808bits

NCoded Cryptographic Mobile Module

FIPS 140-2 certificate #2947 · NCoded Communications LLC · data as of 2026-09-12

NCoded Cryptographic Mobile Module, from NCoded Communications LLC, holds FIPS 140-2 certificate #2947 at overall level 1. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.

Historical. 186-2 transition. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode. The module generates cryptographic keys whose strengths are modified by available entropy. This validation entry is a non-security relevant modification to Cert. #1938.

Certificate

Certificate number2947
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorNCoded Communications LLC · website
Software versions2.1

Module description

Quoted from the NIST CMVP entry for this certificate.

NCoded Cryptographic Mobile (NCM) Module is a standards-based "Drop-in Compliance" cryptographic engine for mobile devices. The module delivers core cryptographic functions to the mobile devices and features robust algorithm support, including Suite B algorithms. NCM offloads functions for secure key management, data integrity, data at rest encryption, and secure communications to a trusted implementation.

Security level exceptions

  • Physical Security: N/A
  • Design Assurance: Level 3
  • Mitigation of Other Attacks: N/A

Approved algorithms (9)

AlgorithmCAVP certificates
AES2125, 2126
CVL28, 29
DRBG233, 234
DSA666, 667
ECDSA319, 320
HMAC1296, 1297
RSA1094, 1095
SHS1849, 1850
Triple-DES1351, 1352

Allowed algorithms

EC Diffie-Hellman (key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength; non-compliant less than 112 bits of encryption strength); RSA (key wrapping; key establishment methodology provides between 112 and 256 bits of encryption strength; non-compliant less than 112 bits of encryption strength);

Tested configurations

  • Android 4.0 running on a Galaxy Nexus
  • iOS 5.1 running on a iPad 3
  • iOS 6 running on a iPad 3
  • iOS 7 running on a iPad 3 (single-user mode)

Validation history

DateTypeLab
2017-07-05InitialAcumen Security

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2017-07-05

Source documents