Datacryptor® Gig Ethernet and 10 Gig Ethernet

Certificate #3041

Webpage information

Status historical
Historical reason SP 800-56Arev3 transition
Validation dates 11.10.2017
Standard FIPS 140-2
Security level 3
Type Hardware
Embodiment Multi-Chip Stand Alone
Caveat When configured as indicated in Section 1 of the Security Policy with the Point-Point license
Exceptions
  • Mitigation of Other Attacks: N/A
Description The Datacryptor® 1 Gig Ethernet and 10 Gig Ethernet are rack-mountable multi-chip standalone cryptographic modules which facilitate secure data transmission across public Ethernet Layer 2 networks. The 1 Gig and 10 Gig units use an standard SFP/XFP optical transceivers for their host and network connections. The Datacryptor® offers user verification services via ECDSA enabled X.509 v.3 certificates, key management based on a Elliptic Curve Diffie-Hellman key agreement scheme, and AES encryption of data passing over public networks.
Version (Hardware) 1600x433, Rev. 01, Rev. 02 and 1600x437, Rev. 01, Rev. 02
Version (Firmware) 5.0 and 5.1
Vendor Thales e-Security Inc.
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Symmetric Algorithms
AES-256, AES, CMAC
Asymmetric Algorithms
ECDH, ECDSA, ECC, Diffie-Hellman
Hash functions
SHA-1, SHA-384
Schemes
MAC, Key Agreement
Randomness
PRNG, DRBG, RNG, RBG
Elliptic Curves
P-384

Vendor
Thales

Security level
Level 3, level 3
Side-channel analysis
physical probing

Standards
FIPS 140-2, FIPS140-2, X.509

File metadata

Author R Saunders
Creation date D:20171004135518-04'00'
Modification date D:20171004135545-04'00'
Pages 29
Creator Acrobat PDFMaker 11 for Word
Producer Adobe PDF Library 11.0

Heuristics

No heuristics are available for this certificate.

References

No references are available for this certificate.

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 3041,
  "dgst": "33c64aa73045b193",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "SHS#1808",
        "SHS#1764",
        "DRBG#188",
        "AES#2014",
        "ECDSA#304",
        "AES#2061",
        "KBKDF#1",
        "KAS#34",
        "AES#2030",
        "ECDSA#289",
        "AES#2063"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "5.1",
        "5.0"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 1
          },
          "ECDH": {
            "ECDH": 15
          },
          "ECDSA": {
            "ECDSA": 17
          }
        },
        "FF": {
          "DH": {
            "Diffie-Hellman": 12
          }
        }
      },
      "certification_process": {},
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {
        "KA": {
          "Key Agreement": 1
        },
        "MAC": {
          "MAC": 3
        }
      },
      "device_model": {},
      "ecc_curve": {
        "NIST": {
          "P-384": 8
        }
      },
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "#1": 1,
          "#1764": 1,
          "#1808": 1,
          "#188": 6,
          "#2014": 1,
          "#2030": 1,
          "#2061": 1,
          "#2063": 1,
          "#289": 1,
          "#304": 1,
          "#34": 1
        }
      },
      "fips_certlike": {
        "Certlike": {
          "AES #2014": 1,
          "AES #2030": 1,
          "AES #2061": 1,
          "AES #2063": 1,
          "AES (256": 5,
          "AES-256": 7,
          "DRBG #188": 1,
          "DRBG (cert #188": 5,
          "SHA-1": 1,
          "SHA-384": 4,
          "SHS #1764": 1,
          "SHS #1808": 1
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 3": 3,
          "level 3": 1
        }
      },
      "hash_function": {
        "SHA": {
          "SHA1": {
            "SHA-1": 1
          },
          "SHA2": {
            "SHA-384": 4
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 16,
          "PRNG": 1
        },
        "RNG": {
          "RBG": 1,
          "RNG": 3
        }
      },
      "side_channel_analysis": {
        "SCA": {
          "physical probing": 1
        }
      },
      "standard_id": {
        "FIPS": {
          "FIPS 140-2": 15,
          "FIPS140-2": 1
        },
        "X509": {
          "X.509": 9
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 12,
            "AES-256": 7
          }
        },
        "constructions": {
          "MAC": {
            "CMAC": 3
          }
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "Thales": {
          "Thales": 9
        }
      },
      "vulnerability": {}
    },
    "policy_metadata": {
      "/Author": "R Saunders",
      "/Company": "",
      "/CreationDate": "D:20171004135518-04\u002700\u0027",
      "/Creator": "Acrobat PDFMaker 11 for Word",
      "/Keywords": "",
      "/ModDate": "D:20171004135545-04\u002700\u0027",
      "/Producer": "Adobe PDF Library 11.0",
      "/SourceModified": "D:20171004175315",
      "/Subject": "",
      "/Title": "",
      "pdf_file_size_bytes": 636335,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "http://iss.thalesgroup.com/",
          "http://www.nist.gov/cmvp"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 29
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
    "module_download_ok": true,
    "module_extract_ok": true,
    "policy_convert_ok": true,
    "policy_download_ok": true,
    "policy_extract_ok": true,
    "policy_json_hash": null,
    "policy_pdf_hash": "12be35312815d200012e499812afc3931d2921ac067db40f487a0dfd38089c24",
    "policy_txt_hash": "c9afc160ec1cb4533931b577987b1028cb8c49f97ea7d59676f6b6d51163d994"
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "When configured as indicated in Section 1 of the Security Policy with the Point-Point license",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/FIPS140ConsolidatedCertOct2017.pdf",
    "date_sunset": null,
    "description": "The Datacryptor\u00ae 1 Gig Ethernet and 10 Gig Ethernet are rack-mountable multi-chip standalone cryptographic modules which facilitate secure data transmission across public Ethernet Layer 2 networks. The 1 Gig and 10 Gig units use an standard SFP/XFP optical transceivers for their host and network connections. The Datacryptor\u00ae offers user verification services via ECDSA enabled X.509 v.3 certificates, key management based on a Elliptic Curve Diffie-Hellman key agreement scheme, and AES encryption of data passing over public networks.",
    "embodiment": "Multi-Chip Stand Alone",
    "exceptions": [
      "Mitigation of Other Attacks: N/A"
    ],
    "fw_versions": "5.0 and 5.1",
    "historical_reason": "SP 800-56Arev3 transition",
    "hw_versions": "1600x433, Rev. 01, Rev. 02 and 1600x437, Rev. 01, Rev. 02",
    "level": 3,
    "mentioned_certs": {},
    "module_name": "Datacryptor\u00ae Gig Ethernet and 10 Gig Ethernet",
    "module_type": "Hardware",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "historical",
    "sw_versions": null,
    "tested_conf": null,
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2017-10-11",
        "lab": "COACT INC CAFE LAB",
        "validation_type": "Initial"
      }
    ],
    "vendor": "Thales e-Security Inc.",
    "vendor_url": "http://www.thalesesecurity.com"
  }
}