The purpose of this document is to provide technical information about implementations of the SKIPJACK algorithm that have been validated as conforming to certain specifications in Federal Information Processing Standard Publication 185, Escrowed Encryption Standard (EES) and FIPS PUB 81, DES Modes of Operation. The National Institute of Standards and Technology (NIST) has made every attempt to provide complete and accurate information about the implementations described in the list below. However, due to the possibility of changes made within individual companies, NIST cannot guarantee that this document reflects the current status of each product. It is the responsibility of the vendor to notify NIST of any necessary changes to its entry in the following list.
The list below describes SKIPJACK implementations which have been validated using the tests found in the NIST Special Publication 800-17, Modes of Operation Validation System (MOVS): Requirements and Procedures. The implementations are validated in accordance with FIPS 185 and FIPS 81, DES Modes of Operation. This testing is performed by NVLAP accredited Cryptographic And Security Testing (CST) Laboratories.
The list is ordered numerically, according to the validation number. Also indicated after the date of validation are the modes and states (encryption(e) and/or decryption(d)) for which the implementation was validated. The various modes are abbreviated as follows: Electronic Codebook (ECB), Cipher Block Chaining (CBC), Cipher Feedback (CFB), and Output Feedback (OFB). The validation issued to the vendor indicates the CMT laboratory that tested the implementation.
Validation No. |
Vendor | Implementation | Operational Environment | Val. Date |
Modes/ Description/Notes |
---|---|---|---|---|---|
19 | 3S Group Incorporated 125 Church Street, N.E., Suite 204 Vienna, VA 22180 USA -Satpal S. Sahni
|
Version 1.0 (Firmware)
Cavium Octeon
|
5/31/2012
|
ECB(d only) ; CBC(d only) ; CFB8(d only) ; CFB16(d only) ; CFB32(d only) ; CFB64(d only) ; OFB(d only)
"3SGX is a high performance PCIe cryptograhic module that provides complete cryptographic support to large numbers of users or applications simultaneously. 3SGX is the core of 3S Group''s hardare security appliances, ideal for enterprise key management, virtualization and cloud server solutions that demand high throughput." |
|
18 | SPYRUS, Inc. 1860 Hartog Drive San Jose, CA 95131-2203 USA -Tom Dickens
-Reid Carlisle
|
Version SPYCOS Series 2 (Firmware)
Infineon SLE66CX642P Security Controller
|
5/7/2009
|
ECB(e/d)
"The SPYCOS® Series 2 is the latest addition to the SPYRUS family of cryptographic module ICs enabling both smart card and USB cryptographic tokens. It provides security critical capabilities in user authentication, message privacy and integrity, authentication, and secure storage in an IC form factor." |
|
17 | Wei Dai 13440 SE 24th Street Bellevue, WA 98005 USA -Wei Dai
|
Version 5.3.0
Athlon X2 4200+ w/ Windows XP SP2; Athlon X2 4200+ w/ Windows Server 2003 x 64 SP1
|
2/9/2007
|
ECB(e/d) ; CBC(e/d) ; CFB1(e/d) ; CFB8(e/d) ; CFB16(e/d) ; CFB32(e/d) ; CFB64(e/d) ; OFB(e/d)
"The Crypto++ Library is a free, open source C++ class library providing public key encryption, digital signatures, symmetric ciphers, hash functions, message authentication codes, and other cryptographic algorithms. Both 32-bit and 64-bit variants of the dynamic link library (DLL) are FIPS 140-2 Level 1 validated." |
|
16 | SPYRUS, Inc. 2355 Oakland Road, Suite 1 San Jose, CA 95131 USA -Tom Dickens
|
Version 2.2 (Firmware)
ARM7-TDMI processor
|
12/13/2005
|
ECB(e/d) ; CBC(e/d) ; CFB8(e/d) ; CFB16(e/d) ; CFB32(e/d) ; CFB64(e/d) ; OFB(e/d)
"The LYNKS Series II Hardware Security Module (HSM) supports the new "Suite B" algorithms, including elliptic curve cryptography with ECDSA signatures, AES, and the "SHA-2" algorithms. Available with either PCMCIA or USB interfaces." |
|
15 | Litronic, Inc. 17861 Cartwright Road Irvine, CA 92614 USA -Cameron Durham
|
Version 3.1 (Firmware) Part # P/N 020-2010, Version B2
jForte
|
1/25/2005
|
ECB(e/d)
"ASIC" |
|
14 | Wei Dai 13440 SE 24th Street Bellevue, WA 98005 USA -Wei Dai
|
Version 5.2.3
Intel Pentium 4 1.6GHz w/ Windows 2000 Professional
|
1/28/2005
|
ECB(e/d) ; CBC(e/d) ; CFB8(e/d) ; CFB16(e/d) ; CFB32(e/d) ; CFB64(e/d) ; OFB(e/d) ; CTR
"The Crypto++ Library is a free, open source C++ class library providing public key encryption, digital signatures, symmetric ciphers, hash functions, message authentication codes, and other cryptographic algorithms." |
|
13 | Wei Dai 13440 SE 24th Street Bellevue, WA 98005 USA -Wei Dai
|
Version 5.0.4
Pentium III w/ Windows 2000 Prof SP1
|
7/30/2003
|
ECB(e/d) ; CBC(e/d) ; CFB8(e/d) ; CFB16(e/d) ; CFB32(e/d) ; CFB64(e/d) ; OFB(e/d) ; CTR
"The Crypto++ Library is a free, open source C++ class, 32-bit dynamic link library (DLL) providing public key encryption, digital signatures, symmetric ciphers, hash functions, message authentication codes, and other cryptographic algorithms." |
|
12 | SPYRUS, Inc. 2355 Oakland Road, Suite 1 San Jose, CA 95131 USA -Tom Dickens
|
Version 4.02.00.04
PC Platform with Microsoft Windows 2000
|
4/11/2003
|
ECB(e/d) ; CBC(e/d) ; CFB8(e/d) ; CFB16(e/d) ; CFB32(e/d) ; CFB64(e/d) ; OFB(e/d)
"The Rosetta CSI sToken is a software cryptographic token providing digital signature and encryption services in a PC environment. The Rosetta sToken provides for ease of use, deployment, and the assurance provided through independent third party security validation." |
|
11 | Wei Dai 13440 SE 24th Street Bellevue, WA 98005 USA -Wei Dai
|
Version 5.01
Pentium III w/ Windows 2000
|
11/14/2002
|
ECB(e/d) ; CBC(e/d) ; CFB8(e/d) ; CFB64(e/d) ; OFB(e/d)
"The Crypto++ Library is a free, open source C++ class library providing public key encryption, digital signatures, symmetric ciphers, hash functions, message authentication codes, and other cryptographic algorithms. The pre-compiled Win32 static library is FIPS 140-2 Level 1 validated. The library is also available in source code form." |
|
10 | Mykotronx 357 Van Ness Way, Suite 200 Torrance, CA 90501 USA -Blane Yamamoto
|
Part # MYK-82A-1
N/A
|
7/11/2002
|
"The Mykotronx MYK-82A crypto processor isa single-chip solution combininga 32-bit ARM7 processor, USB and PCMCIA interfaces, and support for Skipjack, DES, 3DES, SHA1, DSS, KEA algorithms in a compact BGA package." |
|
9 | Information Security Corporation 1141 Lake Cook Road, Suite D Deerfield, IL 60015 USA -Michael J. Markowitz, VP R&D
|
Version 7.0
Pentium III w/ Windows 2000 Pro
|
5/8/2002
|
ECB(e/d) ; CBC(e/d) ; CFB8(e/d) ; CFB64(e/d) ; OFB(e/d) ; CTR
"A software development toolkit providing a comprehensive set of cryptographic primitives for use in any application. Includes RSA, DSA/Diffie-Hellman and elliptic curve algorithms, as well as a wide range of symmetric ciphers and hash functions." |
08/04/03: Add CTR mode; |
8 | Securit-e-Doc, Inc. 515 N. Flagler Drive #P-400 West Palm Beach, FL 33401 USA -Brent L. Ravdin
|
Version 3.0
Pentium III w/ MS Windows 2000
|
5/8/2002
|
"Securit-e-Doc(R) provides secure server-based transmission and storage of files and messages using interactive, Web-enabled interfaces. All components of the Securit-e-Doc system derive their security services from the underlying SITT(R) CryptoSystem. SITT(R), implemented within the Securit-e-Doc application software, provides real-time cryptographic services for symmetric encryption and decryption, random number generation and message digesting." |
|
7 | Mykotronx 357 Van Ness Way, Suite 200 Torrance, CA 90501 USA -Blane Yamamoto
|
Part # MYK-82A-1
N/A
|
5/1/2002
|
"The Mykotronx MYK-82A crypto processor isa single-chip solution combininga 32-bit ARM7 processor, USB and PCMCIA interfaces, and support for Skipjack, DES, 3DES, SHA1, DSS, KEA algorithms in a compact BGA package." |
|
6 | Pitney Bowes, Inc. 35 Waterview Drive Shelton, CT 06484-8000 USA -Douglas Clark
|
Version AAA Part # PSD Hardware Module 1A80000
N/A
|
2/25/2002
|
ECB(e/d)
"The Pitney Bowes Compliant Meter Postal Security Device (PSD) has been designed in compliance with the United States Postal Service (USPS), Information-Based Indicia Program (IBIP). It employs strong encryption, decryption, and digital signature techniques for the protection of customer funds in Pitney Bowes IBIP Metering products. The PSD is a secure module employed within the metering product which performs high-speed cryptographic functions, funds management, and printer administration functions that preclude unauthorized disbursing of indicia. The PSD has been designed to support international postal markets and their rapidly evolving requirements for digital indicia." |
|
5 | 3S Group Incorporated 125 Church Street, N.E., Suite 204 Vienna, VA 22180 USA -Satpal S Sahni
|
Part # T2CSS-208
N/A
|
1/7/2002
|
ECB(e/d) ; CBC(e/d) ; CFB8(e/d) ; CFB64(e/d) ; OFB(e/d)
"T2CSS is a multiple cryptoprocessor PCI board and cryptographic server. Provides high assurance security services; secure session/virtual token management; scalabel server performance(multiple boards); Government and commercial algorithms; FORTEZZA CI, PKCS #11, other APIs; and Windows NT/2000, Solaris and Linux support." |
|
4 | SPYRUS, Inc. 5303 Betsy Ross Drive Santa Clara, CA 95054 USA -Bill Bialick
|
Version 2.01
N/A
|
3/2/2000
|
ECB(e/d)
"The SPYRUS Rosetta Smart Card is an ISO 7816 compliant public key smart card based on the SPYCOS card operating system." |
|
3 | SPYRUS, Inc. 2355 Oakland Road, Suite 1 San Jose, CA 95131 USA -Bill Bialick
|
Version 1.2 Part # Part# 905-060000-03
N/A
|
7/19/1999
|
ECB(e/d) ; CBC(e/d) ; CFB64(e/d) ; OFB(e/d)
|
|
2 | Mykotronx 357 Van Ness Way, Suite 200 Torrance, CA 90501 USA -Blane Yamamoto
|
N/A
|
4/1/1997
|
"The MYK-82 is a VLSI microcircuit." |
|
1 | SPYRUS, Inc. 2355 Oakland Road, Suite 1 San Jose, CA 95131 USA -Bill Bialick
|
Version 0.2
N/A
|
12/12/1996
|
ECB(e/d)
|
|
Computer Security Division
National Institute of Standards and Technology