Sansec HSM Cryptographic Module
Caveat: When operated in approved mode and installed, initialized and configured as specified in Section 11.1 Installation, Initialization, and Startup Procedures of the Security Policy
Certificate
| Certificate number | 5503 |
|---|---|
| Standard | FIPS 140-3 |
| Status | active |
| Sunset date | 2031-08-24 |
| Overall level | 3 |
| Module type | Hardware |
| Embodiment | MultiChipStand |
| Vendor | Sansec Technology Co., Ltd. · website |
Module description
The Sansec HSM Cryptographic Module is a multi-chip standalone hardware cryptographic module that provides core functions such as device management, key management, and cryptographic services. The module delivers key storage and cryptographic services to external applications through virtual security modules (VSMs), including data encryption, data decryption, signature generation, signature verification, message digest, message authentication code (MAC), and random number generation.
Security level exceptions
- Operational environment: N/A
- Non-invasive security: N/A
- Mitigation of other attacks: N/A
Approved algorithms
| Algorithm | CAVP certificate |
|---|---|
| AES-CBC | A6703 |
| AES-CCM | A6703 |
| AES-CFB1 | A6703 |
| AES-CFB128 | A6703 |
| AES-CFB8 | A6703 |
| AES-CMAC | A6703 |
| AES-CTR | A6703 |
| AES-ECB | A6703 |
| AES-GCM | A6703 |
| AES-OFB | A6703 |
| AES-XTS Testing Revision 2.0 | A6703 |
| Counter DRBG | A6703 |
| ECDSA KeyGen (FIPS186-5) | A6703 |
| ECDSA KeyVer (FIPS186-5) | A6703 |
| ECDSA SigGen (FIPS186-5) | A6703 |
| ECDSA SigVer (FIPS186-4) | A6703 |
| ECDSA SigVer (FIPS186-5) | A6703 |
| Hash DRBG | A6703 |
| HMAC-SHA-1 | A6703 |
| HMAC-SHA2-224 | A6703 |
| HMAC-SHA2-256 | A6703 |
| HMAC-SHA2-384 | A6703 |
| HMAC-SHA2-512 | A6703 |
| HMAC-SHA3-224 | A6703 |
| HMAC-SHA3-256 | A6703 |
| HMAC-SHA3-384 | A6703 |
| HMAC-SHA3-512 | A6703 |
| KAS-ECC-SSC Sp800-56Ar3 | A6703 |
| KDF SP800-108 | A6703 |
| KTS-IFC | A6703 |
| ML-DSA KeyGen | A6703 |
| ML-DSA SigGen | A6703 |
| ML-DSA SigVer | A6703 |
| ML-KEM EncapDecap | A6703 |
| ML-KEM KeyGen | A6703 |
| RSA KeyGen (FIPS186-5) | A6703 |
| RSA SigGen (FIPS186-5) | A6703 |
| RSA SigVer (FIPS186-4) | A6703 |
| RSA SigVer (FIPS186-5) | A6703 |
| SHA-1 | A6703 |
| SHA2-224 | A6703 |
| SHA2-256 | A6703 |
| SHA2-384 | A6703 |
| SHA2-512 | A6703 |
| SHA3-224 | A6703 |
| SHA3-256 | A6703 |
| SHA3-256 | A6704 |
| SHA3-384 | A6703 |
| SHA3-512 | A6703 |
| SHAKE-128 | A6703 |
| SHAKE-256 | A6703 |
| SLH-DSA KeyGen | A6703 |
| SLH-DSA SigGen | A6703 |
| SLH-DSA SigVer | A6703 |
| TLS v1.2 KDF RFC7627 | A6703 |
Validation history
| Date | Type | Lab |
|---|---|---|
| 2026-08-25 | Initial | atsec information security corporation |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-28: first observed by this tracker, status active
- Validation dates on record: 2026-08-25