This page was not yet optimized for use on mobile
devices.
EXP1000 Hardware Security Module
Certificate #3346
Webpage information
Security policy
Symmetric Algorithms
AES, AES-256, AES-128, DES, Triple-DES, HMAC, HMAC-SHA-256, CMACAsymmetric Algorithms
RSA 1024, RSA 2048, ECDH, ECDSA, ECC, DHHash functions
SHA-1, SHA-224, SHA-256, SHA-384, SHA-512, MD5, RIPEMD-160Schemes
MAC, Key Exchange, Key AgreementProtocols
SSL, TLSRandomness
DRBG, RNGElliptic Curves
P-192, P-224, P-256, P-384, P-521Block cipher modes
ECB, CBC, CTR, CFB, OFB, GCMTLS cipher suites
TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384, TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA, TLS_RSA_WITH_AES_256_CBC_SHA, TLS_RSA_WITH_AES_128_CBC_SHA, TLS_RSA_WITH_3DES_EDE_CBC_SHA, TLS_DHE_RSA_WITH_AES_256_CBC_SHA, TLS_DHE_RSA_WITH_AES_128_CBC_SHA256, TLS_DHE_RSA_WITH_AES_128_CBC_SHA, TLS_DHE_RSA_WITH_3DES_EDE_CBC_SHASecurity level
Level 3Side-channel analysis
side channel, side-channel, physical tamperingStandards
FIPS 140-2, FIPS 140, FIPS 197, FIPS 186-4, FIPS 198-1, FIPS 180-4, FIPS PUB 140-2, FIPS PUB 180-2, FIPS PUB 198, PKCS #11File metadata
| Title | Microsoft Word - 46n - EXP1000-Security-Policy_FIPS_v1.14.docx |
|---|---|
| Author | lgarcia |
| Creation date | D:20190719075505-07'00' |
| Modification date | D:20190719075505-07'00' |
| Pages | 35 |
| Creator | PScript5.dll Version 5.2.2 |
| Producer | Acrobat Distiller 17.0 (Windows) |
Heuristics
No heuristics are available for this certificate.
References
No references are available for this certificate.
Updates Feed
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate was first processed.
Raw data
{
"_type": "sec_certs.sample.fips.FIPSCertificate",
"cert_id": 3346,
"dgst": "1e454f95d837060f",
"heuristics": {
"_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
"algorithms": {
"_type": "Set",
"elements": [
"CVL#1916",
"Triple-DES#2749",
"RSA#2935",
"KTS#3621",
"SHS#4384",
"KTS#2749",
"AES#5464",
"KBKDF#217",
"ECDSA#1461",
"DRBG#2145",
"HMAC#3621"
]
},
"cpe_matches": null,
"direct_transitive_cves": null,
"extracted_versions": {
"_type": "Set",
"elements": [
"6.2.0.2"
]
},
"indirect_transitive_cves": null,
"module_processed_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": null,
"indirectly_referenced_by": null,
"indirectly_referencing": null
},
"module_prunned_references": {
"_type": "Set",
"elements": []
},
"policy_processed_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": null,
"indirectly_referenced_by": null,
"indirectly_referencing": null
},
"policy_prunned_references": {
"_type": "Set",
"elements": []
},
"related_cves": null,
"verified_cpe_matches": null
},
"pdf_data": {
"_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
"keywords": {
"asymmetric_crypto": {
"ECC": {
"ECC": {
"ECC": 14
},
"ECDH": {
"ECDH": 1
},
"ECDSA": {
"ECDSA": 4
}
},
"FF": {
"DH": {
"DH": 6
}
},
"RSA": {
"RSA 1024": 3,
"RSA 2048": 3
}
},
"certification_process": {},
"cipher_mode": {
"CBC": {
"CBC": 12
},
"CFB": {
"CFB": 1
},
"CTR": {
"CTR": 3
},
"ECB": {
"ECB": 4
},
"GCM": {
"GCM": 1
},
"OFB": {
"OFB": 4
}
},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {},
"crypto_protocol": {
"TLS": {
"SSL": {
"SSL": 2
},
"TLS": {
"TLS": 28
}
}
},
"crypto_scheme": {
"KA": {
"Key Agreement": 2
},
"KEX": {
"Key Exchange": 4
},
"MAC": {
"MAC": 3
}
},
"device_model": {},
"ecc_curve": {
"NIST": {
"P-192": 4,
"P-224": 4,
"P-256": 4,
"P-384": 4,
"P-521": 10
}
},
"eval_facility": {},
"fips_cert_id": {
"Cert": {
"#11": 1,
"#1461": 1,
"#1916": 1,
"#2145": 1,
"#217": 2,
"#2749": 5,
"#2935": 1,
"#3621": 3,
"#4384": 1,
"#5464": 6
}
},
"fips_certlike": {
"Certlike": {
"AES 128, 192": 1,
"AES 128/192/256": 1,
"AES 256": 6,
"AES Cert. #5464": 6,
"AES-128": 1,
"AES-256": 3,
"DRBG Cert. #2145": 1,
"HMAC Cert. #3621": 6,
"HMAC SHA-1": 1,
"HMAC-SHA-1": 6,
"HMAC-SHA-384": 2,
"PKCS #11": 2,
"RSA 1024": 3,
"RSA 2048": 3,
"SHA-1": 9,
"SHA-224": 4,
"SHA-256": 5,
"SHA-384": 5,
"SHA-512": 5
}
},
"fips_security_level": {
"Level": {
"Level 3": 2
}
},
"hash_function": {
"MD": {
"MD5": {
"MD5": 3
}
},
"RIPEMD": {
"RIPEMD-160": 2
},
"SHA": {
"SHA1": {
"SHA-1": 9
},
"SHA2": {
"SHA-224": 4,
"SHA-256": 5,
"SHA-384": 5,
"SHA-512": 5
}
}
},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {
"PRNG": {
"DRBG": 11
},
"RNG": {
"RNG": 3
}
},
"side_channel_analysis": {
"FI": {
"physical tampering": 1
},
"SCA": {
"side channel": 1,
"side-channel": 1
}
},
"standard_id": {
"FIPS": {
"FIPS 140": 1,
"FIPS 140-2": 7,
"FIPS 180-4": 1,
"FIPS 186-4": 2,
"FIPS 197": 1,
"FIPS 198-1": 1,
"FIPS PUB 140-2": 7,
"FIPS PUB 180-2": 1,
"FIPS PUB 198": 1
},
"PKCS": {
"PKCS #11": 1
}
},
"symmetric_crypto": {
"AES_competition": {
"AES": {
"AES": 27,
"AES-128": 1,
"AES-256": 3
}
},
"DES": {
"3DES": {
"Triple-DES": 24
},
"DES": {
"DES": 2
}
},
"constructions": {
"MAC": {
"CMAC": 9,
"HMAC": 12,
"HMAC-SHA-256": 1
}
}
},
"tee_name": {},
"tls_cipher_suite": {
"TLS": {
"TLS_DHE_RSA_WITH_3DES_EDE_CBC_SHA": 1,
"TLS_DHE_RSA_WITH_AES_128_CBC_SHA": 1,
"TLS_DHE_RSA_WITH_AES_128_CBC_SHA256": 1,
"TLS_DHE_RSA_WITH_AES_256_CBC_SHA": 1,
"TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA": 1,
"TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384": 1,
"TLS_RSA_WITH_3DES_EDE_CBC_SHA": 1,
"TLS_RSA_WITH_AES_128_CBC_SHA": 1,
"TLS_RSA_WITH_AES_256_CBC_SHA": 1
}
},
"vendor": {},
"vulnerability": {}
},
"policy_metadata": {
"/Author": "lgarcia",
"/CreationDate": "D:20190719075505-07\u002700\u0027",
"/Creator": "PScript5.dll Version 5.2.2",
"/ModDate": "D:20190719075505-07\u002700\u0027",
"/Producer": "Acrobat Distiller 17.0 (Windows)",
"/Title": "Microsoft Word - 46n - EXP1000-Security-Policy_FIPS_v1.14.docx",
"pdf_file_size_bytes": 1271628,
"pdf_hyperlinks": {
"_type": "Set",
"elements": []
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 35
}
},
"state": {
"_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
"module_download_ok": true,
"module_extract_ok": true,
"policy_convert_ok": true,
"policy_download_ok": true,
"policy_extract_ok": true,
"policy_json_hash": null,
"policy_pdf_hash": "6695619ea9552abe0ef0d1df21f01bf2a6f7ae18755e501398cff01fc3fa095f",
"policy_txt_hash": "031debcc759e41737bc09cdd7a116db9fee5fcaf77703c77a49c05751267fdad"
},
"web_data": {
"_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
"caveat": "When operated in FIPS mode",
"certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/Dec2018Cert.pdf",
"date_sunset": null,
"description": "The EXP1000 is a general purpose cryptographic module incorporated into multiple Futurex products to ensure data confidentiality, integrity, and authenticity. It is designed to meet and exceed compliance mandates and security best practices in environments requiring enterprise-class protection for sensitive information.",
"embodiment": "Multi-Chip Embedded",
"exceptions": null,
"fw_versions": "6.2.0.2",
"historical_reason": "SP 800-56Arev3 transition",
"hw_versions": "P/Ns 9850-0365 Rev10, 9800-2082 Rev 10, 9800-2082 Rev 10A, 9800-2082 Rev 10B, 9800-2082 Rev 10C, 9800-2082 Rev 10D, 9800-2082 Rev 10E, 9800-2082 Rev 11 and 9800-2082 Rev 11A",
"level": 3,
"mentioned_certs": {},
"module_name": "EXP1000 Hardware Security Module",
"module_type": "Hardware",
"revoked_link": null,
"revoked_reason": null,
"standard": "FIPS 140-2",
"status": "historical",
"sw_versions": null,
"tested_conf": null,
"validation_history": [
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2018-12-21",
"lab": "UL Verification Services, Inc.",
"validation_type": "Initial"
},
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2019-07-19",
"lab": "UL Verification Services, Inc.",
"validation_type": "Update"
}
],
"vendor": "Futurex",
"vendor_url": "http://www.futurex.com"
}
}