BitLocker® Dump Filter (dumpfve.sys) in Microsoft Windows 10 Pro, Windows 10 Enterprise, Windows 10 Mobile, Windows 10 for Surface Hub
BitLocker® Dump Filter (dumpfve.sys) in Microsoft Windows 10 Pro, Windows 10 Enterprise, Windows 10 Mobile, Windows 10 for Surface Hub, from Microsoft Corporation, holds FIPS 140-2 certificate #2703 at overall level 1. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.
Caveat: When operated in FIPS mode with the module Code Integrity (ci.dll) in Microsoft Windows 10, Windows 10 Pro, Windows 10 Enterprise, Windows 10 Enterprise LTSB under Cert. #2604 operating in FIPS mode
Certificate
| Certificate number | 2703 |
|---|---|
| Standard | FIPS 140-2 |
| Status | historical |
| Overall level | 1 |
| Module type | Software |
| Embodiment | Multi-Chip Stand Alone |
| Vendor | Microsoft Corporation · website |
| Software versions | 10.0.10586 |
Module description
Quoted from the NIST CMVP entry for this certificate.
The BitLocker® Dump Filter (dumpfve.sys) is the full volume encryption filter that resides in the system dump stack. Whenever the dump stack is called (in the event of a system crash or for hibernation), this filter ensures that all data is encrypted before it gets written to the disk as a dump file or hibernation file.
Security level exceptions
- Physical Security: N/A
- Design Assurance: Level 2
Approved algorithms (1)
Tested configurations
- Windows 10 Enterprise (x64) running on a HP Compaq Pro 6305 with PAA
- Windows 10 Enterprise (x64) running on a Microsoft Surface 3 with PAA
- Windows 10 Enterprise (x64) running on a Microsoft Surface Book with PAA
- Windows 10 Enterprise (x64) running on a Microsoft Surface Pro 2 with PAA
- Windows 10 Enterprise (x64) running on a Microsoft Surface Pro 3 with PAA
- Windows 10 Enterprise (x64) running on a Microsoft Surface Pro 4 with PAA
- Windows 10 Enterprise (x64) running on a Microsoft Surface Pro with PAA
- Windows 10 Enterprise (x86) running on a Dell Inspiron 660s without PAA
- Windows 10 for Surface Hub (x64) running on a Microsoft Surface Hub 55" with PAA (single-user mode)
- Windows 10 for Surface Hub (x64) running on a Microsoft Surface Hub 84" with PAA
- Windows 10 Mobile (ARMv7) running on a Microsoft Lumia 635
- Windows 10 Mobile (ARMv7) running on a Microsoft Lumia 950
- Windows 10 Pro (x64) running on a HP Compaq Pro 6305 with PAA
- Windows 10 Pro (x64) running on a Microsoft Surface Book with PAA
- Windows 10 Pro (x64) running on a Microsoft Surface Pro 2 with PAA
- Windows 10 Pro (x64) running on a Microsoft Surface Pro 3 with PAA
- Windows 10 Pro (x64) running on a Microsoft Surface Pro 4 with PAA
- Windows 10 Pro (x64) running on a Microsoft Surface Pro with PAA
- Windows 10 Pro (x86) running on a Dell Inspiron 660s without PAA
Validation history
| Date | Type | Lab |
|---|---|---|
| 2016-08-26 | Initial | Leidos Accredited Testing & Evaluation (AT&E) Lab |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2016-08-26