This page was not yet optimized for use on mobile devices.
SafesITe TOP DM GX4 - FIPS with ActivIdentity Digital Identity Applet Suite v2
Certificate details
| Certificate ID | #677 |
|---|---|
| Status | historical |
| Historical reason | RNG SP800-131A Revision 1 Transition |
| Validation dates | 12.06.2006 , 19.12.2006 , 01.03.2007 , 28.07.2008 |
| Standard | FIPS 140-2 |
| Security level | 2 |
| Type | Hardware |
| Embodiment | Single Chip |
| Caveat | When operated in FIPS mode |
| Exceptions |
|
| Description | This module is based on a Gemalto Dual Interface (Contact ISO7816 and Contactless ISO14443) Open OS Smart Card with a large (72K EEPROM) memory, with a cryptographic applet suite V 2.6.1 developed by ActivIdentity. The SmartCard platform has on board Triple DES and RSA up to 2048 algorithms and provides X9.31 on board key generation. The Applet Suite supports management of 3DES keys and PINs, and provides services for authentication, access control, generic container and PKI . The module conforms to Java Card 2.2.1, Global Platform 2.1.1 and GSC/IS 2.1 standards. |
| Version (Hardware) | GCX4-M2569420, GXP4-M2569430, GCX4-M2569422 and GCX4-A1004155 |
| Version (Firmware) | GCX4-FIPS EI07 and GXP4-FIPS EI07, Applet Versions: ACA v2.6.1, PKI/GC v2.6.1, ASC library package v2.6.1; ACA v2.6.2, PKI/GC v2.6.2, ASC library package v2.6.2 |
| Vendor | Gemalto http://www.gemalto.com |
| Lab | SAIC-VA |
| References | This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates. |
Security policy
Extracted keywords
Symmetric Algorithms
AES, DES, Triple-DES, TDES, KMACHash functions
SHA-1Schemes
MACRandomness
PRNG, RNGBlock cipher modes
ECB, CBCTrusted Execution Environments
T6Vendor
GemaltoSecurity level
Level 2, Level 3Side-channel analysis
Timing AttacksCertification process
out of scope, against FIPS 140-2 requirements along with the shared interfaces they invoke. Such applets are out of scope for this Security Policy. 6 GemCombiXpresso R4 E72 PK - FIPS with ActivIdentity Digital IdentityAutomated analysis
Automated inference - use with caution
All attributes shown in this section (e.g., links between certificates, products, vendors, and known CVEs) are generated by automated heuristics and have not been reviewed by humans. These methods can produce false positives or false negatives and should not be treated as definitive without independent verification. This applies equally to the Cross-references section below. If you want to know more about how this data is computed and how reliable it is, see our documentation on automated analysis. If you believe any information here is inaccurate or harmful, please submit feedback.No automatically derived data are available in this section.
Cross-references
No references are available for this certificate.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate was first processed.
{
"_type": "sec_certs.sample.fips.FIPSCertificate",
"cert_id": 677,
"dgst": "2782526eaa0c5c25",
"heuristics": {
"_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
"algorithms": {
"_type": "Set",
"elements": [
"Triple-DES MAC#412",
"RNG#168",
"RSA#119",
"Triple-DES#412",
"AES#355",
"SHS#427"
]
},
"cpe_matches": null,
"direct_transitive_cves": null,
"extracted_versions": {
"_type": "Set",
"elements": [
"2.6.2",
"2.6.1"
]
},
"indirect_transitive_cves": null,
"module_processed_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": null,
"indirectly_referenced_by": null,
"indirectly_referencing": null
},
"module_prunned_references": {
"_type": "Set",
"elements": []
},
"policy_processed_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": null,
"indirectly_referenced_by": null,
"indirectly_referencing": null
},
"policy_prunned_references": {
"_type": "Set",
"elements": []
},
"related_cves": null,
"verified_cpe_matches": null
},
"pdf_data": {
"_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
"keywords": {
"asymmetric_crypto": {},
"certification_process": {
"OutOfScope": {
"against FIPS 140-2 requirements along with the shared interfaces they invoke. Such applets are out of scope for this Security Policy. 6 GemCombiXpresso R4 E72 PK - FIPS with ActivIdentity Digital Identity": 1,
"out of scope": 1
}
},
"cipher_mode": {
"CBC": {
"CBC": 9
},
"ECB": {
"ECB": 8
}
},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {},
"crypto_protocol": {},
"crypto_scheme": {
"MAC": {
"MAC": 15
}
},
"device_model": {},
"ecc_curve": {},
"eval_facility": {},
"fips_cert_id": {
"Cert": {
"#1": 1
}
},
"fips_certlike": {
"Certlike": {
"PKCS #1": 1,
"PKCS#1": 4,
"RSA PKCS #1": 1,
"SHA-1": 7
}
},
"fips_security_level": {
"Level": {
"Level 2": 3,
"Level 3": 1
}
},
"hash_function": {
"SHA": {
"SHA1": {
"SHA-1": 7
}
}
},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {
"PRNG": {
"PRNG": 4
},
"RNG": {
"RNG": 2
}
},
"side_channel_analysis": {
"SCA": {
"Timing Attacks": 1
}
},
"standard_id": {
"FIPS": {
"FIPS 140-2": 8,
"FIPS140-2": 6
},
"ISO": {
"ISO/IEC 14443-2": 1,
"ISO/IEC 14443-3": 1,
"ISO/IEC 14443-4": 1,
"ISO/IEC 7816-2": 1,
"ISO/IEC 7816-3": 1,
"ISO/IEC 7816-4": 1
},
"PKCS": {
"PKCS #1": 1,
"PKCS#1": 2
}
},
"symmetric_crypto": {
"AES_competition": {
"AES": {
"AES": 3
}
},
"DES": {
"3DES": {
"TDES": 32,
"Triple-DES": 4
},
"DES": {
"DES": 2
}
},
"constructions": {
"MAC": {
"KMAC": 1
}
}
},
"tee_name": {
"other": {
"T6": 2
}
},
"tls_cipher_suite": {},
"vendor": {
"Gemalto": {
"Gemalto": 32
}
},
"vulnerability": {}
},
"policy_metadata": {
"/Author": "gwolfson",
"/CreationDate": "D:20080702153334",
"/Creator": "PDFCreator Version 0.8.0",
"/Keywords": "",
"/ModDate": "D:20080702153334",
"/Producer": "AFPL Ghostscript 8.14",
"/Subject": "",
"/Title": "Gemplus and ActivCard merged Security Policy",
"pdf_file_size_bytes": 358720,
"pdf_hyperlinks": {
"_type": "Set",
"elements": []
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 31
}
},
"state": {
"_type": "sec_certs.sample.fips.InternalState",
"module": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"json_hash": null,
"source_hash": null,
"txt_hash": null
},
"policy": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"json_hash": null,
"source_hash": "ec101de2e49874247faee5a26952b9f25fb724aa99ad975e582267fcc3cff25e",
"txt_hash": "64b4c60a8e799de1c4e87556505f0ec0702f4845d7e3efcbf5b7ab3352cc9087"
}
},
"web_data": {
"_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
"caveat": "When operated in FIPS mode",
"certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/140crt677.pdf",
"date_sunset": null,
"description": "This module is based on a Gemalto Dual Interface (Contact ISO7816 and Contactless ISO14443) Open OS Smart Card with a large (72K EEPROM) memory, with a cryptographic applet suite V 2.6.1 developed by ActivIdentity. The SmartCard platform has on board Triple DES and RSA up to 2048 algorithms and provides X9.31 on board key generation. The Applet Suite supports management of 3DES keys and PINs, and provides services for authentication, access control, generic container and PKI . The module conforms to Java Card 2.2.1, Global Platform 2.1.1 and GSC/IS 2.1 standards.",
"embodiment": "Single Chip",
"exceptions": [
"Roles, Services, and Authentication: Level 3",
"Physical Security: Level 3",
"EMI/EMC: Level 3"
],
"fw_versions": "GCX4-FIPS EI07 and GXP4-FIPS EI07, Applet Versions: ACA v2.6.1, PKI/GC v2.6.1, ASC library package v2.6.1; ACA v2.6.2, PKI/GC v2.6.2, ASC library package v2.6.2",
"historical_reason": "RNG SP800-131A Revision 1 Transition",
"hw_versions": "GCX4-M2569420, GXP4-M2569430, GCX4-M2569422 and GCX4-A1004155",
"level": 2,
"mentioned_certs": {},
"module_name": "SafesITe TOP DM GX4 - FIPS with ActivIdentity Digital Identity Applet Suite v2",
"module_type": "Hardware",
"revoked_link": null,
"revoked_reason": null,
"standard": "FIPS 140-2",
"status": "historical",
"sw_versions": null,
"tested_conf": null,
"validation_history": [
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2006-06-12",
"lab": "SAIC-VA",
"validation_type": "Initial"
},
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2006-12-19",
"lab": "",
"validation_type": "Update"
},
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2007-03-01",
"lab": "",
"validation_type": "Update"
},
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2008-07-28",
"lab": "",
"validation_type": "Update"
}
],
"vendor": "Gemalto",
"vendor_url": "http://www.gemalto.com"
}
}