CryptoManager Root of Trust (CMRT)
Caveat: None
Certificate
| Certificate number | 4325 |
|---|---|
| Standard | FIPS 140-2 |
| Status | active |
| Sunset date | 2026-09-21 |
| Overall level | 2 |
| Module type | Hardware |
| Embodiment | Single Chip |
| Vendor | Rambus Inc. · website |
| Hardware versions | 0x60000611 |
| Firmware versions | 2022-02-21-gd74d034 |
Module description
CMRT is a Silicon IP Security Module with a secure asset store protecting all valuable assets on your device. It is a stand-alone Root of Trust that offers key management and crypto functions needed for platform and application security. CMRT offers all security services to manage your device securely through its lifecycle. These include Secure Debug, Secure Provisioning, Identity protection and secure authentication services. Secure Boot and Communication protocols such as TLS can leverage CMRT to secure the boot process and protect private communication keys.
Security level exceptions
- Mitigation of Other Attacks: N/A
Approved algorithms
| Algorithm | CAVP certificate |
|---|---|
| AES | A1102 |
| CKG | vendor affirmed |
| DRBG | A1102 |
| ECDSA | A1102 |
| ENT | |
| HMAC | A1102 |
| KAS | A1102 |
| KAS-SSC | A1102 |
| KBKDF | A1102 |
| KDA | A1102 |
| KTS | |
| RSA | A1102 |
| SHS | A1102 |
Tested configurations
- Xilinx Zynq XC7Z045 FPGA
Validation history
| Date | Type | Lab |
|---|---|---|
| 2022-10-10 | Initial | atsec information security corporation |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status active
- Validation dates on record: 2022-10-10