Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Cryptographic Module Validation Program CMVP

Certificate #5302

Details

Module Name
YubiHSM 2 Cryptographic Module
Standard
FIPS 140-3
Status
Active
Sunset Date
6/2/2031
Overall Level
3
Caveat
When operated in approved mode; When installed, initialized and configured as specified in Section 11.1 of the Security Policy; No assurance of minimum security of SSPs (e.g., keys, bit strings) that are externally loaded, or of SSPs established with externally loaded SSPs.
Security Level Exceptions
  • Operational environment: N/A
  • Non-invasive security: N/A
  • Mitigation of other attacks: N/A
Module Type
Hardware
Embodiment
SingleChip
Description
The YubiHSM 2 Cryptographic Module (the module) is a single-chip module validated at FIPS 140-3 Security Level 3. The module is a multi-purpose cryptographic device that is primarily used in servers. It is optimized for a small form factor and low power requirements.

Vendor

Yubico, Inc.
5201 Great America Parkway
Suite 122
Santa Clara, CA 95054
United States

FIPS certification team
[email protected]
Phone: 1-650-285-0088

Related Files

Validation History

Date Type Lab
6/3/2026 Initial Penumbra Security, Inc.