Security Policy, Version 1.0
SEP 2014
2014 SECUREMETRIC TECHNOLOGY SDN BHD
This document may be freely reproduced and distributed whole and intact including this copyright notice.
Page 5 of 33
2 ST3 ACE Token
2.1 Overview
SECUREMETRIC is a leading innovator of smart card and Chip Operating System (COS) based security technologies
and applications. Their product offerings include devices that provide software protection, strong authentication, and
smart card operating systems. Evidence of SECUREMETRIC's continued leadership and innovation is demonstrated
within this Security Policy, which specifies their second FIPS 140-2 validated cryptographic module. This new module,
referred to as the ST3 ACE Token, is a USB token containing SECUREMETRIC's own SECUREMETRIC-FIPS-COS
cryptographic operating system. The SECUREMETRIC-FIPS-COS is embedded in an ST23YT66 Integrated Circuit
(IC) chip and has been developed to support SECUREMETRIC's ST3 ACE USB token (Figure 1). The ST3 ACE
Token is designed to provide strong authentication and identification and to support network login, secure online
transactions, digital signatures, and sensitive data protection. SECUREMETRIC's ST3 ACE Token guarantees safety
of its cryptographic IC chip and other components with its hard, semi-transparent, polycarbonate shell.
Figure 1 SECUREMETRIC's ST3 ACE Token
The ST3 ACE Token is validated at the following FIPS 140-2 Section levels (Table 1):
Table 1 Security Level Per FIPS 140-2 Section
Section
Section Title
Level
1
Cryptographic Module Specification
3
2
Cryptographic Module Ports and Interfaces
3
3
Roles, Services, and Authentication
3
4
Finite State Model
3
___________________
1
USB Universal Serial Bus