Secure Boot Processor (SBP) Crypto Engine
Caveat: When operated in FIPS mode.
Certificate
| Certificate number | 4518 |
|---|---|
| Standard | FIPS 140-2 |
| Status | active |
| Sunset date | 2026-09-21 |
| Overall level | 1 |
| Module type | Hardware |
| Embodiment | Single Chip |
| Vendor | Fungible, Inc. · website |
| Hardware versions | F1 1.0.0 and S1 1.0.1 |
| Firmware versions | 95b53165a1 |
Module description
The Secure Boot Processor operates a secure enclave within the Fungible DPU, and implements a hardware rooted chain of trust for authenticating all software, firmware and configuration files used in the DPU. The SBP also manages a number of asymmetric key cryptography accelerators within the enclave, and implements APIs for invoking these accelerators. The APIs are used by the DPU operating system (FunOS) modules to offload public key cryptography operations.
Security level exceptions
- Mitigation of Other Attacks: N/A
Approved algorithms
| Algorithm | CAVP certificate |
|---|---|
| AES | A2318, A2321, A2322, A2323 |
| CKG | vendor affirmed |
| CVL | A2342, A2349, A2350 |
| DRBG | A2342 |
| DSA | A2349, A2350 |
| ECDSA | A2349, A2350 |
| ENT | |
| HMAC | A2319, A2320 |
| KAS-SSC | A2349, A2350 |
| KBKDF | A2342 |
| KTS | |
| KTS-RSA | |
| RSA | A2349, A2350 |
| SHS | A2319, A2320 |
Tested configurations
- Fungible F1 rev A0
- Fungible S1 rev A0
Validation history
| Date | Type | Lab |
|---|---|---|
| 2023-05-10 | Initial | Acumen Security |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status active
- Validation dates on record: 2023-05-10