Enhanced Bandwidth Efficient Modem (EBEM) Cryptographic Module
Enhanced Bandwidth Efficient Modem (EBEM) Cryptographic Module, from ViaSat, Inc., holds FIPS 140-2 certificate #2705 at overall level 2. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.
Certificate
| Certificate number | 2705 |
|---|---|
| Standard | FIPS 140-2 |
| Status | historical |
| Overall level | 2 |
| Module type | Hardware |
| Embodiment | Multi-Chip Stand Alone |
| Vendor | ViaSat, Inc. · website |
| Hardware versions | P/Ns 1010162 Version 1, 1010162 with ESEM Version 1, 1091549 Version 1, 1075559 Version 1, 1075559 with ESEM Version 1, 1091551 Version 1, 1010163 Version 1, 1010163 with ESEM Version 1, 1091550 Version 1, 1075560 Version 1, 1075560 with ESEM Version 1 and 1091552 Version 1; P/N 1047117 (tamper evident seal applied over ESEM) |
| Firmware versions | 02.09.06 and 02.09.08 |
Module description
Quoted from the NIST CMVP entry for this certificate.
The Enhanced Bandwidth Efficient Modem (EBEM) is the only commercially-available bandwith efficient modem certified to MIL-STD-188-165B and compliant with STANAG 4486 ed. 3. The MD-1366 defines a new military standard in FDMA for high-speed satellite communications. Using military and commercial satellites at X-, C-, Ku-, and Ka-band frequencies, the MD-1366 delivers much-needed capacity for the military's high speed broadband and multimedia transmissions.
Security level exceptions
- Cryptographic Module Specification: Level 3
- Design Assurance: Level 3
- Mitigation of Other Attacks: N/A
Approved algorithms (8)
| Algorithm | CAVP certificates |
|---|---|
| AES | 3449, 3450, 3879 |
| CVL | 454, 747 |
| DRBG | 1107 |
| ECDSA | 839 |
| HMAC | 2521 |
| KAS | 76 |
| KTS | |
| SHS | 2689, 3201, 3202 |
Other algorithms
Diffie-Hellman (key agreement; key establishment methodology provides 112 bits of encryption strength); EC Diffie-Hellman (key agreement; key establishment methodology provides 128 or 192 bits of encryption strength); NDRNG; AES (non-compliant); DES; DSA (non-compliant); ECDSA (non-compliant); HMAC (non-compliant); HMAC MD5; MD5; PBKDF (non-compliant); RSA (non-compliant); SHS (non-compliant); Triple-DES (non-compliant)
Tested configurations
- N/A
Validation history
| Date | Type | Lab |
|---|---|---|
| 2016-08-08 | Initial | UL Verification Services, Inc. |
| 2016-11-17 | Update | UL Verification Services, Inc. |
| 2018-01-30 | Update | UL Verification Services, Inc. |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2016-08-08, 2016-11-17, 2018-01-30