Sansec HSM Cryptographic Module

Certificate #4154

Webpage information

Status active
Validation dates 15.02.2022
Sunset date 21-09-2026
Standard FIPS 140-2
Security level 3
Type Hardware
Embodiment Multi-Chip Stand Alone
Caveat When operated in FIPS mode
Exceptions
  • Mitigation of Other Attacks: N/A
Description The Sansec Hardware Security Module (HSM) is a hardware cryptographic module that provides data encryption, data decryption, signature generation, signature verification, message digest, message authentication code (MAC), random number generation and key management services to business systems.
Version (Hardware) SecHSM V2-1 (AC) and SecHSM V2-1 (DC)
Version (Firmware) v3.02.0025
Vendor Sansec Technology Co., Ltd.
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Symmetric Algorithms
AES, AES256, AES-256, CAST, RC2, RC4, RC5, DES, Triple-DES, TDEA, ARIA, SM4, SEED, HMAC, HMAC-SHA-256, CMAC
Asymmetric Algorithms
ECDSA, ECIES, ECC, DH, Diffie-Hellman, DSA
Hash functions
SHA-1, SHA-256, SHA-224, SHA-384, SHA-512, SHA256, SHA-2, SHA-3, SHA3-224, SHA3-256, SHA3-384, SHA3-512
Schemes
MAC
Randomness
DRBG, RNG
Elliptic Curves
P-192, P-224, P-256, P-384, P-521, K-163, B-163, K-283, K-409, K-571, B-283, B-409, B-571, K-233, B-233
Block cipher modes
ECB, CBC, CTR, CFB, OFB, GCM, CCM, XTS

JavaCard API constants
SM2
Trusted Execution Environments
SE

Security level
Level 3, Level 1, Level 9
Side-channel analysis
physical tampering

Standards
FIPS 140-2, FIPS PUB 140-2, FIPS197, FIPS 186-4, FIPS186-4, FIPS198-1, FIPS180-4, FIPS 202, FIPS140-2, PKCS#1

File metadata

Title Microsoft Word - SansecHSM-SecurityPolicy_v1.5.docx
Creation date D:20220107173557Z00'00'
Modification date D:20220107173557Z00'00'
Pages 46
Creator Word
Producer macOS Version 11.6.2 (Build 20G314) Quartz PDFContext

Heuristics

No heuristics are available for this certificate.

References

No references are available for this certificate.

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 4154,
  "dgst": "41ef109e70a58a12",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "SHS#A954",
        "DSA#A968",
        "CVL#A967",
        "DRBG#A963",
        "AES#A1011",
        "KTS#A955",
        "SHA-3#A953",
        "AES#A961",
        "AES#A959",
        "Triple-DES#A956",
        "KTS#A962",
        "AES#A965",
        "AES#A960",
        "RSA#A1008",
        "ECDSA#A967",
        "RSA#A966",
        "Triple-DES#A960",
        "AES#A955",
        "KBKDF#A964",
        "HMAC#A962"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "3.02.0025"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 1
          },
          "ECDSA": {
            "ECDSA": 43
          },
          "ECIES": {
            "ECIES": 6
          }
        },
        "FF": {
          "DH": {
            "DH": 2,
            "Diffie-Hellman": 10
          },
          "DSA": {
            "DSA": 32
          }
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 7
        },
        "CCM": {
          "CCM": 9
        },
        "CFB": {
          "CFB": 3
        },
        "CTR": {
          "CTR": 6
        },
        "ECB": {
          "ECB": 20
        },
        "GCM": {
          "GCM": 12
        },
        "OFB": {
          "OFB": 5
        },
        "XTS": {
          "XTS": 8
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {
        "MAC": {
          "MAC": 6
        }
      },
      "device_model": {},
      "ecc_curve": {
        "NIST": {
          "B-163": 3,
          "B-233": 2,
          "B-283": 4,
          "B-409": 4,
          "B-571": 6,
          "K-163": 3,
          "K-233": 4,
          "K-283": 4,
          "K-409": 4,
          "K-571": 4,
          "P-192": 10,
          "P-224": 8,
          "P-256": 12,
          "P-384": 8,
          "P-521": 8
        }
      },
      "eval_facility": {
        "atsec": {
          "atsec": 46
        }
      },
      "fips_cert_id": {},
      "fips_certlike": {
        "Certlike": {
          "AES-256": 3,
          "AES256": 1,
          "Cert# AES": 1,
          "Cert# DRBG": 1,
          "Cert# SHS": 1,
          "HMAC SHA-256 256": 2,
          "HMAC SHA256": 1,
          "HMAC-SHA- 256": 2,
          "HMAC-SHA-256": 14,
          "HMAC-SHA256": 2,
          "PKCS#1": 3,
          "RSA PKCS#1": 1,
          "SHA- 256": 1,
          "SHA-1": 13,
          "SHA-2": 1,
          "SHA-224": 14,
          "SHA-256": 33,
          "SHA-3": 2,
          "SHA-384": 16,
          "SHA-512": 9,
          "SHA-512 1024": 3,
          "SHA-512 112": 1,
          "SHA-512 2048": 2,
          "SHA-512 2048 and 3072": 1,
          "SHA256": 1,
          "SHA3-224": 2,
          "SHA3-256": 2,
          "SHA3-384": 2,
          "SHA3-512": 2
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 1": 1,
          "Level 3": 3,
          "Level 9": 1
        }
      },
      "hash_function": {
        "SHA": {
          "SHA1": {
            "SHA-1": 13
          },
          "SHA2": {
            "SHA-2": 1,
            "SHA-224": 14,
            "SHA-256": 33,
            "SHA-384": 16,
            "SHA-512": 16,
            "SHA256": 1
          },
          "SHA3": {
            "SHA-3": 2,
            "SHA3-224": 2,
            "SHA3-256": 2,
            "SHA3-384": 2,
            "SHA3-512": 2
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {
        "curves": {
          "SM2": 25
        }
      },
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 45
        },
        "RNG": {
          "RNG": 1
        }
      },
      "side_channel_analysis": {
        "FI": {
          "physical tampering": 1
        }
      },
      "standard_id": {
        "FIPS": {
          "FIPS 140-2": 14,
          "FIPS 186-4": 3,
          "FIPS 202": 1,
          "FIPS PUB 140-2": 2,
          "FIPS140-2": 1,
          "FIPS180-4": 2,
          "FIPS186-4": 5,
          "FIPS197": 3,
          "FIPS198-1": 2
        },
        "PKCS": {
          "PKCS#1": 2
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 63,
            "AES-256": 3,
            "AES256": 1
          },
          "CAST": {
            "CAST": 4
          },
          "RC": {
            "RC2": 4,
            "RC4": 4,
            "RC5": 4
          }
        },
        "DES": {
          "3DES": {
            "TDEA": 1,
            "Triple-DES": 30
          },
          "DES": {
            "DES": 3
          }
        },
        "constructions": {
          "MAC": {
            "CMAC": 8,
            "HMAC": 18,
            "HMAC-SHA-256": 7
          }
        },
        "miscellaneous": {
          "ARIA": {
            "ARIA": 4
          },
          "SEED": {
            "SEED": 4
          },
          "SM4": {
            "SM4": 5
          }
        }
      },
      "tee_name": {
        "IBM": {
          "SE": 1
        }
      },
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "policy_metadata": {
      "/CreationDate": "D:20220107173557Z00\u002700\u0027",
      "/Creator": "Word",
      "/ModDate": "D:20220107173557Z00\u002700\u0027",
      "/Producer": "macOS Version 11.6.2 (Build 20G314) Quartz PDFContext",
      "/Title": "Microsoft Word - SansecHSM-SecurityPolicy_v1.5.docx",
      "pdf_file_size_bytes": 2276093,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 46
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
    "module_download_ok": true,
    "module_extract_ok": true,
    "policy_convert_ok": true,
    "policy_download_ok": true,
    "policy_extract_ok": true,
    "policy_json_hash": null,
    "policy_pdf_hash": "7768e18b40b6c697fe64c8304ef45f6732eeeb1f60981f8deae06a009e5d287a",
    "policy_txt_hash": "5548bcf75b95b4b08d9d19b2d342d514317fd37055bb53c6e0c5d329f6f443cd"
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "When operated in FIPS mode",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/February 2022_010322_0121_Signed.pdf",
    "date_sunset": "2026-09-21",
    "description": "The Sansec Hardware Security Module (HSM) is a hardware cryptographic module that provides data encryption, data decryption, signature generation, signature verification, message digest, message authentication code (MAC), random number generation and key management services to business systems.",
    "embodiment": "Multi-Chip Stand Alone",
    "exceptions": [
      "Mitigation of Other Attacks: N/A"
    ],
    "fw_versions": "v3.02.0025",
    "historical_reason": null,
    "hw_versions": "SecHSM V2-1 (AC) and SecHSM V2-1 (DC)",
    "level": 3,
    "mentioned_certs": {},
    "module_name": "Sansec HSM Cryptographic Module",
    "module_type": "Hardware",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "active",
    "sw_versions": null,
    "tested_conf": null,
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2022-02-15",
        "lab": "atsec information security corporation",
        "validation_type": "Initial"
      }
    ],
    "vendor": "Sansec Technology Co., Ltd.",
    "vendor_url": "http://en.sansec.com.cn"
  }
}