Encryption Module 10TCE-PCN-16GU+AES100G-F

Certificate details

Certificate ID #4500
Status historical
Historical reason Moved to historical list due to sunsetting
Validation dates 02.05.2023 , 30.01.2026
Standard FIPS 140-2
Security level 2
Type Hardware
Embodiment Multi-Chip Embedded
Caveat The tamper evident seals installed as indicated in the security policy; This module contains the embedded module StarSign Crypto-USB Token S powered by Sm@rtCafé Expert 7.0 Secure Element validated to FIPS 140-2 under Cert. #2628 operating in FIPS mode.
Exceptions
  • Design Assurance: Level 3
Description The 10TCE-PCN-16GU+AES100G-F encryption module is used for encryption and decryption of data transmitted over Optical Transportation Network (OTN) links. It is used in Adva Network Security's FSP 3000 Optical Network Encryption solutions.
Version (Hardware) HW B-1.01; pluggable transceivers: CFP/112G/LR4/SM/LC (HW 2.01, Part Number 1061700655-02), CFP/112G/#DCTCA/SM/LC (HW 1.02, Part Number 1061700635-01); shelves: SH9HU (Version HW 2.01, Part Number 1078700121), SH1HU-R/PF (Version HW 1.01, Part Number 1078700060-01; Version HW 3.01, Part Number 1078700060-03), SH1HU-HP/2DC (Version HW 2.11, Part Number 1078700144 F7/SH1HU-HP/2DC), SH1HU-HP/E-TEMP/2DC (Version HW 1.01, Part Number 1078700145-01 F7/SH1HU-HP/E-TEMP/2DC); labels and label kits: SEAL/FIPS-GENERAL (Part Number 1013700030-01), SEAL/FIPS-CFP (Part Number 1013700031-01), SEAL/FIPS-WIRE (Part Number 1013700032-01), SEAL/FIPS-GENERAL/5 (Part Number BC00000738)
Version (Firmware) 172.21.1, 191.4.1, 191.15.1
Vendor Adva Network Security GmbH http://www.advasecurity.com
Lab TUVIT Evaluation Body for IT Security
Algorithms
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Extracted keywords

Symmetric Algorithms
AES, AES-, HMAC, HMAC-SHA-256
Asymmetric Algorithms
RSA-3072, RSA 4096, DH, Diffie-Hellman, DSA
Hash functions
SHA-256, SHA-512, SHA512
Schemes
Key agreement
Protocols
SSH
Randomness
DRBG, RBG
Block cipher modes
ECB, CTR

Trusted Execution Environments
PSP
Vendor
Giesecke+Devrient

Security level
Level 2, level 3, level 2
Side-channel analysis
side-channel

Automated analysis

Automated inference - use with caution

All attributes shown in this section (e.g., links between certificates, products, vendors, and known CVEs) are generated by automated heuristics and have not been reviewed by humans. These methods can produce false positives or false negatives and should not be treated as definitive without independent verification. This applies equally to the Cross-references section below. If you want to know more about how this data is computed and how reliable it is, see our documentation on automated analysis. If you believe any information here is inaccurate or harmful, please submit feedback.

No automatically derived data are available in this section.

Cross-references

No references are available for this certificate.

Processing updates

Feed
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 4500,
  "dgst": "c746ee2edf45fa00",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "#C665",
        "DRBG#C664",
        "RSA#A884",
        "DRBG#455",
        "SHS#A884",
        "HMAC#A884",
        "#A885",
        "#C664",
        "AES#A884",
        "AES#C664",
        "#455",
        "SHS#C664",
        "#A884",
        "AES#A885",
        "DRBG#A884",
        "AES#C665",
        "HMAC#C664",
        "RSA#C664"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "191.4.1",
        "3.01",
        "2.01",
        "172.21.1",
        "2.11",
        "1.01",
        "191.15.1",
        "1.02"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "FF": {
          "DH": {
            "DH": 36,
            "Diffie-Hellman": 1
          },
          "DSA": {
            "DSA": 1
          }
        },
        "RSA": {
          "RSA 4096": 1,
          "RSA-3072": 1
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CTR": {
          "CTR": 4
        },
        "ECB": {
          "ECB": 5
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "SSH": {
          "SSH": 1
        }
      },
      "crypto_scheme": {
        "KA": {
          "Key agreement": 4
        }
      },
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "#2628": 12,
          "#455": 6
        }
      },
      "fips_certlike": {
        "Certlike": {
          "#455 DRBG": 1,
          "AES 128": 1,
          "AES key (96": 1,
          "DRBG 256": 1,
          "DRBG cert #2628": 1,
          "DRBG cert. #455": 3,
          "HMAC-SHA-256": 2,
          "RSA 4096": 1,
          "SHA 256": 1,
          "SHA-256": 8,
          "SHA-512": 3,
          "SHA512": 1
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 2": 1,
          "level 2": 1,
          "level 3": 1
        }
      },
      "hash_function": {
        "SHA": {
          "SHA2": {
            "SHA-256": 8,
            "SHA-512": 3,
            "SHA512": 1
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 20
        },
        "RNG": {
          "RBG": 2
        }
      },
      "side_channel_analysis": {
        "SCA": {
          "side-channel": 1
        }
      },
      "standard_id": {
        "FIPS": {
          "FIPS 140": 1,
          "FIPS 140-2": 17,
          "FIPS 1402": 1,
          "FIPS 180-4": 1,
          "FIPS 186-4": 1,
          "FIPS 197": 3,
          "FIPS 198-1": 1,
          "FIPS140-2": 1,
          "FIPS186-4": 1
        },
        "NIST": {
          "SP 800-38A": 3,
          "SP 800-90A": 1,
          "SP 800-90B": 2
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 16,
            "AES-": 1
          }
        },
        "constructions": {
          "MAC": {
            "HMAC": 4,
            "HMAC-SHA-256": 1
          }
        }
      },
      "tee_name": {
        "AMD": {
          "PSP": 3
        }
      },
      "tls_cipher_suite": {},
      "vendor": {
        "GD": {
          "Giesecke+Devrient": 3
        }
      },
      "vulnerability": {}
    },
    "module_algorithms": {
      "_type": "Set",
      "elements": [
        "DRBG#C664",
        "RSA#A884",
        "DRBG#455",
        "SHS#A884",
        "HMAC#A884",
        "AES#A884",
        "AES#C664",
        "SHS#C664",
        "AES#A885",
        "DRBG#A884",
        "AES#C665",
        "HMAC#C664",
        "RSA#C664"
      ]
    },
    "policy_algorithms": {
      "_type": "Set",
      "elements": [
        "#C665",
        "#A885",
        "#C664",
        "#455",
        "#A884"
      ]
    },
    "policy_metadata": {
      "/Author": "[email protected]",
      "/CreationDate": "D:20250925095840+02\u002700\u0027",
      "/Creator": "Microsoft\u00ae Word for Microsoft 365",
      "/ModDate": "D:20250925095840+02\u002700\u0027",
      "/Producer": "Microsoft\u00ae Word for Microsoft 365",
      "/Title": "Empf\u00e4ngeradresse eingeben",
      "pdf_file_size_bytes": 2593336,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "https://csrc.nist.gov/projects/cryptographic-module-validation-program",
          "https://www.advasecurity.com/"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 35
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.InternalState",
    "module": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "source_hash": null,
      "txt_hash": null
    },
    "policy": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": "0b460e3dacfdd7baa5df518e8a2f8afbeaae0e6ea2c31d7f934fa0f5b8d5589c",
      "source_hash": "d9eda476f23e996c8d4286ab920cad162870686449c47233c8928d177a857d87",
      "txt_hash": "ad84fd21c02b3edaedc3dcd45cb2f1f4f7eb81f0d0cc8e950536b1ba434657d5"
    }
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "The tamper evident seals installed as indicated in the security policy; This module contains the embedded module StarSign Crypto-USB Token S powered by Sm@rtCaf\u00e9 Expert 7.0 Secure Element validated to FIPS 140-2 under Cert. #2628 operating in FIPS mode.",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/May 2023_010623_0642.pdf",
    "date_sunset": null,
    "description": "The 10TCE-PCN-16GU+AES100G-F encryption module is used for encryption and decryption of data transmitted over Optical Transportation Network (OTN) links. It is used in Adva Network Security\u0027s FSP 3000 Optical Network Encryption solutions.",
    "embodiment": "Multi-Chip Embedded",
    "exceptions": [
      "Design Assurance: Level 3"
    ],
    "fw_versions": "172.21.1, 191.4.1, 191.15.1",
    "historical_reason": "Moved to historical list due to sunsetting",
    "hw_versions": "HW B-1.01; pluggable transceivers: CFP/112G/LR4/SM/LC (HW 2.01, Part Number 1061700655-02), CFP/112G/#DCTCA/SM/LC (HW 1.02, Part Number 1061700635-01); shelves: SH9HU (Version HW 2.01, Part Number 1078700121), SH1HU-R/PF (Version HW 1.01, Part Number 1078700060-01; Version HW 3.01, Part Number 1078700060-03), SH1HU-HP/2DC (Version HW 2.11, Part Number 1078700144 F7/SH1HU-HP/2DC), SH1HU-HP/E-TEMP/2DC (Version HW 1.01, Part Number 1078700145-01 F7/SH1HU-HP/E-TEMP/2DC); labels and label kits: SEAL/FIPS-GENERAL (Part Number 1013700030-01), SEAL/FIPS-CFP (Part Number 1013700031-01), SEAL/FIPS-WIRE (Part Number 1013700032-01), SEAL/FIPS-GENERAL/5 (Part Number BC00000738)",
    "level": 2,
    "mentioned_certs": {
      "2628": 1
    },
    "module_name": "Encryption Module 10TCE-PCN-16GU+AES100G-F",
    "module_type": "Hardware",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "historical",
    "sw_versions": null,
    "tested_conf": null,
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2023-05-02",
        "lab": "TUVIT Evaluation Body for IT Security",
        "validation_type": "Initial"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2026-01-30",
        "lab": "TUVIT Evaluation Body for IT Security",
        "validation_type": "Update"
      }
    ],
    "vendor": "Adva Network Security GmbH",
    "vendor_url": "http://www.advasecurity.com"
  }
}