Micron® MTC21-P4 Controller Sub Chip Security Subsystem

Certificate details

Certificate ID #4994
Status active
Validation dates 31.03.2025
Sunset date 30-03-2030
Standard FIPS 140-3
Security level 2
Type Hardware
Embodiment Single Chip
Caveat None
Exceptions
  • Operational environment: N/A
  • Non-invasive security: N/A
  • Mitigation of other attacks: N/A
Description The Micron MTC21-P4 Controller Sub Chip Security Subsystem provides cryptographic functionality to SSD controllers.
Version (Hardware) TC v2.1
Version (Firmware) Runtime SCSS v2.2 [a], v2.3 [b], v2.4 [c], v2.5 [d]; Bootloader v1.0 [a], v1.1 [b, c], v1.0a [d]; Function ROM v3.0; Boot ROM v1.0
Tested configurations
  • Micron® MTC21-P4 SSD Controller
Vendor Micron Technology, Inc. http://www.micron.com
Lab UL Verification Services, Inc.
Algorithms
  • AES-CTRC1278
  • AES-ECBC1278
  • AES-KWA2828
  • AES-XTS Testing Revision 2.0A2835
  • Conditioning Component Block Cipher Derivation Function SP800-90BA2272
  • Counter DRBGC1278
  • ECDSA KeyGen (FIPS186-4)A4269
  • ECDSA KeyVer (FIPS186-4)A4269
  • ECDSA SigGen (FIPS186-4)A4269
  • ECDSA SigVer (FIPS186-4)A4269
  • HMAC-SHA2-384A2830
  • HMAC-SHA2-512/256A2830
  • HMAC-SHA2-512A2830
  • KDF SP800-108A2832
  • KTS-IFCA2829
  • PBKDFA2826
  • RSA SigVer (FIPS186-4)A2831
  • SHA2-384A2834
  • SHA2-512/256A2834
  • SHA2-512A2834
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Extracted keywords

Symmetric Algorithms
AES, AES-, AES-256, AES-128, E2, HMAC
Asymmetric Algorithms
RSA 3072, ECDSA
Hash functions
SHA256, SHA-384, SHA2, PBKDF, PBKDF2
Randomness
TRNG, DRBG
Elliptic Curves
Curve P-384, P-384
Block cipher modes
ECB, XTS

Security level
Level 0, Level 2, Level 3

Automated analysis

Automated inference - use with caution

All attributes shown in this section (e.g., links between certificates, products, vendors, and known CVEs) are generated by automated heuristics and have not been reviewed by humans. These methods can produce false positives or false negatives and should not be treated as definitive without independent verification. This applies equally to the Cross-references section below. If you want to know more about how this data is computed and how reliable it is, see our documentation on automated analysis. If you believe any information here is inaccurate or harmful, please submit feedback.

No automatically derived data are available in this section.

Cross-references

No references are available for this certificate.

Processing updates

Feed
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 4994,
  "dgst": "35b6af913d688028",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "#A2829",
        "HMAC-SHA2-512A2830",
        "HMAC-SHA2-384A2830",
        "AES-KWA2828",
        "#A2830",
        "AES-CTRC1278",
        "#A4269",
        "Counter DRBGC1278",
        "#A2827",
        "RSA SigVer (FIPS186-4)A2831",
        "KTS-IFCA2829",
        "ECDSA SigGen (FIPS186-4)A4269",
        "#A2828",
        "SHA2-512/256A2834",
        "#A2834",
        "AES-XTS Testing Revision 2.0A2835",
        "#C1278",
        "ECDSA KeyGen (FIPS186-4)A4269",
        "AES-ECBC1278",
        "KDF SP800-108A2832",
        "Conditioning Component Block Cipher Derivation Function SP800-90BA2272",
        "#A2832",
        "#A2831",
        "HMAC-SHA2-512/256A2830",
        "#A2833",
        "SHA2-384A2834",
        "ECDSA KeyVer (FIPS186-4)A4269",
        "#A2826",
        "#A2272",
        "ECDSA SigVer (FIPS186-4)A4269",
        "PBKDFA2826",
        "SHA2-512A2834",
        "#A2835"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "1.0",
        "2.1",
        "2.5",
        "2.3",
        "1.1",
        "2.2",
        "2.4",
        "3.0"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECDSA": {
            "ECDSA": 11
          }
        },
        "RSA": {
          "RSA 3072": 2
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "ECB": {
          "ECB": 3
        },
        "XTS": {
          "XTS": 5
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {
        "NIST": {
          "Curve P-384": 4,
          "P-384": 6
        }
      },
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "#2": 1,
          "#2826": 1
        }
      },
      "fips_certlike": {
        "Certlike": {
          "# A2828": 1,
          "AES 128": 2,
          "AES 256": 1,
          "AES [197": 7,
          "AES- 128": 1,
          "AES-128": 1,
          "AES-256": 4,
          "HMAC SHA256": 2,
          "RSA 3072": 2,
          "SHA-384": 2,
          "SHA2": 1,
          "SHA2- 384": 1,
          "SHA2-256": 1,
          "SHA2-384": 12,
          "SHA2-512": 2,
          "SHA256": 2,
          "SHS [180": 1
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 0": 1,
          "Level 2": 3,
          "Level 3": 2
        }
      },
      "hash_function": {
        "PBKDF": {
          "PBKDF": 31,
          "PBKDF2": 3
        },
        "SHA": {
          "SHA2": {
            "SHA-384": 2,
            "SHA2": 1,
            "SHA256": 2
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 65
        },
        "TRNG": {
          "TRNG": 1
        }
      },
      "side_channel_analysis": {},
      "standard_id": {
        "FIPS": {
          "FIPS 140-3": 9,
          "FIPS PUB 140-3": 1,
          "FIPS140-3": 1,
          "FIPS186-4": 1
        },
        "ISO": {
          "ISO/IEC 19790": 2,
          "ISO/IEC 24759": 2
        },
        "NIST": {
          "SP 800-108": 1,
          "SP 800-132": 1,
          "SP 800-38E": 1,
          "SP 800-90B": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 26,
            "AES-": 59,
            "AES-128": 1,
            "AES-256": 4
          },
          "E2": {
            "E2": 7
          }
        },
        "constructions": {
          "MAC": {
            "HMAC": 71
          }
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "module_algorithms": {
      "_type": "Set",
      "elements": [
        "HMAC-SHA2-512A2830",
        "HMAC-SHA2-384A2830",
        "AES-KWA2828",
        "AES-CTRC1278",
        "Counter DRBGC1278",
        "RSA SigVer (FIPS186-4)A2831",
        "KTS-IFCA2829",
        "ECDSA SigGen (FIPS186-4)A4269",
        "SHA2-512/256A2834",
        "AES-XTS Testing Revision 2.0A2835",
        "ECDSA KeyGen (FIPS186-4)A4269",
        "AES-ECBC1278",
        "Conditioning Component Block Cipher Derivation Function SP800-90BA2272",
        "KDF SP800-108A2832",
        "HMAC-SHA2-512/256A2830",
        "SHA2-384A2834",
        "ECDSA KeyVer (FIPS186-4)A4269",
        "ECDSA SigVer (FIPS186-4)A4269",
        "PBKDFA2826",
        "SHA2-512A2834"
      ]
    },
    "policy_algorithms": {
      "_type": "Set",
      "elements": [
        "#A2829",
        "#A2830",
        "#A2834",
        "#A2832",
        "#C1278",
        "#A4269",
        "#A2831",
        "#A2833",
        "#A2835",
        "#A2827",
        "#A2826",
        "#A2828",
        "#A2272"
      ]
    },
    "policy_metadata": {
      "/Author": "Brown, Bethany",
      "/Comments": "",
      "/Company": "Microsoft",
      "/ContentTypeId": "0x010100ABCDCB09243BAB43A795CD371B0F4029",
      "/CreationDate": "D:20250327094347-07\u002700\u0027",
      "/Creator": "Acrobat PDFMaker 25 for Word",
      "/GrammarlyDocumentId": "834c416e4dc7842d50756ed3bf70af00e06f67872d658ba0bad530daf9958627",
      "/Keywords": "",
      "/MSIP_Label_6fdea275-d6f3-438f-b8d8-013cab2023d3_ActionId": "c79c1c14-a7ab-4077-ae01-5760ed7e6f90",
      "/MSIP_Label_6fdea275-d6f3-438f-b8d8-013cab2023d3_ContentBits": "0",
      "/MSIP_Label_6fdea275-d6f3-438f-b8d8-013cab2023d3_Enabled": "true",
      "/MSIP_Label_6fdea275-d6f3-438f-b8d8-013cab2023d3_Method": "Privileged",
      "/MSIP_Label_6fdea275-d6f3-438f-b8d8-013cab2023d3_Name": "Public",
      "/MSIP_Label_6fdea275-d6f3-438f-b8d8-013cab2023d3_SetDate": "2022-06-17T18:13:17Z",
      "/MSIP_Label_6fdea275-d6f3-438f-b8d8-013cab2023d3_SiteId": "f38a5ecd-2813-4862-b11b-ac1d563c806f",
      "/MediaServiceImageTags": "",
      "/ModDate": "D:20250327094426-07\u002700\u0027",
      "/Producer": "Adobe PDF Library 25.1.211",
      "/SourceModified": "D:20250327155627",
      "/Subject": "FIPS 140-2 Security Policy Template",
      "/Title": "7400 - FIPS 140-3 Security Policy",
      "/_dlc_DocIdItemGuid": "c40b30c8-9992-4b4b-8bd6-72a483de1a61",
      "pdf_file_size_bytes": 647188,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=35444",
          "https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=35446",
          "https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=35443",
          "https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=35437",
          "https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?product=11640",
          "https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=35441",
          "https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=35438",
          "https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=35440",
          "https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=35442",
          "https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=34881",
          "https://urldefense.com/v3/__https:/csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=36879__;!!KZTdOCjhgt4hgw!9O0odCAqpLp0UaeVPgymLXR6G9vAufi2fqVZPgrT1ApO7Eo7GmXi1uJHCTDPTfZcRBGInCnU0B0zMP0SIFTLRA$",
          "https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=35439",
          "https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=35445",
          "https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/Validation-Notes#RSA%20SigVer%20(FIPS186-4)"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 27
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.InternalState",
    "module": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "source_hash": null,
      "txt_hash": null
    },
    "policy": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": "efb393777bd9aa36e1a792dcf02786c019a94e64a296a085b67de13c914ad5c6",
      "source_hash": "937a998ebeb1248eedcf14a9f2b04122e3f4805cdfb0542c39d1757d3b7b1f12",
      "txt_hash": "d9111d5d2c09788367d59792a42ebeca4bde2c8883345d560c5a0be396414012"
    }
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "None",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/March 2025_010425_0326.pdf",
    "date_sunset": "2030-03-30",
    "description": "The Micron MTC21-P4 Controller Sub Chip Security Subsystem provides cryptographic functionality to SSD controllers.",
    "embodiment": "Single Chip",
    "exceptions": [
      "Operational environment: N/A",
      "Non-invasive security: N/A",
      "Mitigation of other attacks: N/A"
    ],
    "fw_versions": "Runtime SCSS v2.2 [a], v2.3 [b], v2.4 [c], v2.5 [d]; Bootloader v1.0 [a], v1.1 [b, c], v1.0a [d]; Function ROM v3.0; Boot ROM v1.0",
    "historical_reason": null,
    "hw_versions": "TC v2.1",
    "level": 2,
    "mentioned_certs": {},
    "module_name": "Micron\u00ae MTC21-P4 Controller Sub Chip Security Subsystem",
    "module_type": "Hardware",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-3",
    "status": "active",
    "sw_versions": null,
    "tested_conf": [
      "Micron\u00ae MTC21-P4 SSD Controller"
    ],
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2025-03-31",
        "lab": "UL Verification Services, Inc.",
        "validation_type": "Initial"
      }
    ],
    "vendor": "Micron Technology, Inc.",
    "vendor_url": "http://www.micron.com"
  }
}