Thales SafeNet eToken Fusion NFC PIV USB-C


Support FIDO and PKI use cases

Streamlined login with NFC

Comply with FIDO2.1 specifications

Personal Identity Verification (PIV) compliant

Trade Agreement Act (TAA) compliant



Description


Thales SafeNet eToken Fusion NFC PIV — FIDO2 Passkey + PIV Smart Token


The Thales SafeNet eToken Fusion NFC PIV USB-C is a next-generation, multi-interface security token designed to provide advanced authentication and digital identity protection for modern hybrid environments. Combining USB-C connectivity with NFC (Near Field Communication) technology, this device enables secure, flexible access across desktops, laptops, and mobile devices — without sacrificing user convenience or compliance.


A dual-interface security key that combines FIDO2/WebAuthn passkeys for passwordless login with a full PIV v4.0 smart-card stack—over USB or NFC tap. Built for agencies and enterprises that need modern phishing-resistant MFA and classic PKI on one device.


Key Features


Dual Interface – USB-C & NFC:

Access securely via USB-C on modern laptops and devices, or tap with NFC-enabled smartphones and tablets for contactless authentication.


FIPS 140-2 Level 2 & PIV-Compliant:

Meets the highest government and enterprise standards for identity verification, ensuring trusted access to sensitive systems and data.


PKI & Smart Card Functionality:

Supports certificate-based authentication, digital signing, and encryption — protecting enterprise credentials and transactions.


Mobile-Ready Security:

Ideal for organizations adopting a mobile-first or remote workforce strategy. Enables secure authentication across both traditional and mobile platforms.


Plug-and-Play Integration:

Compatible with Windows, macOS, Linux, iOS, and Android (via NFC). Works seamlessly with existing PKI, IAM, and FIDO2 infrastructures.


Why choose Fusion NFC PIV


Two form factors in one: USB (A or C) for desktops, NFC (ISO 14443) for badges, tablets, and phones.


True hybrid: FIDO2 for passkeys + PIV v4.0 for smart-card logon, signing, and encryption—on a single token.


Enterprise-ready: Works with the SafeNet (Base CSP) minidriver on Windows; PKI supported on Windows, macOS, and Linux.


Room to grow: Up to 100 resident FIDO credentials and 24 PKI key containers (shared memory model).


Strong crypto: ECC (P-256/P-384), RSA up to 4096, on-token keygen; AES/3DES for secure messaging.


Hardened silicon & compliance: Chip CC EAL6+; FIDO 2.1 L2; FIPS 140-3 L2 platform in progress (Cert. #4772); TAA compliant. (Confirm your program’s certification needs.)


Use Cases


Government and enterprise identity management


Passwordless workforce: Issue passkeys for Microsoft Entra ID/Azure AD, Windows 10/11, and other FIDO2/WebAuthn services

Secure VPN and workstation login


Digital document signing and encryption


Multi-factor authentication (MFA) for cloud and on-prem applications


Mobile credential and badge-based access