jForte™
System-On-Chip Hardware Technology
The jForté Cryptographic Module addresses the critical needs of all secure authentication programs with proven security, convenience, flexibility and performance. By combining a high level of security with unparalleled performance and an open environment, the jForté Cryptographic Module is an extremely versatile tool for enterprises that require the most stringent protection of identity credentials. It was designed from the ground up to meet today’s challenges of real-world security.
Product Features:
- Java-enabled cryptographic module
- Tailored specifically for multi-application requirements of government environments and corporate enterprises
- GlobalPlatform architecture and Java Card technology
- Supports advanced post-issuance services via high-assurance on-board cryptographic capabilities
Highest Level of Verified & Certified Physical Security:
Hard opaque coating and a metal-alloy “tin roof” coating
- Any attempt to penetrate or remove the coatings would destroy the device
- Physical security validated as the highest attainable level:
- FIPS 140-2 Level 4
- Withstood significant NSA analysis
Built-In Cryptographic Functions:
- Data Encryption Standard (DES) 1 key (56 bits), 2 key (112 bits), and 3 key (Triple-DES) (168 bits)
- Encryption/Decryption and Wrap/Unwrap functions
- Electronic Code Book (ECB) and Cipher Block Chaining (CBC) modes
- Rivest-Shamir-Adleman (RSA) 1024 modulus bits:
- Internal key-pair generation, n = 8
- Encryption/Decryption, Sign/Verify operations, and Wrap/Unwrap (Export/Import) and Component Get/Set functions
- Internal key-pair generation, n = 8
- Encryption/Decryption, Sign/Verify operations, and Wrap/Unwrap (Export/Import) and Component Get/Set functions
- Message Digest Secure Hash Algorithm (SHA-1) Data Encryption Standard (DES) 1 key (56 bits), 2 key (112 bits), and 3 key (Triple-DES) (168 bits)
- Encryption/Decryption and Wrap/Unwrap functions
- Electronic Code Book (ECB) and Cipher Block Chaining (CBC) modes
- Rivest-Shamir-Adleman (RSA) 1024 modulus bits:
- Message Authentication Code (MAC):
- Single DES as defined in ISO 9797-1
- Full triple-DES MAC as defined in ISO 9797-1
- Message Digest Secure Hash Algorithm (SHA-1)
Built-In Biometric Capabilities:
Fully biometrics-ready device with built-in implementation of:
- Java Card 2.2 API, match-on-device foundation for enrollment, template management, verification, and access rights
- ANSI X9.84, specification “Biometric Management and Security for the Financial Services Industry”
- BioAPI Specification, version 2.1, the high-level generic biometric authentication model
- NISTR 6529, “Common Biometric Exchange File Format (CBEF)” for interoperability of biometric data
Specifications:
- 0.35 micron “system on a chip”
- ARM7 32-bit RISC microprocessor
- 96 KB ROM, 64 KB EEPROM, 5 KB SRAM
- Standard ISO 7816 serial I/O, 9600 bps to 115 Kbps
- Standard USB 1.1 serial I/O, 6 to 12 Mbps supports high-speed on-board cryptographic and biometric processes