Certificate 1957 - Luna G5 Cryptographic Module
intCertNum 1957
strVendorName SafeNet, Inc.
strURL http://www.safenet.com
strAddress1 20 Colonnade Road
strAddress2 Suite 200
strAddress3
strCity Ottawa
strStateProv Ontario
strPostalCode K2E 7M6
strCountry K2E 7M6
strContact Security and Certifications Team
strEmail SecurityCertifications@safenet-inc.com
strPhone
strFax
strContact2
strEmail2
strFax2
strPhone2
intCertNum 1957
strModuleName Luna G5 Cryptographic Module
strPartNumber Hardware Versions: LTK-03, Version Code 0102;
LTK-03, Version Code 0103;
Firmware Versions: 6.2.3 and 6.2.5
memModuleNotes When operated in FIPS mode and initialized to Overall Level 3 per Security Policy
str140Version 140-2
_sp_ Security Policy   [pdf][html][txt]
_cert_ Certificate   [pdf]
strPURL
strModuleType Hardware
strValidationDate 06/11/2013;08/07/2015;01/12/2016;01/14/2016;01/22/2016;05/12/2016
intOverallLevel 3
memIndividualLevelNotes
strFIPSAlgorithms AES (Certs. #2262 and #2263);
Triple-DES (Certs. #1414 and #1415);
Triple-DES MAC (Triple-DES Certs. #1414 and #1415, vendor affirmed);
DSA (Certs. #704 and 705);
SHS (Certs. #1947 and #1948);
RSA (Certs. #1159 and #1160);
HMAC (Certs. #1386 and #1387);
DRBG (Cert. #277);
ECDSA (Certs. #364 and #365);
KAS (Cert. #37);
KBKDF (Cert. #5)
strOtherAlgorithms DES;
RC2;
RC4;
RC5;
CAST5;
SEED;
ARIA;
MD2;
MD5;
HAS-160;
DES-MAC;
RC2-MAC;
RC5-MAC;
CAST5-MAC;
SSL3-MD5-MAC;
SSL3-SHA1-MAC;
KCDSA;
Diffie-Hellman (key agreement: key establishment methodology provides 112 or 128 bits of encryption strength);
HRNG;
AES MAC (AES Cert. #2263;
non-compliant);
AES (Certs. #2262 and #2263, key wrapping;
key establishment methodology provides between 128 and 256 bits of encryption strength);
Triple-DES (Certs. #1414 and #1415, key wrapping;
key establishment methodology provides 112 bits of encryption strength);
Generic-Secret generation (non-compliant);
SSL Pre-Master generation (non-compliant);
RSA (non-compliant);
RSA (key wrapping;
key establishment methodology provides between 112 and 152 bits of encryption strength;
non-compliant less than 112 bits of encryption strength)
strConfiguration Multi-chip standalone
memModuleDescription Luna G5 delivers key management in a portable appliance. All key materials are maintained exclusively within the confines of the hardware. The small form-factor and on-board key storage sets the product apart, making it especially attractive to customers who need to physically remove and store the small appliance holding PKI root keys. The appliance directly connects the HSM to the application server via a USB interface.
intModuleCount 1
memAdditionalNotes 08/07/15: Added FW 6.2.5, changed POC and updated the security policy.
Updated SP
updated SP
Added two TELs.
Updated and tested new HW.
strFirstValidtionDate 06/11/13 00:00:00
strLabName EWA
strValidationYear 2013