Certificate 1414 - ID-One PIV (Type A)
intCertNum 1414
strVendorName Oberthur Technologies
strURL http://www.oberthur.com
strAddress1 4250 Pleasant Valley Road
strAddress2
strAddress3
strCity Chantilly
strStateProv VA
strPostalCode 20151-1221
strCountry 20151-1221
strContact Christophe Goyet
strEmail c.goyet@oberthur.com
strPhone 703-263-0100
strFax 703-263-0503
strContact2
strEmail2
strFax2
strPhone2
intCertNum 1414
strModuleName ID-One PIV (Type A)
strPartNumber Hardware Versions: P/Ns B0 and BA;
Firmware Versions: FC10 (with op-codes 069778 or 071964) with ID-One PIV Applet Suite V2.3.2 [1], V2.3.2-a [2] or V2.3.4 [3]
memModuleNotes When operated in FIPS mode with the fingerprint authentication mechanism parameters configured as indicated in the Security Policy Section 8.1
str140Version 140-2
_sp_ Security Policy   [pdf][html][txt]
_cert_ Certificate   [pdf][txt]
strPURL
strModuleType Hardware
strValidationDate 09/28/2010;11/24/2010;12/21/2010;02/10/2011;07/05/2011;10/04/2011;02/22/2013;02/06/2014
intOverallLevel 2
memIndividualLevelNotes -Roles, Services, and Authentication: Level 3;-Physical Security: Level 4;-EMI/EMC: Level 3;-Design Assurance: Level 3
strFIPSAlgorithms Triple-DES (Cert. #698);
Triple-DES MAC (Triple-DES Cert. #698, vendor affirmed);
AES (Cert. #840);
RNG (Cert. #480);
RSA (Cert. #403);
ECDSA (Cert. #94);
SHS (Cert. #833);
CVL (Cert. #3);
CVL (Certs. #215 and #220)
strOtherAlgorithms Triple-DES (Triple-DES Cert. #698, key wrapping;
key establishment methodology provides 80 bits of encryption strength;
non-compliant);
AES (AES Cert. #840, key wrapping;
key establishment methodology provides 128 bits of encryption strength);
AES MAC (AES Cert. #840;
non-compliant);
RSA (key wrapping;
key establishment methodology provides 112 bits of encryption strength)
strConfiguration Single-chip
memModuleDescription This new generation PIV Card addresses current and future needs of both Federal & Corporate customers with built-in support for all the cryptographic algorithms defined in SP800-78-2 including TDEA, AES, RSA, ECDSA, & ECDH with all possible key sizes as well as key history for over 20 retired decryption keys. It offers Identity proofing (storage of personal data), User authentication, Card authentication, digital signature, encryption, and secure post issuance management in the PIV system. Its fingerprint match-on-card has been validated in the MINEX II PIV Biometric interoperability program.
intModuleCount 1
memAdditionalNotes 11/24/10: Removed the posted Security Policy and Certificate - Updates are required. Removed reference to Cryptographic Key Management Section as it meets Level 2 and removed Operational Environment Section reference as this section is NA.
12/21/10: Posted new Security Policy and Certificate.
2/10/11: Replaced Version 2.3.2 with 2.3.2-a and updated Security Policy.
07/05/11: Readded ID-One PIV Applet Suite V2.3.2 and PIV Cert #25; updated Security Policy.
10/04/11: Replaced ECDH with CVL #3 and updated Security Policy.
02/22/13: added PIV Applet V2.3.4 and PIV card app. #36 and updated security policy.
02/06/14: Added CVL (Certs. #215 and #220)
strFirstValidtionDate 09/28/10 00:00:00
strLabName InfoGard
strValidationYear 2010