X4i Hardware Security Module (HSM)
X4i Hardware Security Module (HSM), from Pitney Bowes, Inc., holds FIPS 140-2 certificate #4225 at overall level 3. The validation is active, with a sunset date of 2026-09-21. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.
Caveat: When operated in FIPS Mode. No assurance of the minimum strength of generated keys.
Certificate
| Certificate number | 4225 |
|---|---|
| Standard | FIPS 140-2 |
| Status | active |
| Sunset date | 2026-09-21 |
| Overall level | 3 |
| Module type | Hardware |
| Embodiment | Single Chip |
| Vendor | Pitney Bowes, Inc. · website |
| Hardware versions | MAX32590 Secure Microcontroller Revision B4 |
| Firmware versions | PB Bootloader Version 00.00.0016, HSM Application Version 21.04.0008, and Device Abstraction Layer (DAL) Version 01.02.002F |
Module description
Quoted from the NIST CMVP entry for this certificate.
The X4i HSM is a single chip cryptographic module using the Maxim MAX32590 hardware. The central purpose of the module is as a physical computing device that safeguards and manages cryptographic keys and provides cryptographic services to connected host devices.
Approved algorithms (11)
| Algorithm | CAVP certificates |
|---|---|
| AES | 5954 |
| CKG | vendor affirmed |
| DRBG | C472 |
| ECDSA | C476 |
| HMAC | C464 |
| KAS | |
| KAS-SSC | A1869 |
| KDA | A1869 |
| KTS | |
| RSA | C477 |
| SHS | C295 |
Tested configurations
- N/A
Validation history
| Date | Type | Lab |
|---|---|---|
| 2022-05-12 | Initial | Penumbra Security, Inc. |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status active
- Validation dates on record: 2022-05-12