808bits

Cradlepoint Cryptographic Module

FIPS 140-3 certificate #4770 · Ericsson Enterprise Wireless Solutions, Inc. · data as of 2026-08-28
Historical. Moved to historical list due to sunsetting. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: Interim Validation, No assurance of the minimum strength of generated keys

Certificate

Certificate number4770
StandardFIPS 140-3
Statushistorical
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorEricsson Enterprise Wireless Solutions, Inc. · website
Software versions1.0

Module description

The Ericsson Cryptographic Module is a cryptographic library embedded in Ericsson’s Cradlepoint endpoints. The Ericsson Cryptographic Module offers symmetric encryption/decryption, digital signature generation/verification, hashing, cryptographic key generation, random number generation, message authentication, and key establishment functions to secure data-at-rest/data-in-flight and to support secure communications protocols (including TLS 1.2).

Security level exceptions

  • Physical security: N/A
  • Non-invasive security: N/A
  • Mitigation of other attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AES-CBCA2584
AES-CTRA2584
AES-ECBA2584
Counter DRBGA2584
DSA KeyGen (FIPS186-4)A2584
DSA PQGGen (FIPS186-4)A2584
DSA PQGVer (FIPS186-4)A2584
DSA SigGen (FIPS186-4)A2584
DSA SigVer (FIPS186-4)A2584
ECDSA KeyGen (FIPS186-4)A2584
ECDSA KeyVer (FIPS186-4)A2584
ECDSA SigGen (FIPS186-4)A2584
ECDSA SigVer (FIPS186-4)A2584
HMAC-SHA-1A2584
HMAC-SHA2-224A2584
HMAC-SHA2-256A2584
HMAC-SHA2-384A2584
HMAC-SHA2-512A2584
KAS-ECC-SSC Sp800-56Ar3A2584
KAS-FFC-SSC Sp800-56Ar3A2584
PBKDFA2584
RSA KeyGen (FIPS186-4)A2584
RSA SigGen (FIPS186-4)A2584
RSA SigVer (FIPS186-4)A2584
Safe Primes Key GenerationA2584
SHA-1A2584
SHA2-224A2584
SHA2-256A2584
SHA2-384A2584
SHA2-512A2584
TDES-CBCA2584
TDES-ECBA2584
TLS v1.2 KDF RFC7627A2584

Allowed algorithms

AES (Cert. #A2584) (-; Key unwrapping (using any approved mode));Triple DES (Cert. #A2584) (-; Key Unwrapping (Using any approved mode with two-key or three-key))

Tested configurations

  • NetCloud OS 7 running on Cradlepoint E3000-C18B with ARM Cortex-A (ARMv8-A) with PAA
  • NetCloud OS 7 running on Cradlepoint E3000-C18B with ARM Cortex-A (ARMv8-A) without PAA

Validation history

DateTypeLab
2024-08-20InitialLightship Security, Inc.
2026-03-02UpdateTeron Labs
2026-03-16UpdateTeron Labs

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2024-08-20

Source documents