Skip to main content
Pure Technical Services

FIPS-140-2 Certification

Currently viewing public documentation. Please login to access the full scope of documentation.

Pure Storage FlashArray deploys industry leading AES-256 standard for data-at-rest encryption. All the algorithms used for data encryption, key generation and key protection are National Institute of Standards and Technology (NIST) certified. Additionally, the FlashArray's crypto module is FIPS-140-2 certified. Following are the NIST validations for the algorithms used for Encryption:

a) AES [FIPS 197 and SP 800-38A] AES: http://csrc.nist.gov/groups/STM/cavp/documents/aes/aesval.html Validation nr. 3181
 
b) [SP 800-90A] DRBG: http://csrc.nist.gov/groups/STM/cavp/documents/drbg/drbgval.html Validation nr. 663
 
c) [FIPS 198-1]: HMAC: http://csrc.nist.gov/groups/STM/cavp/documents/mac/hmacval.html Validation nr. 2007
 
d) [FIPS 180-4]: SHA: http://csrc.nist.gov/groups/STM/cavp/documents/shs/shaval.htm Validation nr. 2633

e) [FIPS 140-2 Certification Certificate 2467]: https://csrc.nist.gov/projects/cryptographic-module-validation-program/Certificate/2467
 
f) [FIPS 140-2 Certification Certificate 4109] https://csrc.nist.gov/projects/cryptographic-module-validation-program/certificate/4109

We are now listed as In Process for FIPS as of November 2020