Compliance Brief

Caliptra Compliance and Cryptographic Security

Caliptra Compliance and Cryptographic Security - Compliance Brief

Strengthening the Fundamental Security Pillars for Caliptra

Caliptra provides an open-source Silicon Root of Trust architecture for datacenter System-on-Chip (SoC) platforms, creating a trusted foundation for CPUs, GPUs, TPUs, DPUs, or smart SSDs. This compliance brief explains the security and compliance requirements surrounding Caliptra, including cryptographic module certification, secure entropy generation, device identity, key protection, attestation, and post-quantum cryptography. 

The brief also explains how Thales' HSM solutions can support the cryptographic infrastructure behind Caliptra implementations. It covers FIPS 140-3 Level 3 validated HSMs, NIST-aligned entropy and key protection, certificate and identity infrastructure, and support for ML-DSA and ML-KEM. 

What you will learn: 

  • How Caliptra establishes a Silicon Root of Trust for datacenter SoCs
  • Key compliance and cryptographic requirements associated with Caliptra
  • How HSMs can support secure key generation, protection, signing, and certificate infrastructure
  • How FIPS 140-3 and NIST requirements apply to supporting cryptographic infrastructure
  • How post-quantum algorithms such as ML-DSA and ML-KEM fit into Caliptra security architectures