FB pixel

Entrust hardware security module running PQC algorithms validated by NIST program

Entrust hardware security module running PQC algorithms validated by NIST program
 

Implementations of three post-quantum encryption algorithms standardized by NIST on a hardware security module from Entrust have been successfully validated, giving enterprises assurance that they can protect their sensitive data, such as biometric templates, against the threat of quantum computing.

Entrust says its nShield Hardware Security Module (HSM) natively supports the ML-DSA, ML-KEM, and SLH-DSA algorithms, and implementations of each were validated under NIST’s Cryptographic Algorithm Validation Program (CAVP).

Entrust has also submitted the HSM firmware with the three post-quantum cryptography (PQC) algorithms to the Cryptographic Module Validation Program (CMVP) for FIPS 140-3 Level 3 certification.

“Our achievement in obtaining NIST validation for the post-quantum algorithms in production-ready Entrust HSMs is a key differentiator for our customers,” said Entrust Chief Technology and Product Officer Mike Baxter. “This certification gives organizations the confidence that their nShield HSMs are post-quantum ready and recognized by the world’s leading standards body, NIST.”

When exactly organizations must be ready to protect their sensitive data from post-quantum threats is still a matter of some speculation, but a consensus is emerging that biometrics and digital identity providers should already be working on how to keep cryptographic protections intact.

What is the Cryptographic Algorithm Validation Program?

The CAVP is an initiative under which NIST supports testing to validate cryptographic algorithms and their components as meeting the agencies own recommendations, as well as the criteria for approval under FIPS. The FIPS-approved algorithms are listed in NIST SP 800-140C and SP 800-140D.

A demo Automated Cryptographic Validation Test Systems (ACVTS) is available through the program to developers for self-testing, while a production ACVTS server is available to NVLAP-accredited testing laboratories.

CAVP is also a prerequisite for submissions to the CVMP.

Related Posts

Article Topics

 |   |   |   |   |   |   | 

Latest Biometrics News

 

Fourthline, Veridas merge to build global identity and compliance platform

European identity verification companies Fourthline, based in Amsterdam, and Veridas, headquartered in Spain, announced their planned merger Thursday, creating an…

 

UK won’t ban VPNs, puts onus on platforms to prevent age check circumvention

UK Technology Secretary Liz Kendall has published an official statement outlining the government’s positions on children’s wellbeing and safety online,…

 

EAB previews biometric injection attack detection standardization developments

The European Association for Biometrics (EAB) is shaping up formal standards for ways to detect and classify biometric injection attacks,…

 

Malta launches €15.6M tender for European Digital Identity Wallet

The Malta Digital Innovation Authority (MDIA) has issued a tender for the implementation of a fully compliant European Digital Identity…

 

Congress targets underage betting with facial age estimation bill

Online sportsbooks and prediction markets would have to analyze a user’s face to estimate whether the person is old enough…

 

India aims for next‑gen governance reforms as AI and DPI reshape the state

India is looking to overhaul governance as a senior minister says the country is moving into “next‑generation” administrative and e‑governance…

Comments

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Biometric Market Analysis and Buyer's Guides

Most Viewed This Week

Featured Company

Biometrics Insight, Opinion

Digital ID In-Depth

Biometrics White Papers

Biometrics Events