Certificate 2121 - nShield F2 500+ [1], nShield F2 1500+ [2] and nShield F2 6000+ [3]
intCertNum 2121
strVendorName Thales e-Security Inc.
strURL http://www.thales-esecurity.com
strAddress1 900 South Pine Island Road
strAddress2 Suite 710
strAddress3
strCity Plantation
strStateProv FL
strPostalCode 33324
strCountry 33324
strContact sales@thalesesec.com
strEmail sales@thalesesec.com
strPhone 888-744-4976
strFax
strContact2
strEmail2
strFax2
strPhone2
intCertNum 2121
strModuleName nShield F2 500+ [1], nShield F2 1500+ [2] and nShield F2 6000+ [3]
strPartNumber Hardware Versions: nC3423E-500 [1], nC3423E-1K5 [2] and nC3423E-6K0 [3], Build Standard N;
Firmware Versions: 2.51.10-2 and 2.55.1-2
memModuleNotes When operated in FIPS mode and initialized to Overall Level 2 per Security Policy
str140Version 140-2
_sp_ Security Policy   [pdf][html][txt]
_cert_ Certificate   [pdf]
strPURL http://www.thales-esecurity.com/products-and-services/products-and-services/hardware-security-modules/general-purpose-hsms/nshield-solo
strModuleType Hardware
strValidationDate 04/03/2014;06/05/2014;11/24/2015
intOverallLevel 2
memIndividualLevelNotes -Roles, Services, and Authentication: Level 3;-EMI/EMC: Level 3;-Design Assurance: Level 3;-Mitigation of Other Attacks: N/A
strFIPSAlgorithms AES (Cert. #2122);
Triple-DES (Cert. #1349);
HMAC (Cert. #1292);
Triple-DES MAC (Triple-DES Cert. #1349, vendor affirmed);
SHS (Cert. #1844);
DSA (Certs. #664 and #777);
ECDSA (Cert. #181);
RSA (Certs. #1092 and #1299);
DRBG (Cert. #232);
CVL (Certs. #27 and #90)
strOtherAlgorithms ARC4;
Aria;
Camellia;
CAST-6;
DES;
MD5;
SEED;
HMAC-MD5;
HMAC-Tiger;
HMAC-RIPEMD160;
RIPEMD-160;
Tiger;
El-Gamal;
KCDSA;
HAS-160;
AES (Cert. #2122, key wrapping;
key establishment methodology provides between 128 and 256 bits of encryption strength);
Triple-DES (Cert. #1349, key wrapping;
key establishment methodology provides 112 bits of encryption strength;
non-compliant less than 112 bits of encryption strength);
RSA (key wrapping;
key establishment methodology provides between 112 and 256 bits of encryption strength;
non-compliant less than 112 bits of encryption strength);
Diffie-Hellman (CVL Certs. #27 and #90, key agreement: key establishment methodology provides between 112 and 256 bits of encryption strength;
non-compliant less than 112 bits of encryption strength);
EC Diffie-Hellman (CVL Certs. #27 and #90, key agreement: key establishment methodology provides between 112 and 256 bits of encryption strength;
non-compliant less than 112 bits of encryption strength);
ECMQV (key agreement: key establishment methodology provides between 112 and 256 bits of encryption strength;
non-compliant less than 112 bits of encryption strength)
strConfiguration Multi-chip embedded
memModuleDescription The nShield modules: nShield F2 500+, nShield F2 1500+ and nShield F2 6000+ family of secure e-commerce HSMs are multi-tasking hardware modules that are optimized for performing modular arithmetic on very large integers. The nShield modules are FIPS 140-2 level 2 embedded devices. The units are identical in operation and only vary in the processing speed.
intModuleCount 1
memAdditionalNotes 06/05/14: Changed vendor name.
Added FW 2.55.1-2 and updated the SP for cert# 2121 and 2149
strFirstValidtionDate 04/03/14 00:00:00
strLabName CSC
strValidationYear 2014