Module Name
Samsung SCrypto Cryptographic Module
Validation Dates
09/25/2017;10/27/2017;07/20/2018
Caveat
When operated in FIPS mode
Security Level Exceptions
- Physical Security: N/A
- EMI/EMC: Level 3
- Design Assurance: Level 3
- Mitigation of Other Attacks: N/A
Embodiment
Multi-Chip Stand Alone
Description
SCrypto is secure library which is used to provide a standardized common cryptographic API to trusted applications for the secure world/TEE environment.
Tested Configuration(s)
- Kinibi 310 (32-bit) with processor Samsung EXYNOS7870 running on Samsung Tab Active2 (single-user mode)
- Kinibi 400A (32-bit) with processor Samsung EXYNOS8895 running on Samsung Galaxy S8
- QSEE 4.0 (32-bit) with processor Qualcomm MSM8998 running on Samsung Galaxy S8+
- QSEE 4.0 (64-bit) with processor Qualcomm MSM8998 running on Samsung Galaxy S8+
FIPS Algorithms
AES |
Cert. #4389 |
CVL |
Certs. #1092 and #1093 |
DRBG |
Cert. #1412 |
DSA |
Cert. #1169 |
ECDSA |
Cert. #1049 |
HMAC |
Cert. #2916 |
KBKDF |
Cert. #125 |
KTS |
AES Cert. #4389; key establishment methodology provides 128 or 256 bits of encryption strength |
RSA |
Cert. #2372 |
SHS |
Cert. #3618 |
Allowed Algorithms
Diffie-Hellman (CVL Cert. #1092, key agreement; key establishment methodology provides between 112 and 150 bits of encryption strength); EC Diffie-Hellman (CVL Cert. #1092, key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); NDRNG; RSA (CVL Cert. #1093, key wrapping; key establishment methodology provides 112 or 128 bits of encryption strength)