Q-Box
Caveat: When installed, initialized and configured as specified in Section 5 of the Security Policy
Certificate
| Certificate number | 4475 |
|---|---|
| Standard | FIPS 140-2 |
| Status | active |
| Sunset date | 2026-09-21 |
| Overall level | 2 |
| Module type | Hardware |
| Embodiment | Multi-Chip Stand Alone |
| Vendor | Q-Net Security, Inc. · website |
| Hardware versions | 100211 |
| Firmware versions | 2.2.2 |
Module description
Complete security is built directly into each module’s silicon. Creating security directly in silicon avoids the use of vulnerable software and/or Operating Systems. The core of the hardware-enabled solution is AES-256 encryption and a novel symmetric key distribution that can provide a unique random key for each packet. QNS devices are placed in-line and nearby the endpoints to be secured. No external key management is necessary. Once deployed, the QNS devices never need to be upgraded or patched.
Security level exceptions
- Cryptographic Module Specification: Level 3
- Roles, Services, and Authentication: Level 3
- Design Assurance: Level 3
- Mitigation of Other Attacks: N/A
Approved algorithms
| Algorithm | CAVP certificate |
|---|---|
| AES | A1660, A1661 |
| CKG | vendor affirmed |
| DRBG | A1662 |
| ENT | |
| HMAC | A1665 |
| KBKDF | A1666 |
| KTS | |
| SHS | A1663, A1664 |
Tested configurations
- N/A
Validation history
| Date | Type | Lab |
|---|---|---|
| 2023-04-14 | Initial | UL Verification Services, Inc. |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status active
- Validation dates on record: 2023-04-14