808bits

Apple corecrypto Module v11.1 [Apple silicon, User, Software]

FIPS 140-3 certificate #4391 · Apple Inc. · data as of 2026-09-15

Apple corecrypto Module v11.1 [Apple silicon, User, Software], from Apple Inc., holds FIPS 140-3 certificate #4391 at overall level 1. The validation is active, with a sunset date of 2027-12-06. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.

Active. Sunset date 2027-12-06, 446 days away.
Caveat: When operated in approved mode

Certificate

Certificate number4391
StandardFIPS 140-3
Statusactive
Sunset date2027-12-06
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorApple Inc. · website
Software versions11.1

Module description

Quoted from the NIST CMVP entry for this certificate.

The Apple corecrypto User Space Module for Apple silicon is a software cryptographic module running on a multi-chip standalone hardware device and provides services intended to protect data in transit and at rest.

Security level exceptions

  • Physical security: N/A
  • Non-invasive security: N/A
  • Mitigation of other attacks: N/A

Approved algorithms (37)

AlgorithmCAVP certificates
AES-CBCA916, A919, A920, A921
AES-CCMA918, A919, A921
AES-CFB128A916, A919, A921
AES-CFB8A919, A921
AES-CMACA919
AES-CTRA918, A919, A921
AES-ECBA916, A918, A919, A921
AES-GCMA918, A919, A921
AES-KWA919, A921
AES-OFBA916, A919, A921
AES-XTSA916, A919, A921
Counter DRBGA918, A919, A921
ECDSA KeyGen (FIPS186-4)A917, A919
ECDSA KeyVer (FIPS186-4)A917, A919
ECDSA SigGen (FIPS186-4)A917, A919
ECDSA SigVer (FIPS186-4)A917, A919
HMAC DRBGA917, A919
HMAC-SHA-1A917, A919
HMAC-SHA2-224A917, A919
HMAC-SHA2-256A917, A919, A922
HMAC-SHA2-384A917, A919
HMAC-SHA2-512A917, A919
HMAC-SHA2-512/256A917, A919
KAS-ECC-SSC Sp800-56Ar3A919
KAS-FFC-SSC Sp800-56Ar3A919
KDF SP800-108A917, A919
PBKDFA917, A919
RSA KeyGen (FIPS186-4)A917, A919
RSA SigGen (FIPS186-4)A917, A919
RSA SigVer (FIPS186-4)A917, A919
Safe Primes Key GenerationA919
SHA-1A917, A919
SHA2-224A917, A919
SHA2-256A917, A919, A922
SHA2-384A917, A919
SHA2-512A917, A919
SHA2-512/256A917, A919

Tested configurations

  • iOS 14.2 running on iPhone 11 Pro with an Apple A Series A13 Bionic with PAA
  • iOS 14.2 running on iPhone 11 Pro with an Apple A Series A13 Bionic without PAA
  • iOS 14.2 running on iPhone 12 with an Apple A Series A14 Bionic with PAA
  • iOS 14.2 running on iPhone 12 with an Apple A Series A14 Bionic without PAA
  • iOS 14.2 running on iPhone 6S with an Apple A Series A9 with PAA
  • iOS 14.2 running on iPhone 6S with an Apple A Series A9 without PAA
  • iOS 14.2 running on iPhone 7 Plus with an Apple A Series A10 Fusion with PAA
  • iOS 14.2 running on iPhone 7 Plus with an Apple A Series A10 Fusion without PAA
  • iOS 14.2 running on iPhone X with an Apple A Series A11 Bionic with PAA
  • iOS 14.2 running on iPhone X with an Apple A Series A11 Bionic without PAA
  • iOS 14.2 running on iPhone XS Max with an Apple A Series A12 Bionic with PAA
  • iOS 14.2 running on iPhone XS Max with an Apple A Series A12 Bionic without PAA
  • iPadOS 14.2 running on iPad (5th generation) with an Apple A Series A9 with PAA
  • iPadOS 14.2 running on iPad (5th generation) with an Apple A Series A9 without PAA
  • iPadOS 14.2 running on iPad (7th generation) with an Apple A Series A10 Fusion with PAA
  • iPadOS 14.2 running on iPad (7th generation) with an Apple A Series A10 Fusion without PAA
  • iPadOS 14.2 running on iPad Air (4th generation) with an Apple A Series A14 Bionic with PAA
  • iPadOS 14.2 running on iPad Air (4th generation) with an Apple A Series A14 Bionic without PAA
  • iPadOS 14.2 running on iPad mini (5th generation) with an Apple A Series A12 Bionic with PAA
  • iPadOS 14.2 running on iPad mini (5th generation) with an Apple A Series A12 Bionic without PAA
  • iPadOS 14.2 running on iPad Pro 10.5 inch with an Apple A Series A10X Fusion with PAA
  • iPadOS 14.2 running on iPad Pro 10.5 inch with an Apple A Series A10X Fusion without PAA
  • iPadOS 14.2 running on iPad Pro 11-inch (1st generation) with an Apple A Series A12X Bionic with PAA
  • iPadOS 14.2 running on iPad Pro 11-inch (1st generation) with an Apple A Series A12X Bionic without PAA
  • iPadOS 14.2 running on iPad Pro 11-inch (2nd generation) with an Apple A Series A12Z Bionic with PAA
  • iPadOS 14.2 running on iPad Pro 11-inch (2nd generation) with an Apple A Series A12Z Bionic without PAA
  • iPadOS 14.2 running on iPad Pro 9.7-inch with an Apple A Series A9X with PAA
  • iPadOS 14.2 running on iPad Pro 9.7-inch with an Apple A Series A9X without PAA
  • macOS Big Sur 11.0.1 running on MacBook Air with an Apple M Series M1 with PAA
  • macOS Big Sur 11.0.1 running on MacBook Air with an Apple M Series M1 without PAA
  • tvOS 14.2 running on Apple TV 4K with an Apple A Series A10X Fusion with PAA
  • tvOS 14.2 running on Apple TV 4K with an Apple A Series A10X Fusion without PAA
  • TxFW 11.0.1 running on Apple Security Chip T2 with an Apple T Series T2 with PAA
  • TxFW 11.0.1 running on Apple Security Chip T2 with an Apple T Series T2 without PAA
  • watchOS 7.1 running on Apple Watch Series S3 with an Apple S Series S3 with PAA
  • watchOS 7.1 running on Apple Watch Series S3 with an Apple S Series S3 without PAA
  • watchOS 7.1 running on Apple Watch Series S4 with an Apple S Series S4 with PAA
  • watchOS 7.1 running on Apple Watch Series S4 with an Apple S Series S4 without PAA
  • watchOS 7.1 running on Apple Watch Series S5 with an Apple S Series S5 with PAA
  • watchOS 7.1 running on Apple Watch Series S5 with an Apple S Series S5 without PAA
  • watchOS 7.1 running on Apple Watch Series S6 with an Apple S Series S6 with PAA
  • watchOS 7.1 running on Apple Watch Series S6 with an Apple S Series S6 without PAA

Validation history

DateTypeLab
2022-12-07Initialatsec information security corporation

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status active
  • Validation dates on record: 2022-12-07

Source documents