HiKey - Flash and HiKey PKI Token
Caveat: When operated in FIPS mode
Certificate
| Certificate number | 1638 |
|---|---|
| Standard | FIPS 140-2 |
| Status | historical |
| Overall level | 2 |
| Module type | Hardware |
| Embodiment | Multi-chip standalone |
| Vendor | Chunghwa Telecom Co., Ltd. · website |
| Software versions | Card OS version 3.2 with PKI Applet: 2.1 |
| Hardware versions | 2.0 and 2.1 |
| Firmware versions | 2.0 |
Module description
The HiKey Flash and HiKey PKI Token modules are multi-chip standalone implementations of a cryptographic module. The Hikey - Flash and HiKey PKI Token modules are USB tokens that adhere to ISO/IEC specifications for Integrated Circuit Chip (ICC) based identification cards. The HiKey - Flash and HiKey PKI Token cryptographic modules contain an implementation of the Global Platform (GP) Version 2.1.1 specification defining a secure infrastructure for post-issuance programmable smart cards.
Security level exceptions
- Roles, Services, and Authentication: Level 3
- EMI/EMC: Level 3
- Design Assurance: Level 3
Approved algorithms
| Algorithm | CAVP certificate |
|---|---|
| AES | 1710 |
| DRBG | 106 |
| HMAC | 988 |
| RSA | 839 |
| SHS | 1493 |
| Triple-DES | 1100 |
| Triple-DES MAC | vendor affirmed |
Other algorithms
MD5; HMAC-MD5; RIPEMD 160; HMAC-RIPEMD 160; RSA (encrypt/decrypt); AES MAC (AES Cert. #1710; non-compliant)
Validation history
| Date | Type | Lab |
|---|---|---|
| 2011-11-16 | Initial | CGI Information Systems & Management Consultants Inc |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2011-11-16