This page was not yet optimized for use on mobile
devices.
Luna® PCI 7000 Cryptographic Module
Certificate #1856
Webpage information
Security policy
Symmetric Algorithms
AES, CAST5, RC4, RC2, RC5, DES, TDES, Triple-DES, ARIA, SEED, HMAC, HMAC-SHA-224, HMAC-SHA-256, HMAC-SHA-384, HMAC-SHA-512, CMACAsymmetric Algorithms
RSA 1024, ECDH, ECDSA, ECC, Diffie-Hellman, DSAHash functions
SHA-1, SHA1, SHA-224, SHA-256, SHA-384, SHA-512, SHA224, SHA384, SHA256, SHA512, MD5Schemes
MAC, Key AgreementProtocols
SSLRandomness
PRNG, RNGElliptic Curves
P-192, P-256, P-521, K-233, K-409, B-163, B-283, B-571, B-233Block cipher modes
ECB, CBC, OFBSecurity level
Level 2, level 2, Level 3Side-channel analysis
physical probing, Timing attacksStandards
FIPS 140-2, FIPS PUB 140-2, FIPS PUB 186-2, FIPS PUB 197, FIPS PUB 186-3, FIPS PUB 180-3, FIPS PUB 198, FIPS PUB 113, SP 800-67, SP 800-57, SP 800-56A, NIST SP 800-108, NIST SP 800-56A, NIST SP 800-38B, PKCS #11, PKCS #8, PKCS #1, X.509File metadata
| Title | CR-3551_8 |
|---|---|
| Author | choye |
| Creation date | D:20121109101049-05'00' |
| Modification date | D:20121109101049-05'00' |
| Pages | 37 |
| Creator | PDFCreator Version 1.1.0 |
| Producer | GPL Ghostscript 9.0 |
Heuristics
No heuristics are available for this certificate.
References
No references are available for this certificate.
Updates Feed
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate was first processed.
Raw data
{
"_type": "sec_certs.sample.fips.FIPSCertificate",
"cert_id": 1856,
"dgst": "c17ec73c802422d0",
"heuristics": {
"_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
"algorithms": {
"_type": "Set",
"elements": [
"ECDSA#269",
"KAS#29",
"RNG#998",
"AES#1904",
"DSA#600",
"HMAC#1142",
"RSA#975",
"Triple-DES MAC#520",
"Triple-DES#1236",
"AES#510",
"Triple-DES MAC#1236",
"SHS#1671",
"Triple-DES#520",
"RSA#974"
]
},
"cpe_matches": null,
"direct_transitive_cves": null,
"extracted_versions": {
"_type": "Set",
"elements": [
"4.8.7"
]
},
"indirect_transitive_cves": null,
"module_processed_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": null,
"indirectly_referenced_by": null,
"indirectly_referencing": null
},
"module_prunned_references": {
"_type": "Set",
"elements": []
},
"policy_processed_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": null,
"indirectly_referenced_by": null,
"indirectly_referencing": null
},
"policy_prunned_references": {
"_type": "Set",
"elements": []
},
"related_cves": null,
"verified_cpe_matches": null
},
"pdf_data": {
"_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
"keywords": {
"asymmetric_crypto": {
"ECC": {
"ECC": {
"ECC": 8
},
"ECDH": {
"ECDH": 2
},
"ECDSA": {
"ECDSA": 4
}
},
"FF": {
"DH": {
"Diffie-Hellman": 5
},
"DSA": {
"DSA": 7
}
},
"RSA": {
"RSA 1024": 1
}
},
"certification_process": {},
"cipher_mode": {
"CBC": {
"CBC": 2
},
"ECB": {
"ECB": 2
},
"OFB": {
"OFB": 1
}
},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {},
"crypto_protocol": {
"TLS": {
"SSL": {
"SSL": 1
}
}
},
"crypto_scheme": {
"KA": {
"Key Agreement": 1
},
"MAC": {
"MAC": 4
}
},
"device_model": {},
"ecc_curve": {
"NIST": {
"B-163": 3,
"B-233": 2,
"B-283": 4,
"B-571": 3,
"K-233": 5,
"K-409": 5,
"P-192": 10,
"P-256": 6,
"P-521": 10
}
},
"eval_facility": {},
"fips_cert_id": {
"Cert": {
"#1": 4,
"#11": 5,
"#8": 1
}
},
"fips_certlike": {
"Certlike": {
"AES 128, 192": 2,
"AES 128, 192 and 256": 1,
"AES 256": 2,
"DSA 1024": 3,
"HMAC SHA-1": 1,
"HMAC SHA-224": 1,
"HMAC SHA-256": 1,
"HMAC SHA-384": 1,
"HMAC SHA-512": 1,
"HMAC-SHA-1": 2,
"HMAC-SHA-224": 2,
"HMAC-SHA-256": 2,
"HMAC-SHA-384": 2,
"HMAC-SHA-512 1142": 2,
"PKCS #1": 8,
"PKCS #11": 10,
"PKCS #8": 2,
"RSA 1024": 1,
"SHA( 1": 5,
"SHA(1": 9,
"SHA- 1, 224": 2,
"SHA-1": 17,
"SHA-1, 224": 28,
"SHA-224": 10,
"SHA-256": 13,
"SHA-384": 10,
"SHA-512": 10,
"SHA1": 2,
"SHA224": 2,
"SHA256": 4,
"SHA384": 4,
"SHA512": 4
}
},
"fips_security_level": {
"Level": {
"Level 2": 21,
"Level 3": 5,
"level 2": 1
}
},
"hash_function": {
"MD": {
"MD5": {
"MD5": 1
}
},
"SHA": {
"SHA1": {
"SHA-1": 45,
"SHA1": 2
},
"SHA2": {
"SHA-224": 10,
"SHA-256": 13,
"SHA-384": 10,
"SHA-512": 10,
"SHA224": 4,
"SHA256": 2,
"SHA384": 6,
"SHA512": 2
}
}
},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {
"PRNG": {
"PRNG": 3
},
"RNG": {
"RNG": 5
}
},
"side_channel_analysis": {
"SCA": {
"Timing attacks": 1,
"physical probing": 1
}
},
"standard_id": {
"FIPS": {
"FIPS 140-2": 9,
"FIPS PUB 113": 1,
"FIPS PUB 140-2": 4,
"FIPS PUB 180-3": 5,
"FIPS PUB 186-2": 6,
"FIPS PUB 186-3": 3,
"FIPS PUB 197": 2,
"FIPS PUB 198": 1
},
"NIST": {
"NIST SP 800-108": 2,
"NIST SP 800-38B": 1,
"NIST SP 800-56A": 1,
"SP 800-56A": 2,
"SP 800-57": 2,
"SP 800-67": 2
},
"PKCS": {
"PKCS #1": 4,
"PKCS #11": 5,
"PKCS #8": 1
},
"X509": {
"X.509": 1
}
},
"symmetric_crypto": {
"AES_competition": {
"AES": {
"AES": 16
},
"CAST": {
"CAST5": 1
},
"RC": {
"RC2": 1,
"RC4": 2,
"RC5": 1
}
},
"DES": {
"3DES": {
"TDES": 18,
"Triple-DES": 1
},
"DES": {
"DES": 1
}
},
"constructions": {
"MAC": {
"CMAC": 2,
"HMAC": 6,
"HMAC-SHA-224": 1,
"HMAC-SHA-256": 1,
"HMAC-SHA-384": 1,
"HMAC-SHA-512": 1
}
},
"miscellaneous": {
"ARIA": {
"ARIA": 3
},
"SEED": {
"SEED": 3
}
}
},
"tee_name": {},
"tls_cipher_suite": {},
"vendor": {},
"vulnerability": {}
},
"policy_metadata": {
"/Author": "choye",
"/CreationDate": "D:20121109101049-05\u002700\u0027",
"/Creator": "PDFCreator Version 1.1.0",
"/Keywords": "",
"/ModDate": "D:20121109101049-05\u002700\u0027",
"/Producer": "GPL Ghostscript 9.0",
"/Subject": "",
"/Title": "CR-3551_8",
"pdf_file_size_bytes": 448667,
"pdf_hyperlinks": {
"_type": "Set",
"elements": []
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 37
}
},
"state": {
"_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
"module_download_ok": true,
"module_extract_ok": true,
"policy_convert_ok": true,
"policy_download_ok": true,
"policy_extract_ok": true,
"policy_json_hash": null,
"policy_pdf_hash": "f0b33227d3d031fa3a16cf2af0151abc42115414f0f2d9ebd4e753d2824bdc5b",
"policy_txt_hash": "15c43e922b517ca4951a4fddb7124e36ea207bbe18a71f170af73db1572f8aba"
},
"web_data": {
"_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
"caveat": "When operated in FIPS mode and configured to Overall Level 2 per Security Policy",
"certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/FIPS140ConsolidatedCertList0023.pdf",
"date_sunset": null,
"description": "Luna PCI\u00ae offers dedicated hardware key management to protect sensitive cryptographic keys from attack. The high-security hardware design ensures the integrity and protection of encryption keys throughout their life cycle. All digital signing and verification operations are performed within the HSM to increase performance and maintain security. Luna PCI\u00ae HSMs provide hardware secured key generation, storage, secure key backup and accelerated encryption in a range of models and configurations offering a wide selection of security, performance and operational capabilities.",
"embodiment": "Multi-Chip Embedded",
"exceptions": [
"Physical Security: Level 3",
"EMI/EMC: Level 3",
"Design Assurance: Level 3"
],
"fw_versions": "4.8.7",
"historical_reason": "RNG SP800-131A Revision 1 Transition",
"hw_versions": "VBD-03-0100",
"level": 2,
"mentioned_certs": {},
"module_name": "Luna\u00ae PCI 7000 Cryptographic Module",
"module_type": "Hardware",
"revoked_link": null,
"revoked_reason": null,
"standard": "FIPS 140-2",
"status": "historical",
"sw_versions": null,
"tested_conf": null,
"validation_history": [
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2012-11-29",
"lab": "EWA - Canada",
"validation_type": "Initial"
},
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2012-12-03",
"lab": "",
"validation_type": "Update"
}
],
"vendor": "SafeNet, Inc.",
"vendor_url": "http://www.safenet.com"
}
}