MiniHSM [1], MiniHSM for nShield Edge [2] and MiniHSM for Time Stamp Master Clock [3]
Certificate
| Certificate number | 1739 |
|---|---|
| Standard | FIPS 140-2 |
| Status | historical |
| Overall level | 3 |
| Module type | Hardware |
| Embodiment | Multi-chip embedded |
| Vendor | nCipher Security Limited · website |
| Hardware versions | nC4031Z-10 [1], nC4031U-10 [2] and TSMC200 [3], Build Standard N |
| Firmware versions | 2.50.17-3, 2.51.10-3, 2.50.35-3 and 2.55.1-3 |
Module description
The MiniHSM, MiniHSM for nShield Edge and MiniHSM for Time Stamp Master Clock are fully featured HSMs supplied in a single chip package. The MiniHSM Modules offer all the security and key management features of other nShield modules - but with reduced processing speed. The MiniHSM modules are OEM parts and will be included within other appliances or products, for example switches or routers. The MiniHSM modules have a real time clock which also makes them suitable for use as a time-stamping engine.
Approved algorithms
| Algorithm | CAVP certificate |
|---|---|
| AES | 1770 |
| CVL | 6 |
| DRBG | 120 |
| DSA | 553 |
| ECDSA | 238 |
| HMAC | 1039 |
| RSA | 886 |
| SHS | 1554 |
| Triple-DES | 1146 |
| Triple-DES MAC | vendor affirmed |
Other algorithms
ARC4; Aria; Camellia; CAST-6; DES; MD5; SEED; HMAC-MD5; HMAC-Tiger; HMAC-RIPEMD160; RIPEMD-160; Tiger; El-Gamal; KCDSA; HAS-160; AES (Cert. #1579, key wrapping; key establishment methodology provides between 128 and 256 bits of encryption strength); Triple-DES (Cert. #1035, key wrapping; key establishment methodology provides 112 bits of encryption strengh; non-compliant less than 112 bits of encryption strength); RSA (key wrapping; key establishment methodology provides between 112 and 256 bits of encryption strength; non-compliant less than 112 bits of encryption strength); Diffie-Hellman (CVL Cert. #1, key agreement; key establishment methodology provides between 112 and 256 bits of encryption strengh; non-compliant less than 112 bits of encryption strength); EC Diffie-Hellman (CVL Cert. #1, key agreement; key establishment methodology provides between 112 and 256 bits of encryption strengh; non-compliant less than 112 bits of encryption strength); ECMQV (key agreement; key establishment methodology provides between 112 and 256 bits of encryption strengh; non-compliant less than 112 bits of encryption strength)
Validation history
| Date | Type | Lab |
|---|---|---|
| 2012-06-25 | Initial | DXC Technology |
| 2013-08-16 | Update | DXC Technology |
| 2013-10-25 | Update | DXC Technology |
| 2015-10-28 | Update | DXC Technology |
| 2020-01-29 | Update | Lightship Security, Inc. |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2012-06-25, 2013-08-16, 2013-10-25, 2015-10-28, 2020-01-29