Microsoft Enhanced Cryptographic Provider
Caveat: When operated in FIPS mode
Certificate
| Certificate number | 238 |
|---|---|
| Standard | FIPS 140-1 |
| Status | historical |
| Overall level | 1 |
| Module type | Software |
| Embodiment | Multi-chip standalone |
| Vendor | Microsoft Corporation · website |
| Software versions | 5.1.2518.0, 5.1.2600.1029 and 5.1.2600.2161 |
Module description
The Microsoft Enhanced Cryptographic Provider (RSAENH) is a FIPS 140-1 Level 1 compliant, general-purpose, software-based, cryptographic module. Like other cryptographic providers that ship with Microsoft Windows XP, RSAENH encapsulates several different cryptographic algorithms (including SHA-1, DES, 3DES, AES, RSA, SHA-1-based HMAC) in an easy-to-use cryptographic module accessible via the Microsoft CryptoAPI. It can be dynamically linked into applications by software developers to permit the use of general-purpose FIPS 140-1 Level 1 compliant cryptography.
Security level exceptions
- Operating System Security: Tested as meeting Level 1 with Microsoft Windows XP, XP Service Pack 1 and XP Service Pack 2 (single user mode)
Approved algorithms
Other algorithms
DES (Cert. #156); RC2; RC4; MD5
Validation history
| Date | Type | Lab |
|---|---|---|
| 2002-07-11 | Initial | SAIC-VA |
| 2002-11-18 | Update | |
| 2005-02-25 | Update | |
| 2007-10-15 | Update |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2002-07-11, 2002-11-18, 2005-02-25, 2007-10-15