Archive for February, 2010

FIPS 140-3: What Embedded Vendors Need to Know About the New NSA and NIST Mandated Communication Security Standard

Cool dog 


 FIPS 140 (acronym for “Federal Information Processing Standard number 140”) is a US government standard, established by the National Institute of Standards and Technology (NIST), which specifies a series of requirements that must be met by an encryption module before it can be used in a Federal government system.  These requirements cover a range of subjects, from proper key management, to secure generation of random numbers, and from which encryption algorithms may be used, to module self-tests and error detection.


Put more simply, if a product performs encryption, the portion of that product which actually implements the encryption is the focus of FIPS 140. FIPS 140 is of interest to the embedded systems industry for several reasons:


First, under Section 5-131 of the Information Technology Reform Act of 1996 (Public Law 104-106), and the Computer Security Act of 1987 (Public Law 100-235), FIPS from NIST may be approved by the Secretary of Commerce and made binding to all Federal agencies.  FIPS 140 has been granted such approval, and therefore all Federal agencies are required to use FIPS 140-certified encryption to protect all sensitive information processed by all data processing systems, from embedded systems to mainframes.


This means that vendors cannot sell systems which use encryption to any Federal agency unless that system incorporates FIPS 140-certified encryption.

  Read the rest of this entry »

Embedded Acquisitions, Mergers, and Partnerships – are they Good or Bad for the Industry, Employees and the Shareholders?


Fanaticism consists in redoubling your efforts when you have forgotten your aim – George Santiago


Embedded Cars 

Tough economic times create strange bedfellows. Does one need to purchase a technology, with its attendant costs and complications, when a lease or partner relationship would suffice? Do complimentary technologies and markets provide a return greater than the sum of the parts – or is the result characterized as “subtraction by addition?”


 EMF believes that embedded consolidation through acquisition will be the norm over the next few years as roll backs in DoD discretionary funding impact the larger purchasers.


 Let’s look to four recent acquisitions with an eye on compatibility, growth potential and whether there is a measurable outcome. Is this a trend, a lifeline or a passing strategic initiative – you decide.


 These include:


  • IBM Rational buys Telelogic
  • Intel buys Wind River Systems
  • Cavium acquires MontaVista
  • Artisan acquires Aonix


  Read the rest of this entry »