FIPS-140-2 Certification
Pure Storage FlashArray deploys industry leading AES-256 standard for data-at-rest encryption. All the algorithms used for data encryption, key generation and key protection are National Institute of Standards and Technology (NIST) certified. Additionally, the FlashArray's crypto module is FIPS-140-2 certified. Following are the NIST validations for the algorithms used for Encryption:
- AES [FIPS 197 and SP 800-38A] AES: http://csrc.nist.gov/groups/
STM/cavp/documents/aes/aesval. html Validation nr. 3181 - [SP 800-90A] DRBG: http://csrc.nist.gov/groups/
STM/cavp/documents/drbg/ drbgval.html Validation nr. 663 - [FIPS 198-1]: HMAC: http://csrc.nist.gov/groups/
STM/cavp/documents/mac/ hmacval.html Validation nr. 2007 - [FIPS 180-4]: SHA: http://csrc.nist.gov/groups/
STM/cavp/documents/shs/shaval. htm Validation nr. 2633 - [FIPS 140-2 Certification Certificate 4109] https://csrc.nist.gov/projects/cryptographic-module-validation-program/certificate/4109