CKM_AES_MAC
Firmware 7.7.0 and Newer Summary
FIPS approved? |
Yes |
Supported functions |
Sign | Verify |
Functions restricted from FIPS use |
Cannot sign |
Minimum key length (bits) |
128 |
Minimum key length for FIPS use (bits) |
128 |
Minimum legacy key length for FIPS use (bits) |
N/A |
Maximum key length (bits) |
256 |
Block size |
16 |
Digest size |
0 |
Key types |
AES |
Algorithms |
AES |
Modes |
MAC |
Flags |
Extractable |
NOTE To comply with FIPS SP800-131a Rev2 published in March 2019, when the HSM is in FIPS mode, this mechanism is not allowed to sign data.
Firmware 7.4.2 and Older Summary
FIPS approved? |
Yes |
Supported functions |
Sign | Verify |
Functions restricted from FIPS use |
None |
Minimum key length (bits) |
128 |
Minimum key length for FIPS use (bits) |
128 |
Minimum legacy key length for FIPS use (bits) |
N/A |
Maximum key length (bits) |
256 |
Block size |
16 |
Digest size |
0 |
Key types |
AES |
Algorithms |
AES |
Modes |
MAC |
Flags |
Extractable |