Boot Manager
Caveat: When operated in FIPS mode
Certificate
| Certificate number | 4484 |
|---|---|
| Standard | FIPS 140-2 |
| Status | active |
| Sunset date | 2026-09-21 |
| Overall level | 1 |
| Module type | Software-Hybrid |
| Embodiment | Multi-Chip Stand Alone |
| Vendor | Microsoft Corporation · website |
| Software versions | 10.0.17763.10021 and 10.0.17763.10127 |
| Hardware versions | Intel Xeon Silver 4114, Intel Xeon Gold 6230, Intel Xeon Platinum 8260 and Intel Xeon D-1559 |
Module description
The Windows system boot manager is called by the bootstrapping code that resides in the boot sector. It checks its own integrity, checks the integrity of the Windows OS Loader, and then launches it.
Security level exceptions
- Design Assurance: Level 2
Approved algorithms
| Algorithm | CAVP certificate |
|---|---|
| AES | C1577, C1583, C2044, C2049 |
| CKG | vendor affirmed |
| HMAC | C1577, C2044 |
| PBKDF | vendor affirmed |
| RSA | C1586, C2052 |
| SHS | C1577, C2044 |
Tested configurations
- Windows Server 2019 Datacenter Core (x64) running on a Dell PowerEdge R640 Server with an Intel Xeon Gold 6230 with PAA
- Windows Server 2019 Datacenter Core (x64) running on a Dell PowerEdge R840 Server with an Intel Xeon Platinum 8260 with PAA
- Windows Server 2019 Datacenter Core (x64) running on a Dell XR2 with an Intel Xeon Silver 4114 with PAA
- Windows Server 2019 Datacenter Core (x64) running on a Rugged Mobile Appliance with an Intel Xeon D-1559 with PAA (single-user mode)
Validation history
| Date | Type | Lab |
|---|---|---|
| 2023-04-17 | Initial | Leidos Accredited Testing & Evaluation (AT&E) Lab |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status active
- Validation dates on record: 2023-04-17