Module Name
Luna® Backup HSM Cryptographic Module
Historical Reason
186-2 transition
Caveat
When operated in FIPS mode and initialized to Overall Level 3 per Security Policy
Security Level Exceptions
- Mitigation of Other Attacks: N/A
Embodiment
Multi-Chip Stand Alone
Description
The Luna® Backup HSM Hardware Security Module (HSM) provides the same level of security as the Luna® SA and Luna® PCI-E HSMs in a convenient, small, low-cost form factor. The Luna Backup HSM ensures that sensitive cryptographic material remains strongly protected in hardware even when not being used. One can easily back up and duplicate keys securely to the Luna Backup HSM for safekeeping in case of emergency, failure or disaster.
Approved Algorithms
AES |
Certs. #2664 and #2668 |
DRBG |
Cert. #428 |
DSA |
Certs. #804 and #808 |
ECDSA |
Certs. #461 and #464 |
HMAC |
Certs. #1655 and #1659 |
KAS |
Cert. #44 |
KBKDF |
Cert. #15 |
RSA |
Certs. #1369 and #1372 |
SHS |
Certs. #2237 and #2241 |
Triple-DES |
Certs. #1598 and #1600 |
Triple-DES MAC |
Triple-DES Certs. #1598 and #1600, vendor affirmed |
Other Algorithms
Diffie-Hellman (key agreement; key establishment methodology provides 112 or 128 bits of encryption strength; non-compliant less than 112 bits of encryption strength); EC Diffie-Hellman (key agreement; key establishment methodology provides 112 or 128 bits of encryption strength); HRNG
Hardware Versions
LTK-03, Version Code 0102
Firmware Versions
6.10.7, 6.10.9, and 6.11.2