808bits

Yubico YubiKey Standard and YubiKey Nano

FIPS 140-2 certificate #2267 · Yubico Inc. · data as of 2026-09-03

Yubico YubiKey Standard and YubiKey Nano, from Yubico Inc., holds FIPS 140-2 certificate #2267 at overall level 1. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.

Historical. Moved to historical list due to sunsetting. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: None

Certificate

Certificate number2267
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeHardware
EmbodimentSingle-chip
VendorYubico Inc. · website
Hardware versions1.6
Firmware versions2.5.1

Module description

Quoted from the NIST CMVP entry for this certificate.

The YubiKey and YubiKey Nano are two-factor authentication devices supporting OATH-HOTP as well as the Yubico OTP algorithm. The devices are connected via the USB ports and emulate a generic USB keyboard to allow a true driver-less installation.

Security level exceptions

  • Design Assurance: Level 2
  • Mitigation of Other Attacks: N/A

Approved algorithms (3)

AlgorithmCAVP certificates
AES2811
HMAC1762
SHS2359

Validation history

DateTypeLab
2014-10-14InitialLeidos Accredited Testing & Evaluation (AT&E) Lab

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2014-10-14

Source documents