StarSign PIV Applet V 1.0 on Giesecke+Devrient Sm@rtCafé Expert 7.0

Certificate details

Certificate ID #3308
Status historical
Historical reason SP 800-56Arev3 transition - replaced by certificate #4510
Validation dates 19.10.2018
Standard FIPS 140-2
Security level 2
Type Hardware
Embodiment Single Chip
Caveat When operated with module Sm@rtCafé Expert 7.0 validated to FIPS 140-2 under Cert. #2327 operating in FIPS mode.
Exceptions
  • Cryptographic Module Specification: Level 3
  • Roles, Services, and Authentication: Level 3
  • Physical Security: Level 3
  • EMI/EMC: Level 3
  • Design Assurance: Level 3
Description StarSign PIV Applet V 1.0 on Giesecke+Devrient Sm@rtCafé Expert 7.0 provides authentication, encryption, and digital signature cryptographic services and is intended for general use. Sm@rtCafé Expert 7.0 is a Smart Card based on Java Card and GlobalPlatform Technology. Sm@rtCafé Expert 7.0 conforms to Java Card Classic Platform Specification 3.0.4 and GlobalPlatform Card Specification Version 2.2.1 supporting Secure Channel Protocol 03, Card Specification V2.2 Amendment D. The product is suitable for government and corporate identification, payment and banking, health care and authentication.
Version (Hardware) SLE78CLFX4000P (M7892)
Version (Firmware) Sm@rtCafé Expert 7.0, StarSign PIV Applet V1.0
Vendor Giesecke+Devrient Mobile Security GmbH
References

This certificate's webpage directly references 1 certificates, transitively this expands into 1 certificates.

Security policy

Extracted keywords

Symmetric Algorithms
AES, AES-128, AES-256, AES-192, AES-, DES, TDEA, Triple-DES, 3DES, CMAC
Asymmetric Algorithms
RSA 2048, RSA-2048, ECDH, ECDSA, ECC, Diffie-Hellman
Hash functions
SHA-1, SHA256, SHA-224, SHA-256, SHA-384, SHA-512, SHA-2
Schemes
MAC, Key Agreement
Randomness
DRBG, RNG
Elliptic Curves
P-256, P-384, P-521, curve P-224, curve P-521, P-224
Block cipher modes
ECB, CBC

Vendor
Giesecke+Devrient, G+D

Security level
Level 2
Side-channel analysis
Side-channel, DPA, SPA, DFA

Cross-references

Outgoing
  • 43 - historical - Turbo Crypto Card (TCC), v09, 14.04

Automated analysis

Automated inference - use with caution

All attributes shown in this section (e.g., links between certificates, products, vendors, and known CVEs) are generated by automated heuristics and have not been reviewed by humans. These methods can produce false positives or false negatives and should not be treated as definitive without independent verification. This applies equally to the Cross-references section below. If you want to know more about how this data is computed and how reliable it is, see our documentation on automated analysis. If you believe any information here is inaccurate or harmful, please submit feedback.

No automatically derived data are available in this section.

Cross-references

Loading...

Processing updates

Feed
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 3308,
  "dgst": "a4c42a3f5f7103dd",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "AES#2720",
        "CVL#1193",
        "SHS#2290",
        "RSA#1506",
        "KAS#166",
        "CVL#177",
        "SHS#2288",
        "DRBG#455",
        "Triple-DES#1637",
        "AES#2721",
        "KTS#2720",
        "CVL#1192",
        "RSA#1507",
        "SHS#2289",
        "KBKDF#18",
        "KTS#2721",
        "ECDSA#476"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "7.0",
        "1.0"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": {
        "_type": "Set",
        "elements": [
          "2327"
        ]
      },
      "indirectly_referenced_by": null,
      "indirectly_referencing": {
        "_type": "Set",
        "elements": [
          "2327"
        ]
      }
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": [
        "2327"
      ]
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": {
        "_type": "Set",
        "elements": [
          "43"
        ]
      },
      "indirectly_referenced_by": null,
      "indirectly_referencing": {
        "_type": "Set",
        "elements": [
          "43"
        ]
      }
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": [
        "43"
      ]
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 6
          },
          "ECDH": {
            "ECDH": 1
          },
          "ECDSA": {
            "ECDSA": 15
          }
        },
        "FF": {
          "DH": {
            "Diffie-Hellman": 1
          }
        },
        "RSA": {
          "RSA 2048": 8,
          "RSA-2048": 2
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 2
        },
        "ECB": {
          "ECB": 4
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {
        "KA": {
          "Key Agreement": 1
        },
        "MAC": {
          "MAC": 4
        }
      },
      "device_model": {},
      "ecc_curve": {
        "NIST": {
          "P-224": 2,
          "P-256": 26,
          "P-384": 14,
          "P-521": 9,
          "curve P-224": 2,
          "curve P-521": 1
        }
      },
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "#1": 1,
          "#1506": 1,
          "#2720": 3,
          "#2721": 1,
          "#43": 1
        }
      },
      "fips_certlike": {
        "Certlike": {
          "AES CMAC Cert. #2720": 1,
          "AES CMAC, cert. #2720": 1,
          "AES Cert. #2721": 1,
          "AES- 256": 1,
          "AES-128": 17,
          "AES-128/192/256": 2,
          "AES-192": 11,
          "AES-256": 12,
          "Cert # AES": 1,
          "PKCS #1": 2,
          "PKCS#1": 2,
          "RSA 2048": 8,
          "SHA-1": 3,
          "SHA-2": 2,
          "SHA-224": 1,
          "SHA-256": 5,
          "SHA-384": 1,
          "SHA-512": 2,
          "SHA256": 1
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 2": 1
        }
      },
      "hash_function": {
        "SHA": {
          "SHA1": {
            "SHA-1": 3
          },
          "SHA2": {
            "SHA-2": 2,
            "SHA-224": 1,
            "SHA-256": 5,
            "SHA-384": 1,
            "SHA-512": 2,
            "SHA256": 1
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 6
        },
        "RNG": {
          "RNG": 3
        }
      },
      "side_channel_analysis": {
        "FI": {
          "DFA": 1
        },
        "SCA": {
          "DPA": 1,
          "SPA": 1,
          "Side-channel": 1
        }
      },
      "standard_id": {
        "FIPS": {
          "FIPS 140-2": 33,
          "FIPS 180-4": 4,
          "FIPS 186-4": 5,
          "FIPS 197": 1,
          "FIPS 201-2": 1,
          "FIPS PUB 140-2": 1,
          "FIPS113": 1,
          "FIPS140-2": 1,
          "FIPS197": 1,
          "FIPS201-2": 2
        },
        "NIST": {
          "SP 800-108": 3,
          "SP 800-56A": 4,
          "SP 800-56B": 2,
          "SP 800-67": 2,
          "SP 800-90A": 1
        },
        "PKCS": {
          "PKCS #1": 1,
          "PKCS#1": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 13,
            "AES-": 1,
            "AES-128": 17,
            "AES-192": 11,
            "AES-256": 12
          }
        },
        "DES": {
          "3DES": {
            "3DES": 2,
            "TDEA": 1,
            "Triple-DES": 4
          },
          "DES": {
            "DES": 1
          }
        },
        "constructions": {
          "MAC": {
            "CMAC": 6
          }
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "GD": {
          "G+D": 3,
          "Giesecke+Devrient": 30
        }
      },
      "vulnerability": {}
    },
    "policy_metadata": {
      "/Author": "G+D",
      "/Company": "Giesecke \u0026 Devrient Group",
      "/CreationDate": "D:20181011095514-07\u002700\u0027",
      "/Creator": "Acrobat PDFMaker 17 for Word",
      "/Edition": "02.08.2018",
      "/ModDate": "D:20181011095602-07\u002700\u0027",
      "/Producer": "Adobe PDF Library 15.0",
      "/Rating": "Public",
      "/SourceModified": "D:20181011165342",
      "/Status": "Final",
      "/Subject": "FIPS 140-2 Cryptographic Module Non-Proprietary Security Policy",
      "/Title": "StarSign PIV Applet V 1.0 on Giesecke+Devrient Sm@rtCaf\u00e9 Expert 7.0",
      "/Version": "1.6",
      "pdf_file_size_bytes": 475931,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 25
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.InternalState",
    "module": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "source_hash": null,
      "txt_hash": null
    },
    "policy": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "source_hash": "5f80246aa20e31b62e76db1ee8ebd3c474c5d9db900538a24832712a719b739b",
      "txt_hash": "b17ac417c3bb76e37b1e5dd010494d144d9fac5db90a85c926c62f891ff2e740"
    }
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "When operated with module Sm@rtCaf\u00e9 Expert 7.0 validated to FIPS 140-2 under Cert. #2327 operating in FIPS mode.",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/FIPS140ConsolidatedCertOct2018.pdf",
    "date_sunset": null,
    "description": "StarSign PIV Applet V 1.0 on Giesecke+Devrient Sm@rtCaf\u00e9 Expert 7.0 provides authentication, encryption, and digital signature cryptographic services and is intended for general use. Sm@rtCaf\u00e9 Expert 7.0 is a Smart Card based on Java Card and GlobalPlatform Technology. Sm@rtCaf\u00e9 Expert 7.0 conforms to Java Card Classic Platform Specification 3.0.4 and GlobalPlatform Card Specification Version 2.2.1 supporting Secure Channel Protocol 03, Card Specification V2.2 Amendment D. The product is suitable for government and corporate identification, payment and banking, health care and authentication.",
    "embodiment": "Single Chip",
    "exceptions": [
      "Cryptographic Module Specification: Level 3",
      "Roles, Services, and Authentication: Level 3",
      "Physical Security: Level 3",
      "EMI/EMC: Level 3",
      "Design Assurance: Level 3"
    ],
    "fw_versions": "Sm@rtCaf\u00e9 Expert 7.0, StarSign PIV Applet V1.0",
    "historical_reason": "SP 800-56Arev3 transition - replaced by certificate #4510",
    "hw_versions": "SLE78CLFX4000P (M7892)",
    "level": 2,
    "mentioned_certs": {
      "2327": 1
    },
    "module_name": "StarSign PIV Applet V 1.0 on Giesecke+Devrient Sm@rtCaf\u00e9 Expert 7.0",
    "module_type": "Hardware",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "historical",
    "sw_versions": null,
    "tested_conf": null,
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2018-10-19",
        "lab": "UL Verification Services, Inc.",
        "validation_type": "Initial"
      }
    ],
    "vendor": "Giesecke+Devrient Mobile Security GmbH",
    "vendor_url": "http://www.gi-de.com/en/us/mobile-security/"
  }
}