Purity Encryption Module
Caveat: None
Certificate
| Certificate number | 4109 |
|---|---|
| Standard | FIPS 140-2 |
| Status | active |
| Sunset date | 2026-09-21 |
| Overall level | 1 |
| Module type | Software-Hybrid |
| Embodiment | Multi-Chip Stand Alone |
| Vendor | Pure Storage, Inc. · website |
| Software versions | 1.3 |
| Hardware versions | Intel Xeon E5-2698 v4, Intel Xeon 4114, Intel Xeon 6130, Intel Xeon 6230 and Intel Xeon 8368 |
Module description
Purity Encryption Module is a standalone cryptographic module for the Purity Operating Environment for FlashArray (Purity//FA). Purity//FA powers Pure Storage's FlashArray family of products which provide economical all-flash storage. Purity Encryption Module enables FlashArray to support always-on, inline encryption of data with an internal key management scheme that requires no user intervention.
Security level exceptions
- Design Assurance: Level 2
Approved algorithms
Allowed algorithms
NDRNG
Tested configurations
- Purity OS 5.3 running on C60 with Intel Xeon 6130 with PAA
- Purity OS 5.3 running on M70R2 with Intel Xeon E5-2698 v4 with PAA
- Purity OS 5.3 running on X70R3 with Intel Xeon 6230 with PAA
- Purity OS 6.1 running on C60 with Intel Xeon 6130 with PAA
- Purity OS 6.1 running on X20R2 with Intel Xeon 4114 with PAA
- Purity OS 6.1 running on X70R3 with Intel Xeon 6230 with PAA
- Purity OS 6.2 running on XL170 with Intel Xeon 8368 with PAA
- Purity OS 6.3 running on XL170 with Intel Xeon 8368 with PAA (single-user mode)
Validation history
| Date | Type | Lab |
|---|---|---|
| 2021-12-16 | Initial | Acumen Security |
| 2021-12-30 | Update | Acumen Security |
| 2022-01-04 | Update | Acumen Security |
| 2023-03-01 | Update | Acumen Security |
| 2023-04-04 | Update | Acumen Security |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status active
- Validation dates on record: 2021-12-16, 2021-12-30, 2022-01-04, 2023-03-01, 2023-04-04
Known CVEs in this module family (heuristic match)
Name-based association with the module's product family, not a statement about the validated boundary. See methodology.
| CVE | CVSS | Severity |
|---|---|---|
| CVE-2023-31042 | 7.7 | HIGH |
| CVE-2023-36627 | 7.7 | HIGH |
| CVE-2023-28372 | 6.5 | MEDIUM |