808bits

totemo Cryptographic Module (TCM)

FIPS 140-2 certificate #3500 · Totemo AG · data as of 2026-08-28
Historical. SP 800-56Arev3 transition. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode. The module generates cryptographic keys whose strengths are modified by available entropy

Certificate

Certificate number3500
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorTotemo AG · website
Software versions3.0

Module description

The totemo Cryptographic Module (TCM) supplies the cryptographic services required by the totemo Security Platform (TSP) and the totemo products which provides secure email, file transfer, and mobile messaging solutions. These solutions secure all types of communication without any infrastructure prerequisites.

Security level exceptions

  • Physical Security: N/A
  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AES5901
CKGvendor affirmed
CVL2125
DRBG2463
DSA1496
ECDSA1572
HMAC3881
KAS202
KTS
RSA3089
SHA-361
SHS4657
Triple-DES2870

Allowed algorithms

AES (Cert. #5901, key unwrapping; key establishment methodology provides between 112 and 256 bits of encryption strength); Diffie-Hellman (key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); EC Diffie-Hellman (key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); ECMQV (key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); RSA (CVL Cert. #2125, key wrapping; key establishment methodology provides between 112 and 256 bits of encryption strength); Triple-DES (Cert. #2870, key unwrapping)

Tested configurations

  • totemo Appliance OS 2.3 with JRE 8.0 running on a Pyramid M8110 with an Intel Xeon E3-1225v3 (single-user mode)

Validation history

DateTypeLab
2019-07-31InitialCGI Information Systems & Management Consultants Inc

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2019-07-31

Source documents