Hughes Crypto Kernel - Firmware
Hughes Crypto Kernel - Firmware, from Hughes Network Systems, LLC, holds FIPS 140-2 certificate #1485 at overall level 1. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.
Caveat: When operated in FIPS mode
Certificate
| Certificate number | 1485 |
|---|---|
| Standard | FIPS 140-2 |
| Status | historical |
| Overall level | 1 |
| Module type | Firmware |
| Embodiment | Multi-chip standalone |
| Vendor | Hughes Network Systems, LLC · website |
| Firmware versions | 3.1.0.4 |
Module description
Quoted from the NIST CMVP entry for this certificate.
The Hughes Crypto Kernel (HCK) is a FIPS 140-2 Level 1 cryptographic module available for the Hughes HN and HX systems. The HCK enables the use of end-to-end bidirectional encryption between a remote site and the enterprise data center, while still enabling the use of all Hughes satellite acceleration features, as well as Hughes' advanced routing, prioritization and access control capabilities. The HCK uses AES 256 bit encryption to encrypt user traffic, uses IKE to dynamically generate session keys used for encryption, and ensures message authentication and integrity using HMAC-SHA-256.
Security level exceptions
- Tested: Hughes HX280 with the VxWorks 5.4 operating system
Approved algorithms (5)
Other algorithms
Diffie-Hellman (key agreement; key establishment methodology provides 80 bits of encryption strength; non-compliant); MD5
Validation history
| Date | Type | Lab |
|---|---|---|
| 2011-01-11 | Initial | EWA - Canada |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2011-01-11