{"_type": "sec_certs.sample.fips.FIPSCertificate", "dgst": "7f7e4d7eba491f6f", "cert_id": 5300, "web_data": {"_type": "sec_certs.sample.fips.FIPSCertificate.WebData", "module_name": "Luna M7 Cryptographic Module", "validation_history": [{"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry", "date": "2026-06-03", "validation_type": "Initial", "lab": "Acumen Security"}], "vendor_url": "http://www.thalestct.com", "vendor": "Thales Trusted Cyber Technologies", "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/June 2026_080726_0648.pdf", "module_type": "Hardware", "standard": "FIPS 140-3", "status": "active", "level": 3, "caveat": "When operated in approved mode. The module generates SSPs (e.g., keys) whose strengths are modified by available entropy. No assurance of minimum security of SSPs (e.g., keys, bit strings) that are externally loaded, or of SSPs established with externally loaded SSPs.", "exceptions": ["Operational environment: N/A", "Non-invasive security: N/A", "Mitigation of other attacks: N/A"], "embodiment": "MultiChipEmbed", "description": "The Luna M7 Cryptographic Module from Thales Trusted Cyber Technologies (TCT) is a Hardware Security Module (HSM) implemented in a multi-chip embedded hardware module. The cryptographic module is contained in an enclosure that provides physical resistance to tampering.", "tested_conf": null, "hw_versions": null, "fw_versions": null, "sw_versions": null, "mentioned_certs": {}, "historical_reason": null, "date_sunset": "2031-06-02", "revoked_reason": null, "revoked_link": null}, "pdf_data": {"_type": "sec_certs.sample.fips.FIPSCertificate.PdfData", "keywords": {"fips_cert_id": {"Cert": {"#11": 1, "#1": 1}}, "fips_security_level": {"Level": {"Level 1": 1, "Level 3": 2}}, "fips_certlike": {"Certlike": {"HMAC-SHA- 1": 4, "HMAC-SHA-1": 12, "HMAC-SHA-256": 2, "HMAC SHA 256": 1, "SHA-1": 23, "SHA2-224": 16, "SHA2-256": 28, "SHA2-384": 20, "SHA2-512": 23, "SHA3-224": 9, "SHA3-256": 9, "SHA3-384": 9, "SHA3-512": 9, "SHA2- 512": 2, "SHA3": 3, "SHA2": 1, "SHA 256": 1, "SHA 1": 2, "SHA2 224": 2, "SHA2- 256": 2, "SHA2 256": 3, "SHA-256": 1, "RSA 4096": 10, "PKCS #11": 2, "PKCS 1": 4, "PKCS#5": 4, "PKCS #1": 2, "AES-128": 1, "AES128": 2}}, "vendor": {"NXP": {"NXP": 2}, "STMicroelectronics": {"STM": 14}, "Thales": {"Thales": 15}}, "eval_facility": {}, "symmetric_crypto": {"AES_competition": {"AES": {"AES-": 2, "AES": 48, "AES-128": 1, "AES128": 2}, "CAST": {"CAST5": 3, "CAST": 263}, "RC": {"RC2": 3, "RC4": 1, "RC5": 3}}, "DES": {"DES": {"DES": 3}, "3DES": {"Triple-DES": 5, "TDES": 6}}, "constructions": {"MAC": {"HMAC": 17, "HMAC-SHA-256": 1}}}, "asymmetric_crypto": {"RSA": {"RSA 4096": 10, "RSA-4096": 1, "RSA-OAEP": 1}, "ECC": {"ECDSA": {"ECDSA": 61}, "ECC": {"ECC": 12}}, "FF": {"DH": {"Diffie-Hellman": 2}, "DSA": {"DSA": 16}}}, "pq_crypto": {"Kyber": {"KYBER": 3}, "Dilithium": {"DILITHIUM": 4}, "Falcon": {"FALCON": 4}, "LMS": {"LMS": 52}, "PQC": {"PQC": 11}}, "hash_function": {"SHA": {"SHA1": {"SHA-1": 23}, "SHA2": {"SHA-256": 1, "SHA2": 6}, "SHA3": {"SHA3-224": 9, "SHA3-256": 9, "SHA3-384": 9, "SHA3-512": 9, "SHA3": 3}}, "MD": {"MD5": {"MD5": 2}}, "RIPEMD": {"RIPEMD-160": 3}, "PBKDF": {"PBKDF": 12}}, "crypto_scheme": {"MAC": {"MAC": 15}, "KA": {"Key Agreement": 14, "Key agreement": 3}}, "crypto_protocol": {"TLS": {"SSL": {"SSL": 2}}}, "randomness": {"TRNG": {"TRNG": 2}, "PRNG": {"DRBG": 42}, "RNG": {"RNG": 3, "RBG": 4}}, "cipher_mode": {"CBC": {"CBC": 2}, "XTS": {"XTS": 1}}, "ecc_curve": {"NIST": {"P-224": 24, "P-256": 30, "P-384": 42, "P-521": 14, "Curve P-384": 2, "B-233": 2, "B-283": 2, "B-409": 2, "B-571": 2, "K-233": 2, "K-283": 2, "K-571": 2}}, "crypto_engine": {}, "tls_cipher_suite": {}, "crypto_library": {}, "vulnerability": {}, "side_channel_analysis": {"SCA": {"physical probing": 1, "Timing attacks": 1}, "FI": {"Fault Induction": 2}}, "device_model": {}, "tee_name": {"AMD": {"PSP": 16}, "IBM": {"SSC": 5}}, "os_name": {}, "cplc_data": {}, "ic_data_group": {}, "standard_id": {"FIPS": {"FIPS 140-3": 20, "FIPS PUB 140-3": 1, "FIPS186-4": 17, "FIPS 186-4": 8, "FIPS186-5": 27, "FIPS 186-5": 11, "FIPS 198-1": 18, "FIPS 180-4": 10, "FIPS 202": 8}, "NIST": {"SP 800-67": 2, "SP 800-90A": 1, "SP 800-38F": 1, "NIST SP 800-90A": 2}, "PKCS": {"PKCS #11": 1, "PKCS 1": 2, "PKCS#5": 2, "PKCS #1": 1}, "ISO": {"ISO/IEC 19790": 4}, "X509": {"X.509": 6}}, "javacard_version": {}, "javacard_api_const": {}, "javacard_packages": {}, "certification_process": {}}, "policy_metadata": {"pdf_file_size_bytes": 1260508, "pdf_is_encrypted": false, "pdf_number_of_pages": 125, "/Author": "Hawes, David J. (Fed)", "/Comments": "", "/Company": "", "/ContentTypeId": "0x010100F3C6D56F6A55EE41827757027BFEE79B", "/CreationDate": "D:20260601122128-04'00'", "/Creator": "Acrobat PDFMaker 26 for Word", "/Keywords": "", "/ModDate": "D:20260601122416-04'00'", "/Producer": "Adobe PDF Library 26.1.183", "/SourceModified": "D:20260601162044", "/Subject": "", "/Title": "", "pdf_hyperlinks": {"_type": "Set", "elements": ["https://csrc.nist.gov/projects/cryptographic-module-validation-program/entropy-validations/certificate/97", "https://support.thalestct.com/"]}}}, "heuristics": {"_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics", "algorithms": {"_type": "Set", "elements": ["DSA SigVer (FIPS186-4)A5022", "TDES-CBCA5022", "SHA3-224A5022", "HMAC-SHA3-512A5022", "HMAC-SHA3-224A5022", "SHA2-224A5022", "ECDSA SigGen (FIPS186-5)A5022", "HMAC-SHA3-256A5022", "HMAC-SHA-1A5022", "RSA KeyGen (FIPS186-5)A5022", "AES-KWPA5022", "SHA2-384A5022", "AES-KWA5022", "HMAC-SHA2-224A5022", "SHA2-512A5022", "AES-CTRA5022", "ECDSA KeyGen (FIPS186-5)A5022", "AES-GMACA5022", "PBKDFA5022", "AES-ECBA5022", "RSA SigVer (FIPS186-4)A5022", "Hash DRBGA5022", "ECDSA SigVer (FIPS186-5)A5022", "AES-XTS Testing Revision 2.0A5022", "AES-OFBA5022", "AES-CBCA5022", "LMS KeyGenA5022", "RSA SigGen (FIPS186-5)A5022", "LMS SigVerA5022", "AES-CMACA5022", "SHA2-256A5022", "AES-CFB128A5022", "SHA3-512A5022", "HMAC-SHA2-384A5022", "KAS-IFC-SSCA5022", "AES-GCMA5022", "KAS-ECC-SSC Sp800-56Ar3A5022", "HMAC-SHA3-384A5022", "RSA SigVer (FIPS186-5)A5022", "KDF SP800-108A5022", "HMAC-SHA2-256A5022", "SHA3-256A5022", "KTS-IFCA5022", "AES-CFB8A5022", "SHA-1A5022", "HMAC-SHA2-512A5022", "ECDSA SigVer (FIPS186-4)A5022", "LMS SigGenA5022", "KDA TwoStep SP800-56Cr2A5022", "SHA3-384A5022"]}, "extracted_versions": {"_type": "Set", "elements": ["-"]}, "cpe_matches": null, "verified_cpe_matches": null, "related_cves": null, "policy_prunned_references": {"_type": "Set", "elements": []}, "module_prunned_references": {"_type": "Set", "elements": []}, "policy_processed_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "module_processed_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "direct_transitive_cves": null, "indirect_transitive_cves": null}, "state": {"_type": "sec_certs.sample.fips.InternalState", "module": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": null, "txt_hash": null, "json_hash": null}, "policy": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": "661b4e9831093ebc7676221fe7a1f3c42c2de0cea902b3bd29b9ecc5707186d0", "txt_hash": "1f7e0f3e753866487ab12a6d4f4720c6e30d0a544a3cfff5eb6c564dff097165", "json_hash": null}}}