Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Cryptographic Module Validation Program CMVP

Certificate #3963

Details

Module Name
Envieta QFlex Hardware Security Module
Standard
FIPS 140-2
Status
Active
Sunset Date
6/29/2026
Overall Level
3
Caveat
None
Security Level Exceptions
  • Mitigation of Other Attacks: N/A
Module Type
Hardware
Embodiment
Multi-Chip Embedded
Description
The Envieta QFlex HSM is designed, engineered, and manufactured in the United States, offering top of the market performance for a fraction of the cost. QFlex’s integrated FPGA fabric provides organizations the capability to run accelerated proprietary algorithms inside the security perimeter of the HSM. This unique solution provides the lowest cost per operation on the market today, making QFlex the clear choice to satisfy enterprise capacity requirements.
Tested Configuration(s)
  • N/A
Approved Algorithms
AES Certs. #2958 and #C893
CKG vendor affirmed
DRBG Cert. #559
DSA Cert. #C893
ECDSA Cert. #C893
HMAC Certs. #1877 and #C892
KAS-SSC vendor-affirmed
KBKDF Cert. #C893
KDA vendor affirmed
KTS AES Cert. #C893; key establishment methodology provides between 128 and 256 bits of encryption strength
KTS-RSA Cert. #A1471; key wrapping; key establishment methodology provides between 112 and 178 bits of encryption strength
PBKDF vendor affirmed
RSA Certs. #A1471, #C892 and #C893
SHS Certs. #2490 and #C892
Allowed Algorithms
NDRNG
Hardware Versions
385HSM-FIPS Rev A and 385HSM-FIPS Rev B
Firmware Versions
1.3.0

Vendor

Envieta Systems LLC
7175 Columbia Gateway Drive
Suite T
Columbia, MD 21046
USA

Jeff Hahn
Security.Certifications@Envieta.com
Phone: 410-290-1136
Fax: 410-290-1168
Andy Oldewurtel-Ilioff
Phone: 410-935-1123

Validation History

Date Type Lab
6/30/2021 Initial ACUMEN SECURITY, LLC