Information Security for the Enterprise Home About Us Contact Us
Print

Technology Certifications

The ISC product suite is based on their own cryptographic development kit, which has received NIST FIPS 140-1 Level 1 Certificate No. 347, and complies with the following Federal and Industry standards:

NIST NOTE: FIPS 140-2 is now in effect. However, Agencies may continue to purchase, retain and use FIPS 140-1 validated modules.

Algorithms Supported

Relevant Standards and Other References

NIST Certificate

RSA

FIPS 186-2; ANSI X9.31-1998;
RFC2437 (PKCS#1v2.0), RFC3447 (PKCS#1v2.1)

VA*

DSA

FIPS 186-2; ANSI X9.30-1997

#65

ECDSA

FIPS 186-2; ANSI X9.62-1998;
IEEE 1363-2000

VA*

DH

RFC2631; ANSI X9.42-1998;
IEEE 1363-2000 

 

ECDH

ANSI X9.63; IEEE 1363-2000

 

AES

FIPS 197; NIST SP-800-38A; NIST SP-800-38C; DRAFT NIST SP-800-38B; CNSS Policy No. 15; RFC3565

#9

DES

FIPS 46-3; ANSI X3.92

#171

TDES

FIPS 46-3; ANSI X9.52-1998; NIST SP-800-38A; NIST SP 800-20; DRAFT NIST SP 800-67

#115

DESX

(by J. Kilian and P. Rogaway)

 

Skipjack/EES

FIPS 185; NIST/NSA specification

#99

RC2

RFC3217; RFC2268

 

RC4

RFC2246 (SSL/TLS); "Arcfour" internet-draft

 

SHA-1

FIPS 180-2; ANSI X9.30 Part 2;
ISO/IEC 10118-3:1998

#1000

SHA-224/256/384/512

FIPS 180-2; NIST specifications

 

HMAC-SHA-1

FIPS 198; RFC2104; ANSI X9.71

#100, VA*

HMAC-MD55

RFC2104; ANSI X9.71

 

MD2

RFC1319

 

MD5

RFC1321

 

PRNG

FIPS 186-2; FIPS 140-2 Annex C;
NIST SP 800-22

 

Password Generation

FIPS 181

 

Available Separately

Relevant Standards and Other References

 

CAST-128

RFC2144

 

KEA

NIST/NSA specification; RFC2528; RFC3279; SDN.701

 

OAEP

RFC24377 (PKCS #1v2.0); RFC3560;
IEEE 1363-2000 

 

RIPEMD-160

ISO/IEC 10118-3:1998; (A. Bosselaers website); RFC2857

 

* At the time of validation, there were no formal NIST test suites for certain FIPS approved algorithms. In these cases we ran standard industry tests, provided letters of assurance to NIST, and the NIST-accredited CMT lab checked the source code and test results. These algorithms are marked VA (for "Vendor Affirmed") in the NIST certificate column.

Encryption & Trust