSA signatures for secure electronic transactions. Associated with a document transport system and an inkjet print-head, the module is capable of processing up to 250 envelopes per"

15 Neopost Industrie
113 Rue Jean Marin Naudin
Bagneux, 92220
France

-Gary Steward
TEL: 00 33 1 45 36 5035
FAX: 00 33 1 45 36 3010

C94i/155

Version 4126898B A (Firmware)
SH2 microcontroller (Hitachi) 10/18/2005

PKG: CURVES( P-192 )

SIG(gen): CURVES( P-192 )

SIG(ver): CURVES( P-192 )

SHS: Cert#389
RNG: Cert# 38

"The IJ40/50 are Neopost mid range franking products that incorporate the FIPS Approved secure metering module for producing highly secure franking impressions to meet CPC requirements."

14 Research in Motion
295 Phillip Street
Waterloo, Ontario N2L 3W8
Canada

-Government Certifications Team
TEL: (519) 888-7465 ext. 2921
FAX: (519) 886-4839

BlackBerry Cryptographic Kernel Library

Version 3.8.0 (Firmware)
BlackBerry OS Ver 4.1.0 - ARM 7 Processor 32-bit 9/20/2005

SIG(ver): CURVES( K-571 )

SHS: Cert#264

"BlackBerry is the leading wireless enterprise solution that allows users to stay connected with secure, wireless access to email, corportate data, phone, web and organizer features. The BlackBerry Cryptographic Kernel is the software module that provides the base cryptographic functionality for the BlackBerry Wireless Handhelds."

13 Research in Motion
295 Phillip Street
Waterloo, Ontario N2L 3W8
Canada

-Government Certifications Team
TEL: (519) 888-7465 ext. 2921
FAX: (519) 886-4839

BlackBerry Cryptographic API Library

Version 4.1 (Firmware)
32-bit ARM7 Processor 9/9/2005

PKG: CURVES( ALL-P )

PKV: CURVES( ALL-P )

SIG(gen): CURVES( ALL-P )

SIG(ver): CURVES( ALL-P )

SHS: Cert#365
RNG: Cert# 115

"BlackBerry is the leading wireless enterprise solution that allows users to stay connected with secure, wireless access to email, corporate data, phone, web and organizer features. BlackBerry is a totally integrated package that includes hardware, software and service, providing a complete end-to-end solution. The BlackBerry Cryptographic API is the firmware module that provides advanced cryptographic functionality to BlackBerry Wireless Handhelds."

12 Neopost Industrie
113 Rue Jean Marin Naudin
Bagneux, 92220
France

-Gary Steward
TEL: 00 33 1 45 36 5035
FAX: 00 33 1 45 36 3010

N94i/155 (OLS-2) meter

Version 4126898B A (Firmware)
SH2 microcontroller (Hitachi) 9/9/2005

PKG: CURVES( P-163 )

SIG(gen): CURVES( P-163 )

SIG(ver): CURVES( P-163 )

SHS: Cert#41
RNG: Cert# 38

"The IJ40/50/60 are Neopost mid-range of franking products that incorporate the secure metering module for producing highly secure franking impressions to meet USPS postal requirements. These products are not connected to Neopost on line services server for greater customer options including e-confirmation for mail tracking."

11 RSA Security, Inc.
2955 Campus Drive, Suite 400
San Mateo, CA 94403
USA

-Kathy Kriese
TEL: 650-295-7692

RSA BSAFE® Crypto-C Micro Edition (ME)

Version 2.0
Intel PXA255 w/ PocketPC 2003; Intel Celeron w/ Microsoft Windows XP SP2; Motorola MPC 7455 w/ VxWorks 5.4, PowerPC 604; Motorola MPC 8260 w/ VxWorks 5.5, PowerPC 603; Motorola MPC 7455 w/VxWorks 5.5, PowerPC 604; SPARC IIe w/ Sun Microsystems Solaris 8 (Sun OS 5.8) Sparc V9; SPARC IIe w/ Sun Microsystems Solaris 8 (Sun OS 5.8) Sparc V8+; SPARC IIe w/ Sun Microsystems Solaris 8 (Sun OS 5.8) SPARC V8; Intel Pentium 4 w/ Red Hat Linux 7.2; AMD Athlon 800 w/ Red Hat Enterprise Linux AS 3.0; Intel Itanium 2 w/ HP-UX 11.23 Itanium2, 64-bit; IBM Power5 (2-way) w/ AIX 5L v5.x, 32-bit; PA-RISC PA8500 2.0 w/ HP-UX 11.11; PA-RISC PA8500 2.0W w/ HP-UX 11.23 8/26/2005

PKG: CURVES( ALL-P ALL-K ALL-B )

PKV: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#380
RNG: Cert# 130

"The Crypto-C Micro Edition (ME) Module is RSA Security, Inc.'s cryptographic library designed for securing mobile devices like wireless phones and personal digital assistants. It contains assembly-level optimizations on key wireless processors while offering great flexibility and choice by allowing developers to select only the algorithms needed in reduced code sizes. Its functionality includes a wide range of data encryption and signing algorithms, including Triple-DES, the Advanced Encryption Standard (AES) algorithm, the RSA Public Key Cryptosystem, the DSA government signature algorithm, MD5 and SHA1 message digest routines, and more."

10 SPYRUS, Inc.
2355 Oakland Road, Suite 1
San Jose, CA 95131
USA

-Tom Dickens
TEL: (408) 953-0700
FAX: (408) 953-9835

ECDSA Key Generation, Sign/Verify 256, 384, 521

Version 2.2 (Firmware)
ARM7-TDMI Processor 9/13/2005

PKG: CURVES( P-256 P-384 P-521 )

PKV: CURVES( P-256 P-384 P-521 )

SIG(gen): CURVES( P-256 P-384 P-521 )

SIG(ver): CURVES( P-256 P-384 P-521 )

SHS: Cert#373
RNG: Cert# Non-Approved but allowed for use.

"The LYNKS Series II Hardware Security Module (HSM) supports the new "Suite B" algorithms, including elliptic curve cryptography with ECDSA signatures, AES, and the "SHA-2" algorithms. Available with either PCMCIA or USB interfaces."

Non-Approved but allowed for use.

9 Research in Motion
295 Phillip Street
Waterloo, Ontario N2L 3W8
Canada

-Government Certifications Team
TEL: 519-888-7465 x2921
FAX: 519-886-4839

BlackBerry Cryptographic Kernel Library

Version 3.8.3 (Firmware)
32-bit ARM7 Processor 8/3/2005

SIG(ver): CURVES( K-571 )

SHS: Cert#365

"BlackBerry is the leading wireless enterprise solution that allows users to stay connected with secure, wireless access to email, corporate data, phone, web and organizer features. BlackBerry is totally integrated package that includes hardware, software and service, providing a complete end-to-end solution. The BlackBerry Cryptographic Kernel is the firmware module that provides the core cryptographic functionality to BlackBerry Wireless Handhelds."

8 Research in Motion
295 Phillip Street
Waterloo, Ontario N2L 3W8
Canada

-Government Certifications Team
TEL: 519-888-7465 ext. 2921
FAX: 519-886-4839

BlackBerry Enterprise Server Cryptographic Library

Version 3.0
Intel Pentium 4 Processor w/ Windows 2000 Service Pack 4 7/20/2005

PKG: CURVES( P-521 K-571 )

SIG(gen): CURVES( P-521 K-571 )

SIG(ver): CURVES( P-521 K-571 )

SHS: Cert#363
RNG: Cert# 114

"BlackBerry is the leading wireless enterprise solution that allows users to stay connected with secure, wireless access to email, corporate data, phone, web and organizer features. BlackBerry is a totally integrated package that includes hardware, software and service, providing a complete end-to-end solution. The BlackBerry Enterprise Server Cryptographic Kernel is the software module that provides the core cryptographic functionality to the BlackBerry Enterprise Server."

7 Certicom Corporation
Certicom Corporate Headquarters
5520 Explorer Drive, 4th Floor
Mississauga, ON L4W 5L1
Canada

-Atsushi Yamada
TEL: 905-501-3884
FAX: 905-507-4230

-Randy Tsang
TEL: 905-501-3789
FAX: 905-507-4230

Security Builder National Security Edition (SB NSE) Cryptographic Core

Version 1.0
x86 w/ Windows 2003; x86 processor w/ Linux platform 3/23/2005

PKG: CURVES( ALL-P ALL-K ALL-B )

PKV: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#326
RNG: Cert# 85

"Security Builder NSE (National Security Edition) is a standards-based cryptographic toolkit that covers the technology that was part of the 26 patents licensed by the NSA from Certicom. It also includes optimized implementations of Elliptic Curve Cryptography to ensure future approval. Security Builder NSE is part of the Certicom Security Architecture, a comprehensive modular and portable security solution which supports multiple cryptographic software and hardware providers with a single common API. Security Builder NSE can also be used in conjunction with other Certicom toolkits which include Security Builder Crypto, Security Builder ETS, Security Builder IPSec and Security Builder BSP, Security Builder PKI and Security Builder SSL."

6 Certicom Corporation
Certicom Corporate Headquarters
5520 Explorer Drive, 4th Floor
Mississauga, ON L4W 5L1
Canada

-Mike Harvey
TEL: 905-507-4220
FAX: 905-507-4230

SB GSE-J Crypto Core

Version 2.0
Java Virtual Machine (JVM) on a Windows 2003, x86 (Binary compatible to Windows 98/2000/XP) Platform;Java Virtual Machine (JVM) under Solaris, on a SPARC 32-bit and 64-bit Processor;Java Virtual Machine (JVM) Red Hat Linux Application Server 3.0 (Binary compatible to AS 2.1), on a 32-bit x86 Processor 2/16/2005

PKG: CURVES( ALL-P ALL-K ALL-B )

PKV: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#307
RNG: Cert# 68

"Security Builder GSE-J is a standards-based cryptographic toolkit written in Java. It supports optimized Elliptic Curve Cryptography and provides application developers with sophisticated tools to flexibly integrate encryption, digital signatures and other security mechanisms into Java-based applications. Security Builder GSE is intended for use by developers who want government level security and can also be used in conjunction with other Certicom developer toolkits including Security Builder PKI and Security Builder SSL."

06/14/07: Add new OES;

5 Wei Dai
13440 SE 24th Street
Bellevue, WA 98005
USA

-Wei Dai
TEL: (425) 562-9677

Crypto++ Library

Version 5.2.3
Intel Pentium 4 1.6GHz w/ Windows 2000 Professional 1/28/2005

PKG: CURVES( ALL-P ALL-K ALL-B )

PKV: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#134
RNG: Cert# 61

"The Crypto++ Library is a free, open source C++ class library providing public key encryption, digital signatures, symmetric ciphers, hash functions, message authentication codes, and other cryptographic algorithms."

4 Research in Motion
295 Phillip Street
Waterloo, Ontario N2L 3W8
Canada

-Government Certifications Team
TEL: (519) 888-7465 ext. 2921
FAX: (519) 886-4839

BlackBerry Cryptographic API Library

Version 4.0 (Firmware)
32-bit ARM 7 Processor w/ BlackBerry Operating System Version 4.0 1/25/2005

PKG: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#264 SHS: Cert#296
RNG: Cert# 27

"BlackBerry® is the leading wireless enterprise solution that allows users to stay connected with secure, wireless access to email, corporate data, phone, web and organizer features. BlackBerry® is a totally integrated package that includes hardware, software and service, providing a complete end-to-end solution. The BlackBerry® Cryptographic API provides advanced cryptographic functionality for BlackBerry® Wireless Handhelds.."

SHA 224 and SHA 384: SHA#296; Other SHA sizes: SHA#264

3 SafeNet Canada, Inc.
20 Colonnade
Ottowa, ON K2E7M6
Canada

-Terry Fletcher
TEL: 613.723.5076, x3438
FAX: 613.274.6365

SafeNet Luna PCI

Version 4 (Firmware)
Processor: Strong Arm II, 80200, 600 Mhz; OS: N/A; Hardware: Platform: VBD-02-0200 10/12/2004

PKG: CURVES( ALL-K ALL-B P-192 P-224 P-384 P-521 )

SIG(gen): CURVES( ALL-K ALL-B P-192 P-224 P-384 P-521 )

SIG(ver): CURVES( ALL-K ALL-B P-192 P-224 P-384 P-521 )

SHS: Cert#270
RNG: Cert# 37

"Protects and manages cryptographic keys and accelerates cryptographic operations"

2 nCipher Corporation Ltd.
Jupiter House, Station Road
Cambridge, CB1 2JD
United Kingdom

-Marcus Streets
TEL: +44 (0) 1223 723600
FAX: +44 (0) 1223 723601

nCipher Algorithm Library

Version 4.0 (Firmware)
Motorola Power PC running a proprietary Operating System 10/12/2004

PKG: CURVES( ALL-P ALL-K ALL-B )

PKV: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#255
RNG: Cert# 20

"The nCipher algorithm library provides cryptographic functionality for nCipher's secure e-commerce accelerators and Hardware Security Modules."

10/07/04: Update version of library to 4.0;

1 Certicom Corporation
Certicom Corporate Headquarters
5520 Explorer Drive, 4th Floor
Mississauga, ON L4W 5L1
Canada

-Atsushi Yamada
TEL: 905-507-4220
FAX: 905-507-4230

-Randy Tsang
TEL: 905-507-4220
FAX: 905-507-4230

Security Builder GSE Crypto Core

Version 2.0
x86 w/ Linux 32-bit; Itanium w/ Linux 64-bit; x86 w/ Win2003 32-bit; Itanium w/ Win2003 64-bit; PowerPC w/Unix 32 & 64-bit; SPARC w/ Solaris 32 & 64-bit; RISC w/ Unix 32 & 64-bit; Itanium w/ Unix 64-bit; ARM processor W/ Windows CE 3.0; ARM processor w/ Symbian 9; x86 Processor w/ Linux 64 bit; x86 w/ WindowsXP 64 bit; X86 processor w/ Windows Vista; Intel Core 2 w/ Windows Vista 64 bit; Intel Itanium 2 w/ HPUX B11 32-bit IA64; Intel Pentium III w/ Solaris 8 32 Bit; AMD Opteron w/ Solaris 10 64 Bit; IBM PowerPC 5 w/ Redhat Linux AS 4.0 32 bit; IBM PowerPC 5 w/ Redhat Linux AS 4.0 64 bit 10/14/2004

PKG: CURVES( ALL-P ALL-K ALL-B )

PKV: CURVES( ALL-P ALL-K ALL-B )

SIG(gen): CURVES( ALL-P ALL-K ALL-B )

SIG(ver): CURVES( ALL-P ALL-K ALL-B )

SHS: Cert#260
RNG: Cert# 25

"Security Builder GSE is a standards-based cryptographic toolkit that supports optimized Elliptic Curve Cryptography and provides application developers with sophisticated tools to flexibly integrate encryption, digital signatures and other security mechanisms into both mobile and server-based applications."

06/15/07: Add new OES;
07/10/07: Update OES;
08/30/07: Add new OS;
04/24/08: Add new OES' - tested with CAVS Tool V6.1;
05/22/08: Add new OES';


Need Assistance?

Computer Security Division
National Institute of Standards and Technology