This thread has been locked.

If you have a related question, please click the "Ask a related question" button in the top right corner. The newly created question will be automatically linked to this question.

whether Encryption feature in MSP has certification for CAVP?

Dear,

I'd like to know whether Encryption feature in MSP has certification for CAVP.

CAVP:
http://csrc.nist.gov/groups/STM/cavp/

Question:
Could you please let me know update status whether Encryption feature in MSP has certification for CAVP?

Best regards,
Gou

 

  • Is CAVP really a "certification program"?

    AES is a binary encryption mechanism that is clearly defined by FIPS-197 (part of FIPS 140-2). Test vectors for validation are also included.

    Accredited validation process is quite expensive. And this will still be not NSA-approved.

    If you need to pass a "strong security certification", contact NSA for that. I assume, the functionality, the purpose, and the access of/to the final devices should be clearly defined in such case.

    We live in a very short and vulnerable time where easy access to very strong (nearly unbreakable) crypto devices are open to many people worldwide. But we also leave in a quite corrupted society, where criminal use of unbreakable solutions can lead to social collapse.

    So, think ten times before asking for security certification from IC vendors.

    Regards,

    Alexey

  • Here attached file, library from IC Vendor, STMicro, has message for CAVP.  I don't ask/discuss what is encryption certification.  My question is whether Encryption feature in MSP has certification for CAVP?

    en.fips_cavp_certification.pdf

  • I see, this is ST marketing "feature". The CAVP is not a "encryption certification", but "accredited validation process". But for some groups this looks equal.
    So you propose TI marketing department to carry this way, spend 50k$, call it "certification" to look competitive in front of ST. Good, go ahead, I'll not disturb you in this thread any longer.

**Attention** This is a public forum