808bits

INTEGRITY Security Services High Assurance Embedded Cryptographic Toolkit

FIPS 140-2 certificate #2669 · INTEGRITY Security Services · data as of 2026-09-08

INTEGRITY Security Services High Assurance Embedded Cryptographic Toolkit, from INTEGRITY Security Services, holds FIPS 140-2 certificate #2669 at overall level 1. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.

Historical. Moved to historical list in accordance with SP800-131A Revision 1 Transition (AES/TDES key wrapping). Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode. No assurance of the minimum strength of generated keys. The module generates cryptographic keys whose strengths are modified by available entropy.

Certificate

Certificate number2669
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorINTEGRITY Security Services · website
Software versions3.0.0

Module description

Quoted from the NIST CMVP entry for this certificate.

Green Hills Software/INTEGRITY Security Services (ISS) ECT is a standards-based crypto toolkit providing a flexible framework to integrate encryption, digital signatures and other security mechanisms into a wide range of applications. ISS ECT is designed to support multiple cryptographic providers with a single common API, easily targeted to a variety of Operating Systems.

Security level exceptions

  • Physical Security: N/A
  • Mitigation of Other Attacks: N/A

Approved algorithms (8)

AlgorithmCAVP certificates
AES3773, 3774, 3775, 3776, 3777, 3889, 3890, 3891, 3892, 3893
CVL720, 929
DRBG1043, 1113
ECDSA812, 844
HMAC2473, 2527
PBKDFvendor affirmed
RSA1943, 1983
SHS3143, 3209

Other algorithms

AES (Certs. #3773 and #3889, key wrapping; key establishment methodology provides between 128 and 256 bits of encryption strength); RSA (key wrapping; key establishment methodology provides 112 bits of encryption strength); Diffie-Hellman (shared secret computation provides 192 bits of encryption strength); EC Diffie-Hellman (shared secret computation provides between 112 and 256 bits of encryption strength); Triple-DES (non-compliant); MD5; HMAC-MD5

Tested configurations

  • FreeRTOS 7.6 running on Cubic PU-4 (ST-Micro STM32F4xxx/ARM Cortex-M4)
  • OpenWrt/Linaro running on Gateway 5100 Ventana (i.MX6 800MHz/ARM Cortex-A9) (single-user mode)

Validation history

DateTypeLab
2016-06-30InitialUL Verification Services, Inc.
2016-08-08UpdateUL Verification Services, Inc.
2016-12-06UpdateUL Verification Services, Inc.
2016-12-07UpdateUL Verification Services, Inc.

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2016-06-30, 2016-08-08, 2016-12-06, 2016-12-07

Source documents