808bits

ID-One PIV (Type A)

FIPS 140-2 certificate #1414 · Oberthur Technologies · data as of 2026-08-28
Historical. RNG SP800-131A Revision 1 Transition. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode with the fingerprint authentication mechanism parameters configured as indicated in the Security Policy Section 8.1

Certificate

Certificate number1414
StandardFIPS 140-2
Statushistorical
Overall level2
Module typeHardware
EmbodimentSingle-chip
VendorOberthur Technologies · website
Hardware versionsP/Ns B0 and BA
Firmware versionsFC10 (with op-codes 069778 or 071964) with ID-One PIV Applet Suite V2.3.2 [1], V2.3.2-a [2] or V2.3.4 [3]

Module description

This new generation PIV Card addresses current and future needs of both Federal & Corporate customers with built-in support for all the cryptographic algorithms defined in SP800-78-2 including TDEA, AES, RSA, ECDSA, & ECDH with all possible key sizes as well as key history for over 20 retired decryption keys. It offers Identity proofing (storage of personal data), User authentication, Card authentication, digital signature, encryption, and secure post issuance management in the PIV system. Its fingerprint match-on-card has been validated in the MINEX II PIV Biometric interoperability program.

Security level exceptions

  • Roles, Services, and Authentication: Level 3
  • Physical Security: Level 4
  • EMI/EMC: Level 3
  • Design Assurance: Level 3

Approved algorithms

AlgorithmCAVP certificate
AES840
CVL3
CVL215, 220
ECDSA94
RNG480
RSA403
SHS833
Triple-DES698
Triple-DES MACvendor affirmed

Other algorithms

Triple-DES (Triple-DES Cert. #698, key wrapping; key establishment methodology provides 80 bits of encryption strength; non-compliant); AES (AES Cert. #840, key wrapping; key establishment methodology provides 128 bits of encryption strength); AES MAC (AES Cert. #840; non-compliant); RSA (key wrapping; key establishment methodology provides 112 bits of encryption strength)

Validation history

DateTypeLab
2010-09-28InitialUL Verification Services, Inc.
2010-11-24Update
2010-12-21Update
2011-02-10UpdateUL Verification Services, Inc.
2011-07-05Update
2011-10-04UpdateUL Verification Services, Inc.
2013-02-22UpdateUL Verification Services, Inc.
2014-02-06Update

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2010-09-28, 2010-11-24, 2010-12-21, 2011-02-10, 2011-07-05, 2011-10-04, 2013-02-22, 2014-02-06

Source documents