Thycotic HSM Module
Thycotic HSM Module, from Thycotic Software LLC, holds FIPS 140-2 certificate #3418 at overall level 1. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.
Caveat: When operated in FIPS mode with Cryptographic Primitives Library (bcryptprimitives.dll and ncryptsslp.dll) validated to FIPS 140-2 Cert. #2357 operating in FIPS mode. The module generates cryptographic keys whose strengths are modified by available entropy
Certificate
| Certificate number | 3418 |
|---|---|
| Standard | FIPS 140-2 |
| Status | historical |
| Overall level | 1 |
| Module type | Software |
| Embodiment | Multi-Chip Stand Alone |
| Vendor | Thycotic Software LLC · website |
| Software versions | 1.2.5 |
Module description
Quoted from the NIST CMVP entry for this certificate.
THYCOTIC.HSM.DLL provides cryptographic primitive services. The module generates cryptographic keys whose strengths are modified by available entropy of the validated Microsoft libraries.
Security level exceptions
- Physical Security: N/A
- Mitigation of Other Attacks: N/A
Approved algorithms (7)
Allowed algorithms
NDRNG
Tested configurations
- Microsoft Windows Server 2012 R2 (x64) running on a Dell OptiPlex 7010 DT with an Intel Core i7 and with PAA (single-user mode)
Validation history
| Date | Type | Lab |
|---|---|---|
| 2019-03-27 | Initial | CYGNACOM SOLUTIONS INC |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2019-03-27