Pitney Bowes X4 Hardware Security Module (HSM)
Caveat: When operated in FIPS Mode. The module generates cryptographic keys whose strengths are modified by available entropy
Certificate
| Certificate number | 3321 |
|---|---|
| Standard | FIPS 140-2 |
| Status | historical |
| Overall level | 3 |
| Module type | Hardware |
| Embodiment | Single Chip |
| Vendor | Pitney Bowes, Inc. · website |
| Hardware versions | Part # 4W84001 Rev AAA (MAX32590 Secure Microcontroller Revision B4) |
| Firmware versions | Device Abstraction Layer (DAL) Version 01.01.0103; PB Bootloader Version 00.00.0016; HSM Application Version 21.01.0021 |
Module description
The X4 HSM is a single chip cryptographic module using the Maxim MAX32590 hardware. The central purpose of the module is as a physical computing device that safeguards and manages cryptographic keys and provides cryptographic services to connected host devices. The module uses a number of strong identity based authentication mechanisms to provide authentication, integrity, and when necessary non-repudiation.
Approved algorithms
| Algorithm | CAVP certificate |
|---|---|
| AES | 2826, 2936 |
| CKG | vendor affirmed |
| CVL | 334, 1138 |
| DRBG | 487 |
| DSA | 871 |
| ECDSA | 529 |
| HMAC | 1769 |
| KAS | 49 |
| KTS | |
| RSA | 1539 |
| SHS | 2369 |
Allowed algorithms
NDRNG
Tested configurations
- N/A
Validation history
| Date | Type | Lab |
|---|---|---|
| 2018-11-06 | Initial | Penumbra Security, Inc. |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2018-11-06