808bits

Windows XP Enhanced Cryptographic Provider (RSAENH)

FIPS 140-2 certificate #989 · Microsoft Corporation · data as of 2026-08-28
Historical. RNG SP800-131A Revision 1 Transition. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode

Certificate

Certificate number989
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeSoftware
EmbodimentMulti-chip standalone
VendorMicrosoft Corporation · website
Software versions5.1.2600.5507

Module description

The Microsoft Enhanced Cryptographic Provider, designed for FIPS 140-2 compliance, is a software-based, cryptographic module. RSAENH encapsulates several different cryptographic algorithms (including SHS, DES, TDES, AES, RSA, HMAC) in a cryptographic module accessible via the Microsoft CryptoAPI.

Approved algorithms

AlgorithmCAVP certificate
AES781
HMAC428
RNG447
RSA371
SHS783
Triple-DES675
Triple-DES MACvendor affirmed

Other algorithms

DES; MD2; MD4; MD5; HMAC MD5; RC2; RC4; RSA (key wrapping; key establishment methodology provides between 112 and 150 bits of encryption strength; non-compliant less than 112 bits)

Tested configurations

  • Microsoft Windows XP Professional SP3 (single-user mode)

Validation history

DateTypeLab
2008-07-24InitialSAIC-VA

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2008-07-24

Source documents