808bits

Winload OS Loader (winload.exe)

FIPS 140-2 certificate #889 · Microsoft Corporation · data as of 2026-09-03

Winload OS Loader (winload.exe), from Microsoft Corporation, holds FIPS 140-2 certificate #889 at overall level 1. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.

Historical. Moved to historical list due to sunsetting. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode with Boot Manager (bootmgr) validated to FIPS 140-2 under Cert. #888 operating in FIPS mode

Certificate

Certificate number889
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeSoftware
EmbodimentMulti-chip standalone
VendorMicrosoft Corporation · website
Software versions6.0.6000.16386, 6.0.6000.16476 and 6.0.6000.20586

Module description

Quoted from the NIST CMVP entry for this certificate.

This is the OS loader. It loads the boot-critical driver image files and the OS kernel image file itself.

Approved algorithms (3)

AlgorithmCAVP certificates
AES424
RSA255
SHS618

Tested configurations

  • Microsoft Windows Vista Ultimate Edition (x64 version) (single-user mode)
  • Microsoft Windows Vista Ultimate Edition (x86 Version)

Validation history

DateTypeLab
2008-01-10InitialSAIC-VA

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2008-01-10

Source documents