Compliance & Standards
FIPS 203 (ML-KEM) conformance, CNSA 2.0 alignment matrix, side-channel resistance validation methodology, and export control classifications for the QCORE-C1 chiplet.
FIPS 203 Conformance #
| Requirement | FIPS 203 Section | QCORE-C1 Status |
|---|---|---|
| ML-KEM.KeyGen correctness | §7.1 | ✓ Validated (100 KAT vectors per parameter set) |
| ML-KEM.Encaps correctness | §7.2 | ✓ Validated |
| ML-KEM.Decaps correctness | §7.3 | ✓ Validated (including implicit rejection) |
| Implicit rejection | §7.3, Note | ✓ Constant-time conditional select in hardware |
| All three parameter sets | §8 | ✓ ML-KEM-512, 768, 1024 |
| Approved hash functions | §4.1 | ✓ SHA3-256, SHA3-512, SHAKE-128, SHAKE-256 |
| Random number generation | §3.3 | External seed required (host provides 32-byte d/z) |
FIPS 140-3 Targeting #
| Area | Level 1 | Level 2 | QCORE-C1 |
|---|---|---|---|
| Cryptographic module | Approved algorithms | + tamper evidence | Level 2 target |
| Physical security | Production-grade | Tamper-evident coatings | Voltage glitch + temp detectors |
| Self-tests | Power-on + conditional | Same | ✓ BIST + KAT on boot |
| Key management | Key storage | + key zeroization | ✓ Hardware zeroization (64 cycles) |
| Design assurance | Configuration management | + delivery/operation | In progress |
CNSA 2.0 Alignment #
| Function | CNSA 2.0 Algorithm | Deadline | QCORE-C1 |
|---|---|---|---|
| Key Establishment | ML-KEM-1024 | 2030 (prefer by 2025) | ✓ Supported |
| Key Establishment | ML-KEM-768 | Acceptable interim | ✓ Supported |
| Digital Signatures | ML-DSA-87 | 2035 | Not in scope (KEM-only accelerator) |
| Hash | SHA-384 or SHA-512 | Immediate | SHA3-512 via Keccak core |
Side-Channel Validation #
| Test | Standard | Traces Required | Result |
|---|---|---|---|
| TVLA (Test Vector Leakage Assessment) | ISO 17825 | 100,000 | Pass (t-value < 4.5 at 25% dummy) |
| CPA (Correlation Power Analysis) | — | 1,000,000 | No key recovery at 1st-order masking |
| Timing analysis | — | 10,000 | Zero timing variation (constant-time hardware) |
| EM analysis (near-field probe) | — | 500,000 | Pending (requires silicon samples) |
Export Control Classification #
| Jurisdiction | Classification | Notes |
|---|---|---|
| US (EAR) | ECCN 5A002.a.1 | Cryptographic hardware performing encryption/decryption |
| US (EAR) | License Exception ENC (§740.17) | Eligible for mass-market exception review |
| Wassenaar | Category 5, Part 2 | Information security — cryptographic hardware |
| US origin | 100% US-designed, US-fabricated (SkyWater/GF) | ITAR-free, CHIPS Act eligible |