nShield Issuance Hardware Security Module

Certified hardware designed to deliver scalable cryptographic services for issuance software

nShield Issuance Hardware Security Module image

The nShield Issuance Hardware Security Module (HSM) is FIPS 140-2 Level 3- certified hardware designed to deliver cryptographic services enabling Entrust Datacard's secure issuance software. These tamper-resistant HSMs perform vital functions for financial and identification issuance, including EMV data preparation, key generation and data protection.

Seamless Integration

The nShield Issuance HSM uses the nCipher Security World architecture, which is closely integrated with Datacard® Adaptive Issuance™ Key Manager Software, ensuring seamless failover and load balancing for maximum program availability.

High Transaction Rates

The nShield Issuance HSM supports high transaction rates, making it ideal for instant issuance (banks and credit unions) as well as central issuance (card bureaus, banks and other payment card issuers) where throughput and uptime are critical.

Remote Administration Capabilities

The nShield Issuance HSM includes the nShield Remote Administration kit, featuring nShield Trusted Verification Device to facilitate the remote presentation of smart cards for HSM administration, remote firmware updates and Security World creation. The HSM also comes with a quick-fit slide rail kit that makes installation and ongoing maintenance accessible and straightforward.

Adding the nShield Issuance HSM to the family of Entrust Datacard products creates an integrated ecosystem that delivers unparalleled security, simplicity and serviceability.

Helpful Resources

Contact Sales navigate_next
description Sales Contact Form

1-888-690-2424 Live agents available 8am - 6pm EST Monday - Friday

Contact Support navigate_next

Global support contact information for all products and services organized by country.

Learn more about the nShield Issuance HSM by downloading the datasheet.

Helpful Resources


Supported Cryptographic Algorithms

Asymmetric algorithms: RSA, Diffie-Hellman, ECMQV, DSA, El-Gamal, KCDSA, ECDSA (including NIST, Brainpool & secp256k1 curves), ECDH, Edwards (Ed25519, Ed25519ph)

Symmetric algorithms: AES, Arcfour, ARIA, Camellia, CAST, DES, MD5 HMAC, RIPEMD160 HMAC, SEED, SHA-1 HMAC, SHA-224, HMAC, SHA-256 HMAC, SHA384 HMAC, SHA-512 HMAC, Tiger HMAC, Triple DES

Hash/message digest: MD5, SHA-1, SHA-2 (224, 256, 384, 512 bit), HAS-160, RIPEMD160

Supported Issuer EMV Certificates

  • American Express
  • Discover
  • Elo
  • Interac
  • Japan Credit Bureau (JCB)
  • Jetco
  • MasterCard
  • NSICCS Indonesia
  • RuPay
  • UnionPay
  • Visa
  • VCCS Vietnam

Security Compliance

  • FIPS 140-2 Level 2 and Level 3 certified

Host Connectivity

  • Dual Gigabit Ethernet ports (two network segments)

Safety and Environmental Standards Compliance

  • UL, CE, FCC, C-TICK, Canada ICES RoHS2, WEEE

High Availability

  • Field-serviceable fan tray components
  • Dual hot-swap power supply
  • HSM load balancing / Failover with Adaptive Issuance Key Manager

Management and Monitoring

  • nShield Remote Administration — includes nShield Trusted Verification
  • Device and remote administration smart cards

Physical Characteristics

  • Standard 1U 19in. rack mount dimensions: 43.4 x 430 x 705mm (1.7 x 16.9 x 27.8in)
  • Weight: 11.5kg (25.4lb)
  • Input voltage: 100-240V AC auto switching 50-60Hz
  • Power consumption: up to 2.0A at 110V AC, 60Hz | 1.0A at 220V AC, 50Hz
  • Heat dissipation: 327.6 to 362.0 BTU/hr. (full load)