This page was not yet optimized for use on mobile
devices.
Invisinet Cryptographic Module
Certificate #5273
Webpage information
| Status | active |
|---|---|
| Validation dates | 19.05.2026 |
| Sunset date | 26-08-2029 |
| Standard | FIPS 140-3 |
| Security level | 1 |
| Type | Software |
| Embodiment | MultiChipStand |
| Caveat | No assurance of the minimum strength of generated SSPs (e.g., keys) and random strings. No assurance of minimum security of SSPs (e.g., keys, bit strings) that are externally loaded, or of SSPs established with externally loaded SSPs |
| Exceptions |
|
| Description | Invisinet Cryptographic Module is a standards-based cryptographic engine used as part of the Invisinet Software Defined Perimeter (SDP) system for Transport Access Control, SSL, OpenSSL, as well as other security applications. The module delivers core cryptographic functions and features robust algorithm support. |
| Vendor | Invisinet Technologies LLC |
| References | This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates. |
Security policy
Symmetric Algorithms
AES-128, AES-192, AES-256, AES, AES-, CAST, Triple-DES, TDES, HMAC, HMAC-SHA-256, KMAC, CMACAsymmetric Algorithms
ECDH, ECDSA, EdDSA, ECC, DHE, Diffie-Hellman, DH, DSAHash functions
SHA-1, SHA-512, SHA-256, SHA-224, SHA-2, SHA3-224, SHA3-256, SHA3-384, SHA3-512, SHA-3, SHA3, SHAKE256, PBKDFSchemes
MAC, Key AgreementProtocols
SSH, SSHv2, SSL, TLS 1.2, TLS v1.2, TLS v1.3, TLS 1.3Randomness
DRBG, RNG, RBGLibraries
OpenSSLElliptic Curves
P-224, P-256, P-384, P-521, P-192, B-233, B-283, B-409, B-571, K-233, K-283, K-409, K-571, B-163, K-163, brainpoolP224r1, brainpoolP256r1, brainpoolP320r1, brainpoolP384r1, brainpoolP512r1, Ed25519, Ed448Block cipher modes
CBC, GCM, XTSTrusted Execution Environments
PSPSecurity level
Level 1Side-channel analysis
side-channel, timing attacks, timing attackStandards
FIPS 140-3, FIPS 140, FIPS186-4, FIPS 186-4, FIPS 186-5, FIPS 198-1, FIPS 180-4, FIPS 202, SP 800-38A, SP 800-38C, SP 800-38B, SP 800-38F, SP 800-38E, SP 800-90A, SP 800-56A, SP 800-56C, SP 800-135, SP 800-108, SP 800-185, SP 800-56B, SP 800-132, SP 800-67, SP 800-186, NIST SP 800-38D, PKCS 1, PKCS#1, RFC7627, RFC 5288, RFC 5246, RFC 8446, RFC 7627File metadata
| Title | Security Policy |
|---|---|
| Subject | CryptoComply 140-3 FIPS Provider |
| Author | SafeLogic Inc. |
| Creation date | D:20260518170019-04'00' |
| Modification date | D:20260518170342-04'00' |
| Pages | 122 |
| Creator | Acrobat PDFMaker 25 for Word |
| Producer | Adobe PDF Library 25.1.40 |
Heuristics
No heuristics are available for this certificate.
References
No references are available for this certificate.
Updates Feed
-
The certificate data changed.
-
The certificate data changed.
-
The certificate was first processed.
Raw data
{
"_type": "sec_certs.sample.fips.FIPSCertificate",
"cert_id": 5273,
"dgst": "c3ce295bd7f90c78",
"heuristics": {
"_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
"algorithms": {
"_type": "Set",
"elements": [
"RSA SigGen (FIPS186-4)A5173",
"AES-CBC-CS1A5173",
"SHAKE-128A5173",
"SHA2-224A5173",
"AES-OFBA5173",
"HMAC-SHA3-384A5173",
"TDES-ECBA5173",
"AES-CBC-CS3A5173",
"AES-KWPA5173",
"AES-CFB8A5173",
"SHA3-256A5173",
"HMAC-SHA2-256A5173",
"KAS-FFC-SSC Sp800-56Ar3A5173",
"KDA TwoStep SP800-56Cr2A5173",
"KTS-IFCA5173",
"KDF KMAC Sp800-108r1A5173",
"SHA-1A5173",
"DSA KeyGen (FIPS186-4)A5173",
"HMAC-SHA2-512/224A5173",
"AES-XTS Testing Revision 2.0A5173",
"SHA2-384A5173",
"HMAC-SHA2-512A5173",
"KAS-IFC-SSCA5173",
"HMAC DRBGA5173",
"EDDSA KeyVerA5173",
"Safe Primes Key GenerationA5173",
"SHA3-384A5173",
"KAS-ECC-SSC Sp800-56Ar3A5173",
"Hash DRBGA5173",
"RSA SigVer (FIPS186-4)A5173",
"AES-GCMA5173",
"KDF ANS 9.42A5173",
"AES-CFB1A5173",
"SHA2-256A5173",
"DSA PQGGen (FIPS186-4)A5173",
"PBKDFA5173",
"SHAKE-256A5173",
"HMAC-SHA2-512/256A5173",
"HMAC-SHA3-512A5173",
"Counter DRBGA5173",
"HMAC-SHA3-224A5173",
"HMAC-SHA2-224A5173",
"ECDSA KeyVer (FIPS186-4)A5173",
"TLS v1.3 KDFA5173",
"EDDSA KeyGenA5173",
"HMAC-SHA3-256A5173",
"KDF ANS 9.63A5173",
"SHA3-224A5173",
"KDA OneStep SP800-56Cr2A5173",
"HMAC-SHA-1A5173",
"ECDSA SigVer (FIPS186-4)A5173",
"KDF SP800-108A5173",
"TDES-CBCA5173",
"SHA2-512A5173",
"DSA SigVer (FIPS186-4)A5173",
"HMAC-SHA2-384A5173",
"KDF SSHA5173",
"AES-CBCA5173",
"AES-GMACA5173",
"AES-CBC-CS2A5173",
"Safe Primes Key VerificationA5173",
"AES-CFB128A5173",
"EDDSA SigGenA5173",
"RSA KeyGen (FIPS186-4)A5173",
"SHA2-512/224A5173",
"SHA2-512/256A5173",
"AES-CTRA5173",
"AES-KWA5173",
"KDA HKDF SP800-56Cr2A5173",
"AES-CCMA5173",
"ECDSA SigGen (FIPS186-4)A5173",
"SHA3-512A5173",
"ECDSA KeyGen (FIPS186-4)A5173",
"AES-CMACA5173",
"KMAC-128A5173",
"TLS v1.2 KDF RFC7627A5173",
"DSA PQGVer (FIPS186-4)A5173",
"EDDSA SigVerA5173",
"AES-ECBA5173",
"KMAC-256A5173"
]
},
"cpe_matches": null,
"direct_transitive_cves": null,
"extracted_versions": {
"_type": "Set",
"elements": [
"-"
]
},
"indirect_transitive_cves": null,
"module_processed_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": null,
"indirectly_referenced_by": null,
"indirectly_referencing": null
},
"module_prunned_references": {
"_type": "Set",
"elements": []
},
"policy_processed_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": null,
"indirectly_referenced_by": null,
"indirectly_referencing": null
},
"policy_prunned_references": {
"_type": "Set",
"elements": []
},
"related_cves": null,
"verified_cpe_matches": null
},
"pdf_data": {
"_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
"keywords": {
"asymmetric_crypto": {
"ECC": {
"ECC": {
"ECC": 19
},
"ECDH": {
"ECDH": 6
},
"ECDSA": {
"ECDSA": 64
},
"EdDSA": {
"EdDSA": 22
}
},
"FF": {
"DH": {
"DH": 31,
"DHE": 2,
"Diffie-Hellman": 2
},
"DSA": {
"DSA": 40
}
}
},
"certification_process": {},
"cipher_mode": {
"CBC": {
"CBC": 2
},
"GCM": {
"GCM": 10
},
"XTS": {
"XTS": 10
}
},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {
"OpenSSL": {
"OpenSSL": 9
}
},
"crypto_protocol": {
"SSH": {
"SSH": 7,
"SSHv2": 2
},
"TLS": {
"SSL": {
"SSL": 1
},
"TLS": {
"TLS 1.2": 10,
"TLS 1.3": 9,
"TLS v1.2": 7,
"TLS v1.3": 7
}
}
},
"crypto_scheme": {
"KA": {
"Key Agreement": 19
},
"MAC": {
"MAC": 48
}
},
"device_model": {},
"ecc_curve": {
"Brainpool": {
"brainpoolP224r1": 2,
"brainpoolP256r1": 4,
"brainpoolP320r1": 4,
"brainpoolP384r1": 4,
"brainpoolP512r1": 4
},
"Edwards": {
"Ed25519": 16,
"Ed448": 16
},
"NIST": {
"B-163": 6,
"B-233": 15,
"B-283": 13,
"B-409": 12,
"B-571": 15,
"K-163": 6,
"K-233": 19,
"K-283": 13,
"K-409": 15,
"K-571": 12,
"P-192": 12,
"P-224": 38,
"P-256": 30,
"P-384": 30,
"P-521": 30
}
},
"eval_facility": {},
"fips_cert_id": {},
"fips_certlike": {
"Certlike": {
"- PKCS 1": 2,
"AES-128": 4,
"AES-192": 4,
"AES-256": 4,
"Diffie- Hellman 224": 1,
"HMAC 160": 1,
"HMAC 160, 224": 1,
"HMAC- SHA-1": 2,
"HMAC- SHA-256": 2,
"HMAC-SHA- 256": 4,
"HMAC-SHA-1": 16,
"HMAC-SHA-256": 28,
"PKCS 1": 6,
"PKCS#1": 8,
"SHA- 1 1024": 1,
"SHA- 3": 1,
"SHA-1": 40,
"SHA-2": 2,
"SHA-224": 2,
"SHA-256": 17,
"SHA-3": 1,
"SHA-512": 15,
"SHA2-224": 26,
"SHA2-256": 32,
"SHA2-384": 28,
"SHA2-512": 36,
"SHA3": 4,
"SHA3- 512": 8,
"SHA3-224": 14,
"SHA3-256": 16,
"SHA3-384": 14,
"SHA3-512": 6
}
},
"fips_security_level": {
"Level": {
"Level 1": 3
}
},
"hash_function": {
"PBKDF": {
"PBKDF": 16
},
"SHA": {
"SHA1": {
"SHA-1": 40
},
"SHA2": {
"SHA-2": 2,
"SHA-224": 2,
"SHA-256": 17,
"SHA-512": 15
},
"SHA3": {
"SHA-3": 1,
"SHA3": 4,
"SHA3-224": 14,
"SHA3-256": 16,
"SHA3-384": 14,
"SHA3-512": 6
}
},
"SHAKE": {
"SHAKE256": 1
}
},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {
"PRNG": {
"DRBG": 79
},
"RNG": {
"RBG": 21,
"RNG": 22
}
},
"side_channel_analysis": {
"SCA": {
"side-channel": 1,
"timing attack": 1,
"timing attacks": 2
}
},
"standard_id": {
"FIPS": {
"FIPS 140": 8,
"FIPS 140-3": 13,
"FIPS 180-4": 14,
"FIPS 186-4": 26,
"FIPS 186-5": 11,
"FIPS 198-1": 22,
"FIPS 202": 12,
"FIPS186-4": 41
},
"NIST": {
"NIST SP 800-38D": 1,
"SP 800-108": 4,
"SP 800-132": 7,
"SP 800-135": 10,
"SP 800-185": 4,
"SP 800-186": 2,
"SP 800-38A": 20,
"SP 800-38B": 2,
"SP 800-38C": 2,
"SP 800-38E": 3,
"SP 800-38F": 5,
"SP 800-56A": 10,
"SP 800-56B": 2,
"SP 800-56C": 6,
"SP 800-67": 4,
"SP 800-90A": 10
},
"PKCS": {
"PKCS 1": 4,
"PKCS#1": 4
},
"RFC": {
"RFC 5246": 1,
"RFC 5288": 1,
"RFC 7627": 1,
"RFC 8446": 2,
"RFC7627": 6
}
},
"symmetric_crypto": {
"AES_competition": {
"AES": {
"AES": 53,
"AES-": 1,
"AES-128": 4,
"AES-192": 4,
"AES-256": 4
},
"CAST": {
"CAST": 162
}
},
"DES": {
"3DES": {
"TDES": 4,
"Triple-DES": 6
}
},
"constructions": {
"MAC": {
"CMAC": 2,
"HMAC": 31,
"HMAC-SHA-256": 14,
"KMAC": 8
}
}
},
"tee_name": {
"AMD": {
"PSP": 10
}
},
"tls_cipher_suite": {},
"vendor": {},
"vulnerability": {}
},
"policy_metadata": {
"/ACVP Cert A": "A4593",
"/ACVP Cert B": "A5173",
"/ACVP Certs": "A4593, A5173",
"/Author": "SafeLogic Inc.",
"/Client": "SafeLogic Inc.",
"/Comments": "",
"/Company": "SafeLogic",
"/CreationDate": "D:20260518170019-04\u002700\u0027",
"/Creator": "Acrobat PDFMaker 25 for Word",
"/Doc Version": "1.3",
"/Keywords": "",
"/MSIP_Label_c968a81f-7ed4-4faa-9408-9652e001dd96_ActionId": "4887e0e4-7009-40a6-bc60-76c09a102a1b",
"/MSIP_Label_c968a81f-7ed4-4faa-9408-9652e001dd96_ContentBits": "0",
"/MSIP_Label_c968a81f-7ed4-4faa-9408-9652e001dd96_Enabled": "true",
"/MSIP_Label_c968a81f-7ed4-4faa-9408-9652e001dd96_Method": "Privileged",
"/MSIP_Label_c968a81f-7ed4-4faa-9408-9652e001dd96_Name": "Unrestricted",
"/MSIP_Label_c968a81f-7ed4-4faa-9408-9652e001dd96_SetDate": "2024-11-11T19:34:29Z",
"/MSIP_Label_c968a81f-7ed4-4faa-9408-9652e001dd96_SiteId": "b64da4ac-e800-4cfc-8931-e607f720a1b8",
"/ModDate": "D:20260518170342-04\u002700\u0027",
"/Producer": "Adobe PDF Library 25.1.40",
"/SW Version": "3.0.0-FIPS 140-3",
"/SW Version B": "3.0.1-FIPS 140-3",
"/SourceModified": "",
"/Subject": "CryptoComply 140-3 FIPS Provider",
"/Title": "Security Policy",
"pdf_file_size_bytes": 1567717,
"pdf_hyperlinks": {
"_type": "Set",
"elements": [
"mailto:[email protected]",
"http://www.safelogic.com/",
"https://www.invisinet.com/",
"https://csrc.nist.gov/projects/cryptographic-module-validation-program"
]
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 122
}
},
"state": {
"_type": "sec_certs.sample.fips.InternalState",
"module": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"json_hash": null,
"source_hash": null,
"txt_hash": null
},
"policy": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"json_hash": null,
"source_hash": "e6bf19f295998b8578404b6be47cf0331d04f86bd9fad3974b79977e8367e293",
"txt_hash": "e0ce8f15d55e00e4a0d1a3db18af534e16f94dd567ca900bd6e069a87a4b6588"
}
},
"web_data": {
"_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
"caveat": "No assurance of the minimum strength of generated SSPs (e.g., keys) and random strings. No assurance of minimum security of SSPs (e.g., keys, bit strings) that are externally loaded, or of SSPs established with externally loaded SSPs",
"certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/May 2026_030626_0716.pdf",
"date_sunset": "2029-08-26",
"description": "Invisinet Cryptographic Module is a standards-based cryptographic engine used as part of the Invisinet Software Defined Perimeter (SDP) system for Transport Access Control, SSL, OpenSSL, as well as other security applications. The module delivers core cryptographic functions and features robust algorithm support.",
"embodiment": "MultiChipStand",
"exceptions": [
"Physical security: N/A",
"Non-invasive security: N/A"
],
"fw_versions": null,
"historical_reason": null,
"hw_versions": null,
"level": 1,
"mentioned_certs": {},
"module_name": "Invisinet Cryptographic Module",
"module_type": "Software",
"revoked_link": null,
"revoked_reason": null,
"standard": "FIPS 140-3",
"status": "active",
"sw_versions": null,
"tested_conf": null,
"validation_history": [
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2026-05-19",
"lab": "DEKRA Cybersecurity Certification Laboratory",
"validation_type": "Initial"
}
],
"vendor": "Invisinet Technologies LLC",
"vendor_url": "https://www.invisinet.com/"
}
}