CC eIDAS

Use your HSM as an eIDAS-compliant and CC-certified Qualified Signature Creation Device (QSCD)

  • Overview
  • Key Features
  • Description
  • Specifications
  • Resources
  • Platform Overview

About CC eIDAS

The CC eIDAS compliance version for CryptoServer General Purpose HSM supports Trust Service Providers (TSPs) in fulfilling policy and security requirements defined in various ETSI technical standards (ETSI EN 319 401, EN 319 411, EN 319 421). It can be used as a Qualified Signature and Qualified Seal Creation Device.

Supported Platform: CryptoServer General Purpose HSM

5G Protect
  • Key Features

  • Description

  • Specifications

CC eIDAS enables eIDAS qualified signing, sealing and certificate issuing, supporting Trust Service Providers in fulfilling policy and security requirements defined in ETSI standards (EN 319 401, EN 319 411, EN 319 421).

With key authorization, it ensures eIDAS-compliant qualified signatures and remote signing, while also supporting certificate issuance, OCSP, and time stamping. It is Common Criteria-certified under eIDAS Protection Profile EN 419 221-5 “Cryptographic Module for Trust Services”.

image
Cryptographic Interfaces (APIs)
  • High security for regulated use cases

  • Efficient key management and HSM administration including firmware up-dates via remote access

  • Supported Cryptographic Algorithms

  • Support for various Application Interfaces (APIs)

  • Fulfills Various Security Compliance Mandates

High security for regulated use cases

  • Can be used for additional applications such as Timestamping and OCSP (Online Certificate Status Protocol)
  • Secure key storage and processing inside the hardened boundary of the HSM
  • High-quality true random number generator to ensure uniqueness of keys
  • Configurable role-based access control and separation of functions
  • 2-factor authentication with smartcards
  • “m of n” quorum authentication
  • Extensive remote management and monitoring
background-image
image

Efficient key management and HSM administration including firmware up-dates via remote access

  • Automation of remote diagnosis via Simple Network Management Protocol (SNMP)
  • Software Simulator Included
background-image
image

Supported Cryptographic Algorithms

  • RSA, ECDSA with NIST and Brainpool curves
  • ECDH with NIST and Brainpool curves
  • AES
  • CMAC, HMAC
  • SHA-2, SHA-3
  • Hash-based deterministic random number generator (DRG.4 acc. AIS 31)
  • True random number generator (PTG.2 acc. AIS 31)
  • Up to 3,000 RSA or 2,500 ECDSA signing operations
background-image
image

Support for various Application Interfaces (APIs)

  • PKCS #11
  • Cryptography Next Generation (CNG)
  • Key authorization API and tool
  • Utimaco‘s native Cryptographic eXtended services Interface (CXI)
background-image
image

Fulfills Various Security Compliance Mandates

  • Common Criteria EAL4+ certified according to Protection Profile EN 419 221-5 (further information is available on the Common Criteria Portal) as well as to point 23 and 32 of Article 2 of Regulation 910/2014 (eIDAS) (further information is available on the EU Trust Services Dashboard)
  • Server Signing acc. EN 419 241-2
  • ETSI Policy and Security Requirements (e. g. EN 319 401, EN 319 411, EN 319 421, C-ITS)
background-image
image
image

Resources

Platform Overview

U Trust App

Cryptoserver General Purpose HSM

The CryptoServer General Purpose HSM is specifically designed for eIDAS-compliant and classified use cases. This makes it the perfect HSM for the public sector and entities requiring strict compliance, such as Trust Service Providers or critical infrastructure operators.

Know More

Ready to Secure Your Digital Future?

Know More

How can we help you?

Talk to one of our specialists and find out how Utimaco can support you today.
You have selected two different types of downloads, so you need to submit different forms which you can select via the two tabs.

Your download request(s):

    By submitting below form you will receive links for your selected downloads.

    Your download request(s):

      For this type of documents, your e-mail address needs to be verified. You will receive the links for your selected downloads via e-mail after submitting below form.

      About Utimaco's Downloads

      Visit our Downloads section and select from resources such as brochures, data sheets, white papers and much more. You can view and save almost all of them directly (by clicking the download button).

      For some documents, your e-mail address needs to be verified. The button contains an e-mail icon.

      Download via e-mail

       

      A click on such a button opens an online form which we kindly ask you to fill and submit. You can collect several downloads of this type and receive the links via e-mail by simply submitting one form for all of them. Your current collection is empty.