Advanced Encryption Standard Algorithm Validation List

Last Update: 8/19/2008

The page provides technical information about implementations that have been validated as conforming to the Advanced Encryption Standard (AES) Algorithm, as specified in Federal Information Processing Standard Publication 197, Advanced Encryption Standard.

The list below describes implementations which have been validated as correctly implementing the AES algorithm, using the tests found in The Advanced Encryption Standard Algorithm Validation Suite (AESAVS). This testing is performed by NVLAP accredited Cryptographic Module Testing (CMT) laboratories.

The implementations below consist of software, firmware, hardware, and any combination thereof. The National Institute of Standards and Technology (NIST) has made every attempt to provide complete and accurate information about the implementations described in this document. However, due to the possibility of changes made within individual companies, NIST cannot guarantee that this document reflects the current status of each product. It is the responsibility of the vendor to notify NIST of any necessary changes to its entry in the following list. A validation certificate issued to each vendor also indicates 1) the CMT laboratory that tested the implementation, and 2) the operating environment used to test the implementation (if software or firmware).


This list is ordered in reverse numerical order, by certificate number. Thus, the more recent validations are located closer to the top of the list. The column after the Validation Date column contains information indicating what modes and features for these modes has been successfully tested.

For the original modes of operation (ECB, CBC, CFB, OFB), this information consists of the modes of operation tested (e.g., ECB, CBC, CFB, OFB), states (encryption(e) and/or decryption(d)), and key sizes (128-bit, 192-bit, and/or 256-bit) for which the implementation was validated. For Counter (CTR) mode, the counter source (internal(int) and/or external(ext)) is also indicated.

For the authenticate encryption mode of operation CCM, this information consists of the following:

Legend for Description Field

Key Sizes Tested 128, 192, 256
Associated Data Length Range Tested Minimum - Maximum, 2^16

The values listed indicate the formatting of the Associated Data cases that were tested (Refer to Appendix A.2.2 of SP800-38C):

* If Minimum = 0, the formatting case where Associated Data Length (Alen) = 0 is tested.
* If values ranging from 1 to 32 are listed, the formatting case where 0 < Alen < 2^16 - 2^8 is tested.
* If 2^16 is listed, the formatting case where 2^8 < Alen < 2^32 is tested.

Payload Length Range Tested Minimum - Maximum
Nonce Length(s) tested 7, 8, 9, 10, 11, 12, 13
Tag Length(s) tested 4, 6, 8, 10, 12, 14, 16

For the CMAC authentication mode of operation, this information consists of the key sizes (128-bit, 192-bit, and/or 256-bit) (KS 128,192,256) for which the implementation was validated.

Advanced Encryption Standard (AES) Algorithm Validated Implementations

Cert# Vendor Implementation
Operational
Environment
Val.
Date
Modes/States/Key sizes/
Description/Notes
849 Gesellschaft für sichere Mobile Kommunikation mbH
10117
Berlin, N/A N/A
Germany

-Bjöern Rupp
TEL: +49 700 2797 8835

-Frank Rieger
TEL: +49 700 2797 8835

CryptoPhone Cryptographic Library

Version 2.0
ARM9 w/ Microsoft Windows Mobile 5.0; ARM11 w/ Microsoft Windows Mobile 6.1; VIA C3 w/ Microsoft Windows XP Embedded (SP2) 8/15/2008 ECB(e/d; 256); CBC(e/d; 256); CFB128(e/d; 256); OFB(e/d; 256); CTR(ext only; 256) 

CCM (KS: 256 )
(Assoc. Data Len Range: 0 - 0 , 2^16 )
(Payload Length Range: 0 - 32 )
( Nonce Length(s): 7 8 9 10 11 12 13 )
(Tag Length(s): 8 10 12 16 )

"The CryptoPhone Cryptographic Library provides cryptographic services for the CryptoPhone Security Kernel, which is a portable multi-platform cryptographic module that provides strong encryption, authentication, key exchange, message integrity verification, and secure memory abstraction services to GSMK CryptoPhone encryption products."

848 Technical Communications Corporation
100 Domino Drive
Concord, MA 01742
USA

-Fidel Camero
TEL: +1 (978) 287-6303
FAX: +1 (978) 371-1280

CipherTalk Cryptographic Library

Version 2.0
ARM9 w/ Microsoft Windows Mobile 5.0; ARM11 w/ Microsoft Windows Mobile 6.1; VIA C3 w/ Microsoft Windows XP Embedded (SP2) 8/15/2008 ECB(e/d; 256); CBC(e/d; 256); CFB128(e/d; 256); OFB(e/d; 256); CTR(ext only; 256) 

CCM (KS: 256 )
(Assoc. Data Len Range: 0 - 0 , 2^16 )
(Payload Length Range: 0 - 32 )
( Nonce Length(s): 7 8 9 10 11 12 13 )
(Tag Length(s): 8 10 12 16 )

"The CipherTalk Cryptographic Library provides cryptographic functionality for the CipherTalk® 8000 Cryptographic Module, which is an Operating System Agnostic cipher engine that offers services that include encryption and key exchange algorithms, authentication algorithms, and integrity and verification algorithms."

847 CommVault Systems Inc.
2 Crescent Place
Oceanport, NJ 07746
USA

-Zahid Ilkal
TEL: (732) 870-4812
FAX: (732) 870-4545

-Andrei Erofeev
TEL: (732) 870-4950
FAX: (732) 870-4545

CommVault Crypto Library

Version 1.0
Intel Core2 Duo w/ Microsoft Windows 2003; Intel Core2 Duo w/ Redhat Linux 5.0; UltraSPARC II w/ Sun Solaris 10 8/15/2008 ECB(e/d; 128,256); CBC(e/d; 128,256) 

"CommVault Crypto Library (CVCL) is a cryptographic software module used in various CommVault products. The module provides key generation, symmetric and asymmetric encryption, hash, HMAC and signature generation/verification services."

846 SPYRUS, Inc.
1860 Hartog Drive
San Jose, CA 95131-2203
USA

-Tom Dickens
TEL: 408-392-5124
FAX: 408-392-0319

Hydra PC Series II FPGA

Part # 117070002
N/A 8/15/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256); CTR(ext only; 128,192,256) 

"The Hydra Privacy Card (Hydra PC) Series II, Personal Encryption Device and Enterprise Edition, is a multifunctional USB security device combining security token and portable secure storage drive features with the strongest hardware-based encryption technology commercially available for protection of user data files."

845 Accellion, Inc.
750 A Chai Chee Road
Singapore, #08-01A 469001
Singapore

-Prateek Jain
TEL: 65-6244-5670
FAX: 65-6244-5678

AES

Version 0.9.8
Dual Xeon QuadCore w/ Linux derived from Red Hat Enterprise v5.1 8/8/2008 CBC(e/d; 128,256) 

"Accellion TLSv1 implementation uses the AES in the cipher suite for secure web communication."

844 Accellion, Inc.
750 A Chai Chee Road
Singapore, #08-01A 469001
Singapore

-Prateek Jain
TEL: 65-6244-5670
FAX: 65-6244-5678

AES

Version 2.5.7
Dual Xeon QuadCore w/ Linux derived from Red Hat Enterprise v5.1 8/8/2008 CBC(e/d; 128) 

"Accellion web management application uses the AES (Rijndael) implementation in CBC mode with key size of 128 bits. The algorithm is used to encrypt/decrypt backups/diagnostic dumps. It is also used for license and a particular API parameters decryption."

843 Accellion, Inc.
750 A Chai Chee Road
Singapore, #08-01A 469001
Singapore

-Prateek Jain
TEL: 65-6244-5670
FAX: 65-6244-5678

AES

Version 0.05
Dual Xeon QuadCore w/ Linux derived from Red Hat Enterprise v5.1 8/8/2008 ECB(d only; 128) 

"Accellion download API decrypts the file attachment using the AES (Rijndael) implementation in ECB mode with key size of 128 bits during download process."

842 SPYRUS, Inc.
1860 Hartog Drive
San Jose, CA 95131-2203
USA

-Tom Dickens
TEL: 408-392-4324
FAX: 408-392-0319

-Reid Carlisle
TEL: 727-551-0046
FAX: 408-392-0319

SPYCOS®

Version SPYCOS Series 2 (Firmware)
Infineon SLE66CX642P Security Controller 8/8/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256) 

"The SPYCOS® Series 2 is the latest addition to the SPYRUS family of cryptographic module ICs enabling both smart card and USB cryptographic tokens. It provides security critical capabilities in user authentication, message privacy and integrity, authentication, and secure storage in an IC form factor."

841 EgisTec
7F, No. 158 Sec 2
Gongdao 5th Rd
n/a
Hsinchu City, Taiwan 300
Republic of China

-Edward Chen
TEL: 886-3-572-3187 x8820
FAX: 866-3-572-3197

-Dragon Fu
TEL: 886-3-572-3187 x8831
FAX: 866-3-572-3197

Power AES

Version 1.0
Intel Core 2 Duo w/ Windows Vista Ultimate w/ SP1 8/8/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256); CFB128(e/d; 128,192,256); OFB(e/d; 128,192,256); CTR(ext only; 128,192,256) 

"Power AES is a compact and fast encryption library that provides an Application Programming Interface (API) for PC application, especially, Power AES can be combined with Biometrics devices to achieve no-password and bio-key-generation performance."

840 Oberthur Technologies
4250 Pleasant Valley Road
Chantilly, VA 20151
USA

-Christophe Goyet
TEL: 703-263-0100
FAX: 703-263-0503

AES for ID-One Cosmo v7 N

Version FC10 (Firmware)
Part # B0
ID-One Cosmo v7.0 N 8/8/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256) 

"The ID-One Cosmo Smart Card Platform is a single chip multi-application cryptographic module that offers a highly secure architecture together with cryptographic services such as 3DES (128,192), AES (128,192,256), RSA (1024, 1536, 2048) with X9.31 onboard key generation, SHA (1,224,256,384,512), ECDSA (GFP,192,224,256,384,521) & Elliptic Curve DH."

839 Hewlett-Packard
11445 W. Compaq Center Dr.
Houston, TX 77070
USA

-Rick Sellers
TEL: 281-514-5799

AES

Version 1.0 (Firmware)
Part # L6A0185
ARM926EJS 8/4/2008 ECB(e only; 256) 

"HP StorageWorks LTO-4 Ultrium 1840 Tape Drive provides mid-market and enterprise customers up to 1.6TB compressed storage capacity per cartridge with built-in AES 256-bit hardware data encryption to provide easy-to-enable security and prevent unauthorized access of encrypted tape cartridges."

838 N/A N/A N/A 8/4/2008 N/A
837 N/A N/A N/A 8/4/2008 N/A
836 Hewlett-Packard
11445 W. Compaq Center Dr.
Houston, TX 77070
USA

-Rick Sellers
TEL: 281-514-5799

AES

Version 1.0 (Firmware)
Part # L6B0185
ARM926EJS 8/4/2008 ECB(e only; 256) 

"HP StorageWorks LTO-4 Ultrium 1840 Tape Drive provides mid-market and enterprise customers up to 1.6TB compressed storage capacity per cartridge with built-in AES 256-bit hardware data encryption to provide easy-to-enable security and prevent unauthorized access of encrypted tape cartridges."

835 Vocera Communications, Inc.
525 Race Street
San Jose, CA 95126
USA

-Arun Mirchandani
TEL: 408-882-5100
FAX: 408-882-5101

Vocera Communications Badge B2000 Security Engine

Version 1 (Firmware)
OMAP5912 and Marvell 88W8686 7/25/2008 ECB(e/d; 128) 

CCM (KS: 128 )
(Assoc. Data Len Range: 15 - 30 )
(Payload Length Range: 1 - 32 )
( Nonce Length(s): 13 )
(Tag Length(s): 8

"The Vocera Communications Badge is a small, wearable, wireless device that provides a voice-controlled user interface to the Vocera Communications System. The Badge enables immediate, hands-free conversations among people at the point of care or service. It contains a speaker, microphone, wireless radio, and a high-contrast OLED display."

834 Toshiba Corporation
1 - 1, Shibaura 1-chome, Minato-ku
Tokyo, Tokyo 105-8001
Japan

-Yichang Chan
TEL: 510-226-2915
FAX: 510-687-1154

AES-256

Version 1.16 (Firmware)
Toshiba Proprietary SoC 7/25/2008 CBC(e/d; 256) 

"Toshiba Secure Cryptographic Suite (TSCS) is a library of unique hardware and software cipher solutions which are standard encryption algorithm-based to provide Toshiba products and the systems using them a robust and secure data storage environment."

833 Toshiba Corporation
1 - 1, Shibaura 1-chome, Minato-ku
Tokyo, Tokyo 105-8001
Japan

-Yichang Chan
TEL: 510-226-2915
FAX: 510-687-1154

Hard Disk Drive AES

Part # H5.1
N/A 7/25/2008 ECB(e/d; 128); CBC(e/d; 128); CTR(ext only; 128) 

"Toshiba Secure Cryptographic Suite (TSCS) is a library of unique hardware and software cipher solutions which are standard encryption algorithm-based to provide Toshiba products and the systems using them a robust and secure data storage environment."

832 N/A N/A N/A 7/25/2008 N/A
831 N/A N/A N/A 7/25/2008 N/A
830 Proxim Wireless Corporation
1561 Buckeye Drive
Milpitas, CA 95035
USA

-Cor van de Water
TEL: 408-383-7626
FAX: 408-383-7680

-Gordon Poole
TEL: 408-306-5622

Tsunami MP.11 HS 245054-R and HS 245054-S Cryptographic Implementation

Version 1.0.0 (Firmware)
Freescale MPC8241LVR166D 7/18/2008 ECB(e/d; 128,256); CBC(e/d; 128,256); CFB128(e/d; 128,256) 

"Proxim Tsunami MP.11 245054-R and 245054-S wireless products offer fixed and mobile WiMAX capabilities to distribute wireless broadband access supporting video, voice, and data applications. In FIPS mode, the modules support proprietary WORP protocol for wireless transmission and TLS, SSH, and SNMP for management."

829 Thales e-Security
2200 North Commerce Parkway
Suite 200
Weston, FL 33326
USA

-Juan Asenjo
TEL: 954-888-6200 x6202
FAX: 954-888-6211

Datacryptor AES

Version DHAES256_V1_36 (Firmware)
Motorola Coldfire 7/18/2008 ECB(e/d; 256); CBC(e/d; 256); CFB8(e/d; 256) 

"The Datacryptor® Advanced Performance Cryptographic Modules secure communications using signed Diffie-Hellman key exchange and Triple-DES or AES encryption over IP (up to 100 Mbps) networks."

828 Thales e-Security
2200 North Commerce Parkway
Suite 200
Weston, FL 33326
USA

-Juan Asenjo
TEL: 954-888-6200 x6202
FAX: 954-888-6211

Datacryptor AES

Version DHAES192_V1_37 (Firmware)
Motorola Coldfire 7/18/2008 ECB(e/d; 192); CBC(e/d; 192); CFB8(e/d; 192) 

"The Datacryptor® Advanced Performance Cryptographic Modules secure communications using signed Diffie-Hellman key exchange and Triple-DES or AES encryption over IP (up to 100 Mbps) networks."

827 Thales e-Security
2200 North Commerce Parkway
Suite 200
Weston, FL 33326
USA

-Juan Asenjo
TEL: 954-888-6200 x6202
FAX: 954-888-6211

Datacryptor AES

Version DHAES128_V1_46 (Firmware)
Motorola Coldfire 7/18/2008 ECB(e/d; 128); CBC(e/d; 128); CFB8(e/d; 128) 

"The Datacryptor® Advanced Performance Cryptographic Modules secure communications using signed Diffie-Hellman key exchange and Triple-DES or AES encryption over IP (up to 100 Mbps) networks."

826 Teletec Corporation
5617-107 Departure Drive
Raleigh, NC 27616
US

-Diane Hunter
TEL: 919-954-7300
FAX: 919-954-7500

-Harry Taji
TEL: +962 65824941
FAX: +962 65844950

TL905 Cryptographic Library

Version 1.10 (Firmware)
TMS320VC5470, ARM7TDMI Subsystem 7/18/2008 ECB(e/d; 256); OFB(e/d; 256) 

"A cryptographic algorithm library developed for TL905 module that includes implementations of: AES block cipher that works in ECB and OFB modes, ANSI X9.31 RNG based on AES and HMAC-SHA-1 hashed MAC function."

825 BlockMaster AB
Jutahusgatan 8
Lund, Lund 222 29
Sweden

-Johan Soderstrom
TEL: +46 4627 65100

BlockMaster AES

Version 01.05.10 (Firmware)
Part # BM7741
BM7741 7/18/2008 CBC(e/d; 128) 

"The hardware AES encryption/decryption module used in BlockMaster SafeStick secure USB flash drives."

824 RSA, The Security Division of EMC
228 South Street
Hopkinton, MA 01748
USA

-Jeff Stone
TEL: 508-249-1189

-Nirav Mehta
TEL: 508-249-2964

RSA BSAFE® Crypto-Kernel

Version 1.3
Intel Celeron (x86) w/ Windows Server 2003 SP2 (32-bit); AMD Athlon X2 (x64) w/ Windows Server 2003 SP2 (64-bit); Intel Itanium2 w/ Windows Server 2003 SP2 (64-bit) 7/18/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256) 

"RSA BSAFE® Crypto Kernel provides core cryptographic functionality optimized for very small code size and speed to meet the needs of the most constrained environments. It is the cryptographic foundation for RSA BSAFE security products designed for C/C++ developers."

823 Aruba Networks, Inc.
1322 Crossman Ave.
Sunnyvale, CA 94089-1113
USA

-Harsha Nagaraja
TEL: 408-754-3010

Aruba Networks Cryptographic Firmware Library

Version 1.1 (Firmware)
RMI-XLR 7/11/2008 CBC(e/d; 128,192,256) 

"Cryptographic Firmware Library provides cryptographic algorithm implementations for purpose built Aruba's Mobility controller. Firmware library provides implementations for TDES, AES, SHA1, HMAC, RSA, and RNG(ANSI X9.31)"

822 LiteScape Technologies, Inc.
1000 Bridge Parkway, Suite 200
Redwood Shores, CA 94065
USA

-Kayvan Alikhani

SPAR Executable

Version 1.0.7 (Firmware)
Atmel ARM 7 7/11/2008 ECB(e/d; 256) 

"SPAR (Secure Personal Authentication Reader) is a multi-factor authentication device that provides RFID, Biometric and Magnetic-card interfaces. Using the SPAR at the edge of VOIP networks when coupled with devices such as IP phone terminals dramatically increases the security, validation and personalization process for business applications."

821 Digi International, Inc.
11001 Bren Road East
Minnetonka, MN 55343
USA

-Brian O’Rourke
TEL: (952) 912-3444
FAX: (952) 912-4952

Digi Passport FIPS

Version 1.0 (Firmware)
MPC880VR133 7/11/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256); CFB8(e/d; 128,192,256); CFB128(e/d; 128,192,256); OFB(e/d; 128,192,256) 

"The latest entry in Digi's advanced console management line, the Digi Passport provides secure remote access to the console ports of computer systems and network equipment. In addition to conventional serial console connections, the Digi Passport connects to the service processors of the leading server vendors."

820 Mobile Armor, Inc
400 South Mills Wood Rd
Suite 300
Chesterfield, MO 63017
USA

-Brian Wood
TEL: 443-468-1238
FAX: 314-590-0995

Mobile Armor Cryptographic Module

Version 3.0
Intel Core 2 Duo w/ Apple OS X 10.5; Intel Core 2 Duo w/ Fedora Core 8; Intel Core 2 Duo w/ Red Hat Linux Enterprise 5.1; Intel Core 2 Duo w/ SUSE 10; Intel Core 2 Duo w/ Ubuntu 7.10; Intel Pentium D w/ Microsoft Windows 2000; ARM w/ Microsoft Windows Mobile 6; Intel Core 2 Duo w/ Microsoft Windows Vista; Intel Pentium D w/ Microsoft Windows XP; Intel Xscale w/ Palm OS 5.4 7/11/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256) 

"Provides cryptogaphic operations by performing reliable, high speed security services for Mobile Armor Data Protection for Full Disk Encryption of laptops, PCs and smartphones, and the encryption of files, folders and removable media on those devices."

819 Motorola, Inc.
1301 E. Algonquin Road
Schaumburg, IL 60196
USA

-Kirk Mathews
TEL: 847-576-4101

Motorola Advanced Crypto Engine (MACE) AES256 Encryption Algorithm

Version R01.00.00 (Firmware)
Part # 5185912Y01
Motorola Advanced Crypto Engine (MACE) 7/3/2008 ECB(e/d; 256); CBC(e/d; 256); CFB8(e/d; 256); OFB(e/d; 256) 

""The MACE cryptographic processor is used in security modules embedded in Motorola's Astro (TM) family of radio system products. It provides secure voice and data capabilities as well as APCO Over-The-Air-Rekeying and advanced key management.""

818 Microsoft Corporation
One Microsoft Way
Redmond, WA 98052-6399
USA

-Dave Friant
TEL: 425-704-7984
FAX: 425-936-7329

Windows Server 2003 Enhanced Cryptographic Provider (RSAENH)

Version 5.2.3790.4313
Intel Celeron w/ Windows Server 2003 SP2 (x86); AMD Athlon X2 w/ Windows Server 2003 SP2 (x64); Intel Itanium2 w/ Windows Server 2003 SP2 (IA64) 7/3/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256) 

"The Microsoft Enhanced Cryptographic Provider, designed for FIPS 140-2 compliance, is a software-based, cryptographic module. RSAENH encapsulates several different cryptographic algorithms (including SHS, TDES, AES, RSA, SHS-based HMAC) in a cryptographic module accessible via the Microsoft CryptoAPI."

817 SecurStar GmbH
Furstenrieder Str. 270
München, n/a D-81377
Germany

-Wilfried Hafner
TEL: +49 (0)89-7106617-0
FAX: +49 (0)89-7106617-28

SecurStar AES

Version 2.32
Intel Core 2 Duo w/ Apple Mac OS X 10.5 7/3/2008 ECB(e/d; 256) 

"AES implementation 128 bit block size, 256 bit key, called in ECB mode, (encrypt and decrypt) with CBC implemented externally by the caller over 32 iterations to encrypt and decrypt a standard 512 byte disk sector. The algorithm can be ported to run on Windows operating environments (Windows 2000, XP, 2003 or Vista)."

816 Sun Microsystems
4150 Network Circle
Santa Clara, CA 95054
USA

-Mehdi Bonyadi
TEL: 858-625-5163

Sun Cryptographic Accelerator 6000

Version 1.0.10 (Firmware)
Intel 80333 7/3/2008 CBC(e/d; 128,192,256) 

"Cryptographic Acceleration Card"

815 ITT Corporation
44965 Aviation Dr.
Dulles, VA 20166
USA

-John Brown
TEL: 703-996-2900

Netburner AES Implementation

Version 1.0 (Firmware)
Motorola ColdFire MCF5272 Microprocessor 7/3/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256) 

"AES implementation for Netburner's Freescale ColdFire 5272-based Ethernet modules"

07/18/08: Update vendor POC information;

814 Kingston Technology Company
17600 Newhope Street
Fountain Valley, CA 92708
USA

-Joel Tang
TEL: (877) 546-4786

Kingston Kingvault

Part # 2231/2232
N/A 7/3/2008 ECB(e/d; 256) 

"As the world's leading memory manufacturer Kingston offers the marketplace a variety of secure USB devices designed to protect data at rest. By utilizing 256bit AES encryption via the Kingsafe application, the Kingston USB drives offer a high level of security certified to FIPS 140-2 standards. "

813 Vertex Standard Co., Ltd.
4-8-8 Nakameguro
Meguro-Ku, Tokyo 153-8644
Japan

-Yukimasa Tomita
TEL: 81-3-5725-6112
FAX: 81-3-5725-6201

AES for VSCM001

Version AES - 1.00.00 (Firmware)
Texas Instruments, Inc. TMS320VC54x series 7/3/2008 ECB(e/d; 256); OFB(e/d; 256) 

"Implementation of the AES algorithm described in FIPS 197 with ECB/OFB modes that will be used for the secure product of Vertex Standard."

812 AJA Video Systems, Inc.
443 Crown Point Circle
Grass Valley, CA 95945
USA

-Andy Witek
TEL: 530-271-3176
FAX: 530-274-9442

AES FPGA

Version 1.0 (Firmware)
Xilinx FPGA 7/3/2008 ECB(e/d; 128); CBC(e/d; 128) 

"An FPGA implementation of the AES algorithm."

811 Initio Corporation
2050 Ringwood Ave. Suite A
San Jose, CA 95131
USA

-Gang Zhao
TEL: 408-943-3189 x6118
FAX: 408-943-3100

Initio_SOC_datapath_AES128/256

Version 1.0 (Firmware)
Cadence LDV 3.0 Verilog simulator 7/3/2008 ECB(e/d; 128,256) 

"The AES 128/256 data encryption feature is implemented in the Initio’s USB to SATA bridge chip, it provides the data security and protection for the user on the storage enclosure application. It can be used under Windows and Mac systems."

810 RSA Security, Inc.
177 Bovet Road, Suite 200
San Mateo, CA 94402
USA

-Kathy Kriese
TEL: 650-931-9781

RSA BSAFE Crypto-C Micro Edition (ME)

Version 3.0
IBM Power3 w/ AIX 5L 5.3 (32-bit); IBM Power3 w/ AIX 5L 5.3 (64-bit); PA-RISC 2.0 w/ HP-UX 11i v1 (32-bit); PA-RISC 2.0W w/HP-UX 11i v2 (64-bit); Intel Itanium2 w/ HP-UX 11i v3 (32-bit); Intel Itanium2 w/ HP-UX 11i v3 (64-bit); Intel Celeron w/ Red Hat Enterprise Linux AS 4.0 (32-bit w/ LSB 3.0.3); Intel AMD Athlon X2 w/ Red Hat Enterprise Linux AS 5.0 (64-bit w/ LSB 3.0.3); SPARC V8 w/ Solaris 10 (32-bit); SPARC V8+ w/ Solaris 10 (32-bit); SPARC V9 w/ Solaris 10 (64-bit); AMD Opteron w/ Solaris 10 (64-bit); PowerPC 603 w/ VxWorks 5.5; PowerPC 604 w/ VxWorks 5.5; PowerPC 604 w/ VxWorks 6.0; Intel PXA250 w/ Windows Mobile 2003; Intel PXA270 w/ Windows Mobile 5; Intel PXA270 w/ Windows Mobile 6.0; AMD Athlon X2 w/ Windows Server 2003 SP2 (64-bit w/ MT Static Wrap); Intel Itanium2 w/ Windows Server 2003 SP2 (64-bit w/ MT Static Wrap); Intel Itanium2 w/ Windows Server 2003 SP2 (w/ MD Dynamic Wrap); Intel Pentium M w/ Windows XP Professional SP2 (w/ MT Static Wrap); AMD Athlon X2 w/ Windows Vista Ultimate (32-bit w/ MD Dynamic Wrap); Intel Pentium D w/ Windows Vista Ultimate (64-bit w/ MD Dynamic Wrap) 7/3/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256); CFB128(e/d; 128,192,256); OFB(e/d; 128,192,256); CTR(ext only; 128,192,256) 

CCM (KS: 128 , 192 , 256 )
(Assoc. Data Len Range: 0 - 0 , 2^16 )
(Payload Length Range: 0 - 32 )
( Nonce Length(s): 7 8 9 10 11 12 13 )
(Tag Length(s): 4 6 8 10 12 14 16 )

"RSA BSAFE® Crypto-C ME software is designed to help protect sensitive data as it is stored using strong encryption techniques to provide a persistent level of protection. The software supports a wide range of industry standard encryption algorithms offering developers the flexibility to choose the appropriate option to meet their requirements."

809 Vormetric, Inc.
3131 Jay Street
Santa Clara, CA 95054
USA

-Phil Scott
TEL: 408-961-2509
FAX: 408-844-8638

-Frank Teruel
TEL: 408-961-6132
FAX: 408-844-8638

NetBackup MSEO Cryptographic Library

Version 1.0
AMD Opteron w/ Red Hat Enterprise Linux 4.0 Update 4 64 bit; Sun UltraSparc II w/ Solaris 8; Sun UltraSparc II w/ Solaris 9; Sun UltraSparc II w/ Solaris 10; Intel Xeon w/ Windows 2000 Advanced Server SP4; Intel Xeon w/ Windows 2003 Server Enterprise SP 32 bit; Intel Xeon w/ Windows 2003 Server Enterprise SP2 X64 Edition; Intel Itanium 2 w/ Windows 2003 Server Enterprise SP2 64-bit 7/3/2008 CBC(e/d; 128,192,256) 

"The Media Server Encryption Option (MSEO) Cryptographic Library provides cryptographic services to the Netbackup MSEO driver."

808 Attachmate Corporation
1500 Dexter Ave N
Seattle, WA 98109
USA

-Diana Agemura
TEL: 206-217-7495
FAX: 206-272-1487

-Scott Rankin
TEL: 206-217-7973
FAX: 206-272-1487

Attachmate Crypto Module

Version 2.0.40
Intel Xeon w/ Red Hat v4 (s390) on Hercules 3.05 on Red Hat v5; IBM s390 w/ SuSE Linux Enterprise Server 9; IBM Power5 w/ AIX 5.2; PA-RISC w/ HP-UX 11.11; Sun Ultra-SPARC w/ Solaris 8; Intel Itanium 2 w/ HP-UX 11i v3; Intel Itanium 2 w/ Red Hat Enterprise Linux v4; Intel Itanium 2 w/ Windows Server 2003 SP2; AMD Opteron w/ Solaris 10; AMD Opteron w/ SuSE Linux Enterprise Server 9.0; AMD Athlon64 x2 w/ Windows Server 2003 SP2; Intel Celeron w/ Solaris 10 (x86); Intel Pentium D w/ Red Hat Enterprise Linux v4; Intel Celeron w/ Windows Server 2003 SP2 7/3/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256); CFB128(e/d; 128,192,256); OFB(e/d; 128,192,256); CTR(ext only; 128,192,256) 

807 N/A N/A N/A 6/13/2008 N/A
806 BigFix, Inc.
1480 64th St.
Suite 200
n/a
Emeryville, CA 94608
USA

-Noah Salzman
TEL: 510-740-0308
FAX: 510-652-6742

-Peter Loer
TEL: 510-740-5158
FAX: 510-652-6742

BigFix Cryptographic Library

Version 1.0
IBM p610 using Power3-II CPU w/ AIX 5L for Power v5.2 Program Number 5765-E62; HP C3000 using 64-bit PA-8500 400 MHz CPU w/ HP-UX 11i; HP XW4100 using Intel Pentium 4 3GHz CPU w/ Red Hat Enterprise Linux 4 Update 2 (32-bit); HP Proliant DL145 G2 using AMD 64 Opteron 2GHz CPU w/ Red Hat Enterprise Linux 4 Update 2 (64-bit); Dell Precision 650 using Dual Xeon 3.0GHz CPU w/ Solaris 10 (x86); Sun Blade 150 using Ultraspace IIe 650MHz CPU w/ Solaris 10 (Sparc); Sun Blade 150 using Ultrasparc IIe 650MHz CPU w/ Solaris 9 (Sparc); IBM eServer 325 using Dual AMD Opteron 2GHz CPU w/ SuSE Linux Enterprise Server v9; Dell Optiplex GX400 using Pentium 4 CPU w/ Windows 2000 Pro SP3; Dell Optiplex GX270 using Pentium 4 CPU w/ Windows 2003 Enterprise Edition SP1; Dell Optiplex GX270 using Pentium 4 CPU w/ Windows XP Pro SP2; Mac OS X: iMac using PowerPC G4 CPU w/ Mac OS X 10.3.6 6/13/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256); CFB8(e/d; 128,192,256); CFB128(e/d; 128,192,256); OFB(e/d; 128,192,256) 

"The BigFix Cryptogrpahic Module is the software library used to support authentication, validation, and encryption routines for the BigFix 7 Platform."

07/18/08: Add new OES;

805 IBM Corporation
11400 Burnet Road
Austin, TX 78758
USA

-Kevin Driver
TEL: 512-838-1128
FAX: 512-838-8868

IBM Java JCE 140-2 Cryptographic Module

Version 1.3
Intel Pentium 4 w/ Windows XP Professional SP2 with IBM JVM 1.6.0 6/13/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256); CFB128(e/d; 128,192,256); OFB(e/d; 128,192,256) 

"The IBM Java JCE (Java Cryptographic Extension) FIPS provider (IBMJCEFIPS) for Multi-platforms is a scalable, multipurpose cryptographic module that supports many FIPS approved cryptographic operations. This gives Java applications access to the FIPS algorithms via the standard JCE framework that is part of all JVM's at the 1.4.0 level and higher."

804 Certicom Corp.
5520 Explorer Drive, 4th Floor
Mississauga, Ontario L4W 5L1
Canada

-Atsushi Yamada
TEL: 905-501-3884
FAX: 905-507-4230

-Rob Williams
TEL: 905-501-3887
FAX: 905-507-4230

Security Builder GSE-J Crypto Core

Version 2.2
Intel Core 2 Duo w/ Windows 2008 Server 64-bit w/ JRE 1.6.0; Intel Pentium III w/ Linux Redhat AS5 32 Bit w/ JRE 1.6.0; Intel Pentium D w/ Redhat Linux AS5 64 bit w/ JRE 1.6.0; Sun UltraSPARC III w/ Solaris 10 32 Bit w/ JRE 1.6.0; Sun UltraSPARC III w/ Solaris 10 64 bit w/ JRE 1.6.0; Intel Pentium D w/ Windows Vista 32 bit w/ JRE 1.6.0; Intel Core 2 Duo w/ Windows Vista 64 bit w/JRE 1.6.0 6/13/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256); CFB128(e/d; 128,192,256); OFB(e/d; 128,192,256); CTR(ext only; 128,192,256) 

CCM (KS: 128 , 192 , 256 )
(Assoc. Data Len Range: 0 - 0 , 2^16 )
(Payload Length Range: 0 - 32 )
( Nonce Length(s): 7 8 9 10 11 12 13 )
(Tag Length(s): 8 10 12 14 16 )

CMAC (Generation )
(KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 8 )
(KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 8 )
(KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 8 Max: 8 )

"Security Builder GSE-J is a standards-based cryptographic toolkit written in Java. It supports optimized Elliptic Curve Cryptography and provides application developers with sophisticated tools to flexibly integrate encryption, digital signatures and other security mechanisms into Java-based applications."

803 Cavium Networks
805 E Middlefield Rd.
Mountain View, CA 94043
USA

-Michael Scruggs
TEL: 650 623 7005
FAX: 650 625 9751

Nitrox PX Series Die V1.2

Part # Nitrox PX Series Die V1.2
N/A 6/13/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256); CTR(int only; 128,192,256) 

"Each identical processor core on the NITROX PX die implements several security and math algorithms, including ModEx (and RSA), ECC, 3DES, AES256, KASUMI, SHA1, SHA2, and MD5 (hash and HMAC). Performance ranges: 500Mbps to 2.5Gbps of encryption bandwidth; 4k to 17k RSA's; 6k to 25k DH operations per second. Accelerate IPSec, SSL, XML, and WLAN."

802 PGP Corporation
200 Jefferson Dr.
Menlo Park, CA 94025
USA

-Vinnie Moscaritolo
TEL: 650-319-9000
FAX: 650-319-9001

PGP WDE Kernel Module 9.9

Version PGP WDE 9.9
Dell PowerEdge 860 with Dual Core Xeon 3060 w/ Windows XP Professional 2002 SP-2 6/9/2008 ECB(e/d; 256) 

"PGP Whole Disk Encryption locks down the entire contents of a laptop, desktop, external drive, or USB flash drive, including boot sectors, system, and swapfiles."

801 Sun Microsystems
4150 Network Circle
Santa Clara, CA 95054
USA

-Mehdi Bonyadi
TEL: 858-625-5163

Sun Cryptographic Accelerator 6000

Version 1.1.1 (Firmware)
Intel 80333 6/9/2008 CBC(e/d; 128,192,256) 

"Cryptographic Acceleration Card"

800 HP Atalla Security Products
19091 Pruneridge Ave.
MS 4441
Cupertino, CA 95014
USA

-Denise Santos
TEL: 408-447-2630
FAX: 408-447-5525

Atalla Cryptographic Engine 006

Version 1.02 (Firmware)
PowerPC 440EPx 6/9/2008 ECB(e/d; 256); CBC(e/d; 256) 

CCM (KS: 256 )
(Assoc. Data Len Range: 28 - 28 )
(Payload Length Range: 32 - 32 )
( Nonce Length(s): 13 )
(Tag Length(s): 8

"The Atalla Cryptographic Engine 006 (ACE006) is a multiple-chip cryptographic module that provides secure cryptographic processing. The ACE006 features secure key management and storage capabilities, and also provides high performance AES processing. ACE006 is used in the Atalla Secure Print Advantage Series products."

AES_CCM: decrypt only;

799 Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

-Dawson Yip

C3201WMIC-TPAK9 WMIC

Version S3201W7K9-12308JK (Firmware)
IBM 405GP PowerPC 6/9/2008 ECB(e/d; 128) 

"The Cisco® 3201 Wireless Mobile Interface Card (WMIC) for the Cisco 3200 Series Rugged ISR provides integrated 802.11b/g wireless WAN or LAN capabilities."

798 PGP Corporation
200 Jefferson Dr.
Menlo Park, CA 94025
USA

-Vinnie Moscaritolo
TEL: 650-319-9000
FAX: 650-319-9001

PGP WDE Kernel Module 9.9

Version PGP WDE 9.9
Dual Core Xeon 3060 w/ Windows XP Professional 2002 SP-2 6/9/2008 ECB(e/d; 256) 

"PGP Whole Disk Encryption locks down the entire contents of a laptop, desktop, external drive, or USB flash drive, including boot sectors, system, and swapfiles."

797 Seagate Technology, LLC
389 Disc Drive
Longmont, CO 80503
USA

-Monty Forehand
TEL: 720-684-2835
FAX: 720-684-2267

AES in CBC Mode

Part # Seagate Integrated SOC
N/A 6/9/2008 CBC(e/d; 128) 

"Seagate Momentus 5400 FDE.3 (SATA hard drive): Integrated Hardware-Based Full Disc Encryption (FDE), providing data protection in cases of a lost, stolen, retired or a re-purposed disc drive. Seagate Secure provides a robust security interface enabling enterprise security management solutions."

796 ERUCES, Inc.
11142 Thompson Ave.
Lenexa, Kansas 66219
U.S.A.

-Dr. Bassam Khulusi
TEL: (913) 310-0888
FAX: (913) 859-9797

-Oggy Vasic
TEL: (913) 310-0888
FAX: (913) 859-9797

Tricryption Cryptographic Module

Version 7.0
AMD Opteron w/ Red Hat Enterprise Linux 5; Intel Pentium 4 w/ Windows Server 2003 R2 5/28/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256) 

"Tricryption Cryptographic Module is a software library providing cryptographic services for ERUCES’ Tricryption family of high volume encryption & key management products including key servers, file, database, executables encryption, and special services (anonymization, de-identification, & privacy protection)."

07/17/08: Update implementation information;

795 Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134
USA

-Mike Soto
TEL: 408-902-8125
FAX: 408-853-3122

IOS 12.4 Software Cryptography

Version 12.4(15) T3 (Firmware)
QED RM5261A; 7065C MIPS; Broadcom BCM1125H 5/28/2008 CBC(e/d; 128,192,256) 

"The Cisco 1800, 2800 and 3800 Series of integrated Services Routers intelligently embed data and security into a single, resilient system for fast, scalable delivery of mission-critical business applications from small offices to demanding enterprise environments."

794 Proxim Wireless Corporation
2115 O'Nel Drive
San Jose, CA 95131
USA

-Cor van de Water
TEL: 408-542-5225
FAX: 408-731-3675

-Gordon Poole
TEL: 408-306-5622

Tsunami MP.11 HS 245054-R and HS 245054-S AES CBC Implementation

Part # Freescale MPC184VMB
N/A 5/28/2008 CBC(e/d; 256) 

"Proxim Tsunami MP.11 245054-R and 245054-S wireless products offer fixed and mobile WiMAX capabilities to distribute wireless broadband access supporting video, voice, and data applications. In FIPS mode, the modules support proprietary WORP protocol for wireless transmission and TLS, SSH, and SNMP for management."

793 Charge It! Payment Solutions Inc.
633 McCallum Rd.
Victoria, BC V9B 6M1
Canada

-Jeff MacMillan
TEL: 250-474-2242`
FAX: 250-721-1222

Charge It! Crypto Library - j-AES module

Version 1.0.0 (Firmware)
AMD Opteron™; VIA C7 5/22/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256); CFB8(e/d; 128,192,256); CFB128(e/d; 128,192,256); OFB(e/d; 128,192,256) 

"Charge It's j-series cryptographic library consists of numerous crypto modules used within its line of VIA and Opteron hardware-based multi-purpose encryption appliances."

792 Secuware
Torre Picasso
Plaza Pablo Ruiz Picasso, s/n.
n/a
Madrid, Spain 28020
Spain

-Jorge López Hernández-Ardieta
TEL: +34 915-649-149

AES for Secuware Security Framework - Crypt4000 Module (SCM)

Version 2.0
Intel Core 2 Duo w/ Windows XP professional SP2 5/22/2008 ECB(e only; 256); CTR(ext only; 256) 

"The SCM is a function library implementing crypto services which is delivered to the final user as a SW cryptographic object Module, running on Windows operating system in a General Purpose Computer. "

791 Rajant Corporation
400 E King St.
Malvern, PA 19355
USA

-Marty Lamb
TEL: 610-873-6788

ME2 BreadCrumb

Part # ME2 1S2F
N/A 5/22/2008 CBC(e/d; 256); CFB128(e/d; 256) 

CCM (KS: 128 )
(Assoc. Data Len Range: 22 - 30 )
(Payload Length Range: 0 - 32 )
( Nonce Length(s): 13 )
(Tag Length(s): 8

"The Rajant BreadCrumb ME2 is a rugged wireless data transmitter-receiver that transparently forms a mesh"

790 Receptors International Security Group
103 Barrows Way
Folsom, CA 95630
USA

-Dale Williams
TEL: 916-355-1296
FAX: 916-355-1297

ECB256 Bit Encryption

Version 8.0.1.E
STMicroelectronics STR912 w/ MS Windows 2003 Server 5/22/2008 ECB(e/d; 256) 

"RISG’s proprietary application software for network communications between RISG’s Server (Odyssey V8.0.1E and ANX-XP-2). ECB 256 bit Encryption. Runs on MS Server 2000 or greater and Intel Pentium 4 or greater, or AMD ATHLON or greater."

789 Cisco Systems, Inc.
7025-6 Kit Creek Road
Research Triangle Park, NC 27709
USA

-Chris Romeo
TEL: 919-392-0512

Adaptive Security Appliance OS

Version 7.2.2.27 (Firmware)
Intel Celeron; Intel Pentium 4 5/22/2008 CBC(e/d; 128,192,256) 

"The market-leading Cisco PIX and ASA security appliances deliver robust user and application policy enforcement and secure connectivity services in cost-effective, easy-to-deploy solutions. Cisco PIX and ASA security appliances provide comprehensive security, performance, and reliability for network environments of all sizes."

788 Athena Smartcard Inc.
20380 Town Center Lane
Suite 240
Cupertino, CA 95014
USA

-Ian Simmons
TEL: 408-865-0112
FAX: 408-865-0333

Athena IDProtect USB

Version 0106.7130.0207 (Firmware)
Part # AT90SC25672RCT-USB vD
Atmel AT90SC25672RCT-USB 5/22/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256) 

"Athena Smartcard is a global company offering a wide range of ID products for Government and Enterprise customers: FIPS 140-2 and 201 certified smart card operating systems in a variety of form-factors on various chips, readers, cross-platform cryptographic middleware and innovative biometric and card management solutions."

787 Systems&Processes Engineering Corporation ("SPEC")
6800 Burleson Rd
Bldg. 320
n/a
Austin, Texas 78744
USA

-Rich Wise
TEL: 512 691-8182
FAX: 512 494-0756

-Joe Priest
TEL: 512 691-8165
FAX: 512 494-0756

Encryption/Decryption Device (EDD)

Version 1.0 (Firmware)
Xilinx XC4VLX40-11FFG1142 FPGA 5/22/2008 ECB(e only; 256); CTR(int only; 256) 

"This implemenation involves the AES-256 Encryption and Decryption using the CTR wrapper, a 256-bit encryption key, and a 32-bit Initial Vector (IV). The implemenation firmware has been licensed from Helion Technologies Ltd. as their Fast AES core."

786 Juniper Networks
One Rogers Street, Sixth Floor
Cambridge, MA 02142
USA

-Robert Smith
TEL: 617-949-4067
FAX: 617-547-1031

OSC/P CCM

Version 2.0
Intel Xeon x86 w/ Windows XP Service Pack 2 5/13/2008  

CCM (KS: 128 , 192 , 256 )
(Assoc. Data Len Range: 0 - 0 , 2^16 )
(Payload Length Range: 0 - 32 )
( Nonce Length(s): 7 8 9 10 11 12 13 )
(Tag Length(s): 4 6 8 10 12 14 16 )

"The Odyssey Security Component / Portable (OSC/P) is a general purpose cryptographic library. This portable (C) version can be compiled for use on a large variety of platforms."

07/03/08: Update OES;

785 Juniper Networks
One Rogers Street, Sixth Floor
Cambridge, MA 02142
USA

-Robert Smith
TEL: 617-949-4067
FAX: 617-547-1031

OSC/P AES

Version 2.0
Intel Xeon x86 w/ Windows XP Service Pack 2 5/13/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256); CTR(ext only; 128,192,256) 

"The Odyssey Security Component / Portable (OSC/P) is a general purpose cryptographic library. This portable (C) version can be compiled for use on a large variety of platforms."

07/03/08: Update OES;

784 Juniper Networks
One Rogers Street, Sixth Floor
Cambridge, MA 02142
USA

-Robert Smith
TEL: 617-949-4067
FAX: 617-547-1031

OSC CCM

Version 2.0
Intel Xeon x86 w/ Windows XP Service Pack 2; Intel Pentium 4 w/ Windows 2000 Service Pack 3 5/13/2008  

CCM (KS: 128 , 192 , 256 )
(Assoc. Data Len Range: 0 - 32 )
(Payload Length Range: 0 - 32 )
( Nonce Length(s): 7 8 9 10 11 12 13 )
(Tag Length(s): 4 6 8 10 12 14 16 )

"The Odyssey Security Component (OSC) is a general purpose cryptographic library."

Prerequisite AES #783;
07/03/08: Update OES;
07/29/08: Add new tested OES;

783 Juniper Networks
One Rogers Street, Sixth Floor
Cambridge, MA 02142
USA

-Robert Smith
TEL: 617-949-4067
FAX: 917-547-1031

OSC AES

Version 2.0
Intel Xeon x86 w/ Windows XP Service Pack 2; Intel Pentium 4 w/ Windows 2000 Service Pack 3 5/13/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256); CTR(ext only; 128,192,256) 

"The Odyssey Security Component (OSC) is a general purpose cryptographic library."

07/03/08: Update OES;
07/29/08: Add new tested OES;

782 Gemalto
Arboretum Plaza II
9442 Captial of Texas Highway North
Suite 400
Austin, TX 78759
USA

-Vincent Prothon
TEL: 512-257-3810
FAX: 512-257-3881

Gemalto GX4-FIPS

Version GX4-FIPS EI08 (Firmware)
NXP P5CD144 5/13/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256) 

"This module is based on a Java platform (GemCombiXpresso R4) with 144K EEPROM memory and on the SafesITe FIPS201 applet loaded on the Java Card platform. The Cryptographic Module provides dual interfaces (i.e. contact and contact-less) where the same security level is achieved. Module Ref# A1005963 - Card Ref# M1002255."

781 Microsoft Corporation
One Microsoft Way
Redmond, WA 98052-6399
USA

-Dave Friant
TEL: 425-704-7984
FAX: 425-936-7329

Windows XP Enhanced Cryptographic Provider (RSAENH)

Version 5.1.2600.5507
Intel Pentium D w/ Windows XP Professional SP3 5/13/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256) 

"The Microsoft Enhanced Cryptographic Provider, designed for FIPS 140-2 compliance, is a software-based, cryptographic module. RSAENH encapsulates several different cryptographic algorithms (including SHS, DES, TDES, AES, RSA, HMAC) in a cryptographic module accessible via the Microsoft CryptoAPI."

780 Fortress Technologies, Inc.
4023 Tampa Road
Suite 2000
Oldsmar, FL 34677
USA

-William McIntosh
TEL: (813) 288-7388

Fortress FTI Driver

Version 4.1.0 Build 4278X
Intel Celeron M w/ Windows XP Professional with SP2; Intel Celeron M w/ Windows 2000 Professional with SP4; AMD Athlon X2 w/ Windows Vista Ultimate Edition; Intel Pentium 4 w/ Windows Server 2003 SP2 5/13/2008 CBC(e/d; 128,192,256) 

"The FTI Driver is apart of the Fortress Secure Client designed to deliver security on wireless devices such as bar scanners, handhelds, and laptops using various operating systems. A plug-and-play solution, the Client encrypts and decrypts communication across the WLAN and protects the device against attacks without user intervention."

779 RMI Corporation
18920 Forge Drive
Cupertino, CA 95014
USA

-Mark Litvack
TEL: 408-434-5751
FAX: 408-434-5777

XLS Processor

Part # XLS Series Processors A1
N/A 5/13/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256); CFB128(e/d; 128,192,256); OFB(e/d; 128,192,256); CTR(int/ext; 128,192,256) 

CCM (KS: 128 , 192 , 256 )
(Assoc. Data Len Range: 0 - 14 )
(Payload Length Range: 0 - 14 )
( Nonce Length(s): 13 )
(Tag Length(s): 16 )

"RMI's XLS series devices include the XLS408 and XLS404 processors. The XLS processors combine the power of innovative multi-processing and multi-threaded architecture with the simplicity of a leading edge, general purpose MIPS64-based machine enabling wire speed across multiple platforms."

778 Research in Motion
295 Phillip Street
Waterloo, Ontario N2L 3W8
Canada

-Security Certifications Team
TEL: 519-888-7465 x72921
FAX: 519-886-9852

BlackBerry Cryptographic API

Version 4.5 (Firmware)
Intel PXA901 312MHz processor with BlackBerry OS 4.5 5/7/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192); CFB8(e/d; 128,192,256); CFB128(e/d; 128,192,256); OFB(e/d; 128,192,256); CTR(int/ext; 128,192,256) 

"The BlackBerry Cryptographic API is the firmware module that provides advanced cryptographic functionality to BlackBerry Wireless Handhelds and Smartphones."

777 ERUCES, Inc.
11142 Thompson Ave.
Lenexa, Kansas 66219
U.S.A.

-Dr. Bassam Khulusi
TEL: (913) 310-0888
FAX: (913) 859-9797

-Oggy Vasic
TEL: (913) 310-0888
FAX: (913) 859-9797

Tricryption Client Kernel Level Driver Library

Version 7.0
AMD Opteron w/ Red Hat Enterprise Linux 5; Intel Pentium 4 w/ Windows Server 2003 R2 5/7/2008 CBC(e/d; 128,192,256) 

"Tricryption Client Kernel Level Cryptographic Module is a kernel-level software library providing cryptographic services for ERUCES’ transparent file system encryption driver. This includes protection for directories/ folders/drives, files of a specific type, and even executables on laptops, desktops and servers."

07/17/08: Update implementation information;

776 HP Atalla Security Products
19091 Pruneridge Ave.
MS 4441
Cupertino, CA 95014
USA

-Denise Santos
TEL: 408-447-2630
FAX: 408-447-5525

Atalla Cryptographic Engine 006

Version 1.00 (Firmware)
PowerPC 440EPx 5/7/2008 ECB(e/d; 256); CBC(e/d; 256) 

CCM (KS: 256 )
(Assoc. Data Len Range: 28 - 28 )
(Payload Length Range: 32 - 32 )
( Nonce Length(s): 13 )
(Tag Length(s): 8

"The Atalla Cryptographic Engine 006 (ACE006) is a multiple-chip cryptographic module that provides secure cryptographic processing. The ACE006 features secure key management and storage capabilities, and also provides high performance AES processing. ACE006 is used in the Atalla Secure Print Advantage Series products."

CCM tested for Decryption only;

775 Research in Motion
295 Phillip Street
Waterloo, Ontario N2L 3W8
Canada

-Security Certifications Team
TEL: 519-888-7465 x72921
FAX: 519-886-9852

BlackBerry Cryptographic Kernel - AES ASM

Version 3.8.5.32a (Firmware)
Intel PXA901 312MHz processor with BlackBerry OS 4.5 5/7/2008 ECB(e/d; 256); CBC(e/d; 256); CTR(int only; 256) 

"The BlackBerry Cryptographic Kernel is the firmware module that provides the core cryptographic functionality to BlackBerry Wireless Handhelds and Smartphones."

774 Research in Motion
295 Phillip Street
Waterloo, Ontario N2L 3W8
Canada

-Security Certifications Team
TEL: 519-888-7465 x72921
FAX: 519-886-9852

BlackBerry Cryptographic Kernel - AES Cadillac

Version 3.8.5.32a (Firmware)
Intel PXA901 312MHz processor with BlackBerry OS 4.5 5/7/2008 ECB(e/d; 256); CTR(int only; 256) 

"The BlackBerry Cryptographic Kernel is the firmware module that provides the core cryptographic functionality to BlackBerry Wireless Handhelds and Smartphones."

773 Motorola, Inc.
6480 Via Del Oro
San Jose, CA 95199
USA

-Zeljko Bajic
TEL: 408-528-2684
FAX: 408-528-2400

Wireless crypto library-C

Version 1.0 (Firmware)
RMI-XLR 5/7/2008 CBC(e/d; 128) 

CCM (KS: 128 )
(Assoc. Data Len Range: 15 - 30 )
(Payload Length Range: 0 - 32 )
( Nonce Length(s): 13 )
(Tag Length(s): 8

"RFS7000/ WS5100 wireless switches from Motorola provide enhanced support for enterprise mobility and multimedia applications, as well as security and manageability. Switches are based on Motorola’s Wi-NG (Wireless Next Generation) architecture providing support: for a large number of 802.11 a/b/g Access Ports/Points for L2/L3 adoption and mobility; campus wide roaming across subnets, powerful failover capabilities; integrated security features including IPSec VPN gateway and secure guest access."

772 Motorola, Inc.
6480 Via Del Oro
San Jose, CA 95199
USA

-Zeljko Bajic
TEL: 408-528-2684
FAX: 408-528-2400

Wireless crypto library-Assembly

Version 1.0 (Firmware)
Intel Pentium 4 5/7/2008 CBC(e/d; 128) 

CCM (KS: 128 )
(Assoc. Data Len Range: 15 - 30 )
(Payload Length Range: 0 - 32 )
( Nonce Length(s): 13 )
(Tag Length(s): 8

"RFS7000/ WS5100 wireless switches from Motorola provide enhanced support for enterprise mobility and multimedia applications, as well as security and manageability. Switches are based on Motorolas Wi-NG (Wireless Next Generation) architecture providing support: for a large number of 802.11 a/b/g Access Ports/Points for L2/L3 adoption and mobility; campus wide roaming across subnets, powerful failover capabilities; integrated security features including IPSec VPN gateway and secure guest access."

771 Optica Technologies Inc.
2051 Dogwood St
Suite 210
n/a
Louisville, CO 80027
USA

-William Colvin
TEL: 905-876-3147
FAX: 905-876-3479

-Gil Fisher
TEL: 720-214-2800 x12
FAX: 720-214-2805

Eclipz ESCON Tape Encryptor Cryptographic Library

Version 1.0 (Firmware)
Intel Xeon processor 4/30/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256); CFB8(e/d; 128,192,256); CFB128(e/d; 128,192,256); OFB(e/d; 128,192,256) 

"THE ECLIPZ ESCON TAPE ENCRYPTOR IS DESIGNED TO BE INSERTED IN AN ESCON FIBER OPTIC CHANNEL BETWEEN AN IBM MAINFRAME COMPUTER AND A TAPE DRIVE TO ENCRYPT DATA BEING SENT TO THE TAPE DRIVE."

770 Secured User, Inc
11490 Commerce Park Drive
Suite 205
Reston, Va 20191
USA

-Ken Hetzer
TEL: 703-964-3164
FAX: 703-783-0446

SUSK Security Module

Version 1.1
Intel Pentium III w/ Windows Server 2003; Intel Pentium M w/ SuSe 10; Intel Pentium III w/ Red Hat 2.6; Intel Pentium M w/ Fedora 6; Intel Pentium III w/ HP-UX 4/18/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256) 

"The cryptographic module is accessed by its host application, the SecuredUser. All of the cryptographic functionality of the SecuredUser is contained in the SUSK Security Module."

05/22/08: Add new OES';
07/25/08: Add new tested OES;

769 Broadcom Corporation
1131 W. Warner Rd.
Tempe, AZ 85284
USA

-Gary McCulley
TEL: 480-753-2291
FAX: 480-753-2380

BCM5861

Part # BCM5861 Version A0
N/A 4/18/2008 CBC(e/d; 128,192,256) 

"The BCM5861 is a fully-featured security processor optimized to provide high-performance cryptographic acceleration, as well as IPSec and SSL/TLS protocol processing."

768 Memory Experts International Inc.
227 Montcalm
Suite 101 & 202
Gatineau, Quebec J8Y 3B9
Canada

-Larry Hamid
TEL: 819-595-3069
FAX: 819-595-3353

-Jason Sheehy
TEL: 819-595-3069
FAX: 819-595-3353

MXI AES, Part # 933000334R

Part # 1.0
N/A 4/18/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256) 

"Stealth MXP is a USB powered Portable Security Device with authentication and cryptographic services. It provides secure storage and digital identity operations for enterprise security and user authentication via biometric and password."

767 Lexmark International, Inc.
740 West New Circle Road
Lexington, KY 40550
USA

-Sean Gibbons
TEL: 859-232-2000
FAX: 859-232-3120

Lexmark PostScript Rendering Plug-In Algorithms

Version 1.1
Intel Pentium 4 w/ Windows XP 4/18/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256) 

"A secure rendering plug-in that provides AES encryption of print data from the host through a print server with the AES encrypted data continuing on to a Lexmark decryption-enabled device. The rendering plug-in uses the Lexmark device's public key such that only the target device will be able to decrypt the data."

766 Lenel Systems International Inc.
1212 Pittsford-Victor Road
Pittsford, NY 14534-3816
USA

-Dave Weinbach
TEL: 585-248-9720
FAX: 585-248-9185

Lenel AES128 bit Encryption

Version 1.02 (Firmware)
LNL-2220; LNL-3300 4/18/2008 ECB(e/d; 128); CBC(e/d; 128) 

"Lenel OnGuard Access is an advanced access control and alarm monitoring system, built on an open architecture platform and offering unlimited scalability, database segmentation, fault tolerance, and biometrics and smart card support. It is fully customizable, and can be seamlessly integrated into the OnGuard total security solution."

04/28/08: Correction was made for processors;

765 BeCrypt Ltd.
Wyvols Court
Swallowfield
Reading, Berkshire RG7 1WY
UK

-Pali Surdhar
TEL: +44 07809391037

-Bernard Parsons
TEL: +44 07809391027

32 bit subcomponent - BeCrypt Crypto Module

Version 1.0
Intel Core 2 w/ Microsoft Windows XP Pro SP2; Intel Core 2 w/ Ubuntu Linux (Version 8.04) 4/9/2008 ECB(e/d; 128,256) 

"This is the 32 bit subcomponent implementation for the BeCrypt Cryptographic Module."

04/29/08: Add new OES;

764 BeCrypt Ltd.
Wyvols Court
Swallowfield
Reading, Berkshire RG7 1WY
UK

-Pali Surdhar
TEL: +44 07809391037

-Bernard Parsons
TEL: +44 07809391027

16 bit subcomponent - BeCrypt Crypto Module

Version 1.0
Intel Core 2 w/ Real Mode pre-boot environment 4/9/2008 ECB(e/d; 128,256) 

"This is the 16 bit subcomponent implementation for the BeCrypt Cryptographic Module."

05/30/08: Update the OS;

763 Chunghwa Telecom Co. Ltd. Telecommunication Labs
12, Lane 551, Min-Tsu Road
SEC.5
n/a
Yang-Mei, Taoyuan,, Taiwan 326
Republic of China

-tulip@cht.com.tw
TEL: +886-3-4245883
FAX: +886-3-4244147

HiPKI SafGuard 1000 Cryptographic Library

Part # EP2C70F672C6N
N/A 4/9/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256) 

"HiPKI SafGuard 1000 Cryptographic Library provides highly-secure cryptographic services,i dentity-based challenge-response authentication, and key storage for PKI Applications in the HiPKI SafGuard 1000 HSM."

762 RMI Corporation
18920 Forge Drive
Cupertino, CA 95014
USA

-Mark Litvack
TEL: 408-434-5751
FAX: 408-434-5777

XLR Processor

Part # XLR Series Processors C4
N/A 4/9/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256); CFB128(e/d; 128,192,256); OFB(e/d; 128,192,256); CTR(int/ext; 128,192,256) 

CCM (KS: 128 , 192 , 256 )
(Assoc. Data Len Range: 0 - 14 )
(Payload Length Range: 0 - 14 )
( Nonce Length(s): 13 )
(Tag Length(s): 16 )

"RMI's series devices include the XLR732, XLR716, XLR532, XLR516, XLR508, and XLR308 processors. They are the ultimate in performance, combining the power of innovative multi-core and multi-threaded architecture with the simplicity of a leading edge, general purpose MIPS64-based machine."

05/02/08: Add CCM;

761 Kingston Technology Company
17600 Newhope Street
Fountain Valley, CA 92708
USA

-Mark Akoubian
TEL: 714-438-2719
FAX: 714-427-3598

Kingston Kingsafe Algorithms

Version 4.0 (Firmware)
Phison Electronics PS223x 4/9/2008 ECB(e/d; 256) 

"As the world's leading memory manufacturer Kingston offers the marketplace a variety of secure USB devices designed to protect data at rest. By utilizing 256bit AES encryption via the Kingsafe application, the Kingston USB drives offer a high level of security certified to FIPS 140-2 standards."

760 Microsoft Corporation
One Microsoft Way
Redmond, WA 98052-6399
USA

-Tony Ureche
TEL: 1-800-MICROSOFT

BitLocker Algorithm Implementations

Version 1.1
Intel Pentium D w/ Windows Vista Ultimate SP1 (x86); Intel Pentium D w/ Windows Vista Ultimate SP1 (x64); Intel Pentium D w/ Windows Server 2008 (x86); Intel Pentium D w/ Windows Server 2008 (x64); Intel Itanium2 w/ Windows Server 2008 (IA64) 4/9/2008  

CCM (KS: 128 , 256 )
(Assoc. Data Len Range: 0 - 8 )
(Payload Length Range: 4 - 32 )
( Nonce Length(s): 7 8 12 13 )
(Tag Length(s): 4 6 8 14 16 )

"Algorithm implementation providing AES CCM and HMAC support on top of the Windows Vista and Server 2008 Symmetric Algorithms Implementation. This provides these services to applications including the Windows Boot Manager and BitLocker(TM)"

Perrequisite AES: #739;

759 GuardianEdge Technologies Inc.
475 Brannan Street, Suite 400
San Francisco, CA 94107
USA

-Seth Ross
TEL: 415-683-2240
FAX: 415-683-2400

Encryption Plus® Cryptographic Library

Version 1.0.4
Intel Pentium M w/ Microsoft Windows Vista; Intel Pentium M w/ Microsoft Windows XP 4/9/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256) 

"The Encryption Plus® Cryptographic Library ("EPCL") provides cryptographic services to the GuardianEdge, Encryption Anywhere, and Encryption Plus families of data protection products."

758 Fortinet Inc.
1090 Kifer Road
Sunnyvale, CA 94086
USA

-Alan Kaye
TEL: 613-225-9381 x7416
FAX: 613-225-2951

-Alan Lau
TEL: 604-430-1063 x6969
FAX: 604-430-1286

Fortinet WiFi Cryptographic Library

Version 3.1 (Firmware)
AMD LX700 4/9/2008 ECB(e/d; 128,192,256) 

CCM (KS: 128 )
(Assoc. Data Len Range: 22 - 30 )
(Payload Length Range: 1 - 32 )
( Nonce Length(s): 8 13 )
(Tag Length(s): 8

"This document focusses on the software implementation of the Fortinet WiFi Cryptographic Library v3.1 running on AMD LX700 processors. Utilized in the FortiWiFi products in the FortiGate product line."

757 Microsoft Corporation
One Microsoft Way
Redmond, WA 98052-6399
USA

-Dave Friant
TEL: 425-704-7984
FAX: 425-936-7329

-Kelvin Yu
TEL: 425-703-4612
FAX: 425-936-7329

Windows Server 2008 CNG algorithms

Version 1.1
Intel Pentium D w/ Windows Server 2008 (x86); Intel Pentium D w/ Windows Server 2008 (x64); Intel Itanium2 w/ Windows Server 2008 (IA64) 4/2/2008  

CCM (KS: 128 , 192 , 256 )
(Assoc. Data Len Range: 0 - 0 , 2^16 )
(Payload Length Range: 1 - 32 )
( Nonce Length(s): 7 8 9 10 11 12 13 )
(Tag Length(s): 4 6 8 10 12 14 16 )

"The Microsoft Windows Cryptographic Primitives Library is a general purpose, software-based, cryptographic module which can be dynamically linked into applications by developers to permit the use of FIPS 140-2 Level 1 compliant cryptography."

Prerequisite AES: #739;

756 Microsoft Corporation
One Microsoft Way
Redmond, WA 98052-6399
USA

-Dave Friant
TEL: 425-704-7984
FAX: 425-936-7329

-Kelvin Yu
TEL: 425-703-4612
FAX: 425-936-7329

Windows Vista CNG algorithms

Version 1.1
Intel Pentium D w/ Windows Vista Ultimate SP1 (x86); Intel Pentium D w/ Windows Vista Ultimate SP1 (x64) 4/2/2008  

CCM (KS: 128 , 192 , 256 )
(Assoc. Data Len Range: 0 - 32 , 2^16 )
(Payload Length Range: 1 - 32 )
( Nonce Length(s): 7 8 9 10 11 12 13 )
(Tag Length(s): 4 6 8 10 12 14 16 )

"The Microsoft Windows Cryptographic Primitives Library is a general purpose, software-based, cryptographic module which can be dynamically linked into applications by developers to permit the use of FIPS 140-2 Level 1 compliant cryptography."

Prerequisite: AES: #739

755 SafeNet, Inc.
4690 Millennium Drive
Belcamp, MD 21017
USA

-Hazem Hassan
TEL: 952-223-3139

-Wayne Whitlock
TEL: 443-327-1489

SCCOS AES

Part # P5CT072
N/A 4/2/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256) 

"The SCCOS AES runs on the Philips P5CT072 processor, a Secure PKI Smart Card Controller of the SmartMX platform featuring 160 Kb of ROM, 4608 bytes of RAM and 72 Kb of EEPROM. The implementation is part of the card operating system offering a wide range of authentication and digital signature services together with the highest levels of security."

754 nCipher Corporation Ltd.
Jupiter House, Station Road
Cambridge, CB1 2JD
United Kingdom

-Marcus Streets
TEL: 011-44-1223-723600
FAX: 011-44-1223-723601

-Mark Wooding
TEL: 011-44-1223-723600
FAX: 011-44-1223-723601

nCipher Algorithm Library

Version 6.0 (Firmware)
Motorola Power PC running a proprietary Operating System 3/27/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256) 

CMAC (Generation/Verfication )
(KS: 128; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 )
(KS: 192; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 )
(KS: 256; Block Size(s): Full / Partial ; Msg Len(s) Min: 0 Max: 2^16 ; Tag Len(s) Min: 16 Max: 16 )

"The nCipher algorithm library provides cryptographic functionality for nCipher's nShield Hardware Security Modules."

753 Software House, Incorporated
70 Westview Street
Lexington, MA 02421
USA

-Rick Focke
TEL: 781-768-0266

C*CURE 9000®

Version 1.02
Intel Pentium 4 w/ Windows Server 2003 SP2; Intel Pentium 4 w/ Windows XP Professional SP2 3/27/2008 CBC(e/d; 256) 

"C*CURE 9000 provides IT standard tools and innovative distributed architecture that will elevate the security system to an important enabler to business success. With integration capabilities, alarm routing, and remote access for system administration and monitoring, C*CURE 9000 possesses one of the richest communication platforms in the industry."

752 Firetide, Inc.
16795 Lark Avenue
Suite 200
n/a
Los Gatos, CA 95032
USA

-Murali Repakula
TEL: 408-355-7203
FAX: 408-399-7756

Hotport

Part # IXP425ABD
N/A 3/18/2008 ECB(e/d; 128,256) 

"Hotport System utilizes the hardware cipher engine of the IXP425 to encrypt/decrypt data packets. IXP425 library provides standard API's to submit the packets for Cipher operation and get the results back from the hardware."

751 Hitachi Global Storage Technologies Inc.
3403 Yerba Buena Rd.
San Jose, CA 95135
USA

-Zvonimir Bandic
TEL: (408) 717-5483
FAX: (408) 717-9066

-Cyril Guyot
TEL: (408) 717-5126

Hitachi Global Storage Technologies Hard Disk Drive AES

Part # 1
N/A 3/18/2008 ECB(e/d; 128) 

"System on chip (SOC) Implementation of AES Encryption Algorithm in Hitachi GST Hard Disk Drives. It is hardware implementation of Advance Encryption Standard encryption system, using 128-bit keys."

750 Software House, Incorporated
70 Westview Street
Lexington, MA 02421
USA

-Rick Focke
TEL: 781-768-0266

C*CURE 800/8000®

Version 9.2
Intel Pentium 4 w/ Windows Server 2003 SP2; Intel Pentium 4 w/ Windows XP Professional SP2 3/18/2008 CBC(e/d; 256) 

"C*CURE 800/8000 is a scalable security management solution encompassing complete access control and advanced event monitoring. The system integrates with critical business applications including CCTV and digital video management systems, visitor management, ERP HR/time and attendance, and third party devices such as intercoms and alarms."

749 Hitachi Global Storage Technologies Inc.
3403 Yerba Buena Rd.
San Jose, CA 95135
USA

-Zvonimir Bandic
TEL: (408) 717-5483
FAX: (408) 717-9066

-Cyril Guyot
TEL: (408) 717-5126

Hitachi Global Storage Technologies Hard Disk Drive AES

Part # 4
N/A 3/18/2008 ECB(e/d; 128,256) 

"System on chip (SOC) Implementation of AES Encryption Algorithm in Hitachi GST Hard Disk Drive. It is hardware implementation of Advanced Encryption Standard encryption system, using either 128-bit or 256-bit keys."

748 Research in Motion
295 Phillip Street
Waterloo, Ontario N2L 3W8
Canada

-Security Certifications Team
TEL: 519-888-7465 x2921
FAX: 519-886-9852

BlackBerry Cryptographic API

Version 4.3 (Firmware)
Intel PXA901 312MHz processor with BlackBerry OS 4.3 3/18/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256); CFB8(e/d; 128,192,256); CFB128(e/d; 128,192,256); OFB(e/d; 128,192,256); CTR(ext only; 128,192,256) 

"The BlackBerry Cryptographic API is the firmware module that provides advanced cryptographic functionality to BlackBerry Wireless Handhelds."

747 Alcatel-Lucent
101 Crawfords Corner Rd
Holdmel, NJ 07733
USA

-Paul Fowler
TEL: 732-949-8503

-Andrew Ferreira
TEL: 732-949-9529

Hifn 7955

Part # 1.0
N/A 3/18/2008 CBC(e/d; 128,192,256) 

"The Hifn 7955 accelerator card is used in Alcatel-Lucent VPN Firewall Bricks."

746 Giesecke & Devrient
45925 Horseshoe Drive
Dulles, VA 20166
USA

-Michael Poitner
TEL: 650-312-1241
FAX: 605-312-8129

-Jatin Deshpande
TEL: 650-312-8047
FAX: 650-312-8129

Sm@rtCafé Expert 3.2

Version CPDYxJCRSEFI-025CD144V503 (Firmware)
NXP P5CD144 3/18/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256) 

"Sm@rtCafé Expert 3.2 is a Java Card 2.2.1 and Global Platform v2.1.1 compliant smart card module supporting contact and contactless interfaces. Its support includes RSA up to 2048 bits with key generation, Hash algorithms (including SHA256), SEED, AES, DSA, OAEP Padding and Triple-DES."

745 Giesecke & Devrient
45925 Horseshoe Drive
Dulles, VA 20166
USA

-Michael Poitner
TEL: 650-312-1241
FAX: 605-312-8129

-Jatin Deshpande
TEL: 650-312-8047
FAX: 650-312-8129

Sm@rtCafé Expert 3.2

Version CPDIxJCRSEFI-025CD080V402 (Firmware)
NXP P5CD080 3/18/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256) 

"Sm@rtCafé Expert 3.2 is a Java Card 2.2.1 and Global Platform v2.1.1 compliant smart card module supporting contact and contactless interfaces. Its support includes RSA up to 2048 bits with key generation, Hash algorithms (including SHA256), SEED, AES, DSA, OAEP Padding and Triple-DES."

744 Giesecke & Devrient
45925 Horseshoe Drive
Dulles, VA 20166
USA

-Michael Poitner
TEL: 650-312-1241
FAX: 605-312-8129

-Jatin Deshpande
TEL: 650-312-8047
FAX: 650-312-8129

Sm@rtCafé Expert 3.2

Version CPDHxJCRSEFI-025CC073V202 (Firmware)
NXP P5CC073 3/18/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256) 

"Sm@rtCafé Expert 3.2 is a Java Card 2.2.1 and Global Platform v2.1.1 compliant smart card module supporting contact and contactless interfaces. Its support includes RSA up to 2048 bits with key generation, Hash algorithms (including SHA256), SEED, AES, DSA, OAEP Padding and Triple-DES."

743 Silicon Graphics Inc.
2750 Blue Water Road
Eagan, MN 55121
USA

-Lori Gilbertson
TEL: 1-651-683-3433

SGI Alitx with RHEL5 Update 1 on Intel Xeon EM64T

Version openssl0.9.8b-8.3.el5_0.2
Intel Xeon EM64T w/ Red Hat Enterprise Linux 5 Update 1 3/18/2008 CBC(e/d; 128,192,256) 

"TDES, AES, SHA-1, and RSA as used and provided by RHEL5 U1 on SGI Altix XE Servers (200 series and 300 series)"

742 Silicon Graphics Inc.
2750 Blue Water Road
Eagan, MN 55121
USA

-Lori Gilbertson
TEL: 1-651-683-3433

SGI Alitx with RHEL5 Update 1 on Intel Itanium2

Version openssl0.9.8b-8.3.el5_0.2
Intel Itanium2 w/ Red Hat Enterprise Linux 5 Update 1 3/18/2008 CBC(e/d; 128,192,256) 

"TDES, AES, SHA-1, and RSA as used and provided by RHEL5 U1 on SGI Altix 400 series and 4000 series"

741 AudioCodes
1 Hayarden St.
Airport St., Lod 70151
Israel

-Yair Elharrar
TEL: +972-3-9764055
FAX: +972-3-9764223

AudioCodes SRTP AES

Version 1.0
AudioCodes AC48x/AC49x w/ Proprietary AudioCodes OS 3/18/2008 ECB(e/d; 128); CTR(int/ext; 128) 

"Voice-over-IP media gateway"

740 AudioCodes
1 Hayarden St.
Airport St., Lod 70151
Israel

-Yair Elharrar
TEL: +972-3-9764055
FAX: +972-3-9764223

OpenSSL 0.9.8d AES

Version 0.9.8d
Freescale (MPC8xx/MPC82xx) w/ pSOS+ 2.5 3/18/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256); CFB128(e/d; 128,192,256) 

"Voice-over-IP media gateway"

739 Microsoft Corporation
One Microsoft Way
Redmond, WA 98052-6399
USA

-Dave Friant
TEL: 425-704-7984
FAX: 425-936-7329

-Kelvin Yu
TEL: 425-703-4612
FAX: 425-936-7329

Windows Vista and Server 2008 Symmetric Algorithm Implementation

Version 1.1
Intel Pentium D w/ Windows Vista Ultimate SP1 (x86); Intel Pentium D w/ Windows Vista Ultimate SP1 (x64); Intel Pentium D w/ Windows Server 2008 (x86); Intel Pentium D w/ Windows Server 2008 (x64); Intel Itanium2 w/ Windows Server 2008 (IA64) 3/18/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256); CFB8(e/d; 128,192,256) 

"The Microsoft Windows Cryptographic Primitives Library is a general purpose, software-based, cryptographic module which can be dynamically linked into applications by developers to permit the use of FIPS 140-2 Level 1 compliant cryptography."

738 Entrust, Inc.
1000 Innovation Drive
Ottawa, Ontario K2K 3E7
Canada

-Roland Lockhart
TEL: (613) 270-2676
FAX: (613) 270-2505

-Danielle Mortimer
TEL: (613) 270-2584
FAX: (613) 270-2505

Entrust Entelligence Kernel-Mode Cryptomodule

Version 1.1
Intel Pentium D w/ Microsoft Windows Vista Enterprise, 32-bit edition; Intel Core 2 Duo w/ Microsoft Windows Vista Ultimate, 64-bit edition; Intel Pentium D w/ Microsoft Windows XP Professional SP2; Intel Core 2 Duo w/ Microsoft Windows Vista Ultimate SP1, 64-bit edition 3/18/2008 ECB(e/d; 128,192,256) 

"The Entrust Entelligence Kernel-Mode Cryptomodule is a software module that implements AES encryption and decryption functions suitable for use in kernel-mode drivers on Windows platforms. "

05/29/08: Add new tested OES;

737 Research in Motion
295 Phillip Street
Waterloo, Ontario N2L 3W8
Canada

-Security Certifications Team
TEL: 519-888-7465 x2921
FAX: 519-886-9852

BlackBerry AES ASM Library

Version 3.8.5 B (Firmware)
Intel PXA901 3/3/2008 ECB(e/d; 256); CBC(e/d; 256); CTR(int only; 256) 

"The BlackBerry Cryptographic Kernel is the firmware module that provides the core cryptographic functionality to BlackBerry Wireless Handhelds."

736 Research in Motion
295 Phillip Street
Waterloo, Ontario N2L 3W8
Canada

-Security Certifications Team
TEL: 519-888-7465 x2921
FAX: 519-886-9852

BlackBerry AES ASM Library

Version 3.8.5 C (Firmware)
Intel PXA901 3/3/2008 ECB(e/d; 256); CBC(e/d; 256); CTR(int only; 256) 

"The BlackBerry Cryptographic Kernel is the firmware module that provides the core cryptographic functionality to BlackBerry Wireless Handhelds."

735 Research in Motion
295 Phillip Street
Waterloo, Ontario N2L 3W8
Canada

-Security Certifications Team
TEL: 519-888-7465 x2921
FAX: 519-886-9852

BlackBerry Cryptographic Kernel

Version 3.8.5 B (Firmware)
Intel PXA901 3/3/2008 ECB(e/d; 256); CBC(e/d; 256); CTR(int only; 256) 

"The BlackBerry Cryptographic Kernel is the firmware module that provides the core cryptographic functionality to BlackBerry Wireless Handhelds."

734 Research in Motion
295 Phillip Street
Waterloo, Ontario N2L 3W8
Canada

-Security Certifications Team
TEL: 519-888-7465 x2921
FAX: 519-886-9852

BlackBerry Cryptographic Kernel

Version 3.8.5 C (Firmware)
Intel PXA901 3/3/2008 ECB(e/d; 256); CBC(e/d; 256); CTR(int only; 256) 

"The BlackBerry Cryptographic Kernel is the firmware module that provides the core cryptographic functionality to BlackBerry Wireless Handhelds."

733 VIACK Corporation
16701 NE 80th St., Suite 100
Redmond, WA 98052
USA

-Peter Eng
TEL: 425-605-7400
FAX: 425-605-7405

VIA3 VkCrypt Cryptographic Module AES

Version 6.0
Intel x86 w/ Windows Vista; Intel x86 w/ Windows XP 3/3/2008 CBC(e/d; 128) 

"The VIA3 VkCrypt Cryptographic Module is a software cryptographic module that implements symmetric and public key encryption, digital signatures, and hashing. VIA3 is a secure online collaboration solution integrating real-time audio and video, instant messaging, application sharing, and access to workspaces."

732 AvaLAN Wireless
958 San Leandro Ave, Suite 90
Mountain View, California 94043
USA

-Jason Hennig
TEL: (650) 206-2321
FAX: (650) 249-3591

-Michael Derby
TEL: (650) 575-7332
FAX: (650) 249-3591

AvaLAN Wireless Cryptographic Library

Version 1.0 (Firmware)
XInC2 MCU (Eleven Engineering Inc.) 3/3/2008 ECB(e only; 128) 

"The Implmentation is in Firmware on the XInC2 MCU. It is written completely in assembly language targeted for the XInC2 MCU"

731 Brocade Communications Systems, Inc.
1600 Technology Drive
San Jose, CA 95110
USA

-Vidya Renganarayanan
TEL: 408-333-5812

Brocade FIPS Crypto Library

Version FIPS_OpenSSL_1.0 (Firmware)
PowerPC 440GX; PowerPC 8548 3/3/2008 CBC(e/d; 128,192,256) 

"AES implementation in Brocade firmware."

730 AMCC Corp
4000 CenterGreen Way
Suite 200
Cary, NC 27513
USA

-Nick Balafas
TEL: (919) 678-4540
FAX: (919) 678-4501

-Mike Servedio
TEL: (919) 678-4511
FAX: (919) 678-4501

AMCC PowerPC 440GRx

Part # PPC440GRx
N/A 3/3/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256); CFB128(e/d; 128,192,256); CTR(int/ext; 128,192,256) 

"The AMCC PowerPC 440EPx and 440GRx are high performance embedded System on Chips (SoC's) offering a wide range of I/O interfaces such as USB 2.0, Gigabit Ethernet, NAND Flash and on-chip security acceleration hardware. They are ideally suited to a wide range of applications, including imaging, industrial control and networking."

729 AMCC Corp
4000 CenterGreen Way
Suite 200
Cary, NC 27513
USA

-Nick Balafas
TEL: (919) 678-4540
FAX: (919) 678-4501

-Mike Servedio
TEL: (919) 678-4511
FAX: (919) 678-4501

AMCC PowerPC 440EPx

Part # PPC440EPx
N/A 3/3/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256); CFB128(e/d; 128,192,256); CTR(int/ext; 128,192,256) 

"The AMCC PowerPC 440EPx and 440GRx are high performance embedded System on Chips (SoC's) offering a wide range of I/O interfaces such as USB 2.0, Gigabit Ethernet, NAND Flash and on-chip security acceleration hardware. They are ideally suited to a wide range of applications, including imaging, industrial control and networking."

728 Meshdynamics, Inc
2953 Bunker Hill Ln Ste 400
Santa Clara, CA 95054
USA

-Sriram Dayanandan
TEL: 408-757-1849

-Francis daCosta
TEL: 408-373-7700

Meshdynamics Crypto Library

Version 2.0 (Firmware)
Intel IXP420 2/21/2008 ECB(e/d; 128) 

"Multi-Radio Wireless Mesh Networking Node. Nodes connect to each other forming a “MESH” network. Data from Client devices connected to the mesh node is routed according to the destination address. Client devices need to authenticate before they can join the network. All data from client is encrypted using AES-CCM using temporal keys generated using WPA2/802.11i standard."

727 Motorola, Inc.
6480 Via Del Oro
San Jose, CA 95199
USA

-Zeljko Bajic
TEL: 408-528-2684
FAX: 408-528-2400

-Gopalakrishnan Kamatchi
TEL: 408-528-2427
FAX: 408-528-2400

Core crypto library

Version 1.0 (Firmware)
Intel Pentium; RMI-XLR 2/21/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256); CFB8(e/d; 128,192,256); CFB128(e/d; 128,192,256); OFB(e/d; 128,192,256) 

"RFS7000/ WS5100 wireless switches from Motorola provide enhanced support for enterprise mobility and multimedia applications, as well as security and manageability. Switches are based on Motorola’s Wi-NG (Wireless Next Generation) architecture providing support: for a large number of 802.11 a/b/g Access Ports/Points for L2/L3 adoption and mobility; campus wide roaming across subnets, powerful failover capabilities; integrated security features including IPSec VPN gateway and secure guest access."

726 Motorola, Inc.
6480 Via Del Oro
San Jose, CA 95199
USA

-Zeljko Bajic
TEL: 408-528-2684
FAX: 408-528-2400

-Gopalakrishnan Kamatchi
TEL: 408-528-2427
FAX: 408-528-2400

Quicksec library

Version 3.0.1 (Firmware)
Intel Pentium; RMI-XLR 2/21/2008 ECB(e/d; 128,192,256); CBC(e/d; 128,192,256); CFB128(e/d; 128,192,256); OFB(e/d; 128,192,256) 

"RFS7000/ WS5100 wireless switches from Motorola provide enhanced support for enterprise mobility and multimedia applications, as well as security and manageability. Switches are based on Motorola’s Wi-NG (Wireless Next Generation) architecture providing support: for a large number of 802.11 a/b/g Access Ports/Points for L2/L3 adoption and mobility; campus wide roaming across subnets, powerful failover capabilities; integrated security features including IPSec VPN gateway and secure guest access."

725 Senetas Security Pty Ltd
Level 1 / 11 Queens Road
Melbourne, VIC 3004
Australia

-Horst Marcinsky
TEL: +61 3 9868 4555
FAX: +61 3 9821 4899

-Colin Campbell
TEL: +61 3 9868 4555
FAX: +61 3 9821 4899

CypherNET Crypto Library

Version 0.9.7 (Firmware)
Motorola Freescale MPC8280 (PPC32) 2/21/2008 CBC(e/d; 128,256) 

"Senetas Security's CypherNET™ Crypto library provides FIPS 140-2 approved cryptographic algorithms for the CypherNET family of products. Based on OpenSSL, the CypherNET Crypto library provides an Application Programming Interface (API) to support security relevant services within the CypherNET 1000 and 3000 Series products."

724 Motorola, Inc.
6480 Via Del Oro
San Jose, CA 95199
USA

-Zeljko Bajic
TEL: 408-528-2684
FAX: 408-528-2400

-Gopalakrishnan Kamatchi
TEL: 408-528-2427
FAX: 408-528-2400

RMI-XLR Crypto library

Part # 1.0
N/A 2/21/2008 CBC(e/d; 128,192,256) 

CCM (KS: 128 )
(Assoc. Data Len Range: 15 - 30 )
(Payload Length Range: 1 - 32 )
( Nonce Length(s): 13 )
(Tag Length(s): 8

"Designed for large scale, high bandwidth deployments, the RFS7000 Wireless Switch from Motorola provides robust, highly scalable support for seamless enterprise mobility. Motorola’s Wi-NG architecture, optimized for enterprise mobility and multimedia applications, simplifies network deployment and management, provides superior performance, security and scalability, and supports emerging RF technologies. Built on this platform, the RFS7000 enables campus wide roaming across subnets, and offers powerful failover capabilities, exceptional quality of service (QoS) and increased voice capacity. Integrated security features include IPSec VPN gateway and secure guest access. The RFS7000 supports 256 802.11 a/b/g Access Ports/Points for L2/L3 adoption and mobility, i.e. 8000 users per switch, and 96000 users, when con