808bits

PGP Cryptographic SDK

FIPS 140-1 certificate #64 · PGP Corporation · data as of 2026-08-28
Historical. Validation Sunsetting Policy - FIPS 140-1 Certificate. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode using the listed FIPS-approved algorithms and using Triple DES

Certificate

Certificate number64
StandardFIPS 140-1
Statushistorical
Overall level2
Module typeSoftware
EmbodimentMulti-chip standalone
VendorPGP Corporation · website
Software versions1.5

Module description

The PGP SDK provides all cryptographic and key management functionality for the PGP suite of products, including PGP Desktop Security, PGPnet VPN Client, PGPdisk and the PGP Certificate Server. This is a high-level toolkit for use with C/C++ applications on Windows. It also supports PGP/MIME, TLS, Certificate Server management, LDAP, and Blakely-Shamir Key Splitting, as well as many user interface components for simple integration into other applications. PGP SDK implements only strong cryptography, and the source code is published in book form for peer review.

Security level exceptions

  • Operating System Security: Tested as meeting Level 2 with Compaq DeskPro 5/166 w/ WindowsNT Workstation 3.51 w/ Service Pack 4 (ITSEC-rated).

Approved algorithms

AlgorithmCAVP certificate
DSA/SHA-1

Other algorithms

DES (Cert. #40); Triple-DES (allowed for US Government use); RSA, El Gamal; CAST5; IDEA; MD5; RIPEMD60; HMAC; Shamir Threshold Secret Sharing

Validation history

DateTypeLab
1999-08-26InitialUL Verification Services, Inc.
2003-02-20Update
2008-03-07Update
2008-07-28Update

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 1999-08-26, 2003-02-20, 2008-03-07, 2008-07-28

Source documents