SQLCipher Cryptographic Module
Caveat: When operated in FIPS mode. The module makes no assurance of the minimum strength of random strings and generated keys
Certificate
| Certificate number | 4708 |
|---|---|
| Standard | FIPS 140-2 |
| Status | active |
| Sunset date | 2026-09-21 |
| Overall level | 1 |
| Module type | Software |
| Embodiment | Multi-Chip Stand Alone |
| Vendor | Zetetic, LLC · website |
| Software versions | 2.1.2 |
Module description
The SQLCipher Cryptographic Module is a cryptographic engine that integrates with SQLCipher, enhancing encrypted database operations with a trusted security layer. SQLCipher provides full database encryption and data integrity protection for local storage at rest. This module guarantees that all data stored and retrieved through SQLCipher is encrypted, decrypted, and verified using a reliable implementation for applications demanding high levels of data security.
Security level exceptions
- Physical Security: N/A
- Mitigation of Other Attacks: N/A
Approved algorithms
| Algorithm | CAVP certificate |
|---|---|
| AES | A4873 |
| CKG | vendor affirmed |
| DRBG | A4873 |
| DSA | A4873 |
| ECDSA | A4873 |
| HMAC | A4873 |
| RSA | A4873 |
| SHS | A4873 |
| Triple-DES | A4873 |
Tested configurations
- CentOS 7 running on a Dell PowerEdge R830 with an Intel Xeon E5-4667v4 with PAA
- CentOS 7 running on a Dell PowerEdge R830 with an Intel Xeon E5-4667v4 without PAA
- macOS 13 (Ventura) running on a Mac Mini M2 with an Apple M2
- Windows Server 2022 running on a Dell PowerEdge R830 with an Intel Xeon E5-4667v4 with PAA
- Windows Server 2022 running on a Dell PowerEdge R830 with an Intel Xeon E5-4667v4 without PAA (single-user mode)
Validation history
| Date | Type | Lab |
|---|---|---|
| 2024-06-11 | Initial | Leidos Accredited Testing & Evaluation (AT&E) Lab |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status active
- Validation dates on record: 2024-06-11