{"_type": "sec_certs.sample.fips.FIPSCertificate", "dgst": "2d92cc08f22524db", "cert_id": 5530, "web_data": {"_type": "sec_certs.sample.fips.FIPSCertificate.WebData", "module_name": "Samsung BoringCrypto Android 15", "validation_history": [{"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry", "date": "2026-09-23", "validation_type": "Initial", "lab": "Gossamer Security Solutions"}], "vendor_url": "http://www.samsung.com", "vendor": "Samsung Electronics Co., Ltd.", "certificate_pdf_url": null, "module_type": "Software", "standard": "FIPS 140-3", "status": "active", "level": 1, "caveat": "When operated in approved mode. No assurance of the minimum strength of generated SSPs (e.g., keys). No assurance of minimum security of SSPs (e.g., keys, bit strings) that are externally loaded, or of SSPs established with externally loaded SSPs.", "exceptions": ["Physical security: N/A", "Non-invasive security: N/A", "Mitigation of other attacks: N/A"], "embodiment": "MultiChipStand", "description": "A software library that contains cryptographic functionality to serve BoringSSL and other user-space applications.", "tested_conf": null, "hw_versions": null, "fw_versions": null, "sw_versions": null, "mentioned_certs": {}, "historical_reason": null, "date_sunset": "2031-04-17", "revoked_reason": null, "revoked_link": null}, "pdf_data": {"_type": "sec_certs.sample.fips.FIPSCertificate.PdfData", "keywords": {"fips_cert_id": {"Cert": {"#1": 3}}, "fips_security_level": {"Level": {"Level 1": 2, "level 1": 1}}, "fips_certlike": {"Certlike": {"HMAC-SHA-1": 2, "HMAC-SHA-256": 4, "HMAC SHA-256": 1, "SHA2-224": 6, "SHA2-256": 7, "SHA2-384": 7, "SHA2-512": 6, "SHA-1": 4, "SHA2224": 1, "SHA2- 256": 2, "SHA-256": 3, "SHA- 1": 1, "SHA- 256": 1, "SHA2- 512": 1, "SHA- 512": 1, "RSA PKCS #1": 3, "AES-256": 1, "AES- CBC Encrypt KAT 128": 1, "AES- CBC Decrypt KAT 128": 1, "AES- GCM Encrypt KAT 128": 1, "AES- GCM 128": 1, "PKCS #1": 3}}, "vendor": {"Samsung": {"Samsung": 4}}, "eval_facility": {}, "symmetric_crypto": {"AES_competition": {"AES": {"AES-256": 1, "AES": 20, "AES-": 16}, "CAST": {"CAST": 20}}, "DES": {"DES": {"DES": 2}, "3DES": {"Triple-DES": 2}}, "constructions": {"MAC": {"HMAC": 9, "HMAC-SHA-256": 2}}}, "asymmetric_crypto": {"ECC": {"ECDSA": {"ECDSA": 31}}, "FF": {"DH": {"DHE": 1, "DH": 45}}}, "pq_crypto": {}, "hash_function": {"SHA": {"SHA1": {"SHA-1": 4}, "SHA2": {"SHA-256": 3}}, "MD": {"MD4": {"MD4": 2}, "MD5": {"MD5": 2}}}, "crypto_scheme": {"MAC": {"MAC": 8}, "KA": {"Key Agreement": 1}}, "crypto_protocol": {"TLS": {"TLS": {"TLS v1.2": 7, "TLS v1.3": 7, "TLS": 33, "TLS 1.2": 5, "TLS 1.3": 6}}}, "randomness": {"PRNG": {"DRBG": 15}, "RNG": {"RBG": 2}}, "cipher_mode": {"CBC": {"CBC": 2}, "GCM": {"GCM": 6}, "SIV": {"SIV": 1}}, "ecc_curve": {"NIST": {"P-224": 12, "P-256": 22, "P-384": 10, "P-521": 10}}, "crypto_engine": {}, "tls_cipher_suite": {}, "crypto_library": {"BoringSSL": {"BoringSSL": 1}}, "vulnerability": {}, "side_channel_analysis": {}, "device_model": {}, "tee_name": {"AMD": {"PSP": 6}, "IBM": {"SSC": 22}}, "os_name": {}, "cplc_data": {}, "ic_data_group": {}, "standard_id": {"FIPS": {"FIPS 140-3": 9, "FIPS186-5": 14, "FIPS 186-5": 8, "FIPS 198-1": 6, "FIPS 180-4": 7}, "NIST": {"SP 800-38A": 3, "SP 800-38C": 1, "SP 800-38D": 2, "SP 800-38F": 2, "SP 800-90A": 1, "SP 800-56A": 2, "SP 800-56C": 1, "SP 800-135": 2, "NIST SP 800-38D": 1, "SP 800-90B": 1}, "PKCS": {"PKCS #1": 3}, "RFC": {"RFC7627": 2, "RFC 8446": 3, "RFC 5288": 1, "RFC 5246": 1, "RFC 7627": 1, "RFC762": 1}}, "javacard_version": {}, "javacard_api_const": {}, "javacard_packages": {}, "certification_process": {}}, "policy_metadata": {"pdf_file_size_bytes": 391790, "pdf_is_encrypted": false, "pdf_number_of_pages": 39, "/Author": "jjing", "/CreationDate": "D:20260922120454-04'00'", "/Creator": "PScript5.dll Version 5.2.2", "/ModDate": "D:20260922120454-04'00'", "/Producer": "Acrobat Distiller 26.0 (Windows)", "/Title": "Microsoft Word - TID-28-e0e1-RBND-IS-2609171322_140sp.docx", "pdf_hyperlinks": {"_type": "Set", "elements": []}}, "module_algorithms": {"_type": "Set", "elements": ["SHA2-256A6134", "ECDSA SigVer (FIPS186-5)A6134", "SHA-1A6134", "ECDSA SigGen (FIPS186-5)A6134", "AES-GCMA6134", "HMAC-SHA-1A6134", "HMAC-SHA2-512/256A6134", "AES-CTRA6134", "SHA2-512A6134", "KAS-ECC-SSC Sp800-56Ar3A6134", "RSA SigVer (FIPS186-5)A6134", "RSA SigGen (FIPS186-5)A6134", "KAS-FFC-SSC Sp800-56Ar3A6134", "Counter DRBGA6134", "TLS v1.3 KDFA6134", "ECDSA KeyGen (FIPS186-5)A6134", "AES-CCMA6134", "AES-CBCA6134", "AES-KWPA6134", "HMAC-SHA2-512A6134", "ECDSA KeyVer (FIPS186-5)A6134", "SHA2-512/256A6134", "AES-KWA6134", "HMAC-SHA2-256A6134", "HMAC-SHA2-384A6134", "TLS v1.2 KDF RFC7627A6134", "AES-GMACA6134", "KDA HKDF Sp800-56Cr1A6134", "SHA2-384A6134", "HMAC-SHA2-224A6134", "RSA KeyGen (FIPS186-5)A6134", "AES-ECBA6134", "SHA2-224A6134"]}, "policy_algorithms": {"_type": "Set", "elements": ["#A6134"]}, "is_br1_format": true, "br1_deviations": 0, "br1_tables": {"_type": "sec_certs.heuristics.br1.table_parsing.model.br1_tables.BR1Tables", "security_levels": {"section": 1, "subsection": 2, "found": true, "entries": [{"section": "1", "title": "General", "level": "1"}, {"section": "2", "title": "Cryptographic module specification", "level": "1"}, {"section": "3", "title": "Cryptographic module interfaces", "level": "1"}, {"section": "4", "title": "Roles, services, and authentication", "level": "1"}, {"section": "5", "title": "Software/Firmware security", "level": "1"}, {"section": "6", "title": "Operational environment", "level": "1"}, {"section": "7", "title": "Physical security", "level": "N/A"}, {"section": "8", "title": "Non-invasive security", "level": "N/A"}, {"section": "9", "title": "Sensitive security parameter management", "level": "1"}, {"section": "10", "title": "Self-tests", "level": "1"}, {"section": "11", "title": "Life-cycle assurance", "level": "1"}, {"section": "12", "title": "Mitigation of other attacks", "level": "N/A"}, {"section": "", "title": "Overall Level", "level": "1"}]}, "tested_module_id_hw": {"section": 2, "subsection": 2, "found": false, "entries": []}, "tested_module_id_sw_fw_hy": {"section": 2, "subsection": 2, "found": true, "entries": [{"packageFileName": "bcm.o", "swFwVersion": "20240805", "features": "", "integrityTest": "Yes"}]}, "tested_module_id_hw_hy": {"section": 2, "subsection": 2, "found": false, "entries": []}, "tested_op_env_sw_fw_hy": {"section": 2, "subsection": 2, "found": true, "entries": [{"operatingSystem": "Android 15", "hardwarePlatform": "Google Pixel 8", "processors": "Google Tensor G3 64-bit", "paa_pai": "Yes", "hypervisorHostOs": "", "version": "20240805"}, {"operatingSystem": "Android 15", "hardwarePlatform": "Google Pixel 8", "processors": "Google Tensor G3 64-bit", "paa_pai": "No", "hypervisorHostOs": "", "version": "20240805"}]}, "vendor_affirmed_op_env_sw_fw_hy": {"section": 2, "subsection": 2, "found": false, "entries": []}, "modes_of_operation": {"section": 2, "subsection": 4, "found": true, "entries": [{"name": "Approved", "description": "When all self-tests pass and only Approved algorithms are invoked", "type": "Approved", "statusIndicator": "Per service indication"}, {"name": "Non- Approved", "description": "When a non-Approved algorithm is invoked", "type": "Non- Approved", "statusIndicator": "Per service indication"}]}, "approved_algorithms": {"section": 2, "subsection": 5, "found": true, "entries": [{"algorithm": "AES-CBC", "cavpCertName": "A6134", "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256", "reference": "SP 800-38A"}, {"algorithm": "AES-CCM", "cavpCertName": "A6134", "properties": "Key Length - 128 Tag Length - 32, 64", "reference": "SP 800-38C"}, {"algorithm": "", "cavpCertName": "", "properties": "IV Length - IV Length: 104 Payload Length - Payload Length: 0-256 Increment 8 AAD Length - AAD Length: 0-524288 Increment 8", "reference": ""}, {"algorithm": "AES-CTR", "cavpCertName": "A6134", "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256 Payload Length - Payload Length: 8-128 Increment 8 Supports Counter larger than maximum value - Yes Incremental Counter - Yes Counter Tests Performed - Yes", "reference": "SP 800-38A"}, {"algorithm": "AES-ECB", "cavpCertName": "A6134", "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256", "reference": "SP 800-38A"}, {"algorithm": "AES-GCM", "cavpCertName": "A6134", "properties": "Direction - Decrypt, Encrypt IV Generation - External, Internal IV Generation Mode - 8.2.2 Key Length - 128, 192, 256 Tag Length - 104, 112, 120, 128, 32, 64, 96 IV Length - IV Length: 96 Payload Length - Payload Length: 0-65536 Increment 8 AAD Length - AAD Length: 0-65536 Increment 8", "reference": "SP 800-38D"}, {"algorithm": "AES-GMAC", "cavpCertName": "A6134", "properties": "Direction - Decrypt, Encrypt IV Generation - External Key Length - 128, 192, 256 Tag Length - 104, 112, 120, 128, 32, 64, 96 IV Length - IV Length: 96 AAD Length - AAD Length: 0-65536 Increment 8", "reference": "SP 800-38D"}, {"algorithm": "AES-KW", "cavpCertName": "A6134", "properties": "Direction - Decrypt, Encrypt Cipher - Cipher Key Length - 128, 192, 256 Payload Length - Payload Length: 128-4096 Increment 64", "reference": "SP 800-38F"}, {"algorithm": "AES-KWP", "cavpCertName": "A6134", "properties": "Direction - Decrypt, Encrypt Cipher - Cipher Key Length - 128, 192, 256 Payload Length - Payload Length: 8-4096 Increment 8", "reference": "SP 800-38F"}, {"algorithm": "Counter DRBG", "cavpCertName": "A6134", "properties": "Prediction Resistance - No Supports Reseed - Yes Mode - AES-256 Derivation Function Enabled - No Additional Input - Additional Input: 0-384 Increment 16", "reference": "SP 800-90A Rev. 1"}, {"algorithm": "", "cavpCertName": "", "properties": "Entropy Input - Entropy Input: 384 Nonce - Nonce: 0 Personalization String Length - Personalization String Length: 0-384 Increment 16 Returned Bits - 2048", "reference": ""}, {"algorithm": "ECDSA KeyGen (FIPS186-5)", "cavpCertName": "A6134", "properties": "Curve - P-224, P-256, P-384, P-521 Secret Generation Mode - testing candidates", "reference": "FIPS 186-5"}, {"algorithm": "ECDSA KeyVer (FIPS186-5)", "cavpCertName": "A6134", "properties": "Curve - P-224, P-256, P-384, P-521", "reference": "FIPS 186-5"}, {"algorithm": "ECDSA SigGen (FIPS186-5)", "cavpCertName": "A6134", "properties": "Curve - P-224, P-256, P-384, P-521 Hash Algorithm - SHA2-224, SHA2-256, SHA2-384, SHA2-512, SHA2-512/256", "reference": "FIPS 186-5"}, {"algorithm": "ECDSA SigVer (FIPS186-5)", "cavpCertName": "A6134", "properties": "Curve - P-224, P-256, P-384, P-521 Hash Algorithm - SHA2-224, SHA2-256, SHA2-384, SHA2-512, SHA2-512/256", "reference": "FIPS 186-5"}, {"algorithm": "HMAC-SHA-1", "cavpCertName": "A6134", "properties": "MAC - MAC: 32-160 Increment 8 Key Length - Key Length: 8-524288 Increment 8", "reference": "FIPS 198-1"}, {"algorithm": "HMAC-SHA2-224", "cavpCertName": "A6134", "properties": "MAC - MAC: 32-224 Increment 8 Key Length - Key Length: 8-524288 Increment 8", "reference": "FIPS 198-1"}, {"algorithm": "HMAC-SHA2-256", "cavpCertName": "A6134", "properties": "MAC - MAC: 32-256 Increment 8 Key Length - Key Length: 8-524288 Increment 8", "reference": "FIPS 198-1"}, {"algorithm": "HMAC-SHA2-384", "cavpCertName": "A6134", "properties": "MAC - MAC: 32-384 Increment 8 Key Length - Key Length: 8-524288 Increment 8", "reference": "FIPS 198-1"}, {"algorithm": "HMAC-SHA2-512", "cavpCertName": "A6134", "properties": "MAC - MAC: 32-512 Increment 8 Key Length - Key Length: 8-524288 Increment 8", "reference": "FIPS 198-1"}, {"algorithm": "HMAC-SHA2- 512/256", "cavpCertName": "A6134", "properties": "MAC - MAC: 32-256 Increment 8 Key Length - Key Length: 8-524288 Increment 8", "reference": "FIPS 198-1"}, {"algorithm": "KAS-ECC-SSC Sp800-56Ar3", "cavpCertName": "A6134", "properties": "Domain Parameter Generation Methods - P- 224, P-256, P-384, P-521 Scheme - ephemeralUnified - KAS Role - initiator, responder staticUnified - KAS Role - initiator, responder", "reference": "SP 800-56A Rev. 3"}, {"algorithm": "KAS-FFC-SSC Sp800-56Ar3", "cavpCertName": "A6134", "properties": "Domain Parameter Generation Methods - FB, FC Scheme - dhEphem - KAS Role - initiator", "reference": "SP 800-56A Rev. 3"}, {"algorithm": "KDA HKDF Sp800-56Cr1", "cavpCertName": "A6134", "properties": "Fixed Info Pattern - uPartyInfo||vPartyInfo Fixed Info Encoding - concatenation", "reference": "SP 800-56C Rev. 2"}, {"algorithm": "", "cavpCertName": "", "properties": "Derived Key Length - 2048 Shared Secret Length - Shared Secret Length: 224-65336 Increment 8 HMAC Algorithm - SHA2-224, SHA2-256, SHA2-384, SHA2-512, SHA2-512/256", "reference": ""}, {"algorithm": "RSA KeyGen (FIPS186-5)", "cavpCertName": "A6134", "properties": "Key Generation Mode - probable Modulo - 2048, 3072, 4096 Primality Tests - 2powSecStr Fixed Public Exponent - 010001 Info Generated By Server - Yes Private Key Format - standard Public Exponent Mode - fixed", "reference": "FIPS 186-5"}, {"algorithm": "RSA SigGen (FIPS186-5)", "cavpCertName": "A6134", "properties": "Hash Pair - Hash Algorithm - SHA2-224 Modulo - 2048, 3072, 4096 Signature Type - pkcs1v1.5, pss Mask Function - mgf1", "reference": "FIPS 186-5"}, {"algorithm": "RSA SigVer (FIPS186-5)", "cavpCertName": "A6134", "properties": "Hash Pair - Hash Algorithm - SHA2-224 Modulo - 2048, 3072, 4096 Signature Type - pkcs1v1.5, pss Mask Function - mgf1 Fixed Public Exponent - 010001 Public Exponent Mode - fixed", "reference": "FIPS 186-5"}, {"algorithm": "SHA-1", "cavpCertName": "A6134", "properties": "Message Length - Message Length: 0-65528 Increment 8", "reference": "FIPS 180-4"}, {"algorithm": "SHA2-224", "cavpCertName": "A6134", "properties": "Message Length - Message Length: 0-65528 Increment 8", "reference": "FIPS 180-4"}, {"algorithm": "SHA2-256", "cavpCertName": "A6134", "properties": "Message Length - Message Length: 0-65528 Increment 8", "reference": "FIPS 180-4"}, {"algorithm": "SHA2-384", "cavpCertName": "A6134", "properties": "Message Length - Message Length: 0-65528 Increment 8", "reference": "FIPS 180-4"}, {"algorithm": "SHA2-512", "cavpCertName": "A6134", "properties": "Message Length - Message Length: 0-65528 Increment 8", "reference": "FIPS 180-4"}, {"algorithm": "SHA2-512/256", "cavpCertName": "A6134", "properties": "Message Length - Message Length: 0-65528 Increment 8", "reference": "FIPS 180-4"}, {"algorithm": "TLS v1.2 KDF RFC7627 (CVL)", "cavpCertName": "A6134", "properties": "Hash Algorithm - SHA2-256, SHA2-384, SHA2-512 Key Block Length - Key Block Length: 1024", "reference": "SP 800-135 Rev. 1"}, {"algorithm": "TLS v1.3 KDF (CVL)", "cavpCertName": "A6134", "properties": "HMAC Algorithm - SHA2-256, SHA2-384 KDF Running Modes - DHE, PSK, PSK-DHE", "reference": "SP 800-135 Rev. 1"}]}, "vendor_affirmed_algos": {"section": 2, "subsection": 5, "found": true, "entries": [{"name": "CKG", "algoPropList": "Key Type:Asymmetric", "implName": "BoringCrypto", "reference": "Section 4, example 1: U is directly output without XORing V"}]}, "non_approved_allowed_algos": {"section": 2, "subsection": 5, "found": false, "entries": []}, "non_approved_allowed_NSC": {"section": 2, "subsection": 5, "found": false, "entries": []}, "non_approved_not_allowed": {"section": 2, "subsection": 5, "found": true, "entries": [{"name": "MD5, MD4", "use": "Non-Approved Hashing"}, {"name": "POLYVAL", "use": "Non-Approved authenticated encryption"}, {"name": "DES, Triple-DES (non-compliant)", "use": "Non-Approved encryption/decryption"}, {"name": "AES (non-compliant)", "use": "Non-Approved encryption/decryption"}, {"name": "DH (non-compliant)", "use": "Non-Approved key agreement"}, {"name": "RSA PKCS #1 v1.5 key wrapping (non-compliant)", "use": "Non-Approved key wrapping"}, {"name": "TLS 1.0/1.1 KDF (non-compliant)", "use": "Non-Approved TLS key derivation"}]}, "ports_interfaces": {"section": 3, "subsection": 1, "found": true, "entries": [{"physicalPort": "n/a", "logicalInterface": "Data Input", "data": "API input parameters"}, {"physicalPort": "n/a", "logicalInterface": "Data Output", "data": "API output parameters and return values"}, {"physicalPort": "n/a", "logicalInterface": "Control Input", "data": "API input parameters"}, {"physicalPort": "n/a", "logicalInterface": "Status Output", "data": "API return values"}]}, "authentication_methods": {"section": 4, "subsection": 1, "found": false, "entries": []}, "roles": {"section": 4, "subsection": 2, "found": true, "entries": [{"name": "Crypto Officer (CO)", "type": "Role", "operatorType": "Crypto Officer", "authMethodList": "None"}]}, "approved_services": {"section": 4, "subsection": 3, "found": true, "entries": [{"name": "Module Initializati on", "description": "Module Initializatio n", "indicator": "N/A", "inputs": "N/A", "outputs": "Return Code", "secFunImpl": "None", "rolesSspAccess": "Crypto Officer (CO)"}, {"name": "Symmetr ic Encryptio n", "description": "Symmetric encryption of calling application data", "indicator": "fips_service_indi cator set to 1", "inputs": "Plaintext, AAD, IV, encryptio n key", "outputs": "Return code, ciphertext, tag", "secFunImpl": "Authenticat ed Encryption Encryption", "rolesSspAccess": "Crypto Officer (CO) - AES Key: W,E - AES- GCM Key: W,E"}, {"name": "Symmetr ic Decrypti on", "description": "Symmetric decryption of calling application data", "indicator": "fips_service_indi cator set to 1", "inputs": "Cipherte xt, AAD, IV, tag, decryptio n key", "outputs": "Return code, plaintext", "secFunImpl": "Authenticat ed Decryption Decryption", "rolesSspAccess": "Crypto Officer (CO) - AES Key: W,E - AES-"}, {"name": "", "description": "", "indicator": "", "inputs": "", "outputs": "", "secFunImpl": "", "rolesSspAccess": "GCM Key: W,E"}, {"name": "Keyed Hashing", "description": "Symmetric message authenticat ion of calling application data", "indicator": "fips_service_indi cator set to 1", "inputs": "Message , key", "outputs": "Return code, Message Authenticat ion Code", "secFunImpl": "Message Authenticat ion", "rolesSspAccess": "Crypto Officer (CO) - HMAC Key: W,E - AES- GCM Key: W,E"}, {"name": "Hashing", "description": "Hashing of calling application data", "indicator": "fips_service_indi cator set to 1", "inputs": "Message", "outputs": "Return code, hash", "secFunImpl": "Hashing", "rolesSspAccess": "Crypto Officer (CO)"}, {"name": "Random Bit Generati on", "description": "Generation of random bits for calling application", "indicator": "fips_service_indi cator set to 1", "inputs": "API call paramete rs", "outputs": "Return code, random bits", "secFunImpl": "Random Bit Generation", "rolesSspAccess": "Crypto Officer (CO) - CTR_DR BG Entropy Input: W,E - CTR_DR BG Seed: G,E - CTR_DR BG V: G,E - CTR_DR BG Key: G,E"}, {"name": "Signatur e Generati on", "description": "Digital signature of calling application data", "indicator": "fips_service_indi cator set to 1", "inputs": "Message , signing key", "outputs": "Return code, signature", "secFunImpl": "Signature Generation", "rolesSspAccess": "Crypto Officer (CO) - ECDSA Signing Key: W,E - RSA Signature Generatio n Key: W,E - CTR_DR"}, {"name": "", "description": "", "indicator": "", "inputs": "", "outputs": "", "secFunImpl": "", "rolesSspAccess": "BG V: E - CTR_DR BG Key: E"}, {"name": "Signatur e Verificati on", "description": "Digital signature verification of calling application data", "indicator": "fips_service_indi cator set to 1", "inputs": "Signatur e, verificatio n key", "outputs": "Return code", "secFunImpl": "Signature Verification", "rolesSspAccess": "Crypto Officer (CO) - ECDSA Verificatio n Key: W,E - RSA Signature Verificatio n Key: W,E"}, {"name": "Key Wrap Service", "description": "Symmetric key wrapping of calling application key", "indicator": "fips_service_indi cator set to 1", "inputs": "API call paramete rs, unwrapp ed key, wrapping key", "outputs": "Return code, wrapped key", "secFunImpl": "AES- KeyWrap", "rolesSspAccess": "Crypto Officer (CO) - AES Wrapping Key: W,E - Unwrapp ed Key: W - Wrapped Key: G,R"}, {"name": "Key Unwrap Service", "description": "Symmetric key unwrappin g of calling application key", "indicator": "fips_service_indi cator set to 1", "inputs": "API call paramete rs, wrapped key", "outputs": "Return code, unwrapped key", "secFunImpl": "AES- KeyWrap", "rolesSspAccess": "Crypto Officer (CO) - AES Wrapping Key: W,E - Wrapped Key: W - Unwrapp ed Key: G,R"}, {"name": "Key Agreeme nt Service", "description": "API call parameter s", "indicator": "fips_service_indi cator set to 1", "inputs": "Return code, shared secret", "outputs": "Return code, shared secret", "secFunImpl": "KAS-ECC- SSC KAS-FFC- SSC", "rolesSspAccess": "Crypto Officer (CO) - EC DH Private"}, {"name": "", "description": "", "indicator": "", "inputs": "", "outputs": "", "secFunImpl": "", "rolesSspAccess": "Key: G,E - EC DH Public Key: G,R - Other Party EC DH Public Key: W,E - DH Private Key: G,E - Other Party DH Public Key: W,E - KAS Shared Secret: G,R - DH Public Key: W,E Crypto"}, {"name": "Key Derivatio n KDA", "description": "Hash based key derivation for calling application", "indicator": "fips_service_indi cator set to 1", "inputs": "API call paramete rs, shared secret", "outputs": "Return code, derived keying material", "secFunImpl": "Key Derivation Hash Based", "rolesSspAccess": "Officer (CO) - KDA Shared Secret: W,E - Derived Keying Material: G,R"}, {"name": "TLS Key Derivatio n", "description": "TLS Key derivation for calling application", "indicator": "fips_service_indi cator set to 1", "inputs": "API call paramete rs, TLS KDF input", "outputs": "Return code, TLS Keying Material", "secFunImpl": "Key Derivation TLS 1.2 Key Derivation TLS 1.3", "rolesSspAccess": "Crypto Officer (CO) - TLS KDF input: W,E - TLS Keying Material: G,R"}, {"name": "Key Generati on", "description": "Asymmetri c key generation", "indicator": "fips_service_indi cator set to 1", "inputs": "API call paramete rs", "outputs": "Return code, key pair", "secFunImpl": "Signature Key Generation", "rolesSspAccess": "Crypto Officer (CO)"}, {"name": "", "description": "", "indicator": "", "inputs": "", "outputs": "", "secFunImpl": "", "rolesSspAccess": "- ECDSA Signing Key: G,R - ECDSA Verificatio n Key: G,R - RSA Signature Generatio n Key: G,R - RSA Signature Verificatio n Key: G,R - CTR_DR BG V: E - CTR_DR BG Key: E"}, {"name": "Key Verificati on", "description": "Asymmetri c key pair validation", "indicator": "fips_service_indi cator set to 1", "inputs": "API call paramete rs, key pair", "outputs": "Return code", "secFunImpl": "Signature Key Validation", "rolesSspAccess": "Crypto Officer (CO) - ECDSA Signing Key: W,E - ECDSA Verificatio n Key: W,E"}, {"name": "On- Demand Self-Test", "description": "On- Demand Self-Test", "indicator": "fips_service_indi cator set to 1", "inputs": "N/A", "outputs": "Return Code", "secFunImpl": "Authenticat ed Decryption Authenticat ed Encryption Decryption Encryption Hashing KAS-ECC- SSC KAS-FFC- SSC Key Derivation", "rolesSspAccess": "Crypto Officer (CO)"}, {"name": "", "description": "", "indicator": "", "inputs": "", "outputs": "", "secFunImpl": "Hash Based Key Derivation TLS 1.2 Key Derivation TLS 1.3 AES- KeyWrap Message Authenticat ion Random Bit Generation Signature Generation Signature Verification", "rolesSspAccess": ""}, {"name": "Zeroisati on", "description": "Zeroisation", "indicator": "fips_service_indi cator set to 1", "inputs": "N/A", "outputs": "N/A", "secFunImpl": "None", "rolesSspAccess": "Crypto Officer (CO) - AES Key: Z - AES- GCM Key: Z - AES Wrapping Key: Z - Wrapped Key: Z - Unwrapp ed Key: Z - ECDSA Signing Key: Z - ECDSA Verificatio n Key: Z - EC DH Private Key: Z - EC DH Public Key: Z"}, {"name": "", "description": "", "indicator": "", "inputs": "", "outputs": "", "secFunImpl": "", "rolesSspAccess": "- Other Party EC DH Public Key: Z - DH Private Key: Z - DH Public Key: Z - Other Party DH Public Key: Z - KAS Shared Secret: Z - KDA Shared Secret: Z - HMAC Key: Z - RSA Signature Generatio n Key: Z - RSA Signature Verificatio n Key: Z - TLS KDF input: Z - TLS Keying Material: Z - CTR_DR BG Entropy Input: Z - CTR_DR BG Seed: Z - CTR_DR"}, {"name": "", "description": "", "indicator": "", "inputs": "", "outputs": "", "secFunImpl": "", "rolesSspAccess": "BG V: Z - CTR_DR BG Key: Z - Derived Keying Material: Z"}, {"name": "Show Status", "description": "Show Status", "indicator": "fips_service_indi cator set to 1", "inputs": "API call paramete rs", "outputs": "Return code, status", "secFunImpl": "None", "rolesSspAccess": "Crypto Officer (CO)"}, {"name": "Show Name", "description": "Show module name", "indicator": "fips_service_indi cator set to 1", "inputs": "API call paramete rs", "outputs": "Return code, string of module name", "secFunImpl": "None", "rolesSspAccess": "Crypto Officer (CO)"}, {"name": "Show Version", "description": "Show module version", "indicator": "fips_service_indi cator set to 1", "inputs": "API call paramete rs", "outputs": "Return code, string of module version", "secFunImpl": "None", "rolesSspAccess": "Crypto Officer (CO)"}]}, "non_approved_services": {"section": 4, "subsection": 4, "found": true, "entries": [{"name": "TLS 1.0/1.1 KDF", "description": "Perform hashing operations when used with the TLS protocol version 1.0 and 1.1", "alg_accessed": "TLS 1.0/1.1 KDF (non-compliant)", "role": "Crypto Officer (CO)"}, {"name": "Hashing", "description": "Perform hashing operations", "alg_accessed": "MD5, MD4", "role": "Crypto Officer (CO)"}, {"name": "Hashing for GCM-SIV", "description": "Used as part of AES-GCM- SIV", "alg_accessed": "POLYVAL", "role": "Crypto Officer (CO)"}, {"name": "Symmetric encryption/decryption", "description": "Perform symmetric encryption and/or decryption operations", "alg_accessed": "DES, Triple-DES (non-compliant) AES (non-compliant)", "role": "Crypto Officer (CO)"}, {"name": "Key Transport", "description": "Perform RSA PKCS #1 v1.5 key transport", "alg_accessed": "RSA PKCS #1 v1.5 key wrapping (non- compliant)", "role": "Crypto Officer (CO)"}, {"name": "Key Agreement", "description": "Perform non-compliant DH key agreement", "alg_accessed": "DH (non-compliant)", "role": "Crypto Officer (CO)"}]}, "mechanisms_actions": {"section": 7, "subsection": 1, "found": false, "entries": []}, "storage_areas": {"section": 9, "subsection": 1, "found": true, "entries": [{"name": "RAM", "description": "Ephemeral storage in RAM", "persistance": "Dynamic"}]}, "ssp_io_methods": {"section": 9, "subsection": 2, "found": true, "entries": [{"name": "PT Input", "source": "Calling Application", "dest": "RAM", "format": "Plaintext", "distribution": "N/A", "entry": "Electronic", "sfiAlgo": ""}, {"name": "PT Output", "source": "RAM", "dest": "Calling Application", "format": "Plaintext", "distribution": "N/A", "entry": "Electronic", "sfiAlgo": ""}]}, "ssp_zeroization_methods": {"section": 9, "subsection": 3, "found": true, "entries": [{"method": "Power Cycle Host", "description": "Turn off or power cycle the host computer to clear all RAM contents", "rationale": "All module SSPs are held ephemerally in RAM, so turning off or power cycling the computer will cause them to be irretrievably lost.", "operatorId": "Procedural - turn off or power cycle host"}]}, "self_tests": {"section": 10, "subsection": 1, "found": true, "entries": [{"algorithmOrTest": "HMAC-SHA2- 256 (A6134)", "testProps": "Hardcoded 512 bit key", "testMethod": "Integrity", "type": "SW/FW Integrity", "indicator": "None on success. \"FIPS integrity test failed.\" on stderr on failure.", "details": "Single HMAC over entire module"}]}, "cond_self_tests": {"section": 10, "subsection": 2, "found": true, "entries": [{"algorithmOrTest": "AES- CBC Encrypt KAT", "testProps": "128", "testMethod": "KAT", "type": "CAS T", "indicator": "None on success. \"AES- CBC-encrypt KAT failed\" on stderr on failure.", "details": "Encrypt", "condition": "module power-up"}, {"algorithmOrTest": "AES- CBC Decrypt KAT", "testProps": "128", "testMethod": "KAT", "type": "CAS T", "indicator": "None on success. \"AES- CBC-decrypt KAT failed\" on stderr on failure.", "details": "Decrypt", "condition": "module power-up"}, {"algorithmOrTest": "AES- GCM Encrypt KAT", "testProps": "128", "testMethod": "KAT", "type": "CAS T", "indicator": "None on success. \"AES- GCM-encrypt KAT failed\" on stderr on failure.", "details": "Encrypt", "condition": "module power-up"}, {"algorithmOrTest": "AES- GCM", "testProps": "128", "testMethod": "KAT", "type": "CAS T", "indicator": "None on success. \"AES- GCM-decrypt KAT failed\" on stderr on failure.", "details": "Decrypt", "condition": "module power-up"}, {"algorithmOrTest": "Decrypt KAT", "testProps": "", "testMethod": "", "type": "", "indicator": "", "details": "", "condition": ""}, {"algorithmOrTest": "Counter DRBG KAT", "testProps": "initialize, reseed, generate tests, per SP 800- 90Arev1 Section 11.3", "testMethod": "KAT", "type": "CAS T", "indicator": "None on success. \"CTR- DRBG failed\" on stderr on failure.", "details": "Instantiat e, Reseed, Generate", "condition": "module power-up"}, {"algorithmOrTest": "ECDSA SigGen KAT", "testProps": "P-256", "testMethod": "KAT", "type": "CAS T", "indicator": "None on success. \"ECDSA-sign KAT failed\" on stderr on failure.", "details": "Sign", "condition": "On first use"}, {"algorithmOrTest": "ECDSA SigVer KAT", "testProps": "P-256", "testMethod": "KAT", "type": "CAS T", "indicator": "None on success. \"ECDSA-verify KAT failed\" on stderr on failure.", "details": "Verify", "condition": "On first use"}, {"algorithmOrTest": "HMAC- SHA2- 256 KAT", "testProps": "128", "testMethod": "KAT", "type": "CAS T", "indicator": "None on success. \"HMAC-SHA-256 KAT failed\" on stderr on failure.", "details": "MAC", "condition": "module power-up"}, {"algorithmOrTest": "KAS- ECC- SSC Sp800- 56Ar3 KAT", "testProps": "P-256", "testMethod": "KAT", "type": "CAS T", "indicator": "None on success. \"Z- computation KAT failed.\" on stderr on failure.", "details": "SSC", "condition": "On first use"}, {"algorithmOrTest": "KAS- FFC- SSC Sp800- 56Ar3 KAT", "testProps": "2048", "testMethod": "KAT", "type": "CAS T", "indicator": "None on success. \"FFDH failed\" on stderr on failure.", "details": "SSC", "condition": "On first use"}, {"algorithmOrTest": "KDA HKDF Sp800- 56Cr1 KAT", "testProps": "HMAC SHA-256", "testMethod": "KAT", "type": "CAS T", "indicator": "None on success. \"HKDF failed\" on stderr on failure.", "details": "KDF", "condition": "module power-up"}, {"algorithmOrTest": "RSA SigGen KAT", "testProps": "2048", "testMethod": "KAT", "type": "CAS T", "indicator": "None on success. \"RSA- sign KAT failed\" on stderr on failure.", "details": "Sign", "condition": "On first use"}, {"algorithmOrTest": "RSA SigVer KAT", "testProps": "2048", "testMethod": "KAT", "type": "CAS T", "indicator": "None on success. \"RSA- verify KAT failed\" on stderr on failure.", "details": "Verify", "condition": "On first use"}, {"algorithmOrTest": "SHA-1 KAT", "testProps": "n/a", "testMethod": "KAT", "type": "CAS T", "indicator": "None on success. \"SHA- 1 KAT failed\" on stderr on failure.", "details": "Hash", "condition": "module power-up"}, {"algorithmOrTest": "SHA2- 256 KAT", "testProps": "n/a", "testMethod": "KAT", "type": "CAS T", "indicator": "None on success. \"SHA- 256 KAT failed\" on stderr on failure.", "details": "Hash", "condition": "module power-up"}, {"algorithmOrTest": "SHA2- 512 KAT", "testProps": "n/a", "testMethod": "KAT", "type": "CAS T", "indicator": "None on success. \"SHA- 512 KAT failed\" on stderr on failure.", "details": "Hash", "condition": "module power-up"}, {"algorithmOrTest": "TLS v1.2 KDF RFC762 7 KAT", "testProps": "SHA-256", "testMethod": "KAT", "type": "CAS T", "indicator": "None on success. \"TLS12-KDF KAT failed\" on stderr on failure.", "details": "KDF", "condition": "module power-up"}, {"algorithmOrTest": "TLS v1.3 KDF KAT", "testProps": "SHA-256", "testMethod": "KAT", "type": "CAS T", "indicator": "None on success. \"TLS13-KDF KAT failed\" on stderr on failure.", "details": "KDF", "condition": "module power-up"}, {"algorithmOrTest": "ECDSA KeyGen PCT", "testProps": "Generate d key- pair", "testMethod": "Sign/Veri fy PCT", "type": "PCT", "indicator": "None on success. \"EC_KEY_generate_key_ fips failed\" on stderr on failure.", "details": "Sign/Veri fy PCT", "condition": "Keypair generated"}, {"algorithmOrTest": "RSA KeyGen PCT", "testProps": "Generate d key- pair", "testMethod": "Sign/Veri fy PCT", "type": "PCT", "indicator": "None on success. \"RSA_generate_key_fips failed\" on stderr on failure.", "details": "Sign/Veri fy PCT", "condition": "Keypair generated"}, {"algorithmOrTest": "KAS- ECC- SSC Sp800- 56Ar3 PCT", "testProps": "Generate d key- pair", "testMethod": "SP 800- 56Arev3 validity tests", "type": "PCT", "indicator": "None on success. Module aborted on failure.", "details": "SP 800- 56Arev3 validity tests", "condition": "Keypair generated"}, {"algorithmOrTest": "KAS- FFC- SSC Sp800- 56Ar3 PCT", "testProps": "Generate d key- pair", "testMethod": "SP 800- 56Arev3 validity tests", "type": "PCT", "indicator": "None on success. Module aborted on failure.", "details": "SP 800- 56Arev3 validity tests", "condition": "Keypair generated"}]}, "error_states": {"section": 10, "subsection": 4, "found": true, "entries": [{"name": "Error state", "description": "The module's error state", "conditions": "Failure of any FIPS self-test", "recoveryMethod": "Restart the module", "indicator": "SIGABRT signal as module aborts. Prior to that most self-tests output an informational message on stderr (see Pre-Operational Self-Tests and Conditional Self-Tests tables for each test's failure message)."}]}}}, "heuristics": {"_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics", "algorithms": {"_type": "Set", "elements": ["SHA2-256A6134", "ECDSA SigVer (FIPS186-5)A6134", "SHA-1A6134", "ECDSA SigGen (FIPS186-5)A6134", "AES-GCMA6134", "HMAC-SHA-1A6134", "HMAC-SHA2-512/256A6134", "AES-CTRA6134", "SHA2-512A6134", "KAS-ECC-SSC Sp800-56Ar3A6134", "RSA SigVer (FIPS186-5)A6134", "RSA SigGen (FIPS186-5)A6134", "KAS-FFC-SSC Sp800-56Ar3A6134", "Counter DRBGA6134", "TLS v1.3 KDFA6134", "ECDSA KeyGen (FIPS186-5)A6134", "AES-CCMA6134", "AES-CBCA6134", "AES-KWPA6134", "HMAC-SHA2-512A6134", "ECDSA KeyVer (FIPS186-5)A6134", "SHA2-512/256A6134", "AES-KWA6134", "#A6134", "HMAC-SHA2-256A6134", "HMAC-SHA2-384A6134", "TLS v1.2 KDF RFC7627A6134", "AES-GMACA6134", "KDA HKDF Sp800-56Cr1A6134", "SHA2-384A6134", "HMAC-SHA2-224A6134", "RSA KeyGen (FIPS186-5)A6134", "AES-ECBA6134", "SHA2-224A6134"]}, "extracted_versions": {"_type": "Set", "elements": ["15"]}, "cpe_matches": {"_type": "Set", "elements": ["cpe:2.3:o:samsung:android:15.0:smr-mar-2026-r1:*:*:*:*:*:*", "cpe:2.3:o:samsung:android:15.0:smr-jun-2025-r1:*:*:*:*:*:*", "cpe:2.3:o:samsung:android:15.0:smr-aug-2026-r1:*:*:*:*:*:*", "cpe:2.3:o:samsung:android:15.0:-:*:*:*:*:*:*", "cpe:2.3:o:samsung:android:15.0:smr-sep-2025-r1:*:*:*:*:*:*", "cpe:2.3:o:samsung:android:15.0:smr-jan-2025-r1:*:*:*:*:*:*", "cpe:2.3:o:samsung:android:15.0:smr-feb-2025-r1:*:*:*:*:*:*", "cpe:2.3:o:samsung:android:15.0:smr-dec-2025-r1:*:*:*:*:*:*", "cpe:2.3:o:samsung:android:15.0:smr-nov-2025-r1:*:*:*:*:*:*", "cpe:2.3:o:samsung:android:15.0:smr-jul-2026-r1:*:*:*:*:*:*", "cpe:2.3:o:samsung:android:15.0:smr-apr-2026-r1:*:*:*:*:*:*", "cpe:2.3:o:samsung:android:15.0:smr-jun-2026-r1:*:*:*:*:*:*", "cpe:2.3:o:samsung:android:15.0:smr-apr-2025-r1:*:*:*:*:*:*", "cpe:2.3:o:samsung:android:15.0:smr-may-2025-r1:*:*:*:*:*:*", "cpe:2.3:o:samsung:android:15.0:smr-jan-2026-r1:*:*:*:*:*:*", "cpe:2.3:o:samsung:android:15.0:smr-jul-2025-r1:*:*:*:*:*:*", "cpe:2.3:o:samsung:android:15.0:smr-oct-2025-r1:*:*:*:*:*:*", "cpe:2.3:o:samsung:android:15.0:smr-feb-2026-r1:*:*:*:*:*:*", "cpe:2.3:o:samsung:android:15.0:smr-may-2026-r1:*:*:*:*:*:*", "cpe:2.3:o:samsung:android:15.0:smr-mar-2025-r1:*:*:*:*:*:*", "cpe:2.3:o:samsung:android:15.0:smr-aug-2025-r1:*:*:*:*:*:*"]}, "verified_cpe_matches": null, "related_cves": {"_type": "Set", "elements": ["CVE-2025-20999", "CVE-2026-21070", "CVE-2026-21015", "CVE-2025-20948", "CVE-2025-20954", "CVE-2026-21067", "CVE-2026-20977", "CVE-2025-21026", "CVE-2025-58480", "CVE-2025-21049", "CVE-2026-21031", "CVE-2025-58478", "CVE-2025-21053", "CVE-2026-21112", "CVE-2026-21103", "CVE-2025-20944", "CVE-2025-21003", "CVE-2026-20983", "CVE-2025-20987", "CVE-2025-20943", "CVE-2025-20937", "CVE-2026-20971", "CVE-2026-21025", "CVE-2026-21064", "CVE-2025-21044", "CVE-2025-21027", "CVE-2026-21087", "CVE-2026-21023", "CVE-2025-20942", "CVE-2026-21091", "CVE-2026-21090", "CVE-2026-21068", "CVE-2026-20981", "CVE-2026-20968", "CVE-2025-20981", "CVE-2026-21093", "CVE-2025-21028", "CVE-2025-20959", "CVE-2025-21054", "CVE-2026-20972", "CVE-2025-21043", "CVE-2026-21027", "CVE-2026-21100", "CVE-2026-21066", "CVE-2025-21029", "CVE-2026-20973", "CVE-2026-20990", "CVE-2026-21009", "CVE-2025-20958", "CVE-2025-20960", "CVE-2025-21051", "CVE-2025-21042", "CVE-2026-21085", "CVE-2026-21007", "CVE-2025-20963", "CVE-2026-21094", "CVE-2026-21071", "CVE-2026-21016", "CVE-2026-21101", "CVE-2026-21060", "CVE-2025-21001", "CVE-2025-58477", "CVE-2025-20988", "CVE-2026-21010", "CVE-2025-20961", "CVE-2025-20955", "CVE-2026-20970", "CVE-2026-21022", "CVE-2026-21102", "CVE-2025-58475", "CVE-2025-20983", "CVE-2025-20908", "CVE-2026-20978", "CVE-2025-20985", "CVE-2025-21025", "CVE-2025-58479", "CVE-2025-21071", "CVE-2026-21011", "CVE-2025-58476", "CVE-2025-20991", "CVE-2025-20962", "CVE-2026-21099", "CVE-2025-21041", "CVE-2026-21008", "CVE-2025-21031", "CVE-2026-20974", "CVE-2025-20992", "CVE-2026-21065", "CVE-2026-20991", "CVE-2026-21061", "CVE-2025-21032", "CVE-2026-21003", "CVE-2025-21073", "CVE-2026-21063", "CVE-2026-21097", "CVE-2025-21046", "CVE-2026-21095", "CVE-2026-20992", "CVE-2025-20941", "CVE-2026-21058", "CVE-2026-21104", "CVE-2025-21034", "CVE-2025-20936", "CVE-2025-20982", "CVE-2025-20952", "CVE-2026-21088", "CVE-2025-20993", "CVE-2026-21020", "CVE-2025-21050", "CVE-2026-21092", "CVE-2025-20989", "CVE-2026-21069", "CVE-2025-21080", "CVE-2025-20953", "CVE-2025-21015", "CVE-2026-21096", "CVE-2026-21030", "CVE-2026-21017", "CVE-2026-20980", "CVE-2025-21048", "CVE-2026-21006", "CVE-2026-20979", "CVE-2026-20982", "CVE-2025-21052", "CVE-2026-21089", "CVE-2025-20964", "CVE-2026-21062", "CVE-2025-21072", "CVE-2025-21002", "CVE-2025-20947", "CVE-2025-21033", "CVE-2025-20957", "CVE-2026-21072", "CVE-2025-20990", "CVE-2025-21000", "CVE-2025-21010", "CVE-2026-21018", "CVE-2025-21075", "CVE-2026-21073", "CVE-2025-21055", "CVE-2026-20969", "CVE-2026-21012", "CVE-2026-21029", "CVE-2025-21014", "CVE-2025-20903", "CVE-2025-21074", "CVE-2025-21047"]}, "policy_prunned_references": {"_type": "Set", "elements": []}, "module_prunned_references": {"_type": "Set", "elements": []}, "policy_processed_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "module_processed_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "direct_transitive_cves": null, "indirect_transitive_cves": null}, "state": {"_type": "sec_certs.sample.fips.InternalState", "module": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": null, "txt_hash": null, "json_hash": null}, "policy": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": "854525b5574c47d9ec78d570756a878eb689d33d52abba75e1752aca7939183e", "txt_hash": "74933100f1b9576122ea79c7868245b82081cdef4b44d9cc6fc0d49d8c412c3a", "json_hash": "6e3c3a3323b1793df9c6528ef8c077995efed4b718d86ad798c1e8f6b0063dd5"}}}