808bits

Trusted Platform Module ST33TPHF2ESPI & ST33TPHF2EI2C

FIPS 140-2 certificate #3680 · STMicroelectronics · data as of 2026-09-13

Trusted Platform Module ST33TPHF2ESPI & ST33TPHF2EI2C, from STMicroelectronics, holds FIPS 140-2 certificate #3680 at overall level 1. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.

Historical. Moved to historical list due to sunsetting. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode and installed, initialized and configured as specified in Section 1.7 of the Security Policy

Certificate

Certificate number3680
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeHardware
EmbodimentSingle Chip
VendorSTMicroelectronics
Hardware versionsST33HTPH2E28AAF0 [1], ST33HTPH2E32AAF0 [1], ST33HTPH2E28AAF1 [1], ST33HTPH2E32AAF1 [1], ST33HTPH2E28AHB3 [1], ST33HTPH2E32AHB3 [1], ST33HTPH2E28AHB4 [1], ST33HTPH2E32AHB4 [1], ST33HTPH2E28AHB7 [2], ST33HTPH2E32AHB7 [2], ST33HTPH2E28AHB8 [2], ST33HTPH2E32AHB8 [2], ST33HTPH2E28AHC0 [1], ST33HTPH2E32AHC0 [1], ST33HTPH2E28AHC2 [2], ST33HTPH2E32AHC2 [2], ST33HTPH2E28AHD0 [1] and ST33HTPH2E32AHD0 [1]
Firmware versions49.40 [1] and 49.41 [2]

Module description

Quoted from the NIST CMVP entry for this certificate.

ST Microelectronics Trusted Platform Module is a hardware cryptographic module which implements advanced cryptographic algorithms, including symmetric and asymmetric cryptography, as well as key generation and random number generation as defined by the Trusted Computing Group (TCG) version 1.2 and version 2.0 specification.

Security level exceptions

  • Physical Security: Level 3

Approved algorithms (13)

AlgorithmCAVP certificates
AES4338
CKGvendor affirmed
CVL1045, C1074, C1075
DRBG1361
ECDSAC1074, C1075
HMACC1067, C1068, C1074, C1075
KAS-SSCvendor affirmed
KBKDFC1074, C1075
KDAvendor affirmed
KTSvendor affirmed
RSA2342
SHS3539
Triple-DES2345

Allowed algorithms

NDRNG

Tested configurations

  • N/A

Validation history

DateTypeLab
2020-07-14InitialCYGNACOM SOLUTIONS INC

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2020-07-14

Source documents