Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Cryptographic Module Validation Program CMVP

Certificate #3760

Details

Module Name
nShield Solo XC F3 & nShield Solo XC F3 for nShield Connect XC and for nShield HSMi
Standard
FIPS 140-2
Status
Active
Sunset Date
12/8/2025
Overall Level
3
Caveat
When operated in FIPS mode and initialized to Overall Level 3 per Security Policy
Security Level Exceptions
  • Mitigation of Other Attacks: N/A
Module Type
Hardware
Embodiment
Multi-Chip Embedded
Description
The nShield XC F3 PCIe card, sold as nShield XC F3 PCIe server-embedded hardware security modules (HSMs) and also used in the nShield Connect XC and nShield HSMi network appliance HSMs, are multi-tasking HSMs optimized for symmetric and asymmetric operations on protected keys. The nShield modules are FIPS 140-2 Level 3 embedded devices for applications including but not limited to PKI, SSL/TLS, Secure Manufacturing, Data Protection, Key Management and Provisioning.
Tested Configuration(s)
  • N/A
Approved Algorithms
AES Cert. #C1105
CKG vendor affirmed
CVL Cert. #C1105
DRBG Cert. #C1105
DSA Cert. #C1105
ECDSA Certs. #805 and #C1105
HMAC Cert. #C1105
KBKDF Cert. #C1105
KTS AES Cert. #C1105; key establishment methodology provides between 112 and 256 bits of encryption strength
KTS vendor affirmed
RSA Cert. #C1105
SHS Certs. #3130 and #C1105
Allowed Algorithms
Diffie-Hellman (CVL Cert. #C1105, key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); EC Diffie-Hellman (CVL Cert. #C1105, key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); EC MQV (CVL Cert. #C1105, key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); NDRNG
Hardware Versions
NC4035E-000 and NC4335N-000, Build Standard A
Firmware Versions
12.50.11

Vendor

Entrust
One Station Square
Cambridge CB1 2GA
United Kingdom

Security Certification Team
DPS-Certification@entrust.com

Validation History

Date Type Lab
12/9/2020 Initial Lightship Security, Inc.
2/18/2022 Update Lightship Security, Inc.