808bits

Communication Cryptographic Library (CCL)

FIPS 140-2 certificate #2854 · EFJohnson Technologies · data as of 2026-08-28
Historical. Moved to historical list due to sunsetting. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode. No assurance of the minimum strength of generated keys. The module generates keys whose strengths are modified by available entropy

Certificate

Certificate number2854
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorEFJohnson Technologies · website
Software versionsProduct Number 039-5804-200 Rev 3.0

Module description

The CCL is a dynamically linked library implemented using the C programming language with an external Java interface. Application developers wishing to use the CCL can use the CCL's Application Programming Interface (API) to perform AES, ECDSA, HMAC, DRBG, SHA256 and SHA512 security related functions. It also includes non-validated legacy services to support DES encryption while operating in the Non-Approved mode of operation.

Security level exceptions

  • Physical Security: N/A
  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AES3985
DRBG1178
ECDSA882
HMAC2601
KTS
SHS3290

Other algorithms

DES

Tested configurations

  • Android 6.0 running on a Nexus 5X (single-user mode)

Validation history

DateTypeLab
2017-03-02InitialUL Verification Services, Inc.
2018-06-28UpdateUL Verification Services, Inc.
2021-04-28UpdateUL Verification Services, Inc.

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2017-03-02, 2018-06-28, 2021-04-28

Source documents