Decru DataFort LKM SEP v1.0

Certificate #847

Webpage information

Status historical
Historical reason RNG SP800-131A Revision 1 Transition
Validation dates 18.10.2007 , 18.12.2007 , 23.02.2009
Standard FIPS 140-2
Security level 3
Type Hardware
Embodiment Multi-Chip Embedded
Caveat None
Description Decru's Storage Encryption Processor (SEP) is the primary cryptographic and key management engine for Decru DataFort products. Decru DataFort is a wire-speed storage security appliance. DataFort uses hardware-based encryption, authentication, secure access controls, and secure logging to protect networked storage in NAS, SAN, DAS and Tape environments. DataFort can be deployed transparently, with no changes to desktops, servers, applications, or user workflow.
Version (Hardware) P/N 60-000388/A
Version (Firmware) dccn_1_7_10_secure
Vendor [email protected]
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Symmetric Algorithms
AES-256, AES, HMAC, HMAC-SHA-256, HMAC-SHA-512
Asymmetric Algorithms
ECDSA, ECC, Diffie-Hellman
Hash functions
SHA-1, SHA-512, SHA-256
Schemes
Key Exchange, Key agreement, Key Agreement
Randomness
TRNG, PRNG, RNG
Block cipher modes
ECB

Security level
level 3, Level 3

Standards
FIPS 186-2, FIPS PUB 140-2, FIPS 140-2, FIPS PUB 180-2, FIPS PUB 198, FIPS PUB 197, FIPS PUB 186-2

File metadata

Title Decru DataFort LKM SEP Security Policy
Keywords FIPS 140-2 Level 3 Security Policy
Author Robert Sussland
Creation date D:20071203113551-08'00'
Pages 32
Creator Writer
Producer OpenOffice.org 2.0

Heuristics

No heuristics are available for this certificate.

References

No references are available for this certificate.

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 847,
  "dgst": "19e68d9fe08f7c4a",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "RNG#299",
        "SHS#595",
        "HMAC#274",
        "HMAC#212",
        "HMAC#273",
        "ECDSA#53",
        "SHS#596",
        "AES#445",
        "AES#523",
        "SHS#511"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "1.0"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 2
          },
          "ECDSA": {
            "ECDSA": 11
          }
        },
        "FF": {
          "DH": {
            "Diffie-Hellman": 6
          }
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "ECB": {
          "ECB": 3
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {
        "KA": {
          "Key Agreement": 1,
          "Key agreement": 1
        },
        "KEX": {
          "Key Exchange": 1
        }
      },
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "#16": 1,
          "#212": 1,
          "#273": 1,
          "#274": 1,
          "#299": 1,
          "#445": 1,
          "#511": 2,
          "#523": 1,
          "#53": 1,
          "#595": 2,
          "#596": 2
        }
      },
      "fips_certlike": {
        "Certlike": {
          "AES-256": 10,
          "AES-256 (32": 9,
          "HMAC- SHA-1": 3,
          "HMAC-SHA-1": 9,
          "HMAC-SHA-1 (20": 3,
          "HMAC-SHA-1 1": 2,
          "HMAC-SHA-256": 12,
          "HMAC-SHA-256 (32": 3,
          "HMAC-SHA-256 (40": 1,
          "HMAC-SHA-256, 1": 2,
          "HMAC-SHA-512": 7,
          "HMAC-SHA-512 (32": 3,
          "SHA-1": 8,
          "SHA-1, Cert #595": 1,
          "SHA-256": 5,
          "SHA-512": 5,
          "SHA-512, Cert #511": 1
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 3": 1,
          "level 3": 1
        }
      },
      "hash_function": {
        "SHA": {
          "SHA1": {
            "SHA-1": 9
          },
          "SHA2": {
            "SHA-256": 5,
            "SHA-512": 6
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "PRNG": 19
        },
        "RNG": {
          "RNG": 5
        },
        "TRNG": {
          "TRNG": 5
        }
      },
      "side_channel_analysis": {},
      "standard_id": {
        "FIPS": {
          "FIPS 140-2": 4,
          "FIPS 186-2": 1,
          "FIPS PUB 140-2": 5,
          "FIPS PUB 180-2": 4,
          "FIPS PUB 186-2": 3,
          "FIPS PUB 197": 3,
          "FIPS PUB 198": 4
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 1,
            "AES-256": 19
          }
        },
        "constructions": {
          "MAC": {
            "HMAC": 3,
            "HMAC-SHA-256": 9,
            "HMAC-SHA-512": 5
          }
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "policy_metadata": {
      "/Author": "Robert Sussland",
      "/CreationDate": "D:20071203113551-08\u002700\u0027",
      "/Creator": "Writer",
      "/Keywords": "FIPS 140-2 Level 3 Security Policy",
      "/Producer": "OpenOffice.org 2.0",
      "/Title": "Decru DataFort LKM SEP Security Policy",
      "pdf_file_size_bytes": 370605,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "http://www.cs.ucsd.edu/users/mihir/papers/key-distribution.html"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 32
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
    "module_download_ok": true,
    "module_extract_ok": true,
    "policy_convert_ok": true,
    "policy_download_ok": true,
    "policy_extract_ok": true,
    "policy_json_hash": null,
    "policy_pdf_hash": "a028ec107ba03e32e74f4a9defd734ec51774f9c61637d27d917a167495c643d",
    "policy_txt_hash": "5d84cdd1926dbebaaf0c1ed496b3a63896eabdf86efaa04f096f7a185be53a5d"
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "None",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/140crt847.pdf",
    "date_sunset": null,
    "description": "Decru\u0027s Storage Encryption Processor (SEP) is the primary cryptographic and key management engine for Decru DataFort products. Decru DataFort is a wire-speed storage security appliance. DataFort uses hardware-based encryption, authentication, secure access controls, and secure logging to protect networked storage in NAS, SAN, DAS and Tape environments. DataFort can be deployed transparently, with no changes to desktops, servers, applications, or user workflow.",
    "embodiment": "Multi-Chip Embedded",
    "exceptions": null,
    "fw_versions": "dccn_1_7_10_secure",
    "historical_reason": "RNG SP800-131A Revision 1 Transition",
    "hw_versions": "P/N 60-000388/A",
    "level": 3,
    "mentioned_certs": {},
    "module_name": "Decru DataFort LKM SEP v1.0",
    "module_type": "Hardware",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "historical",
    "sw_versions": "40.3 and 40.4",
    "tested_conf": null,
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2007-10-18",
        "lab": "UL Verification Services, Inc.",
        "validation_type": "Initial"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2007-12-18",
        "lab": "",
        "validation_type": "Update"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2009-02-23",
        "lab": "",
        "validation_type": "Update"
      }
    ],
    "vendor": "[email\u00a0protected]",
    "vendor_url": "/cdn-cgi/l/email-protection"
  }
}