enQase FIPS 140-3 Cryptographic Module

Certificate #5346

Webpage information

Status active
Validation dates 19.06.2026 , 05.08.2026
Sunset date 26-08-2029
Standard FIPS 140-3
Security level 1
Type Software
Embodiment MultiChipStand
Caveat No assurance of the minimum strength of generated SSPs (e.g., keys) and random strings. No assurance of minimum security of SSPs (e.g., keys, bit strings) that are externally loaded, or of SSPs established with externally loaded SSPs
Exceptions
  • Physical security: N/A
  • Non-invasive security: N/A
Description enQase FIPS 140-3 Cryptographic Module is a standards-based cryptographic engine for networks, servers, appliances, edge devices, IoT and enterprise applications. The module delivers FIPS 140-3 cryptographic functions to platforms.
Vendor enQase
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Symmetric Algorithms
AES-128, AES-192, AES-256, AES, AES-, CAST, Triple-DES, TDES, HMAC, HMAC-SHA-256, KMAC, CMAC
Asymmetric Algorithms
ECDH, ECDSA, EdDSA, ECC, DHE, Diffie-Hellman, DH, DSA
Hash functions
SHA-1, SHA-512, SHA-256, SHA-224, SHA-2, SHA3-224, SHA3-256, SHA3-384, SHA3-512, SHA-3, SHA3, SHAKE256, PBKDF
Schemes
MAC, Key Agreement
Protocols
SSH, SSHv2, TLS 1.2, TLS v1.2, TLS v1.3, TLS 1.3
Randomness
DRBG, RNG, RBG
Libraries
OpenSSL
Elliptic Curves
P-224, P-256, P-384, P-521, P-192, B-233, B-283, B-409, B-571, K-233, K-283, K-409, K-571, B-163, K-163, brainpoolP224r1, brainpoolP256r1, brainpoolP320r1, brainpoolP384r1, brainpoolP512r1, Ed25519, Ed448
Block cipher modes
CBC, GCM, XTS

Trusted Execution Environments
PSP

Security level
Level 1
Side-channel analysis
side-channel, timing attacks, timing attack

File metadata

Title Microsoft Word - TID-38-SV13-VAOE-IS-2608051133_140sp.docx
Author Jing, Janet R. (Fed)
Creation date D:20260805095010-04'00'
Modification date D:20260805095010-04'00'
Pages 121
Producer Microsoft: Print To PDF

Heuristics

No heuristics are available for this certificate.

References

No references are available for this certificate.

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 5346,
  "dgst": "bfbbc7d8940c314e",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": []
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "140",
        "3"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 19
          },
          "ECDH": {
            "ECDH": 6
          },
          "ECDSA": {
            "ECDSA": 64
          },
          "EdDSA": {
            "EdDSA": 22
          }
        },
        "FF": {
          "DH": {
            "DH": 31,
            "DHE": 2,
            "Diffie-Hellman": 2
          },
          "DSA": {
            "DSA": 40
          }
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 2
        },
        "GCM": {
          "GCM": 10
        },
        "XTS": {
          "XTS": 10
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {
        "OpenSSL": {
          "OpenSSL": 8
        }
      },
      "crypto_protocol": {
        "SSH": {
          "SSH": 7,
          "SSHv2": 2
        },
        "TLS": {
          "TLS": {
            "TLS 1.2": 10,
            "TLS 1.3": 9,
            "TLS v1.2": 7,
            "TLS v1.3": 7
          }
        }
      },
      "crypto_scheme": {
        "KA": {
          "Key Agreement": 19
        },
        "MAC": {
          "MAC": 48
        }
      },
      "device_model": {},
      "ecc_curve": {
        "Brainpool": {
          "brainpoolP224r1": 2,
          "brainpoolP256r1": 4,
          "brainpoolP320r1": 4,
          "brainpoolP384r1": 4,
          "brainpoolP512r1": 4
        },
        "Edwards": {
          "Ed25519": 16,
          "Ed448": 16
        },
        "NIST": {
          "B-163": 6,
          "B-233": 15,
          "B-283": 13,
          "B-409": 12,
          "B-571": 15,
          "K-163": 6,
          "K-233": 19,
          "K-283": 13,
          "K-409": 15,
          "K-571": 12,
          "P-192": 12,
          "P-224": 38,
          "P-256": 30,
          "P-384": 30,
          "P-521": 30
        }
      },
      "eval_facility": {},
      "fips_cert_id": {},
      "fips_certlike": {
        "Certlike": {
          "- PKCS 1": 2,
          "AES-128": 4,
          "AES-192": 4,
          "AES-256": 4,
          "Diffie- Hellman 224": 1,
          "HMAC 160": 1,
          "HMAC 160, 224": 1,
          "HMAC- SHA-1": 2,
          "HMAC- SHA-256": 2,
          "HMAC-SHA- 256": 4,
          "HMAC-SHA-1": 16,
          "HMAC-SHA-256": 28,
          "PKCS 1": 6,
          "PKCS#1": 8,
          "SHA- 1 1024": 1,
          "SHA- 3": 1,
          "SHA-1": 40,
          "SHA-2": 2,
          "SHA-224": 2,
          "SHA-256": 17,
          "SHA-3": 1,
          "SHA-512": 15,
          "SHA2-224": 26,
          "SHA2-256": 32,
          "SHA2-384": 28,
          "SHA2-512": 36,
          "SHA3": 4,
          "SHA3- 512": 8,
          "SHA3-224": 14,
          "SHA3-256": 16,
          "SHA3-384": 14,
          "SHA3-512": 6
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 1": 3
        }
      },
      "hash_function": {
        "PBKDF": {
          "PBKDF": 16
        },
        "SHA": {
          "SHA1": {
            "SHA-1": 40
          },
          "SHA2": {
            "SHA-2": 2,
            "SHA-224": 2,
            "SHA-256": 17,
            "SHA-512": 15
          },
          "SHA3": {
            "SHA-3": 1,
            "SHA3": 4,
            "SHA3-224": 14,
            "SHA3-256": 16,
            "SHA3-384": 14,
            "SHA3-512": 6
          }
        },
        "SHAKE": {
          "SHAKE256": 1
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 79
        },
        "RNG": {
          "RBG": 21,
          "RNG": 22
        }
      },
      "side_channel_analysis": {
        "SCA": {
          "side-channel": 1,
          "timing attack": 1,
          "timing attacks": 2
        }
      },
      "standard_id": {
        "FIPS": {
          "FIPS 140": 8,
          "FIPS 140-3": 140,
          "FIPS 180-4": 14,
          "FIPS 186-4": 26,
          "FIPS 186-5": 11,
          "FIPS 198-1": 22,
          "FIPS 202": 12,
          "FIPS186-4": 41
        },
        "NIST": {
          "NIST SP 800-38D": 1,
          "SP 800-108": 4,
          "SP 800-132": 7,
          "SP 800-135": 10,
          "SP 800-185": 4,
          "SP 800-186": 2,
          "SP 800-38A": 20,
          "SP 800-38B": 2,
          "SP 800-38C": 2,
          "SP 800-38E": 3,
          "SP 800-38F": 5,
          "SP 800-56A": 10,
          "SP 800-56B": 2,
          "SP 800-56C": 6,
          "SP 800-67": 4,
          "SP 800-90A": 10
        },
        "PKCS": {
          "PKCS 1": 4,
          "PKCS#1": 4
        },
        "RFC": {
          "RFC 5246": 1,
          "RFC 5288": 1,
          "RFC 7627": 1,
          "RFC 8446": 2,
          "RFC7627": 6
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 53,
            "AES-": 1,
            "AES-128": 4,
            "AES-192": 4,
            "AES-256": 4
          },
          "CAST": {
            "CAST": 162
          }
        },
        "DES": {
          "3DES": {
            "TDES": 4,
            "Triple-DES": 6
          }
        },
        "constructions": {
          "MAC": {
            "CMAC": 2,
            "HMAC": 31,
            "HMAC-SHA-256": 14,
            "KMAC": 8
          }
        }
      },
      "tee_name": {
        "AMD": {
          "PSP": 10
        }
      },
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "policy_metadata": {
      "/Author": "Jing, Janet R. (Fed)",
      "/CreationDate": "D:20260805095010-04\u002700\u0027",
      "/ModDate": "D:20260805095010-04\u002700\u0027",
      "/Producer": "Microsoft: Print To PDF",
      "/Title": "Microsoft Word - TID-38-SV13-VAOE-IS-2608051133_140sp.docx",
      "pdf_file_size_bytes": 1830409,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 121
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.InternalState",
    "module": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "source_hash": null,
      "txt_hash": null
    },
    "policy": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "source_hash": "4b0f88c36944392fc077783314d395a4b4c3a17957076e61be065d487a1fbeb0",
      "txt_hash": "26bdd96b6b5ad2dbba6fa39999e7986fc88077ba27d1c6e68ab3812318ed0b82"
    }
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "No assurance of the minimum strength of generated SSPs (e.g., keys) and random strings. No assurance of minimum security of SSPs (e.g., keys, bit strings) that are externally loaded, or of SSPs established with externally loaded SSPs",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/June 2026_080726_0648.pdf",
    "date_sunset": "2029-08-26",
    "description": "enQase FIPS 140-3 Cryptographic Module is a standards-based cryptographic engine for networks, servers, appliances, edge devices, IoT and enterprise applications. The module delivers FIPS 140-3 cryptographic functions to platforms.",
    "embodiment": "MultiChipStand",
    "exceptions": [
      "Physical security: N/A",
      "Non-invasive security: N/A"
    ],
    "fw_versions": null,
    "historical_reason": null,
    "hw_versions": null,
    "level": 1,
    "mentioned_certs": {},
    "module_name": "enQase FIPS 140-3 Cryptographic Module",
    "module_type": "Software",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-3",
    "status": "active",
    "sw_versions": null,
    "tested_conf": null,
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2026-06-19",
        "lab": "DEKRA Cybersecurity Certification Laboratory",
        "validation_type": "Initial"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2026-08-05",
        "lab": "DEKRA Cybersecurity Certification Laboratory",
        "validation_type": "Update"
      }
    ],
    "vendor": "enQase",
    "vendor_url": "https://www.enqase.com/"
  }
}