LUNA® RA Secure Key Issuance HSM token

Certificate #168

Webpage information

Status historical
Historical reason Validation Sunsetting Policy - FIPS 140-1 Certificate
Validation dates 25.09.2001 , 18.10.2004
Standard FIPS 140-1
Security level 2
Type Hardware
Embodiment Multi-Chip Stand Alone
Caveat When operated in FIPS mode
Exceptions
  • Software Security: Level 3
  • Self Tests: Level 3
Description The Chrysalis-ITS® LUNA RA Secure Issuance HSM token is a hardware-based, multiple-chip standalone module which is a delta production of the Chrysalis-ITS® LUNA 2 token (certificate #56, dated 08/08/1999). Like the LUNA 2, the LUNA RA is in the form of a PC card “token” based on the PCMCIA standard. The LUNA RA token offers secure key distribution, fast key generation and secure key backup functionality to increase security and reduce operational overhead. The Luna RA token is integral to the secure issuance of keys to smart cards, cable modems, mobile phones and other PKI-enabled devices.
Version (Hardware) v 1 and 2
Version (Firmware) v3.9
Vendor SafeNet, Inc.
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Symmetric Algorithms
CAST, CAST5, RC4, RC2, RC5, DES
Asymmetric Algorithms
RSA-1024, RSA-2048, RSA-4096, DSA
Hash functions
SHA-1, MD5
Schemes
MAC
Protocols
SSL
Block cipher modes
CCM

Security level
Level 7, level 2, Level 2
Side-channel analysis
timing attacks

Standards
FIPS 140-1, PKCS#11

File metadata

Title Luna RA Security Policies
Subject Luna RA
Author Bob Woodard, Terry Fletcher
Creation date D:20010913115419
Modification date D:20010913115548-04'00'
Pages 15
Creator Microsoft Word 9.0
Producer Acrobat Distiller 4.05 for Windows

References

Outgoing
  • 484 - historical - Model 330G3 Smart Card
Incoming
  • 720 - historical - Connect:Direct Secure+ Option
  • 2238 - historical - McAfee Firewall Enterprise Virtual Appliance for VMware

Heuristics

No heuristics are available for this certificate.

References

Loading...

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 168,
  "dgst": "80c3cd40fa35f908",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "Triple-DES MAC; DSA/SHA-1#13",
        "Triple-DES#74"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "3.9"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": {
        "_type": "Set",
        "elements": [
          "720",
          "2238"
        ]
      },
      "directly_referencing": {
        "_type": "Set",
        "elements": [
          "484"
        ]
      },
      "indirectly_referenced_by": {
        "_type": "Set",
        "elements": [
          "720",
          "2238"
        ]
      },
      "indirectly_referencing": {
        "_type": "Set",
        "elements": [
          "88",
          "484"
        ]
      }
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": [
        "484"
      ]
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "FF": {
          "DSA": {
            "DSA": 1
          }
        },
        "RSA": {
          "RSA-1024": 4,
          "RSA-2048": 4,
          "RSA-4096": 4
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CCM": {
          "CCM": 6
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "TLS": {
          "SSL": {
            "SSL": 1
          }
        }
      },
      "crypto_scheme": {
        "MAC": {
          "MAC": 1
        }
      },
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "#484": 1
        }
      },
      "fips_certlike": {
        "Certlike": {
          "DSA-1024": 1,
          "HMAC-SHA1": 2,
          "PKCS#11": 6,
          "SHA-1": 2
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 2": 1,
          "Level 7": 15,
          "level 2": 2
        }
      },
      "hash_function": {
        "MD": {
          "MD5": {
            "MD5": 3
          }
        },
        "SHA": {
          "SHA1": {
            "SHA-1": 2
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {
        "SCA": {
          "timing attacks": 2
        }
      },
      "standard_id": {
        "FIPS": {
          "FIPS 140-1": 2
        },
        "PKCS": {
          "PKCS#11": 3
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "CAST": {
            "CAST": 1,
            "CAST5": 1
          },
          "RC": {
            "RC2": 1,
            "RC4": 2,
            "RC5": 1
          }
        },
        "DES": {
          "DES": {
            "DES": 6
          }
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "policy_metadata": {
      "/Author": "Bob Woodard, Terry Fletcher",
      "/CreationDate": "D:20010913115419",
      "/Creator": "Microsoft Word 9.0",
      "/ModDate": "D:20010913115548-04\u002700\u0027",
      "/Producer": "Acrobat Distiller 4.05 for Windows",
      "/Subject": "Luna RA",
      "/Title": "Luna RA Security Policies",
      "pdf_file_size_bytes": 293333,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 15
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
    "module_download_ok": true,
    "module_extract_ok": true,
    "policy_convert_ok": true,
    "policy_download_ok": true,
    "policy_extract_ok": true,
    "policy_json_hash": null,
    "policy_pdf_hash": "ad3507be1d9842bdeb2d37a7d989d1e2db2bad24fc6c66e61ce66909e7e43e8c",
    "policy_txt_hash": "4cd7e65f997f2808b9d005b56c58c6297ad5bd599c01caef3ab17c50aa7f68ee"
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "When operated in FIPS mode",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/140crt168.pdf",
    "date_sunset": null,
    "description": "The Chrysalis-ITS\u00ae LUNA RA Secure Issuance HSM token is a hardware-based, multiple-chip standalone module which is a delta production of the Chrysalis-ITS\u00ae LUNA 2 token (certificate #56, dated 08/08/1999). Like the LUNA 2, the LUNA RA is in the form of a PC card \u201ctoken\u201d based on the PCMCIA standard. The LUNA RA token offers secure key distribution, fast key generation and secure key backup functionality to increase security and reduce operational overhead. The Luna RA token is integral to the secure issuance of keys to smart cards, cable modems, mobile phones and other PKI-enabled devices.",
    "embodiment": "Multi-Chip Stand Alone",
    "exceptions": [
      "Software Security: Level 3",
      "Self Tests: Level 3"
    ],
    "fw_versions": "v3.9",
    "historical_reason": "Validation Sunsetting Policy - FIPS 140-1 Certificate",
    "hw_versions": "v 1 and 2",
    "level": 2,
    "mentioned_certs": {},
    "module_name": "LUNA\u00ae RA Secure Key Issuance HSM token",
    "module_type": "Hardware",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-1",
    "status": "historical",
    "sw_versions": null,
    "tested_conf": null,
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2001-09-25",
        "lab": "DOMUS",
        "validation_type": "Initial"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2004-10-18",
        "lab": "",
        "validation_type": "Update"
      }
    ],
    "vendor": "SafeNet, Inc.",
    "vendor_url": "http://www.safenet-inc.com"
  }
}