808bits

Purity Encryption Module

FIPS 140-3 certificate #4937 · Pure Storage, Inc. · data as of 2026-08-28
Active. Sunset date 2030-01-05, 1225 days away.
Caveat: No assurance of the minimum strength of generated SSPs (e.g., keys); No assurance of minimum security of SSPs (e.g., keys, bit strings) that are externally loaded, or of SSPs established with externally loaded SSPs.

Certificate

Certificate number4937
StandardFIPS 140-3
Statusactive
Sunset date2030-01-05
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorPure Storage, Inc. · website
Software versionsFA-1.5

Module description

Purity Encryption Module is a standalone cryptographic module for the Purity Operating Environment for FlashArray (Purity//FA). Purity//FA powers Pure Storage's FlashArray family of products which provide economical all-flash storage. Purity Encryption Module enables FlashArray to support always-on, inline encryption of data with an internal key management scheme that requires no user intervention.

Security level exceptions

  • Physical security: N/A
  • Non-invasive security: N/A
  • Mitigation of other attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AES-CTRA4396
AES-ECBA4396
AES-KWA4396
Counter DRBGA4396
HMAC-SHA2-256A4396
SHA2-256A4396

Tested configurations

  • Purity OS 6.4 running on FlashArray X20R3 with Intel Xeon Silver 4210R with PAA
  • Purity OS 6.4 running on FlashArray X20R3 with Intel Xeon Silver 4210R without PAA

Validation history

DateTypeLab
2025-01-06InitialTeron Labs

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status active
  • Validation dates on record: 2025-01-06

Known CVEs in this module family (heuristic match)

Name-based association with the module's product family, not a statement about the validated boundary. See methodology.

CVECVSSSeverity
CVE-2023-310427.7HIGH
CVE-2023-366277.7HIGH
CVE-2023-283726.5MEDIUM

Source documents