HiKey PKI Token
HiKey PKI Token, from Chunghwa Telecom Co., Ltd., holds FIPS 140-2 certificate #2485 at overall level 2. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.
Certificate
| Certificate number | 2485 |
|---|---|
| Standard | FIPS 140-2 |
| Status | historical |
| Overall level | 2 |
| Module type | Hardware |
| Embodiment | Multi-Chip Stand Alone |
| Vendor | Chunghwa Telecom Co., Ltd. · website |
| Hardware versions | HiKey3.0-BK |
| Firmware versions | HiKey COS V3.0 |
Module description
Quoted from the NIST CMVP entry for this certificate.
The HiKey token modules are multi-chip standalone implementations of a cryptographic module. The Hikey token modules are USB tokens that adhere to ISO/IEC specifications for Integrated Circuit Chip (ICC) based identification cards.
Security level exceptions
- Cryptographic Module Ports and Interfaces: Level 3
- Roles, Services, and Authentication: Level 3
- EMI/EMC: Level 3
- Design Assurance: Level 3
Approved algorithms (4)
Other algorithms
NDRNG; Triple-DES (Cert. #1783, key wrapping methodology provides 112-bits of encryption strength; non-compliant less than 112-bits of encryption strength); RSA (key wrapping; key establishment methodology provides 112 bits of encryption strength).
Tested configurations
- N/A
Validation history
| Date | Type | Lab |
|---|---|---|
| 2015-12-14 | Initial | CGI Information Systems & Management Consultants Inc |
| 2016-01-22 | Update | CGI Information Systems & Management Consultants Inc |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2015-12-14, 2016-01-22