Invisinet Cryptographic Module

Certificate #5273

Webpage information

Status active
Validation dates 19.05.2026
Sunset date 26-08-2029
Standard FIPS 140-3
Security level 1
Type Software
Embodiment MultiChipStand
Caveat No assurance of the minimum strength of generated SSPs (e.g., keys) and random strings. No assurance of minimum security of SSPs (e.g., keys, bit strings) that are externally loaded, or of SSPs established with externally loaded SSPs
Exceptions
  • Physical security: N/A
  • Non-invasive security: N/A
Description Invisinet Cryptographic Module is a standards-based cryptographic engine used as part of the Invisinet Software Defined Perimeter (SDP) system for Transport Access Control, SSL, OpenSSL, as well as other security applications. The module delivers core cryptographic functions and features robust algorithm support.
Vendor Invisinet Technologies LLC
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Symmetric Algorithms
AES-128, AES-192, AES-256, AES, AES-, CAST, Triple-DES, TDES, HMAC, HMAC-SHA-256, KMAC, CMAC
Asymmetric Algorithms
ECDH, ECDSA, EdDSA, ECC, DHE, Diffie-Hellman, DH, DSA
Hash functions
SHA-1, SHA-512, SHA-256, SHA-224, SHA-2, SHA3-224, SHA3-256, SHA3-384, SHA3-512, SHA-3, SHA3, SHAKE256, PBKDF
Schemes
MAC, Key Agreement
Protocols
SSH, SSHv2, SSL, TLS 1.2, TLS v1.2, TLS v1.3, TLS 1.3
Randomness
DRBG, RNG, RBG
Libraries
OpenSSL
Elliptic Curves
P-224, P-256, P-384, P-521, P-192, B-233, B-283, B-409, B-571, K-233, K-283, K-409, K-571, B-163, K-163, brainpoolP224r1, brainpoolP256r1, brainpoolP320r1, brainpoolP384r1, brainpoolP512r1, Ed25519, Ed448
Block cipher modes
CBC, GCM, XTS

Trusted Execution Environments
PSP

Security level
Level 1
Side-channel analysis
side-channel, timing attacks, timing attack

File metadata

Title Security Policy
Subject CryptoComply 140-3 FIPS Provider
Author SafeLogic Inc.
Creation date D:20260518170019-04'00'
Modification date D:20260518170342-04'00'
Pages 122
Creator Acrobat PDFMaker 25 for Word
Producer Adobe PDF Library 25.1.40

Heuristics

No heuristics are available for this certificate.

References

No references are available for this certificate.

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 5273,
  "dgst": "c3ce295bd7f90c78",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "RSA SigGen (FIPS186-4)A5173",
        "AES-CBC-CS1A5173",
        "SHAKE-128A5173",
        "SHA2-224A5173",
        "AES-OFBA5173",
        "HMAC-SHA3-384A5173",
        "TDES-ECBA5173",
        "AES-CBC-CS3A5173",
        "AES-KWPA5173",
        "AES-CFB8A5173",
        "SHA3-256A5173",
        "HMAC-SHA2-256A5173",
        "KAS-FFC-SSC Sp800-56Ar3A5173",
        "KDA TwoStep SP800-56Cr2A5173",
        "KTS-IFCA5173",
        "KDF KMAC Sp800-108r1A5173",
        "SHA-1A5173",
        "DSA KeyGen (FIPS186-4)A5173",
        "HMAC-SHA2-512/224A5173",
        "AES-XTS Testing Revision 2.0A5173",
        "SHA2-384A5173",
        "HMAC-SHA2-512A5173",
        "KAS-IFC-SSCA5173",
        "HMAC DRBGA5173",
        "EDDSA KeyVerA5173",
        "Safe Primes Key GenerationA5173",
        "SHA3-384A5173",
        "KAS-ECC-SSC Sp800-56Ar3A5173",
        "Hash DRBGA5173",
        "RSA SigVer (FIPS186-4)A5173",
        "AES-GCMA5173",
        "KDF ANS 9.42A5173",
        "AES-CFB1A5173",
        "SHA2-256A5173",
        "DSA PQGGen (FIPS186-4)A5173",
        "PBKDFA5173",
        "SHAKE-256A5173",
        "HMAC-SHA2-512/256A5173",
        "HMAC-SHA3-512A5173",
        "Counter DRBGA5173",
        "HMAC-SHA3-224A5173",
        "HMAC-SHA2-224A5173",
        "ECDSA KeyVer (FIPS186-4)A5173",
        "TLS v1.3 KDFA5173",
        "EDDSA KeyGenA5173",
        "HMAC-SHA3-256A5173",
        "KDF ANS 9.63A5173",
        "SHA3-224A5173",
        "KDA OneStep SP800-56Cr2A5173",
        "HMAC-SHA-1A5173",
        "ECDSA SigVer (FIPS186-4)A5173",
        "KDF SP800-108A5173",
        "TDES-CBCA5173",
        "SHA2-512A5173",
        "DSA SigVer (FIPS186-4)A5173",
        "HMAC-SHA2-384A5173",
        "KDF SSHA5173",
        "AES-CBCA5173",
        "AES-GMACA5173",
        "AES-CBC-CS2A5173",
        "Safe Primes Key VerificationA5173",
        "AES-CFB128A5173",
        "EDDSA SigGenA5173",
        "RSA KeyGen (FIPS186-4)A5173",
        "SHA2-512/224A5173",
        "SHA2-512/256A5173",
        "AES-CTRA5173",
        "AES-KWA5173",
        "KDA HKDF SP800-56Cr2A5173",
        "AES-CCMA5173",
        "ECDSA SigGen (FIPS186-4)A5173",
        "SHA3-512A5173",
        "ECDSA KeyGen (FIPS186-4)A5173",
        "AES-CMACA5173",
        "KMAC-128A5173",
        "TLS v1.2 KDF RFC7627A5173",
        "DSA PQGVer (FIPS186-4)A5173",
        "EDDSA SigVerA5173",
        "AES-ECBA5173",
        "KMAC-256A5173"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "-"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 19
          },
          "ECDH": {
            "ECDH": 6
          },
          "ECDSA": {
            "ECDSA": 64
          },
          "EdDSA": {
            "EdDSA": 22
          }
        },
        "FF": {
          "DH": {
            "DH": 31,
            "DHE": 2,
            "Diffie-Hellman": 2
          },
          "DSA": {
            "DSA": 40
          }
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 2
        },
        "GCM": {
          "GCM": 10
        },
        "XTS": {
          "XTS": 10
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {
        "OpenSSL": {
          "OpenSSL": 9
        }
      },
      "crypto_protocol": {
        "SSH": {
          "SSH": 7,
          "SSHv2": 2
        },
        "TLS": {
          "SSL": {
            "SSL": 1
          },
          "TLS": {
            "TLS 1.2": 10,
            "TLS 1.3": 9,
            "TLS v1.2": 7,
            "TLS v1.3": 7
          }
        }
      },
      "crypto_scheme": {
        "KA": {
          "Key Agreement": 19
        },
        "MAC": {
          "MAC": 48
        }
      },
      "device_model": {},
      "ecc_curve": {
        "Brainpool": {
          "brainpoolP224r1": 2,
          "brainpoolP256r1": 4,
          "brainpoolP320r1": 4,
          "brainpoolP384r1": 4,
          "brainpoolP512r1": 4
        },
        "Edwards": {
          "Ed25519": 16,
          "Ed448": 16
        },
        "NIST": {
          "B-163": 6,
          "B-233": 15,
          "B-283": 13,
          "B-409": 12,
          "B-571": 15,
          "K-163": 6,
          "K-233": 19,
          "K-283": 13,
          "K-409": 15,
          "K-571": 12,
          "P-192": 12,
          "P-224": 38,
          "P-256": 30,
          "P-384": 30,
          "P-521": 30
        }
      },
      "eval_facility": {},
      "fips_cert_id": {},
      "fips_certlike": {
        "Certlike": {
          "- PKCS 1": 2,
          "AES-128": 4,
          "AES-192": 4,
          "AES-256": 4,
          "Diffie- Hellman 224": 1,
          "HMAC 160": 1,
          "HMAC 160, 224": 1,
          "HMAC- SHA-1": 2,
          "HMAC- SHA-256": 2,
          "HMAC-SHA- 256": 4,
          "HMAC-SHA-1": 16,
          "HMAC-SHA-256": 28,
          "PKCS 1": 6,
          "PKCS#1": 8,
          "SHA- 1 1024": 1,
          "SHA- 3": 1,
          "SHA-1": 40,
          "SHA-2": 2,
          "SHA-224": 2,
          "SHA-256": 17,
          "SHA-3": 1,
          "SHA-512": 15,
          "SHA2-224": 26,
          "SHA2-256": 32,
          "SHA2-384": 28,
          "SHA2-512": 36,
          "SHA3": 4,
          "SHA3- 512": 8,
          "SHA3-224": 14,
          "SHA3-256": 16,
          "SHA3-384": 14,
          "SHA3-512": 6
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 1": 3
        }
      },
      "hash_function": {
        "PBKDF": {
          "PBKDF": 16
        },
        "SHA": {
          "SHA1": {
            "SHA-1": 40
          },
          "SHA2": {
            "SHA-2": 2,
            "SHA-224": 2,
            "SHA-256": 17,
            "SHA-512": 15
          },
          "SHA3": {
            "SHA-3": 1,
            "SHA3": 4,
            "SHA3-224": 14,
            "SHA3-256": 16,
            "SHA3-384": 14,
            "SHA3-512": 6
          }
        },
        "SHAKE": {
          "SHAKE256": 1
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 79
        },
        "RNG": {
          "RBG": 21,
          "RNG": 22
        }
      },
      "side_channel_analysis": {
        "SCA": {
          "side-channel": 1,
          "timing attack": 1,
          "timing attacks": 2
        }
      },
      "standard_id": {
        "FIPS": {
          "FIPS 140": 8,
          "FIPS 140-3": 13,
          "FIPS 180-4": 14,
          "FIPS 186-4": 26,
          "FIPS 186-5": 11,
          "FIPS 198-1": 22,
          "FIPS 202": 12,
          "FIPS186-4": 41
        },
        "NIST": {
          "NIST SP 800-38D": 1,
          "SP 800-108": 4,
          "SP 800-132": 7,
          "SP 800-135": 10,
          "SP 800-185": 4,
          "SP 800-186": 2,
          "SP 800-38A": 20,
          "SP 800-38B": 2,
          "SP 800-38C": 2,
          "SP 800-38E": 3,
          "SP 800-38F": 5,
          "SP 800-56A": 10,
          "SP 800-56B": 2,
          "SP 800-56C": 6,
          "SP 800-67": 4,
          "SP 800-90A": 10
        },
        "PKCS": {
          "PKCS 1": 4,
          "PKCS#1": 4
        },
        "RFC": {
          "RFC 5246": 1,
          "RFC 5288": 1,
          "RFC 7627": 1,
          "RFC 8446": 2,
          "RFC7627": 6
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 53,
            "AES-": 1,
            "AES-128": 4,
            "AES-192": 4,
            "AES-256": 4
          },
          "CAST": {
            "CAST": 162
          }
        },
        "DES": {
          "3DES": {
            "TDES": 4,
            "Triple-DES": 6
          }
        },
        "constructions": {
          "MAC": {
            "CMAC": 2,
            "HMAC": 31,
            "HMAC-SHA-256": 14,
            "KMAC": 8
          }
        }
      },
      "tee_name": {
        "AMD": {
          "PSP": 10
        }
      },
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "policy_metadata": {
      "/ACVP Cert A": "A4593",
      "/ACVP Cert B": "A5173",
      "/ACVP Certs": "A4593, A5173",
      "/Author": "SafeLogic Inc.",
      "/Client": "SafeLogic Inc.",
      "/Comments": "",
      "/Company": "SafeLogic",
      "/CreationDate": "D:20260518170019-04\u002700\u0027",
      "/Creator": "Acrobat PDFMaker 25 for Word",
      "/Doc Version": "1.3",
      "/Keywords": "",
      "/MSIP_Label_c968a81f-7ed4-4faa-9408-9652e001dd96_ActionId": "4887e0e4-7009-40a6-bc60-76c09a102a1b",
      "/MSIP_Label_c968a81f-7ed4-4faa-9408-9652e001dd96_ContentBits": "0",
      "/MSIP_Label_c968a81f-7ed4-4faa-9408-9652e001dd96_Enabled": "true",
      "/MSIP_Label_c968a81f-7ed4-4faa-9408-9652e001dd96_Method": "Privileged",
      "/MSIP_Label_c968a81f-7ed4-4faa-9408-9652e001dd96_Name": "Unrestricted",
      "/MSIP_Label_c968a81f-7ed4-4faa-9408-9652e001dd96_SetDate": "2024-11-11T19:34:29Z",
      "/MSIP_Label_c968a81f-7ed4-4faa-9408-9652e001dd96_SiteId": "b64da4ac-e800-4cfc-8931-e607f720a1b8",
      "/ModDate": "D:20260518170342-04\u002700\u0027",
      "/Producer": "Adobe PDF Library 25.1.40",
      "/SW Version": "3.0.0-FIPS 140-3",
      "/SW Version B": "3.0.1-FIPS 140-3",
      "/SourceModified": "",
      "/Subject": "CryptoComply 140-3 FIPS Provider",
      "/Title": "Security Policy",
      "pdf_file_size_bytes": 1567717,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "mailto:[email protected]",
          "http://www.safelogic.com/",
          "https://www.invisinet.com/",
          "https://csrc.nist.gov/projects/cryptographic-module-validation-program"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 122
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.InternalState",
    "module": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "source_hash": null,
      "txt_hash": null
    },
    "policy": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "source_hash": "e6bf19f295998b8578404b6be47cf0331d04f86bd9fad3974b79977e8367e293",
      "txt_hash": "e0ce8f15d55e00e4a0d1a3db18af534e16f94dd567ca900bd6e069a87a4b6588"
    }
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "No assurance of the minimum strength of generated SSPs (e.g., keys) and random strings. No assurance of minimum security of SSPs (e.g., keys, bit strings) that are externally loaded, or of SSPs established with externally loaded SSPs",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/May 2026_030626_0716.pdf",
    "date_sunset": "2029-08-26",
    "description": "Invisinet Cryptographic Module is a standards-based cryptographic engine used as part of the Invisinet Software Defined Perimeter (SDP) system for Transport Access Control, SSL, OpenSSL, as well as other security applications. The module delivers core cryptographic functions and features robust algorithm support.",
    "embodiment": "MultiChipStand",
    "exceptions": [
      "Physical security: N/A",
      "Non-invasive security: N/A"
    ],
    "fw_versions": null,
    "historical_reason": null,
    "hw_versions": null,
    "level": 1,
    "mentioned_certs": {},
    "module_name": "Invisinet Cryptographic Module",
    "module_type": "Software",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-3",
    "status": "active",
    "sw_versions": null,
    "tested_conf": null,
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2026-05-19",
        "lab": "DEKRA Cybersecurity Certification Laboratory",
        "validation_type": "Initial"
      }
    ],
    "vendor": "Invisinet Technologies LLC",
    "vendor_url": "https://www.invisinet.com/"
  }
}