DocuSign Signature Appliance
Caveat: When operated in FIPS mode. This module contains the embedded module eToken 5105 validated to FIPS 140-2 under Cert. #1883 operating in FIPS mode. No assurance of the minimum strength of generated keys
Certificate
| Certificate number | 2665 |
|---|---|
| Standard | FIPS 140-2 |
| Status | historical |
| Overall level | 3 |
| Module type | Hardware |
| Embodiment | Multi-Chip Stand Alone |
| Vendor | DocuSign, Inc. · website |
| Hardware versions | 7.0 and 8.0 |
| Firmware versions | 8.0 |
Module description
The DocuSign Signature Appliance is a digital signature appliance that is connected to the organizational network and manages all signature keys and certificates of organization's end-users. End-users will connect securely to the appliance from their PC for the purpose of signing documents and data.
Security level exceptions
- Mitigation of Other Attacks: N/A
Approved algorithms
| Algorithm | CAVP certificate |
|---|---|
| CVL | 786, 787 |
| DRBG | 98, 1137, 1138 |
| HMAC | 2551, 2552, 2563, 2564 |
| KTS | |
| KTS | |
| PBKDF | vendor affirmed |
| RSA | 2005, 2006 |
| SHS | 3237, 3238, 3248, 3249 |
| Triple-DES | 2155, 2156, 2160, 2161 |
| Triple-DES MAC | vendor affirmed |
Other algorithms
HMAC (non-compliant); MD5; NDRNG; RSA (key wrapping; key establishment methodology provides 112 bits of encryption strength); RSA-RESTful-TLS (key wrapping; non-compliant); SHS (non-compliant); Triple-DES (non-compliant)
Tested configurations
- N/A
Validation history
| Date | Type | Lab |
|---|---|---|
| 2016-06-21 | Initial | CYGNACOM SOLUTIONS INC |
| 2016-07-25 | Update | CYGNACOM SOLUTIONS INC |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2016-06-21, 2016-07-25