SafesITe TOP DM GX4 - FIPS with ActivIdentity Digital Identity Applet Suite v2

Certificate #677

Webpage information

Status historical
Historical reason RNG SP800-131A Revision 1 Transition
Validation dates 12.06.2006 , 19.12.2006 , 01.03.2007 , 28.07.2008
Standard FIPS 140-2
Security level 2
Type Hardware
Embodiment Single Chip
Caveat When operated in FIPS mode
Exceptions
  • Roles, Services, and Authentication: Level 3
  • Physical Security: Level 3
  • EMI/EMC: Level 3
Description This module is based on a Gemalto Dual Interface (Contact ISO7816 and Contactless ISO14443) Open OS Smart Card with a large (72K EEPROM) memory, with a cryptographic applet suite V 2.6.1 developed by ActivIdentity. The SmartCard platform has on board Triple DES and RSA up to 2048 algorithms and provides X9.31 on board key generation. The Applet Suite supports management of 3DES keys and PINs, and provides services for authentication, access control, generic container and PKI . The module conforms to Java Card 2.2.1, Global Platform 2.1.1 and GSC/IS 2.1 standards.
Version (Hardware) GCX4-M2569420, GXP4-M2569430, GCX4-M2569422 and GCX4-A1004155
Version (Firmware) GCX4-FIPS EI07 and GXP4-FIPS EI07, Applet Versions: ACA v2.6.1, PKI/GC v2.6.1, ASC library package v2.6.1; ACA v2.6.2, PKI/GC v2.6.2, ASC library package v2.6.2
Vendor Gemalto
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Symmetric Algorithms
AES, DES, Triple-DES, TDES, KMAC
Hash functions
SHA-1
Schemes
MAC
Randomness
PRNG, RNG
Block cipher modes
ECB, CBC

Trusted Execution Environments
T6
Vendor
Gemalto

Security level
Level 2, Level 3
Side-channel analysis
Timing Attacks
Certification process
out of scope, against FIPS 140-2 requirements along with the shared interfaces they invoke. Such applets are out of scope for this Security Policy. 6 GemCombiXpresso R4 E72 PK - FIPS with ActivIdentity Digital Identity

Standards
FIPS140-2, FIPS 140-2, PKCS#1, PKCS #1, ISO/IEC 7816-2, ISO/IEC 7816-3, ISO/IEC 7816-4, ISO/IEC 14443-2, ISO/IEC 14443-3, ISO/IEC 14443-4

File metadata

Title Gemplus and ActivCard merged Security Policy
Author gwolfson
Creation date D:20080702153334
Modification date D:20080702153334
Pages 31
Creator PDFCreator Version 0.8.0
Producer AFPL Ghostscript 8.14

Heuristics

No heuristics are available for this certificate.

References

No references are available for this certificate.

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 677,
  "dgst": "2782526eaa0c5c25",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "Triple-DES MAC#412",
        "RNG#168",
        "RSA#119",
        "Triple-DES#412",
        "AES#355",
        "SHS#427"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "2.6.2",
        "2.6.1"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {},
      "certification_process": {
        "OutOfScope": {
          "against FIPS 140-2 requirements along with the shared interfaces they invoke. Such applets are out of scope for this Security Policy. 6 GemCombiXpresso R4 E72 PK - FIPS with ActivIdentity Digital Identity": 1,
          "out of scope": 1
        }
      },
      "cipher_mode": {
        "CBC": {
          "CBC": 9
        },
        "ECB": {
          "ECB": 8
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {
        "MAC": {
          "MAC": 15
        }
      },
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "#1": 1
        }
      },
      "fips_certlike": {
        "Certlike": {
          "PKCS #1": 1,
          "PKCS#1": 4,
          "RSA PKCS #1": 1,
          "SHA-1": 7
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 2": 3,
          "Level 3": 1
        }
      },
      "hash_function": {
        "SHA": {
          "SHA1": {
            "SHA-1": 7
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "PRNG": 4
        },
        "RNG": {
          "RNG": 2
        }
      },
      "side_channel_analysis": {
        "SCA": {
          "Timing Attacks": 1
        }
      },
      "standard_id": {
        "FIPS": {
          "FIPS 140-2": 8,
          "FIPS140-2": 6
        },
        "ISO": {
          "ISO/IEC 14443-2": 1,
          "ISO/IEC 14443-3": 1,
          "ISO/IEC 14443-4": 1,
          "ISO/IEC 7816-2": 1,
          "ISO/IEC 7816-3": 1,
          "ISO/IEC 7816-4": 1
        },
        "PKCS": {
          "PKCS #1": 1,
          "PKCS#1": 2
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 3
          }
        },
        "DES": {
          "3DES": {
            "TDES": 32,
            "Triple-DES": 4
          },
          "DES": {
            "DES": 2
          }
        },
        "constructions": {
          "MAC": {
            "KMAC": 1
          }
        }
      },
      "tee_name": {
        "other": {
          "T6": 2
        }
      },
      "tls_cipher_suite": {},
      "vendor": {
        "Gemalto": {
          "Gemalto": 32
        }
      },
      "vulnerability": {}
    },
    "policy_metadata": {
      "/Author": "gwolfson",
      "/CreationDate": "D:20080702153334",
      "/Creator": "PDFCreator Version 0.8.0",
      "/Keywords": "",
      "/ModDate": "D:20080702153334",
      "/Producer": "AFPL Ghostscript 8.14",
      "/Subject": "",
      "/Title": "Gemplus and ActivCard merged Security Policy",
      "pdf_file_size_bytes": 358720,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 31
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
    "module_download_ok": true,
    "module_extract_ok": true,
    "policy_convert_ok": true,
    "policy_download_ok": true,
    "policy_extract_ok": true,
    "policy_json_hash": null,
    "policy_pdf_hash": "ec101de2e49874247faee5a26952b9f25fb724aa99ad975e582267fcc3cff25e",
    "policy_txt_hash": "64b4c60a8e799de1c4e87556505f0ec0702f4845d7e3efcbf5b7ab3352cc9087"
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "When operated in FIPS mode",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/140crt677.pdf",
    "date_sunset": null,
    "description": "This module is based on a Gemalto Dual Interface (Contact ISO7816 and Contactless ISO14443) Open OS Smart Card with a large (72K EEPROM) memory, with a cryptographic applet suite V 2.6.1 developed by ActivIdentity. The SmartCard platform has on board Triple DES and RSA up to 2048 algorithms and provides X9.31 on board key generation. The Applet Suite supports management of 3DES keys and PINs, and provides services for authentication, access control, generic container and PKI . The module conforms to Java Card 2.2.1, Global Platform 2.1.1 and GSC/IS 2.1 standards.",
    "embodiment": "Single Chip",
    "exceptions": [
      "Roles, Services, and Authentication: Level 3",
      "Physical Security: Level 3",
      "EMI/EMC: Level 3"
    ],
    "fw_versions": "GCX4-FIPS EI07 and GXP4-FIPS EI07, Applet Versions: ACA v2.6.1, PKI/GC v2.6.1, ASC library package v2.6.1; ACA v2.6.2, PKI/GC v2.6.2, ASC library package v2.6.2",
    "historical_reason": "RNG SP800-131A Revision 1 Transition",
    "hw_versions": "GCX4-M2569420, GXP4-M2569430, GCX4-M2569422 and GCX4-A1004155",
    "level": 2,
    "mentioned_certs": {},
    "module_name": "SafesITe TOP DM GX4 - FIPS with ActivIdentity Digital Identity Applet Suite v2",
    "module_type": "Hardware",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "historical",
    "sw_versions": null,
    "tested_conf": null,
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2006-06-12",
        "lab": "SAIC-VA",
        "validation_type": "Initial"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2006-12-19",
        "lab": "",
        "validation_type": "Update"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2007-03-01",
        "lab": "",
        "validation_type": "Update"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2008-07-28",
        "lab": "",
        "validation_type": "Update"
      }
    ],
    "vendor": "Gemalto",
    "vendor_url": "http://www.gemalto.com"
  }
}