The purpose of this document is to provide technical information about implementations that have been validated as conforming to the Triple Data Encryption Algorithm (TDEA, a.k.a. "Triple DES"), as specified in Federal Information Processing Standard Publication 46-3, Data Encryption Standard (DES). For the complete specification of Triple DES, the standard ANSI X9.52-1998, Triple Data Encryption Algorithm Modes of Operation, must be used in conjunction with FIPS 46-3.
The list below describes Triple DES implementations which have been validated as correctly implementing the TDEA, using the tests found in NIST Special Publication 800-20, Modes of Operation Validation System for the Triple Data Encryption Algorithm (TMOVS): Requirements and Procedures. This testing is performed by NVLAP accredited Cryptographic Module Testing (CMT) laboratories.
The implementations below consist of software, firmware, hardware, and any combination thereof. The National Institute of Standards and Technology (NIST) has made every attempt to provide complete and accurate information about the implementations described in this document. However, due to the possibility of changes made within individual companies, NIST cannot guarantee that this document reflects the current status of each product. It is the responsibility of the vendor to notify NIST of any necessary changes to its entry in the following list. A validation certificate issued to each vendor also indicates 1) the CMT laboratory that tested the implementation, and 2) the operating environment used to test the implementation (if software or firmware).
This list is ordered in reverse numerical order, by certificate number. Thus, the more recent validations are located closer to the top of the list. Also indicated after the date of validation are the modes (e.g., TECB, TCFB, etc.), states ( encryption(e) and/or decryption(d) ), and keying options (KO) for which the implementation was validated:
| Triple DES Modes of Operation | Triple DES Keying Options (KO) |
|---|---|
| TECB = TDEA Electronic Codebook TCBC = TDEA Cipher Block Chaining TCBC-I = TDEA Cipher Block Chaining - Interleaved TCFB = TDEA Cipher Feedback TCFB-P = TDEA Cipher Feedback - Pipelined TOFB = TDEA Output Feedback TOFB-I = TDEA Output Feedback - Interleaved |
KO 1 = Three-key Triple DES KO 2 = Two-key Triple DES KO 3 = Single DES |
For TCFB and TCFB-P, the number of feedback bits is specified.
The following mode/keying option combinations are backwards compatible with their corresponding single DES modes: TECB (KO 3), TCBC (KO 3), TCFB (KO 3), TOFB (KO 3).
| Cert# | Vendor | Implementation | Val. Date |
Modes/Keying Opts./ Description |
|---|---|---|---|---|
| 264 | IBM Corporation
2455 South Road, Poughkeepsie , NY 12601 USA -Walter Von Dehsen
|
IBM zSeries Cryptographic Assist DES, TDES, SHA-1
Part #1.0 |
7/1/2004 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "The IBM zSeries CP Assist feature provides processor-integrated hardware acceleration for DES, TDES and SHA-1 services." |
| 263 | V-ONE Corporation
20300 Century Blvd., Suite 200, Germantown , MD 20874 USA -Chris Brook
|
SmartGate
Version 4.5 |
7/6/2004 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3); TCFB64(e/d; KO 1,2,3); TOFB(e/d; KO 1,2,3) "Client/server Virtual Private Network (VPN) software that provides enterprise-level security to network-based users for private information and private TCP/IP application services. SmartGate provides encryption, strong user authentication, authorization, management, accounting, key distribution, and proxy capabilities." |
| 262 | Realia Technologies S.L.
Orense, 68 11th floor, Madrid 28020 Spain -Sebasti? Mu?z
|
Cryptosec2048
Version 01.04.0004 Part #Model 1.0 |
6/23/2004 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3); TCFB64(e/d; KO 1,2,3); TOFB(e/d; KO 1,2,3) "The Cryptosec2048 is a high-end PCI card that provides cryptographic services and secure storage of cryptographic keys. The module is built to perform general cryptographic processing (RSA, DES, SHA-1, MD5,...) and features a tamper-protective case to physically protect sensitive information contained within the card." |
| 261 | Aruba Wireless Networks Inc.
180 Great Oaks Boulevard, Suite B, San Jose , CA 95119 USA -Kenneth Jensen - Dir of Prod Mgmt
|
Aruba 5000 WLAN Switching Platform Hardware Cryptographic Implementation
Version CN1000-MC-Main-IPsec-1.0 Part #1000199-01 |
6/15/2004 |
TCBC(e/d; KO 1,2,3) "Aruba Wireless Networks?WLAN switching platform is a purpose-built WLAN voice and data switching solution designed to specifically address the needs and reduce the cost of large scale Wi-Fi network deployments for Government agencies and large enterprise. The Aruba Wireless Networks WLAN switching platform is a highly scalable and redundant solution that provides centralized intelligence to secure and manage the corporate RF environment, enforce identity based user security policies, enable service creation and provide secure mobility management to thousands of simultaneously connected users." |
| 260 | Aruba Wireless Networks Inc.
180 Great Oaks Boulevard, Suite B, San Jose , CA 95119 USA -Kenneth Jensen - Dir of Prod Mgmt
|
Aruba WLAN Switching Platform Software Cryptographic Implementation
Version 5000 Series |
6/15/2004 |
TCBC(e/d; KO 1,2,3) "Aruba Wireless Networks?WLAN switching platform is a purpose-built WLAN voice and data switching solution designed to specifically address the needs and reduce the cost of large scale Wi-Fi network deployments for Government agencies and large enterprise. The Aruba Wireless Networks WLAN switching platform is a highly scalable and redundant solution that provides centralized intelligence to secure and manage the corporate RF environment, enforce identity based user security policies, enable service creation and provide secure mobility management to thousands of simultaneously connected users." |
| 259 | Prism Payment Technologies (Pty) Ltd
PO Box 901, Witkoppen , Gauteng 2068 South Africa -Wayne Donnelly
|
Incognito TSM410
Version 1.1.0.0 (Firmware) |
6/7/2004 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "The Incognito TSM410 is a multi-chip embedded Tamper Responsive Security Module. Fitted on a PCI carrier card, the device offers high-performance, high-security services targeted at EFT switches and mCommerce applications." |
| 258 | Broadcom Corporation
1131 W. Warner Rd., Tempe , AZ 85284 USA -Joseph Wallace
|
BCM5841
Part #A0 |
6/3/2004 |
TCBC(e/d; KO 1,2,3) "The BCM5841 is a second generation multi-gigabit cryptographic coprocessor for VPN IPSec applications." |
| 257 | F-Secure Corporation
Tammasaarenkatu 7, PL 24, Helsinki 00181 Finland -Alexey Kirichenko
|
F-Secure?Cryptographic Library for Linux
Version 1.1 |
5/10/2004 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3); TCFB64(e/d; KO 1,2,3); TOFB(e/d; KO 1,2,3); CTR(ext only; KO 1,2,3) "The F-Secure?Cryptographic Library?for Linux is a 140-2 Level 1 compliant software module, which provides an assortment of cryptographic services including symmetric and asymmetric encryption, hash and HMAC computation, digital signing, key exchange, and pseudorandom number generation." |
| 256 | Open Source Software Institute
Stennis Space Center, Mississippi Technology Transfer Center, Building 1103, Room 135 F, Oxford , MS 39529 USA -Ben Laurie
-John Weathersby
|
OpenSSL FIPS Cryptographic Module
Version 1.0 |
5/10/2004 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3); TCFB8(e/d; KO 1,2,3); TCFB64(e/d; KO 1,2,3); TOFB(e/d; KO 1,2,3) "The OpenSSL FIPS Cryptographic Module is a validated source code component of the standard OpenSSL distribution that can be downloaded from the http://openssl.org/ website." |
| 255 | F-Secure Corporation
Tammasaarenkatu 7, PL 24, Helsinki 00181 Finland -Alexey Kirichenko
|
F-Secure?Cryptographic Library for Windows
Version 2.1 |
5/10/2004 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3); TCFB64(e/d; KO 1,2,3); TOFB(e/d; KO 1,2,3); CTR(ext only; KO 1,2,3) "The F-Secure?Cryptographic Library for Windows is a 140-2 Level 2 compliant software module, implemented as a 32-bit Windows compatible DLL. The Module provides an assortment of cryptographic services to client processes that attach instances of the module DLL." |
| 254 | Bioscrypt Inc.
5450 Explorer Drive, Suite 500, Mississauga , ON L4W 5M1 Canada -Doug Copeland
|
Bioscrypt Cryptographic Library (6711 DSP)
Version 1.00 (Firmware) |
5/10/2004 |
TCBC(e/d; KO 2,3) "The Bioscrypt Cryptographic Library is used by Bioscrypt to provide developers with FIPS certified DES and Triple-DES solutions." |
| 253 | Bioscrypt Inc.
5450 Explorer Drive, Suite 500, Mississauga , ON L4W 5M1 Canada -Doug Copeland
|
Bioscrypt Cryptographic Library (PC)
Version 1.00 |
5/10/2004 |
TCBC(e/d; KO 2,3) "The Bioscrypt Cryptographic Library is used by Bioscrypt to provide developers with FIPS certified DES and Triple-DES solutions." |
| 251 | Thales e-Security
Sawgrass Technology Park, 1601 North Harrison Parkway, Building A, Suite 100, Sunrise , FL 33323 USA -Juan Asenjo
|
Datacryptor?2000
Version DHDES3_V1_81 |
4/27/2004 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3); TCFB8(e/d; KO 1,2,3); TOFB(e/d; KO 1,2,3) "The Datacryptor?2000 is a standalone multi-chip cryptographic module that secures communications using signed Diffie-Hellman key exchange and Triple-DES or AES encryption over point-to-point links X.25, Frame Relay, and IP networks. The unit also provides integrated secure unit management capability." |
| 250 | Bluesocket, Inc.
7 New England Executive Park, Burlington , MA 01803 USA -Mike Puglia
|
Bluesocket Wireless Gateway TLS
Version OpenSSL Library 0.9.6 |
4/16/2004 |
TCBC(e/d; KO 1,2,3) "OpenSSL is an open source toolkit implementing the Transport Layer Security (TLS v1) protocols as well as a full-strength general-purpose cryptography library used to implement TLS for the Bluesocket Wireless Gateway." |
| 249 | RSA Security, Inc.
2955 Campus Drive, Suite 400, San Mateo , CA 94403 USA -Kathy Kriese
-David Finkelstein
|
RSA BSAFE Crypto-J Software Module
Version 3.5 |
4/13/2004 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3); TCFB64(e/d; KO 1,2,3); TOFB(e/d; KO 1,2,3) "There are two variants of the Crypto-J module, one which implements an RSA Security-specific API [jsafeFIPS] and the other which implements the Java Cryptographic Extensions (JCE) API [jsafeJCEFIPS]." |
| 248 | SonicWALL, Inc.
1143 Borregas Ave., Sunnyvale , CA 94089-1306 USA -Paal Tveit
|
TZ 170
Version 2.0 Enhanced (Firmware) Part #101-5000072-00 rev A |
4/13/2004 |
TCBC(e/d; KO 1,2,3) "The TZ 170 is an internet security appliance with WAN interface, a flexible Optional interface, and a LAN interface incorporating a 5-port Fast-Ethernet switch. The TZ 170 provides stateful packet inspection firewall services, accelerated IPSec VPN, and bandwidth management, and can be upgraded to offer ISP failover and traffic." |
| 247 | ITServ Inc.
6 Montgomery Village Ave., Suite 405, Gaithersburg , MD 20879 USA -Faydeana Huang
|
RideWay Station FGC
Version 5.0 |
4/1/2004 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "RideWay Station FGC is an integrated firewall, VPN and wireless gateway appliance for small to medium-sized organizations. Computers and servers (wired and/or wireless) in your networks will be protected from unauthorized accesses and attacks from the Internet. In addition, IPSec VPN (using 3DES encryption) enables workers in remote locations to securely access internal network resources. VPN can also be used to create a secure connection between two branch offices." |
| 246 | Corrent Corporation
1711 W. Greentree Dr. Suite 201, Tempe , AZ 85284-2717 USA -Richard Andelfinger
|
Corrent CR7120 Security Processor
Part #220-0001-01 |
3/30/2004 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "The Corrent CR7120 is industry's first complete full duplex 2.0 Gigabit + IPSec and SSL Security Processor on a chip, for Internet access equipment such as high-speed routers, VPN/Firewalls, Access concentrators, other Internet aggregation devices, layer 4 - 7 security appliances and SAN applications." |
| 245 | Lucent Technologies, Inc.
600 Mountain Ave., Murray Hill , NJ 07974 USA -Richard T. Fohl
|
Lucent Secure Solutions SW Cryptographic Implementation
Version 2.0 |
4/1/2004 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "Lucent SW Cryptographic Implementation is used in Lucent Bricks. The VPN Firewall Brick is a high-speed packet-processing appliance, oriented towards providing security functions. The Bricks are carrier-grade integrated firewall and virtual private network (VPN) gateway appliance specifically designed for web/application data center security, large-scale managed security services, and remote access VPN services. Called the Brick because of its rugged, reliable design, this is an ideal platform for service providers seeking wide scalability, ready manageability, and industry-leading performance." |
| 244 | C4 Technology, Inc.
Meguro Tokyu Bldg., 5th Floor, 2-13-17 Kamiosaki Shinagawa-ku, , Tokyo 141-0021 Japan -Hirohisa Ogawa
|
C4CS
Version 1.0.0 |
3/23/2004 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "C4CS is a software cryptographic module providing symmetric/asymmetric ciphers, hash function, and secret sharing schemes." |
| 243 | iDirect Technologies, Inc.
10803 Parkridge Boulevard, Reston , VA 20191 USA -Sasmith Reddi
|
Protocol Processor Cryptographic Chip
Part #1.0 |
3/18/2004 |
TCBC(e/d; KO 1,2,3) "iDirect Technologies' broadband VSAT solutions enable enterprise IT application delivery when performance, bandwidth, and efficient capital costs are required. In a single turnkey solution, enterprises get fast, reliable, cost-effective, broadband IP connections for LAN-to-LAN connectivity and/or direct point-to-point links." |
| 242 | iDirect Technologies, Inc.
10803 Parkridge Boulevard, Reston , VA 20191 USA -Sasmith Reddi
|
NetModem Cryptographic Chip
Part #1.0 |
3/18/2004 |
TCBC(e/d; KO 1,2,3) "iDirect Technologies' broadband VSAT solutions enable enterprise IT application delivery when performance, bandwidth, and efficient capital costs are required. In a single turnkey solution, enterprises get fast, reliable, cost-effective, broadband IP connections for LAN-to-LAN connectivity and/or direct point-to-point links." |
| 241 | Vormetric, Inc.
3131 Jay Street, Santa Clara , CA 95054 USA -Mukesh Nigam
|
CoreGuard Security Server
Version VN.3.0SP1 |
3/18/2004 |
TCBC(e/d; KO 1,2,3); TCFB64(e/d; KO 1,2,3) "Vormetric CoreGuard is a comprehensive security solution that combines protection of data at rest and host protection. CoreGuard integrates a software module loaded on a server and FIPS compliant appliance with user-defined security policies allowing fine-grain data access control and encryption of stored data." |
| 240 | Good Technology
1032 Morse Ave, Sunnyvale , CA 94089 USA -Prathaban Selvaraj
|
FipsCrypto on PocketPC
Version 20040220 |
3/18/2004 |
TCBC(e/d; KO 1,2,3) "The FipsCrypto on Pocket PC is a FIPS 140-2 compliant software-based cryptographic module that implements the 3DES, AES, SHA-1 and HMAC-SHA-1 algorithms." |
| 239 | Giesecke & Devrient America, Inc.
45925 Horseshoe Drive, Dulles , VA 20166 USA -Won J Jun
-Hassan Tavassoli
|
Sm@rtCaf?Expert FIPS 64K
Part #HD65246C1A05NB (Firmware Version:CH463JC_IRNABFOP003901_V101) |
3/10/2004 |
TECB(e/d; KO 2,3); TCBC(e/d; KO 2,3) "Giesecke & Devrient (G&D) Smart Card Chip Operating System Sm@rtCaf?Expert FIPS 64K is a Java Card 2.2 and Open Platform v2.0.1' compliant smart card module. It supports, at a minimum, Triple-DES, AES, DSA, and RSA algorithms with on-card key generation. The Sm@rtCaf?Expert FIPS 64K is suitable for government and corporate identification, payment and banking, health care, and Web applications" |
| 238 | TeamF1, Inc.
39159 Paseo Padre Parkway #121, Fremont , CA 94538 USA -Mukesh Lulla
|
Krypto-Lite Library
Version 2.0 |
3/4/2004 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3); TCFB64(e/d; KO 1,2,3); TOFB(e/d; KO 1,2,3) "TeamF1's Krypto-Lite Is a FIPS 140-2 compliant, standards-based flexible, high performance and modular software cryptographic algorithms library. It is available in "C" source code form and tailored for embedded use and for hardware acceleration. It includes symmetric and asymmetric ciphers as well as crypto hash algorithms with an interface that can be used with any network security application." |
| 237 | Fortinet Inc.
920 Stewart Drive, Sunnyvale , CA 94085 USA -Alan Kaye
|
FortiOS Cryptographic Library
Version 1.0 |
3/4/2004 |
TCBC(e/d; KO 1,2,3) "The FortiGate modules are multiple chip, standalone cryptographic modules consisting of production grade components contained in a physically protected enclosure in accordance with FIPS 140-2 Level 2 requirements." |
| 236 | Datakey, Inc.
407 W. Travelers Trail, Burnsville , MN 55337-2554 USA -Hazem Hassan
-Datakey Sales
|
Model 330G2 Smart Card
Part #1.0 (Firmware Version 2.0) |
3/4/2004 |
TECB(e/d; KO 2,3); TCBC(e/d; KO 2,3) "The 330G2 is an ISO 7816 and GSC-IS compliant cryptographic smart card that offers multiapplication secure storage and retrieval of digital credentials. Cryptographic services provided by the card include SHA-1, DES, 3DES, RSA and DSA with on board key generation including RSA 2048-bit key generation" |
| 235 | Nokia
313 Fairchild Drive, Mt View , CA 94043 USA -Robert Kusters
|
Nokia HW Cryptographic Implementation
Part #NBB3350000 |
2/18/2004 |
TCBC(e/d; KO 1,2,3) "The Nokia IP350 and IP380 are full-featured enterprise systems designed for small to medium enterprises, with Service Provider flexibility and rapid serviceability option in a single rack space. When combined with Check Point VPN-1/FW-1, these platforms provide reliable, easy to manage distributed security and access." |
| 234 | Nokia
313 Fairchild Drive, Mt View , CA 94043 USA -Robert Kusters
|
Nokia IPSO Cryptographic SW Implementation
Version 3.7 |
2/18/2004 |
TCBC(e/d; KO 1,2,3) "The Nokia IP350 and IP380 are full-featured enterprise systems designed for small to medium enterprises, with Service Provider flexibility and rapid serviceability option in a single rack space. When combined with Check Point VPN-1/FW-1, these platforms provide reliable, easy to manage distributed security and access." |
| 233 | VCON Telecommunications
22 Maskit St., Herzliya 46733 Israel -Yair Shachar
|
Advanced Encryption Server
Version 3.5 |
2/4/2004 |
TECB(e/d; KO 1,2,3) "An IP networking platform that dynamically creates a secure (fully encrypted) and private virtual LAN for videoconferences or any other data transmissions across public and/or private networks." |
| 232 | Oberthur Card Systems
3150 E. Ana Street, Rancho Dominguez , CA 90221 USA -Christophe Goyet
|
ID-One Cosmo 72K RSA D
Version 0xE302 (Firmware) |
2/4/2004 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "The Oberthur Card Systems CosmopolIC 72K RSA Java Card Platform is a single chip cryptographic micro-processor smart card specifically designed for identity and government market needs, with a large memory (72KB), a highly secure architecture and several services and default applications in ROM for ISO 7816 File System, Biometry and Authentication." |
| 231 | SonicWALL, Inc.
1143 Borregas Ave., Sunnyvale , CA 94089-1306 USA -Paal Tveit
|
SonicWALL PRO 3060/4060
Version 2.0 (Firmware) |
2/4/2004 |
TCBC(e/d; KO 1,2,3) "The PRO 4060 and PRO 3060 are internet security appliances offering stateful packet inspection firewall services, accelerated IPSec VPN, bandwidth management, and dual-WAN port support with ISP failover and load-balancing capabilities, all via six configurable 10/100 Ethernet interfaces." |
| 230 | Layer N Networks, Inc.
12401 Research Blvd., Bldg 2, Suite 275, Austin , TX 78759 -Rick Hall
|
UltraLock Cryptographic Module
Part #A1 |
1/14/2004 |
TCBC(e/d; KO 1,2,3) ""The UltraLock?Cryptographic Module performs all the cryptography required for SSL/TLS applications. This module is a common element of the LNN2010 and LNN2025 UltraLock Security Processors, the industry's first single-chip solutions for completely off-loading SSL/TLS processing from host systems. The innovative in-line architecture combines TCP/IP termination and high-speed cryptography to transparently process SSL/TLS traffic at wire speed without impacting host system performance. Industry-standard GMII Ethernet connectivity allows UltraLock processors to drop easily into common networking and security platforms without special software development or complex hardware redesign, greatly reducing time to market."" |
| 229 | Credant Technologies, Inc.
15303 N Dallas Parkway, Suite 1420, Addison , TX 75001 USA -Chris Burchett
|
Credant Cryptographic Kernel
Version 1.0 |
1/5/2004 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "CREDANT Cryptographic Kernel is a FIPs-140-2 compliant, software-based cryptography library that implements 3DES, AES and SHA-1 algorithms for the CREDANT Mobile Guardian product. CREDANT Mobile Guardian enables enterprise-wide control of security for mobile and wireless users of laptops, tablet PCs & PDAs." |
| 228 | Blue Ridge Networks
14120 Parke Long Court, Chantilly , VA 20151 USA -Tom Gilbert
|
BG4000 Cryptographic Module
Version 6.2 (Firmware) |
12/18/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "The BG4000 and BG3140 are network security appliances for the construction of secure Virtual Private Networks between Internet sites, and between Internet sites and individual remote users." |
| 227 | Blue Ridge Networks
14120 Parke Long Court, Chantilly , VA 20151 USA -Tom Gilbert
|
BG4000 Cryptographic Module
Part #BG4000 |
12/18/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "The BG4000 and BG3140 are network security appliances for the construction of secure Virtual Private Networks between Internet sites, and between Internet sites and individual remote users." |
| 226 | PalmSource, Inc.
1240 Crossman Drive, Sunnyvale , CA 94089 USA -Richard Levenberg
|
Cryptographic Provider Manager
Version 5.2.2 |
12/8/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3); TCFB8(e/d; KO 1,2,3); TCFB64(e/d; KO 1,2,3); TOFB(e/d; KO 1,2,3) "The CPM provides robust cryptographic functionality through a simple API that developers can use with very little cryptographic expertise. The FIPS certified algorithms, available through the CPM, include 3DES, AES and SHA1. SHA2, RC4, and RSA public operations are also supported." |
| 225 | Mindspeed Technologies, Inc.
4000 Mac Arthur Blvd., Newport Beach , CA 92660 USA -Elie Massabki
|
M826xx
Version 1 (Firmware) |
12/8/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "M826xx is Communications Convergence Processor for Voice over IP (VoIP) and Voice over ATM (VoATM) applications." |
| 224 | Chunghwa Telecom
12, Lane 551, Min-Tsu Road SEC.5, Yang-Mei, Taoyuan , Tawian 326 Republic of China -Yu-Ling Cheng
|
SafGuard 200 Cryptographic Library
Version 1.0 (Firmware) |
12/8/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "SafGuard200 is a multi-chip standalone cryptographic module that is used to provide highly-secure cryptographic services and key storage for PKI applications. (e.g., secure private key storage, high-speed math accelerator for 1024-4096 bit public key signatures, and hashing). The SafGuard 200 HSM provides secure identity-based challenge-response authentication using smart cards and data encryption using FIPS approved 3DES and AES encryption." |
| 223 | Mobile Armor, LLC
400 South Woods Mill Road, Suite 110, Chesterfield , MO 63017-3407 USA -Bryan Glancey
|
MA Crypto Module
Version 1.0 |
11/26/2003 |
TECB(e/d; KO 1,2,3) "Mobile Armor's FIPS 140-2 certified cryptographic Module is for use in all products and all platforms including PocketPC, PalmOS, Windows, and Linux. This provides consistent protection on all platforms. Mobile Armor integrates this module into it's suite of Enterprise Security Solutions." |
| 222 | Real Time Logic, Inc.
1042 Elkton Dr., Colorado Springs , CO 80907 USA -Bela Szabo
|
RTL-TDEA
Version 1.0(Firmware) Part #RTL-P200006 |
11/13/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3); TCFB64(e/d; KO 1,2,3); TOFB(e/d; KO 1,2,3) "RTL-TDEA Module is a multi-chip embedded cryptographic PCI card supporting TECB, TCBC, TCFB-64, TOFB-64, Encrypt and Decrypt FIPS modes." |
| 221 | Good Technology
1032 Morse Ave, Sunnyvale , CA 94089 USA -Phil Peterson
|
GoodFipsCrypto.prc
Version 20031028 |
11/7/2003 |
TCBC(e/d; KO 1,2,3) "The GoodFipsCrypto.prc is a FIPS 140-2 compliant software-based cryptographic module that implements the TDES, AES, SHA-1 and HMAC-SHA-1 algorithms." |
| 220 | Enterasys Networks
50 Minuteman Road, Andover , MA 01810 USA -Damon Hopley
|
Enterasys Cryptographic Hardware
Part #SafeNet 1140; HW: Version 1.0 |
11/7/2003 |
TCBC(e/d; KO 1,2,3) "Hardware cryptographic algorithm implementations for the XSR product line." |
| 219 | Enterasys Networks
50 Minuteman Road, Andover , MA 01810 USA -Damon Hopley
|
Enterasys IR Cryptographic Library
Version 1.0 |
11/7/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "Software cryptographic algorithm implementations for the XSR product line." |
| 218 | Enterasys Networks
50 Minuteman Road, Andover , MA 01810 USA -Damon Hopley
|
Enterasys SSH Cryptographic Library
Version 1.0 |
11/7/2003 |
TCBC(e/d; KO 1,2,3) "Software cryptographic algorithm implementations for the XSR product line." |
| 217 | Cavium Networks
2610 Augustine Dr., Santa Clara , CA 95054 USA -Mike Scruggs
|
NITROX Lite Security Macro Processors
Version CN1000-MC-Cryptomodule-1.1 Part #NITROX Lite CN1010 |
11/7/2003 |
TCBC(e/d; KO 1,2,3) "The NITROX Lite CN1010 is one member of the NITROX-Lite line of award winning security processors from Cavium Networks. Based on common hardware processor core architecture, the NITROX-Lite family delivers 50Mbs to 1 Gbps of encryption bandwidth with 1 to 7K RSA/DH operations per second. NITROX processors and acceleration boards are being used by server-motherboard vendors and OEMs, in a wide range of equipment, to accelerate security protocols and algorithms." |
| 216 | Research in Motion
295 Phillip Street, Waterloo , Ontario N2L 3W8 Canada -BlackBerry Security Team
|
BlackBerry Enterprise Server Cryptographic Library
Version 1.0 |
11/13/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "BlackBerry is the leading wireless enterprise solution that allows users to stay connected with secure, wireless access to email, corporate data, phone, web and organizer features. BlackBerry is a totally integrated package that includes hardware, software and service, providing a complete end-to-end solution. The BlackBerry" |
| 215 | IBM Corporation
2455 South Road, Poughkeepsie , NY 12601 USA -Tamas Visegrady
|
UltraCypher 2 Crytographic Engine
Part #1.0 |
10/23/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "The IBM UltraCypher 2 Cryptographic Engine is a flexible, high performance subsystem that provides fast, ultra-secure, hardware-based cryptographic functionality." |
| 214 | Hifn, Inc.
750 University Avenue, Los Gatos , CA 95032 USA -Glenn Haley
|
7956
Part #7956; Version 1.0 |
10/20/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "The Hifn 7955 and 7956 are advanced security processors designed for high-speed T3/OC3, ROBO/SME networking applications like VPN Broadband Routers, wireless access points, VPN Edge Routers/Gateways, Firewall/VPN Appliances and other Network and Customer Premise Equipment (CPE)." |
| 213 | Hifn, Inc.
750 University Avenue, Los Gatos , CA 95032 USA -Prasad Shroff
|
7814-W
Part #7814-W |
10/20/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "Hifn Intelligent Packet Processing chips are full-duplex T3 to full-duplex OC-12, Integrated public key, 3DES, Advanced Encryption Standard (AES), and compression - the latest chips from Hifn have it all in a single high-performance package." |
| 212 | 3Com Corporation
5500 Great America Parkway, Santa Clara , CA 95052 USA -Victoria Van Spyk
|
3Com's IPSec Offload Integrated Circuit
Part #40-0728-001 |
10/10/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "3Com's IPSec Offload Integrated Circuit is hardware based crypto device that performs IPSec (DES, TDES, SHA-1, MD5 and HMAC) computations on 3Com's series of Secure Network Interface Cards and Embedded Firewall products." |
| 211 | Vindicator Technologies, Inc.
5307 Industrial Oaks Blvd., Suite 130, Austin , TX 78735 USA -Daniel Skret
|
TDEA Option
Version 1.0 (Firmware) |
10/10/2003 |
TCFB8(e/d; KO 1,2,3) "TDEA Encryption option for UHS-net security monitoring and control equipment." |
| 210 | SafeNet, Inc.
8029 Corporate Drive, Baltimore , MD 21236 USA -Joel Rieger
|
SafeXcel 1141/1741
Part #11 |
9/30/2003 |
TCBC(e/d; KO 1,2,3) "The SafeXcel 1141/1741 ASICs are part of the SafeNet IPsec co-processor chip family. The devices consist of an IPsec Packet Engine that performs DES, TDES, AES, SHA-1, MD5, header/trailer and insertion/deletion operations, a Public Key Accelerator that performs RSA, DSA, and DH operations using long vector math up to 2048 bits, and a Random Number Generator that provides up to 2 Mbps of random data." |
| 209 | Good Technology
1032 Morse Ave, Sunnyvale , CA 94089 USA -Phil Peterson
|
FipsCrypto
Version 1.9.3.7 |
9/30/2003 |
TCBC(e/d; KO 1,2,3) "The FipsCrypto is a FIPS 140-2 compliant software-based cryptographic dll module that implements the 3DES, AES, SHA-1 and HMAC-SHA-1 algorithms." |
| 208 | Backbone Security.com
701 Main Street, Suite 300, Stroudsburg , PA 18360 USA - Marc Kurtz
|
Ribcage Kernel
Version 2.2 FIPS |
9/22/2003 |
TCBC(e/d; KO 1,2,3) "Ribcage is a secure IPSec Virtual Private Network that provides secure connectivity deployed on a shared infrastructure with the same privacy and performance as a leased network. Ribcage is a solution that is flexible as both a secure virtual private network and as a remote access device." |
| 207 | PGP Corporation
3460 West Bayshore, Palo Alto , CA 94303 USA -Vinnie Moscaritolo
|
PGP Cryptographic SDK
Version 3.0.3 9/17/2003 only KO 3 was validated for TDES. On 9/30/2003, received validation of KO1 for the same modes for TDES. Updated database. |
9/17/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3); TCFB64(e/d; KO 1,2,3) "The PGP SDK includes a wide range of field-tested and standards-based encryption, digital signature, and encoding algorithms as well as a variety of secure network protocol implementations. The PGP SDK offers developers the same core crypto that is at the heart of PGP products." |
| 206 | GE-Interlogix
791 Park of Commerce Blvd, Boca Raton , FL 33487 USA -Khalil Yacoub
|
Triple DES C Module
Version 1.1 (Firmware) |
9/17/2003 |
TECB(e/d; KO 1,2,3) "M/5PX-N, PXN2000, Picture Perfect, NX590E, OH Network Receiver, OH TCP/IP Line-card, ATS-1806, AL-1806, Simon/Concord TCP/IP Module, Premises Manager, DL900" |
| 205 | IDT
2975 Stender Way, Santa Clara , CA 95054 USA -Alex Soohoo
|
RC32365
Part #ZA |
9/16/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "The Interprise Access RC32365 is an integrated communications processor that addresses the secure SOHO wired/wireless gateway and VPN/firewall appliance markets by incorporating a high-performance CPU, an on-chip security engine and key peripheral interfaces." |
| 204 | Cavium Networks
2610 Augustine Dr., Santa Clara , CA 95054 USA - Mike Scruggs
|
NITROX II In-line Security Processors
Version NITROX II (Firmware) Part #CN2130 |
8/27/2003 |
TCBC(e/d; KO 1,2,3) "NITROX II In-Line Security Processors Product Description: The NITROX II CN2130 is one member of the Cavium Networks award winning NITROX, NITROX Lite, and NITROX II line of security processors. Based on a common hardware processor core, the NITROX families deliver 50Mbs to 10Gbps of encryption bandwidth with 1K to 40K RSA/DH operations per second. NITROX processors and acceleration boards are being used by server-motherboard vendors and OEMs in a wide range of networking equipment to accelerate security protocols and algorithms." |
| 203 | Cavium Networks
2610 Augustine Dr., Santa Clara , CA 95054 USA -Mike Scruggs
|
NITROX Security Macro Processor
Version CN1000-MC-CryptoModule-1.1(Firmware) Part #NITROX CN1120 |
8/27/2003 |
TCBC(e/d; KO 1,2,3) "NITROX Security Macro Processor Product Description: The NITROX CN1120 is one member of the NITROX line of award winning security processors from Cavium Networks. Based on a common core hardware processor architecture, the NITROX family delivers 50Mbs to 10Gbps of encryption bandwidth with 1K to 40K RSA/DH operations per second. NITROX processors and acceleration boards are being used by server-motherboard vendors and OEMs, in a wide range of equipment, to accelerate security protocols and algorithms." |
| 202 | F-Secure Corporation
Tammasaarenkatu 7, PL 24, Helsinki 00181 Finland -Alexey Kirichenko
|
F-Secure(R) Cryptographic Library ?/B>
Version 2.1 |
8/27/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3); TCFB64(e/d; KO 1,2,3); TOFB(e/d; KO 1,2,3); CTR(ext only; KO 1,2,3) "The F-Secure Cryptographic Library for Windows is a 140-2 Level 2 compliant software module, implemented as a 32-bit Windows compatible DLL. The module provies an assortment of cryptographic services to client processes that attach instances of the module DLL." |
| 201 | Microsoft Corporation
One Microsoft Way, Redmond , WA 98052-6399 USA |
Windows 2003 Kernel Mode Cryptographic Module (fips.sys)
Version 5.2.3790.0 |
8/19/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "Kernel level .sys module exporting cryptographic functionality." |
| 200 | Research in Motion
295 Phillip Street, Waterloo , Ontario N2L 3W8 Canada -Ian Robertson
|
BlackBerry Cryptographic API
Version 3.6 |
8/14/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3); TCFB8(e/d; KO 1,2,3); TCFB64(e/d; KO 1,2,3); TOFB(e/d; KO 1,2,3) "BlackBerry?is the leading wireless enterprise solution that allows users to stay connected with secure, wireless access to email, corporate data, phone, web and organizer features. BlackBerry?is a totally integrated package that includes hardware, software and service, providing a complete end-to-end solution. The BlackBerry?Cryptographic API provides advanced cryptographic functionality for the BlackBerry?" |
| 199 | Microsoft Corporation
One Microsoft Way, Redmond , WA 98052-6399 USA |
Windows 2003 Enhanced DSS and Diffie-Hellman Cryptographic Provider (DSSENH)
Version 5.2.3790.0 |
8/5/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "The Microsoft Enhanced DSS and Diffie-Hellman Cryptographic Provider is a FIPS 140-2 compliant, software-based, cryptographic module.RSAENH encapsulates several different cryptographic algorithms (including SHA-1, DES, 3DES, DSA, SHA-1-based HMAC) in a cryptographic module accessible via the Microsoft CryptoAPI." |
| 198 | Wei Dai
Groove Networks, Inc., 100 Cummings Center, Suite 535Q, Beverly , MA 01915 USA -Wei Dai
|
Crypto++ Library
Version 5.0.4 |
7/30/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3); TCFB8(e/d; KO 1,2,3); TCFB64(e/d; KO 1,2,3); TOFB(e/d; KO 1,2,3); CTR(ext only; KO 1,2,3) "The Crypto++ Library is a free, open source C++ class, 32-bit dynamic link library (DLL) providing public key encryption, digital signatures, symmetric ciphers, hash functions, message authentication codes, and other cryptographic algorithms." |
| 197 | Airespace Inc.
110 Nortech Pkwy, San Jose , CA 95134 USA -Scott Kelly
|
Airespace IPSec Crypto Module
Version 1.3 Part #35-100680-000 (R1) |
7/29/2003 |
TCBC(e/d; KO 1,2,3) "Airespace IPSec Crypto Module provides cryptographic services for the Airespace Wireless Enterprise Platform. Airespace offers a unique hierarchical architecture that centralizes network intelligence for cost effective deployment, dynamic RF operations, secure mobility management, service creation, and policy enforcement throughout an entire wireless network." |
| 196 | Airespace Inc.
110 Nortech Pkwy, San Jose , CA 95134 USA -Scott Kelly
|
Airespace SSL Crypto Module
Version 1.3 Part #35-100681-000 (R1) |
7/29/2003 |
TCBC(e/d; KO 1,2,3) "Airespace SSL Crypto Module provides cryptographic services for the Airespace Wireless Enterprise Platform. Airespace offers a unique hierarchical architecture that centralizes network intelligence for cost effective deployment, dynamic RF operations, secure mobility management, service creation, and policy enforcement throughout an entire wireless network." |
| 195 | ADEMCO [d.b.a. Honeywell International, Inc.]
165 Eileen Way, Syosset , NY 11791 USA -Harry Pashkoff
|
AC Communicator Module
Version WA-ACMDES3 Part #472491D3 |
7/22/2003 |
TCFB1(e/d; KO 1,2,3) "The AC Communicator Module (P/N 472491D3) is used to encrypt and transmit security system data over public telephone line, RS232 and DVAC to proprietary central station automation equipment." |
| 194 | Penta Security Systems, Inc.
9th Fl. Hana Securities Bldg., 23-3 Yoido-dong, Youngdeungpo-ku, Seoul 150-709 Korea -Yoon-sung Chong
-Duk Soo Kim
|
CIS Crypto Library
Version 2.0 |
7/22/2003 |
TECB(e/d; KO 2,3); TCBC(e/d; KO 2,3); TCFB8(e/d; KO 2,3); TCFB64(e/d; KO 2,3); TOFB(e/d; KO 2,3) "The Penta Security CIS Crypto Library is a full set C software library providing high-performance implementations of various cipher algorithms (AES, DES, 3DES, SEED, IDEA, Blowfish, RC2, RC5, PACA, RSA, DSA, KCDSA, RC4, etc.), hash algorithms and message authentication codes." |
| 193 | Schlumberger
8311 North FM 620 Rd., Austin , TX 78726 USA -Mike Neumann
|
Cyberflex Access 64K V2
Part #M516LACC2 Hardmask 1V1 Softmask 2V1 |
7/14/2003 |
TECB(e/d; KO 2,3); TCBC(e/d; KO 2,3) "The Cyberflex Access 64K V2 smart card can be employed in solutions which provide secure PKI (public key infrastructure) and digital signature technology. Cyberflex Access 64K V2 serves as a highly portable, secure token for enhancing the security network access and ensuring secure electronic communications." |
| 192 | Microsoft Corporation
One Microsoft Way, Redmond , WA 98052-6399 USA |
Windows 2003 Enhanced Cryptographic Provider (RSAENH)
Version 5.2.3790.0 |
6/30/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "The Microsoft Enhanced Cryptographic Provider is a FIPS 140-2 compliant, software-based, cryptographic module.RSAENH encapsulates several different cryptographic algorithms (including SHA-1, DES, 3DES, AES, RSA, SHA-1-based HMAC) in a cryptographic module accessible via the Microsoft CryptoAPI." |
| 191 | INITECH Co. Ltd.
7F, Initech B/D, 559-5 Geoyo-dong, Songpa-Gu, Seoul 138-110 Republic of Korea -Jae-Guen Kim
|
INISAFE Crypto for C
Version 2.0 |
6/25/2003 |
TCBC(e/d; KO 1,2,3) "INISAFE Crypto enables developers to build PKI based security applications. It supports asymmetric/symmetric ciphers, hash functions, digital signatures, and other cryptographic algorithms. INISAFE Crypto provides user friendly interface to all developers." |
| 190 | Sun Microsystems
4150 Network Circle, Santa Clara , CA 95054 USA -Javier Lorenzo
-Irfan Khan
|
Sun Crypto Accelerator 4000
Version 1.0 (Hardware) Part # X4011A Sun Crypto Accelerator 4000 - Copper |
6/25/2003 |
TCBC(e/d; KO 1,2,3) "Cryptographic Acceleration Card" |
| 189 | IBM
11400 Burnet Rd, Austin , TX 78758 USA -Tom Benjamin
|
IBM Java JCE 140-2 Cryptographic Module
Version 1.0 |
6/19/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3); TCFB64(e/d; KO 1,2,3); TOFB(e/d; KO 1,2,3) "The IBM?Java?JCE (Java Cryptographic Extension) FIPS provider (IBMJCEFIPS) for Multi-platforms is a scalable, multi-purpose cryptographic module that supports only FIPS approved cryptographic operations via the Java2 Application Programming Interfaces (APIs)." |
| 188 | Meganet Corporation
16133 Ventura Blvd. #640, Encino , CA 91436 USA -Saul Backal
|
VME Crypto Engine
Version M144 (Firmware) |
7/22/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "VME Crypto Engine is a suite of tools that make data encryption and decryption easy and reliable. VME Crypto Engine also provides tools that allow you to encrypt and decrypt email messages, chat sessions, files transmitted ftp, and more." |
| 187 | Bluesocket, Inc.
7 New England Executive Park, Burlington , MA 01803 USA -Mike Puglia
|
WG-2100 Wireless Gateway
Version Release 3 |
6/10/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "The Bluesocket WG-2100 Wireless Gateway provides a single scalable solution to the security, quality of service (QoS), and management issues facing institutions, enterprises, and service providers who deploy 802.11 and Bluetooth-based wireless networks." |
| 186 | ECI Systems and Engineering
3100 Knight Street, Suite 7, Shreveport , Louisiana 71105 USA -Chris Farmer
|
ECI IPSec Cryptographic Module
Version 1.6 |
6/10/2003 |
TECB(e/d; KO 2,3); TCBC(e/d; KO 1,2,3) "A software IPSec implementation for Sun Trusted Solaris. This module supports Triple DES encryption/decryption, SHA-1, and HMAC-SHA-1." |
| 185 | Pitney Bowes, Inc.
35 Waterview Drive, Shelton , CT 06484 U.S.A. -Douglas Clark
|
Pitney Bowes iButton Postal Security Device (PSD)
Part #DS1955B PB0 1.00c |
6/6/2003 |
TCBC(e/d; KO 2,3) "The Pitney Bowes iButton Postal Security Device (PSD) has been designed in compliance with the United States Postal Service (USPS), Information-Based Indicia Program (IBIP). It employs strong encryption, decryption, and digital signature techniques for the protection of customer funds and the production of postage meter indicia in a variety of Pitney Bowes Metering products. The PSD has been designed to support international postal markets and their evolving requirements for digital indicia." |
| 184 | General Dynamics Decision Systems
8201 East McDowell Road, Scottsdale , AZ 85252 USA -Dick Moat
|
Crypto ASIC
Part #22025799 |
5/20/2003 |
TDES "TDES Crypto ASIC" |
| 183 | Nortel Networks, Inc.
600 Technology Park, Billerica , MA 01821 USA -Jonathan Lewis
|
Contivity Extranet Switch
Version 4.7 |
5/20/2003 |
TCBC(e/d; KO 1,2,3) "Contivity Secure IP Services Gateways models 600, 1700, 2700 provide routing, VPN, firewall, bandwidth management, encryption, authentication, and data integrity for secure connectivity across managed IP networks and the Internet. Contivity Secure IP Services Gateways connect remote users, branch offices, suppliers, and customers with the cost and performance advantages of public IP networks and the security and control found in private networks." |
| 182 | Martsoft
2902 Corvin Dr., Santa Clara , CA 95051 USA -Paul Chen
|
Eagle 64K Flash
Version V1 |
5/7/2003 |
TECB(e/d; KO 2,3); TCBC(e/d; KO 2,3) "EagleCard v1 cryptographic module is a combination of the "Atmel Smart Card IC" and "Martsoft GlobalPlatform JavaCard OS". The module contains a microprocessor, a crypto co-processor, EEPROM and FLASH memory to provide processing capability and memory for storing programs and data." |
| 181 | L3 Communications-EER Systems, Inc.
3750 Centerview Drive, Chantilly , VA 20151 USA -Suma Shastry
|
TASS TDES
Version 5.5 |
4/24/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "The TASS TDES firmware is used in the Hand Held Monitor (HHM) and the Communications Module (CM) - components of the Tactical Automated Security System (TASS). The HHM is used to detect, monitor, and access intrusions in secured areas. The CM works in conjunction with the HHM to receive and forward intrusion alerts." |
| 180 | IBM Zurich Research Laboratory
Saeumerstrasse 4, Rueschlikon , CH 8803 Switzerland -Michael Osborne
|
IBM CryptoLite in C
Version 3.0 (FIPS140/Prod) |
4/18/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "IBM CryptoLite is a C software package providing advanced Cryptographic services in a very small footprint. CryptoLite supports public key encryption, digital signatures, symmetric ciphers, hash functions, message authentication codes, and other cryptographic algorithms through a simple programming interface. There are no runtime dependencies and the code has been optimized for high performance." |
| 179 | SPYRUS, Inc.
2355 Oakland Road, Suite 1, San Jose , CA 95131 USA -Tom Dickens
|
Rosetta CSI sToken
Version 4.02.00.04 |
4/11/2003 |
TECB(e/d; KO 2,3); TCBC(e/d; KO 2,3) "The Rosetta CSI sToken is a software cryptographic token providing digital signature and encryption services in a PC environment. The Rosetta sToken provides for ease of use, deployment, and the assurance provided through independent third party security validation." |
| 178 | Nauticus Networks
200 Crossing Boulevard, Framingham , MA 01702 USA -Matt Rollender, Director of Marketing
|
N2000 Series Switch
Version 1.0 |
4/7/2003 |
TCBC(e/d; KO 1,2,3) "Nauticus Networks N2040 and N2120 are purpose built application switches that enable cost effective, reliable, deployment of intergrated network and security services, delivering gigabit scaled Layer 5-7 application switching, Layer 4 load balancing, and SSL acceleration to the most demanding enterprise and service provider environments." |
| 177 | Trust Digital
3251 Old Lee Highway, Suite 212, Fairfax , VA 22030 USA -Mike Shahbazi
|
Trust Digital Crypto Library
Version 3.0 |
4/2/2003 |
TECB(e/d; KO 1,2,3) "Award winning Trusted Mobility Server allows an organization to centrally manage an unlimited number of PDA handheld or wireless devices. Access control, encryption, Data Wipe and many more device functionality can all be set and pushed to the device. A complete audit trail of device usage is also recorded. Trust Digital offers security for Palm, Pocket PC, Blackberry (RIM), Symbian and all windows operating systems." |
| 176 | Hifn, Inc.
750 University Avenue, Los Gatos , CA 95032 USA -Prasad Shroff
|
8154PB5
Version Rev 1.0 Part #8154PB5 |
3/21/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "Hifn Intelligent Packet Processing chips are full-duplex T3 to full-duplex OC-12, Integrated public key, 3DES, Advanced Encryption Standard (AES), and compression - these latest chips from Hifn have it all in a single high-performance package." |
| 175 | SafeNet, Inc.
8029 Corporate Drive, Baltimore , MD 21236 USA -Adam Bell
|
CY 1041 ASIC
Part #CY 1041 |
3/20/2003 |
TCBC(e/d; KO 1,2,3) "Triple DES ASIC that is located in the SafeNet, Inc. HA2000 VPN." |
| 174 | IBM Corporation
3901 S. Miami Blvd., Durham , NC 27703 USA |
IBM Crypto for C
Version 0.1 |
3/20/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3); TCFB64(e/d; KO 1,2,3); TOFB(e/d; KO 1,2,3) "The ICC is a C language implementation of cryptographic functions which uses the cryptograhic library provided by the OpenSSL project. This enables IBM products to use an open source solution for cryptography and a FIPS 140-2 certificate cryptographic provider." |
| 173 | ReefEdge, Inc.
2 Executive Dr., Fort Lee , NJ 07024 USA -Silvia Ercolani
|
ReefEdge Cryptographic Library
Version 3.1 |
3/6/2003 |
TCBC(e/d; KO 1,2,3) "The ReefEdge family of Edge Controllers provides perimeter security and high-speed subnet roaming to the ReefEdge Connect System, connecting an enterprise's access points to its wired LAN." |
| 172 | ReefEdge, Inc.
2 Executive Dr., Fort Lee , NJ 07024 USA -Silvia Ercolani
|
ReefEdge Cryptographic Kernel
Version 3.1 |
3/6/2003 |
TECB(e/d; KO 2,3); TCBC(e/d; KO 1,2,3) "The ReefEdge family of Edge Controllers provides perimeter security and high-speed subnet roaming to the ReefEdge Connect System, connecting an enterprise's access points to its wired LAN." |
| 171 | ReefEdge, Inc.
2 Executive Dr., Fort Lee , NJ 07024 USA -Ms. Silvia Ercolani
|
ReefEdge Encryption Acceleration Hardware
Part #Version 3.0 |
3/6/2003 |
TECB(e/d; KO 2,3); TCBC(e/d; KO 1,2,3) "The ReefEdge family of Edge Controllers provides perimeter security and high-speed subnet roaming to the ReefEdge Connect System, connecting an enterprise's access points to its wired LAN." |
| 170 | Oracle Corporation
500 Oracle Parkway, Redwood Shores , CA 94065 USA -Lakshmi Kethana
|
Oracle Crypto Library for SSL
Version 9.0.4 |
3/6/2003 |
TCBC(e/d; KO 1,2,3) "The Cryptographic Library for SSL is a generic module used in a variety of Oracle application suites. It provides support for cryptography, authentication, PKCS and certificate management for applications like the Oracle database (Server & Client), Oracle Applications Server, Oracle Internet Directory, Web Cache and Apache." |
| 169 | Cisco Systems, Inc
7025-6 Kit Creek Road, PO Box 14987, Research Triangle Park , NC 27709-4987 USA -Ray Potter
|
VPN Client
Version 3.6.3B |
2/20/2003 |
TCBC(e/d; KO 1,2,3) "The Cisco VPN Client enables you to establish secure, end-to-end encrypted tunnels. The client can be pre-configured for mass deployments and initial logins require very little user intervention. VPN access policies and configurations are downloaded from the central gateway and pushed to the client when a connection is established, allowing simple deployment and management, as well as high scalability." |
| 168 | Cisco Systems, Inc
7025-6 Kit Creek Road, PO Box 14987, Research Triangle Park , NC 27709-4987 USA -Ray Potter
|
VPN 3000 Concentrator Series
Version 3.6 |
2/13/2003 |
TCBC(e/d; KO 1,2,3) "The Cisco VPN 3000 Concentrator Series is a best-of-breed, remote-access VPN solution for enterprise-class deployment. The validation includes hardware models 3005, 3015, 3030, 3060, 3080 and the 3002 hardware client." |
| 167 | Research in Motion
295 Phillip Street, Waterloo , Ontario N2L 3W8 Canada -Ian Robertson
|
BlackBerry Cryptographic Kernel
Version 3.3 |
2/4/2003 |
TCBC(e/d; KO 2,3) "BlackBerry?is the leading wireless enterprise solution that allows users to stay connected with secure, wireless access to email, corporate data, phone, web and organizer features. BlackBerry?is a totally integrated package that includes hardware, software and service, providing a complete end-to-end solution. The BlackBerry?Cryptographic Kernel is the software module that provides the basic cryptographic functionality for the BlackBerry?" |
| 166 | Colubris Networks Inc.
420 Armand-Frappier (suite 200), Laval , Quebec H7V 4B4 Canada -St?hane Laroche
|
fipscrypto
Version 1.0 |
2/4/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "Colubris CN105x Secure Wireless LAN Router enables strong security for wireless enterprise networking, using embedded IPSec VPN and firewall functionalities. fipscrypto is the kernel mode implementation in the CN1050 and CN1054 Wireless LAN Routers" |
| 165 | Colubris Networks Inc.
420 Armand-Frappier (suite 200), Laval , Quebec H7V 4B4 Canada -St?hane Laroche
|
Hifn7901 cryptolib
Part #Hifn 7901 |
2/4/2003 |
TCBC(e/d; KO 1,2,3) "Colubris CN105x Secure Wireless LAN Router enables strong security for wireless enterprise networking, using embedded IPSec VPN and firewall functionalities. Hifn 7901 is the cryptographic processor used in the CN1050 and CN1054 Wireless LAN Routers" |
| 164 | Colubris Networks Inc.
420 Armand-Frappier (suite 200), Laval , Quebec H7V 4B4 Canada -St?hane Laroche
|
Libfips
Version 1.0 |
2/4/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "Colubris CN105x Secure Wireless LAN Router enables strong security for wireless enterprise networking, using embedded IPSec VPN and firewall functionalities. Lipfips is the User mode implementation in the CN1050 and CN1054 Wireless LAN Routers." |
| 163 | IBM Zurich Research Laboratory
Saeumerstrasse 4, Rueschlikon , CH 8803 Switzerland -Michael Osborne
|
IBM CryptoLite in Java
Version 3.0 (FIPS140/Prod) |
1/30/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "IBM CryptoLite is a 100% Java software package providing advanced cryptographic services in a very small footprint. CryptoLite supports public key encryption, digital signatures, symmetric ciphers, hash functions, message authentication codes, and other cryptographic algorithms through a simple programming interface. There are no runtime dependencies and the code has been optimized for high performance. It runs on JDK 1.1 or higher." |
| 162 | SSH Communications Security Corp
Fredrikinkatu 42, Helsinki 00100 Finland -Markus Levlin
|
SSH CryptoLib
Version 1.0 |
1/30/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3); TCFB64(e/d; KO 1,2,3); TOFB(e/d; KO 1,2,3) "The SSH Cryptographic Library is a standards-based shared library providing FIPS 140-2 certified cryptographic services for SSH Communications Security's security products. The library provides a rich API and a comprehensive set of state-of-the-art algorithms including AES, 3DES, SHA-1, HMAC, RSA and DSA." |
| 161 | 3e Technologies International, Inc.
700 King Farm Blvd, Suite 600, Rockville , MD 20850 USA -Ryon Coleman
|
3e-521NP and 3e-530NP Military Wireless Gateways
Version 2.0 |
1/17/2003 |
TCBC(e/d; KO 1,2,3) "3DES (in CBC mode) is one of the advanced encryption algorithms used in the 3eTI family of Military Wireless Gateways that are pending FIPS 140-2 Level 2 validation." |
| 160 | Hifn, Inc.
750 University Avenue, Los Gatos , CA 95032 USA -Prasad Shroff
|
7814-WPB4
Version 1.0 Part #7814-WPB4 |
1/17/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "Hifn Intelligent Packet Processing chips are full-duplex T3 to full-duplex OC-12, Integrated public key, 3DES, Advanced Encryption Standard (AES), and compression - these latest chips from Hifn have it all in a single high-performance package." |
| 159 | D'Crypt Pte Ltd
20 Ayer Rajah Crescent, #08-08 Technopreneur Centre, Singapore 139964 Singapore -Quek Gim Chye
|
d'Cryptor QE Firmware
Version 2.0 |
1/17/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3); TCFB64(e/d; KO 1,2,3); TOFB(e/d; KO 1,2,3) "The d'Cryptor QE is a multi-chip embedded security module designed for high security assurance applications. It comprises a secure high-performance cryptographic core, generous memory in the form of a Flash ROM and NVRAM, and implements physical security through an opaque, hard epoxy potting and a tamper detection and response mesh. The QE firmware builds in a wide range of cryptographic support and accepts a user-programmable external application. Cryptographic services are provided through a library and an API. All keys and cryptographic processing are isolated within this library and accessible only through the API." |
| 158 | Hifn, Inc.
750 University Avenue, Los Gatos , CA 95032 USA -Prasad Shroff
|
7854PB4/3
Version 3.0 Part #7854PB4/3 |
1/17/2003 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "Hifn Intelligent Packet Processing chips are full-duplex T3 to full-duplex OC-12, Integrated public key, 3DES, Advanced Encryption Standard (AES), and compression - these latest chips from Hifn have it all in a single high-performance package." |
| 157 | SonicWALL, Inc.
1143 Borregas Ave., Sunnyvale , CA 94089-1306 USA -Paal Tveit
|
Cisco CSS Series 11000 Secure Content Accelerator/SonicWALL SSL-RX
Version 4.1 (firmware) |
1/17/2003 |
TCBC(e/d; KO 1,2,3) "The SCA2/SSL-RX is an SSL proxy device designed for SSL acceleration and offloading. The SCA2/SSL-RX provides the ability to both terminate and initiate SSL connections, converting cipher-text to clear-text, or clear-text to cipher-text." |
| 156 | Cisco Systems, Inc
7025-6 Kit Creek Road, PO Box 14987, Research Triangle Park , NC 27709-4987 USA -Ray Potter
|
Cisco IOS Encryption Software
Version 12.2 |
1/17/2003 |
TCBC(e/d; KO 1,2,3) "Cisco IOSR Software, the industry-leading and most widely deployed network system software, delivers intelligent network services on a flexible networking infrastructure that enables the rapid deployment of Internet applications." |
| 155 | Broadcom Corporation
1131 W. Warner Rd., Tempe , AZ 85284 USA -Joe Wallace
|
BCM5840
Part #B3 |
12/10/2002 |
TCBC(e/d; KO 1,2,3) "The BCM5840 delivers multi-gigabit performance for IPSec VPN applications." |
| 154 | Giesecke & Devrient America, Inc.
45925 Horseshoe Drive, Dulles , VA 20166 USA -Won J. Jun
|
STARCOS SPK 2.4 in ID-1 module
Part #CP5WxSPKI24-01-3-S V0310 |
12/2/2002 |
TCBC(e/d; KO 2,3) "Giesecke & Devrient (G&D) Smart Card Chip Operating System Standard Version with Public Key Extension 2.4 (STARCOS SPK 2.4) is a scaleable multi-application operating system for smart cards and provides functionalities that are necessary for public key infrastructure." |
| 153 | Aladdin Knowledge Systems, Ltd.
15 Beit Oved Street, Tel Aviv 61110 Israel -Leedor Agam
|
eToken Pro 32K (Cryptographic Engine)
Version 4.2 |
11/26/2002 |
TCBC(e/d; KO 1,2,3) "The eToken PRO is a fully portable USB device the size of an average house key which offers a cost-effective method for authenticating users when accessing a network and for securing electronic business applications. The eToken PRO offers security needs such as secure network logon, secure VPN's, secure email, and strong PKI support." |
| 152 | Aladdin Knowledge Systems, Ltd.
15 Beit Oved Street, Tel Aviv 61110 Israel -Leedor Agam
|
eToken Pro 16K (Cryptographic Engine)
Version 4.1 |
11/26/2002 |
TCBC(e/d; KO 1,2,3) "The eToken PRO is a fully portable USB device the size of a house key which offers a cost-effective method for authenticating users when accessing a network and for securing electronic business applications. The eToken PRO offers security needs such as secure network logon, secure VPN's, secure email, and PKI support." |
| 151 | NetOctave, Inc.
507 Airport Boulevard, Suite 111, Morrisville , NC 27560 USA -Pam Morris
|
NSP3000
Part #Rev. 3 |
11/22/2002 |
TCBC(e/d; KO 1,2,3) "NetOctave NSP3000 Series IPsec PMC and PCI boards accelerate IPsec processing at rates up to 1 Gbps." |
| 150 | IBM Zurich Research Laboratory
Saeumerstrasse 4, Rueschlikon , CH 8803 Switzerland -Michael Osborne
|
JCOP21id 32K
Version JCOP21id Mask 20 (firmware) Part #P8WE5033 AEV 1034 188i |
11/14/2002 |
TECB(e/d; KO 2,3); TCBC(e/d; KO 2,3) "The JCOP21id is IBM's multi-application smart card, designed to the Java Card v2.1.1 and Global Platform v2.0.1 specifications. The smart card features IBM's PKCS#15 applet which provides standardized high-level security services including, 2048 bit key generation, DES, 3DES, SHA, RSA and AES." |
| 149 | Wei Dai
Groove Networks, Inc., 100 Cummings Center, Suite 535Q, Beverly , MA 01915 USA -Wei Dai
|
Crypto++ Library
Version 5.01 |
11/14/2002 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3); TCFB8(e/d; KO 1,2,3); TCFB64(e/d; KO 1,2,3); TOFB(e/d; KO 1,2,3) "The Crypto++ Library is a free, open source C++ class library providing public key encryption, digital signatures, symmetric ciphers, hash functions, message authentication codes, and other cryptographic algorithms. The pre-compiled Win32 static library is FIPS 140-2 Level 1 validated. The library is also available in source code form." |
| 148 | Phaos Technology Corporation
11 Broadway, Suite 501, New York , NY 10004 USA -Darren Calman
|
Phaos Crypto
Version 3.0 |
11/6/2002 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "Phaos Crypto provides a state-of-the-art set of core cryptography algorithms in Java. It includes a comprehensive cryptographic library supporting the most current algorithms like AES, RSA-OAEP, SHA-256/384/512, X.9-42 as well as legacy algorithms that are still used in corporate systems like 3DES, DES, MD2 etc.. Phaos Crypto allows developers to integrate cryptography into any Java application or applet. For high security deployments, Phaos Crypto provides transparent migration to cryptographic hardware without requiring any changes to existing applications." |
| 147 | Stonesoft Corporation
It?ahdenkatu 22A, , Helsinki FIN-00210 Finland -Klaus Majewski
|
StoneGate High Availability Firewall and VPN implementation of SSH Toolkit Library
Version 4.1.1-22 |
10/31/2002 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3); TCFB64(e/d; KO 1,2,3); TOFB(e/d; KO 1,2,3) "StoneGate is a firewall and VPN solution. It features clustering, load balancing between multiple ISPs, encrypted VPN client connectivity and advanced central administration tools." |
| 146 | Stonesoft Corporation
It?ahdenkatu 22A, , Helsinki FIN-00210 Finland -Klaus Majewski
|
StoneGate High Availability Firewall and VPN implementation of Open SSH Library
Version 1:3.4p1-0.0woody1.stonesoft.cervin.6 |
10/31/2002 |
TCBC(e/d; KO 1,2,3) "StoneGate is a firewall and VPN solution. It features clustering, load balancing between multiple ISPs, encrypted VPN client connectivity and advanced central administration tools." |
| 145 | Stonesoft Corporation
It?ahdenkatu 22A, , Helsinki FIN-00210 Finland -Klaus Majewski
|
StoneGate High Availability Firewall and VPN implementation of Open SSL Library
Version 0.9.6c-2.woody.1.stonesoft.0 |
10/31/2002 |
TCBC(e/d; KO 1,2,3) "StoneGate is a firewall and VPN solution. It features clustering, load balancing between multiple ISPs, encrypted VPN client connectivity and advanced central administration tools." |
| 144 | Datakey, Inc.
407 W. Travelers Trail, Burnsville , MN 55337-2554 USA -Hazem Hassan
|
Model 330J with JCCOS applet
Version 2.0 |
10/24/2002 |
TECB(e/d; KO 2,3); TCBC(e/d; KO 2,3) "The Model 330J is Datakey's multi-application smart card, designed to the JavaCard v2.1.1 and Global Platform v2.0.1 specifications. The smart card features Datakey's JCCOS applet. JCCOS is an advanced cryptographic applet that, when loaded onto a multi-application JavaCard provides high-level security services." |
| 143 | SchlumbergerSema
50 avenue Jean Jaures, Montrouge Cedex 92542 FRANCE -Bruno Blanchard
|
Cyberflex Access e-Gate 32K
Version M256LCAEG1_ST_62_02_03, SM3v1 Part #ST19XT34 |
10/24/2002 |
TECB(e/d; KO 2,3); TCBC(e/d; KO 2,3) "Cyberflex Access e-Gate 32K smart card serves as a highly portable, secure token for enhancing the security of network access and ensuring secure electronic communications, supporting on-card DES aND RSA algorithms with on-card key generation." |
| 142 | IBM Corporation
CC1A/502/K301, 4205 S. Miami Blvd., Durham , NC 27703 USA -Keith Medlin
|
IBM Everyplace Wireless Gateway Cryptographic Module
Version 1.5 |
10/24/2002 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3) "The IBM Everyplace Wireless Gateway is a distributed, scalable, multipurpose communications platform that supports optimized, secure data access over a wide range of international wireless and wire line network technologies. The cryptographic module implements a variety of encryption services for the product." |
| 141 | IP Dynamics, Inc.
2880 Stevens Creek Boulevard, 3rd Floor, San Jose , CA 95128 USA -Huan Wang
-Zulfikar Ramzan
|
IP Dynamics Virtual Community Network (VCN)
Version 4.2 |
10/18/2002 |
TCBC(e/d; KO 1,2,3) "The IP Dynamics?VCN Software Suite creates a secure network services layer above the flat Internet address space allowing the creation of dynamic virtual communities, which are the secure, collaborative communications platforms designed for a wide range of intranet, extranet, remote access and collaboration applications." |
| 140 | Entrust, Inc.
1000 Innovation Drive, Ottawa , Ontario K2K 3E7 Canada -Pierre Boucher
|
Entrust Authority Toolkit for Java
Version 6.1 |
10/7/2002 |
TECB(e/d; KO 1,2,3); TCBC(e/d; KO 1,2,3); TCFB8(e/d; KO 1,2,3); TCFB64(e/d; KO 1,2,3); TOFB(e/d; KO 1,2,3) "The Security Toolkit for Java takes advantage of the features of a Public Key Infrastructure (PKI) from a Java environment. The Toolkit provides the means to incorporate security features, such as encryption and digital signatures, into applications." |
| 139 | Cylink Corporation
3131 Jay Street, P.O. Box 54952, Santa Clara , CA 95056-0952 USA -Mark Campbell
|
CY 1049
Part #1.0 |
10/7/2002 |
TCFB64(e/d; KO 1,2,3); TCFB-P1(e/d; KO 1,2,3); TCFB-P64(e/d; KO 1,2,3) "Triple DES and AES ASIC used for encryption and decryption in the Cylink Link Encryptor and Cylink Frame Encryptor product lines." |
| 138 | ASN Technology Corp.
3th Fl., No. 22, Lane 31, Sec. 1, Hyandung Rd., 744 Tainan Science-Based Industrial Park, Tainan Taiwan -Jeng-Yang Hwang (Eric Hwang)
|
ASN eShield Cryptor Encryption/Decryption Processor Chip
Part #TAD0704-a |
9/17/2002 |
TECB(e/d; KO 1,2,3) "ASN eShield Cryptor Encryption/Decryption Processor (TAD0704-a) is a cryptographic chip designed for system flexibility to ease secure system implementations. It is a ciphering engine supporting the Advanced Encryption Standard (AES), Data Encryption Standard (DES) and Triple-DES encryption/decryption algorithms. The chip performs AES, DES and Triple-DES at 30 MHz with 16bits I/O interface." |
| 137 |