CorSSL
Caveat: No assurance of the minimum strength of generated SSPs (e.g., keys); No assurance of minimum security of SSPs (e.g., keys, bit strings) that are externally loaded, or of SSPs established with externally loaded SSPs; When operated in approved mode
Certificate
| Certificate number | 5425 |
|---|---|
| Standard | FIPS 140-3 |
| Status | active |
| Sunset date | 2031-07-18 |
| Overall level | 1 |
| Module type | Software |
| Embodiment | MultiChipStand |
| Vendor | Corsec Security, Inc. · website |
Module description
CorSSL is a software module with a multi-chip standalone embodiment. The module is designed to operate within a modifiable operational environment. Additionally, the module is designed to utilize the AES-NI extended instruction set when available by the host platform’s CPU for processor algorithm acceleration (PAA) of its AES implementation.
Security level exceptions
- Physical security: N/A
- Non-invasive security: N/A
- Mitigation of other attacks: N/A
Validation history
| Date | Type | Lab |
|---|---|---|
| 2026-07-19 | Initial | Teron Labs |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status active
- Validation dates on record: 2026-07-19