BlackBerry Cryptographic Kernel

Certificate #939

Webpage information

Status historical
Historical reason RNG SP800-131A Revision 1 Transition
Validation dates 23.04.2008
Standard FIPS 140-2
Security level 1
Type Firmware
Embodiment Multi-Chip Stand Alone
Caveat None
Exceptions
  • Design Assurance: Level 3
  • Tested: BlackBerry 8300 with BlackBerry OS Version 4.3
Description BlackBerry® is the leading wireless enterprise solution that allows users to stay connected with secure, wireless access to email, corporate data, phone, web and organizer features. BlackBerry® is a totally integrated package that includes hardware, software and service, providing a complete end-to-end solution. The BlackBerry Cryptographic Kernel is the software module that provides the basic cryptographic functionality for the BlackBerry.
Version (Firmware) 3.8.5.11b and 3.8.5.11c
Vendor Research In Motion Ltd.
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Symmetric Algorithms
AES-256, AES, DES, HMAC
Asymmetric Algorithms
ECDSA, ECC, Diffie-Hellman
Hash functions
SHA-1, SHA-256, SHA-512
Schemes
Key Agreement
Randomness
RNG
Elliptic Curves
P-521, K-571
Block cipher modes
CBC, CTR

Security level
Level 1
Side-channel analysis
side-channel, SPA, DPA

Standards
FIPS 140-2, FIPS 197, FIPS 46-3, FIPS 180-2, FIPS 198, FIPS 186-2, FIPS PUB 140-2, PKCS#1, PKCS #1

File metadata

Title Microsoft Word - 20080304_BlackBerry_Cryptographic_Kernel_v3 8 5 11b_and_ 11c_FIPS_140-2_Security_Policy.doc
Author Cory Clark
Creation date D:20080305143602-05'00'
Modification date D:20080423110452-04'00'
Pages 17
Creator PScript5.dll Version 5.2.2
Producer Acrobat Distiller 7.0.5 (Windows)

Heuristics

No heuristics are available for this certificate.

References

No references are available for this certificate.

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 939,
  "dgst": "aaf57ee8c549ef3d",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "AES#734",
        "ECDSA#79",
        "SHS#751",
        "RSA#344",
        "AES#735",
        "HMAC#400",
        "AES#736",
        "RNG#428",
        "RSA#345",
        "HMAC#401",
        "SHS#752",
        "Triple-DES#654",
        "Triple-DES#653",
        "ECDSA#78",
        "RNG#429",
        "AES#737"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "3.8.5.11"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 5
          },
          "ECDSA": {
            "ECDSA": 5
          }
        },
        "FF": {
          "DH": {
            "Diffie-Hellman": 1
          }
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 6
        },
        "CTR": {
          "CTR": 2
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {
        "KA": {
          "Key Agreement": 2
        }
      },
      "device_model": {},
      "ecc_curve": {
        "NIST": {
          "K-571": 3,
          "P-521": 4
        }
      },
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "#1": 1
        }
      },
      "fips_certlike": {
        "Certlike": {
          "AES-256": 6,
          "HMAC SHA-1": 3,
          "HMAC SHA-256": 2,
          "HMAC SHA-512": 2,
          "PKCS #1": 2,
          "PKCS#1": 1,
          "RSA PKCS#1": 1,
          "SHA-1": 7,
          "SHA-256": 4,
          "SHA-512": 4
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 1": 1
        }
      },
      "hash_function": {
        "SHA": {
          "SHA1": {
            "SHA-1": 7
          },
          "SHA2": {
            "SHA-256": 4,
            "SHA-512": 4
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "RNG": {
          "RNG": 12
        }
      },
      "side_channel_analysis": {
        "SCA": {
          "DPA": 1,
          "SPA": 1,
          "side-channel": 1
        }
      },
      "standard_id": {
        "FIPS": {
          "FIPS 140-2": 10,
          "FIPS 180-2": 1,
          "FIPS 186-2": 8,
          "FIPS 197": 2,
          "FIPS 198": 1,
          "FIPS 46-3": 1,
          "FIPS PUB 140-2": 2
        },
        "PKCS": {
          "PKCS #1": 1,
          "PKCS#1": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 4,
            "AES-256": 6
          }
        },
        "DES": {
          "DES": {
            "DES": 9
          }
        },
        "constructions": {
          "MAC": {
            "HMAC": 14
          }
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "policy_metadata": {
      "/Author": "Cory Clark",
      "/CreationDate": "D:20080305143602-05\u002700\u0027",
      "/Creator": "PScript5.dll Version 5.2.2",
      "/ModDate": "D:20080423110452-04\u002700\u0027",
      "/Producer": "Acrobat Distiller 7.0.5 (Windows)",
      "/Title": "Microsoft Word - 20080304_BlackBerry_Cryptographic_Kernel_v3 8 5 11b_and_ 11c_FIPS_140-2_Security_Policy.doc",
      "pdf_file_size_bytes": 212086,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 17
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
    "module_download_ok": true,
    "module_extract_ok": true,
    "policy_convert_ok": true,
    "policy_download_ok": true,
    "policy_extract_ok": true,
    "policy_json_hash": null,
    "policy_pdf_hash": "f707179cc8d18733698138e60a72c73374997debf9d1deb79432cae55347c8cb",
    "policy_txt_hash": "28bf3f63fce9d5e94ea91c11527d7df60d639083ae55ceb846170681f1701d39"
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "None",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/140crt939.pdf",
    "date_sunset": null,
    "description": "BlackBerry\u00ae is the leading wireless enterprise solution that allows users to stay connected with secure, wireless access to email, corporate data, phone, web and organizer features. BlackBerry\u00ae is a totally integrated package that includes hardware, software and service, providing a complete end-to-end solution. The BlackBerry Cryptographic Kernel is the software module that provides the basic cryptographic functionality for the BlackBerry.",
    "embodiment": "Multi-Chip Stand Alone",
    "exceptions": [
      "Design Assurance: Level 3",
      "Tested: BlackBerry 8300 with BlackBerry OS Version 4.3"
    ],
    "fw_versions": "3.8.5.11b and 3.8.5.11c",
    "historical_reason": "RNG SP800-131A Revision 1 Transition",
    "hw_versions": null,
    "level": 1,
    "mentioned_certs": {},
    "module_name": "BlackBerry Cryptographic Kernel",
    "module_type": "Firmware",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "historical",
    "sw_versions": null,
    "tested_conf": null,
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2008-04-23",
        "lab": "DOMUS",
        "validation_type": "Initial"
      }
    ],
    "vendor": "Research In Motion Ltd.",
    "vendor_url": "http://www.rim.com"
  }
}