iStorage FIPS 140-2 Level 2 Module Rev 1.0

Certificate #3294

Webpage information

Status historical
Historical reason Moved to historical list due to sunsetting
Validation dates 26.09.2018
Standard FIPS 140-2
Security level 2
Type Hardware
Embodiment Multi-Chip Embedded
Caveat None
Exceptions
  • Cryptographic Module Specification: Level 3
  • Cryptographic Module Ports and Interfaces: Level 3
  • Physical Security: Level 3
  • EMI/EMC: Level 3
  • Design Assurance: Level 3
  • Mitigation of Other Attacks: N/A
Description iStorage FIPS 140-2 Module is a portable USB 3.1 module with real-time AES-XTS 256-bit hardware encryption and super-fast data transfer. An easy-to-use keypad interface enables secure access with unique 7-15 digit PINs and software-free setup and operation. The module is platform/device independent. The GDPR compliant module has a dedicated secure microprocessor (Common Criteria EAL4+ ready), employing built-in physical protection mechanisms to defend against external tamper, bypass attacks and more. All critical components are covered by super tough epoxy resin.
Version (Hardware) Rev 1.0
Version (Firmware) EC Firmware version IS_EC_FW_2_59_1X and SC Firmware version 1.6
Vendor iStorage Ltd.
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Symmetric Algorithms
AES, AES-256, HMAC, HMAC-SHA-256
Hash functions
SHA-256, PBKDF
Randomness
DRBG, RNG
Block cipher modes
ECB, CBC, CTR, XTS

Security level
Level 2, Level 1

Standards
FIPS 140-2, FIPS 197, FIPS 198-1, FIPS 180-4, FIPS PUB 140-2, SP 800-90A, NIST SP 800-38A, SP 800-38F, SP 800-133, NIST SP 800-90A, NIST SP 800-132, RFC 2898

File metadata

Title Microsoft Word - 83fe-beab-7d9f-4ba9.docx
Author Aryeh
Creation date D:20180920122953-07'00'
Modification date D:20180920123020-07'00'
Pages 17
Creator Nitro Pro
Producer Nitro Pro 11 (11.0.7.425)

Heuristics

No heuristics are available for this certificate.

References

No references are available for this certificate.

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 3294,
  "dgst": "ed4f9ab58560a9b7",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "AES#4642",
        "AES#5179",
        "HMAC#3435",
        "SHS#4183",
        "DRBG#1954"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "1.6",
        "1.0"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {},
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 1
        },
        "CTR": {
          "CTR": 3
        },
        "ECB": {
          "ECB": 4
        },
        "XTS": {
          "XTS": 1
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "#4642": 1,
          "#5179": 2,
          "Cert. 3435": 1
        }
      },
      "fips_certlike": {
        "Certlike": {
          "AES (Cert. #4642": 1,
          "AES (Cert. #5179": 1,
          "AES-256": 1,
          "HMAC-SHA-256": 3,
          "HMAC-SHA-256 (Cert. 3435": 1,
          "HMAC-SHA-256 256": 2,
          "SHA-256": 2
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 1": 1,
          "Level 2": 21
        }
      },
      "hash_function": {
        "PBKDF": {
          "PBKDF": 25
        },
        "SHA": {
          "SHA2": {
            "SHA-256": 2
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 8
        },
        "RNG": {
          "RNG": 1
        }
      },
      "side_channel_analysis": {},
      "standard_id": {
        "FIPS": {
          "FIPS 140-2": 38,
          "FIPS 180-4": 1,
          "FIPS 197": 2,
          "FIPS 198-1": 1,
          "FIPS PUB 140-2": 1
        },
        "NIST": {
          "NIST SP 800-132": 1,
          "NIST SP 800-38A": 2,
          "NIST SP 800-90A": 1,
          "SP 800-133": 1,
          "SP 800-38F": 1,
          "SP 800-90A": 7
        },
        "RFC": {
          "RFC 2898": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 16,
            "AES-256": 1
          }
        },
        "constructions": {
          "MAC": {
            "HMAC": 3,
            "HMAC-SHA-256": 3
          }
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "policy_metadata": {
      "/Author": "Aryeh",
      "/CreationDate": "D:20180920122953-07\u002700\u0027",
      "/Creator": "Nitro Pro",
      "/ModDate": "D:20180920123020-07\u002700\u0027",
      "/Producer": "Nitro Pro 11 (11.0.7.425)",
      "/Title": "Microsoft Word - 83fe-beab-7d9f-4ba9.docx",
      "pdf_file_size_bytes": 520664,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 17
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
    "module_download_ok": true,
    "module_extract_ok": true,
    "policy_convert_ok": true,
    "policy_download_ok": true,
    "policy_extract_ok": true,
    "policy_json_hash": null,
    "policy_pdf_hash": "d21912326a73ed3101847a351e0d7ef461c610231491263596011204608eba91",
    "policy_txt_hash": "43088dc84f6f3b7ab353b96df31107dee945e36ee0f03ff5dd150debf18d5d8f"
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "None",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/SeptConsolidated2018.pdf",
    "date_sunset": null,
    "description": "iStorage FIPS 140-2 Module is a portable USB 3.1 module with real-time AES-XTS 256-bit hardware encryption and super-fast data transfer. An easy-to-use keypad interface enables secure access with unique 7-15 digit PINs and software-free setup and operation. The module is platform/device independent. The GDPR compliant module has a dedicated secure microprocessor (Common Criteria EAL4+ ready), employing built-in physical protection mechanisms to defend against external tamper, bypass attacks and more. All critical components are covered by super tough epoxy resin.",
    "embodiment": "Multi-Chip Embedded",
    "exceptions": [
      "Cryptographic Module Specification: Level 3",
      "Cryptographic Module Ports and Interfaces: Level 3",
      "Physical Security: Level 3",
      "EMI/EMC: Level 3",
      "Design Assurance: Level 3",
      "Mitigation of Other Attacks: N/A"
    ],
    "fw_versions": "EC Firmware version IS_EC_FW_2_59_1X and SC Firmware version 1.6",
    "historical_reason": "Moved to historical list due to sunsetting",
    "hw_versions": "Rev 1.0",
    "level": 2,
    "mentioned_certs": {},
    "module_name": "iStorage FIPS 140-2 Level 2 Module Rev 1.0",
    "module_type": "Hardware",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "historical",
    "sw_versions": null,
    "tested_conf": null,
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2018-09-26",
        "lab": "Penumbra Security, Inc.",
        "validation_type": "Initial"
      }
    ],
    "vendor": "iStorage Ltd.",
    "vendor_url": "http://istorage-uk.com/"
  }
}