808bits

Boot Manager

FIPS 140-2 certificate #4546 · Microsoft Corporation · data as of 2026-09-13

Boot Manager, from Microsoft Corporation, holds FIPS 140-2 certificate #4546 at overall level 1. The validation is active, with a sunset date of 2026-09-21. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.

Active. Sunset date 2026-09-21, 7 days away. This is the FIPS 140-2 sunset: after it, agencies may keep the module only in existing systems.
Caveat: When operated in FIPS mode

Certificate

Certificate number4546
StandardFIPS 140-2
Statusactive
Sunset date2026-09-21
Overall level1
Module typeSoftware-Hybrid
EmbodimentMulti-Chip Stand Alone
VendorMicrosoft Corporation · website
Software versions10.0.22000
Hardware versionsIntel i5-1145G7

Module description

Quoted from the NIST CMVP entry for this certificate.

The Windows system boot manager is called by the bootstrapping code that resides in the boot sector. It checks its own integrity, checks the integrity of the Windows OS Loader, and then launches it.

Security level exceptions

  • Design Assurance: Level 2

Approved algorithms (6)

AlgorithmCAVP certificates
AESA2000, A2004
CKGvendor affirmed
HMACA2004
PBKDFA2004
RSAA2003
SHSA2004

Tested configurations

  • Microsoft Windows 11 (64-bit) on Microsoft Surface Laptop 4 with 11th Gen Intel i5-1145G7 with PAA (single-user mode)

Validation history

DateTypeLab
2023-06-30InitialLeidos Accredited Testing & Evaluation (AT&E) Lab

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status active
  • Validation dates on record: 2023-06-30

Source documents