808bits

HyTrust KeyControl Cryptographic Module

FIPS 140-2 certificate #4191 · HyTrust, Inc. · data as of 2026-08-28
Active. Sunset date 2026-09-21, 23 days away. This is the FIPS 140-2 sunset: after it, agencies may keep the module only in existing systems.
Caveat: None

Certificate

Certificate number4191
StandardFIPS 140-2
Statusactive
Sunset date2026-09-21
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorHyTrust, Inc. · website
Software versions1.1

Module description

HyTrust KeyControl enables enterprises to easily manage all their encryption keys at scale, how often they rotate them, and how they are shared securely. HyTrust KeyControl capabilities include VMware certified Key Management Server (KMS), KMIP support, Enterprise scalability and performance, Multi-cloud support (AWS, Azure, GCP) and HSM Support.

Security level exceptions

  • Physical Security: N/A
  • Design Assurance: Level 3
  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AESA762, C2100, C2101, C2104, C2105
CVLC2104, C2105
DRBGA762
HMACC2102, C2103, C2104, C2105
PBKDFA762
RSAA762
SHSC2102, C2103, C2104, C2105

Allowed algorithms

NDRNG; RSA (CVL Certs. #C2104 and #C2105, key wrapping)

Tested configurations

  • Centos 7.7 on Vmware vSphere Hypervisor (ESXi) 6.7.0u3 running on running on Dell PowerEdge R220 with Intel® Xeon® CPU E3-1241v3 @ 3.50GHz (single-user mode)

Validation history

DateTypeLab
2022-04-04InitialAEGISOLVE, Inc.

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status active
  • Validation dates on record: 2022-04-04

Source documents