808bits

HiKey PKI Token

FIPS 140-2 certificate #2485 · Chunghwa Telecom Co., Ltd. · data as of 2026-08-28
Historical. SP 800-131A transition which disallows key wrapping not compliant to SP 800-38F.. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: With tamper evident seals and security devices installed as indicated in the Security Policy. No assurance of the minimum strength of generated keys

Certificate

Certificate number2485
StandardFIPS 140-2
Statushistorical
Overall level2
Module typeHardware
EmbodimentMulti-Chip Stand Alone
VendorChunghwa Telecom Co., Ltd. · website
Hardware versionsHiKey3.0-BK
Firmware versionsHiKey COS V3.0

Module description

The HiKey token modules are multi-chip standalone implementations of a cryptographic module. The Hikey token modules are USB tokens that adhere to ISO/IEC specifications for Integrated Circuit Chip (ICC) based identification cards.

Security level exceptions

  • Cryptographic Module Ports and Interfaces: Level 3
  • Roles, Services, and Authentication: Level 3
  • EMI/EMC: Level 3
  • Design Assurance: Level 3

Approved algorithms

AlgorithmCAVP certificate
DRBG608
RSA1585
SHS2557
Triple-DES1783

Other algorithms

NDRNG; Triple-DES (Cert. #1783, key wrapping methodology provides 112-bits of encryption strength; non-compliant less than 112-bits of encryption strength); RSA (key wrapping; key establishment methodology provides 112 bits of encryption strength).

Tested configurations

  • N/A

Validation history

DateTypeLab
2015-12-14InitialCGI Information Systems & Management Consultants Inc
2016-01-22UpdateCGI Information Systems & Management Consultants Inc

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2015-12-14, 2016-01-22

Source documents