808bits

PKI BLADE Applet and Protiva PIV DL Card

FIPS 140-2 certificate #1573 · U.S. Department of State · data as of 2026-08-28
Historical. RNG SP800-131A Revision 1 Transition. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode with the fingerprint authentication mechanism parameters configured as indicated in the Security Policy Section 12

Certificate

Certificate number1573
StandardFIPS 140-2
Statushistorical
Overall level2
Module typeHardware
EmbodimentSingle-chip
VendorU.S. Department of State · website
Hardware versionsP/N P5CD144 Version A1047808
Firmware versionsEI08-M1004069, Softmask V01, PIV Applet V1.55 and PKI BLADE Applet V1.2

Module description

The PKI/BLADE applet is based on ISO 7816 and GSC-IS commands interface. The applet is designed to be loaded on any Java card compliant with JavaCard v2.2.1 and Global Platform v2.1.1 specifications including PIV certified Java cards. It is designed to provide services for PKI based logical access applications and to provide strong two factor authentication using passwords and fingerprints biometrics.

Security level exceptions

  • Roles, Services, and Authentication: Level 3
  • Physical Security: Level 3
  • EMI/EMC: Level 3
  • Design Assurance: Level 3

Approved algorithms

AlgorithmCAVP certificate
CVL214
RNG450
RSA372
SHS786
Triple-DES678
Triple-DES MACvendor affirmed

Other algorithms

Triple-DES (Cert. #678, key wrapping; key establishment methodology provides 100 bits of encryption strength)

Validation history

DateTypeLab
2011-07-15InitialUL Verification Services, Inc.
2014-02-06Update

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2011-07-15, 2014-02-06

Source documents