Astro Subscriber Motorola Advanced Crypto Engine (MACE) - Security Level 3

Certificate #3948

Webpage information

Status active
Validation dates 07.06.2021
Sunset date 06-06-2026
Standard FIPS 140-2
Security level 3
Type Hardware
Embodiment Single Chip
Caveat When operated in FIPS mode and configured to Overall Level 3 per Section 2 of the Security Policy
Exceptions
  • Mitigation of Other Attacks: N/A
Description The MACE cryptographic processor is used in security modules embedded in Motorola's Astro family of radio systems products. It provides secure voice and data capabilities as well as APCO Over-The-Air-Rekeying and advanced key management.
Version (Hardware) P/Ns 5185912Y03, 5185912Y05 and 5185912T05
Version (Firmware) R01.11.00 with [AES256 R01.00.00 and AES256 R02.00.00] and [ADP, DES-XL, DES, DVI-XL and/or DVP-XL R01.00.00]
Vendor Motorola Solutions, Inc.
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Symmetric Algorithms
AES, AES256, AES-, AES-256, DES, HMAC, HMAC-SHA-384, CMAC
Asymmetric Algorithms
RSA-2048, ECDH, ECDSA, ECC, Diffie-Hellman
Hash functions
SHA-384, SHA-256
Schemes
MAC, Key Agreement
Randomness
DRBG, RNG
Elliptic Curves
P-384
Block cipher modes
ECB, CBC, CTR, CFB, OFB, GCM

Security level
Level 3, level 3

Standards
FIPS 140-2, FIPS140-2, FIPS PUB 140-2, SP 800-38F, SP 800-90A

File metadata

Subject FIPS 140-2 Security Policy Template
Author Brandon Stegall
Creation date D:20210524115627-07'00'
Modification date D:20210524115646-07'00'
Pages 21
Creator Acrobat PDFMaker 17 for Word
Producer Adobe PDF Library 17.11.238

References

Outgoing
  • 2339 - historical - Dell W-AP224 and W-AP225 Wireless Access Points with Dell AOS FIPS Firmware

Heuristics

No heuristics are available for this certificate.

References

Loading...

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 3948,
  "dgst": "24a47a476d5cbb0d",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "CVL#A656",
        "KTS#819",
        "AES#A654",
        "AES#C1444",
        "AES#1295",
        "RSA#396",
        "SHS#2399",
        "AES#819",
        "SHS#817",
        "HMAC#1796",
        "KTS#396",
        "DRBG#505",
        "ECDSA#A655"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "01.00.00",
        "02.00.00",
        "01.11.00"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": {
        "_type": "Set",
        "elements": [
          "2339"
        ]
      },
      "indirectly_referenced_by": null,
      "indirectly_referencing": {
        "_type": "Set",
        "elements": [
          "2339"
        ]
      }
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": [
        "2339"
      ]
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 2
          },
          "ECDH": {
            "ECDH": 16
          },
          "ECDSA": {
            "ECDSA": 5
          }
        },
        "FF": {
          "DH": {
            "Diffie-Hellman": 8
          }
        },
        "RSA": {
          "RSA-2048": 7
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 9
        },
        "CFB": {
          "CFB": 2
        },
        "CTR": {
          "CTR": 2
        },
        "ECB": {
          "ECB": 6
        },
        "GCM": {
          "GCM": 6
        },
        "OFB": {
          "OFB": 6
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {
        "KA": {
          "Key Agreement": 4
        },
        "MAC": {
          "MAC": 2
        }
      },
      "device_model": {},
      "ecc_curve": {
        "NIST": {
          "P-384": 16
        }
      },
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "#1": 1,
          "#1295": 1,
          "#2339": 1,
          "#396": 1,
          "#505": 1,
          "#817": 1,
          "#819": 4
        }
      },
      "fips_certlike": {
        "Certlike": {
          "AES CBC Cert. #819": 1,
          "AES Cert. #819": 1,
          "AES [197": 4,
          "AES- 256 (Cert #819 and #1295": 1,
          "AES-256": 2,
          "AES256": 4,
          "DRBG (Cert #505": 1,
          "HMAC SHA 384": 1,
          "HMAC [198": 1,
          "HMAC-SHA-384": 2,
          "SHA 384": 1,
          "SHA- 256": 1,
          "SHA-256": 4,
          "SHA-384": 6,
          "SHS [180": 2
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 3": 7,
          "level 3": 1
        }
      },
      "hash_function": {
        "SHA": {
          "SHA2": {
            "SHA-256": 4,
            "SHA-384": 6
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 19
        },
        "RNG": {
          "RNG": 1
        }
      },
      "side_channel_analysis": {},
      "standard_id": {
        "FIPS": {
          "FIPS 140-2": 14,
          "FIPS PUB 140-2": 1,
          "FIPS140-2": 1
        },
        "NIST": {
          "SP 800-38F": 4,
          "SP 800-90A": 3
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 21,
            "AES-": 1,
            "AES-256": 2,
            "AES256": 4
          }
        },
        "DES": {
          "DES": {
            "DES": 2
          }
        },
        "constructions": {
          "MAC": {
            "CMAC": 1,
            "HMAC": 3,
            "HMAC-SHA-384": 1
          }
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "policy_metadata": {
      "/Author": "Brandon Stegall",
      "/Company": "Microsoft",
      "/CreationDate": "D:20210524115627-07\u002700\u0027",
      "/Creator": "Acrobat PDFMaker 17 for Word",
      "/ModDate": "D:20210524115646-07\u002700\u0027",
      "/Producer": "Adobe PDF Library 17.11.238",
      "/SourceModified": "D:20210524185542",
      "/Subject": "FIPS 140-2 Security Policy Template",
      "pdf_file_size_bytes": 526278,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "http://csrc.nist.gov/groups/STM/cmvp/validation.html"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 21
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
    "module_download_ok": true,
    "module_extract_ok": true,
    "policy_convert_ok": true,
    "policy_download_ok": true,
    "policy_extract_ok": true,
    "policy_json_hash": null,
    "policy_pdf_hash": "4ab486fe46a4274cf9f12048340df655ee68cab8b95745d202dc6b8398ca0578",
    "policy_txt_hash": "d02379dcd2b13a11cae339782d75c9bbdf7f65fd972ade211e8062412e3cacdd"
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "When operated in FIPS mode and configured to Overall Level 3 per Section 2 of the Security Policy",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/June 2021_010721_0718.pdf",
    "date_sunset": "2026-06-06",
    "description": "The MACE cryptographic processor is used in security modules embedded in Motorola\u0027s Astro family of radio systems products. It provides secure voice and data capabilities as well as APCO Over-The-Air-Rekeying and advanced key management.",
    "embodiment": "Single Chip",
    "exceptions": [
      "Mitigation of Other Attacks: N/A"
    ],
    "fw_versions": "R01.11.00 with [AES256 R01.00.00 and AES256 R02.00.00] and [ADP, DES-XL, DES, DVI-XL and/or DVP-XL R01.00.00]",
    "historical_reason": null,
    "hw_versions": "P/Ns 5185912Y03, 5185912Y05 and 5185912T05",
    "level": 3,
    "mentioned_certs": {},
    "module_name": "Astro Subscriber Motorola Advanced Crypto Engine (MACE) - Security Level 3",
    "module_type": "Hardware",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "active",
    "sw_versions": null,
    "tested_conf": null,
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2021-06-07",
        "lab": "UL Verification Services, Inc.",
        "validation_type": "Initial"
      }
    ],
    "vendor": "Motorola Solutions, Inc.",
    "vendor_url": "http://www.motorolasolutions.com"
  }
}