Release Notes
20 Algorithms and Key Sizes
RSA BSAFE Crypto-C Micro Edition 4.1.4 Release Notes
Key
Agreement
Schemes
(continued)
FFC
3
• Schemes: dhHybrid1, dhEphem, dhHybridOneFlow,
dhOneFlow and dhStatic
• Domain parameter-size sets: L=2048, N=224;
L=2048, N=256
SP 800-56A
4
Key
Derivation
Functions
(KDFs)
HMAC-based Extract-and Expand KDF (HKDF) SP 800-108
Password-based Key Derivation Function 2 (PBKDF2)
6
SP 800-132
Single-step concatenation KDF
SP 800-56A
4
TLS Pseudo-random Function (TLS PRF) - Component Test
Protocol:
• TLS 1.0/1.1
• TLS 1.2; SHA: SHA-256, SHA-384, SHA-512
SP 800-135
Rev. 1
X9.63 KDF - Component Test
• SHA: SHA-224, SHA-256, SHA-384, SHA-512
ANSI X9.63,
SP 800-135
Rev. 1
Key
Generation
Cryptographic Key Generation (CKG) SP 800-133
Key Transport
Schemes
KTS-OAEP, KTS-OAEP-Party_V-confirmation, KTS-KEM-KWS,
KTS-KEM-KWS-Party_V-confirmation.
Modulus sizes: 2048 and 3072-bit
SP 800-56B
Key Wrap AES in KW and KWP modes with 128, 192, and 256-bit key sizes SP 800-38F
RSA-OAEP and RSA-KEM-KWS
Modulus sizes: 2048 and 3072-bit.
SP 800-56B
MAC HMAC SHA-1:
• SHA-224, SHA-256, SHA-384, SHA-512, SHA-512/224,
SHA-512/256
FIPS 198-1
HMAC SHA-3:
• SHA3-224, SHA3-256, SHA3-384, SHA3-512
FIPS 198-1
Message
Digest
SHA:
• SHA-1 SHA-224, SHA-256, SHA-384, SHA-512, SHA-512/224,
SHA-512/256
FIPS 180-4
SHA-3:
• SHA3-224, SHA3-256, SHA3-384, SHA3-512
FIPS 202
Table 2 Crypto-C ME FIPS 140-2-approved Algorithms (continued)
Algorithm
Type
Algorithm and approved parameter/modulus/key sizes Standard