nShield Remote Administration Token

Certificate #2764

Webpage information

Status historical
Historical reason Moved to historical list due to sunsetting
Validation dates 06.10.2016 , 29.01.2020
Standard FIPS 140-2
Security level 3
Type Hardware
Embodiment Single Chip
Caveat None
Exceptions
  • Physical Security: Level 4
Description The nShield Remote Administration Token is a single chip smart card micro-controller implementing the Global Platform operational environment, with Card Manager and the Authentication Token Applet. It implements the Remote Administration Card which enables the remote administration of Thales nShield Hardware Security Modules.
Version (Hardware) NXP P60D144
Version (Firmware) Athena IDProtect 0501.5175.0001 with Authentication Token Applet 1.0
Vendor nCipher Security Limited
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Symmetric Algorithms
AES, AES-256, AES-128, DES, CMAC
Asymmetric Algorithms
RSA 2048, ECDH, ECDSA, ECC, Diffie-Hellman, DH, DSA
Hash functions
SHA-256, SHA-512, SHA-2
Schemes
MAC
Randomness
DRBG, RNG
Elliptic Curves
P-256, P-521, NIST P-521
Block cipher modes
ECB, CBC

JavaCard versions
Java Card 3.0.4
Vendor
NXP

Security level
Level 3
Side-channel analysis
Side-channel, DPA, SPA, Fault Induction, Fault induction, fault induction

Standards
FIPS140-2, FIPS113, FIPS197, FIPS186-4, FIPS180-4, FIPS PUB 140-2, FIPS 140-2, FIPS 197, FIPS 180-4, FIPS 186-4, FIPS 140, SP 800-90A, SP 800-56A, PKCS#1, PKCS #1, ISO/IEC 7816-4, SCP03

File metadata

Title Security Policy
Author Logan, Diana
Creation date D:20191028124435Z
Modification date D:20191028124449Z
Pages 27
Creator Acrobat PDFMaker 17 for Word
Producer Adobe PDF Library 15.0

Heuristics

No heuristics are available for this certificate.

References

No references are available for this certificate.

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 2764,
  "dgst": "df979f8f4738e382",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "SHS#3147",
        "AES#3780",
        "CVL#721",
        "ECDSA#815",
        "KBKDF#82",
        "RSA#1948",
        "DRBG#1046",
        "KTS#3780"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "0501.5175.0001",
        "1.0"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 11
          },
          "ECDH": {
            "ECDH": 1
          },
          "ECDSA": {
            "ECDSA": 5
          }
        },
        "FF": {
          "DH": {
            "DH": 1,
            "Diffie-Hellman": 4
          },
          "DSA": {
            "DSA": 1
          }
        },
        "RSA": {
          "RSA 2048": 1
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 2
        },
        "ECB": {
          "ECB": 1
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {
        "MAC": {
          "MAC": 2
        }
      },
      "device_model": {},
      "ecc_curve": {
        "NIST": {
          "NIST P-521": 2,
          "P-256": 4,
          "P-521": 16
        }
      },
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "#1": 1
        }
      },
      "fips_certlike": {
        "Certlike": {
          "AES-128": 3,
          "AES-256": 12,
          "AES-256 CMAC 3780": 1,
          "CVL 721": 1,
          "Cert. # DRBG": 1,
          "PKCS #1": 2,
          "PKCS#1": 5,
          "RSA 2048": 1,
          "RSA PKCS#1": 1,
          "RSA1": 1,
          "RSASSA-PKCS1-v1_5": 1,
          "SHA-2": 1,
          "SHA-256": 4,
          "SHA-512": 4
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 3": 1
        }
      },
      "hash_function": {
        "SHA": {
          "SHA2": {
            "SHA-2": 1,
            "SHA-256": 4,
            "SHA-512": 4
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {
        "JavaCard": {
          "Java Card 3.0.4": 3
        }
      },
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 7
        },
        "RNG": {
          "RNG": 2
        }
      },
      "side_channel_analysis": {
        "FI": {
          "Fault Induction": 1,
          "Fault induction": 1,
          "fault induction": 1
        },
        "SCA": {
          "DPA": 1,
          "SPA": 1,
          "Side-channel": 3
        }
      },
      "standard_id": {
        "FIPS": {
          "FIPS 140": 1,
          "FIPS 140-2": 16,
          "FIPS 180-4": 1,
          "FIPS 186-4": 2,
          "FIPS 197": 1,
          "FIPS PUB 140-2": 1,
          "FIPS113": 1,
          "FIPS140-2": 1,
          "FIPS180-4": 1,
          "FIPS186-4": 1,
          "FIPS197": 1
        },
        "ISO": {
          "ISO/IEC 7816-4": 1
        },
        "NIST": {
          "SP 800-56A": 1,
          "SP 800-90A": 1
        },
        "PKCS": {
          "PKCS #1": 1,
          "PKCS#1": 3
        },
        "SCP": {
          "SCP03": 2
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 12,
            "AES-128": 3,
            "AES-256": 13
          }
        },
        "DES": {
          "DES": {
            "DES": 1
          }
        },
        "constructions": {
          "MAC": {
            "CMAC": 10
          }
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "NXP": {
          "NXP": 1
        }
      },
      "vulnerability": {}
    },
    "policy_metadata": {
      "/Author": "Logan, Diana",
      "/Comments": "",
      "/Company": "nCipher",
      "/CreationDate": "D:20191028124435Z",
      "/Creator": "Acrobat PDFMaker 17 for Word",
      "/Keywords": "",
      "/ModDate": "D:20191028124449Z",
      "/Producer": "Adobe PDF Library 15.0",
      "/SourceModified": "D:20191028124343",
      "/Subject": "",
      "/Title": "Security Policy",
      "pdf_file_size_bytes": 598037,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "http://www.ncipher.com/",
          "https://www.ncipher.com/",
          "https://ncipher.zendesk.com/hc/en-us/categories/360001306412-Customer-Service",
          "http://www.commoncriteriaportal.org/products/",
          "http://www.globalplatform.org/",
          "mailto:[email protected]"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 27
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
    "module_download_ok": true,
    "module_extract_ok": true,
    "policy_convert_ok": true,
    "policy_download_ok": true,
    "policy_extract_ok": true,
    "policy_json_hash": null,
    "policy_pdf_hash": "e1c68baf81ae173b68d832fb4cf19418e85b5797c35c9694ab3b1a2ad9357c50",
    "policy_txt_hash": "775f736564de4f90f16ead3496d8e489c6cc85c8dc1ca4ab305a6db8591fb771"
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "None",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/FIPS140ConsolidatedCertOct2016.pdf",
    "date_sunset": null,
    "description": "The nShield Remote Administration Token is a single chip smart card micro-controller implementing the Global Platform operational environment, with Card Manager and the Authentication Token Applet. It implements the Remote Administration Card which enables the remote administration of Thales nShield Hardware Security Modules.",
    "embodiment": "Single Chip",
    "exceptions": [
      "Physical Security: Level 4"
    ],
    "fw_versions": "Athena IDProtect 0501.5175.0001 with Authentication Token Applet 1.0",
    "historical_reason": "Moved to historical list due to sunsetting",
    "hw_versions": "NXP P60D144",
    "level": 3,
    "mentioned_certs": {},
    "module_name": "nShield Remote Administration Token",
    "module_type": "Hardware",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "historical",
    "sw_versions": null,
    "tested_conf": null,
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2016-10-06",
        "lab": "UL Verification Services, Inc.",
        "validation_type": "Initial"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2020-01-29",
        "lab": "Lightship Security, Inc.",
        "validation_type": "Update"
      }
    ],
    "vendor": "nCipher Security Limited",
    "vendor_url": "http://www.ncipher.com"
  }
}