808bits

Advanced Configurable Cryptographic Environment (ACCE) v3 HSM Crypto Module

FIPS 140-2 certificate #2298 · Ultra Electronics AEP · data as of 2026-08-28
Historical. Moved to historical list in accordance with SP800-131A Revision 1 Transition (AES/TDES key wrapping). Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode and when installed, initialized and configured as specified in the Security Policy in Appendix A

Certificate

Certificate number2298
StandardFIPS 140-2
Statushistorical
Overall level4
Module typeHardware
EmbodimentMulti-chip embedded
VendorUltra Electronics AEP · website
Hardware versions2870-G1
Firmware versions2r3 and 2r4

Module description

The Advanced Configurable Cryptographic Environment (ACCE) v3 crypto module offers the next-generation security platform for managing cryptographic keys and protecting sensitive applications. It is used in the Keyper Plus hardware security module (HSM), which is designed for mission-critical applications that demand maximum security. It is ideally suited for companies that need secure key management for PKI certification authorities, registration authorities, OCSP responders, smart card issuers, web servers, DNSSEC and other applications.

Security level exceptions

  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AES2684
DRBG434, 786
DSA813
ECDSA470
HMAC1671, 2138
RSA1384
SHS2255, 2782
Triple-DES1610
Triple-DES MACvendor affirmed

Other algorithms

NDRNG; RSA (key wrapping; key establishment methodology provides between 112 and 150 bits of encryption strength; non-compliant less than 112 bits of encryption strength); XOR_BASE_AND_DATA KDF (non-compliant); PBKDF2 (non-compliant); PKCS#12 KDF (non-compliant); SPKM KDF (non-compliant); EC Diffie-Hellman (key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength; non-compliant less than 112 bits of encryption strength); AES MAC (AES Cert. #2684; non-compliant); AES (key wrapping; key establishment methodology provides between 128 and 256 bits of encryption strength); Triple-DES (Cert. #1610, key wrapping; key establishment methodology provides 112 bits of encryption strength; non-compliant less than 112 bits of encryption strength); SHA-1 KDF (non-compliant); Triple-DES KDF (Triple-DES Cert. #1610; non-compliant)

Validation history

DateTypeLab
2015-01-08InitialEWA - Canada
2015-05-29UpdateEWA - Canada

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2015-01-08, 2015-05-29

Source documents