808bits

Cryptek Common Security Module (CSM)

FIPS 140-2 certificate #523 · Cryptek, Inc. · data as of 2026-08-28
Historical. RNG SP800-131A Revision 1 Transition. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode

Certificate

Certificate number523
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeHardware
EmbodimentMulti-chip embedded
VendorCryptek, Inc. · website
Hardware versions5110N0017-1, 5110N0017-2, 5110N0017-3, 5110N0017-4
Firmware versions2.1.9 and 2.4.0.3

Module description

The CSM is a secure network product designed to enforce three distinct information flow policies: Mandatory Access Control (MAC), Discretionary access Control (DAC), and Packet filtering. The design can support multiple security domains on a single network infrastructure by combining cryptography and labeling technology. The Cryptek CSM hardware and firmware constitute the core technology used in the DiamondLink, DiamondVPN, DiamondPAK, DiamondSAT, DiamondUTC, CL100, CL150, CL100-F, CP102, CP104, CP106, CV100, CS101, CS102, and CT100.

Security level exceptions

  • Roles, Services, and Authentication: Level 2
  • Design Assurance: Level 3

Approved algorithms

AlgorithmCAVP certificate
HMAC-SHA-1vendor affirmed
RNG24
RSA19
SHS63
Triple-DES71

Other algorithms

DES (Cert. #132); DES MAC (Cert. #132, vendor affirmed); MD5; HMAC-MD5, Diffie-Hellman (key agreement)

Validation history

DateTypeLab
2005-04-27InitialUL Verification Services, Inc.
2005-06-29Update
2005-10-13Update

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2005-04-27, 2005-06-29, 2005-10-13

Source documents