{"_type": "sec_certs.sample.fips.FIPSCertificate", "dgst": "647011fb41f77ae3", "cert_id": 5494, "web_data": {"_type": "sec_certs.sample.fips.FIPSCertificate.WebData", "module_name": "Geotab Extended Cryptographic Module", "validation_history": [{"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry", "date": "2026-08-18", "validation_type": "Initial", "lab": "Leidos Accredited Testing & Evaluation (AT&E) Lab"}], "vendor_url": "http://www.geotab.com", "vendor": "Geotab Inc.", "certificate_pdf_url": null, "module_type": "Firmware", "standard": "FIPS 140-3", "status": "active", "level": 1, "caveat": "No assurance of minimum security of SSPs (e.g., keys, bit strings) that are externally loaded, or of SSPs established with externally loaded SSPs", "exceptions": ["Non-invasive security: N/A", "Mitigation of other attacks: N/A"], "embodiment": "SingleChip", "description": "The Geotab Cryptographic module is classified as Level 1 Firmware Module as per FIPS-140-3 guidelines executing within a non-modifiable operational environment. The module operates within a single-chip standalone module embodiment. The physical cryptographic boundary is a single-chip microcontroller which runs a modifiable operating environment such as a real-time operating system. The module is bundled with the firmware image used by the physical microcontrollers. The module performs no communication other than with the calling application via well-defined APIs that invoke the module.", "tested_conf": null, "hw_versions": null, "fw_versions": null, "sw_versions": null, "mentioned_certs": {}, "historical_reason": null, "date_sunset": "2031-08-17", "revoked_reason": null, "revoked_link": null}, "pdf_data": {"_type": "sec_certs.sample.fips.FIPSCertificate.PdfData", "keywords": {"fips_cert_id": {}, "fips_security_level": {"Level": {"level 1": 1, "Level 1": 4}}, "fips_certlike": {"Certlike": {"HMAC SHA-256": 1, "SHA2-256": 7, "SHA2- 384": 2, "SHA2-384": 1, "SHA256": 1, "SHA-256": 1}}, "vendor": {"NXP": {"NXP": 6}, "STMicroelectronics": {"STMicroelectronics": 2}}, "eval_facility": {}, "symmetric_crypto": {"AES_competition": {"AES": {"AES": 7, "AES-": 5}, "CAST": {"CAST": 41}}, "constructions": {"MAC": {"HMAC": 23}}}, "asymmetric_crypto": {"ECC": {"ECDSA": {"ECDSA": 22}}}, "pq_crypto": {}, "hash_function": {"SHA": {"SHA2": {"SHA256": 1, "SHA-256": 1}}}, "crypto_scheme": {"MAC": {"MAC": 1}, "KA": {"Key Agreement": 2}}, "crypto_protocol": {"TLS": {"TLS": {"TLS v1.3": 5, "TLSv1.3": 4, "TLS": 3, "TLS 1.3": 3}}}, "randomness": {"TRNG": {"TRNG": 1}, "PRNG": {"DRBG": 31}, "RNG": {"RBG": 4}}, "cipher_mode": {"CBC": {"CBC": 5}, "GCM": {"GCM": 10}}, "ecc_curve": {"NIST": {"P-224": 20, "P-256": 8, "P-384": 8}}, "crypto_engine": {}, "tls_cipher_suite": {}, "crypto_library": {}, "vulnerability": {}, "side_channel_analysis": {}, "device_model": {}, "tee_name": {"AMD": {"PSP": 1}}, "os_name": {}, "cplc_data": {}, "ic_data_group": {}, "standard_id": {"FIPS": {"FIPS 140-3": 3, "FIPS186-5": 15, "FIPS 186-5": 6, "FIPS 198-1": 1, "FIPS 180-4": 2}, "NIST": {"SP 800-38A": 1, "SP 800-38D": 1, "SP 800-90A": 1, "SP 800-135": 1, "SP 800-90B": 2}, "RFC": {"RFC 8446": 2, "RFC8446": 2}}, "javacard_version": {}, "javacard_api_const": {}, "javacard_packages": {}, "certification_process": {}}, "policy_metadata": {"pdf_file_size_bytes": 548546, "pdf_is_encrypted": false, "pdf_number_of_pages": 31, "/Producer": "Microsoft\u00ae Word for Microsoft 365", "/Creator": "Microsoft\u00ae Word for Microsoft 365", "/CreationDate": "D:20260817092859-04'00'", "/ModDate": "D:20260817092859-04'00'", "pdf_hyperlinks": {"_type": "Set", "elements": ["https://csrc.nist.gov/CSRC/media/Projects/cryptographic-module-validation-program/documents/fips%20140-3/FIPS%20140-3%20IG.pdf", "https://datatracker.ietf.org/doc/html/rfc8446"]}}}, "heuristics": {"_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics", "algorithms": {"_type": "Set", "elements": ["SHA2-384A5265", "AES-GCMA5265", "SHA2-256A5265", "RSA SigVer (FIPS186-5)A5265", "AES-CBCA5265", "ECDSA KeyGen (FIPS186-5)A5265", "ECDSA SigVer (FIPS186-5)A5265", "TLS v1.3 KDFA5265", "HMAC-SHA2-256A5265", "ECDSA SigGen (FIPS186-5)A5265", "ECDSA KeyVer (FIPS186-5)A5265", "HMAC DRBGA5265"]}, "extracted_versions": {"_type": "Set", "elements": ["-"]}, "cpe_matches": null, "verified_cpe_matches": null, "related_cves": null, "policy_prunned_references": {"_type": "Set", "elements": []}, "module_prunned_references": {"_type": "Set", "elements": []}, "policy_processed_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "module_processed_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "direct_transitive_cves": null, "indirect_transitive_cves": null}, "state": {"_type": "sec_certs.sample.fips.InternalState", "module": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": null, "txt_hash": null, "json_hash": null}, "policy": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": "2b0dcbfacc725d44c224df33047a80aed10999949a971cbde88f68dfc7e5a927", "txt_hash": "3de61d3c117929785315dd3c3f9423d954edcd4c493a224c354d50d3101d2cbb", "json_hash": null}}}