© The Author(s), under exclusive license to APress Media, LLC, part of Springer Nature 2024
D. Johnston, R. FantDesigning to FIPS-140https://doi.org/10.1007/979-8-8688-0125-9_1

1. Introduction to FIPS and CMVP

David Johnston1   and Richard Fant2
(1)
Hillsboro, OR, USA
(2)
Austin, TX, USA
 

1.1 What Is FIPS 140-3?

FIPS 140-3 (Federal Information Processing Standards) is the US government computer security standard that specifies requirements for cryptographic modules. If a US government agency wishes to purchase a cryptographic product, then that product must be FIPS certified. In recent years, FIPS has become a popular requirement in the financial and health care sectors as well. The first FIPS certificate for a cryptographic module was officially released ...

Get Designing to FIPS-140: A Guide for Engineers and Programmers now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.