808bits

Tensor G2 UFS Inline Storage Encryption Cryptographic Module

FIPS 140-3 certificate #4720 · Google, LLC · data as of 2026-09-03

Tensor G2 UFS Inline Storage Encryption Cryptographic Module, from Google, LLC, holds FIPS 140-3 certificate #4720 at overall level 1. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.

Historical. Replaced by certificate #5254. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: Interim Validation

Certificate

Certificate number4720
StandardFIPS 140-3
Statushistorical
Overall level1
Module typeSoftware-hybrid
EmbodimentMulti-Chip Stand Alone
VendorGoogle, LLC · website
Software versions1.2.0
Hardware versions4.1.0

Module description

Quoted from the NIST CMVP entry for this certificate.

Inline storage encryption engine for UFS as part of the Tensor mobile SoC to protect user data at rest.

Security level exceptions

  • Non-invasive security: N/A
  • Mitigation of other attacks: N/A

Approved algorithms (3)

AlgorithmCAVP certificates
AES-XTSA2268
HMAC-SHA2-256A2268
SHA2-256A2268

Tested configurations

  • Linux Kernel 5.10 running on Google Pixel 7 with Google Tensor G2 With PAA

Validation history

DateTypeLab
2024-07-11InitialGossamer Security Solutions

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2024-07-11

Source documents