X4i Hardware Security Module (HSM)
Caveat: When operated in FIPS Mode. No assurance of the minimum strength of generated keys.
Certificate
| Certificate number | 4225 |
|---|---|
| Standard | FIPS 140-2 |
| Status | active |
| Sunset date | 2026-09-21 |
| Overall level | 3 |
| Module type | Hardware |
| Embodiment | Single Chip |
| Vendor | Pitney Bowes, Inc. · website |
| Hardware versions | MAX32590 Secure Microcontroller Revision B4 |
| Firmware versions | PB Bootloader Version 00.00.0016, HSM Application Version 21.04.0008, and Device Abstraction Layer (DAL) Version 01.02.002F |
Module description
The X4i HSM is a single chip cryptographic module using the Maxim MAX32590 hardware. The central purpose of the module is as a physical computing device that safeguards and manages cryptographic keys and provides cryptographic services to connected host devices.
Approved algorithms
| Algorithm | CAVP certificate |
|---|---|
| AES | 5954 |
| CKG | vendor affirmed |
| DRBG | C472 |
| ECDSA | C476 |
| HMAC | C464 |
| KAS | |
| KAS-SSC | A1869 |
| KDA | A1869 |
| KTS | |
| KTS | |
| RSA | C477 |
| SHS | C295 |
Tested configurations
- N/A
Validation history
| Date | Type | Lab |
|---|---|---|
| 2022-05-12 | Initial | Penumbra Security, Inc. |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status active
- Validation dates on record: 2022-05-12