808bits

ICU Medical CE3.0 OpenSSL Cryptographic Module

FIPS 140-2 certificate #4234 · ICU Medical, Inc. · data as of 2026-08-28
Active. Sunset date 2026-09-21, 23 days away. This is the FIPS 140-2 sunset: after it, agencies may keep the module only in existing systems.
Caveat: When operated in FIPS mode. No assurance of the minimum strength of generated keys

Certificate

Certificate number4234
StandardFIPS 140-2
Statusactive
Sunset date2026-09-21
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorICU Medical, Inc. · website
Software versions2.0.9.1

Module description

ICU Medical CE3.0 OpenSSL Cryptographic Module 2.0.9.1 is used within various ICU Medical Plum360 Infusion Pumps for providing secure communication between Infusion pumps and external server.

Security level exceptions

  • Physical Security: N/A
  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AESA1878
CKGvendor affirmed
CVLA1878
DRBGA1878
ECDSAA1878
HMACA1878
KAS
KAS-SSCA1878
RSAA1878
SHSA1878

Tested configurations

  • Android 2.3.7 running on ICU Medical Plum360 Infusion System with an i.MX53 Arm Cortex-A8 (single user mode)

Validation history

DateTypeLab
2022-05-24InitialUL Verification Services, Inc.

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status active
  • Validation dates on record: 2022-05-24

Source documents