808bits

River Cryptographic Module

FIPS 140-2 certificate #3383 · Google, Inc. · data as of 2026-08-28
Historical. Moved to historical list due to dependency on certificate #3382. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode with Titan Chip validated to FIPS 140-2 under Cert. #3382 operating in FIPS mode

Certificate

Certificate number3383
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeHardware
EmbodimentMulti-Chip Embedded
VendorGoogle, Inc. · website
Hardware versionsRiverHD and RiverQD
Firmware versionsRiver-gqfips-1.2

Module description

The River Cryptographic Module is a Network Interface Card (NIC) housed on a host device, which is designed to support Ethernet and IP networking. The River module contains cryptographic hardware and firmware support, which allows data packets to be encrypted and decrypted using AES-GCM-128 at "line rate", while supporting a very large number of simultaneous Security Associations.

Security level exceptions

  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AES5656, 5659
CKGvendor affirmed
DRBG2285
ECDSA1529
KTS
RSA3045
SHA-358
SHS4536, 4537

Allowed algorithms

NDRNG

Tested configurations

  • N/A

Validation history

DateTypeLab
2019-03-22InitialAcumen Security

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2019-03-22

Source documents