Hardware Security Module Requirement
for High Assurance Credentials
Wallet Interoperable SIG
Demand for strong customer authentication
Anti-Money Laundering Act
Approved methods
2
LoA high requirement by national law, not from the eIDAS
Evaluation at FUNKE
3
Key storage
4
Relevant standards
ISO 29115
FIPS 140-3
Common Criteria
5
TPM vs HSM
6
Feature | TPM | HSM |
Primary Purpose | Device security | Cryptographic security |
Costs | Low | Expensive |
Use Case | Single Device | Enterprise-wide |
Scope | Local | Cloud |
Security level | Basic | High |
Tamper Resistance | Limited | Strong |
Performance | Low | High |
eID on Smartphone in Germany (2020)
Available devices 2020
Security Chip
7
What about other vendors?
Google Titan M2 security chip: EAL4+ certified
Samsung: Knox
Lack of certification
8
HSM as a service
Thales Luna 7 HSM A790
Azure
9
Certification
Security
10
PIN
Hash
German government wallet
Short run: C’
Middle; C’ + C
Long run: C
11
No Internet,
no identity
12