808bits

Cradlepoint Kernel Cryptographic Module

FIPS 140-3 certificate #4863 · Ericsson Enterprise Wireless Solutions, Inc. · data as of 2026-08-28
Historical. Moved to historical list due to dependency on certificate #4770. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: Interim validation. When operated in approved mode with module Cradlepoint Cryptographic Module validated to FIPS 140-3 under Cert. #4770 operating in approved mode

Certificate

Certificate number4863
StandardFIPS 140-3
Statushistorical
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorEricsson Enterprise Wireless Solutions, Inc. · website
Software versions1.0 and 2.0

Module description

The Ericsson Kernel Cryptographic Module is a software module running as part of Ericsson’s NetCloud OS kernel. It provides FIPS-Approved symmetric encryption and decryption, hashing, message authentication, and key establishment services to consuming applications via an Application Programming Interface (API).

Security level exceptions

  • Physical security: N/A
  • Non-invasive security: N/A
  • Mitigation of other attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AES-CBCA3232
AES-CBCA4944
AES-CTRA4944
AES-ECBA3232
AES-ECBA4944
AES-GCMA3232
AES-GCMA4944
HMAC-SHA-1A3232
HMAC-SHA-1A4944
HMAC-SHA2-256A3232
HMAC-SHA2-256A4944
HMAC-SHA2-384A3232
HMAC-SHA2-384A4944
HMAC-SHA2-512A3232
HMAC-SHA2-512A4944
SHA-1A3232
SHA-1A4944
SHA2-256A3232
SHA2-256A4944
SHA2-384A3232
SHA2-384A4944
SHA2-512A3232
SHA2-512A4944
TDES-CBCA3232

Allowed algorithms

AES (Cert. A3232), AES (Cert. A4944) (SSP establishment methodology provides between 128 and 256 bits of encryption strength.; Key unwrapping (using any approved mode));Triple-DES (Cert. A3232) (SSP establishment methodology provides 168 bits of encryption strength.; Key unwrapping (using any Approved mode with two-key or three-key))

Tested configurations

  • NetCloud OS 7 running on a Cradlepoint E3000 with an ARM Cortex-A (ARMv8-A)

Validation history

DateTypeLab
2024-11-04InitialLightship Security, Inc.
2026-03-02UpdateTeron Labs
2026-03-16UpdateTeron Labs

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2024-11-04

Source documents