Protiva™ PIV v2.0 using TOP DL v2 and TOP IL v2

Certificate details

Certificate ID #2801
Status historical
Historical reason 186-2 transition
Validation dates 30.11.2016
Standard FIPS 140-2
Security level 2
Type Hardware
Embodiment Single Chip
Caveat When operated in FIPS mode with module TOP DL v2 or TOP IL v2 validated to FIPS 140-2 under Cert. #1450 operating in FIPS mode. This validation entry is a non-security relevant modification to Cert. #1843.
Exceptions
  • Roles, Services, and Authentication: Level 3
  • Physical Security: Level 3
  • EMI/EMC: Level 3
  • Design Assurance: Level 3
Description This module is based on a Java Card platform (TOP DL V2) with 128K EEPROM memory and the Protiva PIV Applet loaded on the Java Card platform. The Cryptographic Module provides dual interfaces (i.e. contact and contact-less) where the same security level is achieved.
Version (Hardware) A1025258 and A1023393
Version (Firmware) Build#11 - M1005011 + Softmask V04, Applet Version: PIV Applet v2.00 + OATH Applet v2.10
Vendor Gemalto
References

This certificate's webpage directly references 2 certificates, transitively this expands into 2 certificates.

Security policy

Extracted keywords

Symmetric Algorithms
AES, DES, TDES, Triple-DES, 3DES, SEED, CMAC
Asymmetric Algorithms
ECDH, ECDSA, ECC, Diffie-Hellman
Hash functions
SHA-1, SHA1, SHA-256, SHA-384, SHA-512, SHA-2
Schemes
MAC
Randomness
PRNG, RNG
Elliptic Curves
P-192, P-224, P-256, P-384, P-521, K-233, K-409, K-571, B-233, B-283, B-409, B-571
Block cipher modes
ECB, CBC

JavaCard versions
JavaCard 2.2.1, JavaCard 3.0.1, JC3.0.1, Global Platform 2.1.1
CPLC
IC Fabricator, IC Type
Trusted Execution Environments
T6
Vendor
Infineon, Gemalto

Security level
Level 2, Level 3, level 3, level 1, level 2
Side-channel analysis
Side channel, side channel, Timing Attacks

Cross-references

Outgoing
  • 1450 - historical - TOP DL V2

Automated analysis

Automated inference - use with caution

All attributes shown in this section (e.g., links between certificates, products, vendors, and known CVEs) are generated by automated heuristics and have not been reviewed by humans. These methods can produce false positives or false negatives and should not be treated as definitive without independent verification. This applies equally to the Cross-references section below. If you want to know more about how this data is computed and how reliable it is, see our documentation on automated analysis. If you believe any information here is inaccurate or harmful, please submit feedback.

No automatically derived data are available in this section.

Cross-references

Loading...

Processing updates

Feed
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 2801,
  "dgst": "7e3db2c53a88a814",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "Triple-DES MAC#1280",
        "CVL#18",
        "SHS#1727",
        "CVL#224",
        "Triple-DES#1280",
        "AES#1973",
        "RSA#1019",
        "ECDSA#284",
        "CVL#217"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "2.0",
        "2.00",
        "2.10"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": {
        "_type": "Set",
        "elements": [
          "1843",
          "1450"
        ]
      },
      "indirectly_referenced_by": null,
      "indirectly_referencing": {
        "_type": "Set",
        "elements": [
          "1843",
          "1450"
        ]
      }
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": [
        "1843",
        "1450"
      ]
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": {
        "_type": "Set",
        "elements": [
          "1450"
        ]
      },
      "indirectly_referenced_by": null,
      "indirectly_referencing": {
        "_type": "Set",
        "elements": [
          "1450"
        ]
      }
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": [
        "1450"
      ]
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 6
          },
          "ECDH": {
            "ECDH": 2
          },
          "ECDSA": {
            "ECDSA": 13
          }
        },
        "FF": {
          "DH": {
            "Diffie-Hellman": 2
          }
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 10
        },
        "ECB": {
          "ECB": 10
        }
      },
      "cplc_data": {
        "ICFab": {
          "IC Fabricator": 1
        },
        "ICType": {
          "IC Type": 1
        }
      },
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {
        "MAC": {
          "MAC": 11
        }
      },
      "device_model": {},
      "ecc_curve": {
        "NIST": {
          "B-233": 1,
          "B-283": 1,
          "B-409": 1,
          "B-571": 1,
          "K-233": 1,
          "K-409": 1,
          "K-571": 1,
          "P-192": 10,
          "P-224": 12,
          "P-256": 12,
          "P-384": 12,
          "P-521": 12
        }
      },
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "#1019": 1,
          "#1280": 2,
          "#1450": 2,
          "#1727": 1,
          "#18": 1,
          "#1973": 1,
          "#217": 1,
          "#224": 1,
          "#284": 2
        }
      },
      "fips_certlike": {
        "Certlike": {
          "Cert. #217 AES": 1,
          "Cert. #224 RSA": 1,
          "PKCS#1": 2,
          "SHA- 384": 2,
          "SHA-1": 8,
          "SHA-2": 1,
          "SHA-256": 5,
          "SHA-384": 3,
          "SHA-512": 5,
          "SHA1": 1
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 2": 2,
          "Level 3": 3,
          "level 1": 1,
          "level 2": 1,
          "level 3": 1
        }
      },
      "hash_function": {
        "SHA": {
          "SHA1": {
            "SHA-1": 8,
            "SHA1": 1
          },
          "SHA2": {
            "SHA-2": 1,
            "SHA-256": 5,
            "SHA-384": 3,
            "SHA-512": 5
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {
        "GlobalPlatform": {
          "Global Platform 2.1.1": 1
        },
        "JavaCard": {
          "JC3.0.1": 1,
          "JavaCard 2.2.1": 1,
          "JavaCard 3.0.1": 1
        }
      },
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "PRNG": 9
        },
        "RNG": {
          "RNG": 3
        }
      },
      "side_channel_analysis": {
        "SCA": {
          "Side channel": 1,
          "Timing Attacks": 1,
          "side channel": 2
        }
      },
      "standard_id": {
        "FIPS": {
          "FIPS 140-2": 5,
          "FIPS 201-1": 1,
          "FIPS PUB 140-2": 2,
          "FIPS140-2": 6
        },
        "NIST": {
          "NIST SP 800-131A": 1,
          "SP 800-57": 3
        },
        "PKCS": {
          "PKCS#1": 1
        },
        "SCP": {
          "SCP 01": 2,
          "SCP 03": 2,
          "SCP01": 6,
          "SCP03": 4
        },
        "X509": {
          "X.509": 2
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 19
          }
        },
        "DES": {
          "3DES": {
            "3DES": 1,
            "TDES": 6,
            "Triple-DES": 20
          },
          "DES": {
            "DES": 3
          }
        },
        "constructions": {
          "MAC": {
            "CMAC": 1
          }
        },
        "miscellaneous": {
          "SEED": {
            "SEED": 4
          }
        }
      },
      "tee_name": {
        "other": {
          "T6": 1
        }
      },
      "tls_cipher_suite": {},
      "vendor": {
        "Gemalto": {
          "Gemalto": 18
        },
        "Infineon": {
          "Infineon": 3
        }
      },
      "vulnerability": {}
    },
    "policy_metadata": {
      "/Author": "rshelby",
      "/CreationDate": "D:20160526115017-07\u002700\u0027",
      "/Creator": "PScript5.dll Version 5.2.2",
      "/ModDate": "D:20160526115017-07\u002700\u0027",
      "/Producer": "Acrobat Distiller 11.0 (Windows)",
      "/Title": "Microsoft Word - 5c - 140SP1843_R0R21576_PIVv2_001_SP.rev12.docx",
      "pdf_file_size_bytes": 354956,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 46
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.InternalState",
    "module": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "source_hash": null,
      "txt_hash": null
    },
    "policy": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "source_hash": "f83a72b120f22078cf778c13c69cb1b4d6ffea21154c37ec9abe1796076091c6",
      "txt_hash": "0b2807e383b43809e2a193b58736e628a9a560ec2b500b3d1bdc64a11991e1dd"
    }
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "When operated in FIPS mode with module TOP DL v2 or TOP IL v2 validated to FIPS 140-2 under Cert. #1450 operating in FIPS mode. This validation entry is a non-security relevant modification to Cert. #1843.",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/FIPS140ConsolidatedCertNov2016.pdf",
    "date_sunset": null,
    "description": "This module is based on a Java Card platform (TOP DL V2) with 128K EEPROM memory and the Protiva PIV Applet loaded on the Java Card platform. The Cryptographic Module provides dual interfaces (i.e. contact and contact-less) where the same security level is achieved.",
    "embodiment": "Single Chip",
    "exceptions": [
      "Roles, Services, and Authentication: Level 3",
      "Physical Security: Level 3",
      "EMI/EMC: Level 3",
      "Design Assurance: Level 3"
    ],
    "fw_versions": "Build#11 - M1005011 + Softmask V04, Applet Version: PIV Applet v2.00 + OATH Applet v2.10",
    "historical_reason": "186-2 transition",
    "hw_versions": "A1025258 and A1023393",
    "level": 2,
    "mentioned_certs": {
      "1450": 1,
      "1843": 1
    },
    "module_name": "Protiva\u2122 PIV v2.0 using TOP DL v2 and TOP IL v2",
    "module_type": "Hardware",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "historical",
    "sw_versions": null,
    "tested_conf": null,
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2016-11-30",
        "lab": "UL Verification Services, Inc.",
        "validation_type": "Initial"
      }
    ],
    "vendor": "Gemalto",
    "vendor_url": "http://www.gemalto.com"
  }
}