Module Name
BoringCrypto Android
Validation Dates
12/02/2020
Caveat
When installed, initialized and configured as specified in Section 12.1 of the Security Policy and operated in FIPS mode. The module generates cryptographic keys whose strengths are modified by available entropy
Security Level Exceptions
- Physical Security: N/A
- Mitigation of Other Attacks: N/A
Embodiment
Multi-Chip Stand Alone
Description
A software library that contains cryptographic functionality to serve BoringSSL and other user-space applications.
Tested Configuration(s)
- Android 10 running on Pixel 3 XL with Snapdragon 845 32-bit with PAA
- Android 10 running on Pixel 3 XL with Snapdragon 845 32-bit without PAA
- Android 10 running on Pixel 3 XL with Snapdragon 845 64-bit with PAA
- Android 10 running on Pixel 3 XL with Snapdragon 845 64-bit without PAA
- Android 10 running on Pixel 3a with Snapdragon 670 32-bit with PAA
- Android 10 running on Pixel 3a with Snapdragon 670 32-bit without PAA
- Android 10 running on Pixel 3a with Snapdragon 670 64-bit with PAA
- Android 10 running on Pixel 3a with Snapdragon 670 64-bit without PAA
- Android 10 running on Pixel 4 XL with Snapdragon 855 32-bit with PAA
- Android 10 running on Pixel 4 XL with Snapdragon 855 32-bit without PAA (single-user mode)
- Android 10 running on Pixel 4 XL with Snapdragon 855 64-bit with PAA
- Android 10 running on Pixel 4 XL with Snapdragon 855 64-bit without PAA
FIPS Algorithms
AES |
Cert. #C1314 |
CVL |
Cert. #C1314 |
DRBG |
Cert. #C1314 |
ECDSA |
Cert. #C1314 |
HMAC |
Cert. #C1314 |
KAS-SSC |
vendor affirmed |
KTS |
AES Cert. #C1314; key establishment methodology provides between 128 and 256 bits of encryption strength |
RSA |
Cert. #C1314 |
SHS |
Cert. #C1314 |
Triple-DES |
Cert. #C1314 |
Allowed Algorithms
MD5; NDRNG; RSA (key wrapping; key establishment methodology provides between 112 and 256 bits of encryption strength)
Software Versions
7f02881e96e51f1873afcf384d02f782b48967ca