Cr50 U2F Cryptographic Library
Caveat: When operated in FIPS mode. No assurance of the minimum strength of generated keys.
Certificate
| Certificate number | 4652 |
|---|---|
| Standard | FIPS 140-2 |
| Status | active |
| Sunset date | 2026-09-21 |
| Overall level | 1 |
| Module type | Firmware-Hybrid |
| Embodiment | Single Chip |
| Vendor | Google, LLC · website |
| Hardware versions | H1B2P |
| Firmware versions | 1.0.1 |
Module description
The Cr50 U2F Cryptographic Library is a firmware-hybrid module residing in the Google, LLC Google Security Chips (GSC) chip. The module is responsible for low-level cryptographic primitives on Google Security Chips (GSC) used in recent versions of Google Chromebooks, and includes functionality for key generation, signature generation, random bit generation, keyed-hashing and signature verification operations in support of U2F-related requests in the Cr50 Chrome OS.
Security level exceptions
- Physical Security: Level 3
- Mitigation of Other Attacks: N/A
Approved algorithms
Tested configurations
- Google H1B2 with ARM V7-M with PAA
Validation history
| Date | Type | Lab |
|---|---|---|
| 2023-11-06 | Initial | Acumen Security |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status active
- Validation dates on record: 2023-11-06