Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Cryptographic Module Validation Program CMVP

Certificate #5450

Details

Module Name
Luna T7
Standard
FIPS 140-3
Status
Active
Sunset Date
7/28/2031
Overall Level
3
Caveat
When installed, initialized and configured as specified in Section 11.1.2 of the Security Policy
Security Level Exceptions
  • Operational environment: N/A
  • Non-invasive security: N/A
Module Type
Hardware
Embodiment
MultiChipEmbed
Description
The Luna T7 Cryptographic Module from Thales Trusted Cyber Technologies (TCT) is a tamper-resistant Hardware Security Module (HSM) implemented in a multi-chip embedded hardware module for FIPS 140-3 validated key security, typically used in enterprise-class tamper-resistant server appliances. Thales TCT's Luna HSMs are developed, manufactured, sold, and supported in the United States.
Approved Algorithms
AES-CBC
AES-CBC
AES-CBC
AES-CBC
AES-CFB128
AES-CFB128
AES-CFB128
AES-CFB128
AES-CFB8
AES-CFB8
AES-CFB8
AES-CFB8
AES-CMAC
AES-CMAC
AES-CMAC
AES-CMAC
AES-CTR
AES-CTR
AES-CTR
AES-CTR
AES-ECB
AES-ECB
AES-ECB
AES-ECB
AES-GCM
AES-GCM
AES-GMAC
AES-GMAC
AES-KW
AES-KW
AES-KWP
AES-KWP
AES-OFB
AES-OFB
AES-OFB
AES-OFB
AES-XTS Testing Revision 2.0
AES-XTS Testing Revision 2.0
DSA SigVer (FIPS186-4)
DSA SigVer (FIPS186-4)
DSA SigVer (FIPS186-4)
DSA SigVer (FIPS186-4)
ECDSA KeyGen (FIPS186-5)
ECDSA KeyGen (FIPS186-5)
ECDSA KeyGen (FIPS186-5)
ECDSA KeyGen (FIPS186-5)
ECDSA SigGen (FIPS186-5)
ECDSA SigGen (FIPS186-5)
ECDSA SigGen (FIPS186-5)
ECDSA SigGen (FIPS186-5)
ECDSA SigVer (FIPS186-4)
ECDSA SigVer (FIPS186-4)
ECDSA SigVer (FIPS186-4)
ECDSA SigVer (FIPS186-4)
ECDSA SigVer (FIPS186-5)
ECDSA SigVer (FIPS186-5)
ECDSA SigVer (FIPS186-5)
ECDSA SigVer (FIPS186-5)
Hash DRBG
Hash DRBG
HMAC-SHA-1
HMAC-SHA-1
HMAC-SHA-1
HMAC-SHA-1
HMAC-SHA2-224
HMAC-SHA2-224
HMAC-SHA2-224
HMAC-SHA2-224
HMAC-SHA2-256
HMAC-SHA2-256
HMAC-SHA2-256
HMAC-SHA2-256
HMAC-SHA2-384
HMAC-SHA2-384
HMAC-SHA2-384
HMAC-SHA2-384
HMAC-SHA2-512
HMAC-SHA2-512
HMAC-SHA2-512
HMAC-SHA2-512
HMAC-SHA3-224
HMAC-SHA3-224
HMAC-SHA3-224
HMAC-SHA3-224
HMAC-SHA3-256
HMAC-SHA3-256
HMAC-SHA3-256
HMAC-SHA3-256
HMAC-SHA3-384
HMAC-SHA3-384
HMAC-SHA3-384
HMAC-SHA3-384
HMAC-SHA3-512
HMAC-SHA3-512
HMAC-SHA3-512
HMAC-SHA3-512
KAS-ECC-SSC Sp800-56Ar3
KAS-ECC-SSC Sp800-56Ar3
KAS-ECC-SSC Sp800-56Ar3
KAS-ECC-SSC Sp800-56Ar3
KAS-IFC-SSC
KAS-IFC-SSC
KAS-IFC-SSC
KAS-IFC-SSC
KDA TwoStep SP800-56Cr2
KDA TwoStep SP800-56Cr2
KDA TwoStep SP800-56Cr2
KDA TwoStep SP800-56Cr2
KDF SP800-108
KDF SP800-108
KDF SP800-108
KDF SP800-108
KTS-IFC
KTS-IFC
KTS-IFC
KTS-IFC
LMS KeyGen
LMS KeyGen
LMS KeyGen
LMS KeyGen
LMS SigGen
LMS SigGen
LMS SigGen
LMS SigGen
LMS SigVer
LMS SigVer
LMS SigVer
LMS SigVer
ML-DSA KeyGen
ML-DSA KeyGen
ML-DSA SigGen
ML-DSA SigGen
ML-DSA SigVer
ML-DSA SigVer
ML-KEM EncapDecap
ML-KEM EncapDecap
ML-KEM KeyGen
ML-KEM KeyGen
PBKDF
PBKDF
PBKDF
PBKDF
RSA KeyGen (FIPS186-5)
RSA KeyGen (FIPS186-5)
RSA KeyGen (FIPS186-5)
RSA KeyGen (FIPS186-5)
RSA SigGen (FIPS186-5)
RSA SigGen (FIPS186-5)
RSA SigGen (FIPS186-5)
RSA SigGen (FIPS186-5)
RSA SigVer (FIPS186-4)
RSA SigVer (FIPS186-4)
RSA SigVer (FIPS186-4)
RSA SigVer (FIPS186-4)
RSA SigVer (FIPS186-5)
RSA SigVer (FIPS186-5)
RSA SigVer (FIPS186-5)
RSA SigVer (FIPS186-5)
SHA-1
SHA-1
SHA-1
SHA-1
SHA2-224
SHA2-224
SHA2-224
SHA2-224
SHA2-256
SHA2-256
SHA2-256
SHA2-256
SHA2-384
SHA2-384
SHA2-384
SHA2-384
SHA2-512
SHA2-512
SHA2-512
SHA2-512
SHA3-224
SHA3-224
SHA3-224
SHA3-224
SHA3-256
SHA3-256
SHA3-256
SHA3-256
SHA3-384
SHA3-384
SHA3-384
SHA3-384
SHA3-512
SHA3-512
SHA3-512
SHA3-512
SHAKE-128
SHAKE-256
TDES-CBC
TDES-CBC
TDES-CBC
TDES-CBC

Vendor

Thales Trusted Cyber Technologies
3465 Box Hill Corporate Center Drive
Suite D
Abingdon, MD 21009
USA

Scott Leubner
[email protected]
Phone: 1-443-484-7070

Validation History

Date Type Lab
7/29/2026 Initial Lightship Security, Inc.