Module Name
Key Variable Loader (KVL) 5000 PIKE2
Validation Dates
12/03/2020
Caveat
When operated in FIPS mode
Security Level Exceptions
- Cryptographic Module Specification: Level 3
- Roles, Services, and Authentication: Level 3
- Physical Security: Level 3
- EMI/EMC: Level 3
- Design Assurance: Level 3
- Mitigation of Other Attacks: N/A
Description
The Key Variable Loader (KVL) 5000 PIKE2 provides security services for the KVL 5000. The KVL 5000 is a portable key distribution device that consists of KVL Host Application processor and KVL 5000 PIKE2 Hardware Security Module (HSM). The KVL 5000 allows programmers to generate, transport, and load encryption keys, securely and efficiently into secure communication products thereby enabling secure encrypted communications.
FIPS Algorithms
AES |
Certs. #C908, #C909, #C930 and #C931 |
CKG |
vendor affirmed |
DRBG |
Cert. #C949 |
ECDSA |
Cert. #183 |
KTS |
AES Cert. #C930 |
KTS |
AES Cert. #C931 |
SHS |
Cert. #1345 |
Allowed Algorithms
AES (Certs. #C908 and #C909, key unwrapping; key establishment methodology provides 128 or 256 bits of encryption strength); AES MAC (AES Cert. #C931, vendor affirmed; P25 AES OTAR); NDRNG
Hardware Versions
P/N 51009397004
Firmware Versions
Base FW R50.05.01 or R50.07.01 with or without AES128 R01.00.01, AES256 R01.00.01, and/or ADP/DES/DES-OFB/DES-XL/DVI-XL/DVP-XL R01.00.00