808bits

Symantec Enterprise Vault Cryptographic Module

FIPS 140-2 certificate #1732 · Symantec Corporation · data as of 2026-09-13

Symantec Enterprise Vault Cryptographic Module, from Symantec Corporation, holds FIPS 140-2 certificate #1732 at overall level 1. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.

Historical. RNG SP800-131A Revision 1 Transition. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode with module Windows Server 2003 Enhanced Cryptographic Provider (RSAENH) validated to FIPS 140-2 under Cert. #1012 operating in FIPS mode or Windows Server 2008 R2 Enhanced Cryptographic Provider (RSAENH) validated to FIPS 140-2 under Cert. #1337 operating in FIPS mode

Certificate

Certificate number1732
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeSoftware
EmbodimentMulti-chip standalone
VendorSymantec Corporation · website
Software versions1.0.0.2

Module description

Quoted from the NIST CMVP entry for this certificate.

Symantec Enterprise Vault Cryptographic Module is a multi-chip standalone physical embodiment. The module consists of a DLL which interfaces with the Microsoft Cryptographic API to provide the required cryptographic functionality. The Enterprise Vault Cryptographic Module may be used for encryption/decryption of Enterprise Vault passwords, hashing of indexes, and random number generation.

Approved algorithms (7)

AlgorithmCAVP certificates
AES818, 1168
DRBG23
HMAC452, 687
RNG470
RSA395, 559, 568
SHS816, 1081
Triple-DES691, 846

Other algorithms

RSA (key wrapping; key establishment methodology provides between 112 and 150 bits of encryption strength; non-compliant less than 112 bits of encryption strength); ANSI X9.31 RSA key-pair generation (non-compliant); ANSI X9.31 RSA signature verification (non-compliant); RC2; RC4; MD5; MD2; MD4; DES

Tested configurations

  • Microsoft Windows Server 2003
  • Microsoft Windows Server 2008 R2 (single-user mode)

Validation history

DateTypeLab
2012-06-20InitialEWA - Canada

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2012-06-20

Source documents