808bits

nToken

FIPS 140-2 certificate #3086 · nCipher Security Limited · data as of 2026-08-28
Historical. SP 800-131A transition which disallows key wrapping not compliant to SP 800-38F.. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode and initialized to Overall Level 2 per Security Policy

Certificate

Certificate number3086
StandardFIPS 140-2
Statushistorical
Overall level2
Module typeHardware
EmbodimentMulti-Chip Embedded
VendornCipher Security Limited · website
Hardware versionsnC2023E-000, Build Standard N
Firmware versions2.51.10-2 and 2.55.1-2

Module description

The nToken Hardware Security Module improves the security of cryptographic keys, security sensitive software applications and increases server throughput of secure transactions in Public Key Infrastructure and other high integrity applications such as: Certificate Authorities, Registration Authorities, Government and Financial Institutions.

Security level exceptions

  • Physical Security: Level 3
  • EMI/EMC: Level 3
  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AES2122
CKGvendor affirmed
CVL27
DRBG232
DSA664
ECDSA318
HMAC1292
SHS1844
Triple-DES1349
Triple-DES MACvendor affirmed

Allowed algorithms

AES (Cert. #2122, key wrapping; key establishment methodology provides between 128 and 256 bits of encryption strength); Diffie-Hellman (CVL Cert. #27, key agreement; key establishment methodology provides 112 or 128 bits of encryption strength); EC Diffie-Hellman (CVL Cert. #27, key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); ECMQV (key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); NDRNG; Triple-DES (Cert. #1349, key wrapping; key establishment methodology provides 112 bits of encryption strength)

Tested configurations

  • N/A

Validation history

DateTypeLab
2017-12-21InitialDXC Technology
2020-01-29UpdateLightship Security, Inc.

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2017-12-21, 2020-01-29

Source documents