{"_type": "sec_certs.sample.fips.FIPSCertificate", "dgst": "4aeb7ad6d5d37a04", "cert_id": 5432, "web_data": {"_type": "sec_certs.sample.fips.FIPSCertificate.WebData", "module_name": "CN Series Encryptors", "validation_history": [{"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry", "date": "2026-07-21", "validation_type": "Initial", "lab": "Lightship Security, Inc."}], "vendor_url": "https://www.senetas.com", "vendor": "Senetas Corporation Ltd, distributed by Thales SA (SafeNet)", "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/July 2026_040826_0807.pdf", "module_type": "Hardware", "standard": "FIPS 140-3", "status": "active", "level": 3, "caveat": "When installed, initialized and configured as specified in Section 11 of the Security Policy", "exceptions": ["Operational environment: N/A", "Non-invasive security: N/A"], "embodiment": "MultiChipStand", "description": "The CN4010, CN4020, CN6010, CN6100, CN6110, CN6140, CN9100 and CN9120 are high-speed hardware encryption platforms that secure data over twisted-pair and optical Ethernet networks. The modules support line rates from 10Mb/s to 100Gb/s. All models except CN4010 are equipped with pluggable transceivers to support a variety of optical network interfaces. Data privacy is provided by FIPS approved AES algorithms in CFB, CTR and GCM modes. Additional transmission security is provided via TRANSEC (Traffic Flow Security) which can be used to remove patterns in network traffic and prevent traffic analysis attacks.", "tested_conf": null, "hw_versions": null, "fw_versions": null, "sw_versions": null, "mentioned_certs": {}, "historical_reason": null, "date_sunset": "2029-11-05", "revoked_reason": null, "revoked_link": null}, "pdf_data": {"_type": "sec_certs.sample.fips.FIPSCertificate.PdfData", "keywords": {"fips_cert_id": {}, "fips_security_level": {"Level": {"Level 3": 3, "Level 1": 1}}, "fips_certlike": {"Certlike": {"HMAC-SHA-1": 4, "HMAC-SHA256": 2, "HMAC SHA-256": 1, "HMAC2": 4, "HMAC SHA-1": 1, "HMAC-SHA1": 2, "HMAC-SHA- 256": 4, "HMAC-SHA- 1": 2, "SHA2-256": 23, "SHA2-384": 8, "SHA2-512": 7, "SHA-1": 5, "SHA3-256": 2, "SHA-256": 13, "SHA-512": 3, "SHA-384": 6, "RSA2": 1, "RSA5": 4, "RSA 2048": 1, "- PKCS 1": 2, "AES-128": 2, "AES-256": 6, "AES 256": 1, "DRBG 440": 1, "PKCS 1": 2}}, "vendor": {"Thales": {"Thales SA": 5}}, "eval_facility": {}, "symmetric_crypto": {"AES_competition": {"AES": {"AES": 22, "AES-128": 2, "AES-256": 6}, "CAST": {"CAST": 136}}, "DES": {"DES": {"DES": 1}, "3DES": {"TDEA": 1, "Triple-DES": 7}}, "constructions": {"MAC": {"HMAC": 17}}}, "asymmetric_crypto": {"RSA": {"RSA 2048": 1, "RSA-OAEP": 1}, "ECC": {"ECDH": {"ECDH": 42, "ECDHE": 1}, "ECDSA": {"ECDSA": 49}, "ECC": {"ECC": 2}}, "FF": {"DH": {"DH": 11, "Diffie-Hellman": 2}}}, "pq_crypto": {}, "hash_function": {"SHA": {"SHA1": {"SHA-1": 5}, "SHA2": {"SHA-256": 14, "SHA-512": 2, "SHA-384": 6}, "SHA3": {"SHA3-256": 2}}}, "crypto_scheme": {"MAC": {"MAC": 19}, "KEM": {"KEM": 1}, "KEX": {"Key Exchange": 59}, "KA": {"Key Agreement": 11}}, "crypto_protocol": {"SSH": {"SSH": 143}, "TLS": {"SSL": {"SSL": 1}, "TLS": {"TLS": 172, "TLS v1.2": 4, "TLSv1.2": 3, "TLS 1.2": 2}}}, "randomness": {"TRNG": {"TRNG": 1}, "PRNG": {"DRBG": 52}, "RNG": {"RNG": 3, "RBG": 3}}, "cipher_mode": {"CBC": {"CBC": 1}, "CTR": {"CTR": 5}, "CFB": {"CFB": 5}, "GCM": {"GCM": 12}}, "ecc_curve": {"NIST": {"P-256": 61, "P-384": 28, "P-521": 71, "NIST P-256": 9, "NIST P-521": 1}}, "crypto_engine": {}, "tls_cipher_suite": {}, "crypto_library": {"OpenSSL": {"OpenSSL": 2}}, "vulnerability": {}, "side_channel_analysis": {"SCA": {"physical probing": 1}}, "device_model": {}, "tee_name": {"AMD": {"PSP": 14}}, "os_name": {}, "cplc_data": {}, "ic_data_group": {}, "standard_id": {"FIPS": {"FIPS 140-3": 111, "FIPS186-4": 28, "FIPS 186-4": 7, "FIPS 198-1": 5, "FIPS 180-4": 5, "FIPS 202": 1}, "NIST": {"SP 800-38A": 27, "SP 800-38D": 22, "SP 800-90A": 1, "SP 800-56A": 4, "SP 800-135": 4, "SP 800-108": 3, "SP 800-56B": 1, "SP 800-67": 1, "SP 800-90B": 4, "NIST SP 800-140F": 1, "SP 800-131": 1, "SP 800-90": 1, "NIST SP 800-88": 1}, "PKCS": {"PKCS 1": 2}, "RFC": {"RFC 2459": 1, "RFC7627": 3, "RFC 5246": 1}, "ISO": {"ISO/IEC 19790:2012": 2, "ISO/IEC 24759:2017": 1}, "X509": {"X.509": 16}}, "javacard_version": {}, "javacard_api_const": {}, "javacard_packages": {}, "certification_process": {"OutOfScope": {"out of scope": 1, "5.0/5.5.1 only \u2013 the loading of any other firmware version on the specified CN Series Encryptors is out of scope of this FIPS 140-3 validation. This Security Policy contains only non-proprietary information. Any": 1}}}, "policy_metadata": {"pdf_file_size_bytes": 1917587, "pdf_is_encrypted": false, "pdf_number_of_pages": 92, "/Producer": "Microsoft\u00ae Word for Microsoft 365", "/Creator": "Microsoft\u00ae Word for Microsoft 365", "/CreationDate": "D:20260710120131-04'00'", "/ModDate": "D:20260710120131-04'00'", "pdf_hyperlinks": {"_type": "Set", "elements": ["https://www.senetas.com/", "http://www.nist.gov/cmvp"]}}}, "heuristics": {"_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics", "algorithms": {"_type": "Set", "elements": ["HMAC-SHA2-384A3451", "KTS-IFCA3451", "KAS-ECC Sp800-56Ar3A3451", "RSA SigGen (FIPS186-4)A3451", "SHA2-256A3451", "TLS v1.2 KDF RFC7627A3451", "AES-GCMA3549", "TDES-CFB8A3451", "SHA-1A3451", "ECDSA SigVer (FIPS186-4)A3451", "SHA2-384A3451", "RSA SigVer (FIPS186-4)A3451", "HMAC-SHA-1A3451", "AES-CBCA3451", "KDF SSHA3451", "ECDSA SigGen (FIPS186-4)A3451", "Safe Primes Key GenerationA3451", "SHA2-512A3451", "RSA KeyGen (FIPS186-4)A3451", "KDF SP800-108A3451", "HMAC-SHA2-256A3451", "SHA3-256A3449", "HMAC-SHA2-512A3451", "AES-CTRA3549", "Hash DRBGA3451", "Safe Primes Key VerificationA3451", "KAS-FFC Sp800-56Ar3A3451", "ECDSA KeyVer (FIPS186-4)A3451", "ECDSA KeyGen (FIPS186-4)A3451", "KDF TLSA3451", "KDF SNMPA3451", "AES-CFB128A3549"]}, "extracted_versions": {"_type": "Set", "elements": ["-"]}, "cpe_matches": null, "verified_cpe_matches": null, "related_cves": null, "policy_prunned_references": {"_type": "Set", "elements": []}, "module_prunned_references": {"_type": "Set", "elements": []}, "policy_processed_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "module_processed_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "direct_transitive_cves": null, "indirect_transitive_cves": null}, "state": {"_type": "sec_certs.sample.fips.InternalState", "module": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": null, "txt_hash": null, "json_hash": null}, "policy": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": "0038d9cdf19af808379e68cbf488162653d459c9c65c7c440eef6e77b085d48f", "txt_hash": "2a3139a57a4eab3d41aa22d3173c9cf173a20c890987c0ede10461df27a79a5a", "json_hash": null}}}