D2iQ BoringCrypto Cryptographic Security Module
Caveat: When installed, initialized and configured as specified in Section 12.1 of the Security Policy and operated in FIPS mode. The module generates cryptographic keys whose strengths are modified by available entropy.
Certificate
| Certificate number | 3702 |
|---|---|
| Standard | FIPS 140-2 |
| Status | historical |
| Overall level | 1 |
| Module type | Software |
| Embodiment | Multi-Chip Stand Alone |
| Vendor | D2iQ Inc. · website |
| Software versions | 66005f41fbc3529ffe8d007708756720529da20d |
Module description
D2iQ BoringCrypto Cryptographic Security Module is a general-purpose cryptographic library to serve BoringSSL and other user-space applications.
Security level exceptions
- Physical Security: N/A
- Mitigation of Other Attacks: N/A
Approved algorithms
| Algorithm | CAVP certificate |
|---|---|
| AES | 5612, C1867 |
| CKG | vendor affirmed |
| CVL | 2033, 2034, 2035, C1867 |
| DRBG | 2253, C1867 |
| ECDSA | 1520, C1867 |
| HMAC | 3743, C1867 |
| KTS | |
| RSA | 3020, C1867 |
| SHS | 4509, C1867 |
| Triple-DES | 2825, C1867 |
Allowed algorithms
EC Diffie-Hellman (CVL Certs. #2033, #C1867 and CVL Certs. #2035, #C1867; key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); MD5; NDRNG; RSA (key wrapping; key establishment methodology provides between 112 and 256 bits of encryption strength)
Tested configurations
- Debian Linux 4.9.0 running on Intel Xeon E5-2680 with PAA (clang Compiler Version 6.0.1)
- Debian Linux 4.9.0 running on Intel Xeon E5-2680 without PAA (clang Compiler Version 6.0.1)
- Red Hat Enterprise Linux 7 running on a Dell PowerEdge R740 with Intel® Xeon® Platinum 8156 with PAA (gcc Compiler version 4.8.5)
- Red Hat Enterprise Linux 8 running on a Dell PowerEdge R740 with Intel® Xeon® Platinum 8156 with PAA (gcc Compiler version 8.3.1)
- Ubuntu Linux 18.04 running on POWER9 with PAA (clang Compiler Version 6.0.1)
- Ubuntu Linux 18.04 running on POWER9 without PAA (clang Compiler Version 6.0.1) (single-user mode)
Validation history
| Date | Type | Lab |
|---|---|---|
| 2020-08-19 | Initial | Acumen Security |
| 2020-11-25 | Update | Acumen Security |
| 2020-12-09 | Update | Acumen Security |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2020-08-19, 2020-11-25, 2020-12-09