<<

nShield Solo HSMs Certified PCI-Express cards that deliver cryptographic services to stand-alone servers

HIGHLIGHTS Protect your proprietary nShield Solo hardware security modules applications and data (HSMs) are FIPS-certified, low-profile The CodeSafe option provides a secure PCI-Express cards that deliver cryptographic environment for running sensitive services to applications hosted on a server applications within nShield boundaries. or appliance. These tamper-resistant cards perform such functions as , digital KEY FEATURES & BENEFITS signing and key generation and protection over an extensive range of applications, • Maximize performance and availability including certificate authorities, code with high cryptographic transaction signing, custom software and more. rates and flexible scaling

The nShield Solo series includes nShield • Supports a wide variety of Solo+ and the new, high-performance applications including certificate nShield Solo XC. authorities, code signing and more

Highly flexible architecture • nShield CodeSafe protects your applications within nShield’s secure nCipher unique Security World architecture execution environment lets you combine nShield HSM models to build a mixed estate that delivers flexible • nShield Remote Administration helps scalability and seamless failover and load you cut costs and reduce travel balancing.

Process more data faster nShield Solo HSMs support high transaction rates, making them ideal for enterprise, retail, IoT and other environments where throughput is critical.

LEARN MORE AT ENTRUST.COM/HSM nShield Solo HSMs

TECHNICAL SPECIFICATIONS

Application programming Supported cryptographic algorithms Supported platforms interfaces (APIs)

• Asymmetric algorithms: RSA, Diffie-Hellman, ECMQV, DSA, • Windows and Linux • PKCS#11, OpenSSL, Java (JCE), El-Gamal, KCDSA, ECDSA, ECDH, Edwards (X25519, Ed25519ph) operating systems including Microsoft CAPI and CNG, nCore, and distributions from RedHat, Web Services (requires Web Services • Symmetric algorithms: AES, Arcfour, ARIA, Camellia, CAST, SUSE and major cloud service Option Pack) DES, MD5 HMAC, RIPEMD160 HMAC, SEED, SHA-1 HMAC, providers running as virtual SHA-224 HMAC, SHA-256 HMAC, SHA-384 HMAC, SHA-512 HMAC, machines or in containers Tiger HMAC, 3DES • Solo XC virtual environments • Hash/message digest: MD5, SHA-1, SHA-2 (224, 256, 384, 512 bit), supported including VMware HAS-160, RIPEMD160 ESX, Microsoft Hyper-V, Linux • Full Suite B implementation with fully licensed ECC, including KVM & Citrix XenServer Brainpool and custom curves

Safety and Management and Host connectivity Security compliance environmental monitoring standards compliance

• PCI Express Version • FIPS 140-2 Level 2 and Level 3 certified • UL, UL/CA, CE, FCC, • nShield Remote 2.0; Solo+ connector: Canada ICES, KC, FCC, Administration and • Solo+: Common Criteria EAL4+ (AVA_VAN.5) certified 1 , Solo XC VCCI, RCM nShield Monitor connector: 4 lane • Solo+ recognized as a Qualified Signature Creation Device • RoHS2, WEEE, REACH • Secure audit logging • Solo XC: eIDAS and Common Criteria EAL4 + AVA_VAN.5 • Syslog diagnostics and ALC_ FLR.2 certification against EN 419 221-5 support and Windows Protection Profile, under the Dutch NSCIB scheme performance monitoring • Solo XC: BSI AIS 20/31 compliant • SNMP monitoring agent

AVAILABLE MODELS AND PERFORMANCE

nShield Solo XC XC XC Weight Power 500+ 6000+ Dimensions models Base Mid High Solo+ Solo XC Solo+ Solo XC RSA signing performance (tps) for NIST 56.2 × 167.1 × 15.4mm 230g 280g recommended key lengths 10W 24W 2048 bit 150 430 3,000 3,500 8,600 2.2 × 6.6 × 0.6in 0.5lb 0.62lb 4096 bit 80 100 500 850 2,025

ECC prime curve signing performance (tps) for NIST recommended key lengths

256 bit 540 680 2,400 7,5151 14,4001

Note 1: Performance indicated requires ECDSA fast RNG feature activation available free of charge on request from nCipher support.

Contact us: Entrust is a trademark, registered trademark, and/or service mark of Entrust Corporation in the United [email protected] States and/or other countries. ©2020 Entrust Corporation. All rights reserved. September 2020 • PLB9398_Entrust nShield Solo_DS_USL_AW