CoSign
Caveat: When operated in FIPS Mode. This module contains the embedded module eToken 5105 validated to FIPS 140-2 under Cert. #1883 operating in FIPS mode. No assurance of the minimum strength of generated keys.
Certificate
| Certificate number | 2590 |
|---|---|
| Standard | FIPS 140-2 |
| Status | historical |
| Overall level | 3 |
| Module type | Hardware |
| Embodiment | Multi-Chip Stand Alone |
| Vendor | ARX (Algorithmic Research) · website |
| Hardware versions | 7.0 |
| Firmware versions | 7.7 |
Module description
CoSign is a digital signature appliance that is connected to the organizational network and manages all signature keys and certificates of organization's end-users. End-users will connect securely to CoSign from their PC for the purpose of signing documents and data.
Security level exceptions
- Mitigation of Other Attacks: N/A
Approved algorithms
| Algorithm | CAVP certificate |
|---|---|
| CVL | 697 |
| DRBG | 1028, 98 |
| HMAC | 2441, 2453 |
| PBKDF | vendor affirmed |
| RSA | 1929 |
| SHS | 3109, 3122 |
| Triple-DES | 2074, 2087 |
| Triple-DES MAC | vendor affirmed |
Other algorithms
NDRNG; MD5; Triple-DES (Cert. #2074, key wrapping; key establishment methodology provides 112 bits of encryption strength); RSA (key wrapping; key establishment methodology provides 112 bits of encryption strength); SHS (non-compliant); HMAC (non-compliant); Triple-DES (non-compliant); RSA-RESTful-TLS (key wrapping; non-compliant)
Tested configurations
- N/A
Validation history
| Date | Type | Lab |
|---|---|---|
| 2016-03-24 | Initial | CYGNACOM SOLUTIONS INC |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2016-03-24