This page was not yet optimized for use on mobile
devices.
Aegis Secure Key 3NX Cryptographic Module
Certificate #3943
Webpage information
Security policy
Symmetric Algorithms
AES, AES-256Asymmetric Algorithms
ECDH, ECDSA, ECC, DH, Diffie-HellmanHash functions
SHA-256Schemes
Key AgreementRandomness
DRBG, RNGElliptic Curves
P-256Block cipher modes
ECB, CBC, XEX, XTSSecurity level
Level 3Certification process
out of scope, module only supports a FIPS Approved mode of operation, therefore a non-compliant configuration is out of scope for this validation. Aegis Secure Key 3NX Cryptographic Module Cryptographic Module SecurityStandards
FIPS 140-2, FIPS PUB 140-2, FIPS 197, FIPS 180-4, FIPS 186-4, SP 800-38A, SP 800-133, SP 800-90A, SP 800-56AFile metadata
| Title | Date |
|---|---|
| Keywords | Apricorn Security Policy |
| Author | Robert Davidosn |
| Creation date | D:20201002164409-07'00' |
| Modification date | D:20201002164416-07'00' |
| Pages | 17 |
| Creator | Acrobat PDFMaker 17 for Word |
| Producer | Adobe PDF Library 15.0 |
Heuristics
No heuristics are available for this certificate.
References
No references are available for this certificate.
Updates Feed
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate was first processed.
Raw data
{
"_type": "sec_certs.sample.fips.FIPSCertificate",
"cert_id": 3943,
"dgst": "2a5f03ab4dc52c45",
"heuristics": {
"_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
"algorithms": {
"_type": "Set",
"elements": [
"SHS#C1029",
"DRBG#C1032",
"ECDSA#C1033",
"AES#C1602",
"AES#C967",
"KAS#C1033"
]
},
"cpe_matches": null,
"direct_transitive_cves": null,
"extracted_versions": {
"_type": "Set",
"elements": [
"1.8"
]
},
"indirect_transitive_cves": null,
"module_processed_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": null,
"indirectly_referenced_by": null,
"indirectly_referencing": null
},
"module_prunned_references": {
"_type": "Set",
"elements": []
},
"policy_processed_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": null,
"indirectly_referenced_by": null,
"indirectly_referencing": null
},
"policy_prunned_references": {
"_type": "Set",
"elements": []
},
"related_cves": null,
"verified_cpe_matches": null
},
"pdf_data": {
"_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
"keywords": {
"asymmetric_crypto": {
"ECC": {
"ECC": {
"ECC": 2
},
"ECDH": {
"ECDH": 11
},
"ECDSA": {
"ECDSA": 1
}
},
"FF": {
"DH": {
"DH": 2,
"Diffie-Hellman": 6
}
}
},
"certification_process": {
"OutOfScope": {
"module only supports a FIPS Approved mode of operation, therefore a non-compliant configuration is out of scope for this validation. Aegis Secure Key 3NX Cryptographic Module Cryptographic Module Security": 1,
"out of scope": 1
}
},
"cipher_mode": {
"CBC": {
"CBC": 1
},
"ECB": {
"ECB": 1
},
"XEX": {
"XEX": 1
},
"XTS": {
"XTS": 3
}
},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {},
"crypto_protocol": {},
"crypto_scheme": {
"KA": {
"Key Agreement": 1
}
},
"device_model": {},
"ecc_curve": {
"NIST": {
"P-256": 12
}
},
"eval_facility": {},
"fips_cert_id": {},
"fips_certlike": {
"Certlike": {
"AES-256": 1,
"SHA-256": 3
}
},
"fips_security_level": {
"Level": {
"Level 3": 12
}
},
"hash_function": {
"SHA": {
"SHA2": {
"SHA-256": 3
}
}
},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {
"PRNG": {
"DRBG": 11
},
"RNG": {
"RNG": 1
}
},
"side_channel_analysis": {},
"standard_id": {
"FIPS": {
"FIPS 140-2": 12,
"FIPS 180-4": 2,
"FIPS 186-4": 1,
"FIPS 197": 1,
"FIPS PUB 140-2": 2
},
"NIST": {
"SP 800-133": 1,
"SP 800-38A": 2,
"SP 800-56A": 9,
"SP 800-90A": 1
}
},
"symmetric_crypto": {
"AES_competition": {
"AES": {
"AES": 13,
"AES-256": 1
}
}
},
"tee_name": {},
"tls_cipher_suite": {},
"vendor": {},
"vulnerability": {}
},
"policy_metadata": {
"/Author": "Robert Davidosn",
"/Company": "Apricorn",
"/CreationDate": "D:20201002164409-07\u002700\u0027",
"/Creator": "Acrobat PDFMaker 17 for Word",
"/Keywords": "Apricorn Security Policy",
"/ModDate": "D:20201002164416-07\u002700\u0027",
"/Producer": "Adobe PDF Library 15.0",
"/SourceModified": "D:20201001223524",
"/Subject": "",
"/Title": "Date",
"pdf_file_size_bytes": 319392,
"pdf_hyperlinks": {
"_type": "Set",
"elements": []
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 17
}
},
"state": {
"_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
"module_download_ok": true,
"module_extract_ok": true,
"policy_convert_ok": true,
"policy_download_ok": true,
"policy_extract_ok": true,
"policy_json_hash": null,
"policy_pdf_hash": "b9423c9f6f973828a86c8eae2cefed4076fdbef6aa86cfdab011043c9b778a77",
"policy_txt_hash": "dc93e53cfe70c77cea4e9435987f4fac3168ea673240ab00e7ddf62a520bd986"
},
"web_data": {
"_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
"caveat": "When configured as specified in Section 11.1 of the Security Policy",
"certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/June 2021_010721_0718.pdf",
"date_sunset": null,
"description": "The Apricorn Aegis Secure Key 3NX and 3NXC is a FIPS 140-2 Level 3 validated hardware encrypted USB 3.1 memory key. Its software-free design allows interface to any host that supports USB and mass storage. Authentication is performed via the embedded keypad and all CSPs (PINs, encryption keys, etc) never leave the device boundary for improved security. The device supports 1 administrator, 1 user and offers a variety of features including forced enrollment, programmable brute force, recovery PINs, 7-16 digit PINs, auto lock, read only modes, and is compatible with Apricorn\u2019s Aegis Configurator.",
"embodiment": "Multi-Chip Stand Alone",
"exceptions": [
"Mitigation of Other Attacks: N/A"
],
"fw_versions": "1.8",
"historical_reason": "SP 800-56Arev3 transition",
"hw_versions": "P/Ns ASK3NX-2GB, ASK3NX-4GB, ASK3NX-8GB, ASK3NX-16GB, ASK3NX-32GB, ASK3NX-64GB, ASK3NX-128GB, ASK3NXC-4GB, ASK3NXC-8GB, ASK3NXC-16GB, ASK3NXC-32GB, ASK3NXC-64GB, ASK3NXC-128GB; Hardware Version: Rev A3",
"level": 3,
"mentioned_certs": {},
"module_name": "Aegis Secure Key 3NX Cryptographic Module",
"module_type": "Hardware",
"revoked_link": null,
"revoked_reason": null,
"standard": "FIPS 140-2",
"status": "historical",
"sw_versions": null,
"tested_conf": null,
"validation_history": [
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2021-06-07",
"lab": "UL Verification Services, Inc.",
"validation_type": "Initial"
}
],
"vendor": "Apricorn",
"vendor_url": "http://www.apricorn.com/"
}
}