Apple CoreCrypto Module v8.0 for Intel
Caveat: When operated in FIPS mode. The module generates cryptographic keys whose strengths are modified by available entropy
Certificate
| Certificate number | 3155 |
|---|---|
| Standard | FIPS 140-2 |
| Status | historical |
| Overall level | 1 |
| Module type | Software |
| Embodiment | Multi-Chip Stand Alone |
| Vendor | Apple Inc. · website |
| Software versions | 8.0 |
Module description
The Apple CoreCrypto Module v8.0 for Intel is a software cryptographic module running on a multi-chip standalone hardware device and provides services intended to protect data in transit and at rest.
Security level exceptions
- Physical Security: N/A
Approved algorithms
| Algorithm | CAVP certificate |
|---|---|
| AES | 4944, 4945, 4946, 4947, 4948, 4949, 4950, 4951, 4952, 4953, 4954, 4955, 4961, 4962, 4963, 4964, 4965, 4966, 4967, 4968, 4969, 4970, 4971, 4972, 4973, 4974, 4975, 4976, 5048, 5049, 5050, 5051 |
| CVL | 1602, 1603, 1604, 1605, 1606, 1607, 1608, 1609 |
| DRBG | 1771, 1772, 1773, 1774, 1775, 1776, 1777, 1778, 1779, 1780, 1781, 1782, 1783, 1784, 1785, 1786, 1789, 1790, 1791, 1792, 1793, 1794, 1795, 1796, 1868, 1869, 1870, 1871 |
| ECDSA | 1304, 1305, 1306, 1307 |
| HMAC | 3292, 3293, 3294, 3295, 3296, 3297, 3298, 3299, 3300, 3301, 3302, 3303, 3371, 3372, 3373, 3374 |
| KTS | |
| KTS | vendor affirmed |
| PBKDF | vendor affirmed |
| RSA | 2734, 2735, 2736, 2737 |
| SHS | 4034, 4035, 4036, 4037, 4038, 4039, 4040, 4041, 4042, 4043, 4044, 4045, 4116, 4117, 4118, 4119 |
| Triple-DES | 2609, 2610, 2611, 2612 |
Allowed algorithms
Diffie-Hellman (key agreement; key establishment methodology provides 112 or 128 bits of encryption strength); EC Diffie-Hellman (key agreement; key establishment methodology provides 128 or 160 bits of encryption strength); MD5; NDRNG; RSA (key wrapping; key establishment methodology provides 112 or 128 bits of encryption strength)
Tested configurations
- macOS High Sierra v10.13 running on iMac Pro with Xeon CPU with PAA
- macOS High Sierra v10.13 running on iMac Pro with Xeon CPU without PAA
- macOS High Sierra v10.13 running on Mac mini with i5 CPU with PAA
- macOS High Sierra v10.13 running on Mac mini with i5 CPU without PAA
- macOS High Sierra v10.13 running on MacBook Pro with i7 CPU with PAA
- macOS High Sierra v10.13 running on MacBook Pro with i7 CPU without PAA
- macOS High Sierra v10.13 running on MacBook with Core M CPU with PAA
- macOS High Sierra v10.13 running on MacBook with Core M CPU without PAA (single-user mode)
Validation history
| Date | Type | Lab |
|---|---|---|
| 2018-03-22 | Initial | atsec information security corporation |
| 2021-03-11 | Update | atsec information security corporation |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2018-03-22, 2021-03-11