{"_type": "sec_certs.sample.fips.FIPSCertificate", "dgst": "536b9ac36d9adc0b", "cert_id": 5502, "web_data": {"_type": "sec_certs.sample.fips.FIPSCertificate.WebData", "module_name": "Marvell LS2 HSM Family", "validation_history": [{"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry", "date": "2026-08-25", "validation_type": "Initial", "lab": "Teron Labs"}], "vendor_url": "http://www.marvell.com/products/security-solutions.html", "vendor": "Marvell Semiconductor, Inc.", "certificate_pdf_url": null, "module_type": "Hardware", "standard": "FIPS 140-3", "status": "active", "level": 3, "caveat": "When installed, initialized and configured as specified in Section 11.1 of the Security Policy. When operated in approved mode", "exceptions": ["Operational environment: N/A", "Non-invasive security: N/A", "Mitigation of other attacks: N/A"], "embodiment": "MultiChipEmbed", "description": "The LS2 HSM module is a multi-chip PCIe adapter with firmware. It consists of multiple firmware components, including an operating system, applications exposing services and interfaces related to secure key management, crypto operations, and policy management of the module.", "tested_conf": null, "hw_versions": null, "fw_versions": null, "sw_versions": null, "mentioned_certs": {}, "historical_reason": null, "date_sunset": "2031-08-24", "revoked_reason": null, "revoked_link": null}, "pdf_data": {"_type": "sec_certs.sample.fips.FIPSCertificate.PdfData", "keywords": {"fips_cert_id": {"Cert": {"#2": 2}}, "fips_security_level": {"Level": {"Level 3": 5, "Level 1": 1}}, "fips_certlike": {"Certlike": {"HMAC-SHA-1": 16, "HMAC- SHA-1": 11, "HMAC SHA256": 1, "SHA2-224": 15, "SHA2-256": 21, "SHA2-384": 15, "SHA2-512": 17, "SHA-1": 27, "SHA2- 512": 19, "SHA3-512": 9, "SHA1": 2, "SHA2": 4, "SHA3-224": 6, "SHA3-256": 6, "SHA3-384": 6, "SHA2- 256": 23, "SHA2- 224": 7, "SHA2- 384": 13, "SHA3- 224": 4, "SHA3- 256": 4, "SHA3- 384": 4, "SHA3- 512": 4, "SHA256": 1, "SHA-2": 1, "SHA-3": 2, "RSA 1024": 1, "RSA 2048": 3, "- PKCS 1": 1, "AES-256": 3, "AES256": 3, "AES 256": 2, "DES3": 1, "Certificate RSA": 32, "PKCS 1": 1, "# A7544": 2}}, "vendor": {}, "eval_facility": {}, "symmetric_crypto": {"AES_competition": {"AES": {"AES": 52, "AES-256": 3, "AES256": 3, "AES-": 145}, "CAST": {"CAST": 61}}, "DES": {"DES": {"DES": 9}, "3DES": {"Triple-DES": 11, "TDEA": 4, "TDES": 4}}, "constructions": {"MAC": {"HMAC": 65, "CMAC": 13}}}, "asymmetric_crypto": {"RSA": {"RSA 1024": 1, "RSA 2048": 3, "RSA-2048": 1}, "ECC": {"ECDH": {"ECDH": 7}, "ECDSA": {"ECDSA": 32}, "ECC": {"ECC": 85}}, "FF": {"DH": {"Diffie-Hellman": 3, "DH": 6}, "DSA": {"DSA": 2}}}, "pq_crypto": {"FIPS": {"ML-DSA": 5, "ML_DSA": 2}}, "hash_function": {"SHA": {"SHA1": {"SHA-1": 27, "SHA1": 2}, "SHA2": {"SHA256": 1, "SHA2": 4, "SHA-2": 1}, "SHA3": {"SHA3-512": 9, "SHA3-224": 6, "SHA3-256": 6, "SHA3-384": 6, "SHA-3": 2}}, "PBKDF": {"PBKDF": 13}}, "crypto_scheme": {"MAC": {"MAC": 66}, "KEM": {"KEM": 1}, "KA": {"Key Agreement": 7}}, "crypto_protocol": {"TLS": {"SSL": {"SSL": 1}, "TLS": {"TLS": 53, "TLS 1.2": 5, "TLS v1.2": 5}}}, "randomness": {"PRNG": {"DRBG": 222}, "RNG": {"RNG": 1, "RBG": 7}}, "cipher_mode": {"ECB": {"ECB": 10}, "CBC": {"CBC": 10}, "CTR": {"CTR": 15}, "GCM": {"GCM": 9}, "CCM": {"CCM": 2}}, "ecc_curve": {"NIST": {"P-224": 18, "P-256": 18, "P-384": 16, "P-521": 20, "P-192": 4, "B-233": 1, "B-283": 1, "B-571": 1, "K-233": 1, "K-283": 1, "K-409": 1, "K-571": 1, "K-163": 1, "B-163": 1, "secp256k1": 1}, "Brainpool": {"brainpoolP224r1": 4, "brainpoolP256r1": 4, "brainpoolP320r1": 4, "brainpoolP384r1": 4, "brainpoolP512r1": 4, "brainpoolP160r1": 1}, "ANSSI": {"FRP256v1": 1}, "Curve": {"Curve25519": 1}}, "crypto_engine": {}, "tls_cipher_suite": {"TLS": {"TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256": 3, "TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384": 3}}, "crypto_library": {"OpenSSL": {"OpenSSL": 1}}, "vulnerability": {}, "side_channel_analysis": {"FI": {"physical tampering": 1}}, "device_model": {}, "tee_name": {"AMD": {"PSP": 27}, "IBM": {"SSC": 1}}, "os_name": {}, "cplc_data": {}, "ic_data_group": {}, "standard_id": {"FIPS": {"FIPS 140-3": 8, "FIPS186-4": 18, "FIPS 186-4": 14, "FIPS186-5": 31, "FIPS 186-5": 16, "FIPS 198-1": 18, "FIPS 180-4": 10, "FIPS 202": 8, "FIPS186": 42, "FIPS18": 34, "FIPS140-3": 1, "FIPS PUB 140-3": 1, "FIPS PUB 202": 1}, "NIST": {"SP 800-38A": 7, "SP 800-38C": 3, "SP 800-38B": 7, "SP 800-38D": 9, "SP 800-38F": 10, "SP 800-90A": 3, "SP 800-56A": 4, "SP 800-56C": 3, "SP 800-135": 2, "SP 800-108": 2, "SP 800-56B": 3, "SP 800-67": 2, "SP 800-90B": 1, "SP 800-132": 2, "SP 800-63B": 1, "NIST SP 800-186": 2, "NIST SP 800-131A": 2, "SP 800-131A": 1}, "PKCS": {"PKCS 1": 1}, "RFC": {"RFC7627": 1, "RFC 5288": 1, "RFC 7627": 1}, "ISO": {"ISO/IEC 19790": 2, "ISO/IEC 24759": 2}}, "javacard_version": {}, "javacard_api_const": {}, "javacard_packages": {}, "certification_process": {}}, "policy_metadata": {"pdf_file_size_bytes": 1731807, "pdf_is_encrypted": false, "pdf_number_of_pages": 149, "/Producer": "Microsoft\u00ae Word for Microsoft 365", "/Creator": "Microsoft\u00ae Word for Microsoft 365", "/CreationDate": "D:20260824100254-04'00'", "/ModDate": "D:20260824100254-04'00'", "pdf_hyperlinks": {"_type": "Set", "elements": []}}}, "heuristics": {"_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics", "algorithms": {"_type": "Set", "elements": ["HMAC-SHA3-512A7544", "AES-CBCA7544", "RSA SigGen (FIPS186-5)A1948", "AES-CMACA7544", "SHA3-256A7544", "KDF SP800-108A7544", "ECDSA SigGen (FIPS186-4)A1948", "HMAC-SHA-1A7544", "TDES-KWA1948", "SHA2-384A7544", "SHA-1A7544", "RSA SigVer (FIPS186-5)A7545", "KAS-IFC-SSCA1948", "SHA3-512A7544", "TDES-ECBA7544", "TLS v1.2 KDF RFC7627A7544", "SHA2-256A7544", "RSA Decryption PrimitiveA1948", "HMAC-SHA3-384A7544", "HMAC-SHA2-512A7544", "KDF ANS 9.63A1948", "HMAC-SHA2-384A7544", "SHA3-384A7544", "SHA2-224A7544", "AES-CTRA7544", "RSA Decryption Primitive Sp800-56Br2A7544", "AES-ECBA7544", "AES-GCMA7544", "ECDSA SigGen (FIPS186-5)A7544", "AES-GMACA7544", "HMAC-SHA3-256A7544", "ECDSA KeyGen (FIPS186-4)A1948", "KDA OneStep Sp800-56Cr1A1948", "KDA TwoStep Sp800-56Cr1A1948", "ECDSA KeyVer (FIPS186-4)A1948", "TDES-CBCA7544", "HMAC-SHA3-224A7544", "Counter DRBGA1948", "AES-KWPA1948", "SHA2-512A7544", "KAS-ECC Sp800-56Ar3A1948", "ECDSA SigVer (FIPS186-4)A1948", "Hash DRBGA7544", "ECDSA KeyGen (FIPS186-5)A7545", "RSA Signature PrimitiveA7544", "HMAC-SHA2-256A7544", "SHA3-224A7544", "AES-CCMA7544", "RSA SigVer (FIPS186-4)A1946", "HMAC-SHA2-224A7544", "KTS-IFCA7545", "AES-KWA1948", "KDA HKDF Sp800-56Cr1A1948", "RSA KeyGen (FIPS186-5)A7545", "ECDSA SigVer (FIPS186-5)A7544", "KAS-ECC-SSC Sp800-56Ar3A7544"]}, "extracted_versions": {"_type": "Set", "elements": ["-"]}, "cpe_matches": null, "verified_cpe_matches": null, "related_cves": null, "policy_prunned_references": {"_type": "Set", "elements": []}, "module_prunned_references": {"_type": "Set", "elements": []}, "policy_processed_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "module_processed_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "direct_transitive_cves": null, "indirect_transitive_cves": null}, "state": {"_type": "sec_certs.sample.fips.InternalState", "module": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": null, "txt_hash": null, "json_hash": null}, "policy": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": "9074506728be7fbdc3cfec615a02375c7675e2932150c7056681dd4cc7385666", "txt_hash": "49ede306e7cab191bebef598ad12a5ec848074afa7d9425f2edc55590b839d8e", "json_hash": null}}}