Microsoft Windows Server 2008 R2 Cryptographic Primitives Library (bcryptprimitives.dll)
Certificate
| Certificate number | 1336 |
|---|---|
| Standard | FIPS 140-2 |
| Status | historical |
| Overall level | 1 |
| Module type | Software |
| Embodiment | Multi-chip standalone |
| Vendor | Microsoft Corporation · website |
| Software versions | 6.1.7600.16385 or 6.1.7601.17514 |
Module description
BCRYPT.DLL provides cryptographic services, through its documented interfaces, to Windows components and applications running on Windows. The cryptographic module, bcryptprimitives.dll, encapsulates several different cryptographic algorithms in an easy-to-use cryptographic module accessible via the Microsoft CNG (Cryptography, Next Generation) API. It can be dynamically linked into applications by software developers to permit the use of general-purpose FIPS 140-2 compliant cryptography.
Approved algorithms
| Algorithm | CAVP certificate |
|---|---|
| AES | 1168, 1187 |
| AES GCM | 1168 |
| AES GMAC | 1168 |
| DRBG | 23, 27 |
| DSA | 391 |
| ECDSA | 142 |
| HMAC | 686 |
| KAS | vendor affirmed |
| RNG | 649 |
| RSA | 559, 567 |
| SHS | 1081 |
| Triple-DES | 846 |
Other algorithms
AES (Cert. #1168, key wrapping; key establishment methodology provides between 128 and 256 bits of encryption strength); DES; HMAC MD5; MD2; MD4; MD5; RC2; RC4
Tested configurations
- Microsoft Windows Server 2008 R2 (IA64 version)
- Microsoft Windows Server 2008 R2 (x64 Version)
- Microsoft Windows Server 2008 R2 SP1 (IA64 version) (single-user mode)
- Microsoft Windows Server 2008 R2 SP1 (x64 version)
Validation history
| Date | Type | Lab |
|---|---|---|
| 2010-08-12 | Initial | SAIC-VA |
| 2011-06-01 | Update | SAIC-VA |
| 2011-06-21 | Update | SAIC-VA |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2010-08-12, 2011-06-01, 2011-06-21