Thales HSM Luna PCIe A700

Code: 10-72-070-A700-1Y 10-72-070-A700-2Y 10-72-070-A700-3Y 10-72-070-A700-4Y 10-72-070-A700-5Y Choose variant
€9 583 €11 247 €12 197 €13 623 €15 048 from €9 583 €11 595,43 incl. VAT €13 608,87 incl. VAT €14 758,37 incl. VAT €16 483,83 incl. VAT €18 208,08 incl. VAT from €11 595,43 incl. VAT
In stock In stock In stock In stock In stock Choose variant
HSM price including maintenance for: ?
Chosen variant is not available. Reset selected parameters.

Thales Luna PCIe HSM A700 is the entry-level model in the PCIe HSM product line, designed for direct installation into a server. It provides hardware-based protection of cryptographic keys and performs cryptographic operations within a certified secure environment. All key material remains stored inside tamper-resistant hardware that meets the requirements of FIPS 140-2/140-3 Level 3. The platform is based on an architecture certified according to Common Criteria EAL4+ and also supports deployment in scenarios requiring QSCD compliance (depending on the specific implementation). The A700 model is well suited for application integrations, PKI solution development, testing environments, and smaller production deployments.

There are hundreds of scenarios where you can use seamlessly the HSM to secure your sensitive data/records. Let us know, we are always happy to help you.

Download THALES LUNA PCIe Product Brief.

Detailed information

Quantity
discounts

Free shipping
over 300 EUR

Quick process
& shipping

We accept
online payments

Product detailed description

Key Features

  • PCIe card for server installation
  • Tamper resistant cryptographic key protection
  • FIPS 140-2/140-3 Level 3
  • Common Criteria EAL4+ compliant architecture
  • PKCS#11, Microsoft CNG/CAPI and Java JCA/JCE support
  • Password-based authentication
  • Basic audit functions

 

Performance and specifications

  • RSA-2048: up to 1,000 operations/s
  • ECC P-256: up to 2,000 operations/s
  • AES-GCM: up to 2,000 operations/s
  • Key memory: 2 MB (newer firmware up to 4 MB)
  • Form factor: PCIe card
  • Designed for standard workloads and small to medium infrastructures

 

Typical uses

  • PKI and certification authorities
  • Digital signatures and qualified services
  • Database protection
  • TLS/SSL acceleration
  • IoT infrastructure

 

Supported Algorithms & Cryptography

  • Full Suite B support
  • Asymmetric: RSA, DSA, Diffie-Hellman, ECC (ECDSA, ECDH, Ed25519, ECIES) with named, user-defined and Brainpool curves, KCDSA, and more
  • Symmetric: AES, AES-GCM, Triple DES, DES, ARIA, SEED, RCS, RC4, RC5, CAST, and more
  • Hash / Message Digest / HMAC: SHA-1, SHA-2, SHA-3, SM2, SM3, SM4, and more
  • Key Derivation: SP800-108 Counter Mode
  • Key Wrapping: SP800-38F
  • Random Number Generation: NIST SP 800-90 A/B/C certified, AIS 20/31 compliant to DRG.4
  • Digital Wallet Encryption: BIP32

 

Operating Systems & API (additional)

  • Supported OS: Windows, Linux
  • API: also OpenSSL (in addition to PKCS#11, Microsoft CAPI/CNG and Java JCA/JCE already listed)

 

Security Features

  • Multiple roles for strong separation of duties
  • Multi-person MofN with multi-factor authentication
  • Secure audit logging
  • High-assurance delivery with secure transport mode
  • Functionality Modules – extend native HSM functionality and deploy custom code within the secure confines of the HSM
  • Compliance with GDPR, eIDAS, HIPAA, PCI-DSS, and more

 

Certifications (additional)

  • FIPS 140-2 / 140-3 Level 3 also available with Multi-Factor (PED) authentication
  • Common Criteria EAL4+ specifics: AVA_VAN.5 and ALC_FLR.2, against Protection Profile EN 419221-5
  • QSCD listing for eIDAS compliance
  • Singapore NITES Common Criteria Scheme
  • Brazil INMETRO Approved (formerly ITI)
  • NATO Approved for Use up to Restricted

 

Physical Characteristics

  • Low profile PCIe card
  • Dimensions: 69.6 mm × 167 mm × 18.7 mm (2.74" × 6.57" × 0.74")
  • Power consumption: 18 W maximum, 14 W typical
  • Heat dissipation: 61.4 BTU/hr maximum, 47.8 BTU/hr typical
  • Temperature: operating 0 °C – 50 °C, storage −20 °C – 60 °C
  • Relative humidity: 5% to 95% (38 °C), non-condensing

 

Host Interface & Standards

  • PCI-Express CEM 3.0, PCI, PCI Express Base 2.0
  • UL, CSA, CE, FCC, VCCI, C-TICK, KC MARK
  • RoHS2, WEEE, India BIS [IS 13252 (Part 1)/IEC 60950-1]

 

Reliability

  • Backup/restore
  • High Availability (HA)
  • Mean Time Between Failure (MTBF): 997,508 hours

 

Positioning within the Luna PCIe HSM Range

  • A700 – Standard Performance, Luna A Series (Password Authentication), up to 4 MB memory
  • Higher models: A750 (Enterprise) and A790 (Maximum Performance)
  • Luna S Series (S700/S750/S790) with multi-factor (PED) authentication for high-assurance use cases

Thales (formerly Gemalto)

Thales is a French technology group operating in aerospace, defence and security, space, cybersecurity, and digital identity. It employs more than 80,000 people across nearly 70 countries, and its solutions are relied upon by governments, banks, telecom operators, and industrial enterprises worldwide.

In the field of digital security, Thales builds on the heritage of SafeNet and Gemalto, both of which were world leaders in data protection, cryptographic key management, and the issuance of digital identities. Gemalto became part of the Thales Group in 2019, and its portfolio now sits within the Thales Cyber & Digital Identity division. As a result, Thales products combine proven technologies — deployed at certification authorities, government institutions, and financial organizations for decades — with long-term support and a global footprint.

Thales security solutions are designed to meet the most demanding international standards and certifications (such as FIPS 140-2/140-3 and Common Criteria), and form a root of trust for public key infrastructure (PKI), qualified trust services under eIDAS, data protection, payment systems, and digital identities.

By choosing a Thales product, you gain technology from a trusted global provider of digital security, backed by long-term support, regular certifications, and worldwide infrastructure.