808bits

ISC Cryptographic Development Kit (CDK)

FIPS 140-3 certificate #4998 · Information Security Corporation · data as of 2026-08-28
Active. Sunset date 2030-04-06, 1316 days away.
Caveat: When operated in approved mode

Certificate

Certificate number4998
StandardFIPS 140-3
Statusactive
Sunset date2030-04-06
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorInformation Security Corporation · website
Software versions8.1.2.3

Module description

The CDK is a software module. The physical embodiment of the computer hardware on which it runs is a "multi-chip standalone module" in FIPS 140-3 terminology. The "physical perimeter" is defined to be the entire computer on which the CDK software runs. As a software module, the "cryptographic boundary" contains the software modules that comprise the CDK shared link library.

Security level exceptions

  • Physical security: N/A
  • Non-invasive security: N/A
  • Mitigation of other attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AES-CBCA5798
AES-CCMA5798
AES-CFB128A5798
AES-CFB8A5798
AES-CMACA5798
AES-CTRA5798
AES-ECBA5798
AES-GCMA5798
AES-KWA5798
AES-KWPA5798
AES-OFBA5798
AES-XTS Testing Revision 2.0A5798
Conditioning Component AES-CBC-MAC SP800-90BA5798
cSHAKE-128A5798
cSHAKE-256A5798
Deterministic ECDSA SigGen (FIPS186-5)A5798
DSA SigVer (FIPS186-4)A5798
ECDSA KeyGen (FIPS186-4)A5798
ECDSA KeyVer (FIPS186-4)A5798
ECDSA SigGen (FIPS186-4)A5798
ECDSA SigVer (FIPS186-4)A5798
HMAC DRBGA5798
HMAC-SHA-1A5798
HMAC-SHA2-224A5798
HMAC-SHA2-256A5798
HMAC-SHA2-384A5798
HMAC-SHA2-512A5798
HMAC-SHA2-512/224A5798
HMAC-SHA2-512/256A5798
HMAC-SHA3-224A5798
HMAC-SHA3-256A5798
HMAC-SHA3-384A5798
HMAC-SHA3-512A5798
KAS-ECC-SSC Sp800-56Ar3A5798
KAS-IFC-SSCA5798
KDA HKDF SP800-56Cr2A5798
KDA OneStep SP800-56Cr2A5798
KDF ANS 9.63A5798
KDF IKEv1A5798
KDF IKEv2A5798
KDF SNMPA5798
KDF SSHA5798
KDF TLSA5798
KDF TLSA5798
KDF TPMA5798
KMAC-128A5798
KMAC-256A5798
KTS-IFCA5798
ParallelHash-128A5798
ParallelHash-256A5798
PBKDFA5798
RSA KeyGen (FIPS186-4)A5798
RSA SigGen (FIPS186-4)A5798
RSA Signature PrimitiveA5798
RSA SigVer (FIPS186-4)A5798
SHA-1A5798
SHA2-224A5798
SHA2-256A5798
SHA2-384A5798
SHA2-512A5798
SHA2-512/224A5798
SHA2-512/256A5798
SHA3-224A5798
SHA3-256A5798
SHA3-384A5798
SHA3-512A5798
SHAKE-128A5798
SHAKE-256A5798
TDES-CBCA5798
TDES-CFB64A5798
TDES-CFB8A5798
TDES-CTRA5798
TDES-ECBA5798
TDES-OFBA5798
TLS v1.2 KDF RFC7627A5798
TLS v1.3 KDFA5798
TupleHash-128A5798
TupleHash-256A5798

Tested configurations

  • CentOS 7.7 64-bit running on a Dell Inspiron 15 with an Intel(R) Core(TM) i7-11390H (Tiger Lake) with PAA
  • CentOS 7.7 64-bit running on a Dell Inspiron 15 with an Intel(R) Core(TM) i7-11390H (Tiger Lake) without PAA
  • Raspberry Pi OS 32-bit running on a Raspberry Pi 4 Model B with a Broadcom BCM2711
  • Raspberry Pi OS 64-bit running on a Raspberry Pi 4 Model B with a Broadcom BCM2835
  • Windows 10 64-bit running on a Dell Inspiron 15 with an Intel(R) Core(TM) i7-11390H (Tiger Lake) with PAA
  • Windows 10 64-bit running on a Dell Inspiron 15 with an Intel(R) Core(TM) i7-11390H (Tiger Lake) without PAA

Validation history

DateTypeLab
2025-04-07InitialLeidos Accredited Testing & Evaluation (AT&E) Lab

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status active
  • Validation dates on record: 2025-04-07

Source documents