808bits

CLEAR Cryptosystem

FIPS 140-3 certificate #5126 · Quantum Knight, INC. · data as of 2026-08-28
Active. Sunset date 2029-07-28, 1064 days away.
Caveat: When operated in approved mode. No assurance of the minimum strength of generated SSPs (e.g., keys).

Certificate

Certificate number5126
StandardFIPS 140-3
Statusactive
Sunset date2029-07-28
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorQuantum Knight, INC. · website
Software versions4.0.0

Module description

CLEAR Cryptosystem is a standards-based cryptographic engine that enables the protection of data requiring absolute compliance with federal standards. The module delivers core cryptographic functions for boosting the strength and speed of cryptographic protection while guaranteeing data integrity, data at rest encryption, and streaming data transmissions. CLEAR Cryptosystem provides flexible modes of operation that include multi-factor authentication (MFA) and embedded access control lists (ACL) for controlled access to data.

Security level exceptions

  • Physical security: N/A
  • Non-invasive security: N/A

Approved algorithms

AlgorithmCAVP certificate
AES-CBCA6047
AES-CBC-CS1A6047
AES-CBC-CS2A6047
AES-CBC-CS3A6047
AES-CCMA6047
AES-CFB128A6047
AES-CFB8A6047
AES-CMACA6047
AES-CTRA6047
AES-ECBA6047
AES-FF1A6047
AES-GCMA6047
AES-GMACA6047
AES-KWA6047
AES-KWPA6047
AES-OFBA6047
Counter DRBGA6047
cSHAKE-128A6047
cSHAKE-256A6047
DSA KeyGen (FIPS186-4)A6047
DSA PQGGen (FIPS186-4)A6047
DSA PQGVer (FIPS186-4)A6047
DSA SigGen (FIPS186-4)A6047
DSA SigVer (FIPS186-4)A6047
ECDSA KeyGen (FIPS186-4)A6047
ECDSA KeyVer (FIPS186-4)A6047
ECDSA SigGen (FIPS186-4)A6047
ECDSA SigVer (FIPS186-4)A6047
Hash DRBGA6047
HMAC DRBGA6047
HMAC-SHA-1A6047
HMAC-SHA2-224A6047
HMAC-SHA2-256A6047
HMAC-SHA2-384A6047
HMAC-SHA2-512A6047
HMAC-SHA2-512/224A6047
HMAC-SHA2-512/256A6047
HMAC-SHA3-224A6047
HMAC-SHA3-256A6047
HMAC-SHA3-384A6047
HMAC-SHA3-512A6047
KAS-ECC Sp800-56Ar3A6047
KAS-FFC Sp800-56Ar3A6047
KAS-IFCA6047
KDA HKDF SP800-56Cr2A6047
KDA OneStep SP800-56Cr2A6047
KDA TwoStep SP800-56Cr2A6047
KDF ANS 9.63A6047
KDF IKEv2A6047
KDF SNMPA6047
KDF SP800-108A6047
KDF SRTPA6047
KDF SSHA6047
KDF TLSA6047
KMAC-128A6047
KMAC-256A6047
KTS-IFCA6047
ParallelHash-128A6047
ParallelHash-256A6047
PBKDFA6047
RSA Decryption PrimitiveA6047
RSA KeyGen (FIPS186-4)A6047
RSA SigGen (FIPS186-4)A6047
RSA Signature PrimitiveA6047
RSA SigVer (FIPS186-2)A6047
RSA SigVer (FIPS186-4)A6047
Safe Primes Key GenerationA6047
Safe Primes Key VerificationA6047
SHA-1A6047
SHA2-224A6047
SHA2-256A6047
SHA2-384A6047
SHA2-512A6047
SHA2-512/224A6047
SHA2-512/256A6047
SHA3-224A6047
SHA3-256A6047
SHA3-384A6047
SHA3-512A6047
SHAKE-128A6047
SHAKE-256A6047
TupleHash-128A6047
TupleHash-256A6047

Tested configurations

  • OpenJDK Runtime Environment v11 on VMware Photon OS 5.0 on VMware ESXi 8.0 running on Dell PowerEdge R830 with Intel Xeon E5 without PAA
  • OpenJDK Runtime Environment v17 on VMware Photon OS 5.0 on VMware ESXi 8.0 running on Dell PowerEdge R830 with Intel Xeon E5 without PAA
  • OpenJDK Runtime Environment v21 on VMware Photon OS 5.0 on VMware ESXi 8.0 running on Dell PowerEdge R830 with Intel Xeon E5 without PAA
  • OpenJDK Runtime Environment v8 on VMware Photon OS 5.0 on VMware ESXi 8.0 running on Dell PowerEdge R830 with Intel Xeon E5 without PAA

Validation history

DateTypeLab
2026-01-13InitialDEKRA Cybersecurity Certification Laboratory
2026-03-03UpdateDEKRA Cybersecurity Certification Laboratory

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status active
  • Validation dates on record: 2026-01-13

Source documents