808bits

Tactical Key Management Device (TKMD)

FIPS 140-2 certificate #4157 · Christine Wireless, Inc. · data as of 2026-08-28
Active. Sunset date 2026-09-21, 23 days away. This is the FIPS 140-2 sunset: after it, agencies may keep the module only in existing systems.
Caveat: When operated in FIPS mode

Certificate

Certificate number4157
StandardFIPS 140-2
Statusactive
Sunset date2026-09-21
Overall level2
Module typeHardware
EmbodimentMulti-Chip Stand Alone
VendorChristine Wireless, Inc. · website
Hardware versionsTKMD Spin 3
Firmware versionsTKMD_FIPS_FINAL_11_01_20

Module description

The TKMD is a low-cost single unit that implements the TIA Project 25 Over-the-Air Rekey standard to provide a Key Management Facility (KMF) for 500 and up to 3000 Subscriber Radios. The TKMD can be utilized as a stand-alone KMF for use in a campus environment or can be utilized in a network environment where Subscriber Radio configurations can be securely shared between TKMDs. The networked TKMDs can also securely share collections of Cryptographic keys to allow periodic updating of Cryptographic keys. Control of the TKMD is accomplished with a secure (https) connection to a web browser.

Security level exceptions

  • Roles, Services, and Authentication: Level 3
  • Physical Security: Level 3
  • Design Assurance: Level 3
  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AESC1775
CKGvendor affirmed
CVLC1775
DRBGC1775
ECDSAA881
HMACC1775
KAS-SSCvendor affirmed
KBKDFA862
KTS
RSAC1775
SHSC1775

Allowed algorithms

AES MAC (AES Cert. #C1775, vendor affirmed; P25 AES OTAR); NDRNG

Tested configurations

  • N/A

Validation history

DateTypeLab
2022-02-16InitialAcumen Security

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status active
  • Validation dates on record: 2022-02-16

Source documents