An organization implements FIPS 140-2 Level 3 validated HSMs for its cryptographic operations. What additional assurance does Level 3 provide over Level 2?
-
A
Level 3 requires TEMPEST shielding for all hardware
-
B
Level 3 requires physical tamper-resistance with response mechanisms that zeroize keys
-
C
Level 3 mandates formal mathematical proofs of algorithm correctness
-
D
Level 3 requires the device to be certified by NSA