808bits

CliniComp Data Acquisition Cryptographic Module

FIPS 140-2 certificate #4032 · CliniComp, Intl. · data as of 2026-08-28
Active. Sunset date 2026-09-16, 18 days away. This is the FIPS 140-2 sunset: after it, agencies may keep the module only in existing systems.
Caveat: When operated in FIPS mode. The module generates cryptographic keys whose strengths are modified by available entropy

Certificate

Certificate number4032
StandardFIPS 140-2
Statusactive
Sunset date2026-09-16
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorCliniComp, Intl. · website
Software versionscci-das-fips-crypto-1.0

Module description

Medical device integration and data acquisition for all categories of devices including waveforms.

Security level exceptions

  • Physical Security: N/A
  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AESA801, A802
CVLA800
DRBGA802
ECDSAA800, A863
HMACA799, A800
KAS
KAS-SSCA800
KBKDFA804
KTS
KTS
KTS
PBKDFA799, A800
RSAA800
SHA-3A799
SHSA800

Allowed algorithms

NDRNG; RSA (key wrapping; key establishment methodology provides between 112 and 256 bits of encryption strength)

Tested configurations

  • Linux ndas-hkpg 4.19.81 running on Raspberry Pi Zero W Rev 1.1 with Broadcom BCM2835 ARM1176jzf-s ARMv6 without PAA
  • Linux ndas-x223 5.4.84-dey+gaca7adfe2d84 running on Digi International ConnectCore 6UL SBC with NXP i.MX6 Ultralite cortexas7t2hf ARMv7 without PAA (single-user mode).

Validation history

DateTypeLab
2021-09-17Initialatsec information security corporation
2023-09-05Updateatsec information security corporation

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status active
  • Validation dates on record: 2021-09-17, 2023-09-05

Source documents